Solved Once more unto the sirefef

BobPage

Posts: 20   +0
I'm having trouble with sirefef.Y and sirefef.W; both are detected by MSE and cause my PC to shut down after a minute if any action is taken to remove them. I shall paste the logs in order of operation (GMER produced no log). Thanks a bunch.

Malwarebytes Anti-Malware 1.61.0.1400
www.malwarebytes.org

Database version: v2012.06.21.10

Windows 7 x64 NTFS
Internet Explorer 9.0.8112.16421
Sam :: SAM-PC [administrator]

21/06/2012 21:55:05
mbam-log-2012-06-21 (21-55-05).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 207180
Time elapsed: 5 minute(s), 43 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 2
C:\Users\Sam\Downloads\SoftonicDownloader_for_m-u-g-e-n.exe (PUP.ToolbarDownloader) -> Quarantined and deleted successfully.
C:\Windows\Installer\{c07c8d13-da90-dacd-4643-a2c48c3764db}\U\800000cb.@ (Rootkit.0Access) -> Quarantined and deleted successfully.

(end)
 
.
DDS (Ver_2011-08-26.01) - NTFSAMD64
Internet Explorer: 9.0.8112.16421
Run by Sam at 22:11:43 on 2012-06-21
Microsoft Windows 7 Ultimate 6.1.7600.0.932.81.1033.18.6142.4595 [GMT 1:00]
.
AV: Microsoft Security Essentials *Disabled/Updated* {9765EA51-0D3C-7DFB-6091-10E4E1F341F6}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Microsoft Security Essentials *Disabled/Updated* {2C040BB5-2B06-7275-5A21-2B969A740B4B}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\atieclxx.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Eraser\Eraser.exe
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Users\Sam\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\Rainmeter\Rainmeter.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE
C:\Program Files\Logitech\SetPointG\SetPointII.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files (x86)\DisplayFusion\AppHookx86.exe
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\system32\conhost.exe
C:\Windows\SysWOW64\cscript.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uInternet Settings,ProxyOverride = *.local
mWinlogon: Userinit=userinit.exe,
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Java(tm) Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Skype Browser Helper: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
uRun: [Google Update] "C:\Users\Sam\AppData\Local\Google\Update\GoogleUpdate.exe" /c
uRun: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
uRun: [PeerBlock] C:\Program Files\PeerBlock\peerblock.exe
uRun: [DisplayFusion] "C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe"
uRun: [Xvid] C:\Program Files (x86)\Xvid\CheckUpdate.exe
uRun: [uTorrent] "C:\Users\Sam\Downloads\uTorrent.exe" /MINIMIZED
uRun: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
mRun: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
mRun: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
mRun: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml
mRun: [TrojanScanner] C:\Program Files (x86)\Trojan Remover\Trjscan.exe /boot
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\RAINME~1.LNK - C:\Program Files\Rainmeter\Rainmeter.exe
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableLUA = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
mPolicies-system: PromptOnSecureDesktop = 0 (0x0)
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
LSP: %SystemRoot%\system32\PrxerDrv.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab
TCP: Interfaces\{A7405511-9D97-4A52-B803-3564DBEAB194} : DhcpNameServer = 192.168.1.1
TCP: Interfaces\{A7405511-9D97-4A52-B803-3564DBEAB194}\E4564776561627 : DhcpNameServer = 192.168.1.1
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO-X64: AcroIEHelperStub - No File
BHO-X64: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO-X64: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO-X64: SkypeIEPluginBHO - No File
BHO-X64: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
mRun-x64: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
mRun-x64: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun-x64: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun-x64: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
mRun-x64: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml
mRun-x64: [TrojanScanner] C:\Program Files (x86)\Trojan Remover\Trjscan.exe /boot
.
============= SERVICES / DRIVERS ===============
.
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;C:\Windows\system32\DRIVERS\dtsoftbus01.sys --> C:\Windows\system32\DRIVERS\dtsoftbus01.sys [?]
R1 MpFilter;Microsoft Malware Protection Driver;C:\Windows\system32\DRIVERS\MpFilter.sys --> C:\Windows\system32\DRIVERS\MpFilter.sys [?]
R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\system32\DRIVERS\vwififlt.sys --> C:\Windows\system32\DRIVERS\vwififlt.sys [?]
R2 AdobeARMservice;Adobe Acrobat Update Service;C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-1-3 63928]
R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\system32\atiesrxx.exe --> C:\Windows\system32\atiesrxx.exe [?]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2012-2-28 2343816]
R2 HiPatchService;Hi-Rez Studios Authenticate and Update Service;C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [2012-1-4 8704]
R2 RadeonPro Support Service;RadeonPro Support Service;C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe [2012-1-13 12800]
R3 amdkmdag;amdkmdag;C:\Windows\system32\DRIVERS\atikmdag.sys --> C:\Windows\system32\DRIVERS\atikmdag.sys [?]
R3 amdkmdap;amdkmdap;C:\Windows\system32\DRIVERS\atikmpag.sys --> C:\Windows\system32\DRIVERS\atikmpag.sys [?]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;C:\Windows\system32\drivers\AtihdW76.sys --> C:\Windows\system32\drivers\AtihdW76.sys [?]
R3 netr28x;Ralink 802.11n Extensible Wireless Driver;C:\Windows\system32\DRIVERS\netr28x.sys --> C:\Windows\system32\DRIVERS\netr28x.sys [?]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\system32\DRIVERS\Rt64win7.sys --> C:\Windows\system32\DRIVERS\Rt64win7.sys [?]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S3 MotioninJoyXFilter;MotioninJoy Virtual Xinput device Filter Driver;C:\Windows\system32\DRIVERS\MijXfilt.sys --> C:\Windows\system32\DRIVERS\MijXfilt.sys [?]
S3 MpNWMon;Microsoft Malware Protection Network Driver;C:\Windows\system32\DRIVERS\MpNWMon.sys --> C:\Windows\system32\DRIVERS\MpNWMon.sys [?]
S3 NisDrv;Microsoft Network Inspection System;C:\Windows\system32\DRIVERS\NisDrvWFP.sys --> C:\Windows\system32\DRIVERS\NisDrvWFP.sys [?]
S3 NisSrv;Microsoft Network Inspection;C:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [2011-4-27 288272]
S3 pbfilter;pbfilter;C:\Program Files\PeerBlock\pbfilter.sys [2011-12-10 24176]
S3 SwitchBoard;SwitchBoard;C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-2-19 517096]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
.
=============== Created Last 30 ================
.
2012-06-21 21:01:29--------d-----w-C:\Program Files (x86)\Microsoft Security Client
2012-06-21 20:56:40--------d-----w-C:\Windows\Temp6393BB15-1E27-C26B-7004-B24A9920C884-Signatures
2012-06-21 20:54:27--------d-----w-C:\Users\Sam\AppData\Roaming\Malwarebytes
2012-06-21 20:54:02--------d-----w-C:\ProgramData\Malwarebytes
2012-06-21 20:54:0124904----a-w-C:\Windows\System32\drivers\mbam.sys
2012-06-21 20:54:01--------d-----w-C:\Program Files (x86)\Malwarebytes' Anti-Malware
2012-06-19 10:45:00--------d-sh--w-C:\found.000
2012-06-19 01:50:2975264----a-w-C:\Windows\SysWow64\unacev2.dll
2012-06-19 01:50:29153088----a-w-C:\Windows\SysWow64\UNRAR3.dll
2012-06-19 01:50:28--------d-----w-C:\Users\Sam\AppData\Roaming\Simply Super Software
2012-06-19 01:50:28--------d-----w-C:\ProgramData\Simply Super Software
2012-06-19 01:50:28--------d-----w-C:\Program Files (x86)\Trojan Remover
2012-06-18 18:52:59--------d-----w-C:\Program Files\Microsoft Security Client
2012-06-18 11:29:02--------d-----w-C:\a7d3c6e75a23b56f19fcd6dcd35c3d9b
2012-06-16 12:07:28--------d-----w-C:\Program Files\Web Assistant
2012-06-14 21:07:06--------d-----w-C:\Users\Sam\AppData\Roaming\Rainmeter
2012-06-14 21:07:04--------d-----w-C:\Program Files\Rainmeter
2012-06-14 14:29:44--------d-----w-C:\FlvGrabber
2012-06-14 14:25:22--------d-sh--w-C:\Windows\System32\%APPDATA%
2012-06-14 14:20:28--------d-----w-C:\Program Files (x86)\WinPcap
2012-06-13 22:52:039216----a-w-C:\Windows\System32\rdrmemptylst.exe
2012-06-13 22:52:0376288----a-w-C:\Windows\System32\rdpwsx.dll
2012-06-13 22:52:03149504----a-w-C:\Windows\System32\rdpcorekmts.dll
2012-06-13 22:52:00208896----a-w-C:\Windows\System32\profsvc.dll
2012-06-09 20:30:48--------d-----w-C:\Users\Sam\AppData\Local\ElevatedDiagnostics
2012-06-07 22:58:33--------d-----w-C:\Users\Sam\AppData\Local\CAPCOM
2012-06-07 22:48:09--------d-----w-C:\Program Files (x86)\CAPCOM
2012-06-06 14:04:18--------d-----w-C:\mugen
2012-06-06 13:52:02--------d-----w-C:\ProgramData\VirtuallTek
2012-06-06 13:52:02--------d-----w-C:\Program Files (x86)\VirtuallTek
2012-06-05 23:06:4840960----a-r-C:\Users\Sam\AppData\Roaming\Microsoft\Installer\{9559F7CA-5E34-4237-A2D9-D856464AD727}\NewShortcut1_9559F7CA5E344237A2D9D856464AD727.exe
2012-06-05 23:06:4840960----a-r-C:\Users\Sam\AppData\Roaming\Microsoft\Installer\{9559F7CA-5E34-4237-A2D9-D856464AD727}\ARPPRODUCTICON.exe
2012-06-05 23:06:46--------d-----w-C:\Program Files (x86)\Project64 1.6
2012-06-03 00:46:30--------d--h--w-C:\Program Files (x86)\Common Files\EAInstaller
2012-06-03 00:31:20--------d-----w-C:\Program Files (x86)\Battlefield 3
2012-06-01 13:55:33--------d-----w-C:\Program Files (x86)\Black_Box
2012-05-31 17:13:04--------d-----w-C:\Program Files (x86)\OMGWTFOTL
2012-05-25 22:33:54--------d-----w-C:\Program Files (x86)\Combined Community Codec Pack
2012-05-25 22:26:59--------d-----w-C:\Program Files (x86)\VideoLAN
.
==================== Find3M ====================
.
2012-06-08 23:03:41281288----a-w-C:\Windows\SysWow64\PnkBstrB.xtr
2012-06-08 23:03:41281288----a-w-C:\Windows\SysWow64\PnkBstrB.exe
2012-06-08 22:36:46281288----a-w-C:\Windows\SysWow64\PnkBstrB.ex0
2012-05-18 02:06:482311680----a-w-C:\Windows\System32\jscript9.dll
2012-05-18 01:59:141392128----a-w-C:\Windows\System32\wininet.dll
2012-05-18 01:58:391494528----a-w-C:\Windows\System32\inetcpl.cpl
2012-05-18 01:55:22173056----a-w-C:\Windows\System32\ieUnatt.exe
2012-05-18 01:51:302382848----a-w-C:\Windows\System32\mshtml.tlb
2012-05-17 22:45:371800192----a-w-C:\Windows\SysWow64\jscript9.dll
2012-05-17 22:35:471129472----a-w-C:\Windows\SysWow64\wininet.dll
2012-05-17 22:35:391427968----a-w-C:\Windows\SysWow64\inetcpl.cpl
2012-05-17 22:29:45142848----a-w-C:\Windows\SysWow64\ieUnatt.exe
2012-05-17 22:24:452382848----a-w-C:\Windows\SysWow64\mshtml.tlb
2012-05-15 01:32:203144192----a-w-C:\Windows\System32\win32k.sys
2012-05-14 03:28:080----a-w-C:\Windows\ativpsrm.bin
2012-05-08 00:03:0676888----a-w-C:\Windows\SysWow64\PnkBstrA.exe
2012-05-05 19:34:48476960----a-w-C:\Windows\SysWow64\npdeployJava1.dll
2012-05-05 19:34:48472864----a-w-C:\Windows\SysWow64\deployJava1.dll
2012-05-04 10:52:225505392----a-w-C:\Windows\System32\ntoskrnl.exe
2012-05-04 10:08:163958128----a-w-C:\Windows\SysWow64\ntkrnlpa.exe
2012-05-04 10:08:153902320----a-w-C:\Windows\SysWow64\ntoskrnl.exe
2012-04-28 03:50:40204800----a-w-C:\Windows\System32\drivers\rdpwd.sys
2012-04-24 05:59:45182272----a-w-C:\Windows\System32\cryptsvc.dll
2012-04-24 05:59:451460224----a-w-C:\Windows\System32\crypt32.dll
2012-04-24 05:59:45140288----a-w-C:\Windows\System32\cryptnet.dll
2012-04-24 04:47:04139264----a-w-C:\Windows\SysWow64\cryptsvc.dll
2012-04-24 04:47:04103936----a-w-C:\Windows\SysWow64\cryptnet.dll
2012-04-24 04:47:031156608----a-w-C:\Windows\SysWow64\crypt32.dll
2012-04-07 12:18:363213824----a-w-C:\Windows\System32\msi.dll
2012-04-07 11:34:372342400----a-w-C:\Windows\SysWow64\msi.dll
2012-04-06 05:22:4011174400----a-w-C:\Windows\System32\drivers\atikmdag.sys
2012-04-06 02:22:00159744----a-w-C:\Windows\System32\atiapfxx.exe
2012-04-06 02:21:52909312----a-w-C:\Windows\SysWow64\aticfx32.dll
2012-04-06 02:20:041067520----a-w-C:\Windows\System32\aticfx64.dll
2012-04-06 02:16:52442368----a-w-C:\Windows\System32\ATIDEMGX.dll
2012-04-06 02:16:46503808----a-w-C:\Windows\System32\atieclxx.exe
2012-04-06 02:16:02236544----a-w-C:\Windows\System32\atiesrxx.exe
2012-04-06 02:14:44120320----a-w-C:\Windows\System32\atitmm64.dll
2012-04-06 02:14:3021504----a-w-C:\Windows\System32\atimuixx.dll
2012-04-06 02:14:2659392----a-w-C:\Windows\System32\atiedu64.dll
2012-04-06 02:14:2043520----a-w-C:\Windows\SysWow64\ati2edxx.dll
2012-04-06 02:13:426800896----a-w-C:\Windows\SysWow64\atidxx32.dll
2012-04-06 02:10:5026181632----a-w-C:\Windows\System32\atio6axx.dll
2012-04-06 02:00:1064000----a-w-C:\Windows\System32\coinst.dll
2012-04-06 01:54:467479296----a-w-C:\Windows\System32\atidxx64.dll
2012-04-06 01:50:5619753984----a-w-C:\Windows\SysWow64\atioglxx.dll
2012-04-06 01:35:241120768----a-w-C:\Windows\System32\atiumd6v.dll
2012-04-06 01:34:501831424----a-w-C:\Windows\SysWow64\atiumdmv.dll
2012-04-06 01:34:344731904----a-w-C:\Windows\System32\atiumd6a.dll
2012-04-06 01:34:046203392----a-w-C:\Windows\SysWow64\atiumdag.dll
2012-04-06 01:30:1651200----a-w-C:\Windows\System32\aticalrt64.dll
2012-04-06 01:30:1446080----a-w-C:\Windows\SysWow64\aticalrt.dll
2012-04-06 01:30:0844544----a-w-C:\Windows\System32\aticalcl64.dll
2012-04-06 01:30:0644032----a-w-C:\Windows\SysWow64\aticalcl.dll
2012-04-06 01:29:5416090624----a-w-C:\Windows\System32\aticaldd64.dll
2012-04-06 01:25:3013764096----a-w-C:\Windows\SysWow64\aticaldd.dll
2012-04-06 01:23:247431680----a-w-C:\Windows\System32\atiumd64.dll
2012-04-06 01:22:544795904----a-w-C:\Windows\SysWow64\atiumdva.dll
2012-04-06 01:11:28514560----a-w-C:\Windows\System32\atiadlxx.dll
2012-04-06 01:11:20360448----a-w-C:\Windows\SysWow64\atiadlxy.dll
2012-04-06 01:11:0617408----a-w-C:\Windows\System32\atig6pxx.dll
2012-04-06 01:11:0414848----a-w-C:\Windows\SysWow64\atiglpxx.dll
2012-04-06 01:11:0414848----a-w-C:\Windows\System32\atiglpxx.dll
2012-04-06 01:11:0041984----a-w-C:\Windows\System32\atig6txx.dll
2012-04-06 01:10:5233280----a-w-C:\Windows\SysWow64\atigktxx.dll
2012-04-06 01:10:44343040----a-w-C:\Windows\System32\drivers\atikmpag.sys
2012-04-06 01:09:5654784----a-w-C:\Windows\System32\atiuxp64.dll
2012-04-06 01:09:4841984----a-w-C:\Windows\SysWow64\atiuxpag.dll
2012-04-06 01:09:4244544----a-w-C:\Windows\System32\atiu9p64.dll
2012-04-06 01:09:3432256----a-w-C:\Windows\SysWow64\atiu9pag.dll
2012-04-06 01:09:0253248----a-w-C:\Windows\System32\drivers\ati2erec.dll
2012-04-06 01:06:0854784----a-w-C:\Windows\System32\atimpc64.dll
2012-04-06 01:06:0854784----a-w-C:\Windows\System32\amdpcom64.dll
2012-04-06 01:06:0453760----a-w-C:\Windows\SysWow64\atimpc32.dll
2012-04-06 01:06:0453760----a-w-C:\Windows\SysWow64\amdpcom32.dll
2012-04-05 21:34:26187392----a-w-C:\Windows\System32\clinfo.exe
2012-04-05 21:34:1074752----a-w-C:\Windows\System32\OpenVideo64.dll
2012-04-05 21:34:0464512----a-w-C:\Windows\SysWow64\OpenVideo.dll
2012-04-05 21:33:5663488----a-w-C:\Windows\System32\OVDecode64.dll
2012-04-05 21:33:5256320----a-w-C:\Windows\SysWow64\OVDecode.dll
2012-04-05 21:33:4416457216----a-w-C:\Windows\System32\amdocl64.dll
2012-04-05 21:32:5613007872----a-w-C:\Windows\SysWow64\amdocl.dll
2012-04-05 21:32:0854784----a-w-C:\Windows\System32\OpenCL.dll
2012-04-05 21:32:0450176----a-w-C:\Windows\SysWow64\OpenCL.dll
2012-03-30 11:09:531895280----a-w-C:\Windows\System32\drivers\tcpip.sys
.
============= FINISH: 22:12:34.40 ===============
 
