john14354yc5
Posts: 14 +0
Scan result of Farbar Recovery Scan Tool Version: 25-06-2012
Ran by SYSTEM at 28-06-2012 00:16:45
Running from G:\
Windows 7 Ultimate (X64) OS Language: English(US)
The current controlset is ControlSet001
========================== Registry (Whitelisted) =============
HKLM\...\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\ipoint.exe" [2417032 2011-08-01] (Microsoft Corporation)
HKLM\...\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s [9650720 2009-12-25] (Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [500208 2010-03-06] (Adobe Systems Incorporated)
HKLM\...\Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey [1271168 2012-03-26] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [843712 2012-01-02] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [IJNetworkScanUtility] C:\Program Files (x86)\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe [206240 2010-08-23] (CANON INC.)
HKLM-x32\...\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices [91520 2010-03-13] (Microsoft Corporation)
HKLM-x32\...\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59240 2011-11-01] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [421888 2011-10-24] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [254696 2012-01-18] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [641664 2012-04-06] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml [10752 2012-02-20] ()
HKU\REALITY\...\Run: [Google Update] "C:\Users\REALITY\AppData\Local\Google\Update\GoogleUpdate.exe" /c [136176 2011-11-30] (Google Inc.)
HKU\REALITY\...\Run: [Vidalia] "C:\Program Files (x86)\Vidalia Bundle\Vidalia\vidalia.exe" [x]
Tcpip\Parameters: [DhcpNameServer] 209.18.47.61 209.18.47.62
Startup: C:\Users\REALITY\Start Menu\Programs\Startup\OneNote 2010 Screen Clipper and Launcher.lnk
ShortcutTarget: OneNote 2010 Screen Clipper and Launcher.lnk -> C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation)
==================== Services (Whitelisted) ======
2 Adobe Licensing Console; C:\Windows\SysWow64\msvfd32.exe [818169 2012-01-03] ( )
2 mi-raysat_3dsmax2010_32; "C:\Program Files (x86)\Autodesk\3ds Max 2010\mentalray\satellite\raysat_3dsmax2010_32server.exe" [86016 2009-03-12] ()
2 mi-raysat_3dsmax2010_64; "C:\Program Files\Autodesk\3ds Max 2010\mentalray\satellite\raysat_3dsmax2010_64server.exe" [86016 2009-03-12] ()
2 MsMpSvc; "C:\Program Files\Microsoft Security Client\MsMpEng.exe" [12600 2012-03-26] (Microsoft Corporation)
2 MSSQL$SQLEXPRESS; "C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe" -sSQLEXPRESS [57617752 2009-03-30] (Microsoft Corporation)
4 MSSQLServerADHelper100; "C:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE" [61976 2009-07-22] (Microsoft Corporation)
4 SQLAgent$SQLEXPRESS; "C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE" -I SQLEXPRESS [427880 2009-03-30] (Microsoft Corporation)
2 UNS; "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe" [2320920 2009-12-09] (Intel Corporation)
========================== Drivers (Whitelisted) =============
4 RsFx0103; C:\Windows\System32\Drivers\RsFx0103.sys [311656 2009-03-30] (Microsoft Corporation)
0 sptd; C:\Windows\System32\Drivers\sptd.sys [530488 2011-12-04] (Duplex Secure Ltd.)
3 VSPerfDrv100; \??\C:\Program Files (x86)\Microsoft Visual Studio 10.0\Team Tools\Performance Tools\x64\VSPerfDrv100.sys [68440 2010-03-17] (Microsoft Corporation)
3 MSICDSetup; \??\E:\CDriver64.sys [x]
3 Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys [x]
3 tsusbhub; C:\Windows\System32\drivers\tsusbhub.sys [x]
3 VGPU; C:\Windows\System32\drivers\rdvgkmd.sys [x]
0 vmci; C:\Windows\System32\DRIVERS\vmci.sys [x]
3 VMnetAdapter; C:\Windows\System32\DRIVERS\vmnetadapter.sys [x]
========================== NetSvcs (Whitelisted) ===========
============ One Month Created Files and Folders ==============
2012-06-28 00:16 - 2012-06-28 00:16 - 00000000 ____D C:\FRST
2012-06-27 12:37 - 2012-06-27 12:37 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.740A459601A8D7BE
2012-06-27 12:36 - 2012-06-27 12:37 - 00001266 ____A C:\Users\REALITY\Desktop\shutdownstop.exe.lnk
2012-06-27 12:28 - 2012-06-27 12:28 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.F6F38D8FF995730A
2012-06-27 12:24 - 2012-06-27 12:24 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.26C803E20261B60A
2012-06-27 12:19 - 2012-06-27 12:19 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2012-06-27 12:18 - 2012-06-27 12:19 - 00000000 ____D C:\Program Files\Microsoft Security Client
2012-06-27 12:18 - 2012-06-27 12:18 - 12621696 ____A (Microsoft Corporation) C:\Users\REALITY\Downloads\mseinstall.exe
2012-06-27 12:13 - 2012-06-27 12:13 - 00347424 ____A (Microsoft Corporation) C:\Users\REALITY\Downloads\MicrosoftFixit.wu.LB.80264256829484749.3.1.Run.exe
2012-06-27 11:40 - 2012-06-27 11:40 - 00677376 ____A C:\Users\REALITY\Downloads\MicrosoftFixit50687(1).msi
2012-06-27 11:37 - 2012-06-27 11:37 - 00347424 ____A (Microsoft Corporation) C:\Users\REALITY\Downloads\MicrosoftFixit.WindowsFirewall.RNP.80264256125479141.2.1.Run.exe
2012-06-27 11:32 - 2012-06-27 11:32 - 00677376 ____A C:\Users\REALITY\Downloads\MicrosoftFixit50687.msi
2012-06-27 11:31 - 2012-06-27 11:31 - 00347424 ____A (Microsoft Corporation) C:\Users\REALITY\Downloads\MicrosoftFixit.wu.Run.exe
2012-06-27 06:27 - 2012-06-27 11:09 - 00000000 ___AD C:\Kaspersky Rescue Disk 10.0
2012-06-26 16:19 - 2012-06-26 16:19 - 00000000 __SHD C:\Windows\System32\%APPDATA%
2012-06-26 16:05 - 2012-06-26 16:05 - 00140832 ____A C:\Windows\SysWOW64\Drivers\str.sys
2012-06-18 13:38 - 2012-06-02 14:19 - 02428952 ____A (Microsoft Corporation) C:\Windows\System32\wuaueng.dll
2012-06-18 13:38 - 2012-06-02 14:19 - 00701976 ____A (Microsoft Corporation) C:\Windows\System32\wuapi.dll
2012-06-18 13:38 - 2012-06-02 14:19 - 00186752 ____A (Microsoft Corporation) C:\Windows\System32\wuwebv.dll
2012-06-18 13:38 - 2012-06-02 14:19 - 00057880 ____A (Microsoft Corporation) C:\Windows\System32\wuauclt.exe
2012-06-18 13:38 - 2012-06-02 14:19 - 00044056 ____A (Microsoft Corporation) C:\Windows\System32\wups2.dll
2012-06-18 13:38 - 2012-06-02 14:19 - 00038424 ____A (Microsoft Corporation) C:\Windows\System32\wups.dll
2012-06-18 13:38 - 2012-06-02 14:15 - 02622464 ____A (Microsoft Corporation) C:\Windows\System32\wucltux.dll
2012-06-18 13:38 - 2012-06-02 14:15 - 00099840 ____A (Microsoft Corporation) C:\Windows\System32\wudriver.dll
2012-06-18 13:38 - 2012-06-02 14:15 - 00036864 ____A (Microsoft Corporation) C:\Windows\System32\wuapp.exe
2012-06-16 10:09 - 2012-06-16 10:09 - 00374632 ____A C:\Windows\Minidump\061612-34975-01.dmp
2012-06-16 10:09 - 2012-06-16 10:09 - 00000000 ____D C:\Windows\Minidump
2012-06-15 06:44 - 2012-06-15 06:44 - 00000000 ____D C:\Users\REALITY\AppData\Local\Macromedia
2012-06-15 06:02 - 2012-05-17 18:47 - 17807360 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2012-06-15 06:02 - 2012-05-17 18:16 - 10924032 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2012-06-15 06:02 - 2012-05-17 18:06 - 02311680 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2012-06-15 06:02 - 2012-05-17 17:59 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2012-06-15 06:02 - 2012-05-17 17:59 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2012-06-15 06:02 - 2012-05-17 17:58 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2012-06-15 06:02 - 2012-05-17 17:58 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2012-06-15 06:02 - 2012-05-17 17:56 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2012-06-15 06:02 - 2012-05-17 17:55 - 00818688 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2012-06-15 06:02 - 2012-05-17 17:55 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2012-06-15 06:02 - 2012-05-17 17:54 - 02144768 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2012-06-15 06:02 - 2012-05-17 17:51 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2012-06-15 06:02 - 2012-05-17 17:51 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2012-06-15 06:02 - 2012-05-17 17:47 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2012-06-15 06:02 - 2012-05-17 15:11 - 12314624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2012-06-15 06:02 - 2012-05-17 14:48 - 09737728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2012-06-15 06:02 - 2012-05-17 14:45 - 01800192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2012-06-15 06:02 - 2012-05-17 14:36 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2012-06-15 06:02 - 2012-05-17 14:35 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2012-06-15 06:02 - 2012-05-17 14:35 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2012-06-15 06:02 - 2012-05-17 14:33 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2012-06-15 06:02 - 2012-05-17 14:31 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2012-06-15 06:02 - 2012-05-17 14:29 - 00716800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2012-06-15 06:02 - 2012-05-17 14:29 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2012-06-15 06:02 - 2012-05-17 14:27 - 01793024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2012-06-15 06:02 - 2012-05-17 14:25 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2012-06-15 06:02 - 2012-05-17 14:24 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2012-06-15 06:02 - 2012-05-17 14:20 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2012-06-13 09:48 - 2012-05-14 17:32 - 03146752 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys
