============ 3 Months Modified Files ========================
2012-07-28 09:39 - 2009-07-13 21:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2012-07-28 09:39 - 2009-07-13 20:51 - 00034093 ____A C:\Windows\setupact.log
2012-07-27 20:45 - 2009-07-13 15:19 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe
2012-07-27 20:31 - 2012-07-27 20:31 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.8CCD3E78FA98C94F
2012-07-27 20:27 - 2012-07-27 20:27 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.8DA43F55A93E6778
2012-07-27 20:23 - 2012-07-27 20:23 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.E43C101B53DC252A
2012-07-27 20:23 - 2012-04-04 17:27 - 00000830 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job
2012-07-27 20:19 - 2012-07-27 20:19 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.52BD5E387BA128FF
2012-07-27 20:15 - 2012-07-27 20:15 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.3DB948AC1CCBCA63
2012-07-27 20:08 - 2012-07-27 20:08 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.F6FB4C57B0E967DB
2012-07-27 20:00 - 2012-07-27 20:00 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.172582619AC913D0
2012-07-27 19:56 - 2012-07-27 19:56 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.6A5B2A4F40A08197
2012-07-27 19:52 - 2012-07-27 19:52 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.2DB9DB67B32946F3
2012-07-27 19:49 - 2012-07-27 19:49 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.087F909DA29B6998
2012-07-27 19:41 - 2012-07-27 19:41 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.9DEBCF7F21934A0E
2012-07-27 19:33 - 2012-07-27 19:33 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.54601271FD8226CF
2012-07-27 19:22 - 2012-07-27 19:22 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.1EEC17ED03A57CAB
2012-07-27 19:18 - 2012-07-27 19:18 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.E95369A8A87D1F6E
2012-07-27 19:07 - 2012-07-27 19:07 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.B6A597B8AAF6770A
2012-07-27 19:03 - 2012-07-27 19:03 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.65C9F1F2CD98556F
2012-07-27 19:03 - 2012-07-27 19:03 - 00050392 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\xpluhfga.sys
2012-07-27 19:02 - 2012-07-27 19:02 - 00274384 ____A C:\Windows\Minidump\072712-24585-01.dmp
2012-07-27 19:01 - 2012-07-27 19:01 - 274274446 ____A C:\Windows\MEMORY.DMP
2012-07-27 17:16 - 2009-07-13 21:13 - 00729514 ____A C:\Windows\System32\PerfStringBackup.INI
2012-07-27 17:15 - 2012-07-27 17:15 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.183FA52B3A5C0912
2012-07-27 17:09 - 2012-07-27 17:09 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.E02BD63384EBEFC3
2012-07-27 17:05 - 2012-07-27 17:05 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.4E1151B4E8C78FA3
2012-07-27 17:01 - 2012-07-27 17:01 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.8F0769342A623DAD
2012-07-27 16:49 - 2012-04-02 21:03 - 01851499 ____A C:\Windows\WindowsUpdate.log
2012-07-27 16:45 - 2012-07-27 16:45 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.D030BC8E5374ED16
2012-07-27 16:39 - 2012-07-27 16:39 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.0E7575F09342F79F
2012-07-27 16:35 - 2012-07-27 16:35 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.8C6E621C39A9E46D
2012-07-27 16:31 - 2012-07-27 16:31 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.28DD07FDFA27BE06