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2011-08-26.01)
.
Microsoft Windows 7 Ultimate
Boot Device: \Device\HarddiskVolume2
Install Date: 11/11/2011 14:53:33
System Uptime: 21/06/2012 22:03:12 (0 hours ago)
.
Motherboard: Gigabyte Technology Co., Ltd. | | X48T-DQ6
Processor: Intel(R) Core(TM)2 Quad CPU Q6600 @ 2.40GHz | Socket 775 | 2400/266mhz
.
==== Disk Partitions =========================
.
A: is Removable
C: is FIXED (NTFS) - 1397 GiB total, 421.421 GiB free.
D: is CDROM (UDF)
E: is FIXED (NTFS) - 1863 GiB total, 281.36 GiB free.
F: is CDROM ()
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP313: 15/06/2012 20:06:20 - Scheduled Checkpoint
RP314: 16/06/2012 03:00:10 - Windows Update
RP315: 18/06/2012 12:32:07 - Windows Update
RP316: 18/06/2012 13:15:19 - Windows Update
RP317: 18/06/2012 19:21:19 - Windows Update
RP318: 18/06/2012 19:53:24 - Windows Update
RP319: 19/06/2012 03:01:48 - Windows Update
RP320: 21/06/2012 21:55:34 - Windows Update
.
==== Installed Programs ======================
.
Absolute Nature 2 for S.T.A.L.K.E.R - Clear Sky
Absolute Structures for S.T.A.L.K.E.R - Clear Sky
Ace of Spades
Active@ ISO Burner
Adobe AIR
Adobe Community Help
Adobe Download Assistant
Adobe Flash Professional CS5.5
Adobe Photoshop CS5.1
Adobe Reader X (10.1.3)
Adobe Shockwave Player 11.6
APB Reloaded
Apple Application Support
Apple Software Update
ArmA 2 Uninstall
ARMA 2: Operation Arrowhead
Audacity 1.3.14 (Unicode)
Audiosurf
AutoHotkey 1.1.07.03
Batman Arkham City version 1.0
Battlefield 3 Update 4
Battlefield 3?
BattlEye for OA Uninstall
BattlEye Uninstall
calibre
Catalyst Control Center
Catalyst Control Center - Branding
Catalyst Control Center Graphics Previews Common
Catalyst Control Center InstallProxy
Catalyst Control Center Localization All
CCC Help Chinese Standard
CCC Help Chinese Traditional
CCC Help Czech
CCC Help Danish
CCC Help Dutch
CCC Help English
CCC Help Finnish
CCC Help French
CCC Help German
CCC Help Greek
CCC Help Hungarian
CCC Help Italian
CCC Help Japanese
CCC Help Korean
CCC Help Norwegian
CCC Help Polish
CCC Help Portuguese
CCC Help Russian
CCC Help Spanish
CCC Help Swedish
CCC Help Thai
CCC Help Turkish
Combined Community Codec Pack 2011-11-11
DAEMON Tools Lite
Dead Island
Deus Ex - HDTP
Deus Ex: Game of the Year Edition
DEVIL MAY CRY 4
Dig-N-Rig version 1.0
DisplayFusion 3.4.1
Driver Sweeper version 3.2.0
eReg
Facade
Fallen Earth
Fighter Factory Ultimate
File Splitter and Joiner (FFSJ v3.3)
FileZilla Client 3.5.3
Fotosizer 1.34
Fraps (remove only)
Frozen Synapse
FXAA Post-Process Injector
Garry's Mod
Garry's Mod 13
Geeks3D.com FurMark 1.9.2
GIMP 2.6.11
Google Chrome
GTA San Andreas
Half-Life 2
Half-Life 2: Episode One
Half-Life 2: Episode Two
Heroes of Newerth
Hi-Rez Studios Authenticate and Update Service
HxD Hex Editor version 1.7.7.0
Infernal
IrfanView (remove only)
Java Auto Updater
Java(TM) 6 Update 32
K-Lite Codec Pack 7.9.0 (Basic)
Katawa Shoujo
Killing Floor
LAME v3.99.3 (for Windows)
League of Legends
Left 4 Dead 2
Livestream Procaster
LogMeIn Hamachi
Magicka
Malwarebytes Anti-Malware version 1.61.0.1400
Max Payne 3
Max Payne 3 version 1.02
Microsoft AppLocale
Microsoft Games for Windows - LIVE
Microsoft Games for Windows - LIVE Redistributable
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
Microsoft WSE 3.0 Runtime
Microsoft XNA Framework Redistributable 3.1
Microsoft XNA Framework Redistributable 4.0
Microsoft_VC80_ATL_x86
Microsoft_VC80_CRT_x86
Microsoft_VC80_MFC_x86
Microsoft_VC80_MFCLOC_x86
Microsoft_VC90_ATL_x86
Microsoft_VC90_CRT_x86
Microsoft_VC90_MFC_x86
Microsoft_VC90_MFCLOC_x86
Minecraft Texturepack Editor
MISERY for S.T.A.L.K.E.R - Call of Pripyat
Morrowind
Mount & Blade: Warband
MSVCRT Redists
MTA:SA v1.3
Need for Speed: Hot Pursuit
Nexon Game Manager
NVIDIA PhysX
OMGWTFOTL 1.0E
OpenOffice.org 3.3
PCSX2 - Playstation 2 Emulator
PDF Settings CS5
Portal 2
PowerMenu 1.51
Project64 1.6
Proxifier version 3.0
PunkBuster Services
Python 2.7.2
QuickTime
RadeonPro 1.0 (Build 1.1.0.6)
Ragnarok Online
Rainmeter
Red Faction: Guerrilla
RetroShare
Revo Uninstaller 1.93
Rockstar Games Social Club
RPGƒcƒN[ƒ‹2000 ƒ‰ƒ“ƒ^ƒCƒ€ƒpƒbƒP[ƒW
S.T.A.L.K.E.R.: Call of Pripyat
S.T.A.L.K.E.R.: Clear Sky
S.T.A.L.K.E.R.: Shadow of Chernobyl
Saints Row 2
Saints Row: The Third
Sanctum
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)
Security Update for Microsoft .NET Framework 4 Extended (KB2416472)
Security Update for Microsoft .NET Framework 4 Extended (KB2487367)
Security Update for Microsoft .NET Framework 4 Extended (KB2656351)
ShiftWindow 1.02
Six Updater
Sizer 3.33
Skype Click to Call
Skype? 5.5
Source SDK Base 2007
Steam
swMSM
Synergy
TERA
Terraria
TES Construction Set
The Sims? 3
The Sims? 3 Ambitions
The Sims? 3 Fast Lane Stuff
The Sims? 3 Generations
The Sims? 3 High-End Loft Stuff
The Sims? 3 Late Night
The Sims? 3 Outdoor Living Stuff
The Sims? 3 Pets
The Sims? 3 Town Life Stuff
The Sims? 3 World Adventures
Thief 3 Sneaky Upgrade version 1.1.0
Thief: Deadly Shadows
Tribes Ascend Closed Beta
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2473228)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
Update for Microsoft .NET Framework 4 Extended (KB2468871)
Update for Microsoft .NET Framework 4 Extended (KB2533523)
Update for Microsoft .NET Framework 4 Extended (KB2600217)
Vindictus
VLC media player 2.0.1
Winamp
Winamp Detector Plug-in
WinPcap 4.1.1
XChat-WDK (x86)
Xvid Video Codec
Youtube Downloader HD v. 2.9.2
Yume Nikki 0.10 English
ƒÊTorrent
.
 
==== Event Viewer Messages From Past Week ========
.
21/06/2012 22:11:22, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 0.0.0.0 Update Source: Microsoft Update Server Update Stage: Search Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 0.0.0.0 Error code: 0x8024402c Error description: An unexpected problem occurred while checking for updates. For information on installing or troubleshooting updates, see Help and Support.
21/06/2012 22:05:43, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 0.0.0.0 Update Source: Microsoft Malware Protection Center Update Stage: Search Source Path: http://go.microsoft.com/fwlink/?Lin...0.0&prod=EDB4FA23-53B8-4AFA-8C5D-99752CCA7094 Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\NETWORK SERVICE Current Engine Version: Previous Engine Version: 0.0.0.0 Error code: 0x80072ee7 Error description: The server name or address could not be resolved
21/06/2012 22:05:43, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 0.0.0.0 Update Source: Microsoft Malware Protection Center Update Stage: Search Source Path: http://go.microsoft.com/fwlink/?Lin...0.0&prod=EDB4FA23-53B8-4AFA-8C5D-99752CCA7094 Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\NETWORK SERVICE Current Engine Version: Previous Engine Version: 0.0.0.0 Error code: 0x80072ee7 Error description: The server name or address could not be resolved
21/06/2012 22:05:43, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 0.0.0.0 Update Source: Microsoft Malware Protection Center Update Stage: Search Source Path: http://go.microsoft.com/fwlink/?Lin...0.0&prod=EDB4FA23-53B8-4AFA-8C5D-99752CCA7094 Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\NETWORK SERVICE Current Engine Version: Previous Engine Version: 0.0.0.0 Error code: 0x80072ee7 Error description: The server name or address could not be resolved
21/06/2012 22:05:43, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 0.0.0.0 Update Source: Microsoft Malware Protection Center Update Stage: Search Source Path: http://go.microsoft.com/fwlink/?Lin...0.0&prod=EDB4FA23-53B8-4AFA-8C5D-99752CCA7094 Signature Type: AntiSpyware Update Type: Full User: NT AUTHORITY\NETWORK SERVICE Current Engine Version: Previous Engine Version: 0.0.0.0 Error code: 0x80072ee7 Error description: The server name or address could not be resolved
21/06/2012 22:05:43, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 0.0.0.0 Update Source: Microsoft Malware Protection Center Update Stage: Search Source Path: http://go.microsoft.com/fwlink/?Lin...0.0&prod=EDB4FA23-53B8-4AFA-8C5D-99752CCA7094 Signature Type: AntiSpyware Update Type: Full User: NT AUTHORITY\NETWORK SERVICE Current Engine Version: Previous Engine Version: 0.0.0.0 Error code: 0x80072ee7 Error description: The server name or address could not be resolved
21/06/2012 22:05:39, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 0.0.0.0 Update Source: Microsoft Malware Protection Center Update Stage: Search Source Path: http://go.microsoft.com/fwlink/?Lin...0.0&prod=EDB4FA23-53B8-4AFA-8C5D-99752CCA7094 Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\NETWORK SERVICE Current Engine Version: Previous Engine Version: 0.0.0.0 Error code: 0x80072ee7 Error description: The server name or address could not be resolved
21/06/2012 22:05:39, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 0.0.0.0 Update Source: Microsoft Malware Protection Center Update Stage: Search Source Path: http://go.microsoft.com/fwlink/?Lin...0.0&prod=EDB4FA23-53B8-4AFA-8C5D-99752CCA7094 Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\NETWORK SERVICE Current Engine Version: Previous Engine Version: 0.0.0.0 Error code: 0x80072ee7 Error description: The server name or address could not be resolved
21/06/2012 22:05:39, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 0.0.0.0 Update Source: Microsoft Malware Protection Center Update Stage: Search Source Path: http://go.microsoft.com/fwlink/?Lin...0.0&prod=EDB4FA23-53B8-4AFA-8C5D-99752CCA7094 Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\NETWORK SERVICE Current Engine Version: Previous Engine Version: 0.0.0.0 Error code: 0x80072ee7 Error description: The server name or address could not be resolved
21/06/2012 22:05:39, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 0.0.0.0 Update Source: Microsoft Malware Protection Center Update Stage: Search Source Path: http://go.microsoft.com/fwlink/?Lin...0.0&prod=EDB4FA23-53B8-4AFA-8C5D-99752CCA7094 Signature Type: AntiSpyware Update Type: Full User: NT AUTHORITY\NETWORK SERVICE Current Engine Version: Previous Engine Version: 0.0.0.0 Error code: 0x80072ee7 Error description: The server name or address could not be resolved
21/06/2012 22:05:39, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 0.0.0.0 Update Source: Microsoft Malware Protection Center Update Stage: Search Source Path: http://go.microsoft.com/fwlink/?Lin...0.0&prod=EDB4FA23-53B8-4AFA-8C5D-99752CCA7094 Signature Type: AntiSpyware Update Type: Full User: NT AUTHORITY\NETWORK SERVICE Current Engine Version: Previous Engine Version: 0.0.0.0 Error code: 0x80072ee7 Error description: The server name or address could not be resolved
21/06/2012 22:05:18, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 0.0.0.0 Update Source: Microsoft Update Server Update Stage: Search Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 0.0.0.0 Error code: 0x8024402c Error description: An unexpected problem occurred while checking for updates. For information on installing or troubleshooting updates, see Help and Support.
21/06/2012 22:04:42, Error: Service Control Manager [7023] - The Function Discovery Resource Publication service terminated with the following error: %%-2147024891
21/06/2012 22:04:42, Error: Service Control Manager [7001] - The HomeGroup Provider service depends on the Function Discovery Resource Publication service which failed to start because of the following error: %%-2147024891
21/06/2012 22:03:58, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: sptd
21/06/2012 22:03:47, Error: Service Control Manager [7023] - The Computer Browser service terminated with the following error: The specified service does not exist as an installed service.
21/06/2012 22:03:46, Error: Service Control Manager [7003] - The IPsec Policy Agent service depends the following service: BFE. This service might not be installed.
21/06/2012 22:03:46, Error: Service Control Manager [7003] - The IKE and AuthIP IPsec Keying Modules service depends the following service: BFE. This service might not be installed.
21/06/2012 22:02:09, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Microsoft Security Essentials Client Update Package - KB2691905.
21/06/2012 22:02:07, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 0.0.0.0 Update Source: Microsoft Update Server Update Stage: Search Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 0.0.0.0 Error code: 0x8024402c Error description: An unexpected problem occurred while checking for updates. For information on installing or troubleshooting updates, see Help and Support.
21/06/2012 22:01:08, Error: Service Control Manager [7023] - The Microsoft Antimalware Service service terminated with the following error: %%-2147017840
21/06/2012 22:01:06, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: The filter driver requires an up-to-date engine in order to function. You must install the latest definition updates in order to enable real-time protection.
21/06/2012 21:52:55, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: The filter driver requires an up-to-date engine in order to function. You must install the latest definition updates in order to enable real-time protection.
21/06/2012 15:37:03, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: The filter driver requires an up-to-date engine in order to function. You must install the latest definition updates in order to enable real-time protection.
19/06/2012 03:37:31, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:536 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Remove Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2193.0, AS: 1.127.2193.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
19/06/2012 03:27:07, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: The filter driver requires an up-to-date engine in order to function. You must install the latest definition updates in order to enable real-time protection.
19/06/2012 03:13:47, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: The filter driver requires an up-to-date engine in order to function. You must install the latest definition updates in order to enable real-time protection.
19/06/2012 03:06:50, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: The filter driver requires an up-to-date engine in order to function. You must install the latest definition updates in order to enable real-time protection.
19/06/2012 03:00:30, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: The filter driver requires an up-to-date engine in order to function. You must install the latest definition updates in order to enable real-time protection.
19/06/2012 02:57:58, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the Windows Search service to connect.
19/06/2012 02:57:58, Error: Service Control Manager [7000] - The Windows Search service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
19/06/2012 02:57:53, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1053" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030}
19/06/2012 02:57:28, Error: Service Control Manager [7031] - The Windows Search service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service.
19/06/2012 02:57:28, Error: Service Control Manager [7024] - The Windows Search service terminated with service-specific error %%-1073473535.
19/06/2012 02:49:03, Error: Service Control Manager [7001] - The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: The dependency service or group failed to start.
19/06/2012 02:49:03, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030}
19/06/2012 02:49:03, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}
19/06/2012 02:49:02, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1068" attempting to start the service netprofm with arguments "" in order to run the server: {A47979D2-C419-11D9-A5B4-001185AD2B89}
19/06/2012 02:49:02, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1068" attempting to start the service netman with arguments "" in order to run the server: {BA126AD1-2166-11D1-B1D0-00805FC1270E}
19/06/2012 02:49:01, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
19/06/2012 02:48:56, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC}
19/06/2012 02:48:10, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: AFD CSC DfsC discache MpFilter NetBIOS NetBT nsiproxy Psched rdbss spldr sptd tdx vwififlt Wanarpv6 WfpLwf
19/06/2012 02:48:10, Error: Service Control Manager [7001] - The Workstation service depends on the Network Store Interface Service service which failed to start because of the following error: The dependency service or group failed to start.
19/06/2012 02:48:10, Error: Service Control Manager [7001] - The TCP/IP NetBIOS Helper service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error: A device attached to the system is not functioning.
19/06/2012 02:48:10, Error: Service Control Manager [7001] - The SMB MiniRedirector Wrapper and Engine service depends on the Redirected Buffering Sub Sysytem service which failed to start because of the following error: A device attached to the system is not functioning.
19/06/2012 02:48:10, Error: Service Control Manager [7001] - The SMB 2.0 MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error: The dependency service or group failed to start.
19/06/2012 02:48:10, Error: Service Control Manager [7001] - The SMB 1.x MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error: The dependency service or group failed to start.
19/06/2012 02:48:10, Error: Service Control Manager [7001] - The Network Store Interface Service service depends on the NSI proxy service driver. service which failed to start because of the following error: A device attached to the system is not functioning.
19/06/2012 02:48:10, Error: Service Control Manager [7001] - The Network Location Awareness service depends on the Network Store Interface Service service which failed to start because of the following error: The dependency service or group failed to start.
19/06/2012 02:48:10, Error: Service Control Manager [7001] - The DNS Client service depends on the NetIO Legacy TDI Support Driver service which failed to start because of the following error: A device attached to the system is not functioning.
19/06/2012 02:48:10, Error: Service Control Manager [7001] - The DHCP Client service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error: A device attached to the system is not functioning.
19/06/2012 02:48:10, Error: Service Control Manager [7001] - The Computer Browser service depends on the Server service which failed to start because of the following error: The dependency service or group failed to start.
19/06/2012 02:47:42, Error: sptd [4] - Driver detected an internal error in its data structures for .
19/06/2012 02:17:47, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:540 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: Sam-PC\Sam Process Name: C:\Windows\system32\services.exe Action: Remove Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2193.0, AS: 1.127.2193.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
19/06/2012 02:17:47, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:540 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: Sam-PC\Sam Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2193.0, AS: 1.127.2193.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
19/06/2012 02:17:14, Error: Ntfs [55] - The file system structure on the disk is corrupt and unusable. Please run the chkdsk utility on the volume \Device\HarddiskVolume3.
19/06/2012 02:09:28, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: The filter driver requires an up-to-date engine in order to function. You must install the latest definition updates in order to enable real-time protection.
18/06/2012 20:18:30, Error: Service Control Manager [7038] - The WSearch service was unable to log on as NT AUTHORITY\SYSTEM with the currently configured password due to the following error: The security account manager (SAM) or local security authority (LSA) server was in the wrong state to perform the security operation. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
18/06/2012 20:18:30, Error: Service Control Manager [7038] - The WdiServiceHost service was unable to log on as NT AUTHORITY\LocalService with the currently configured password due to the following error: The request is not supported. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
18/06/2012 20:18:30, Error: Service Control Manager [7038] - The NisSrv service was unable to log on as NT AUTHORITY\LocalService with the currently configured password due to the following error: The request is not supported. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
18/06/2012 20:18:30, Error: Service Control Manager [7000] - The Windows Search service failed to start due to the following error: The service did not start due to a logon failure.
18/06/2012 20:18:30, Error: Service Control Manager [7000] - The Portable Device Enumerator Service service failed to start due to the following error: A system shutdown is in progress.
18/06/2012 20:18:30, Error: Service Control Manager [7000] - The Microsoft Network Inspection service failed to start due to the following error: The service did not start due to a logon failure.
18/06/2012 20:18:30, Error: Service Control Manager [7000] - The Human Interface Device Access service failed to start due to the following error: A system shutdown is in progress.
18/06/2012 20:18:30, Error: Service Control Manager [7000] - The Diagnostic Service Host service failed to start due to the following error: The service did not start due to a logon failure.
18/06/2012 20:18:30, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Network Inspection System Error Code: 0x8007042d Error description: The service did not start due to a logon failure. Reason: The system is missing updates that are required for running Network Inspection System. Install the required updates and restart the computer.
18/06/2012 20:18:30, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: The filter driver requires an up-to-date engine in order to function. You must install the latest definition updates in order to enable real-time protection.
18/06/2012 20:18:30, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1069" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030}
18/06/2012 20:14:43, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: The filter driver requires an up-to-date engine in order to function. You must install the latest definition updates in order to enable real-time protection.
18/06/2012 20:07:12, Error: Service Control Manager [7000] - The Diagnostic System Host service failed to start due to the following error: A system shutdown is in progress.
18/06/2012 20:07:12, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Network Inspection System Error Code: 0x8007042d Error description: The service did not start due to a logon failure. Reason: The system is missing updates that are required for running Network Inspection System. Install the required updates and restart the computer.
18/06/2012 20:07:12, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: The filter driver requires an up-to-date engine in order to function. You must install the latest definition updates in order to enable real-time protection.
18/06/2012 20:07:11, Error: Service Control Manager [7038] - The WdiServiceHost service was unable to log on as NT AUTHORITY\LocalService with the currently configured password due to the following error: The security account manager (SAM) or local security authority (LSA) server was in the wrong state to perform the security operation. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
18/06/2012 19:54:26, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: Real-time protection has stopped functioning for an unknown reason. Restart the service in order to recover.
18/06/2012 19:54:24, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: The filter driver requires an up-to-date engine in order to function. You must install the latest definition updates in order to enable real-time protection.
18/06/2012 19:16:02, Error: Service Control Manager [7003] - The Microsoft Network Inspection System service depends the following service: BFE. This service might not be installed.
18/06/2012 14:51:53, Error: Service Control Manager [7001] - The WinHTTP Web Proxy Auto-Discovery Service service depends on the DHCP Client service which failed to start because of the following error: The dependency service or group failed to start.
18/06/2012 14:42:18, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 14:38:52, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 14:35:24, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
 
18/06/2012 14:32:02, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 14:28:27, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:548 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 14:25:19, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 14:21:58, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 14:18:41, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 14:15:21, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 14:11:50, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 14:08:41, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 14:05:11, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 14:02:03, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:548 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 13:58:49, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 13:55:28, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 13:52:19, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 13:48:57, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 13:45:47, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 13:42:12, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 13:38:43, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 13:35:21, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 13:31:55, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 13:28:30, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 13:25:04, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:464 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 0.0.0.0 Engine Version: AM: 1.1.8403.0, NIS: 0.0.0.0
18/06/2012 13:21:37, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\System32\services.exe;file:_C:\Windows\System32\services.exe->731;process:_pid:556 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 12:54:20, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Users\Sam\AppData\Local\{c07c8d13-da90-dacd-4643-a2c48c3764db}\n;file:_C:\Windows\system32\services.exe->731;process:_pid:548 Detection Origin: Local machine Detection Type: Concrete Detection Source: Real-Time Protection User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 12:50:48, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Users\Sam\AppData\Local\{c07c8d13-da90-dacd-4643-a2c48c3764db}\n;file:_C:\Windows\system32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: Real-Time Protection User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 12:50:45, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1726" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030}
18/06/2012 12:50:45, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1726" attempting to start the service netprofm with arguments "" in order to run the server: {A47979D2-C419-11D9-A5B4-001185AD2B89}
18/06/2012 12:50:45, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1726" attempting to start the service netman with arguments "" in order to run the server: {BA126AD1-2166-11D1-B1D0-00805FC1270E}
18/06/2012 12:50:34, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the RadeonPro Support Service service to connect.
18/06/2012 12:50:34, Error: Service Control Manager [7000] - The RadeonPro Support Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
18/06/2012 12:47:27, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 12:44:06, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:548 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 12:40:32, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:544 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
18/06/2012 12:37:19, Error: Microsoft Antimalware [1119] - Microsoft Antimalware has encountered a critical error when taking action on malware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/Sirefef.Y&threatid=2147655285 Name: Trojan:Win64/Sirefef.Y ID: 2147655285 Severity: Severe Category: Trojan Path: containerfile:_C:\Windows\system32\services.exe;file:_C:\Windows\system32\services.exe->731;process:_pid:540 Detection Origin: Local machine Detection Type: Concrete Detection Source: System User: NT AUTHORITY\SYSTEM Process Name: C:\Windows\system32\services.exe Action: Quarantine Action Status: No additional actions required Error Code: 0x800704ec Error description: This program is blocked by group policy. For more information, contact your system administrator. Signature Version: AV: 1.127.2180.0, AS: 1.127.2180.0, NIS: 11.137.0.0 Engine Version: AM: 1.1.8403.0, NIS: 2.0.8001.0
16/06/2012 16:17:42, Error: Schannel [36888] - The following fatal alert was generated: 40. The internal error state is 107.
16/06/2012 16:17:42, Error: Schannel [36874] - An SSL 3.0 connection request was received from a remote client application, but none of the cipher suites supported by the client application are supported by the server. The SSL connection request has failed.
14/06/2012 15:17:04, Error: volsnap [36] - The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit.
.
==== End Of File ===========================
 
Welcome aboard
yahooo.gif


Please, observe following rules:
  • Read all of my instructions very carefully. Your mistakes during cleaning process may have very serious consequences, like unbootable computer.
  • If you're stuck, or you're not sure about certain step, always ask before doing anything else.
  • Please refrain from running tools or applying updates other than those I suggest.
  • Never run more than one scan at a time.
  • Keep updating me regarding your computer behavior, good, or bad.
  • The cleaning process, once started, has to be completed. Even if your computer appears to act better, it may still be infected. Once the computer is totally clean, I'll certainly let you know.
  • If you leave the topic without explanation in the middle of a cleaning process, you may not be eligible to receive any more help in malware removal forum.
  • I close my topics if you have not replied in 5 days. If you need more time, simply let me know. If I closed your topic and you need it to be reopened, simply PM me.