2012-06-13 09:48 - 2012-05-04 03:06 - 05559664 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2012-06-13 09:48 - 2012-05-04 02:03 - 03968368 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2012-06-13 09:48 - 2012-05-04 02:03 - 03913072 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2012-06-13 09:48 - 2012-04-27 21:32 - 01112064 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorets.dll
2012-06-13 09:48 - 2012-04-27 19:55 - 00210944 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\rdpwd.sys
2012-06-13 09:48 - 2012-04-25 21:41 - 00149504 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorekmts.dll
2012-06-13 09:48 - 2012-04-25 21:41 - 00077312 ____A (Microsoft Corporation) C:\Windows\System32\rdpwsx.dll
2012-06-13 09:48 - 2012-04-25 21:34 - 00009216 ____A (Microsoft Corporation) C:\Windows\System32\rdrmemptylst.exe
2012-06-05 12:56 - 2012-06-05 12:56 - 00376800 ____A C:\Users\REALITY\Documents\parking citation.xps
2012-06-02 11:45 - 2012-06-07 08:14 - 00000499 ____A C:\Users\REALITY\Documents\disadvantages.txt
2012-06-01 18:46 - 2012-06-01 18:46 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2012-06-01 18:46 - 2012-06-01 18:46 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2012-06-01 18:33 - 2012-06-27 12:26 - 00000898 ____A C:\Windows\PFRO.log
2012-05-30 20:37 - 2012-05-30 20:37 - 00002186 ____A C:\Users\REALITY\Desktop\REA's TESTware for CLEP College Composition.lnk
2012-05-29 16:16 - 2012-05-29 16:16 - 01285500 ____A C:\Users\REALITY\Downloads\student_consent_for_release_of_records_form-2.psd
2012-05-29 16:08 - 2012-05-29 16:08 - 01347100 ____A C:\Users\REALITY\Downloads\student_consent_for_release_of_records_form-1.psd
============ 3 Months Modified Files and Folders =============
2012-06-28 00:16 - 2012-06-28 00:16 - 00000000 ____D C:\FRST
2012-06-27 22:49 - 2012-05-27 00:00 - 00001447 ____A C:\Windows\setupact.log
2012-06-27 22:49 - 2009-07-13 21:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2012-06-27 22:36 - 2012-04-23 15:26 - 00000896 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2012-06-27 22:33 - 2011-11-30 08:18 - 00000916 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4139173926-379787292-1441203389-1000UA.job
2012-06-27 13:23 - 2009-07-13 20:45 - 00014016 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2012-06-27 13:23 - 2009-07-13 20:45 - 00014016 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2012-06-27 12:37 - 2012-06-27 12:37 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.740A459601A8D7BE
2012-06-27 12:37 - 2012-06-27 12:36 - 00001266 ____A C:\Users\REALITY\Desktop\shutdownstop.exe.lnk
2012-06-27 12:31 - 2012-04-23 15:26 - 00000900 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2012-06-27 12:28 - 2012-06-27 12:28 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.F6F38D8FF995730A
2012-06-27 12:28 - 2011-11-30 07:11 - 01454289 ____A C:\Windows\WindowsUpdate.log
2012-06-27 12:27 - 2012-01-11 11:44 - 00000000 __SHD C:\Users\REALITY\AppData\Local\{e1e8d27c-54ff-d1a8-bb9d-6e7743dc063d}
2012-06-27 12:26 - 2012-06-01 18:33 - 00000898 ____A C:\Windows\PFRO.log
2012-06-27 12:24 - 2012-06-27 12:24 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.26C803E20261B60A
2012-06-27 12:19 - 2012-06-27 12:19 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2012-06-27 12:19 - 2012-06-27 12:18 - 00000000 ____D C:\Program Files\Microsoft Security Client
2012-06-27 12:19 - 2011-12-18 09:41 - 00486096 ____A C:\Windows\System32\perfh011.dat
2012-06-27 12:19 - 2011-12-18 09:41 - 00147520 ____A C:\Windows\System32\perfc011.dat
2012-06-27 12:19 - 2011-12-03 17:12 - 02183698 ____A C:\Windows\SysWOW64\PerfStringBackup.INI
2012-06-27 12:19 - 2011-11-30 13:49 - 00001945 ____A C:\Windows\epplauncher.mif
2012-06-27 12:19 - 2011-11-30 08:06 - 00497690 ____A C:\Windows\System32\perfh012.dat
2012-06-27 12:19 - 2011-11-30 08:06 - 00145808 ____A C:\Windows\System32\perfc012.dat
2012-06-27 12:18 - 2012-06-27 12:18 - 12621696 ____A (Microsoft Corporation) C:\Users\REALITY\Downloads\mseinstall.exe
2012-06-27 12:13 - 2012-06-27 12:13 - 00347424 ____A (Microsoft Corporation) C:\Users\REALITY\Downloads\MicrosoftFixit.wu.LB.80264256829484749.3.1.Run.exe
2012-06-27 12:10 - 2011-12-03 05:57 - 00000000 ____D C:\Users\REALITY\AppData\Roaming\foobar2000
2012-06-27 12:07 - 2012-04-14 05:05 - 00000830 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job
2012-06-27 11:47 - 2009-07-13 21:13 - 02142656 ____A C:\Windows\System32\PerfStringBackup.INI
2012-06-27 11:40 - 2012-06-27 11:40 - 00677376 ____A C:\Users\REALITY\Downloads\MicrosoftFixit50687(1).msi
2012-06-27 11:37 - 2012-06-27 11:37 - 00347424 ____A (Microsoft Corporation) C:\Users\REALITY\Downloads\MicrosoftFixit.WindowsFirewall.RNP.80264256125479141.2.1.Run.exe
2012-06-27 11:32 - 2012-06-27 11:32 - 00677376 ____A C:\Users\REALITY\Downloads\MicrosoftFixit50687.msi
2012-06-27 11:31 - 2012-06-27 11:31 - 00347424 ____A (Microsoft Corporation) C:\Users\REALITY\Downloads\MicrosoftFixit.wu.Run.exe
2012-06-27 11:09 - 2012-06-27 06:27 - 00000000 ___AD C:\Kaspersky Rescue Disk 10.0
2012-06-27 11:08 - 2009-07-13 15:19 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe
2012-06-26 16:19 - 2012-06-26 16:19 - 00000000 __SHD C:\Windows\System32\%APPDATA%
2012-06-26 16:05 - 2012-06-26 16:05 - 00140832 ____A C:\Windows\SysWOW64\Drivers\str.sys
2012-06-26 09:48 - 2012-04-24 06:02 - 00001369 ____A C:\Users\REALITY\Documents\list.txt
2012-06-26 09:46 - 2012-03-27 12:30 - 00001441 ____A C:\Users\REALITY\Documents\stuff2.txt
2012-06-25 09:12 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\rescache
2012-06-25 06:43 - 2012-04-25 23:25 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2012-06-24 23:09 - 2012-05-22 21:24 - 00000993 ____A C:\Users\REALITY\Documents\questions for digipen.txt
2012-06-24 23:09 - 2012-02-04 15:23 - 00005296 ____A C:\Users\REALITY\Documents\hi.txt
2012-06-24 18:16 - 2011-12-04 07:33 - 00000000 ____D C:\Users\REALITY\AppData\Roaming\uTorrent
2012-06-24 00:33 - 2011-11-30 08:18 - 00000864 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4139173926-379787292-1441203389-1000Core.job
2012-06-23 15:59 - 2011-12-12 16:43 - 00002868 ____A C:\Users\REALITY\Documents\stuff.txt
2012-06-23 13:07 - 2012-04-14 05:05 - 00426184 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2012-06-23 13:07 - 2011-12-03 16:57 - 00070344 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2012-06-17 11:24 - 2011-11-30 11:18 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2012-06-16 10:09 - 2012-06-16 10:09 - 00374632 ____A C:\Windows\Minidump\061612-34975-01.dmp
2012-06-16 10:09 - 2012-06-16 10:09 - 00000000 ____D C:\Windows\Minidump
2012-06-15 06:44 - 2012-06-15 06:44 - 00000000 ____D C:\Users\REALITY\AppData\Local\Macromedia
2012-06-15 06:14 - 2009-07-13 20:45 - 00530448 ____A C:\Windows\System32\FNTCACHE.DAT
2012-06-15 06:11 - 2012-01-01 23:10 - 00000000 ____D C:\Users\All Users\Microsoft Help
2012-06-15 06:07 - 2011-11-30 07:29 - 58957832 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
2012-06-11 21:34 - 2011-11-30 08:18 - 00002369 ____A C:\Users\REALITY\Desktop\Google Chrome.lnk
2012-06-11 16:57 - 2011-12-05 00:21 - 00000000 ____D C:\Users\REALITY\Downloads\tx
2012-06-11 15:49 - 2011-12-19 22:05 - 00000000 ____D C:\Program Files (x86)\DigiPen
2012-06-09 18:58 - 2012-05-04 07:53 - 00000777 ____A C:\Users\REALITY\Documents\need for digipen.txt
2012-06-08 21:17 - 2012-05-23 17:11 - 00010586 ____A C:\Users\REALITY\Documents\digipendatesandcostspaid.xlsx
2012-06-07 08:14 - 2012-06-02 11:45 - 00000499 ____A C:\Users\REALITY\Documents\disadvantages.txt
2012-06-05 16:29 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\System32\NDF
2012-06-05 12:56 - 2012-06-05 12:56 - 00376800 ____A C:\Users\REALITY\Documents\parking citation.xps
2012-06-02 14:19 - 2012-06-18 13:38 - 02428952 ____A (Microsoft Corporation) C:\Windows\System32\wuaueng.dll
2012-06-02 14:19 - 2012-06-18 13:38 - 00701976 ____A (Microsoft Corporation) C:\Windows\System32\wuapi.dll
2012-06-02 14:19 - 2012-06-18 13:38 - 00186752 ____A (Microsoft Corporation) C:\Windows\System32\wuwebv.dll
2012-06-02 14:19 - 2012-06-18 13:38 - 00057880 ____A (Microsoft Corporation) C:\Windows\System32\wuauclt.exe
2012-06-02 14:19 - 2012-06-18 13:38 - 00044056 ____A (Microsoft Corporation) C:\Windows\System32\wups2.dll
2012-06-02 14:19 - 2012-06-18 13:38 - 00038424 ____A (Microsoft Corporation) C:\Windows\System32\wups.dll
2012-06-02 14:15 - 2012-06-18 13:38 - 02622464 ____A (Microsoft Corporation) C:\Windows\System32\wucltux.dll
2012-06-02 14:15 - 2012-06-18 13:38 - 00099840 ____A (Microsoft Corporation) C:\Windows\System32\wudriver.dll
2012-06-02 14:15 - 2012-06-18 13:38 - 00036864 ____A (Microsoft Corporation) C:\Windows\System32\wuapp.exe
2012-06-02 08:27 - 2012-04-23 09:36 - 00000000 ____D C:\Users\All Users\Rosetta Stone
2012-06-01 19:17 - 2012-02-08 20:40 - 00007614 ____A C:\Users\REALITY\AppData\Local\Resmon.ResmonCfg
2012-06-01 18:46 - 2012-06-01 18:46 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2012-06-01 18:46 - 2012-06-01 18:46 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2012-06-01 18:33 - 2011-12-04 07:34 - 00000000 ____D C:\Program Files (x86)\uTorrent