2012-07-27 16:27 - 2012-07-27 16:27 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.A7F6501B8F6C1DAE
2012-07-27 16:23 - 2012-07-27 16:23 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.DE4C12491C5F496B
2012-07-27 16:19 - 2012-07-27 16:19 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.5F8F3497207FF759
2012-07-27 16:15 - 2012-07-27 16:15 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.46656B8CD5C97199
2012-07-27 16:11 - 2012-07-27 16:11 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.B4AFCCB56669F834
2012-07-27 16:07 - 2012-07-27 16:07 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.3AE9664CF1F1BA88
2012-07-27 16:03 - 2012-07-27 16:03 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.23DBB95DEBB5DFE5
2012-07-27 15:59 - 2012-07-27 15:59 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.9D34D7738608BCE2
2012-07-27 15:55 - 2012-07-27 15:55 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.006D7B19150FE90A
2012-07-27 15:51 - 2012-07-27 15:51 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.0FCEF6B3D10240A0
2012-07-27 15:47 - 2012-07-27 15:47 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.2FC8CFCACB986FDF
2012-07-27 15:42 - 2012-07-27 15:42 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.1C3C7BAD0C51867F
2012-07-27 15:38 - 2012-07-27 15:38 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.D5BB2AE0AD490D84
2012-07-27 15:34 - 2012-07-27 15:34 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.111861B8E64D1708
2012-07-27 15:30 - 2012-07-27 15:30 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.10156286EBCFC62C
2012-07-27 15:26 - 2012-07-27 15:26 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.41BBF73EAE0287E9
2012-07-27 15:22 - 2012-07-27 15:22 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.C6C2502E00EA8519
2012-07-27 15:18 - 2012-07-27 15:18 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.170A9607A1BFB923
2012-07-27 15:12 - 2012-07-27 15:12 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.3B1FB702AAF3475C
2012-07-27 15:08 - 2012-07-27 15:08 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.D961E3F22833B4E3
2012-07-27 15:03 - 2012-07-27 15:03 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.CCC50B6C5D566056
2012-07-27 14:59 - 2012-07-27 14:59 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.784C1F5459BCD752
2012-07-27 14:55 - 2012-07-27 14:55 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.2502682792C162C7
2012-07-27 14:51 - 2012-07-27 14:51 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.B192EAF2E46BF521
2012-07-27 14:47 - 2012-07-27 14:47 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.9AA3071B934410DF
2012-07-27 14:41 - 2012-07-27 14:41 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.40283D2C7A8708F7
2012-07-27 14:37 - 2012-07-27 14:37 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.E5BF994858A91B83
2012-07-27 14:33 - 2012-07-27 14:33 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.61927ED55B06619A
2012-07-27 14:30 - 2009-07-13 20:45 - 00021872 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2012-07-27 14:30 - 2009-07-13 20:45 - 00021872 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2012-07-27 14:16 - 2012-07-27 14:16 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.801A96E38371FA75
2012-07-27 14:16 - 2012-07-27 14:16 - 00050392 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\bxaknppc.sys
2012-07-27 14:07 - 2012-07-27 14:07 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.94263988E22B912F