==========================================

For x32 (x86) bit systems download Farbar Recovery Scan Tool 32-Bit and save it to a flash drive.
For x64 bit systems download Farbar Recovery Scan Tool 64-Bit and save it to a flash drive.

Plug the flashdrive into the infected PC.

Enter System Recovery Options.

To enter System Recovery Options from the Advanced Boot Options:
  • Restart the computer.
  • As soon as the BIOS is loaded begin tapping the F8 key until Advanced Boot Options appears.
  • Use the arrow keys to select the Repair your computer menu item.
  • Select US as the keyboard language settings, and then click Next.
  • Select the operating system you want to repair, and then click Next.
  • Select your user account an click Next.

To enter System Recovery Options by using Windows installation disc:
  • Insert the installation disc.
  • Restart your computer.
  • If prompted, press any key to start Windows from the installation disc. If your computer is not configured to start from a CD or DVD, check your BIOS settings.
  • Click Repair your computer.
  • Select US as the keyboard language settings, and then click Next.
  • Select the operating system you want to repair, and then click Next.
  • Select your user account and click Next.

On the System Recovery Options menu you will get the following options:

    • Startup Repair
      System Restore
      Windows Complete PC Restore
      Windows Memory Diagnostic Tool
      Command Prompt
  • Select Command Prompt
  • In the command window type in notepad and press Enter.
  • The notepad opens. Under File menu select Open.
  • Select "Computer" and find your flash drive letter and close the notepad.
  • In the command window type e:\frst.exe (for x64 bit version type e:\frst64) and press Enter
    Note: Replace letter e with the drive letter of your flash drive.
  • The tool will start to run.
  • When the tool opens click Yes to disclaimer.
  • Press Scan button.
  • It will make a log (FRST.txt) on the flash drive. Please copy and paste it to your reply.
 
Scan result of Farbar Recovery Scan Tool Version: 21-06-2012 02
Ran by SYSTEM at 22-06-2012 17:08:55
Running from G:\
Windows 7 Ultimate (X64) OS Language: English(US)
The current controlset is ControlSet001

========================== Registry (Whitelisted) =============

HKLM\...\Run: [Eraser] "c:\PROGRA~1\Eraser\Eraser.exe" --atRestart [980368 2011-11-05] (The Eraser Project)
HKLM\...\Run: [IntelliPoint] "c:\Program Files\Microsoft IntelliPoint\ipoint.exe" [2417032 2011-08-01] (Microsoft Corporation)
HKLM\...\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming [1744152 2011-10-07] (Logitech, Inc.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [499608 2011-03-15] (Adobe Systems Incorporated)
HKLM\...\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey [1271168 2012-03-26] (Microsoft Corporation)
HKLM-x32\...\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin [1523360 2011-01-11] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [843712 2012-01-03] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [421888 2011-10-24] (Apple Inc.)
HKLM-x32\...\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [641664 2012-04-05] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml [10752 2012-02-20] ()
HKLM-x32\...\Run: [TrojanScanner] C:\Program Files (x86)\Trojan Remover\Trjscan.exe /boot [1240848 2012-06-18] (Simply Super Software)
HKU\Sam\...\Run: [Google Update] "C:\Users\Sam\AppData\Local\Google\Update\GoogleUpdate.exe" /c [136176 2011-11-11] (Google Inc.)
HKU\Sam\...\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent [1242448 2011-11-13] (Valve Corporation)
HKU\Sam\...\Run: [PeerBlock] C:\Program Files\PeerBlock\peerblock.exe [2646128 2010-11-06] (PeerBlock, LLC)
HKU\Sam\...\Run: [DisplayFusion] "C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe" [2789280 2012-01-12] (Binary Fortress Software)
HKU\Sam\...\Run: [Xvid] C:\Program Files (x86)\Xvid\CheckUpdate.exe [8192 2011-01-17] ()
HKU\Sam\...\Run: [uTorrent] "C:\Users\Sam\Downloads\uTorrent.exe" /MINIMIZED [880496 2012-05-12] (BitTorrent, Inc.)
HKU\Sam\...\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [3514176 2011-11-10] (DT Soft Ltd)
Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.)
Startup: C:\Users\All Users\Start Menu\Programs\Startup\Rainmeter.lnk
ShortcutTarget: Rainmeter.lnk -> C:\Program Files\Rainmeter\Rainmeter.exe ()

==================== Services (Whitelisted) ======

2 Hamachi2Svc; "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s [2343816 2012-02-28] (LogMeIn Inc.)
2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [8704 2012-04-05] (Hi-Rez Studios)
2 MsMpSvc; "C:\Program Files\Microsoft Security Client\MsMpEng.exe" [12600 2012-03-26] (Microsoft Corporation)
2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2012-05-07] ()
2 RadeonPro Support Service; "C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe" [12800 2011-02-09] (Mr. John aka japamd)
3 rpcapd; "C:\Program Files (x86)\WinPcap\rpcapd.exe" -d -f "C:\Program Files (x86)\WinPcap\rpcapd.ini" [x]

========================== Drivers (Whitelisted) =============

1 dtsoftbus01; C:\Windows\System32\Drivers\dtsoftbus01.sys [279616 2011-11-11] (DT Soft Ltd)
3 hamachi; C:\Windows\System32\Drivers\hamachi.sys [33856 2009-03-18] (LogMeIn, Inc.)
2 NPF; C:\Windows\System32\Drivers\NPF.sys [47632 2009-10-20] (CACE Technologies, Inc.)
3 pbfilter; \??\C:\Program Files\PeerBlock\pbfilter.sys [24176 2010-11-06] ()
3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x]
3 GPU-Z; \??\C:\Users\Sam\AppData\Local\Temp\GPU-Z.sys [x]
0 sptd; [x]