2012-05-30 20:37 - 2012-05-30 20:37 - 00002186 ____A C:\Users\REALITY\Desktop\REA's TESTware for CLEP College Composition.lnk
2012-05-30 20:37 - 2012-05-05 06:38 - 00000000 ____D C:\Program Files (x86)\REA
2012-05-29 16:16 - 2012-05-29 16:16 - 01285500 ____A C:\Users\REALITY\Downloads\student_consent_for_release_of_records_form-2.psd
2012-05-29 16:08 - 2012-05-29 16:08 - 01347100 ____A C:\Users\REALITY\Downloads\student_consent_for_release_of_records_form-1.psd
2012-05-29 15:58 - 2011-12-04 07:32 - 00000000 ____D C:\Program Files\PeerBlock
2012-05-27 00:00 - 2012-05-27 00:00 - 00000000 ____A C:\Windows\setuperr.log
2012-05-26 05:30 - 2011-11-30 10:28 - 00000000 ____D C:\Users\REALITY\AppData\Roaming\vlc
2012-05-25 08:00 - 2011-12-04 09:15 - 00000000 ____D C:\Users\REALITY\AppData\Roaming\DAEMON Tools Lite
2012-05-24 17:03 - 2012-05-23 14:43 - 00011753 ____A C:\Users\REALITY\Documents\digipen budget.xlsx
2012-05-22 13:11 - 2012-05-22 13:11 - 00000943 ____A C:\Users\Public\Desktop\µTorrent.lnk
2012-05-21 14:25 - 2012-05-21 14:25 - 01213218 ____A C:\Users\REALITY\Documents\psychologytest.xps
2012-05-17 18:47 - 2012-06-15 06:02 - 17807360 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2012-05-17 18:16 - 2012-06-15 06:02 - 10924032 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2012-05-17 18:06 - 2012-06-15 06:02 - 02311680 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2012-05-17 17:59 - 2012-06-15 06:02 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2012-05-17 17:59 - 2012-06-15 06:02 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2012-05-17 17:58 - 2012-06-15 06:02 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2012-05-17 17:58 - 2012-06-15 06:02 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2012-05-17 17:56 - 2012-06-15 06:02 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2012-05-17 17:55 - 2012-06-15 06:02 - 00818688 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2012-05-17 17:55 - 2012-06-15 06:02 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2012-05-17 17:54 - 2012-06-15 06:02 - 02144768 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2012-05-17 17:51 - 2012-06-15 06:02 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2012-05-17 17:51 - 2012-06-15 06:02 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2012-05-17 17:47 - 2012-06-15 06:02 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2012-05-17 15:11 - 2012-06-15 06:02 - 12314624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2012-05-17 14:48 - 2012-06-15 06:02 - 09737728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2012-05-17 14:45 - 2012-06-15 06:02 - 01800192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2012-05-17 14:36 - 2012-06-15 06:02 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2012-05-17 14:35 - 2012-06-15 06:02 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2012-05-17 14:35 - 2012-06-15 06:02 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2012-05-17 14:33 - 2012-06-15 06:02 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2012-05-17 14:31 - 2012-06-15 06:02 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2012-05-17 14:29 - 2012-06-15 06:02 - 00716800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2012-05-17 14:29 - 2012-06-15 06:02 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2012-05-17 14:27 - 2012-06-15 06:02 - 01793024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2012-05-17 14:25 - 2012-06-15 06:02 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2012-05-17 14:24 - 2012-06-15 06:02 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2012-05-17 14:20 - 2012-06-15 06:02 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2012-05-14 17:32 - 2012-06-13 09:48 - 03146752 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys
2012-05-11 19:42 - 2012-05-11 19:42 - 00000000 ____D C:\Users\All Users\ATI
2012-05-11 19:42 - 2012-05-11 19:42 - 00000000 ____D C:\Program Files (x86)\AMD AVT
2012-05-11 19:42 - 2012-03-15 09:36 - 00000000 ____D C:\Users\All Users\AMD
2012-05-11 19:41 - 2012-05-11 19:41 - 00000000 ____D C:\Program Files (x86)\AMD APP
2012-05-11 19:41 - 2011-11-30 09:05 - 00000000 ____D C:\Program Files\ATI Technologies
2012-05-11 19:12 - 2009-07-13 23:46 - 00000000 ____D C:\Program Files\Windows Journal
2012-05-11 17:54 - 2012-05-11 17:54 - 00000678 ____A C:\Users\Public\Desktop\osu!.lnk
2012-05-11 17:53 - 2012-05-11 17:53 - 00000000 ____D C:\Users\REALITY\AppData\Roaming\Downloaded Installations
2012-05-11 10:21 - 2012-01-03 08:16 - 00001535 ____A C:\Users\REALITY\Documents\apartments.txt
2012-05-08 19:45 - 2011-11-30 08:18 - 00160328 ____A C:\Users\REALITY\AppData\Local\GDIPFONTCACHEV1.DAT
2012-05-05 21:11 - 2012-01-30 16:42 - 00001372 ____A C:\Users\REALITY\Documents\accountsLOL.txt
2012-05-05 06:38 - 2012-05-05 06:38 - 00002181 ____A C:\Users\REALITY\Desktop\REA's TESTware for CLEP Introductory Sociology.lnk
2012-05-04 03:06 - 2012-06-13 09:48 - 05559664 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2012-05-04 02:03 - 2012-06-13 09:48 - 03968368 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2012-05-04 02:03 - 2012-06-13 09:48 - 03913072 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2012-05-02 21:14 - 2011-11-30 09:22 - 00000000 ____D C:\2
2012-05-02 21:12 - 2012-05-02 21:12 - 00021738 ____A C:\Users\REALITY\Downloads\100.xhtml
2012-04-27 21:32 - 2012-06-13 09:48 - 01112064 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorets.dll
2012-04-27 19:55 - 2012-06-13 09:48 - 00210944 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\rdpwd.sys
2012-04-25 23:25 - 2012-04-25 23:25 - 00000000 ____D C:\Users\All Users\Mozilla
2012-04-25 21:41 - 2012-06-13 09:48 - 00149504 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorekmts.dll
2012-04-25 21:41 - 2012-06-13 09:48 - 00077312 ____A (Microsoft Corporation) C:\Windows\System32\rdpwsx.dll
2012-04-25 21:34 - 2012-06-13 09:48 - 00009216 ____A (Microsoft Corporation) C:\Windows\System32\rdrmemptylst.exe
2012-04-24 05:22 - 2012-04-09 12:20 - 00000736 ____A C:\Users\REALITY\Documents\****.txt
2012-04-23 15:28 - 2012-04-23 15:28 - 00002212 ____A C:\Users\Public\Desktop\Google Earth.lnk
2012-04-23 15:28 - 2012-04-23 15:26 - 00000000 ____D C:\Program Files (x86)\Google
2012-04-23 15:28 - 2011-11-30 08:18 - 00000000 ____D C:\Users\REALITY\AppData\Local\Google
2012-04-23 15:26 - 2012-04-23 15:26 - 00739816 ____A (Google Inc.) C:\Users\REALITY\Downloads\GoogleEarthSetup.exe
2012-04-20 10:15 - 2012-02-06 18:14 - 00000000 ____D C:\Windows\SysWOW64\directx
2012-04-13 07:31 - 2009-07-13 18:34 - 00000478 ____A C:\Windows\win.ini
2012-04-10 14:09 - 2012-04-10 13:32 - 00155091 ____A C:\debug.fz10.mes
2012-04-10 13:58 - 2012-04-10 13:32 - 00000287 ____A C:\debug.fz10.reg
2012-04-10 13:58 - 2012-04-10 13:30 - 00001632 ____A C:\debug.fz10.log
2012-04-09 11:43 - 2012-03-03 18:28 - 00000000 ____D C:\Users\All Users\VMware
2012-04-09 11:41 - 2012-03-05 02:44 - 00000000 ____D C:\Users\REALITY\AppData\Roaming\VMware
2012-04-09 11:40 - 2012-02-09 16:23 - 00000000 ____D C:\Users\REALITY\AppData\Roaming\Opera
2012-04-09 11:40 - 2012-02-09 16:23 - 00000000 ____D C:\Users\REALITY\AppData\Local\Opera
2012-04-09 11:40 - 2011-11-30 08:18 - 00000000 ____D C:\Users\REALITY\AppData\Local\Deployment
2012-04-09 11:39 - 2012-02-09 16:46 - 00000000 ____D C:\Program Files (x86)\K-Meleon
2012-04-09 11:38 - 2012-04-02 20:40 - 00000000 ____D C:\Users\All Users\NexonUS
2012-04-08 19:09 - 2012-04-05 14:56 - 00013275 ____A C:\Users\REALITY\Documents\atlantica.xlsx
2012-04-05 21:34 - 2012-04-05 21:34 - 00187392 ____A C:\Windows\System32\clinfo.exe
2012-04-05 21:34 - 2012-04-05 21:34 - 00074752 ____A (Advanced Micro Devices Inc.) C:\Windows\System32\OpenVideo64.dll
2012-04-05 21:34 - 2012-04-05 21:34 - 00064512 ____A (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll
2012-04-05 21:33 - 2012-04-05 21:33 - 16457216 ____A (Advanced Micro Devices Inc.) C:\Windows\System32\amdocl64.dll
2012-04-05 21:33 - 2012-04-05 21:33 - 00063488 ____A (Advanced Micro Devices Inc.) C:\Windows\System32\OVDecode64.dll
2012-04-05 21:33 - 2012-04-05 21:33 - 00056320 ____A (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll
2012-04-05 21:32 - 2012-04-05 21:32 - 13007872 ____A (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll
2012-04-05 21:22 - 2012-04-05 21:22 - 11174400 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\Drivers\atikmdag.sys
2012-04-05 18:23 - 2012-04-05 18:23 - 00245896 ____A C:\Windows\SysWOW64\atiapfxx.blb
2012-04-05 18:23 - 2012-04-05 18:23 - 00245896 ____A C:\Windows\System32\atiapfxx.blb
2012-04-05 18:22 - 2012-04-05 18:22 - 00159744 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\atiapfxx.exe
2012-04-05 18:21 - 2012-02-14 19:18 - 00909312 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll
2012-04-05 18:20 - 2012-04-05 18:20 - 01067520 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\aticfx64.dll
2012-04-05 18:16 - 2012-04-05 18:16 - 00503808 ____A (AMD) C:\Windows\System32\atieclxx.exe
2012-04-05 18:16 - 2012-04-05 18:16 - 00442368 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\ATIDEMGX.dll
2012-04-05 18:16 - 2012-04-05 18:16 - 00236544 ____A (AMD) C:\Windows\System32\atiesrxx.exe
2012-04-05 18:14 - 2012-04-05 18:14 - 00120320 ____A (AMD) C:\Windows\System32\atitmm64.dll