2012-07-27 13:59 - 2012-04-03 19:23 - 00001945 ____A C:\Windows\epplauncher.mif
2012-07-27 13:59 - 2012-04-03 19:22 - 00745106 ____A C:\Windows\SysWOW64\PerfStringBackup.INI
2012-07-27 10:07 - 2010-11-20 19:47 - 00012324 ____A C:\Windows\PFRO.log
2012-07-27 09:31 - 2012-06-08 09:36 - 00000214 ____A C:\Users\cal\Desktop\100 Greatest Internet Videos In 3 Minutes - YouTube.url
2012-07-27 08:12 - 2012-07-27 08:12 - 00000655 ____A C:\Users\cal\Desktop\File_Recovery.lnk
2012-07-27 08:12 - 2012-07-27 08:12 - 00000368 ____A C:\Users\All Users\6IYqpdniL7Y909
2012-07-27 08:12 - 2012-07-27 08:12 - 00000072 ____A C:\Users\All Users\-6IYqpdniL7Y909r
2012-07-27 08:12 - 2012-07-27 08:12 - 00000072 ____A C:\Users\All Users\-6IYqpdniL7Y909
2012-07-27 08:06 - 2012-07-27 08:06 - 00434176 ____A (BitTorrent, Inc.) C:\Users\cal\AppData\Roaming\condmt.dll
2012-07-25 16:48 - 2012-07-25 16:48 - 00002180 ____A C:\Users\cal\Desktop\Amnesia.lnk
2012-07-25 05:26 - 2012-07-25 05:23 - 349734253 ____A C:\Users\cal\Downloads\Kerbal_0_16.zip
2012-07-24 09:59 - 2012-04-05 13:35 - 00365030 ____A C:\Windows\DirectX.log
2012-07-24 09:14 - 2012-07-24 09:14 - 00000042 ____A C:\Windows\SysWOW64\AK083E209605E394C.lie
2012-07-24 09:13 - 2012-07-24 09:13 - 00000779 ____A C:\Users\cal\Desktop\Perfect Uninstaller.lnk
2012-07-23 18:07 - 2012-07-21 00:41 - 131645267 ____A C:\Users\cal\Downloads\Apocalyptica_-_Worlds_Collide_(2007)_320kbps.rar
2012-07-22 16:55 - 2012-07-22 16:55 - 00000214 ____A C:\Users\cal\Desktop\Assassin's Creed Series Cinematic Trailers - YouTube.url
2012-07-19 17:05 - 2012-07-27 12:59 - 00000947 ____A C:\Users\Public\Desktop\µTorrent.lnk
2012-07-19 16:13 - 2012-05-20 18:18 - 00000757 ____A C:\Users\cal\Desktop\Grad Party List.txt
2012-07-18 18:14 - 2012-07-18 15:34 - 2604072960 ____A C:\Users\cal\Downloads\Assassin's Creed by LoxFalcon.iso
2012-07-17 12:36 - 2012-07-17 12:36 - 00000562 ____A C:\Users\cal\Grad List.txt
2012-07-17 08:24 - 2012-07-17 08:24 - 00000160 ____A C:\Users\cal\Users.txt
2012-07-17 08:24 - 2012-07-17 08:24 - 00000038 ____A C:\Users\cal\Bands.txt
2012-07-16 15:48 - 2012-07-16 15:48 - 00000306 ____A C:\Users\cal\Desktop\http--www.stuffistumbledupon.com-wp-content-uploads-2012-04-Black-Metal-Meme-Death-Metal-I-went-to-church-once-left-no-survivors-lol-funny-lolz.jpg.url
2012-07-16 15:48 - 2012-07-16 15:48 - 00000135 ____A C:\Users\cal\Desktop\http--www.tickld.com-images-content-12511.jpg.url
2012-07-14 20:06 - 2012-07-14 20:06 - 00003209 ____A C:\Users\cal\Downloads\DLC+All.outfits+Uplay.gun.capacity.upgrade.rar
2012-07-14 19:55 - 2012-07-14 19:55 - 00001799 ____A C:\Users\cal\Downloads\OPTIONS
2012-07-13 21:53 - 2012-07-13 21:53 - 00189248 ____A C:\Windows\SysWOW64\PnkBstrB.exe
2012-07-13 21:53 - 2012-07-13 21:53 - 00075136 ____A C:\Windows\SysWOW64\PnkBstrA.exe
2012-07-12 17:15 - 2012-07-12 17:15 - 00002040 ____A C:\Users\cal\Downloads\AC2 DLC Enable.rar
2012-07-10 23:24 - 2009-07-13 20:45 - 00414656 ____A C:\Windows\System32\FNTCACHE.DAT
2012-07-09 15:50 - 2012-04-04 17:01 - 00000024 ____A C:\Users\cal\random.dat
2012-07-09 14:12 - 2012-04-04 17:01 - 00000042 ____A C:\Users\cal\jagex_cl_runescape_LIVE.dat
2012-07-04 16:36 - 2012-07-04 16:36 - 00001035 ____A C:\Users\cal\Desktop\Dead Space By Synergy.lnk
2012-07-04 14:20 - 2012-06-29 02:44 - 299224008 ____A C:\Users\cal\Downloads\
www.NewAlbumReleases.net_Two Steps from Hell - Nero (2011).rar
2012-07-03 09:46 - 2012-04-04 17:19 - 00024904 ____A (Malwarebytes Corporation) C:\Windows\System32\Drivers\mbam.sys