========================== NetSvcs (Whitelisted) ===========


============ One Month Created Files and Folders ==============

2012-06-22 17:08 - 2012-06-22 17:09 - 00000000 ____D C:\FRST
2012-06-22 07:50 - 2012-06-22 07:50 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.71AA2B530F37956C
2012-06-22 07:50 - 2012-06-22 07:50 - 00050392 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\rdnaklxs.sys
2012-06-22 07:46 - 2012-06-22 07:46 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.389A80A780DC0FE3
2012-06-22 07:43 - 2012-06-22 07:43 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.F99EF225C3D55B0D
2012-06-21 18:00 - 2012-06-21 18:00 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2012-06-21 13:11 - 2012-06-21 13:14 - 00000000 ____D C:\Users\Sam\Desktop\fix
2012-06-21 12:56 - 2012-06-21 12:56 - 00000000 ____D C:\Windows\Temp6393BB15-1E27-C26B-7004-B24A9920C884-Signatures
2012-06-21 12:54 - 2012-06-21 12:54 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Malwarebytes
2012-06-21 12:54 - 2012-06-21 12:54 - 00000000 ____D C:\Users\All Users\Malwarebytes
2012-06-21 12:54 - 2012-06-21 12:54 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2012-06-21 12:54 - 2012-04-04 06:56 - 00024904 ____A (Malwarebytes Corporation) C:\Windows\System32\Drivers\mbam.sys
2012-06-19 02:45 - 2012-06-19 02:45 - 00000000 __SHD C:\found.000
2012-06-18 17:56 - 2012-06-22 07:48 - 00000616 ____A C:\Windows\setupact.log
2012-06-18 17:56 - 2012-06-18 17:56 - 00000000 ____A C:\Windows\setuperr.log
2012-06-18 17:55 - 2012-06-21 13:03 - 00001412 ____A C:\Windows\PFRO.log
2012-06-18 17:52 - 2012-06-18 17:52 - 00000000 ____D C:\Users\Sam\Documents\Simply Super Software
2012-06-18 17:50 - 2012-06-18 18:06 - 00000000 ____D C:\Program Files (x86)\Trojan Remover
2012-06-18 17:50 - 2012-06-18 17:50 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Simply Super Software
2012-06-18 17:50 - 2012-06-18 17:50 - 00000000 ____D C:\Users\All Users\Simply Super Software
2012-06-18 17:50 - 2003-02-02 10:06 - 00153088 ____A C:\Windows\SysWOW64\UNRAR3.dll
2012-06-18 17:50 - 2002-03-05 15:00 - 00075264 ____A C:\Windows\SysWOW64\unacev2.dll
2012-06-18 17:49 - 2012-06-18 17:49 - 00000000 ____D C:\Users\Sam\Desktop\KEY
2012-06-18 17:49 - 2012-03-14 06:26 - 12137424 ____A (Simply Super Software ) C:\Users\Sam\Desktop\trjsetup683.exe
2012-06-18 10:52 - 2012-06-21 18:01 - 00000000 ____D C:\Program Files\Microsoft Security Client
2012-06-18 10:52 - 2012-06-18 10:52 - 00065536 __ASH C:\Windows\System32\config\components{64a78e57-6562-11e1-be22-001fd0a2a7fa}.TxR.blf
2012-06-18 10:51 - 2012-06-18 10:52 - 12621696 ____A (Microsoft Corporation) C:\Users\Sam\Downloads\mseinstall (1).exe
2012-06-18 10:30 - 2012-06-18 10:33 - 275611648 ____A C:\Users\Sam\Downloads\kav_rescue_10.iso
2012-06-18 10:23 - 2012-06-18 10:23 - 03879304 ____A (AVG Technologies) C:\Users\Sam\Downloads\avg_free_stb_all_2012_2180_cnet.exe
2012-06-18 03:29 - 2012-06-18 13:01 - 00000000 ____D C:\a7d3c6e75a23b56f19fcd6dcd35c3d9b
2012-06-18 03:16 - 2012-06-18 03:17 - 00000000 ____D C:\Users\Sam\Downloads\Franz Schubert - Symphonies
2012-06-17 23:23 - 2012-06-17 23:23 - 00337888 ____A C:\Users\Sam\Downloads\YKRCj.png
2012-06-17 18:29 - 2012-06-17 18:29 - 00014113 ____A C:\Users\Sam\.recently-used.xbel
2012-06-17 11:36 - 2012-06-17 11:36 - 00062112 ____A C:\Users\Sam\Downloads\1339961660558.png
2012-06-17 11:30 - 2012-06-17 11:30 - 02023244 ____A C:\Users\Sam\Downloads\1339960561597.gif
2012-06-17 11:18 - 2012-06-17 11:18 - 00354087 ____A C:\Users\Sam\Downloads\1339958589177.png
2012-06-17 11:10 - 2012-06-17 11:10 - 00098614 ____A C:\Users\Sam\Downloads\1339958242815.png
2012-06-17 11:07 - 2012-06-17 11:07 - 00472450 ____A C:\Users\Sam\Downloads\1339960014519.png
2012-06-17 09:35 - 2012-06-17 09:35 - 00567033 ____A C:\Users\Sam\Downloads\b00Nf.png
2012-06-17 07:54 - 2012-06-17 07:54 - 00445108 ____A C:\Users\Sam\Downloads\1339946400319.png
2012-06-17 07:54 - 2012-06-17 07:54 - 00394915 ____A C:\Users\Sam\Downloads\1339945860675.png
2012-06-17 07:31 - 2012-06-17 07:40 - 387071187 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_24_[h264-720p][583D3DBB].mkv
2012-06-17 07:31 - 2012-06-17 07:31 - 00029942 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_24_[h264-720p][583D3DBB].mkv.torrent
2012-06-17 07:15 - 2012-06-17 07:17 - 39882672 ____A C:\Users\Sam\Downloads\Bakemonogatari Hentai - Iromono go _01vita.mp4
2012-06-17 07:15 - 2012-06-17 07:17 - 27789679 ____A C:\Users\Sam\Downloads\Bakemonogatari Hentai - Iromono go _02vita.mp4
2012-06-17 06:59 - 2012-06-17 06:59 - 00371927 ____A C:\Users\Sam\Downloads\n4fdd44ecacbaf.png
2012-06-17 06:43 - 2012-06-17 06:42 - 00559297 ____A C:\Users\Sam\Downloads\zpz7D.png
2012-06-16 15:49 - 2012-06-16 16:54 - 111406435 ____A C:\Users\Sam\Documents\REESE.wmv
2012-06-16 10:25 - 2012-06-16 10:25 - 00258268 ____A C:\Users\Sam\Downloads\t6TF9.png
2012-06-16 04:07 - 2012-06-18 13:01 - 00000000 ____D C:\Program Files\Web Assistant
2012-06-15 16:56 - 2012-06-15 16:57 - 20326756 ____A C:\Users\Sam\Downloads\Persona 4- Rise Joins The Team.mp3
2012-06-15 15:24 - 2012-06-15 15:24 - 02357244 ____A C:\Users\Sam\Downloads\Nyans Birthday Surprise.rar
2012-06-15 14:07 - 2012-06-15 14:07 - 06360088 ____A C:\Users\Sam\Documents\Reese Witherspoon Black Eye the song.Ray Sipe.Lady GaGa..avi
2012-06-15 13:34 - 2012-06-15 13:40 - 183238098 ____A C:\Users\Sam\Downloads\Brodyquest-Tracks.zip
2012-06-15 12:40 - 2012-06-15 12:40 - 19384518 ____A C:\Users\Sam\Documents\reese.wmv_(480p).avi
2012-06-15 11:45 - 2012-06-15 11:49 - 00333064 ____A C:\Users\Sam\Documents\BRODYQUEST_(480p).mp4.sfk
2012-06-15 11:41 - 2012-06-15 11:43 - 52151891 ____A C:\Users\Sam\Documents\BRODYQUEST_(480p).mp4
2012-06-15 11:36 - 2012-06-15 11:37 - 24766486 ____A C:\Users\Sam\Documents\BRODYQUEST_(480p).avi
2012-06-15 11:34 - 2012-06-15 11:34 - 00734849 ____A C:\Users\Sam\Downloads\n4fdb6d5d1ce06_large.gif
2012-06-15 10:29 - 2012-06-15 10:30 - 00313528 ____A C:\Users\Sam\Downloads\Brodyquest.mp3.sfk
2012-06-15 10:26 - 2012-06-15 10:26 - 01383850 ____A C:\Users\Sam\Downloads\Big Reese (Song).mp3
2012-06-15 10:25 - 2012-06-15 10:25 - 05944542 ____A C:\Users\Sam\Documents\Big Reese (Song)_(360p).mp4
2012-06-15 09:42 - 2012-06-17 14:08 - 00000000 ____D C:\Users\Sam\Desktop\REESEQUEST
2012-06-15 09:37 - 2012-06-15 09:40 - 05467607 ____A C:\Users\Sam\Downloads\Brodyquest.mp3
2012-06-15 08:12 - 2012-06-15 08:12 - 00149880 ____A C:\Users\Sam\Downloads\1339774832043.png
2012-06-14 19:07 - 2012-06-14 19:07 - 00704668 ____A C:\Users\Sam\Downloads\1339729029003.png
2012-06-14 19:00 - 2012-06-14 19:00 - 00013860 ____A C:\Users\Sam\Downloads\1339728996219.png
2012-06-14 14:15 - 2012-06-14 14:15 - 00837430 ____A C:\Users\Sam\Downloads\PixelVision_1.8.3.zip
2012-06-14 13:11 - 2012-06-14 13:11 - 01835947 ____A C:\Users\Sam\Downloads\Enigma3.1.rmskin
2012-06-14 13:09 - 2012-06-14 13:09 - 00004186 ____A C:\Users\Sam\Downloads\segoeclock_for_rainmeter_by_mossydev-d4vdz3c.rmskin
2012-06-14 13:07 - 2012-06-18 14:48 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Rainmeter
2012-06-14 13:07 - 2012-06-14 13:11 - 00000000 ____D C:\Program Files\Rainmeter
2012-06-14 13:07 - 2012-06-14 13:07 - 00000000 ____D C:\Users\Sam\Documents\Rainmeter
2012-06-14 13:06 - 2012-06-14 13:06 - 01392000 ____A C:\Users\Sam\Downloads\Rainmeter-2.2.exe
2012-06-14 12:41 - 2012-06-14 12:41 - 02220052 ____A C:\Users\Sam\Downloads\1339706463873.gif
2012-06-14 12:25 - 2012-06-14 12:25 - 00356462 ____A C:\Users\Sam\Downloads\1339701294186.png
2012-06-14 12:23 - 2012-06-14 12:23 - 00040185 ____A C:\Users\Sam\Downloads\1339700478683.png
2012-06-14 08:15 - 2012-06-14 08:15 - 00189477 ____A C:\Users\Sam\Downloads\1339690338427.png
2012-06-14 07:50 - 2012-06-14 07:50 - 00397485 ____A C:\Users\Sam\Downloads\1339688945912.png
2012-06-14 07:46 - 2012-06-14 07:46 - 00199984 ____A C:\Users\Sam\Downloads\1339688670017.png
2012-06-14 06:29 - 2012-06-14 06:33 - 00000000 ____D C:\FlvGrabber
2012-06-14 06:25 - 2012-06-14 06:25 - 04083298 ____A ( ) C:\Users\Sam\Downloads\HiDownloadPlatinum.exe
2012-06-14 06:25 - 2012-06-14 06:25 - 00000000 __SHD C:\Windows\System32\%APPDATA%
2012-06-14 06:23 - 2012-06-14 06:27 - 00000000 ____D C:\Users\Sam\Documents\FlvGrabber
2012-06-14 06:20 - 2012-06-14 06:20 - 00000000 ____D C:\Program Files (x86)\WinPcap
2012-06-14 06:17 - 2012-06-14 06:17 - 04118700 ____A ( ) C:\Users\Sam\Downloads\flvgrabber.exe
2012-06-14 06:17 - 2012-06-14 06:17 - 04118700 ____A ( ) C:\Users\Sam\Downloads\flvgrabber (1).exe
2012-06-14 06:08 - 2012-06-14 06:08 - 00406155 ____A C:\Users\Sam\Downloads\k8Usq.png
2012-06-14 06:07 - 2012-06-14 06:07 - 00508723 ____A C:\Users\Sam\Downloads\JjnZo.png
2012-06-14 06:07 - 2012-06-14 06:07 - 00508723 ____A C:\Users\Sam\Downloads\JjnZo (1).png
2012-06-14 06:07 - 2012-06-14 06:07 - 00274974 ____A C:\Users\Sam\Downloads\5kKFT.png
2012-06-13 18:42 - 2012-06-15 13:12 - 00075694 ____A C:\Users\Sam\Downloads\n4fd94bf3a0661.png
2012-06-13 18:00 - 2012-05-17 18:47 - 17807360 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2012-06-13 18:00 - 2012-05-17 18:16 - 10924032 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2012-06-13 18:00 - 2012-05-17 18:06 - 02311680 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2012-06-13 18:00 - 2012-05-17 17:59 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2012-06-13 18:00 - 2012-05-17 17:59 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2012-06-13 18:00 - 2012-05-17 17:58 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2012-06-13 18:00 - 2012-05-17 17:58 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2012-06-13 18:00 - 2012-05-17 17:56 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2012-06-13 18:00 - 2012-05-17 17:55 - 00818688 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2012-06-13 18:00 - 2012-05-17 17:55 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2012-06-13 18:00 - 2012-05-17 17:54 - 02144768 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2012-06-13 18:00 - 2012-05-17 17:51 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2012-06-13 18:00 - 2012-05-17 17:51 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2012-06-13 18:00 - 2012-05-17 17:47 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2012-06-13 18:00 - 2012-05-17 15:11 - 12314624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2012-06-13 18:00 - 2012-05-17 14:48 - 09737728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2012-06-13 18:00 - 2012-05-17 14:45 - 01800192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2012-06-13 18:00 - 2012-05-17 14:36 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2012-06-13 18:00 - 2012-05-17 14:35 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2012-06-13 18:00 - 2012-05-17 14:35 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2012-06-13 18:00 - 2012-05-17 14:33 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2012-06-13 18:00 - 2012-05-17 14:31 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2012-06-13 18:00 - 2012-05-17 14:29 - 00716800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2012-06-13 18:00 - 2012-05-17 14:29 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2012-06-13 18:00 - 2012-05-17 14:27 - 01793024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2012-06-13 18:00 - 2012-05-17 14:25 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2012-06-13 18:00 - 2012-05-17 14:24 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2012-06-13 18:00 - 2012-05-17 14:20 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2012-06-13 17:49 - 2012-06-13 17:49 - 01644467 ____A C:\Users\Sam\Downloads\n4fd91d741f6e2_large.gif
2012-06-13 17:18 - 2012-06-13 17:20 - 00000000 ____D C:\Users\Sam\Downloads\Final Fantasy IX
2012-06-13 16:35 - 2012-06-13 16:35 - 00485875 ____A C:\Users\Sam\Downloads\1339629812322.png
2012-06-13 15:00 - 2012-06-13 15:00 - 01985103 ____A C:\Users\Sam\Downloads\woaUv.gif
2012-06-13 14:52 - 2012-05-01 21:32 - 00208896 ____A (Microsoft Corporation) C:\Windows\System32\profsvc.dll
2012-06-13 14:52 - 2012-04-25 21:34 - 00149504 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorekmts.dll
2012-06-13 14:52 - 2012-04-25 21:34 - 00076288 ____A (Microsoft Corporation) C:\Windows\System32\rdpwsx.dll
2012-06-13 14:52 - 2012-04-25 21:28 - 00009216 ____A (Microsoft Corporation) C:\Windows\System32\rdrmemptylst.exe
2012-06-13 14:51 - 2012-05-14 17:32 - 03144192 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys
2012-06-13 14:51 - 2012-05-04 02:52 - 05505392 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2012-06-13 14:51 - 2012-05-04 02:08 - 03958128 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2012-06-13 14:51 - 2012-05-04 02:08 - 03902320 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2012-06-13 14:51 - 2012-04-27 19:50 - 00204800 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\rdpwd.sys
2012-06-13 14:51 - 2012-04-23 21:59 - 01460224 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll
2012-06-13 14:51 - 2012-04-23 21:59 - 00182272 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll
2012-06-13 14:51 - 2012-04-23 21:59 - 00140288 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll
2012-06-13 14:51 - 2012-04-23 20:47 - 01156608 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2012-06-13 14:51 - 2012-04-23 20:47 - 00139264 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2012-06-13 14:51 - 2012-04-23 20:47 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2012-06-13 14:51 - 2012-04-07 04:18 - 03213824 ____A (Microsoft Corporation) C:\Windows\System32\msi.dll
2012-06-13 14:51 - 2012-04-07 03:34 - 02342400 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2012-06-13 14:33 - 2012-06-13 14:33 - 02019342 ____A C:\Users\Sam\Downloads\IKtte.gif
2012-06-13 14:33 - 2012-06-13 14:33 - 01923054 ____A C:\Users\Sam\Downloads\sADfK.gif
2012-06-13 13:53 - 2012-06-13 13:53 - 00438293 ____A C:\Users\Sam\Downloads\75TlU.png
2012-06-13 13:53 - 2012-06-13 13:53 - 00431910 ____A C:\Users\Sam\Downloads\0VT1n.png
2012-06-13 13:53 - 2012-06-13 13:53 - 00314777 ____A C:\Users\Sam\Downloads\kVYoN.png
2012-06-13 13:53 - 2012-06-13 13:53 - 00181644 ____A C:\Users\Sam\Downloads\0eDSx.png
2012-06-13 13:29 - 2012-06-13 13:29 - 00587109 ____A C:\Users\Sam\Downloads\n4fd905f98a8a3.png
2012-06-12 17:39 - 2012-06-12 17:39 - 00013578 ____A C:\Users\Sam\Downloads\1339550895675.png
2012-06-12 17:37 - 2012-06-12 17:37 - 00242286 ____A C:\Users\Sam\Downloads\E9S0v.png
2012-06-12 17:27 - 2012-05-29 02:31 - 13513415 ____A C:\delver.jar
2012-06-12 17:23 - 2012-06-12 17:24 - 13411069 ____A C:\Users\Sam\Downloads\Delver-alpha-5-29-12.zip
2012-06-12 17:01 - 2012-06-12 17:01 - 00101156 ____A C:\Users\Sam\Downloads\1339549245513.png
2012-06-12 16:57 - 2012-06-12 16:57 - 00286312 ____A C:\Users\Sam\Downloads\wikipedia_harassment1.png
2012-06-12 15:30 - 2012-06-12 15:30 - 00019263 ____A C:\Users\Sam\Downloads\1339540441199.png
2012-06-12 15:25 - 2012-06-12 15:25 - 00100318 ____A C:\Users\Sam\Downloads\1339540041581.png
2012-06-12 15:24 - 2012-06-12 15:24 - 00124385 ____A C:\Users\Sam\Downloads\1339540004789.png
2012-06-12 15:22 - 2012-06-12 15:22 - 00065119 ____A C:\Users\Sam\Downloads\1339539824048.png
2012-06-12 15:16 - 2012-06-12 15:16 - 00166525 ____A C:\Users\Sam\Downloads\1339539601017.png