2012-04-05 18:14 - 2012-04-05 18:14 - 00059392 ____A (ATI Technologies, Inc.) C:\Windows\System32\atiedu64.dll
2012-04-05 18:14 - 2012-04-05 18:14 - 00043520 ____A (ATI Technologies, Inc.) C:\Windows\SysWOW64\ati2edxx.dll
2012-04-05 18:14 - 2012-04-05 18:14 - 00021504 ____A (AMD) C:\Windows\System32\atimuixx.dll
2012-04-05 18:13 - 2012-02-14 19:07 - 06800896 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll
2012-04-05 18:10 - 2012-04-05 18:10 - 26181632 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\atio6axx.dll
2012-04-05 18:00 - 2011-04-20 01:27 - 00064000 ____A (AMD) C:\Windows\System32\coinst.dll
2012-04-05 17:54 - 2012-04-05 17:54 - 07479296 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atidxx64.dll
2012-04-05 17:50 - 2012-04-05 17:50 - 19753984 ____A (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll
2012-04-05 17:35 - 2012-04-05 17:35 - 01120768 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atiumd6v.dll
2012-04-05 17:34 - 2012-04-05 17:34 - 06203392 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll
2012-04-05 17:34 - 2012-04-05 17:34 - 04731904 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atiumd6a.dll
2012-04-05 17:34 - 2012-04-05 17:34 - 01831424 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdmv.dll
2012-04-05 17:30 - 2012-04-05 17:30 - 00051200 ____A (Advanced Micro Devices Inc.) C:\Windows\System32\aticalrt64.dll
2012-04-05 17:30 - 2012-04-05 17:30 - 00046080 ____A (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll
2012-04-05 17:30 - 2012-04-05 17:30 - 00044544 ____A (Advanced Micro Devices Inc.) C:\Windows\System32\aticalcl64.dll
2012-04-05 17:30 - 2012-04-05 17:30 - 00044032 ____A (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll
2012-04-05 17:29 - 2012-04-05 17:29 - 16090624 ____A (Advanced Micro Devices Inc.) C:\Windows\System32\aticaldd64.dll
2012-04-05 17:29 - 2012-04-05 17:29 - 02631008 ____A C:\Windows\System32\atiumd6a.cap
2012-04-05 17:25 - 2012-04-05 17:25 - 13764096 ____A (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll
2012-04-05 17:23 - 2012-04-05 17:23 - 07431680 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atiumd64.dll
2012-04-05 17:22 - 2012-04-05 17:22 - 04795904 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll
2012-04-05 17:21 - 2012-04-05 17:21 - 02664704 ____A C:\Windows\SysWOW64\atiumdva.cap
2012-04-05 17:11 - 2012-04-05 17:11 - 00514560 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\atiadlxx.dll
2012-04-05 17:11 - 2012-04-05 17:11 - 00360448 ____A (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll
2012-04-05 17:11 - 2012-04-05 17:11 - 00041984 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atig6txx.dll
2012-04-05 17:11 - 2012-04-05 17:11 - 00017408 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atig6pxx.dll
2012-04-05 17:11 - 2012-04-05 17:11 - 00014848 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll
2012-04-05 17:11 - 2012-04-05 17:11 - 00014848 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atiglpxx.dll
2012-04-05 17:10 - 2012-04-05 17:10 - 00343040 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\Drivers\atikmpag.sys
2012-04-05 17:10 - 2012-04-05 17:10 - 00033280 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll
2012-04-05 17:09 - 2012-04-05 17:09 - 00053248 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\Drivers\ati2erec.dll
2012-04-05 17:09 - 2012-04-05 17:09 - 00044544 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atiu9p64.dll
2012-04-05 17:09 - 2012-04-05 17:09 - 00032256 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll
2012-04-05 17:09 - 2012-02-14 18:12 - 00041984 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll
2012-04-05 17:09 - 2011-04-20 01:21 - 00054784 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atiuxp64.dll
2012-04-05 17:06 - 2012-04-05 17:06 - 00054784 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atimpc64.dll
2012-04-05 17:06 - 2012-04-05 17:06 - 00054784 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\amdpcom64.dll
2012-04-05 17:06 - 2012-04-05 17:06 - 00053760 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
2012-04-05 17:06 - 2012-04-05 17:06 - 00053760 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
2012-04-02 20:57 - 2012-04-02 20:57 - 00000000 ____D C:\Users\All Users\Nexon
2012-04-02 19:41 - 2012-04-02 19:41 - 00000000 ____D C:\Program Files (x86)\Pando Networks
2012-04-01 23:33 - 2012-03-05 02:44 - 00000000 ____D C:\Users\REALITY\AppData\Local\VMware
2012-04-01 09:43 - 2009-07-13 21:32 - 00000000 ____D C:\Windows\System32\FxsTmp
ZeroAccess:
C:\Windows\Installer\{e1e8d27c-54ff-d1a8-bb9d-6e7743dc063d}
C:\Windows\Installer\{e1e8d27c-54ff-d1a8-bb9d-6e7743dc063d}\@
C:\Windows\Installer\{e1e8d27c-54ff-d1a8-bb9d-6e7743dc063d}\L
C:\Windows\Installer\{e1e8d27c-54ff-d1a8-bb9d-6e7743dc063d}\U
C:\Windows\Installer\{e1e8d27c-54ff-d1a8-bb9d-6e7743dc063d}\U\800000cb.@
ZeroAccess:
C:\Users\REALITY\AppData\Local\{e1e8d27c-54ff-d1a8-bb9d-6e7743dc063d}
C:\Users\REALITY\AppData\Local\{e1e8d27c-54ff-d1a8-bb9d-6e7743dc063d}\@
C:\Users\REALITY\AppData\Local\{e1e8d27c-54ff-d1a8-bb9d-6e7743dc063d}\L
C:\Users\REALITY\AppData\Local\{e1e8d27c-54ff-d1a8-bb9d-6e7743dc063d}\U
========================= Known DLLs (Whitelisted) ============
========================= Bamital & volsnap Check ============
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe
[2009-07-13 15:19] - [2012-06-27 11:08] - 0328704 ____A (Microsoft Corporation) FCB084FA3DCB7449F3BAA13312A215B4
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
==================== EXE ASSOCIATION =====================
HKLM\...\.exe: exefile => OK
HKLM\...\exefile\DefaultIcon: %1 => OK
HKLM\...\exefile\open\command: "%1" %* => OK
========================= Memory info ======================
Percentage of memory in use: 16%
Total physical RAM: 3959.12 MB
Available physical RAM: 3320.46 MB
Total Pagefile: 3957.27 MB
Available Pagefile: 3307.32 MB
Total Virtual: 8192 MB
Available Virtual: 8191.9 MB
======================= Partitions =========================
1 Drive c: () (Fixed) (Total:139.73 GB) (Free:6.95 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
3 Drive f: (e) (Fixed) (Total:931.51 GB) (Free:127.38 GB) NTFS
4 Drive g: (KINGSTON) (Removable) (Total:0.48 GB) (Free:0.38 GB) FAT
5 Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS
6 Drive y: () (Fixed) (Total:298.09 GB) (Free:38.21 GB) NTFS
Disk ### Status Size Free Dyn Gpt
-------- ------------- ------- ------- --- ---
Disk 0 Online 298 GB 0 B
Disk 1 Online 139 GB 0 B
Disk 2 Online 931 GB 0 B
Disk 3 Online 492 MB 0 B
Partitions of Disk 0:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 298 GB 1024 KB
======================================================================================================
Disk: 0
Partition 1
Type : 07
Hidden: No
Active: No
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 1 Y NTFS Partition 298 GB Healthy
======================================================================================================
Partitions of Disk 1:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 139 GB 1024 KB
======================================================================================================
Disk: 1
Partition 1
Type : 07
Hidden: No
Active: Yes
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 2 C NTFS Partition 139 GB Healthy
======================================================================================================
Partitions of Disk 2:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 931 GB 1024 KB
======================================================================================================
Disk: 2
Partition 1
Type : 07
Hidden: No
Active: No
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 3 F e NTFS Partition 931 GB Healthy
======================================================================================================
Partitions of Disk 3:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 491 MB 16 KB
======================================================================================================
Disk: 3
Partition 1
Type : 0E
Hidden: No
Active: No
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 4 G KINGSTON FAT Removable 491 MB Healthy
======================================================================================================
==========================================================
Last Boot: 2012-06-17 23:04
======================= End Of Log ==========================
Ran by SYSTEM at 28-06-2012 00:16:45
Running from G:\
Windows 7 Ultimate (X64) OS Language: English(US)
The current controlset is ControlSet001
========================== Registry (Whitelisted) =============
HKLM\...\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\ipoint.exe" [2417032 2011-08-01] (Microsoft Corporation)
HKLM\...\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s [9650720 2009-12-25] (Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [500208 2010-03-06] (Adobe Systems Incorporated)
HKLM\...\Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey [1271168 2012-03-26] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [843712 2012-01-02] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [IJNetworkScanUtility] C:\Program Files (x86)\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe [206240 2010-08-23] (CANON INC.)