2012-07-02 14:39 - 2012-07-27 12:59 - 00001049 ____A C:\Users\Public\Desktop\Dead Space 2.lnk
2012-07-01 20:59 - 2012-07-01 20:59 - 00000101 ____A C:\Users\cal\Desktop\The Site.txt
2012-07-01 18:49 - 2012-07-01 18:49 - 00000219 ____A C:\Users\cal\Desktop\Team Fortress 2.url
2012-06-30 08:31 - 2012-06-29 13:22 - 00000315 ____A C:\Users\cal\Documents\Addresses for 6-30-12.txt
2012-06-29 12:36 - 2012-06-29 12:36 - 00000194 ____A C:\Users\cal\Documents\Captcha.txt
2012-06-28 17:41 - 2012-06-28 17:40 - 73554945 ____A C:\Users\cal\Downloads\receiver_rc4_win.zip
2012-06-28 07:52 - 2012-06-26 12:59 - 00000047 ____A C:\Users\cal\jagex_cl_runescape_LIVE_BETA.dat
2012-06-26 13:00 - 2010-05-04 13:08 - 00000129 ____A C:\Users\cal\jagex_runescape_preferences2.dat
2012-06-26 12:59 - 2010-05-04 13:07 - 00000046 ____A C:\Users\cal\jagex_runescape_preferences.dat
2012-06-24 16:13 - 2012-06-24 16:13 - 00000292 ____A C:\Users\cal\Desktop\Hand-Bras 94 Sexy Babes With All-Natural Undergarments WildAmmo.com.url
2012-06-22 13:31 - 2012-06-22 13:31 - 10619657 ____A C:\Users\cal\Downloads\the-fighters-stronghold.rar
2012-06-21 18:29 - 2012-07-27 12:59 - 00002168 ____A C:\Users\Public\Desktop\Oblivion.lnk
2012-06-21 08:05 - 2012-06-21 07:53 - 89356204 ____A C:\Users\cal\Downloads\1972_The_Magician__s_Birthday_(Bronze_260_135)(320).rar
2012-06-20 10:41 - 2012-06-20 10:30 - 96440183 ____A C:\Users\cal\Downloads\1970_Very_Eavy...Very_Umble_(Bronze_258_294)(320).rar
2012-06-20 08:41 - 2012-06-20 08:30 - 98094126 ____A C:\Users\cal\Downloads\1971_Look_at_Yourself_(Bronze_260_138)(320).rar
2012-06-19 20:48 - 2012-06-19 20:30 - 161546755 ____A C:\Users\cal\Downloads\1972_Demons_And_Wizards_(Remasters_With_Bonus_Tracks)(320).rar
2012-06-19 20:31 - 2012-06-19 20:31 - 00000244 ____A C:\Users\cal\Desktop\High Definition Porn - Passion HD.url
2012-06-19 19:39 - 2012-06-19 19:37 - 83946665 ____A C:\Users\cal\Downloads\[1971] Salisbury.rar
2012-06-17 10:44 - 2011-01-05 14:53 - 00000301 ____A C:\Users\cal\Desktop\YouTube - Crazy Lawn Chair Balloon Flight!.url
2012-06-17 10:41 - 2012-06-17 10:41 - 02660198 ____A C:\Users\cal\Downloads\Sumotori Dreams plus Editor.zip
2012-06-16 09:49 - 2012-06-16 09:49 - 00000141 ____A C:\Users\cal\Documents\Address.txt
2012-06-11 19:08 - 2012-07-10 23:05 - 03148800 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys
2012-06-11 17:02 - 2012-06-11 17:02 - 00000132 ____A C:\Users\cal\Desktop\Polish Dell USB Keyboard.url
2012-06-08 21:43 - 2012-07-10 22:42 - 14172672 ____A (Microsoft Corporation) C:\Windows\System32\shell32.dll
2012-06-08 20:41 - 2012-07-10 22:42 - 12873728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2012-06-08 09:39 - 2012-06-08 09:39 - 00000222 ____A C:\Users\cal\Desktop\super...tectonic dance - YouTube.url
2012-06-08 09:37 - 2012-06-08 09:37 - 00000222 ____A C:\Users\cal\Desktop\300 TECHNO VIKING - YouTube.url
2012-06-08 09:37 - 2012-06-08 09:37 - 00000206 ____A C:\Users\cal\Desktop\All hail techno viking - YouTube (2).url
2012-06-08 09:36 - 2012-06-08 09:36 - 00000230 ____A C:\Users\cal\Desktop\Epic Win Compilation 2011 - Part 2 - YouTube.url
2012-06-08 09:36 - 2012-06-08 09:36 - 00000222 ____A C:\Users\cal\Desktop\Techno Viking on dubstep - YouTube.url
2012-06-08 09:36 - 2012-06-08 09:36 - 00000206 ____A C:\Users\cal\Desktop\Trick Shot Basketball Dude Perfect™ Summer Camp Edition (HD) - YouTube.url
2012-06-08 09:36 - 2012-06-08 09:36 - 00000206 ____A C:\Users\cal\Desktop\baby laughing - YouTube.url