2012-06-12 15:09 - 2012-06-12 15:09 - 00716396 ____A C:\Users\Sam\Downloads\1339539318458.png
2012-06-12 15:06 - 2012-06-12 15:06 - 02029826 ____A C:\Users\Sam\Downloads\1339539038686.gif
2012-06-12 15:04 - 2012-06-12 15:04 - 00227109 ____A C:\Users\Sam\Downloads\1339538701109.png
2012-06-12 14:56 - 2012-06-12 14:56 - 00142487 ____A C:\Users\Sam\Downloads\1339537563444.png
2012-06-12 14:52 - 2012-06-12 14:52 - 00213762 ____A C:\Users\Sam\Downloads\1339537114631.png
2012-06-12 14:30 - 2012-06-12 14:30 - 00099665 ____A C:\Users\Sam\Downloads\1339539221610.png
2012-06-12 14:29 - 2012-06-12 14:29 - 00060995 ____A C:\Users\Sam\Downloads\1339539144886.png
2012-06-12 14:26 - 2012-06-12 14:26 - 00083785 ____A C:\Users\Sam\Downloads\1339539082180.png
2012-06-12 14:20 - 2012-06-12 14:20 - 00299429 ____A C:\Users\Sam\Downloads\1339539532673.png
2012-06-12 14:19 - 2012-06-12 14:19 - 00008341 ____A C:\Users\Sam\Downloads\1339539425730.png
2012-06-12 14:18 - 2012-06-12 14:18 - 01258662 ____A C:\Users\Sam\Downloads\1339538041302.gif
2012-06-12 14:18 - 2012-06-12 14:18 - 00597234 ____A C:\Users\Sam\Downloads\1339537822406.gif
2012-06-12 14:18 - 2012-06-12 14:18 - 00041996 ____A C:\Users\Sam\Downloads\1339538172315.png
2012-06-12 14:17 - 2012-06-12 14:17 - 00078751 ____A C:\Users\Sam\Downloads\1339537667280.png
2012-06-12 13:55 - 2012-06-12 13:55 - 00376976 ____A C:\Users\Sam\Downloads\1339536468542.png
2012-06-12 13:49 - 2012-06-12 13:49 - 00441870 ____A C:\Users\Sam\Downloads\1339537543596.png
2012-06-12 13:43 - 2012-06-12 13:43 - 00240459 ____A C:\Users\Sam\Downloads\1339537326653.png
2012-06-12 13:36 - 2012-06-12 13:36 - 00097660 ____A C:\Users\Sam\Downloads\1339536155865.png
2012-06-12 13:29 - 2012-06-12 13:29 - 00069731 ____A C:\Users\Sam\Downloads\1339536317971.png
2012-06-12 13:23 - 2012-06-12 13:23 - 01991238 ____A C:\Users\Sam\Downloads\1339526223829.gif
2012-06-12 13:03 - 2012-06-12 13:03 - 00057074 ____A C:\Users\Sam\Downloads\1339533167078.png
2012-06-12 13:02 - 2012-06-12 13:02 - 00504430 ____A C:\Users\Sam\Downloads\1339533242278.gif
2012-06-12 12:58 - 2012-06-12 12:58 - 00141518 ____A C:\Users\Sam\Downloads\1339532412234.png
2012-06-12 12:57 - 2012-06-12 12:57 - 02082940 ____A C:\Users\Sam\Downloads\1339532135617.gif
2012-06-12 12:50 - 2012-06-12 12:50 - 00538936 ____A C:\Users\Sam\Downloads\1339530641065.png
2012-06-12 12:49 - 2012-06-12 12:49 - 00583401 ____A C:\Users\Sam\Downloads\1339530535376.png
2012-06-12 12:42 - 2012-06-12 12:42 - 00783532 ____A C:\Users\Sam\Downloads\1339533178926.gif
2012-06-12 12:40 - 2012-06-12 12:40 - 01001328 ____A C:\Users\Sam\Downloads\1339533396232.png
2012-06-12 12:40 - 2012-06-12 12:40 - 00177532 ____A C:\Users\Sam\Downloads\1339533619806.png
2012-06-12 12:38 - 2012-06-12 12:38 - 00108093 ____A C:\Users\Sam\Downloads\1339533097065.png
2012-06-12 12:37 - 2012-06-12 12:37 - 00644604 ____A C:\Users\Sam\Downloads\1339532652037.png
2012-06-12 12:36 - 2012-06-12 12:36 - 00925235 ____A C:\Users\Sam\Downloads\1339532324638.png
2012-06-12 12:36 - 2012-06-12 12:36 - 00545012 ____A C:\Users\Sam\Downloads\1339532514392.png
2012-06-12 12:33 - 2012-06-12 12:33 - 00071811 ____A C:\Users\Sam\Downloads\1339532889196.png
2012-06-12 12:16 - 2012-06-12 12:17 - 16120530 ____A C:\Users\Sam\Downloads\Fate Gakuen Alternative.rar
2012-06-12 12:08 - 2012-06-12 12:08 - 02319134 ____A C:\Users\Sam\Downloads\1339521136540.gif
2012-06-12 11:58 - 2012-06-12 11:59 - 13085389 ____A C:\Users\Sam\Downloads\Takeda Hiromitsu, Tsubomi Hiraku Wa Beni No Hana.zip
2012-06-12 11:53 - 2012-06-12 11:53 - 02228441 ____A C:\Users\Sam\Downloads\1339530650643.gif
2012-06-12 11:39 - 2012-06-12 11:39 - 02875982 ____A C:\Users\Sam\Downloads\1339528221558.gif
2012-06-12 11:19 - 2012-06-12 11:19 - 00145003 ____A C:\Users\Sam\Downloads\1339528193285.png
2012-06-12 11:08 - 2012-06-12 11:08 - 00027929 ____A C:\Users\Sam\Downloads\1339527726611.png
2012-06-12 10:30 - 2012-06-12 10:30 - 00518861 ____A C:\Users\Sam\Downloads\1339525347595.png
2012-06-12 10:24 - 2012-06-12 10:24 - 00006667 ____A C:\Users\Sam\Downloads\1339524712317.png
2012-06-12 10:23 - 2012-06-12 10:23 - 00063380 ____A C:\Users\Sam\Downloads\1339523732377.gif
2012-06-12 09:37 - 2012-06-12 09:37 - 00089375 ____A C:\Users\Sam\Downloads\1339522114558.png
2012-06-12 06:38 - 2012-06-12 06:38 - 00952561 ____A C:\Users\Sam\Downloads\Vocaroo_s0WFB6hVg8wq.mp3
2012-06-12 06:38 - 2012-06-12 06:38 - 00676290 ____A C:\Users\Sam\Downloads\Vocaroo_s0rnjLKJV40H.mp3
2012-06-12 06:38 - 2012-06-12 06:38 - 00407334 ____A C:\Users\Sam\Downloads\Vocaroo_s0pY6QBDdCBi.mp3
2012-06-12 06:38 - 2012-06-12 06:38 - 00396049 ____A C:\Users\Sam\Downloads\Vocaroo_s0rmlL8hnBDe.mp3
2012-06-12 06:38 - 2012-06-12 06:38 - 00396049 ____A C:\Users\Sam\Downloads\Vocaroo_s0rmlL8hnBDe (1).mp3
2012-06-12 06:25 - 2012-06-12 06:25 - 00422171 ____A C:\Users\Sam\Downloads\Vocaroo_s0g7KjlZtukS.mp3
2012-06-11 20:55 - 2012-06-11 20:55 - 06472877 ____A C:\Users\Sam\Downloads\Nyan.rar
2012-06-11 20:51 - 2012-06-11 20:51 - 00622792 ____A C:\Users\Sam\Downloads\Vocaroo_s0Aa98tLhDBJ.mp3
2012-06-11 07:56 - 2012-06-11 08:07 - 00000000 ____D C:\Users\Sam\Documents\Rockstar Games
2012-06-11 06:41 - 2012-06-11 06:44 - 186235034 ____A C:\Users\Sam\Downloads\Kerbal Space Prgoram (Mod pack by SAS41).exe
2012-06-11 06:38 - 2012-06-11 06:45 - 186511255 ____A C:\Users\Sam\Downloads\KSP_win_0_14.zip
2012-06-11 03:08 - 2012-06-11 03:08 - 00284027 ____A C:\Users\Sam\Downloads\1339406242103.png
2012-06-11 02:45 - 2012-06-11 02:45 - 02973129 ____A C:\Users\Sam\Downloads\1339410341181.gif
2012-06-11 02:45 - 2012-06-11 02:45 - 00851549 ____A C:\Users\Sam\Downloads\1339410254472.gif
2012-06-10 19:50 - 2012-06-10 19:50 - 00169664 ____A C:\Users\Sam\Downloads\1339386589530.gif
2012-06-10 19:03 - 2012-06-10 19:03 - 00966676 ____A C:\Users\Sam\Downloads\1339383413643.png
2012-06-10 18:53 - 2012-06-10 18:53 - 00098261 ____A C:\Users\Sam\Downloads\madotsuki_grab_my_lightswitch_by_cartoonydoodles-d442wjt.png
2012-06-10 14:37 - 2012-06-10 14:37 - 00501639 ____A C:\Users\Sam\Downloads\1339365078076.gif
2012-06-10 13:51 - 2012-06-10 13:51 - 00043762 ____A C:\Users\Sam\Downloads\1339364902794.png
2012-06-10 13:51 - 2012-06-10 13:51 - 00024615 ____A C:\Users\Sam\Downloads\1339364998695.gif
2012-06-10 13:50 - 2012-06-10 13:50 - 00231879 ____A C:\Users\Sam\Downloads\1339363193733.png
2012-06-10 13:49 - 2012-06-10 13:49 - 00297911 ____A C:\Users\Sam\Downloads\1339362937336.png
2012-06-10 11:46 - 2012-06-10 11:52 - 424821663 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_23_[h264-720p][9AD1A48A].mkv
2012-06-10 11:44 - 2012-06-10 11:44 - 00016688 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_23_[h264-720p][9AD1A48A].mkv.torrent
2012-06-10 11:40 - 2012-06-10 11:40 - 00325370 ____A C:\Users\Sam\Downloads\1339353254881.png
2012-06-10 10:51 - 2012-06-10 10:51 - 02335363 ____A C:\Users\Sam\Downloads\1339354140448.gif
2012-06-10 10:16 - 2012-06-10 10:16 - 00045494 ____A C:\Users\Sam\Downloads\1339351640960.gif
2012-06-10 10:15 - 2012-06-10 10:15 - 00114202 ____A C:\Users\Sam\Downloads\1339351902821.gif
2012-06-10 10:10 - 2012-06-10 10:10 - 00505092 ____A C:\Users\Sam\Downloads\1339351798441.gif
2012-06-10 10:08 - 2012-06-10 10:08 - 01347749 ____A C:\Users\Sam\Downloads\1339346812796.gif
2012-06-10 10:08 - 2012-06-10 10:08 - 00238143 ____A C:\Users\Sam\Downloads\1339346731378.png
2012-06-10 09:19 - 2012-06-10 09:46 - 48988852 ____A C:\Users\Sam\Downloads\yn0.10enginstaller.rar
2012-06-10 08:56 - 2012-06-10 08:56 - 02774103 ____A C:\Users\Sam\Downloads\1339347340488.png
2012-06-10 08:25 - 2012-06-10 08:25 - 00118972 ____A C:\Users\Sam\Downloads\1339344243651.png
2012-06-10 08:25 - 2012-06-10 08:25 - 00072554 ____A C:\Users\Sam\Downloads\1339344594388.png
2012-06-10 08:24 - 2012-06-10 08:24 - 03109838 ____A C:\Users\Sam\Downloads\1339344161509.gif
2012-06-10 08:23 - 2012-06-10 08:23 - 00422025 ____A C:\Users\Sam\Downloads\1339343908289.png
2012-06-10 08:23 - 2012-06-10 08:23 - 00190029 ____A C:\Users\Sam\Downloads\1339343885784.png
2012-06-10 08:23 - 2012-06-10 08:23 - 00100707 ____A C:\Users\Sam\Downloads\1339343963675.png
2012-06-10 08:21 - 2012-06-10 08:21 - 00171814 ____A C:\Users\Sam\Downloads\1339343688016.png
2012-06-10 08:21 - 2012-06-10 08:21 - 00087759 ____A C:\Users\Sam\Downloads\1339343629723.png
2012-06-10 08:20 - 2012-06-10 08:20 - 00157338 ____A C:\Users\Sam\Downloads\1339343550517.png
2012-06-10 08:20 - 2012-06-10 08:20 - 00046991 ____A C:\Users\Sam\Downloads\1339343591489.png
2012-06-10 08:18 - 2012-06-10 08:18 - 00034063 ____A C:\Users\Sam\Downloads\1339343214363.png
2012-06-10 08:13 - 2012-06-10 08:13 - 01869624 ____A C:\Users\Sam\Downloads\1339344206422.gif
2012-06-10 08:11 - 2012-06-10 08:11 - 01167852 ____A C:\Users\Sam\Downloads\1339342136171.png
2012-06-10 08:11 - 2012-06-10 08:11 - 00490565 ____A C:\Users\Sam\Downloads\1339342668200.gif
2012-06-10 08:09 - 2012-06-10 08:09 - 00091948 ____A C:\Users\Sam\Downloads\1339341057083.gif
2012-06-10 07:39 - 2012-06-10 07:39 - 00478372 ____A C:\Users\Sam\Downloads\1339338233887.gif
2012-06-10 07:14 - 2012-06-10 07:13 - 00399386 ____A C:\Users\Sam\Downloads\1339337102316.png
2012-06-10 07:09 - 2012-06-10 07:11 - 78346545 ____A C:\Users\Sam\Downloads\save.rar
2012-06-10 06:29 - 2012-06-10 06:29 - 00948451 ____A C:\Users\Sam\Downloads\1339334892742.png
2012-06-09 11:22 - 2012-06-10 04:56 - 00000000 ____D C:\Users\Sam\Downloads\Mawaru Penguindrum Music Collection (MP3)
2012-06-09 11:20 - 2012-06-09 11:20 - 00035063 ____A C:\Users\Sam\Downloads\[BakaBT.164962v2] Mawaru Penguindrum Music Collection (MP3).torrent
2012-06-08 09:44 - 2012-06-08 09:44 - 01270121 ____A C:\Users\Sam\Downloads\1339177272318.png
2012-06-08 09:43 - 2012-06-08 09:43 - 01278229 ____A C:\Users\Sam\Downloads\1339177203455.png
2012-06-08 09:43 - 2012-06-08 09:43 - 01037416 ____A C:\Users\Sam\Downloads\1339177064431.png
2012-06-08 09:41 - 2012-06-08 09:41 - 01269748 ____A C:\Users\Sam\Downloads\1339177158276.png
2012-06-08 09:33 - 2012-06-08 09:33 - 00920689 ____A C:\Users\Sam\Downloads\1339171479286.png
2012-06-08 09:26 - 2012-06-08 09:26 - 00147587 ____A C:\Users\Sam\Downloads\1339168283733.png
2012-06-08 09:26 - 2012-06-08 09:26 - 00041543 ____A C:\Users\Sam\Downloads\1339164923335.png
2012-06-08 09:21 - 2012-06-08 09:21 - 00702194 ____A C:\Users\Sam\Downloads\1339165224979.png
2012-06-08 09:20 - 2012-06-08 09:20 - 00137284 ____A C:\Users\Sam\Downloads\1339165192922.png
2012-06-08 09:17 - 2012-06-08 09:17 - 00277550 ____A C:\Users\Sam\Downloads\1339164886907.png
2012-06-08 09:17 - 2012-06-08 09:17 - 00144487 ____A C:\Users\Sam\Downloads\1339164852984.png
2012-06-07 20:32 - 2012-06-07 20:32 - 00032514 ____A C:\Users\Sam\Downloads\1339121719945.png
2012-06-07 20:19 - 2012-06-07 20:19 - 01713099 ____A C:\Users\Sam\Downloads\1339127505453.gif
2012-06-07 18:25 - 2012-06-07 18:25 - 00739345 ____A C:\Users\Sam\Downloads\1339122198690.gif
2012-06-07 18:08 - 2012-06-07 18:08 - 00179516 ____A C:\Users\Sam\Downloads\Crash.dmp
2012-06-07 16:49 - 2012-06-07 16:49 - 00045028 ____A C:\Users\Sam\Downloads\1339116285331.png
2012-06-07 14:58 - 2012-06-07 14:58 - 00000000 ____D C:\Users\Sam\Documents\CAPCOM
2012-06-07 14:58 - 2012-06-07 14:58 - 00000000 ____D C:\Users\Sam\AppData\Local\CAPCOM
2012-06-07 14:48 - 2012-06-07 14:48 - 00000000 ____D C:\Program Files (x86)\CAPCOM
2012-06-07 14:06 - 2012-06-07 14:06 - 00190411 ____A C:\Users\Sam\Downloads\1339105528536.png
2012-06-07 13:53 - 2012-06-07 13:53 - 00013860 ____A C:\Users\Sam\Downloads\1339099745570.png
2012-06-07 10:56 - 2012-06-07 14:35 - 00000000 ____D C:\Users\Sam\Downloads\Devil.May.Cry.4-RELOADED [www.HispaTorrents.net]
2012-06-07 09:48 - 2012-06-07 09:48 - 03065917 ____A C:\Users\Sam\Downloads\1339084716767.gif
2012-06-07 08:36 - 2012-06-07 08:36 - 00074697 ____A C:\Users\Sam\Downloads\1339086858108.png
2012-06-07 07:09 - 2012-06-07 07:09 - 00022393 ____A C:\Users\Sam\Downloads\Vocaroo_s0bxuGgZff9n.mp3
2012-06-07 07:08 - 2012-06-07 07:08 - 00072548 ____A C:\Users\Sam\Downloads\Vocaroo_s0Wfxnwgt2PO.mp3
2012-06-07 07:07 - 2012-06-07 07:07 - 00629445 ____A C:\Users\Sam\Downloads\n4fd04b1cf11ba.png
2012-06-07 06:02 - 2012-06-07 06:02 - 00751314 ____A C:\Users\Sam\Downloads\Vocaroo_s0ZQoI0R4ncF.mp3
2012-06-07 05:57 - 2012-06-07 05:57 - 00162828 ____A C:\Users\Sam\Downloads\Vocaroo_s0MOcw47hvCM.mp3
2012-06-07 05:56 - 2012-06-07 05:56 - 00160320 ____A C:\Users\Sam\Downloads\Vocaroo_s0ncobTHuMSd.mp3
2012-06-07 05:55 - 2012-06-07 05:55 - 00266899 ____A C:\Users\Sam\Downloads\Vocaroo_s043E1rhIXit.mp3
2012-06-07 05:53 - 2012-06-07 05:53 - 00281737 ____A C:\Users\Sam\Downloads\Vocaroo_s0l4FPXg5Tsh.mp3
2012-06-07 05:45 - 2012-06-07 05:45 - 01915833 ____A C:\Users\Sam\Downloads\1GvM8.gif
2012-06-07 05:42 - 2012-06-07 05:42 - 00097835 ____A C:\Users\Sam\Downloads\Vocaroo_s0eq8RjTfLBC.mp3
2012-06-07 05:39 - 2012-06-07 05:39 - 00095327 ____A C:\Users\Sam\Downloads\Vocaroo_s0sU1bgJhzOD.mp3
2012-06-07 05:39 - 2012-06-07 05:39 - 00042873 ____A C:\Users\Sam\Downloads\Vocaroo_s0IUkp7ienrq.mp3
2012-06-07 05:36 - 2012-06-07 05:36 - 00489045 ____A C:\Users\Sam\Downloads\Vocaroo_s0hwjmwnbiab.mp3
2012-06-07 05:32 - 2012-06-07 05:32 - 00050606 ____A C:\Users\Sam\Downloads\Vocaroo_s0nInD3gsvQL.mp3
2012-06-07 05:30 - 2012-06-07 05:30 - 00276304 ____A C:\Users\Sam\Downloads\Vocaroo_s0uzJH973c97.mp3
2012-06-07 05:20 - 2012-06-07 05:20 - 00129391 ____A C:\Users\Sam\Downloads\Vocaroo_s0fh0mNeoFXz.mp3
2012-06-07 05:06 - 2012-06-07 05:07 - 00072720 ____A C:\Windows\System32\peerblock.dmp
2012-06-06 16:11 - 2012-06-06 16:11 - 01018819 ____A C:\Users\Sam\Downloads\WfP1J.gif
2012-06-06 15:35 - 2012-06-06 15:35 - 02842975 ____A C:\Users\Sam\Downloads\1339025722897.gif
2012-06-06 14:01 - 2012-06-06 14:01 - 00160381 ____A C:\Users\Sam\Downloads\1339020058859.png
2012-06-06 13:46 - 2012-06-06 13:46 - 00003271 ____A C:\Users\Sam\Documents\fanfic.txt
2012-06-06 08:41 - 2012-06-06 08:41 - 00770127 ____A C:\Users\Sam\Downloads\1338999998493.png
2012-06-06 08:36 - 2012-06-06 13:46 - 00025516 ____A C:\Users\Sam\Documents\fanfic.odt
2012-06-06 08:15 - 2012-06-06 08:18 - 00000825 ____A C:\Users\Sam\Documents\autism.txt
2012-06-06 06:28 - 2012-06-06 06:28 - 00042567 ____A C:\Users\Sam\Downloads\1338992711991.png
2012-06-06 06:18 - 2012-06-06 06:18 - 00473188 ____A C:\Users\Sam\Downloads\1338990334399.png
2012-06-06 06:04 - 2012-06-06 06:10 - 00000000 ____D C:\mugen
2012-06-06 05:57 - 2012-06-06 05:58 - 08811721 ____A C:\Users\Sam\Downloads\mugen100.zip
2012-06-06 05:52 - 2012-06-06 05:52 - 00000000 ____D C:\Users\All Users\VirtuallTek
2012-06-06 05:52 - 2012-06-06 05:52 - 00000000 ____D C:\Program Files (x86)\VirtuallTek
2012-06-06 05:48 - 2012-06-06 05:51 - 01632901 ____A (VirtuallTek Systems ) C:\Users\Sam\Downloads\ffu26.exe
2012-06-05 18:16 - 2012-06-05 18:15 - 00302025 ____A C:\Users\Sam\Downloads\1338948677165.png
2012-06-05 18:09 - 2012-06-05 18:09 - 01038635 ____A C:\Users\Sam\Downloads\1338947559621.png
2012-06-05 16:41 - 2012-06-05 16:41 - 01335004 ____A C:\Users\Sam\Downloads\1338942125442.png
2012-06-05 15:07 - 2012-06-05 15:12 - 61353425 ____A C:\Users\Sam\Downloads\Conker's Bad Fur Day.zip
2012-06-05 15:06 - 2012-06-05 15:08 - 00000000 ____D C:\Program Files (x86)\Project64 1.6
2012-06-05 15:05 - 2012-06-05 15:06 - 02080797 ____A (Project64 ) C:\Users\Sam\Downloads\project64_1.6.exe
 