HKLM-x32\...\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices [91520 2010-03-13] (Microsoft Corporation)
HKLM-x32\...\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59240 2011-11-01] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [421888 2011-10-24] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [254696 2012-01-18] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [641664 2012-04-06] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml [10752 2012-02-20] ()
HKU\REALITY\...\Run: [Google Update] "C:\Users\REALITY\AppData\Local\Google\Update\GoogleUpdate.exe" /c [136176 2011-11-30] (Google Inc.)
HKU\REALITY\...\Run: [Vidalia] "C:\Program Files (x86)\Vidalia Bundle\Vidalia\vidalia.exe" [x]
Tcpip\Parameters: [DhcpNameServer] 209.18.47.61 209.18.47.62
Startup: C:\Users\REALITY\Start Menu\Programs\Startup\OneNote 2010 Screen Clipper and Launcher.lnk
ShortcutTarget: OneNote 2010 Screen Clipper and Launcher.lnk -> C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation)
==================== Services (Whitelisted) ======
2 Adobe Licensing Console; C:\Windows\SysWow64\msvfd32.exe [818169 2012-01-03] ( )
2 mi-raysat_3dsmax2010_32; "C:\Program Files (x86)\Autodesk\3ds Max 2010\mentalray\satellite\raysat_3dsmax2010_32server.exe" [86016 2009-03-12] ()
2 mi-raysat_3dsmax2010_64; "C:\Program Files\Autodesk\3ds Max 2010\mentalray\satellite\raysat_3dsmax2010_64server.exe" [86016 2009-03-12] ()
2 MsMpSvc; "C:\Program Files\Microsoft Security Client\MsMpEng.exe" [12600 2012-03-26] (Microsoft Corporation)
2 MSSQL$SQLEXPRESS; "C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe" -sSQLEXPRESS [57617752 2009-03-30] (Microsoft Corporation)
4 MSSQLServerADHelper100; "C:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE" [61976 2009-07-22] (Microsoft Corporation)
4 SQLAgent$SQLEXPRESS; "C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE" -I SQLEXPRESS [427880 2009-03-30] (Microsoft Corporation)
2 UNS; "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe" [2320920 2009-12-09] (Intel Corporation)
========================== Drivers (Whitelisted) =============
4 RsFx0103; C:\Windows\System32\Drivers\RsFx0103.sys [311656 2009-03-30] (Microsoft Corporation)
0 sptd; C:\Windows\System32\Drivers\sptd.sys [530488 2011-12-04] (Duplex Secure Ltd.)
3 VSPerfDrv100; \??\C:\Program Files (x86)\Microsoft Visual Studio 10.0\Team Tools\Performance Tools\x64\VSPerfDrv100.sys [68440 2010-03-17] (Microsoft Corporation)
3 MSICDSetup; \??\E:\CDriver64.sys [x]
3 Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys [x]
3 tsusbhub; C:\Windows\System32\drivers\tsusbhub.sys [x]
3 VGPU; C:\Windows\System32\drivers\rdvgkmd.sys [x]
0 vmci; C:\Windows\System32\DRIVERS\vmci.sys [x]
3 VMnetAdapter; C:\Windows\System32\DRIVERS\vmnetadapter.sys [x]
========================== NetSvcs (Whitelisted) ===========
============ One Month Created Files and Folders ==============
2012-06-28 00:16 - 2012-06-28 00:16 - 00000000 ____D C:\FRST
2012-06-27 12:37 - 2012-06-27 12:37 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.740A459601A8D7BE
2012-06-27 12:36 - 2012-06-27 12:37 - 00001266 ____A C:\Users\REALITY\Desktop\shutdownstop.exe.lnk
2012-06-27 12:28 - 2012-06-27 12:28 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.F6F38D8FF995730A
2012-06-27 12:24 - 2012-06-27 12:24 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.26C803E20261B60A
2012-06-27 12:19 - 2012-06-27 12:19 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2012-06-27 12:18 - 2012-06-27 12:19 - 00000000 ____D C:\Program Files\Microsoft Security Client
2012-06-27 12:18 - 2012-06-27 12:18 - 12621696 ____A (Microsoft Corporation) C:\Users\REALITY\Downloads\mseinstall.exe
2012-06-27 12:13 - 2012-06-27 12:13 - 00347424 ____A (Microsoft Corporation) C:\Users\REALITY\Downloads\MicrosoftFixit.wu.LB.80264256829484749.3.1.Run.exe
2012-06-27 11:40 - 2012-06-27 11:40 - 00677376 ____A C:\Users\REALITY\Downloads\MicrosoftFixit50687(1).msi
2012-06-27 11:37 - 2012-06-27 11:37 - 00347424 ____A (Microsoft Corporation) C:\Users\REALITY\Downloads\MicrosoftFixit.WindowsFirewall.RNP.80264256125479141.2.1.Run.exe
2012-06-27 11:32 - 2012-06-27 11:32 - 00677376 ____A C:\Users\REALITY\Downloads\MicrosoftFixit50687.msi
2012-06-27 11:31 - 2012-06-27 11:31 - 00347424 ____A (Microsoft Corporation) C:\Users\REALITY\Downloads\MicrosoftFixit.wu.Run.exe
2012-06-27 06:27 - 2012-06-27 11:09 - 00000000 ___AD C:\Kaspersky Rescue Disk 10.0
2012-06-26 16:19 - 2012-06-26 16:19 - 00000000 __SHD C:\Windows\System32\%APPDATA%
2012-06-26 16:05 - 2012-06-26 16:05 - 00140832 ____A C:\Windows\SysWOW64\Drivers\str.sys
2012-06-18 13:38 - 2012-06-02 14:19 - 02428952 ____A (Microsoft Corporation) C:\Windows\System32\wuaueng.dll
2012-06-18 13:38 - 2012-06-02 14:19 - 00701976 ____A (Microsoft Corporation) C:\Windows\System32\wuapi.dll
2012-06-18 13:38 - 2012-06-02 14:19 - 00186752 ____A (Microsoft Corporation) C:\Windows\System32\wuwebv.dll
2012-06-18 13:38 - 2012-06-02 14:19 - 00057880 ____A (Microsoft Corporation) C:\Windows\System32\wuauclt.exe
2012-06-18 13:38 - 2012-06-02 14:19 - 00044056 ____A (Microsoft Corporation) C:\Windows\System32\wups2.dll
2012-06-18 13:38 - 2012-06-02 14:19 - 00038424 ____A (Microsoft Corporation) C:\Windows\System32\wups.dll
2012-06-18 13:38 - 2012-06-02 14:15 - 02622464 ____A (Microsoft Corporation) C:\Windows\System32\wucltux.dll
2012-06-18 13:38 - 2012-06-02 14:15 - 00099840 ____A (Microsoft Corporation) C:\Windows\System32\wudriver.dll
2012-06-18 13:38 - 2012-06-02 14:15 - 00036864 ____A (Microsoft Corporation) C:\Windows\System32\wuapp.exe
2012-06-16 10:09 - 2012-06-16 10:09 - 00374632 ____A C:\Windows\Minidump\061612-34975-01.dmp
2012-06-16 10:09 - 2012-06-16 10:09 - 00000000 ____D C:\Windows\Minidump
2012-06-15 06:44 - 2012-06-15 06:44 - 00000000 ____D C:\Users\REALITY\AppData\Local\Macromedia
2012-06-15 06:02 - 2012-05-17 18:47 - 17807360 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2012-06-15 06:02 - 2012-05-17 18:16 - 10924032 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2012-06-15 06:02 - 2012-05-17 18:06 - 02311680 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2012-06-15 06:02 - 2012-05-17 17:59 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2012-06-15 06:02 - 2012-05-17 17:59 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2012-06-15 06:02 - 2012-05-17 17:58 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2012-06-15 06:02 - 2012-05-17 17:58 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2012-06-15 06:02 - 2012-05-17 17:56 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2012-06-15 06:02 - 2012-05-17 17:55 - 00818688 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2012-06-15 06:02 - 2012-05-17 17:55 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2012-06-15 06:02 - 2012-05-17 17:54 - 02144768 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2012-06-15 06:02 - 2012-05-17 17:51 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2012-06-15 06:02 - 2012-05-17 17:51 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2012-06-15 06:02 - 2012-05-17 17:47 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2012-06-15 06:02 - 2012-05-17 15:11 - 12314624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2012-06-15 06:02 - 2012-05-17 14:48 - 09737728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2012-06-15 06:02 - 2012-05-17 14:45 - 01800192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2012-06-15 06:02 - 2012-05-17 14:36 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2012-06-15 06:02 - 2012-05-17 14:35 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2012-06-15 06:02 - 2012-05-17 14:35 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2012-06-15 06:02 - 2012-05-17 14:33 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2012-06-15 06:02 - 2012-05-17 14:31 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2012-06-15 06:02 - 2012-05-17 14:29 - 00716800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2012-06-15 06:02 - 2012-05-17 14:29 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2012-06-15 06:02 - 2012-05-17 14:27 - 01793024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2012-06-15 06:02 - 2012-05-17 14:25 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2012-06-15 06:02 - 2012-05-17 14:24 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2012-06-15 06:02 - 2012-05-17 14:20 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2012-06-13 09:48 - 2012-05-14 17:32 - 03146752 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys
2012-06-13 09:48 - 2012-05-04 03:06 - 05559664 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2012-06-13 09:48 - 2012-05-04 02:03 - 03968368 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2012-06-13 09:48 - 2012-05-04 02:03 - 03913072 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2012-06-13 09:48 - 2012-04-27 21:32 - 01112064 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorets.dll