2012-06-08 09:36 - 2012-06-08 09:36 - 00000206 ____A C:\Users\cal\Desktop\All hail techno viking - YouTube.url
2012-06-08 09:35 - 2012-06-08 09:35 - 00000229 ____A C:\Users\cal\Desktop\Epic Win Compilation 2011 - Part 1 - YouTube.url
2012-06-08 09:35 - 2012-06-08 09:35 - 00000222 ____A C:\Users\cal\Desktop\Video - Compilation Fail girls - YouTube.url
2012-06-08 09:35 - 2012-06-08 09:35 - 00000222 ____A C:\Users\cal\Desktop\Girls Summer Fail Compilation 2011 - YouTube.url
2012-06-08 09:35 - 2012-06-08 09:35 - 00000222 ____A C:\Users\cal\Desktop\Fail and win compilation - YouTube.url
2012-06-08 09:35 - 2012-06-08 09:35 - 00000206 ____A C:\Users\cal\Desktop\Billy's Balls 2 - YouTube.url
2012-06-05 22:06 - 2012-07-10 22:42 - 02004480 ____A (Microsoft Corporation) C:\Windows\System32\msxml6.dll
2012-06-05 22:06 - 2012-07-10 22:42 - 01881600 ____A (Microsoft Corporation) C:\Windows\System32\msxml3.dll
2012-06-05 22:02 - 2012-07-10 22:42 - 01133568 ____A (Microsoft Corporation) C:\Windows\System32\cdosys.dll
2012-06-05 21:05 - 2012-07-10 22:42 - 01390080 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2012-06-05 21:05 - 2012-07-10 22:42 - 01236992 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2012-06-05 21:03 - 2012-07-10 22:42 - 00805376 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll
2012-06-05 07:50 - 2012-06-05 07:50 - 00000229 ____A C:\Users\cal\Desktop\Boo - The World's Cutest Dog on Good Morning America - YouTube.url
2012-06-05 07:50 - 2012-06-05 07:50 - 00000229 ____A C:\Users\cal\Desktop\Baby beavers get a second chance - YouTube.url
2012-06-05 07:50 - 2012-06-05 07:50 - 00000223 ____A C:\Users\cal\Desktop\#.url
2012-06-05 07:50 - 2012-06-05 07:50 - 00000222 ____A C:\Users\cal\Desktop\wolf howl - YouTube.url
2012-06-05 07:49 - 2012-06-05 07:49 - 00000222 ____A C:\Users\cal\Desktop\RCT3-Fantasmic Trip - YouTube.url
2012-06-05 07:49 - 2012-06-05 07:49 - 00000222 ____A C:\Users\cal\Desktop\AladdinThe Ride (RCT3) - YouTube.url
2012-06-04 19:14 - 2012-06-04 19:14 - 00000222 ____A C:\Users\cal\Desktop\HD RCT3 Firework Show - Pirates - YouTube (2).url
2012-06-04 05:29 - 2012-06-04 05:29 - 00000256 ____A C:\Users\cal\Desktop\Emma Watson and Other Child Stars Who Grew Up To Be Hot Mademan.com.url
2012-06-04 04:35 - 2012-06-04 04:35 - 00000222 ____A C:\Users\cal\Desktop\Friendly Deer - YouTube.url
2012-06-04 04:34 - 2012-06-04 04:34 - 00000222 ____A C:\Users\cal\Desktop\Meeting with wolves - YouTube.url
2012-06-02 14:19 - 2012-06-19 01:19 - 02428952 ____A (Microsoft Corporation) C:\Windows\System32\wuaueng.dll
2012-06-02 14:19 - 2012-06-19 01:19 - 00701976 ____A (Microsoft Corporation) C:\Windows\System32\wuapi.dll
2012-06-02 14:19 - 2012-06-19 01:19 - 00057880 ____A (Microsoft Corporation) C:\Windows\System32\wuauclt.exe
2012-06-02 14:19 - 2012-06-19 01:19 - 00044056 ____A (Microsoft Corporation) C:\Windows\System32\wups2.dll
2012-06-02 14:19 - 2012-06-19 01:19 - 00038424 ____A (Microsoft Corporation) C:\Windows\System32\wups.dll
2012-06-02 14:15 - 2012-06-19 01:19 - 02622464 ____A (Microsoft Corporation) C:\Windows\System32\wucltux.dll
2012-06-02 14:15 - 2012-06-19 01:19 - 00099840 ____A (Microsoft Corporation) C:\Windows\System32\wudriver.dll
2012-06-02 11:19 - 2012-06-19 01:19 - 00186752 ____A (Microsoft Corporation) C:\Windows\System32\wuwebv.dll
2012-06-02 11:15 - 2012-06-19 01:19 - 00036864 ____A (Microsoft Corporation) C:\Windows\System32\wuapp.exe