2012-06-05 15:05 - 2012-06-05 15:05 - 06276900 ____A C:\Users\Sam\Downloads\Super Mario 64.zip
2012-06-05 14:47 - 2012-06-05 14:47 - 01041528 ____A C:\Users\Sam\Downloads\1338928931119.gif
2012-06-05 14:13 - 2012-06-05 14:13 - 00511645 ____A C:\Users\Sam\Downloads\1338934080168.gif
2012-06-05 12:50 - 2012-06-05 12:50 - 01047927 ____A C:\Users\Sam\Downloads\1338927174085.gif
2012-06-05 12:41 - 2012-06-05 12:41 - 00388894 ____A C:\Users\Sam\Downloads\1338928753084.png
2012-06-05 12:14 - 2012-06-05 12:14 - 00308238 ____A C:\Users\Sam\Downloads\1338927173959.png
2012-06-05 12:05 - 2012-06-05 12:05 - 00148926 ____A C:\Users\Sam\Downloads\1338926454207.png
2012-06-05 12:03 - 2012-06-05 12:03 - 03640626 ____A C:\Users\Sam\Downloads\untitled_2nyjrc.gif
2012-06-05 11:54 - 2012-06-05 11:54 - 00909729 ____A C:\Users\Sam\Downloads\1338925929642.gif
2012-06-05 11:44 - 2012-06-05 11:44 - 00019209 ____A C:\Users\Sam\Downloads\1338925384507.png
2012-06-05 11:44 - 2012-06-05 11:44 - 00011487 ____A C:\Users\Sam\Downloads\1338925294111.png
2012-06-05 11:28 - 2012-06-05 11:28 - 00086116 ____A C:\Users\Sam\Downloads\1338924472650.png
2012-06-05 10:55 - 2012-06-05 10:55 - 00450512 ____A C:\Users\Sam\Downloads\n4fcc2900d032c.png
2012-06-05 09:13 - 2012-06-05 09:13 - 03040589 ____A C:\Users\Sam\Downloads\1338868479399.gif
2012-06-05 09:01 - 2012-06-05 09:01 - 00418553 ____A C:\Users\Sam\Downloads\1338915125028.png
2012-06-05 08:40 - 2012-06-05 08:40 - 00115399 ____A C:\Users\Sam\Downloads\1338914384781.png
2012-06-05 08:34 - 2012-06-05 08:34 - 00262633 ____A C:\Users\Sam\Downloads\my_body_is_ready.png
2012-06-04 18:33 - 2012-06-04 18:33 - 00098796 ____A C:\Users\Sam\Downloads\E3-logo1.png
2012-06-04 18:29 - 2012-06-04 18:29 - 01018517 ____A C:\Users\Sam\Downloads\1338862637026.png
2012-06-04 18:26 - 2012-06-04 18:26 - 00110941 ____A C:\Users\Sam\Downloads\1338862501694.png
2012-06-04 13:35 - 2012-06-04 13:35 - 00181171 ____A C:\Users\Sam\Downloads\1338845458684.png
2012-06-04 12:47 - 2012-06-04 12:47 - 00114859 ____A C:\Users\Sam\Downloads\1338841888259.png
2012-06-04 11:57 - 2012-06-04 11:57 - 00166972 ____A C:\Users\Sam\Downloads\1338839726619.png
2012-06-04 10:58 - 2012-06-04 10:58 - 00009217 ____A C:\Users\Sam\Downloads\1338835491659.png
2012-06-04 10:45 - 2012-06-04 10:45 - 00599502 ____A C:\Users\Sam\Downloads\ywMBj.gif
2012-06-04 10:37 - 2012-06-04 10:47 - 00176184 ____A C:\Users\Sam\Downloads\1338832981131.png
2012-06-04 09:46 - 2012-06-04 09:46 - 01514501 ____A C:\Users\Sam\Downloads\1338831917088.png
2012-06-04 05:57 - 2012-06-04 06:02 - 00000000 ____D C:\Users\Sam\Downloads\Yokohama Kaidashi Kikou Music Collection (mp3)
2012-06-04 05:56 - 2012-06-04 05:56 - 00026078 ____A C:\Users\Sam\Downloads\[BakaBT.152927v3] Yokohama Kaidashi Kikou Music Collection (mp3).torrent
2012-06-04 05:56 - 2012-06-04 05:56 - 00026078 ____A C:\Users\Sam\Downloads\[BakaBT.152927v3] Yokohama Kaidashi Kikou Music Collection (mp3) (1).torrent
2012-06-04 05:56 - 2012-06-04 05:56 - 00021693 ____A C:\Users\Sam\Downloads\[BakaBT.153598v0] Yokohama Kaidashi Kikou Music Collection (FLAC).torrent
2012-06-03 15:43 - 2012-06-04 06:02 - 1220193803 ____A C:\Users\Sam\Downloads\[Commie] Berserk - Golden Age Chapter I - Egg of the High King [BD 1080p AAC] [5E90C760].mkv
2012-06-03 15:38 - 2012-06-03 15:38 - 00093549 ____A C:\Users\Sam\Downloads\[Commie] Berserk - Golden Age Chapter I - Egg of the High King [BD 1080p AAC] [5E90C760].mkv.torrent
2012-06-03 14:55 - 2012-06-03 14:55 - 00032129 ____A C:\Users\Sam\Downloads\1338763798548.png
2012-06-03 14:19 - 2012-06-03 14:19 - 00092438 ____A C:\Users\Sam\Downloads\1338761780155.png
2012-06-03 13:06 - 2012-06-03 13:06 - 00066391 ____A C:\Users\Sam\Downloads\1338752398733.png
2012-06-03 13:01 - 2012-06-03 13:01 - 00040718 ____A C:\Users\Sam\Downloads\1338756809369.png
2012-06-03 13:00 - 2012-06-03 13:00 - 00546544 ____A C:\Users\Sam\Downloads\1338756972005.png
2012-06-03 12:58 - 2012-06-03 12:58 - 00034247 ____A C:\Users\Sam\Downloads\1338754912661.png
2012-06-03 08:50 - 2012-06-03 08:50 - 00134102 ____A C:\Users\Sam\Downloads\injectSMAA_by_mrhaandi_1.2 (4).7z
2012-06-03 06:35 - 2012-06-03 06:35 - 00404919 ____A C:\Users\Sam\Downloads\1338733714668.png
2012-06-03 06:28 - 2012-06-03 06:28 - 00283850 ____A C:\Users\Sam\Downloads\1338726234726.png
2012-06-02 18:36 - 2012-06-02 18:36 - 00018643 ____A C:\Users\Sam\Downloads\[BakaBT.129870v0] A Time To Screw (1).torrent
2012-06-02 18:35 - 2012-06-02 18:35 - 00018643 ____A C:\Users\Sam\Downloads\[BakaBT.129870v0] A Time To Screw.torrent
2012-06-02 18:15 - 2012-06-02 18:33 - 00000000 ____D C:\Users\Sam\Downloads\[hshare.net].A.Time.To.Screw.EP01-02.[ENG.SUBS].[UNCEN]
2012-06-02 18:13 - 2012-06-02 18:13 - 00021178 ____A C:\Users\Sam\Downloads\hshare.net.A.Time.To.Screw.EP01-02.ENG.SUBS.UNCEN.torrent
2012-06-02 18:05 - 2012-06-02 18:05 - 00000000 ____D C:\Users\Sam\Downloads\A Time To Screw
2012-06-02 18:04 - 2012-06-02 18:04 - 00018830 ____A C:\Users\Sam\Downloads\A Time To Screw.torrent
2012-06-02 17:20 - 2012-06-03 06:49 - 00000000 ____D C:\Users\Sam\Documents\Battlefield 3
2012-06-02 16:31 - 2012-06-03 08:51 - 00000000 ____D C:\Program Files (x86)\Battlefield 3
2012-06-02 15:19 - 2012-06-02 15:19 - 19754715 ____A C:\Users\Sam\Downloads\jpcsp-2568-windows-amd64.7z
2012-06-02 15:17 - 2012-06-02 15:25 - 258852757 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 22 [1D7B886C].mkv
2012-06-02 15:15 - 2012-06-02 15:15 - 00020160 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 22 [1D7B886C].mkv.torrent
2012-06-02 14:12 - 2012-06-02 14:12 - 07612586 ____A C:\Users\Sam\Downloads\pcsp_v0.5.4 (1).zip
2012-06-02 13:54 - 2012-06-02 13:54 - 07612586 ____A C:\Users\Sam\Downloads\pcsp_v0.5.4.zip
2012-06-02 13:43 - 2012-06-02 13:43 - 00001427 ____A C:\Users\Sam\Documents\cry.txt
2012-06-02 12:29 - 2012-06-02 12:29 - 00281744 ____A C:\Users\Sam\Downloads\1338667841302.gif
2012-06-02 11:29 - 2012-06-02 11:29 - 00000011 ____A C:\Users\Sam\Documents\Student Finance.txt
2012-06-01 17:52 - 2012-06-01 18:00 - 1171374649 ____A C:\Users\Sam\Downloads\BlazBlue_Continuum_Shift.rar
2012-06-01 09:14 - 2012-06-01 09:14 - 01864699 ____A C:\Users\Sam\Downloads\1338567812639.gif
2012-06-01 09:11 - 2012-06-01 09:11 - 00970635 ____A C:\Users\Sam\Downloads\1338566312929.png
2012-06-01 09:11 - 2012-06-01 09:11 - 00443321 ____A C:\Users\Sam\Downloads\1338566256293.png
2012-06-01 06:42 - 2012-06-01 06:42 - 00000000 ____D C:\Users\Sam\Documents\WB Games
2012-06-01 06:29 - 2012-06-01 06:31 - 00719436 ____A C:\Users\Sam\Downloads\1338559699109.png
2012-06-01 06:28 - 2012-06-01 06:28 - 00890294 ____A C:\Users\Sam\Downloads\1338557718555.png
2012-06-01 05:55 - 2012-06-11 06:24 - 00000000 ____D C:\Program Files (x86)\Black_Box
2012-06-01 05:42 - 2012-06-01 05:42 - 00184177 ____A C:\Users\Sam\Downloads\1338557724904.png
2012-06-01 05:10 - 2012-06-01 05:10 - 00095645 ____A C:\Users\Sam\Downloads\922270_1326074572207_full.png
2012-06-01 05:08 - 2012-06-01 05:26 - 01094543 ____A C:\Users\Sam\Downloads\n4fc86de31f9e8 (1).png
2012-06-01 05:08 - 2012-06-01 05:08 - 00846658 ____A C:\Users\Sam\Downloads\n4fc86de31f9e8 (2).png
2012-06-01 04:04 - 2012-06-01 04:08 - 00555485 ____A C:\Users\Sam\Downloads\n4fc86de31f9e8.png
2012-05-31 23:08 - 2012-05-31 23:08 - 02030866 ____A C:\Users\Sam\Downloads\1338516702562.gif
2012-05-31 18:01 - 2012-05-31 18:01 - 00091602 ____A C:\Users\Sam\Downloads\DQpwY.png
2012-05-31 17:36 - 2012-05-31 17:36 - 00140904 ____A C:\Users\Sam\Downloads\1338505895859.png
2012-05-31 15:15 - 2012-05-31 15:15 - 00730590 ____A C:\Users\Sam\Downloads\830px-IH.png
2012-05-31 14:43 - 2012-05-31 16:06 - 00000000 ____D C:\Users\Sam\Downloads\Crysis.2.v1.9.Update.incl.DX11.Ultra.and.HiRes.Texture.Packs-SKIDROW
2012-05-31 14:30 - 2012-05-31 15:11 - 3446656729 ____A C:\Users\Sam\Downloads\Samaritan_Realtime_Demo.mov
2012-05-31 14:03 - 2012-05-31 14:03 - 00508323 ____A C:\Users\Sam\Downloads\IUH15.gif
2012-05-31 12:51 - 2012-05-31 12:51 - 00000000 ____D C:\Users\Sam\Documents\Wolfire
2012-05-31 12:50 - 2012-05-31 12:50 - 00415764 ____A C:\Users\Sam\Downloads\1338496525693.png
2012-05-31 12:45 - 2012-05-31 12:45 - 00164620 ____A C:\Users\Sam\Downloads\1338496619808.png
2012-05-31 12:42 - 2012-05-31 12:42 - 00052783 ____A C:\Users\Sam\Downloads\1338496126338.png
2012-05-31 12:30 - 2012-05-31 12:29 - 00592973 ____A C:\Users\Sam\Downloads\1338495984208.gif
2012-05-31 12:19 - 2012-05-31 12:39 - 2050742762 ____A C:\Users\Sam\Downloads\a175-win.exe
2012-05-31 11:06 - 2012-05-31 11:06 - 02026331 ____A C:\Users\Sam\Downloads\playing tera with kinect.gif
2012-05-31 11:04 - 2012-05-31 11:04 - 02075845 ____A C:\Users\Sam\Downloads\1338489603048.gif
2012-05-31 11:01 - 2012-05-31 11:01 - 00112343 ____A C:\Users\Sam\Downloads\1338490490967.png
2012-05-31 10:19 - 2012-05-31 10:19 - 01857408 ____A C:\Users\Sam\Downloads\1338481290684.gif
2012-05-31 09:13 - 2012-05-31 09:31 - 00000000 ____D C:\Program Files (x86)\OMGWTFOTL
2012-05-31 09:00 - 2012-05-31 13:03 - 00000000 ____D C:\Users\Sam\Downloads\Batman Arkham City-Black Box
2012-05-31 08:45 - 2012-05-31 08:45 - 00296100 ____A C:\Users\Sam\Downloads\1338479893433.png
2012-05-31 08:00 - 2012-05-31 08:00 - 01520673 ____A C:\Users\Sam\Downloads\1338479274502.png
2012-05-31 06:50 - 2012-05-31 06:50 - 01673522 ____A C:\Users\Sam\Downloads\1338475481321.gif
2012-05-31 06:49 - 2012-05-31 06:49 - 02126577 ____A C:\Users\Sam\Downloads\1338475454688.gif
2012-05-31 05:44 - 2012-05-31 05:44 - 00405963 ____A C:\Users\Sam\Downloads\1338471665015.png
2012-05-31 05:10 - 2012-05-31 05:18 - 315470531 ____A C:\Users\Sam\Downloads\StarForge_V0.1.zip
2012-05-31 05:02 - 2012-05-31 05:02 - 00499752 ____A C:\Users\Sam\Downloads\forgetting to equip covenant of artorias.gif
2012-05-31 05:00 - 2012-05-31 05:00 - 02815118 ____A C:\Users\Sam\Downloads\cod audience.gif
2012-05-31 04:58 - 2012-05-31 04:58 - 02167911 ____A C:\Users\Sam\Downloads\1338465860686.gif
2012-05-31 04:58 - 2012-05-31 04:58 - 01465355 ____A C:\Users\Sam\Downloads\1338465759944.gif
2012-05-31 04:58 - 2012-05-31 04:58 - 01426056 ____A C:\Users\Sam\Downloads\1338465756520.gif
2012-05-31 04:58 - 2012-05-31 04:58 - 00505912 ____A C:\Users\Sam\Downloads\1338465615458.gif
2012-05-31 04:58 - 2012-05-31 04:58 - 00316451 ____A C:\Users\Sam\Downloads\1338465556688.gif
2012-05-31 04:57 - 2012-05-31 04:57 - 00252981 ____A C:\Users\Sam\Downloads\1338465428206.gif
2012-05-31 04:55 - 2012-05-31 04:55 - 00118891 ____A C:\Users\Sam\Downloads\1338465131425.gif
2012-05-31 04:52 - 2012-05-31 04:52 - 01048079 ____A C:\Users\Sam\Downloads\1338468417468.png
2012-05-31 04:52 - 2012-05-31 04:52 - 00364226 ____A C:\Users\Sam\Downloads\1338463568564.gif
2012-05-31 04:45 - 2012-05-31 04:45 - 01739995 ____A C:\Users\Sam\Downloads\1338467275139.gif
2012-05-31 03:46 - 2012-05-31 03:46 - 00500483 ____A C:\Users\Sam\Downloads\1338462955239.gif
2012-05-31 03:11 - 2012-05-31 03:11 - 00597558 ____A C:\Users\Sam\Downloads\1338462659341.png
2012-05-31 03:04 - 2012-05-31 03:04 - 00125013 ____A C:\Users\Sam\Downloads\1338460103662.png
2012-05-31 01:40 - 2012-05-31 01:40 - 00303410 ____A C:\Users\Sam\Downloads\BobPage.png
2012-05-31 01:37 - 2012-05-31 01:36 - 00038797 ____A C:\Users\Sam\Downloads\1338456974352.png
2012-05-31 00:49 - 2012-05-31 00:49 - 00343600 ____A C:\Users\Sam\Downloads\1338450062772.gif
2012-05-31 00:47 - 2012-05-31 00:47 - 00872103 ____A C:\Users\Sam\Downloads\1338453174536.png
2012-05-31 00:41 - 2012-05-31 00:41 - 03004412 ____A C:\Users\Sam\Downloads\1338451381460.gif
2012-05-31 00:41 - 2012-05-31 00:41 - 00503979 ____A C:\Users\Sam\Downloads\1338451552153.gif
2012-05-31 00:13 - 2012-05-31 00:13 - 00042217 ____A C:\Users\Sam\Downloads\1338450067927.png
2012-05-31 00:10 - 2012-05-31 00:10 - 00363059 ____A C:\Users\Sam\Downloads\1338451438669.gif
2012-05-31 00:06 - 2012-05-31 00:06 - 00051766 ____A C:\Users\Sam\Downloads\1338450705862.png
2012-05-30 17:09 - 2012-05-30 17:09 - 00325363 ____A C:\Users\Sam\Downloads\1338392092126.gif
2012-05-30 17:06 - 2012-05-30 17:06 - 00332206 ____A C:\Users\Sam\Downloads\1338388826880.png
2012-05-30 17:02 - 2012-05-30 17:02 - 00207723 ____A C:\Users\Sam\Downloads\1338379694876.png
2012-05-30 15:48 - 2012-05-30 15:48 - 00000000 ____D C:\Users\Sam\Downloads\REDLINE Music Collection [FLAC]
2012-05-30 15:47 - 2012-05-30 15:47 - 00016667 ____A C:\Users\Sam\Downloads\[BakaBT.160937v1] REDLINE Music Collection [FLAC].torrent
2012-05-30 14:28 - 2012-05-30 14:31 - 16585571 ____A C:\Users\Sam\Downloads\OMGWTFOTLSetup[Nanatuha][AT2006].exe
2012-05-30 14:28 - 2012-05-30 14:28 - 00005268 ____A C:\Users\Sam\Downloads\OMGWTFOTLSetup[Nanatuha][AT2006].exe (1).torrent
2012-05-30 11:33 - 2012-05-30 11:33 - 02436542 ____A C:\Users\Sam\Downloads\1338404405047.gif
2012-05-30 08:27 - 2012-05-30 08:30 - 368334765 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_21_[h264-720p][BCB5C808].mkv
2012-05-30 08:27 - 2012-05-30 08:27 - 00014528 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_21_[h264-720p][BCB5C808].mkv.torrent
2012-05-30 08:22 - 2012-05-30 08:22 - 02671412 ____A C:\Users\Sam\Downloads\1338394246397.gif
2012-05-30 08:03 - 2012-05-30 08:03 - 01838721 ____A C:\Users\Sam\Downloads\1338393569559.gif
2012-05-30 07:59 - 2012-05-30 07:59 - 00268129 ____A C:\Users\Sam\Downloads\1338391239612.gif
2012-05-30 07:57 - 2012-05-30 07:57 - 02220249 ____A C:\Users\Sam\Downloads\1338389483646.gif
2012-05-30 06:38 - 2012-05-30 06:38 - 00554232 ____A C:\Users\Sam\Downloads\SkinEdit Alpha 3 pre 7 (1).zip
2012-05-29 18:56 - 2012-05-29 19:02 - 1367096420 ____A C:\Users\Sam\Downloads\Adobe Flash Pro CS6.exe
2012-05-29 18:05 - 2012-05-29 18:05 - 00636769 ____A C:\Users\Sam\Downloads\1338342691660.png
2012-05-29 16:00 - 2012-05-29 16:12 - 00000000 ____D C:\Users\Sam\Downloads\Diablo 2 with Lord of Destruction (v1.13c) (Direct Play)
2012-05-29 14:47 - 2012-05-29 14:47 - 00167722 ____A C:\Users\Sam\Downloads\Hazama_(Continuum_Shift,_Character_Select_Artwork).png
2012-05-29 05:23 - 2012-05-29 05:23 - 00036889 ____A C:\Users\Sam\Downloads\[BakaBT.163373v0] Legend.of.Galactic.Heroes.Overture.to.a.New.War.torrent
2012-05-29 05:23 - 2012-05-29 05:23 - 00000000 ____D C:\Users\Sam\Downloads\Legend.of.Galactic.Heroes.Overture.to.a.New.War
2012-05-29 04:44 - 2012-05-29 04:44 - 00646995 ____A C:\Users\Sam\Downloads\1338295426127.png
2012-05-29 04:43 - 2012-05-29 04:43 - 00393429 ____A C:\Users\Sam\Downloads\1338294795435.png
2012-05-28 18:43 - 2012-05-28 18:43 - 00264838 ____A C:\Users\Sam\Downloads\1338255862438.png
2012-05-28 17:15 - 2012-05-28 17:15 - 00103742 ____A C:\Users\Sam\Downloads\1338250741805.png
2012-05-28 17:12 - 2012-05-28 17:12 - 00048208 ____A C:\Users\Sam\Downloads\1338249300522.png
2012-05-28 16:06 - 2012-05-28 16:08 - 12256911 ____A C:\Users\Sam\Downloads\[SaHa] Kaworu Watashiya - Kodomo no Jikan Ch.83 (English).rar
2012-05-28 01:12 - 2012-05-28 01:12 - 00259339 ____A C:\Users\Sam\Downloads\1338190738707.png
2012-05-27 23:37 - 2012-05-27 23:37 - 00262995 ____A C:\Users\Sam\Downloads\1338188104291.png
2012-05-27 23:36 - 2012-05-27 23:36 - 00431069 ____A C:\Users\Sam\Downloads\1338188072876.png
2012-05-27 23:34 - 2012-05-27 23:34 - 00386484 ____A C:\Users\Sam\Downloads\1338187660848.png
2012-05-26 14:55 - 2012-05-26 14:55 - 00313718 ____A C:\Users\Sam\Downloads\n4fc15d72b93fb.png
2012-05-26 07:20 - 2012-05-26 07:20 - 00308571 ____A C:\Users\Sam\Downloads\1338024965410.gif
2012-05-26 04:25 - 2012-05-26 04:25 - 00026224 ____A C:\Users\Sam\Downloads\1338017225355.png
2012-05-25 14:33 - 2012-05-25 14:33 - 00000000 ____D C:\Program Files (x86)\Combined Community Codec Pack
2012-05-25 14:32 - 2012-05-25 14:32 - 09889896 ____A (CCCP Project ) C:\Users\Sam\Downloads\Combined-Community-Codec-Pack-2011-11-11 (1).exe
2012-05-25 14:28 - 2012-06-18 14:48 - 00000000 ____D C:\Users\Sam\AppData\Roaming\vlc
2012-05-25 14:26 - 2012-05-25 14:26 - 00000000 ____D C:\Program Files (x86)\VideoLAN
2012-05-25 14:21 - 2012-05-25 14:22 - 22259528 ____A C:\Users\Sam\Downloads\vlc-2.0.1-win32.exe
2012-05-25 14:16 - 2012-05-25 14:16 - 00162416 ____A C:\Users\Sam\Downloads\[BakaBT.161010v1] Legend of Galactic Heroes.torrent
2012-05-25 13:01 - 2012-05-25 13:04 - 72731273 ____A C:\Users\Sam\Downloads\BIOS PCSX2 0.9.9.zip
2012-05-25 03:59 - 2012-05-25 03:59 - 00251413 ____A C:\Users\Sam\Downloads\1337939535602.png
2012-05-25 03:57 - 2012-05-25 03:57 - 00685892 ____A C:\Users\Sam\Downloads\1337938712729.png
2012-05-25 00:44 - 2012-06-22 07:41 - 01607396 ____A C:\Windows\WindowsUpdate.log
2012-05-23 09:24 - 2012-05-23 09:24 - 00001678 ____A C:\Users\Sam\Downloads\FakedPlayers.rar
2012-05-23 07:15 - 2012-05-23 07:17 - 264329105 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_20_[h264-720p][AF35659F].mkv
2012-05-23 07:15 - 2012-05-23 07:15 - 00020648 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_20_[h264-720p][AF35659F].mkv.torrent
2012-05-23 04:53 - 2012-05-23 04:53 - 00077501 ____A C:\Users\Sam\Downloads\PBF071-Weeaboo.gif