2012-06-13 09:48 - 2012-04-27 19:55 - 00210944 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\rdpwd.sys
2012-06-13 09:48 - 2012-04-25 21:41 - 00149504 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorekmts.dll
2012-06-13 09:48 - 2012-04-25 21:41 - 00077312 ____A (Microsoft Corporation) C:\Windows\System32\rdpwsx.dll
2012-06-13 09:48 - 2012-04-25 21:34 - 00009216 ____A (Microsoft Corporation) C:\Windows\System32\rdrmemptylst.exe
2012-06-05 12:56 - 2012-06-05 12:56 - 00376800 ____A C:\Users\REALITY\Documents\parking citation.xps
2012-06-02 11:45 - 2012-06-07 08:14 - 00000499 ____A C:\Users\REALITY\Documents\disadvantages.txt
2012-06-01 18:46 - 2012-06-01 18:46 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2012-06-01 18:46 - 2012-06-01 18:46 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2012-06-01 18:33 - 2012-06-27 12:26 - 00000898 ____A C:\Windows\PFRO.log
2012-05-30 20:37 - 2012-05-30 20:37 - 00002186 ____A C:\Users\REALITY\Desktop\REA's TESTware for CLEP College Composition.lnk
2012-05-29 16:16 - 2012-05-29 16:16 - 01285500 ____A C:\Users\REALITY\Downloads\student_consent_for_release_of_records_form-2.psd
2012-05-29 16:08 - 2012-05-29 16:08 - 01347100 ____A C:\Users\REALITY\Downloads\student_consent_for_release_of_records_form-1.psd
============ 3 Months Modified Files and Folders =============
2012-06-28 00:16 - 2012-06-28 00:16 - 00000000 ____D C:\FRST
2012-06-27 22:49 - 2012-05-27 00:00 - 00001447 ____A C:\Windows\setupact.log
2012-06-27 22:49 - 2009-07-13 21:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2012-06-27 22:36 - 2012-04-23 15:26 - 00000896 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2012-06-27 22:33 - 2011-11-30 08:18 - 00000916 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4139173926-379787292-1441203389-1000UA.job
2012-06-27 13:23 - 2009-07-13 20:45 - 00014016 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2012-06-27 13:23 - 2009-07-13 20:45 - 00014016 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2012-06-27 12:37 - 2012-06-27 12:37 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.740A459601A8D7BE
2012-06-27 12:37 - 2012-06-27 12:36 - 00001266 ____A C:\Users\REALITY\Desktop\shutdownstop.exe.lnk
2012-06-27 12:31 - 2012-04-23 15:26 - 00000900 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2012-06-27 12:28 - 2012-06-27 12:28 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.F6F38D8FF995730A
2012-06-27 12:28 - 2011-11-30 07:11 - 01454289 ____A C:\Windows\WindowsUpdate.log
2012-06-27 12:27 - 2012-01-11 11:44 - 00000000 __SHD C:\Users\REALITY\AppData\Local\{e1e8d27c-54ff-d1a8-bb9d-6e7743dc063d}
2012-06-27 12:26 - 2012-06-01 18:33 - 00000898 ____A C:\Windows\PFRO.log
2012-06-27 12:24 - 2012-06-27 12:24 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.26C803E20261B60A
2012-06-27 12:19 - 2012-06-27 12:19 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2012-06-27 12:19 - 2012-06-27 12:18 - 00000000 ____D C:\Program Files\Microsoft Security Client
2012-06-27 12:19 - 2011-12-18 09:41 - 00486096 ____A C:\Windows\System32\perfh011.dat
2012-06-27 12:19 - 2011-12-18 09:41 - 00147520 ____A C:\Windows\System32\perfc011.dat
2012-06-27 12:19 - 2011-12-03 17:12 - 02183698 ____A C:\Windows\SysWOW64\PerfStringBackup.INI
2012-06-27 12:19 - 2011-11-30 13:49 - 00001945 ____A C:\Windows\epplauncher.mif
2012-06-27 12:19 - 2011-11-30 08:06 - 00497690 ____A C:\Windows\System32\perfh012.dat
2012-06-27 12:19 - 2011-11-30 08:06 - 00145808 ____A C:\Windows\System32\perfc012.dat
2012-06-27 12:18 - 2012-06-27 12:18 - 12621696 ____A (Microsoft Corporation) C:\Users\REALITY\Downloads\mseinstall.exe
2012-06-27 12:13 - 2012-06-27 12:13 - 00347424 ____A (Microsoft Corporation) C:\Users\REALITY\Downloads\MicrosoftFixit.wu.LB.80264256829484749.3.1.Run.exe
2012-06-27 12:10 - 2011-12-03 05:57 - 00000000 ____D C:\Users\REALITY\AppData\Roaming\foobar2000
2012-06-27 12:07 - 2012-04-14 05:05 - 00000830 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job
2012-06-27 11:47 - 2009-07-13 21:13 - 02142656 ____A C:\Windows\System32\PerfStringBackup.INI
2012-06-27 11:40 - 2012-06-27 11:40 - 00677376 ____A C:\Users\REALITY\Downloads\MicrosoftFixit50687(1).msi
2012-06-27 11:37 - 2012-06-27 11:37 - 00347424 ____A (Microsoft Corporation) C:\Users\REALITY\Downloads\MicrosoftFixit.WindowsFirewall.RNP.80264256125479141.2.1.Run.exe
2012-06-27 11:32 - 2012-06-27 11:32 - 00677376 ____A C:\Users\REALITY\Downloads\MicrosoftFixit50687.msi
2012-06-27 11:31 - 2012-06-27 11:31 - 00347424 ____A (Microsoft Corporation) C:\Users\REALITY\Downloads\MicrosoftFixit.wu.Run.exe
2012-06-27 11:09 - 2012-06-27 06:27 - 00000000 ___AD C:\Kaspersky Rescue Disk 10.0
2012-06-27 11:08 - 2009-07-13 15:19 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe
2012-06-26 16:19 - 2012-06-26 16:19 - 00000000 __SHD C:\Windows\System32\%APPDATA%
2012-06-26 16:05 - 2012-06-26 16:05 - 00140832 ____A C:\Windows\SysWOW64\Drivers\str.sys
2012-06-26 09:48 - 2012-04-24 06:02 - 00001369 ____A C:\Users\REALITY\Documents\list.txt
2012-06-26 09:46 - 2012-03-27 12:30 - 00001441 ____A C:\Users\REALITY\Documents\stuff2.txt
2012-06-25 09:12 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\rescache
2012-06-25 06:43 - 2012-04-25 23:25 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2012-06-24 23:09 - 2012-05-22 21:24 - 00000993 ____A C:\Users\REALITY\Documents\questions for digipen.txt
2012-06-24 23:09 - 2012-02-04 15:23 - 00005296 ____A C:\Users\REALITY\Documents\hi.txt
2012-06-24 18:16 - 2011-12-04 07:33 - 00000000 ____D C:\Users\REALITY\AppData\Roaming\uTorrent
2012-06-24 00:33 - 2011-11-30 08:18 - 00000864 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4139173926-379787292-1441203389-1000Core.job
2012-06-23 15:59 - 2011-12-12 16:43 - 00002868 ____A C:\Users\REALITY\Documents\stuff.txt
2012-06-23 13:07 - 2012-04-14 05:05 - 00426184 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2012-06-23 13:07 - 2011-12-03 16:57 - 00070344 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2012-06-17 11:24 - 2011-11-30 11:18 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2012-06-16 10:09 - 2012-06-16 10:09 - 00374632 ____A C:\Windows\Minidump\061612-34975-01.dmp
2012-06-16 10:09 - 2012-06-16 10:09 - 00000000 ____D C:\Windows\Minidump
2012-06-15 06:44 - 2012-06-15 06:44 - 00000000 ____D C:\Users\REALITY\AppData\Local\Macromedia
2012-06-15 06:14 - 2009-07-13 20:45 - 00530448 ____A C:\Windows\System32\FNTCACHE.DAT
2012-06-15 06:11 - 2012-01-01 23:10 - 00000000 ____D C:\Users\All Users\Microsoft Help
2012-06-15 06:07 - 2011-11-30 07:29 - 58957832 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
2012-06-11 21:34 - 2011-11-30 08:18 - 00002369 ____A C:\Users\REALITY\Desktop\Google Chrome.lnk
2012-06-11 16:57 - 2011-12-05 00:21 - 00000000 ____D C:\Users\REALITY\Downloads\tx
2012-06-11 15:49 - 2011-12-19 22:05 - 00000000 ____D C:\Program Files (x86)\DigiPen
2012-06-09 18:58 - 2012-05-04 07:53 - 00000777 ____A C:\Users\REALITY\Documents\need for digipen.txt
2012-06-08 21:17 - 2012-05-23 17:11 - 00010586 ____A C:\Users\REALITY\Documents\digipendatesandcostspaid.xlsx
2012-06-07 08:14 - 2012-06-02 11:45 - 00000499 ____A C:\Users\REALITY\Documents\disadvantages.txt
2012-06-05 16:29 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\System32\NDF
2012-06-05 12:56 - 2012-06-05 12:56 - 00376800 ____A C:\Users\REALITY\Documents\parking citation.xps
2012-06-02 14:19 - 2012-06-18 13:38 - 02428952 ____A (Microsoft Corporation) C:\Windows\System32\wuaueng.dll
2012-06-02 14:19 - 2012-06-18 13:38 - 00701976 ____A (Microsoft Corporation) C:\Windows\System32\wuapi.dll
2012-06-02 14:19 - 2012-06-18 13:38 - 00186752 ____A (Microsoft Corporation) C:\Windows\System32\wuwebv.dll
2012-06-02 14:19 - 2012-06-18 13:38 - 00057880 ____A (Microsoft Corporation) C:\Windows\System32\wuauclt.exe
2012-06-02 14:19 - 2012-06-18 13:38 - 00044056 ____A (Microsoft Corporation) C:\Windows\System32\wups2.dll
2012-06-02 14:19 - 2012-06-18 13:38 - 00038424 ____A (Microsoft Corporation) C:\Windows\System32\wups.dll
2012-06-02 14:15 - 2012-06-18 13:38 - 02622464 ____A (Microsoft Corporation) C:\Windows\System32\wucltux.dll
2012-06-02 14:15 - 2012-06-18 13:38 - 00099840 ____A (Microsoft Corporation) C:\Windows\System32\wudriver.dll
2012-06-02 14:15 - 2012-06-18 13:38 - 00036864 ____A (Microsoft Corporation) C:\Windows\System32\wuapp.exe
2012-06-02 08:27 - 2012-04-23 09:36 - 00000000 ____D C:\Users\All Users\Rosetta Stone
2012-06-01 19:17 - 2012-02-08 20:40 - 00007614 ____A C:\Users\REALITY\AppData\Local\Resmon.ResmonCfg
2012-06-01 18:46 - 2012-06-01 18:46 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2012-06-01 18:46 - 2012-06-01 18:46 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2012-06-01 18:33 - 2011-12-04 07:34 - 00000000 ____D C:\Program Files (x86)\uTorrent