2012-06-02 04:49 - 2012-07-10 23:01 - 17807360 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2012-06-02 04:17 - 2012-07-10 23:01 - 10924032 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2012-06-02 04:12 - 2012-07-10 23:01 - 02311680 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2012-06-02 04:05 - 2012-07-10 23:01 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2012-06-02 04:05 - 2012-07-10 23:01 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2012-06-02 04:04 - 2012-07-10 23:01 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2012-06-02 04:04 - 2012-07-10 23:01 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2012-06-02 04:03 - 2012-07-10 23:01 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2012-06-02 04:01 - 2012-07-10 23:01 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2012-06-02 04:00 - 2012-07-10 23:01 - 00818688 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2012-06-02 03:59 - 2012-07-10 23:01 - 02144768 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2012-06-02 03:57 - 2012-07-10 23:01 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2012-06-02 03:57 - 2012-07-10 23:01 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2012-06-02 03:54 - 2012-07-10 23:01 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2012-06-02 01:07 - 2012-07-10 23:01 - 12314624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2012-06-02 00:43 - 2012-07-10 23:01 - 09737728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2012-06-02 00:33 - 2012-07-10 23:01 - 01800192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2012-06-02 00:26 - 2012-07-10 23:01 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2012-06-02 00:25 - 2012-07-10 23:01 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2012-06-02 00:25 - 2012-07-10 23:01 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2012-06-02 00:23 - 2012-07-10 23:01 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2012-06-02 00:21 - 2012-07-10 23:01 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2012-06-02 00:20 - 2012-07-10 23:01 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2012-06-02 00:19 - 2012-07-10 23:01 - 01793024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2012-06-02 00:19 - 2012-07-10 23:01 - 00716800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2012-06-02 00:17 - 2012-07-10 23:01 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2012-06-02 00:16 - 2012-07-10 23:01 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2012-06-02 00:14 - 2012-07-10 23:01 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2012-06-01 21:50 - 2012-07-10 22:42 - 00458704 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\cng.sys
2012-06-01 21:48 - 2012-07-10 22:42 - 00151920 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ksecpkg.sys
2012-06-01 21:48 - 2012-07-10 22:42 - 00095600 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ksecdd.sys
2012-06-01 21:45 - 2012-07-10 22:42 - 00340992 ____A (Microsoft Corporation) C:\Windows\System32\schannel.dll
2012-06-01 21:44 - 2012-07-10 22:42 - 00307200 ____A (Microsoft Corporation) C:\Windows\System32\ncrypt.dll
2012-06-01 20:50 - 2012-06-01 20:50 - 00618105 ____A C:\Users\cal\Downloads\Stratasphere_Finale.fwd
2012-06-01 20:42 - 2012-06-01 20:42 - 00000222 ____A C:\Users\cal\Desktop\HD RCT3 Firework Show - Pirates - YouTube.url