============ 3 Months Modified Files and Folders =============

2012-06-22 07:50 - 2012-06-22 07:50 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.71AA2B530F37956C
2012-06-22 07:50 - 2012-06-22 07:50 - 00050392 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\rdnaklxs.sys
2012-06-22 07:49 - 2009-07-13 21:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2012-06-22 07:48 - 2012-06-18 17:56 - 00000616 ____A C:\Windows\setupact.log
2012-06-22 07:46 - 2012-06-22 07:46 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.389A80A780DC0FE3
2012-06-22 07:43 - 2012-06-22 07:43 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe.F99EF225C3D55B0D
2012-06-22 07:41 - 2012-05-25 00:44 - 01607396 ____A C:\Windows\WindowsUpdate.log
2012-06-21 19:36 - 2011-11-11 07:21 - 00000900 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3332832593-3043654-485038372-1000UA.job
2012-06-21 18:01 - 2012-06-18 10:52 - 00000000 ____D C:\Program Files\Microsoft Security Client
2012-06-21 18:01 - 2012-03-10 13:50 - 00473542 ____A C:\Windows\System32\perfh011.dat
2012-06-21 18:01 - 2012-03-10 13:50 - 00141852 ____A C:\Windows\System32\perfc011.dat
2012-06-21 18:01 - 2011-11-11 07:28 - 00001945 ____A C:\Windows\epplauncher.mif
2012-06-21 18:01 - 2011-11-11 07:27 - 00006438 ____A C:\Windows\SysWOW64\PerfStringBackup.INI
2012-06-21 18:00 - 2012-06-21 18:00 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2012-06-21 13:14 - 2012-06-21 13:11 - 00000000 ____D C:\Users\Sam\Desktop\fix
2012-06-21 13:10 - 2009-07-13 20:45 - 00013456 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2012-06-21 13:10 - 2009-07-13 20:45 - 00013456 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2012-06-21 13:07 - 2011-11-11 08:02 - 00000000 ____D C:\Users\Sam\AppData\Roaming\uTorrent
2012-06-21 13:05 - 2011-11-13 07:32 - 00000000 ____D C:\Program Files (x86)\Steam
2012-06-21 13:04 - 2011-12-10 12:18 - 00000000 ____D C:\Program Files\PeerBlock
2012-06-21 13:03 - 2012-06-18 17:55 - 00001412 ____A C:\Windows\PFRO.log
2012-06-21 12:56 - 2012-06-21 12:56 - 00000000 ____D C:\Windows\Temp6393BB15-1E27-C26B-7004-B24A9920C884-Signatures
2012-06-21 12:54 - 2012-06-21 12:54 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Malwarebytes
2012-06-21 12:54 - 2012-06-21 12:54 - 00000000 ____D C:\Users\All Users\Malwarebytes
2012-06-21 12:54 - 2012-06-21 12:54 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2012-06-19 02:45 - 2012-06-19 02:45 - 00000000 __SHD C:\found.000
2012-06-18 18:06 - 2012-06-18 17:50 - 00000000 ____D C:\Program Files (x86)\Trojan Remover
2012-06-18 18:06 - 2012-01-11 12:41 - 00000000 __SHD C:\Users\Sam\AppData\Local\{c07c8d13-da90-dacd-4643-a2c48c3764db}
2012-06-18 17:56 - 2012-06-18 17:56 - 00000000 ____A C:\Windows\setuperr.log
2012-06-18 17:52 - 2012-06-18 17:52 - 00000000 ____D C:\Users\Sam\Documents\Simply Super Software
2012-06-18 17:50 - 2012-06-18 17:50 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Simply Super Software
2012-06-18 17:50 - 2012-06-18 17:50 - 00000000 ____D C:\Users\All Users\Simply Super Software
2012-06-18 17:49 - 2012-06-18 17:49 - 00000000 ____D C:\Users\Sam\Desktop\KEY
2012-06-18 17:08 - 2009-07-13 21:08 - 00032608 ____A C:\Windows\Tasks\SCHEDLGU.TXT
2012-06-18 14:48 - 2012-06-14 13:07 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Rainmeter
2012-06-18 14:48 - 2012-05-25 14:28 - 00000000 ____D C:\Users\Sam\AppData\Roaming\vlc
2012-06-18 14:48 - 2012-05-02 17:43 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Youtube Downloader HD
2012-06-18 14:48 - 2012-04-28 11:35 - 00000000 ____D C:\Users\Sam\AppData\Roaming\.techniclauncher
2012-06-18 14:48 - 2012-02-26 12:15 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Audacity
2012-06-18 14:48 - 2012-01-16 09:01 - 00000000 ____D C:\Users\Sam\AppData\Roaming\gtk-2.0
2012-06-18 14:48 - 2011-11-11 08:13 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Winamp
2012-06-18 14:48 - 2011-11-11 07:30 - 00000000 ____D C:\Users\Sam\AppData\Roaming\IrfanView
2012-06-18 14:48 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\registration
2012-06-18 14:48 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\AppCompat
2012-06-18 13:01 - 2012-06-18 03:29 - 00000000 ____D C:\a7d3c6e75a23b56f19fcd6dcd35c3d9b
2012-06-18 13:01 - 2012-06-16 04:07 - 00000000 ____D C:\Program Files\Web Assistant
2012-06-18 10:52 - 2012-06-18 10:52 - 00065536 __ASH C:\Windows\System32\config\components{64a78e57-6562-11e1-be22-001fd0a2a7fa}.TxR.blf
2012-06-18 10:52 - 2012-06-18 10:51 - 12621696 ____A (Microsoft Corporation) C:\Users\Sam\Downloads\mseinstall (1).exe
2012-06-18 10:36 - 2011-11-11 07:21 - 00000848 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3332832593-3043654-485038372-1000Core.job
2012-06-18 10:33 - 2012-06-18 10:30 - 275611648 ____A C:\Users\Sam\Downloads\kav_rescue_10.iso
2012-06-18 10:23 - 2012-06-18 10:23 - 03879304 ____A (AVG Technologies) C:\Users\Sam\Downloads\avg_free_stb_all_2012_2180_cnet.exe
2012-06-18 10:11 - 2012-03-06 03:57 - 00000000 ____D C:\Program Files (x86)\GNU
2012-06-18 10:06 - 2011-11-27 09:25 - 00000000 ____D C:\Program Files (x86)\ShiftWindow
2012-06-18 10:04 - 2012-05-13 19:26 - 00000000 ____D C:\Program Files (x86)\AMD APP
2012-06-18 05:52 - 2011-11-11 06:53 - 00000000 ____D C:\users\Sam
2012-06-18 03:17 - 2012-06-18 03:16 - 00000000 ____D C:\Users\Sam\Downloads\Franz Schubert - Symphonies
2012-06-17 23:23 - 2012-06-17 23:23 - 00337888 ____A C:\Users\Sam\Downloads\YKRCj.png
2012-06-17 23:08 - 2011-11-11 08:05 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Media Player Classic
2012-06-17 18:29 - 2012-06-17 18:29 - 00014113 ____A C:\Users\Sam\.recently-used.xbel
2012-06-17 18:04 - 2012-01-16 08:59 - 00000000 ____D C:\Users\Sam\.gimp-2.6
2012-06-17 14:08 - 2012-06-15 09:42 - 00000000 ____D C:\Users\Sam\Desktop\REESEQUEST
2012-06-17 11:36 - 2012-06-17 11:36 - 00062112 ____A C:\Users\Sam\Downloads\1339961660558.png
2012-06-17 11:30 - 2012-06-17 11:30 - 02023244 ____A C:\Users\Sam\Downloads\1339960561597.gif
2012-06-17 11:18 - 2012-06-17 11:18 - 00354087 ____A C:\Users\Sam\Downloads\1339958589177.png
2012-06-17 11:10 - 2012-06-17 11:10 - 00098614 ____A C:\Users\Sam\Downloads\1339958242815.png
2012-06-17 11:07 - 2012-06-17 11:07 - 00472450 ____A C:\Users\Sam\Downloads\1339960014519.png
2012-06-17 09:35 - 2012-06-17 09:35 - 00567033 ____A C:\Users\Sam\Downloads\b00Nf.png
2012-06-17 07:54 - 2012-06-17 07:54 - 00445108 ____A C:\Users\Sam\Downloads\1339946400319.png
2012-06-17 07:54 - 2012-06-17 07:54 - 00394915 ____A C:\Users\Sam\Downloads\1339945860675.png
2012-06-17 07:40 - 2012-06-17 07:31 - 387071187 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_24_[h264-720p][583D3DBB].mkv
2012-06-17 07:31 - 2012-06-17 07:31 - 00029942 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_24_[h264-720p][583D3DBB].mkv.torrent
2012-06-17 07:17 - 2012-06-17 07:15 - 39882672 ____A C:\Users\Sam\Downloads\Bakemonogatari Hentai - Iromono go _01vita.mp4
2012-06-17 07:17 - 2012-06-17 07:15 - 27789679 ____A C:\Users\Sam\Downloads\Bakemonogatari Hentai - Iromono go _02vita.mp4
2012-06-17 06:59 - 2012-06-17 06:59 - 00371927 ____A C:\Users\Sam\Downloads\n4fdd44ecacbaf.png
2012-06-17 06:47 - 2012-03-12 08:29 - 00000000 ____D C:\Users\Sam\AppData\Roaming\DisplayFusion
2012-06-17 06:42 - 2012-06-17 06:43 - 00559297 ____A C:\Users\Sam\Downloads\zpz7D.png
2012-06-16 22:35 - 2012-01-24 18:36 - 00000000 ____D C:\Users\Sam\AppData\Roaming\X-Chat 2
2012-06-16 16:54 - 2012-06-16 15:49 - 111406435 ____A C:\Users\Sam\Documents\REESE.wmv
2012-06-16 10:25 - 2012-06-16 10:25 - 00258268 ____A C:\Users\Sam\Downloads\t6TF9.png
2012-06-15 16:57 - 2012-06-15 16:56 - 20326756 ____A C:\Users\Sam\Downloads\Persona 4- Rise Joins The Team.mp3
2012-06-15 15:24 - 2012-06-15 15:24 - 02357244 ____A C:\Users\Sam\Downloads\Nyans Birthday Surprise.rar
2012-06-15 14:07 - 2012-06-15 14:07 - 06360088 ____A C:\Users\Sam\Documents\Reese Witherspoon Black Eye the song.Ray Sipe.Lady GaGa..avi
2012-06-15 13:40 - 2012-06-15 13:34 - 183238098 ____A C:\Users\Sam\Downloads\Brodyquest-Tracks.zip
2012-06-15 13:12 - 2012-06-13 18:42 - 00075694 ____A C:\Users\Sam\Downloads\n4fd94bf3a0661.png
2012-06-15 12:40 - 2012-06-15 12:40 - 19384518 ____A C:\Users\Sam\Documents\reese.wmv_(480p).avi
2012-06-15 11:49 - 2012-06-15 11:45 - 00333064 ____A C:\Users\Sam\Documents\BRODYQUEST_(480p).mp4.sfk
2012-06-15 11:43 - 2012-06-15 11:41 - 52151891 ____A C:\Users\Sam\Documents\BRODYQUEST_(480p).mp4
2012-06-15 11:37 - 2012-06-15 11:36 - 24766486 ____A C:\Users\Sam\Documents\BRODYQUEST_(480p).avi
2012-06-15 11:34 - 2012-06-15 11:34 - 00734849 ____A C:\Users\Sam\Downloads\n4fdb6d5d1ce06_large.gif
2012-06-15 10:30 - 2012-06-15 10:29 - 00313528 ____A C:\Users\Sam\Downloads\Brodyquest.mp3.sfk
2012-06-15 10:26 - 2012-06-15 10:26 - 01383850 ____A C:\Users\Sam\Downloads\Big Reese (Song).mp3
2012-06-15 10:25 - 2012-06-15 10:25 - 05944542 ____A C:\Users\Sam\Documents\Big Reese (Song)_(360p).mp4
2012-06-15 09:40 - 2012-06-15 09:37 - 05467607 ____A C:\Users\Sam\Downloads\Brodyquest.mp3
2012-06-15 08:12 - 2012-06-15 08:12 - 00149880 ____A C:\Users\Sam\Downloads\1339774832043.png
2012-06-15 06:52 - 2011-11-11 07:17 - 00066992 ____A C:\Users\Sam\AppData\Local\GDIPFONTCACHEV1.DAT
2012-06-15 06:49 - 2009-07-13 20:45 - 04863800 ____A C:\Windows\System32\FNTCACHE.DAT
2012-06-14 19:07 - 2012-06-14 19:07 - 00704668 ____A C:\Users\Sam\Downloads\1339729029003.png
2012-06-14 19:00 - 2012-06-14 19:00 - 00013860 ____A C:\Users\Sam\Downloads\1339728996219.png
2012-06-14 14:15 - 2012-06-14 14:15 - 00837430 ____A C:\Users\Sam\Downloads\PixelVision_1.8.3.zip
2012-06-14 13:11 - 2012-06-14 13:11 - 01835947 ____A C:\Users\Sam\Downloads\Enigma3.1.rmskin
2012-06-14 13:11 - 2012-06-14 13:07 - 00000000 ____D C:\Program Files\Rainmeter
2012-06-14 13:09 - 2012-06-14 13:09 - 00004186 ____A C:\Users\Sam\Downloads\segoeclock_for_rainmeter_by_mossydev-d4vdz3c.rmskin
2012-06-14 13:07 - 2012-06-14 13:07 - 00000000 ____D C:\Users\Sam\Documents\Rainmeter
2012-06-14 13:06 - 2012-06-14 13:06 - 01392000 ____A C:\Users\Sam\Downloads\Rainmeter-2.2.exe
2012-06-14 12:41 - 2012-06-14 12:41 - 02220052 ____A C:\Users\Sam\Downloads\1339706463873.gif
2012-06-14 12:25 - 2012-06-14 12:25 - 00356462 ____A C:\Users\Sam\Downloads\1339701294186.png
2012-06-14 12:23 - 2012-06-14 12:23 - 00040185 ____A C:\Users\Sam\Downloads\1339700478683.png
2012-06-14 08:49 - 2011-11-11 08:38 - 00010752 ____A C:\Users\Sam\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-06-14 08:15 - 2012-06-14 08:15 - 00189477 ____A C:\Users\Sam\Downloads\1339690338427.png
2012-06-14 07:50 - 2012-06-14 07:50 - 00397485 ____A C:\Users\Sam\Downloads\1339688945912.png
2012-06-14 07:46 - 2012-06-14 07:46 - 00199984 ____A C:\Users\Sam\Downloads\1339688670017.png
2012-06-14 06:33 - 2012-06-14 06:29 - 00000000 ____D C:\FlvGrabber
2012-06-14 06:27 - 2012-06-14 06:23 - 00000000 ____D C:\Users\Sam\Documents\FlvGrabber
2012-06-14 06:25 - 2012-06-14 06:25 - 04083298 ____A ( ) C:\Users\Sam\Downloads\HiDownloadPlatinum.exe
2012-06-14 06:25 - 2012-06-14 06:25 - 00000000 __SHD C:\Windows\System32\%APPDATA%
2012-06-14 06:20 - 2012-06-14 06:20 - 00000000 ____D C:\Program Files (x86)\WinPcap
2012-06-14 06:17 - 2012-06-14 06:17 - 04118700 ____A ( ) C:\Users\Sam\Downloads\flvgrabber.exe
2012-06-14 06:17 - 2012-06-14 06:17 - 04118700 ____A ( ) C:\Users\Sam\Downloads\flvgrabber (1).exe
2012-06-14 06:08 - 2012-06-14 06:08 - 00406155 ____A C:\Users\Sam\Downloads\k8Usq.png
2012-06-14 06:07 - 2012-06-14 06:07 - 00508723 ____A C:\Users\Sam\Downloads\JjnZo.png
2012-06-14 06:07 - 2012-06-14 06:07 - 00508723 ____A C:\Users\Sam\Downloads\JjnZo (1).png
2012-06-14 06:07 - 2012-06-14 06:07 - 00274974 ____A C:\Users\Sam\Downloads\5kKFT.png
2012-06-14 03:05 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\rescache
2012-06-13 17:49 - 2012-06-13 17:49 - 01644467 ____A C:\Users\Sam\Downloads\n4fd91d741f6e2_large.gif
2012-06-13 17:20 - 2012-06-13 17:18 - 00000000 ____D C:\Users\Sam\Downloads\Final Fantasy IX
2012-06-13 16:35 - 2012-06-13 16:35 - 00485875 ____A C:\Users\Sam\Downloads\1339629812322.png
2012-06-13 15:00 - 2012-06-13 15:00 - 01985103 ____A C:\Users\Sam\Downloads\woaUv.gif
2012-06-13 14:33 - 2012-06-13 14:33 - 02019342 ____A C:\Users\Sam\Downloads\IKtte.gif
2012-06-13 14:33 - 2012-06-13 14:33 - 01923054 ____A C:\Users\Sam\Downloads\sADfK.gif
2012-06-13 13:53 - 2012-06-13 13:53 - 00438293 ____A C:\Users\Sam\Downloads\75TlU.png
2012-06-13 13:53 - 2012-06-13 13:53 - 00431910 ____A C:\Users\Sam\Downloads\0VT1n.png
2012-06-13 13:53 - 2012-06-13 13:53 - 00314777 ____A C:\Users\Sam\Downloads\kVYoN.png
2012-06-13 13:53 - 2012-06-13 13:53 - 00181644 ____A C:\Users\Sam\Downloads\0eDSx.png
2012-06-13 13:29 - 2012-06-13 13:29 - 00587109 ____A C:\Users\Sam\Downloads\n4fd905f98a8a3.png
2012-06-13 03:31 - 2012-03-08 09:19 - 00000000 ____D C:\Desk
2012-06-12 17:39 - 2012-06-12 17:39 - 00013578 ____A C:\Users\Sam\Downloads\1339550895675.png
2012-06-12 17:37 - 2012-06-12 17:37 - 00242286 ____A C:\Users\Sam\Downloads\E9S0v.png
2012-06-12 17:24 - 2012-06-12 17:23 - 13411069 ____A C:\Users\Sam\Downloads\Delver-alpha-5-29-12.zip
2012-06-12 17:01 - 2012-06-12 17:01 - 00101156 ____A C:\Users\Sam\Downloads\1339549245513.png
2012-06-12 16:57 - 2012-06-12 16:57 - 00286312 ____A C:\Users\Sam\Downloads\wikipedia_harassment1.png
2012-06-12 16:27 - 2011-12-12 09:03 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2012-06-12 15:30 - 2012-06-12 15:30 - 00019263 ____A C:\Users\Sam\Downloads\1339540441199.png
2012-06-12 15:25 - 2012-06-12 15:25 - 00100318 ____A C:\Users\Sam\Downloads\1339540041581.png
2012-06-12 15:24 - 2012-06-12 15:24 - 00124385 ____A C:\Users\Sam\Downloads\1339540004789.png
2012-06-12 15:22 - 2012-06-12 15:22 - 00065119 ____A C:\Users\Sam\Downloads\1339539824048.png
2012-06-12 15:16 - 2012-06-12 15:16 - 00166525 ____A C:\Users\Sam\Downloads\1339539601017.png
2012-06-12 15:09 - 2012-06-12 15:09 - 00716396 ____A C:\Users\Sam\Downloads\1339539318458.png
2012-06-12 15:06 - 2012-06-12 15:06 - 02029826 ____A C:\Users\Sam\Downloads\1339539038686.gif
2012-06-12 15:04 - 2012-06-12 15:04 - 00227109 ____A C:\Users\Sam\Downloads\1339538701109.png
2012-06-12 14:56 - 2012-06-12 14:56 - 00142487 ____A C:\Users\Sam\Downloads\1339537563444.png
2012-06-12 14:52 - 2012-06-12 14:52 - 00213762 ____A C:\Users\Sam\Downloads\1339537114631.png
2012-06-12 14:30 - 2012-06-12 14:30 - 00099665 ____A C:\Users\Sam\Downloads\1339539221610.png
2012-06-12 14:29 - 2012-06-12 14:29 - 00060995 ____A C:\Users\Sam\Downloads\1339539144886.png
2012-06-12 14:26 - 2012-06-12 14:26 - 00083785 ____A C:\Users\Sam\Downloads\1339539082180.png
2012-06-12 14:20 - 2012-06-12 14:20 - 00299429 ____A C:\Users\Sam\Downloads\1339539532673.png
2012-06-12 14:19 - 2012-06-12 14:19 - 00008341 ____A C:\Users\Sam\Downloads\1339539425730.png
2012-06-12 14:18 - 2012-06-12 14:18 - 01258662 ____A C:\Users\Sam\Downloads\1339538041302.gif
2012-06-12 14:18 - 2012-06-12 14:18 - 00597234 ____A C:\Users\Sam\Downloads\1339537822406.gif
2012-06-12 14:18 - 2012-06-12 14:18 - 00041996 ____A C:\Users\Sam\Downloads\1339538172315.png
2012-06-12 14:17 - 2012-06-12 14:17 - 00078751 ____A C:\Users\Sam\Downloads\1339537667280.png
2012-06-12 13:55 - 2012-06-12 13:55 - 00376976 ____A C:\Users\Sam\Downloads\1339536468542.png
2012-06-12 13:49 - 2012-06-12 13:49 - 00441870 ____A C:\Users\Sam\Downloads\1339537543596.png
2012-06-12 13:43 - 2012-06-12 13:43 - 00240459 ____A C:\Users\Sam\Downloads\1339537326653.png
2012-06-12 13:36 - 2012-06-12 13:36 - 00097660 ____A C:\Users\Sam\Downloads\1339536155865.png
2012-06-12 13:29 - 2012-06-12 13:29 - 00069731 ____A C:\Users\Sam\Downloads\1339536317971.png
2012-06-12 13:23 - 2012-06-12 13:23 - 01991238 ____A C:\Users\Sam\Downloads\1339526223829.gif
2012-06-12 13:03 - 2012-06-12 13:03 - 00057074 ____A C:\Users\Sam\Downloads\1339533167078.png
2012-06-12 13:02 - 2012-06-12 13:02 - 00504430 ____A C:\Users\Sam\Downloads\1339533242278.gif
2012-06-12 12:58 - 2012-06-12 12:58 - 00141518 ____A C:\Users\Sam\Downloads\1339532412234.png
2012-06-12 12:57 - 2012-06-12 12:57 - 02082940 ____A C:\Users\Sam\Downloads\1339532135617.gif
2012-06-12 12:50 - 2012-06-12 12:50 - 00538936 ____A C:\Users\Sam\Downloads\1339530641065.png
2012-06-12 12:49 - 2012-06-12 12:49 - 00583401 ____A C:\Users\Sam\Downloads\1339530535376.png
2012-06-12 12:42 - 2012-06-12 12:42 - 00783532 ____A C:\Users\Sam\Downloads\1339533178926.gif
2012-06-12 12:40 - 2012-06-12 12:40 - 01001328 ____A C:\Users\Sam\Downloads\1339533396232.png
2012-06-12 12:40 - 2012-06-12 12:40 - 00177532 ____A C:\Users\Sam\Downloads\1339533619806.png
2012-06-12 12:38 - 2012-06-12 12:38 - 00108093 ____A C:\Users\Sam\Downloads\1339533097065.png
2012-06-12 12:37 - 2012-06-12 12:37 - 00644604 ____A C:\Users\Sam\Downloads\1339532652037.png
2012-06-12 12:36 - 2012-06-12 12:36 - 00925235 ____A C:\Users\Sam\Downloads\1339532324638.png
2012-06-12 12:36 - 2012-06-12 12:36 - 00545012 ____A C:\Users\Sam\Downloads\1339532514392.png
2012-06-12 12:33 - 2012-06-12 12:33 - 00071811 ____A C:\Users\Sam\Downloads\1339532889196.png
2012-06-12 12:17 - 2012-06-12 12:16 - 16120530 ____A C:\Users\Sam\Downloads\Fate Gakuen Alternative.rar
2012-06-12 12:08 - 2012-06-12 12:08 - 02319134 ____A C:\Users\Sam\Downloads\1339521136540.gif
2012-06-12 11:59 - 2012-06-12 11:58 - 13085389 ____A C:\Users\Sam\Downloads\Takeda Hiromitsu, Tsubomi Hiraku Wa Beni No Hana.zip
2012-06-12 11:53 - 2012-06-12 11:53 - 02228441 ____A C:\Users\Sam\Downloads\1339530650643.gif
2012-06-12 11:39 - 2012-06-12 11:39 - 02875982 ____A C:\Users\Sam\Downloads\1339528221558.gif
2012-06-12 11:19 - 2012-06-12 11:19 - 00145003 ____A C:\Users\Sam\Downloads\1339528193285.png
2012-06-12 11:08 - 2012-06-12 11:08 - 00027929 ____A C:\Users\Sam\Downloads\1339527726611.png
2012-06-12 10:30 - 2012-06-12 10:30 - 00518861 ____A C:\Users\Sam\Downloads\1339525347595.png
2012-06-12 10:24 - 2012-06-12 10:24 - 00006667 ____A C:\Users\Sam\Downloads\1339524712317.png
2012-06-12 10:23 - 2012-06-12 10:23 - 00063380 ____A C:\Users\Sam\Downloads\1339523732377.gif
2012-06-12 09:37 - 2012-06-12 09:37 - 00089375 ____A C:\Users\Sam\Downloads\1339522114558.png
2012-06-12 06:38 - 2012-06-12 06:38 - 00952561 ____A C:\Users\Sam\Downloads\Vocaroo_s0WFB6hVg8wq.mp3
2012-06-12 06:38 - 2012-06-12 06:38 - 00676290 ____A C:\Users\Sam\Downloads\Vocaroo_s0rnjLKJV40H.mp3
2012-06-12 06:38 - 2012-06-12 06:38 - 00407334 ____A C:\Users\Sam\Downloads\Vocaroo_s0pY6QBDdCBi.mp3
2012-06-12 06:38 - 2012-06-12 06:38 - 00396049 ____A C:\Users\Sam\Downloads\Vocaroo_s0rmlL8hnBDe.mp3
2012-06-12 06:38 - 2012-06-12 06:38 - 00396049 ____A C:\Users\Sam\Downloads\Vocaroo_s0rmlL8hnBDe (1).mp3
2012-06-12 06:25 - 2012-06-12 06:25 - 00422171 ____A C:\Users\Sam\Downloads\Vocaroo_s0g7KjlZtukS.mp3
2012-06-11 20:55 - 2012-06-11 20:55 - 06472877 ____A C:\Users\Sam\Downloads\Nyan.rar
2012-06-11 20:51 - 2012-06-11 20:51 - 00622792 ____A C:\Users\Sam\Downloads\Vocaroo_s0Aa98tLhDBJ.mp3
2012-06-11 08:29 - 2012-03-20 09:59 - 00000000 ____D C:\Program Files (x86)\Rockstar Games
2012-06-11 08:07 - 2012-06-11 07:56 - 00000000 ____D C:\Users\Sam\Documents\Rockstar Games
2012-06-11 06:45 - 2012-06-11 06:38 - 186511255 ____A C:\Users\Sam\Downloads\KSP_win_0_14.zip
2012-06-11 06:44 - 2012-06-11 06:41 - 186235034 ____A C:\Users\Sam\Downloads\Kerbal Space Prgoram (Mod pack by SAS41).exe
2012-06-11 06:24 - 2012-06-01 05:55 - 00000000 ____D C:\Program Files (x86)\Black_Box
2012-06-11 03:08 - 2012-06-11 03:08 - 00284027 ____A C:\Users\Sam\Downloads\1339406242103.png
2012-06-11 02:45 - 2012-06-11 02:45 - 02973129 ____A C:\Users\Sam\Downloads\1339410341181.gif
2012-06-11 02:45 - 2012-06-11 02:45 - 00851549 ____A C:\Users\Sam\Downloads\1339410254472.gif
2012-06-10 19:50 - 2012-06-10 19:50 - 00169664 ____A C:\Users\Sam\Downloads\1339386589530.gif
2012-06-10 19:03 - 2012-06-10 19:03 - 00966676 ____A C:\Users\Sam\Downloads\1339383413643.png
2012-06-10 18:53 - 2012-06-10 18:53 - 00098261 ____A C:\Users\Sam\Downloads\madotsuki_grab_my_lightswitch_by_cartoonydoodles-d442wjt.png
2012-06-10 16:14 - 2012-04-02 04:10 - 00000000 ____D C:\Games
2012-06-10 14:37 - 2012-06-10 14:37 - 00501639 ____A C:\Users\Sam\Downloads\1339365078076.gif
2012-06-10 13:51 - 2012-06-10 13:51 - 00043762 ____A C:\Users\Sam\Downloads\1339364902794.png
2012-06-10 13:51 - 2012-06-10 13:51 - 00024615 ____A C:\Users\Sam\Downloads\1339364998695.gif
2012-06-10 13:50 - 2012-06-10 13:50 - 00231879 ____A C:\Users\Sam\Downloads\1339363193733.png
2012-06-10 13:49 - 2012-06-10 13:49 - 00297911 ____A C:\Users\Sam\Downloads\1339362937336.png
2012-06-10 12:20 - 2011-11-11 08:46 - 00000000 ____D C:\Users\Sam\AppData\Roaming\DAEMON Tools Lite
2012-06-10 11:52 - 2012-06-10 11:46 - 424821663 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_23_[h264-720p][9AD1A48A].mkv
2012-06-10 11:44 - 2012-06-10 11:44 - 00016688 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_23_[h264-720p][9AD1A48A].mkv.torrent
2012-06-10 11:40 - 2012-06-10 11:40 - 00325370 ____A C:\Users\Sam\Downloads\1339353254881.png
2012-06-10 10:51 - 2012-06-10 10:51 - 02335363 ____A C:\Users\Sam\Downloads\1339354140448.gif
2012-06-10 10:16 - 2012-06-10 10:16 - 00045494 ____A C:\Users\Sam\Downloads\1339351640960.gif
2012-06-10 10:15 - 2012-06-10 10:15 - 00114202 ____A C:\Users\Sam\Downloads\1339351902821.gif
2012-06-10 10:10 - 2012-06-10 10:10 - 00505092 ____A C:\Users\Sam\Downloads\1339351798441.gif
2012-06-10 10:08 - 2012-06-10 10:08 - 01347749 ____A C:\Users\Sam\Downloads\1339346812796.gif
2012-06-10 10:08 - 2012-06-10 10:08 - 00238143 ____A C:\Users\Sam\Downloads\1339346731378.png
2012-06-10 09:46 - 2012-06-10 09:19 - 48988852 ____A C:\Users\Sam\Downloads\yn0.10enginstaller.rar
2012-06-10 08:56 - 2012-06-10 08:56 - 02774103 ____A C:\Users\Sam\Downloads\1339347340488.png
2012-06-10 08:25 - 2012-06-10 08:25 - 00118972 ____A C:\Users\Sam\Downloads\1339344243651.png
2012-06-10 08:25 - 2012-06-10 08:25 - 00072554 ____A C:\Users\Sam\Downloads\1339344594388.png
2012-06-10 08:24 - 2012-06-10 08:24 - 03109838 ____A C:\Users\Sam\Downloads\1339344161509.gif
2012-06-10 08:23 - 2012-06-10 08:23 - 00422025 ____A C:\Users\Sam\Downloads\1339343908289.png
2012-06-10 08:23 - 2012-06-10 08:23 - 00190029 ____A C:\Users\Sam\Downloads\1339343885784.png
2012-06-10 08:23 - 2012-06-10 08:23 - 00100707 ____A C:\Users\Sam\Downloads\1339343963675.png
2012-06-10 08:21 - 2012-06-10 08:21 - 00171814 ____A C:\Users\Sam\Downloads\1339343688016.png
2012-06-10 08:21 - 2012-06-10 08:21 - 00087759 ____A C:\Users\Sam\Downloads\1339343629723.png
2012-06-10 08:20 - 2012-06-10 08:20 - 00157338 ____A C:\Users\Sam\Downloads\1339343550517.png
2012-06-10 08:20 - 2012-06-10 08:20 - 00046991 ____A C:\Users\Sam\Downloads\1339343591489.png
2012-06-10 08:18 - 2012-06-10 08:18 - 00034063 ____A C:\Users\Sam\Downloads\1339343214363.png
2012-06-10 08:13 - 2012-06-10 08:13 - 01869624 ____A C:\Users\Sam\Downloads\1339344206422.gif
2012-06-10 08:11 - 2012-06-10 08:11 - 01167852 ____A C:\Users\Sam\Downloads\1339342136171.png
2012-06-10 08:11 - 2012-06-10 08:11 - 00490565 ____A C:\Users\Sam\Downloads\1339342668200.gif
2012-06-10 08:09 - 2012-06-10 08:09 - 00091948 ____A C:\Users\Sam\Downloads\1339341057083.gif
2012-06-10 07:39 - 2012-06-10 07:39 - 00478372 ____A C:\Users\Sam\Downloads\1339338233887.gif
2012-06-10 07:13 - 2012-06-10 07:14 - 00399386 ____A C:\Users\Sam\Downloads\1339337102316.png
2012-06-10 07:11 - 2012-06-10 07:09 - 78346545 ____A C:\Users\Sam\Downloads\save.rar
2012-06-10 06:29 - 2012-06-10 06:29 - 00948451 ____A C:\Users\Sam\Downloads\1339334892742.png
2012-06-10 04:56 - 2012-06-09 11:22 - 00000000 ____D C:\Users\Sam\Downloads\Mawaru Penguindrum Music Collection (MP3)
2012-06-09 12:30 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\System32\NDF
2012-06-09 11:20 - 2012-06-09 11:20 - 00035063 ____A C:\Users\Sam\Downloads\[BakaBT.164962v2] Mawaru Penguindrum Music Collection (MP3).torrent
2012-06-08 16:57 - 2012-05-13 18:30 - 3608531088 ____A C:\Users\Sam\Downloads\Gw2.dat
2012-06-08 15:52 - 2012-05-14 01:15 - 00000000 ____A C:\Users\Sam\Downloads\chrome.log
2012-06-08 15:48 - 2012-05-13 18:30 - 00000000 ____A C:\Users\Sam\Downloads\Gw2.tmp
2012-06-08 15:48 - 2012-05-13 18:29 - 21764672 ____A (ArenaNet) C:\Users\Sam\Downloads\Gw2.exe
2012-06-08 15:03 - 2012-04-10 07:44 - 00281288 ____A C:\Windows\SysWOW64\PnkBstrB.xtr
2012-06-08 15:03 - 2012-04-10 05:49 - 00281288 ____A C:\Windows\SysWOW64\PnkBstrB.exe
2012-06-08 14:36 - 2012-04-10 05:49 - 00281288 ____A C:\Windows\SysWOW64\PnkBstrB.ex0
2012-06-08 09:44 - 2012-06-08 09:44 - 01270121 ____A C:\Users\Sam\Downloads\1339177272318.png
2012-06-08 09:43 - 2012-06-08 09:43 - 01278229 ____A C:\Users\Sam\Downloads\1339177203455.png
2012-06-08 09:43 - 2012-06-08 09:43 - 01037416 ____A C:\Users\Sam\Downloads\1339177064431.png
2012-06-08 09:41 - 2012-06-08 09:41 - 01269748 ____A C:\Users\Sam\Downloads\1339177158276.png
2012-06-08 09:33 - 2012-06-08 09:33 - 00920689 ____A C:\Users\Sam\Downloads\1339171479286.png
2012-06-08 09:26 - 2012-06-08 09:26 - 00147587 ____A C:\Users\Sam\Downloads\1339168283733.png
2012-06-08 09:26 - 2012-06-08 09:26 - 00041543 ____A C:\Users\Sam\Downloads\1339164923335.png
2012-06-08 09:21 - 2012-06-08 09:21 - 00702194 ____A C:\Users\Sam\Downloads\1339165224979.png
2012-06-08 09:20 - 2012-06-08 09:20 - 00137284 ____A C:\Users\Sam\Downloads\1339165192922.png
2012-06-08 09:17 - 2012-06-08 09:17 - 00277550 ____A C:\Users\Sam\Downloads\1339164886907.png
2012-06-08 09:17 - 2012-06-08 09:17 - 00144487 ____A C:\Users\Sam\Downloads\1339164852984.png
2012-06-07 20:32 - 2012-06-07 20:32 - 00032514 ____A C:\Users\Sam\Downloads\1339121719945.png
2012-06-07 20:19 - 2012-06-07 20:19 - 01713099 ____A C:\Users\Sam\Downloads\1339127505453.gif
2012-06-07 18:25 - 2012-06-07 18:25 - 00739345 ____A C:\Users\Sam\Downloads\1339122198690.gif
2012-06-07 18:08 - 2012-06-07 18:08 - 00179516 ____A C:\Users\Sam\Downloads\Crash.dmp
2012-06-07 18:08 - 2012-05-13 18:30 - 00000000 ____D C:\Users\Sam\Documents\Guild Wars 2
2012-06-07 16:49 - 2012-06-07 16:49 - 00045028 ____A C:\Users\Sam\Downloads\1339116285331.png
2012-06-07 14:58 - 2012-06-07 14:58 - 00000000 ____D C:\Users\Sam\Documents\CAPCOM
2012-06-07 14:58 - 2012-06-07 14:58 - 00000000 ____D C:\Users\Sam\AppData\Local\CAPCOM
2012-06-07 14:48 - 2012-06-07 14:48 - 00000000 ____D C:\Program Files (x86)\CAPCOM
2012-06-07 14:35 - 2012-06-07 10:56 - 00000000 ____D C:\Users\Sam\Downloads\Devil.May.Cry.4-RELOADED [www.HispaTorrents.net]
2012-06-07 14:06 - 2012-06-07 14:06 - 00190411 ____A C:\Users\Sam\Downloads\1339105528536.png
2012-06-07 13:53 - 2012-06-07 13:53 - 00013860 ____A C:\Users\Sam\Downloads\1339099745570.png
2012-06-07 09:48 - 2012-06-07 09:48 - 03065917 ____A C:\Users\Sam\Downloads\1339084716767.gif
2012-06-07 08:36 - 2012-06-07 08:36 - 00074697 ____A C:\Users\Sam\Downloads\1339086858108.png
2012-06-07 07:09 - 2012-06-07 07:09 - 00022393 ____A C:\Users\Sam\Downloads\Vocaroo_s0bxuGgZff9n.mp3
2012-06-07 07:08 - 2012-06-07 07:08 - 00072548 ____A C:\Users\Sam\Downloads\Vocaroo_s0Wfxnwgt2PO.mp3
2012-06-07 07:07 - 2012-06-07 07:07 - 00629445 ____A C:\Users\Sam\Downloads\n4fd04b1cf11ba.png
2012-06-07 06:02 - 2012-06-07 06:02 - 00751314 ____A C:\Users\Sam\Downloads\Vocaroo_s0ZQoI0R4ncF.mp3
2012-06-07 05:57 - 2012-06-07 05:57 - 00162828 ____A C:\Users\Sam\Downloads\Vocaroo_s0MOcw47hvCM.mp3
2012-06-07 05:56 - 2012-06-07 05:56 - 00160320 ____A C:\Users\Sam\Downloads\Vocaroo_s0ncobTHuMSd.mp3
2012-06-07 05:55 - 2012-06-07 05:55 - 00266899 ____A C:\Users\Sam\Downloads\Vocaroo_s043E1rhIXit.mp3
2012-06-07 05:53 - 2012-06-07 05:53 - 00281737 ____A C:\Users\Sam\Downloads\Vocaroo_s0l4FPXg5Tsh.mp3
2012-06-07 05:45 - 2012-06-07 05:45 - 01915833 ____A C:\Users\Sam\Downloads\1GvM8.gif
2012-06-07 05:42 - 2012-06-07 05:42 - 00097835 ____A C:\Users\Sam\Downloads\Vocaroo_s0eq8RjTfLBC.mp3
2012-06-07 05:39 - 2012-06-07 05:39 - 00095327 ____A C:\Users\Sam\Downloads\Vocaroo_s0sU1bgJhzOD.mp3
2012-06-07 05:39 - 2012-06-07 05:39 - 00042873 ____A C:\Users\Sam\Downloads\Vocaroo_s0IUkp7ienrq.mp3
2012-06-07 05:36 - 2012-06-07 05:36 - 00489045 ____A C:\Users\Sam\Downloads\Vocaroo_s0hwjmwnbiab.mp3
2012-06-07 05:32 - 2012-06-07 05:32 - 00050606 ____A C:\Users\Sam\Downloads\Vocaroo_s0nInD3gsvQL.mp3
2012-06-07 05:30 - 2012-06-07 05:30 - 00276304 ____A C:\Users\Sam\Downloads\Vocaroo_s0uzJH973c97.mp3
2012-06-07 05:20 - 2012-06-07 05:20 - 00129391 ____A C:\Users\Sam\Downloads\Vocaroo_s0fh0mNeoFXz.mp3
2012-06-07 05:07 - 2012-06-07 05:06 - 00072720 ____A C:\Windows\System32\peerblock.dmp
2012-06-06 16:11 - 2012-06-06 16:11 - 01018819 ____A C:\Users\Sam\Downloads\WfP1J.gif
2012-06-06 15:35 - 2012-06-06 15:35 - 02842975 ____A C:\Users\Sam\Downloads\1339025722897.gif
2012-06-06 14:01 - 2012-06-06 14:01 - 00160381 ____A C:\Users\Sam\Downloads\1339020058859.png
2012-06-06 13:46 - 2012-06-06 13:46 - 00003271 ____A C:\Users\Sam\Documents\fanfic.txt
2012-06-06 13:46 - 2012-06-06 08:36 - 00025516 ____A C:\Users\Sam\Documents\fanfic.odt
2012-06-06 08:41 - 2012-06-06 08:41 - 00770127 ____A C:\Users\Sam\Downloads\1338999998493.png
2012-06-06 08:18 - 2012-06-06 08:15 - 00000825 ____A C:\Users\Sam\Documents\autism.txt
2012-06-06 06:28 - 2012-06-06 06:28 - 00042567 ____A C:\Users\Sam\Downloads\1338992711991.png
 