2012-05-30 20:37 - 2012-05-30 20:37 - 00002186 ____A C:\Users\REALITY\Desktop\REA's TESTware for CLEP College Composition.lnk
2012-05-30 20:37 - 2012-05-05 06:38 - 00000000 ____D C:\Program Files (x86)\REA
2012-05-29 16:16 - 2012-05-29 16:16 - 01285500 ____A C:\Users\REALITY\Downloads\student_consent_for_release_of_records_form-2.psd
2012-05-29 16:08 - 2012-05-29 16:08 - 01347100 ____A C:\Users\REALITY\Downloads\student_consent_for_release_of_records_form-1.psd
2012-05-29 15:58 - 2011-12-04 07:32 - 00000000 ____D C:\Program Files\PeerBlock
2012-05-27 00:00 - 2012-05-27 00:00 - 00000000 ____A C:\Windows\setuperr.log
2012-05-26 05:30 - 2011-11-30 10:28 - 00000000 ____D C:\Users\REALITY\AppData\Roaming\vlc
2012-05-25 08:00 - 2011-12-04 09:15 - 00000000 ____D C:\Users\REALITY\AppData\Roaming\DAEMON Tools Lite
2012-05-24 17:03 - 2012-05-23 14:43 - 00011753 ____A C:\Users\REALITY\Documents\digipen budget.xlsx
2012-05-22 13:11 - 2012-05-22 13:11 - 00000943 ____A C:\Users\Public\Desktop\µTorrent.lnk
2012-05-21 14:25 - 2012-05-21 14:25 - 01213218 ____A C:\Users\REALITY\Documents\psychologytest.xps
2012-05-17 18:47 - 2012-06-15 06:02 - 17807360 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2012-05-17 18:16 - 2012-06-15 06:02 - 10924032 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2012-05-17 18:06 - 2012-06-15 06:02 - 02311680 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2012-05-17 17:59 - 2012-06-15 06:02 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2012-05-17 17:59 - 2012-06-15 06:02 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2012-05-17 17:58 - 2012-06-15 06:02 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2012-05-17 17:58 - 2012-06-15 06:02 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2012-05-17 17:56 - 2012-06-15 06:02 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2012-05-17 17:55 - 2012-06-15 06:02 - 00818688 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2012-05-17 17:55 - 2012-06-15 06:02 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2012-05-17 17:54 - 2012-06-15 06:02 - 02144768 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2012-05-17 17:51 - 2012-06-15 06:02 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2012-05-17 17:51 - 2012-06-15 06:02 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2012-05-17 17:47 - 2012-06-15 06:02 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2012-05-17 15:11 - 2012-06-15 06:02 - 12314624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2012-05-17 14:48 - 2012-06-15 06:02 - 09737728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2012-05-17 14:45 - 2012-06-15 06:02 - 01800192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2012-05-17 14:36 - 2012-06-15 06:02 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2012-05-17 14:35 - 2012-06-15 06:02 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2012-05-17 14:35 - 2012-06-15 06:02 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2012-05-17 14:33 - 2012-06-15 06:02 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2012-05-17 14:31 - 2012-06-15 06:02 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2012-05-17 14:29 - 2012-06-15 06:02 - 00716800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2012-05-17 14:29 - 2012-06-15 06:02 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2012-05-17 14:27 - 2012-06-15 06:02 - 01793024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2012-05-17 14:25 - 2012-06-15 06:02 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2012-05-17 14:24 - 2012-06-15 06:02 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2012-05-17 14:20 - 2012-06-15 06:02 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2012-05-14 17:32 - 2012-06-13 09:48 - 03146752 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys
2012-05-11 19:42 - 2012-05-11 19:42 - 00000000 ____D C:\Users\All Users\ATI
2012-05-11 19:42 - 2012-05-11 19:42 - 00000000 ____D C:\Program Files (x86)\AMD AVT
2012-05-11 19:42 - 2012-03-15 09:36 - 00000000 ____D C:\Users\All Users\AMD
2012-05-11 19:41 - 2012-05-11 19:41 - 00000000 ____D C:\Program Files (x86)\AMD APP
2012-05-11 19:41 - 2011-11-30 09:05 - 00000000 ____D C:\Program Files\ATI Technologies
2012-05-11 19:12 - 2009-07-13 23:46 - 00000000 ____D C:\Program Files\Windows Journal
2012-05-11 17:54 - 2012-05-11 17:54 - 00000678 ____A C:\Users\Public\Desktop\osu!.lnk
2012-05-11 17:53 - 2012-05-11 17:53 - 00000000 ____D C:\Users\REALITY\AppData\Roaming\Downloaded Installations
2012-05-11 10:21 - 2012-01-03 08:16 - 00001535 ____A C:\Users\REALITY\Documents\apartments.txt
2012-05-08 19:45 - 2011-11-30 08:18 - 00160328 ____A C:\Users\REALITY\AppData\Local\GDIPFONTCACHEV1.DAT
2012-05-05 21:11 - 2012-01-30 16:42 - 00001372 ____A C:\Users\REALITY\Documents\accountsLOL.txt
2012-05-05 06:38 - 2012-05-05 06:38 - 00002181 ____A C:\Users\REALITY\Desktop\REA's TESTware for CLEP Introductory Sociology.lnk
2012-05-04 03:06 - 2012-06-13 09:48 - 05559664 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2012-05-04 02:03 - 2012-06-13 09:48 - 03968368 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2012-05-04 02:03 - 2012-06-13 09:48 - 03913072 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2012-05-02 21:14 - 2011-11-30 09:22 - 00000000 ____D C:\2
2012-05-02 21:12 - 2012-05-02 21:12 - 00021738 ____A C:\Users\REALITY\Downloads\100.xhtml
2012-04-27 21:32 - 2012-06-13 09:48 - 01112064 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorets.dll
2012-04-27 19:55 - 2012-06-13 09:48 - 00210944 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\rdpwd.sys
2012-04-25 23:25 - 2012-04-25 23:25 - 00000000 ____D C:\Users\All Users\Mozilla
2012-04-25 21:41 - 2012-06-13 09:48 - 00149504 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorekmts.dll
2012-04-25 21:41 - 2012-06-13 09:48 - 00077312 ____A (Microsoft Corporation) C:\Windows\System32\rdpwsx.dll
2012-04-25 21:34 - 2012-06-13 09:48 - 00009216 ____A (Microsoft Corporation) C:\Windows\System32\rdrmemptylst.exe
2012-04-24 05:22 - 2012-04-09 12:20 - 00000736 ____A C:\Users\REALITY\Documents\****.txt
2012-04-23 15:28 - 2012-04-23 15:28 - 00002212 ____A C:\Users\Public\Desktop\Google Earth.lnk
2012-04-23 15:28 - 2012-04-23 15:26 - 00000000 ____D C:\Program Files (x86)\Google
2012-04-23 15:28 - 2011-11-30 08:18 - 00000000 ____D C:\Users\REALITY\AppData\Local\Google
2012-04-23 15:26 - 2012-04-23 15:26 - 00739816 ____A (Google Inc.) C:\Users\REALITY\Downloads\GoogleEarthSetup.exe
2012-04-20 10:15 - 2012-02-06 18:14 - 00000000 ____D C:\Windows\SysWOW64\directx
2012-04-13 07:31 - 2009-07-13 18:34 - 00000478 ____A C:\Windows\win.ini
2012-04-10 14:09 - 2012-04-10 13:32 - 00155091 ____A C:\debug.fz10.mes
2012-04-10 13:58 - 2012-04-10 13:32 - 00000287 ____A C:\debug.fz10.reg
2012-04-10 13:58 - 2012-04-10 13:30 - 00001632 ____A C:\debug.fz10.log
2012-04-09 11:43 - 2012-03-03 18:28 - 00000000 ____D C:\Users\All Users\VMware
2012-04-09 11:41 - 2012-03-05 02:44 - 00000000 ____D C:\Users\REALITY\AppData\Roaming\VMware
2012-04-09 11:40 - 2012-02-09 16:23 - 00000000 ____D C:\Users\REALITY\AppData\Roaming\Opera
2012-04-09 11:40 - 2012-02-09 16:23 - 00000000 ____D C:\Users\REALITY\AppData\Local\Opera
2012-04-09 11:40 - 2011-11-30 08:18 - 00000000 ____D C:\Users\REALITY\AppData\Local\Deployment
2012-04-09 11:39 - 2012-02-09 16:46 - 00000000 ____D C:\Program Files (x86)\K-Meleon
2012-04-09 11:38 - 2012-04-02 20:40 - 00000000 ____D C:\Users\All Users\NexonUS
2012-04-08 19:09 - 2012-04-05 14:56 - 00013275 ____A C:\Users\REALITY\Documents\atlantica.xlsx
2012-04-05 21:34 - 2012-04-05 21:34 - 00187392 ____A C:\Windows\System32\clinfo.exe
2012-04-05 21:34 - 2012-04-05 21:34 - 00074752 ____A (Advanced Micro Devices Inc.) C:\Windows\System32\OpenVideo64.dll
2012-04-05 21:34 - 2012-04-05 21:34 - 00064512 ____A (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll
2012-04-05 21:33 - 2012-04-05 21:33 - 16457216 ____A (Advanced Micro Devices Inc.) C:\Windows\System32\amdocl64.dll
2012-04-05 21:33 - 2012-04-05 21:33 - 00063488 ____A (Advanced Micro Devices Inc.) C:\Windows\System32\OVDecode64.dll
2012-04-05 21:33 - 2012-04-05 21:33 - 00056320 ____A (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll
2012-04-05 21:32 - 2012-04-05 21:32 - 13007872 ____A (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll
2012-04-05 21:22 - 2012-04-05 21:22 - 11174400 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\Drivers\atikmdag.sys
2012-04-05 18:23 - 2012-04-05 18:23 - 00245896 ____A C:\Windows\SysWOW64\atiapfxx.blb
2012-04-05 18:23 - 2012-04-05 18:23 - 00245896 ____A C:\Windows\System32\atiapfxx.blb
2012-04-05 18:22 - 2012-04-05 18:22 - 00159744 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\atiapfxx.exe
2012-04-05 18:21 - 2012-02-14 19:18 - 00909312 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll
2012-04-05 18:20 - 2012-04-05 18:20 - 01067520 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\aticfx64.dll