2012-06-01 20:40 - 2012-07-10 22:42 - 00225280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2012-06-01 20:40 - 2012-07-10 22:42 - 00022016 ____A (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2012-06-01 20:39 - 2012-07-10 22:42 - 00219136 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2012-06-01 20:34 - 2012-07-10 22:42 - 00096768 ____A (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2012-05-29 14:56 - 2012-05-29 14:56 - 17091624 ____A C:\Users\cal\Downloads\Windows6.1-KB958559-x64-RefreshPkg.msu
2012-05-29 14:43 - 2012-05-29 14:43 - 00000206 ____A C:\Users\cal\Desktop\Opeth - The Lotus Eater 2010 (DVD Royal Albert Hall) - YouTube.url
2012-05-29 11:49 - 2012-05-29 11:49 - 00000174 ____A C:\Users\cal\Desktop\Theo Spark.url
2012-05-29 11:48 - 2012-05-29 11:48 - 00000223 ____A C:\Users\cal\Desktop\American Power April 2011.url
2012-05-29 11:45 - 2012-05-29 11:45 - 00000208 ____A C:\Users\cal\Desktop\Human Stop Sign Gets Removed Video.url
2012-05-29 03:46 - 2012-05-29 03:46 - 00000560 ____A C:\Users\cal\Desktop\Youtube2.txt
2012-05-26 17:42 - 2012-05-26 17:42 - 00000746 ____A C:\Users\cal\Desktop\Videos.txt
2012-05-26 17:32 - 2012-05-26 17:32 - 00000264 ____A C:\Users\cal\Desktop\http--verydemotivational.files.wordpress.com-2011-11-demotivational-posters-this-is-a-guy.jpg.url
2012-05-26 17:32 - 2012-05-26 17:32 - 00000261 ____A C:\Users\cal\Desktop\http--3.bp.blogspot.com-_28yniOTMoqI-TLFiAiKlmaI-AAAAAAAACAI-K7V60sZmf_o-s1600-Opeth+20+%C3%A5r,+Cirkus+114.JPG.url
2012-05-26 17:32 - 2012-05-26 17:32 - 00000242 ____A C:\Users\cal\Desktop\http--3.bp.blogspot.com-_zvn4w8W7e90-S9R59IcoGpI-AAAAAAAAAmY-R_uDUqq4N-I-s1600-img0005pi.jpg.url
2012-05-26 17:31 - 2012-05-26 17:31 - 00000231 ____A C:\Users\cal\Desktop\http--jonathanbradwell.files.wordpress.com-2010-09-fan-pop.jpg.url
2012-05-25 10:43 - 2012-05-25 10:43 - 00000222 ____A C:\Users\cal\Desktop\The Saga Of Biorn - YouTube.url
2012-05-25 08:01 - 2012-05-25 07:09 - 02756250 ____A C:\Users\cal\Documents\Top 10 Highest Paid Authors of 2011.pptx
2012-05-25 01:01 - 2012-05-25 00:56 - 03626696 ____A C:\Users\cal\Documents\DIRGE FOR NOVEMBER.pptx
2012-05-25 00:38 - 2012-05-25 00:38 - 00000160 ____A C:\Users\cal\Desktop\Shotgun Suicide Bath.url
2012-05-24 23:40 - 2012-05-24 23:40 - 00000163 ____A C:\Users\cal\Desktop\Blah.txt
2012-05-22 15:51 - 2012-05-22 15:51 - 00000966 ____A C:\Users\cal\Desktop\Max Payne 2.lnk
2012-05-22 14:07 - 2012-05-22 14:07 - 00000676 ____A C:\Users\cal\Desktop\Interesting stuff.txt
2012-05-22 13:23 - 2012-05-22 13:23 - 00000348 ____A C:\Users\cal\Desktop\Youtube.txt
2012-05-17 19:20 - 2012-05-17 19:19 - 69097700 ____A C:\Users\cal\Downloads\P-T-N-R.therebels.micael.rar
2012-05-17 19:15 - 2012-05-17 19:15 - 13054345 ____A C:\Users\cal\Downloads\2007 - Nil Recurring.part3.rar
2012-05-16 14:24 - 2012-05-16 14:24 - 00130619 ____A C:\Users\cal\Downloads\9360 Old Plank Ln, Brighton, MI 48114 to 3100 W Highland Rd, Howell, MI 48843 - Google Maps.htm
2012-05-15 19:42 - 2012-05-15 19:00 - 131507343 ____A C:\Users\cal\Downloads\k0l0n.rar
2012-05-09 23:16 - 2012-04-03 17:40 - 57848688 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
2012-05-09 10:03 - 2010-05-03 17:48 - 00000277 ____A C:\Users\cal\Documents\password.txt
2012-05-07 11:08 - 2012-07-27 12:59 - 00001176 ____A C:\Users\Public\Desktop\Paint.NET.lnk
2012-05-05 05:40 - 2012-05-05 05:40 - 00001322 ____A C:\Users\cal\Desktop\KSP.exe - Shortcut.lnk
2012-05-04 03:06 - 2012-06-13 07:18 - 05559664 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2012-05-04 02:03 - 2012-06-13 07:18 - 03968368 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2012-05-04 02:03 - 2012-06-13 07:18 - 03913072 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2012-05-03 11:44 - 2012-05-03 11:43 - 109204617 ____A C:\Users\cal\Downloads\KSP_win_0_13_3.zip
2012-04-30 21:40 - 2012-06-13 07:18 - 00209920 ____A (Microsoft Corporation) C:\Windows\System32\profsvc.dll
ZeroAccess:
C:\Windows\Installer\{c87bc561-eefd-ed9f-5262-78af73b1c897}
C:\Windows\Installer\{c87bc561-eefd-ed9f-5262-78af73b1c897}\@
C:\Windows\Installer\{c87bc561-eefd-ed9f-5262-78af73b1c897}\L
C:\Windows\Installer\{c87bc561-eefd-ed9f-5262-78af73b1c897}\U
C:\Windows\Installer\{c87bc561-eefd-ed9f-5262-78af73b1c897}\U\00000001.@
ZeroAccess:
C:\Users\cal\AppData\Local\{c87bc561-eefd-ed9f-5262-78af73b1c897}
C:\Users\cal\AppData\Local\{c87bc561-eefd-ed9f-5262-78af73b1c897}\@
C:\Users\cal\AppData\Local\{c87bc561-eefd-ed9f-5262-78af73b1c897}\L
C:\Users\cal\AppData\Local\{c87bc561-eefd-ed9f-5262-78af73b1c897}\U
========================= Known DLLs (Whitelisted) ============
========================= Bamital & volsnap Check ============
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe 014A9CB92514E27C0107614DF764BC06 ZeroAccess <==== ATTENTION!.
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
==================== EXE ASSOCIATION =====================
HKLM\...\.exe: exefile => OK
HKLM\...\exefile\DefaultIcon: %1 => OK
HKLM\...\exefile\open\command: "%1" %* => OK
========================= Memory info ======================
Percentage of memory in use: 19%
Total physical RAM: 4094.49 MB
Available physical RAM: 3311.21 MB
Total Pagefile: 4092.69 MB
Available Pagefile: 3404.82 MB
Total Virtual: 8192 MB
Available Virtual: 8191.9 MB
======================= Partitions =========================
1 Drive c: () (Fixed) (Total:232.68 GB) (Free:20.12 GB) NTFS
3 Drive f: () (Removable) (Total:0.97 GB) (Free:0.97 GB) FAT
4 Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS
5 Drive y: (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Disk ### Status Size Free Dyn Gpt
-------- ------------- ------- ------- --- ---
Disk 0 Online 232 GB 0 B
Disk 1 Online 992 MB 0 B
Partitions of Disk 0:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 OEM 47 MB 31 KB
Partition 2 Primary 100 MB 48 MB
Partition 3 Primary 232 GB 148 MB
==================================================================================
Disk: 0
Partition 1
Type : DE
Hidden: Yes
Active: No
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 4 FAT Partition 47 MB Healthy Hidden
==================================================================================
Disk: 0
Partition 2
Type : 07
Hidden: No
Active: Yes
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 1 Y System Rese NTFS Partition 100 MB Healthy
==================================================================================
Disk: 0
Partition 3
Type : 07
Hidden: No
Active: No
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 2 C NTFS Partition 232 GB Healthy
==================================================================================
Partitions of Disk 1:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 991 MB 16 KB
==================================================================================
Disk: 1
Partition 1
Type : 06
Hidden: No
Active: Yes
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 3 F FAT Removable 991 MB Healthy
==================================================================================
==========================================================
Last Boot: 2012-07-17 21:03
======================= End Of Log ==========================