2012-04-05 18:16 - 2012-04-05 18:16 - 00503808 ____A (AMD) C:\Windows\System32\atieclxx.exe
2012-04-05 18:16 - 2012-04-05 18:16 - 00442368 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\ATIDEMGX.dll
2012-04-05 18:16 - 2012-04-05 18:16 - 00236544 ____A (AMD) C:\Windows\System32\atiesrxx.exe
2012-04-05 18:14 - 2012-04-05 18:14 - 00120320 ____A (AMD) C:\Windows\System32\atitmm64.dll
2012-04-05 18:14 - 2012-04-05 18:14 - 00059392 ____A (ATI Technologies, Inc.) C:\Windows\System32\atiedu64.dll
2012-04-05 18:14 - 2012-04-05 18:14 - 00043520 ____A (ATI Technologies, Inc.) C:\Windows\SysWOW64\ati2edxx.dll
2012-04-05 18:14 - 2012-04-05 18:14 - 00021504 ____A (AMD) C:\Windows\System32\atimuixx.dll
2012-04-05 18:13 - 2012-02-14 19:07 - 06800896 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll
2012-04-05 18:10 - 2012-04-05 18:10 - 26181632 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\atio6axx.dll
2012-04-05 18:00 - 2011-04-20 01:27 - 00064000 ____A (AMD) C:\Windows\System32\coinst.dll
2012-04-05 17:54 - 2012-04-05 17:54 - 07479296 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atidxx64.dll
2012-04-05 17:50 - 2012-04-05 17:50 - 19753984 ____A (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll
2012-04-05 17:35 - 2012-04-05 17:35 - 01120768 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atiumd6v.dll
2012-04-05 17:34 - 2012-04-05 17:34 - 06203392 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll
2012-04-05 17:34 - 2012-04-05 17:34 - 04731904 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atiumd6a.dll
2012-04-05 17:34 - 2012-04-05 17:34 - 01831424 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdmv.dll
2012-04-05 17:30 - 2012-04-05 17:30 - 00051200 ____A (Advanced Micro Devices Inc.) C:\Windows\System32\aticalrt64.dll
2012-04-05 17:30 - 2012-04-05 17:30 - 00046080 ____A (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll
2012-04-05 17:30 - 2012-04-05 17:30 - 00044544 ____A (Advanced Micro Devices Inc.) C:\Windows\System32\aticalcl64.dll
2012-04-05 17:30 - 2012-04-05 17:30 - 00044032 ____A (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll
2012-04-05 17:29 - 2012-04-05 17:29 - 16090624 ____A (Advanced Micro Devices Inc.) C:\Windows\System32\aticaldd64.dll
2012-04-05 17:29 - 2012-04-05 17:29 - 02631008 ____A C:\Windows\System32\atiumd6a.cap
2012-04-05 17:25 - 2012-04-05 17:25 - 13764096 ____A (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll
2012-04-05 17:23 - 2012-04-05 17:23 - 07431680 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atiumd64.dll
2012-04-05 17:22 - 2012-04-05 17:22 - 04795904 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll
2012-04-05 17:21 - 2012-04-05 17:21 - 02664704 ____A C:\Windows\SysWOW64\atiumdva.cap
2012-04-05 17:11 - 2012-04-05 17:11 - 00514560 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\atiadlxx.dll
2012-04-05 17:11 - 2012-04-05 17:11 - 00360448 ____A (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll
2012-04-05 17:11 - 2012-04-05 17:11 - 00041984 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atig6txx.dll
2012-04-05 17:11 - 2012-04-05 17:11 - 00017408 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atig6pxx.dll
2012-04-05 17:11 - 2012-04-05 17:11 - 00014848 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll
2012-04-05 17:11 - 2012-04-05 17:11 - 00014848 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atiglpxx.dll
2012-04-05 17:10 - 2012-04-05 17:10 - 00343040 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\Drivers\atikmpag.sys
2012-04-05 17:10 - 2012-04-05 17:10 - 00033280 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll
2012-04-05 17:09 - 2012-04-05 17:09 - 00053248 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\Drivers\ati2erec.dll
2012-04-05 17:09 - 2012-04-05 17:09 - 00044544 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atiu9p64.dll
2012-04-05 17:09 - 2012-04-05 17:09 - 00032256 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll
2012-04-05 17:09 - 2012-02-14 18:12 - 00041984 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll
2012-04-05 17:09 - 2011-04-20 01:21 - 00054784 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atiuxp64.dll
2012-04-05 17:06 - 2012-04-05 17:06 - 00054784 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atimpc64.dll
2012-04-05 17:06 - 2012-04-05 17:06 - 00054784 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\amdpcom64.dll
2012-04-05 17:06 - 2012-04-05 17:06 - 00053760 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
2012-04-05 17:06 - 2012-04-05 17:06 - 00053760 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
2012-04-02 20:57 - 2012-04-02 20:57 - 00000000 ____D C:\Users\All Users\Nexon
2012-04-02 19:41 - 2012-04-02 19:41 - 00000000 ____D C:\Program Files (x86)\Pando Networks
2012-04-01 23:33 - 2012-03-05 02:44 - 00000000 ____D C:\Users\REALITY\AppData\Local\VMware
2012-04-01 09:43 - 2009-07-13 21:32 - 00000000 ____D C:\Windows\System32\FxsTmp
ZeroAccess:
C:\Windows\Installer\{e1e8d27c-54ff-d1a8-bb9d-6e7743dc063d}
C:\Windows\Installer\{e1e8d27c-54ff-d1a8-bb9d-6e7743dc063d}\@
C:\Windows\Installer\{e1e8d27c-54ff-d1a8-bb9d-6e7743dc063d}\L
C:\Windows\Installer\{e1e8d27c-54ff-d1a8-bb9d-6e7743dc063d}\U
C:\Windows\Installer\{e1e8d27c-54ff-d1a8-bb9d-6e7743dc063d}\U\800000cb.@
ZeroAccess:
C:\Users\REALITY\AppData\Local\{e1e8d27c-54ff-d1a8-bb9d-6e7743dc063d}
C:\Users\REALITY\AppData\Local\{e1e8d27c-54ff-d1a8-bb9d-6e7743dc063d}\@
C:\Users\REALITY\AppData\Local\{e1e8d27c-54ff-d1a8-bb9d-6e7743dc063d}\L
C:\Users\REALITY\AppData\Local\{e1e8d27c-54ff-d1a8-bb9d-6e7743dc063d}\U
========================= Known DLLs (Whitelisted) ============
========================= Bamital & volsnap Check ============
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe
[2009-07-13 15:19] - [2012-06-27 11:08] - 0328704 ____A (Microsoft Corporation) FCB084FA3DCB7449F3BAA13312A215B4
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
==================== EXE ASSOCIATION =====================
HKLM\...\.exe: exefile => OK
HKLM\...\exefile\DefaultIcon: %1 => OK
HKLM\...\exefile\open\command: "%1" %* => OK
========================= Memory info ======================
Percentage of memory in use: 16%
Total physical RAM: 3959.12 MB
Available physical RAM: 3320.46 MB
Total Pagefile: 3957.27 MB
Available Pagefile: 3307.32 MB
Total Virtual: 8192 MB
Available Virtual: 8191.9 MB
======================= Partitions =========================
1 Drive c: () (Fixed) (Total:139.73 GB) (Free:6.95 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
3 Drive f: (e) (Fixed) (Total:931.51 GB) (Free:127.38 GB) NTFS
4 Drive g: (KINGSTON) (Removable) (Total:0.48 GB) (Free:0.38 GB) FAT
5 Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS
6 Drive y: () (Fixed) (Total:298.09 GB) (Free:38.21 GB) NTFS
Disk ### Status Size Free Dyn Gpt
-------- ------------- ------- ------- --- ---
Disk 0 Online 298 GB 0 B
Disk 1 Online 139 GB 0 B
Disk 2 Online 931 GB 0 B
Disk 3 Online 492 MB 0 B
Partitions of Disk 0:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 298 GB 1024 KB
======================================================================================================
Disk: 0
Partition 1
Type : 07
Hidden: No
Active: No
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 1 Y NTFS Partition 298 GB Healthy
======================================================================================================
Partitions of Disk 1:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 139 GB 1024 KB
======================================================================================================
Disk: 1
Partition 1
Type : 07
Hidden: No
Active: Yes
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 2 C NTFS Partition 139 GB Healthy
======================================================================================================
Partitions of Disk 2:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 931 GB 1024 KB
======================================================================================================
Disk: 2
Partition 1
Type : 07
Hidden: No
Active: No
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 3 F e NTFS Partition 931 GB Healthy
======================================================================================================
Partitions of Disk 3:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 491 MB 16 KB
======================================================================================================
Disk: 3
Partition 1
Type : 0E
Hidden: No
Active: No
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 4 G KINGSTON FAT Removable 491 MB Healthy
======================================================================================================
==========================================================
Last Boot: 2012-06-17 23:04
======================= End Of Log ==========================