2012-06-06 06:18 - 2012-06-06 06:18 - 00473188 ____A C:\Users\Sam\Downloads\1338990334399.png
2012-06-06 06:10 - 2012-06-06 06:04 - 00000000 ____D C:\mugen
2012-06-06 05:58 - 2012-06-06 05:57 - 08811721 ____A C:\Users\Sam\Downloads\mugen100.zip
2012-06-06 05:52 - 2012-06-06 05:52 - 00000000 ____D C:\Users\All Users\VirtuallTek
2012-06-06 05:52 - 2012-06-06 05:52 - 00000000 ____D C:\Program Files (x86)\VirtuallTek
2012-06-06 05:51 - 2012-06-06 05:48 - 01632901 ____A (VirtuallTek Systems ) C:\Users\Sam\Downloads\ffu26.exe
2012-06-05 18:15 - 2012-06-05 18:16 - 00302025 ____A C:\Users\Sam\Downloads\1338948677165.png
2012-06-05 18:09 - 2012-06-05 18:09 - 01038635 ____A C:\Users\Sam\Downloads\1338947559621.png
2012-06-05 16:41 - 2012-06-05 16:41 - 01335004 ____A C:\Users\Sam\Downloads\1338942125442.png
2012-06-05 15:12 - 2012-06-05 15:07 - 61353425 ____A C:\Users\Sam\Downloads\Conker's Bad Fur Day.zip
2012-06-05 15:08 - 2012-06-05 15:06 - 00000000 ____D C:\Program Files (x86)\Project64 1.6
2012-06-05 15:06 - 2012-06-05 15:05 - 02080797 ____A (Project64 ) C:\Users\Sam\Downloads\project64_1.6.exe
2012-06-05 15:05 - 2012-06-05 15:05 - 06276900 ____A C:\Users\Sam\Downloads\Super Mario 64.zip
2012-06-05 14:47 - 2012-06-05 14:47 - 01041528 ____A C:\Users\Sam\Downloads\1338928931119.gif
2012-06-05 14:13 - 2012-06-05 14:13 - 00511645 ____A C:\Users\Sam\Downloads\1338934080168.gif
2012-06-05 12:50 - 2012-06-05 12:50 - 01047927 ____A C:\Users\Sam\Downloads\1338927174085.gif
2012-06-05 12:41 - 2012-06-05 12:41 - 00388894 ____A C:\Users\Sam\Downloads\1338928753084.png
2012-06-05 12:14 - 2012-06-05 12:14 - 00308238 ____A C:\Users\Sam\Downloads\1338927173959.png
2012-06-05 12:05 - 2012-06-05 12:05 - 00148926 ____A C:\Users\Sam\Downloads\1338926454207.png
2012-06-05 12:03 - 2012-06-05 12:03 - 03640626 ____A C:\Users\Sam\Downloads\untitled_2nyjrc.gif
2012-06-05 11:54 - 2012-06-05 11:54 - 00909729 ____A C:\Users\Sam\Downloads\1338925929642.gif
2012-06-05 11:44 - 2012-06-05 11:44 - 00019209 ____A C:\Users\Sam\Downloads\1338925384507.png
2012-06-05 11:44 - 2012-06-05 11:44 - 00011487 ____A C:\Users\Sam\Downloads\1338925294111.png
2012-06-05 11:28 - 2012-06-05 11:28 - 00086116 ____A C:\Users\Sam\Downloads\1338924472650.png
2012-06-05 10:55 - 2012-06-05 10:55 - 00450512 ____A C:\Users\Sam\Downloads\n4fcc2900d032c.png
2012-06-05 09:13 - 2012-06-05 09:13 - 03040589 ____A C:\Users\Sam\Downloads\1338868479399.gif
2012-06-05 09:01 - 2012-06-05 09:01 - 00418553 ____A C:\Users\Sam\Downloads\1338915125028.png
2012-06-05 08:40 - 2012-06-05 08:40 - 00115399 ____A C:\Users\Sam\Downloads\1338914384781.png
2012-06-05 08:34 - 2012-06-05 08:34 - 00262633 ____A C:\Users\Sam\Downloads\my_body_is_ready.png
2012-06-04 18:33 - 2012-06-04 18:33 - 00098796 ____A C:\Users\Sam\Downloads\E3-logo1.png
2012-06-04 18:29 - 2012-06-04 18:29 - 01018517 ____A C:\Users\Sam\Downloads\1338862637026.png
2012-06-04 18:26 - 2012-06-04 18:26 - 00110941 ____A C:\Users\Sam\Downloads\1338862501694.png
2012-06-04 13:35 - 2012-06-04 13:35 - 00181171 ____A C:\Users\Sam\Downloads\1338845458684.png
2012-06-04 12:47 - 2012-06-04 12:47 - 00114859 ____A C:\Users\Sam\Downloads\1338841888259.png
2012-06-04 11:57 - 2012-06-04 11:57 - 00166972 ____A C:\Users\Sam\Downloads\1338839726619.png
2012-06-04 10:58 - 2012-06-04 10:58 - 00009217 ____A C:\Users\Sam\Downloads\1338835491659.png
2012-06-04 10:47 - 2012-06-04 10:37 - 00176184 ____A C:\Users\Sam\Downloads\1338832981131.png
2012-06-04 10:45 - 2012-06-04 10:45 - 00599502 ____A C:\Users\Sam\Downloads\ywMBj.gif
2012-06-04 09:46 - 2012-06-04 09:46 - 01514501 ____A C:\Users\Sam\Downloads\1338831917088.png
2012-06-04 06:02 - 2012-06-04 05:57 - 00000000 ____D C:\Users\Sam\Downloads\Yokohama Kaidashi Kikou Music Collection (mp3)
2012-06-04 06:02 - 2012-06-03 15:43 - 1220193803 ____A C:\Users\Sam\Downloads\[Commie] Berserk - Golden Age Chapter I - Egg of the High King [BD 1080p AAC] [5E90C760].mkv
2012-06-04 05:56 - 2012-06-04 05:56 - 00026078 ____A C:\Users\Sam\Downloads\[BakaBT.152927v3] Yokohama Kaidashi Kikou Music Collection (mp3).torrent
2012-06-04 05:56 - 2012-06-04 05:56 - 00026078 ____A C:\Users\Sam\Downloads\[BakaBT.152927v3] Yokohama Kaidashi Kikou Music Collection (mp3) (1).torrent
2012-06-04 05:56 - 2012-06-04 05:56 - 00021693 ____A C:\Users\Sam\Downloads\[BakaBT.153598v0] Yokohama Kaidashi Kikou Music Collection (FLAC).torrent
2012-06-03 15:38 - 2012-06-03 15:38 - 00093549 ____A C:\Users\Sam\Downloads\[Commie] Berserk - Golden Age Chapter I - Egg of the High King [BD 1080p AAC] [5E90C760].mkv.torrent
2012-06-03 14:55 - 2012-06-03 14:55 - 00032129 ____A C:\Users\Sam\Downloads\1338763798548.png
2012-06-03 14:28 - 2011-11-11 19:01 - 58957832 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
2012-06-03 14:19 - 2012-06-03 14:19 - 00092438 ____A C:\Users\Sam\Downloads\1338761780155.png
2012-06-03 13:06 - 2012-06-03 13:06 - 00066391 ____A C:\Users\Sam\Downloads\1338752398733.png
2012-06-03 13:01 - 2012-06-03 13:01 - 00040718 ____A C:\Users\Sam\Downloads\1338756809369.png
2012-06-03 13:00 - 2012-06-03 13:00 - 00546544 ____A C:\Users\Sam\Downloads\1338756972005.png
2012-06-03 12:58 - 2012-06-03 12:58 - 00034247 ____A C:\Users\Sam\Downloads\1338754912661.png
2012-06-03 08:51 - 2012-06-02 16:31 - 00000000 ____D C:\Program Files (x86)\Battlefield 3
2012-06-03 08:50 - 2012-06-03 08:50 - 00134102 ____A C:\Users\Sam\Downloads\injectSMAA_by_mrhaandi_1.2 (4).7z
2012-06-03 06:49 - 2012-06-02 17:20 - 00000000 ____D C:\Users\Sam\Documents\Battlefield 3
2012-06-03 06:35 - 2012-06-03 06:35 - 00404919 ____A C:\Users\Sam\Downloads\1338733714668.png
2012-06-03 06:28 - 2012-06-03 06:28 - 00283850 ____A C:\Users\Sam\Downloads\1338726234726.png
2012-06-02 18:36 - 2012-06-02 18:36 - 00018643 ____A C:\Users\Sam\Downloads\[BakaBT.129870v0] A Time To Screw (1).torrent
2012-06-02 18:35 - 2012-06-02 18:35 - 00018643 ____A C:\Users\Sam\Downloads\[BakaBT.129870v0] A Time To Screw.torrent
2012-06-02 18:33 - 2012-06-02 18:15 - 00000000 ____D C:\Users\Sam\Downloads\[hshare.net].A.Time.To.Screw.EP01-02.[ENG.SUBS].[UNCEN]
2012-06-02 18:13 - 2012-06-02 18:13 - 00021178 ____A C:\Users\Sam\Downloads\hshare.net.A.Time.To.Screw.EP01-02.ENG.SUBS.UNCEN.torrent
2012-06-02 18:05 - 2012-06-02 18:05 - 00000000 ____D C:\Users\Sam\Downloads\A Time To Screw
2012-06-02 18:04 - 2012-06-02 18:04 - 00018830 ____A C:\Users\Sam\Downloads\A Time To Screw.torrent
2012-06-02 15:25 - 2012-06-02 15:17 - 258852757 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 22 [1D7B886C].mkv
2012-06-02 15:19 - 2012-06-02 15:19 - 19754715 ____A C:\Users\Sam\Downloads\jpcsp-2568-windows-amd64.7z
2012-06-02 15:15 - 2012-06-02 15:15 - 00020160 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 22 [1D7B886C].mkv.torrent
2012-06-02 14:12 - 2012-06-02 14:12 - 07612586 ____A C:\Users\Sam\Downloads\pcsp_v0.5.4 (1).zip
2012-06-02 13:54 - 2012-06-02 13:54 - 07612586 ____A C:\Users\Sam\Downloads\pcsp_v0.5.4.zip
2012-06-02 13:43 - 2012-06-02 13:43 - 00001427 ____A C:\Users\Sam\Documents\cry.txt
2012-06-02 12:29 - 2012-06-02 12:29 - 00281744 ____A C:\Users\Sam\Downloads\1338667841302.gif
2012-06-02 11:29 - 2012-06-02 11:29 - 00000011 ____A C:\Users\Sam\Documents\Student Finance.txt
2012-06-01 18:00 - 2012-06-01 17:52 - 1171374649 ____A C:\Users\Sam\Downloads\BlazBlue_Continuum_Shift.rar
2012-06-01 09:14 - 2012-06-01 09:14 - 01864699 ____A C:\Users\Sam\Downloads\1338567812639.gif
2012-06-01 09:11 - 2012-06-01 09:11 - 00970635 ____A C:\Users\Sam\Downloads\1338566312929.png
2012-06-01 09:11 - 2012-06-01 09:11 - 00443321 ____A C:\Users\Sam\Downloads\1338566256293.png
2012-06-01 06:42 - 2012-06-01 06:42 - 00000000 ____D C:\Users\Sam\Documents\WB Games
2012-06-01 06:31 - 2012-06-01 06:29 - 00719436 ____A C:\Users\Sam\Downloads\1338559699109.png
2012-06-01 06:28 - 2012-06-01 06:28 - 00890294 ____A C:\Users\Sam\Downloads\1338557718555.png
2012-06-01 05:55 - 2011-11-11 07:27 - 00000000 ____D C:\Windows\SysWOW64\directx
2012-06-01 05:42 - 2012-06-01 05:42 - 00184177 ____A C:\Users\Sam\Downloads\1338557724904.png
2012-06-01 05:26 - 2012-06-01 05:08 - 01094543 ____A C:\Users\Sam\Downloads\n4fc86de31f9e8 (1).png
2012-06-01 05:10 - 2012-06-01 05:10 - 00095645 ____A C:\Users\Sam\Downloads\922270_1326074572207_full.png
2012-06-01 05:08 - 2012-06-01 05:08 - 00846658 ____A C:\Users\Sam\Downloads\n4fc86de31f9e8 (2).png
2012-06-01 04:08 - 2012-06-01 04:04 - 00555485 ____A C:\Users\Sam\Downloads\n4fc86de31f9e8.png
2012-05-31 23:08 - 2012-05-31 23:08 - 02030866 ____A C:\Users\Sam\Downloads\1338516702562.gif
2012-05-31 18:01 - 2012-05-31 18:01 - 00091602 ____A C:\Users\Sam\Downloads\DQpwY.png
2012-05-31 17:36 - 2012-05-31 17:36 - 00140904 ____A C:\Users\Sam\Downloads\1338505895859.png
2012-05-31 16:06 - 2012-05-31 14:43 - 00000000 ____D C:\Users\Sam\Downloads\Crysis.2.v1.9.Update.incl.DX11.Ultra.and.HiRes.Texture.Packs-SKIDROW
2012-05-31 15:15 - 2012-05-31 15:15 - 00730590 ____A C:\Users\Sam\Downloads\830px-IH.png
2012-05-31 15:11 - 2012-05-31 14:30 - 3446656729 ____A C:\Users\Sam\Downloads\Samaritan_Realtime_Demo.mov
2012-05-31 14:03 - 2012-05-31 14:03 - 00508323 ____A C:\Users\Sam\Downloads\IUH15.gif
2012-05-31 13:03 - 2012-05-31 09:00 - 00000000 ____D C:\Users\Sam\Downloads\Batman Arkham City-Black Box
2012-05-31 12:51 - 2012-05-31 12:51 - 00000000 ____D C:\Users\Sam\Documents\Wolfire
2012-05-31 12:50 - 2012-05-31 12:50 - 00415764 ____A C:\Users\Sam\Downloads\1338496525693.png
2012-05-31 12:45 - 2012-05-31 12:45 - 00164620 ____A C:\Users\Sam\Downloads\1338496619808.png
2012-05-31 12:42 - 2012-05-31 12:42 - 00052783 ____A C:\Users\Sam\Downloads\1338496126338.png
2012-05-31 12:39 - 2012-05-31 12:19 - 2050742762 ____A C:\Users\Sam\Downloads\a175-win.exe
2012-05-31 12:29 - 2012-05-31 12:30 - 00592973 ____A C:\Users\Sam\Downloads\1338495984208.gif
2012-05-31 11:06 - 2012-05-31 11:06 - 02026331 ____A C:\Users\Sam\Downloads\playing tera with kinect.gif
2012-05-31 11:04 - 2012-05-31 11:04 - 02075845 ____A C:\Users\Sam\Downloads\1338489603048.gif
2012-05-31 11:01 - 2012-05-31 11:01 - 00112343 ____A C:\Users\Sam\Downloads\1338490490967.png
2012-05-31 10:19 - 2012-05-31 10:19 - 01857408 ____A C:\Users\Sam\Downloads\1338481290684.gif
2012-05-31 09:31 - 2012-05-31 09:13 - 00000000 ____D C:\Program Files (x86)\OMGWTFOTL
2012-05-31 08:45 - 2012-05-31 08:45 - 00296100 ____A C:\Users\Sam\Downloads\1338479893433.png
2012-05-31 08:00 - 2012-05-31 08:00 - 01520673 ____A C:\Users\Sam\Downloads\1338479274502.png
2012-05-31 06:50 - 2012-05-31 06:50 - 01673522 ____A C:\Users\Sam\Downloads\1338475481321.gif
2012-05-31 06:49 - 2012-05-31 06:49 - 02126577 ____A C:\Users\Sam\Downloads\1338475454688.gif
2012-05-31 05:44 - 2012-05-31 05:44 - 00405963 ____A C:\Users\Sam\Downloads\1338471665015.png
2012-05-31 05:18 - 2012-05-31 05:10 - 315470531 ____A C:\Users\Sam\Downloads\StarForge_V0.1.zip
2012-05-31 05:02 - 2012-05-31 05:02 - 00499752 ____A C:\Users\Sam\Downloads\forgetting to equip covenant of artorias.gif
2012-05-31 05:00 - 2012-05-31 05:00 - 02815118 ____A C:\Users\Sam\Downloads\cod audience.gif
2012-05-31 04:58 - 2012-05-31 04:58 - 02167911 ____A C:\Users\Sam\Downloads\1338465860686.gif
2012-05-31 04:58 - 2012-05-31 04:58 - 01465355 ____A C:\Users\Sam\Downloads\1338465759944.gif
2012-05-31 04:58 - 2012-05-31 04:58 - 01426056 ____A C:\Users\Sam\Downloads\1338465756520.gif
2012-05-31 04:58 - 2012-05-31 04:58 - 00505912 ____A C:\Users\Sam\Downloads\1338465615458.gif
2012-05-31 04:58 - 2012-05-31 04:58 - 00316451 ____A C:\Users\Sam\Downloads\1338465556688.gif
2012-05-31 04:57 - 2012-05-31 04:57 - 00252981 ____A C:\Users\Sam\Downloads\1338465428206.gif
2012-05-31 04:55 - 2012-05-31 04:55 - 00118891 ____A C:\Users\Sam\Downloads\1338465131425.gif
2012-05-31 04:52 - 2012-05-31 04:52 - 01048079 ____A C:\Users\Sam\Downloads\1338468417468.png
2012-05-31 04:52 - 2012-05-31 04:52 - 00364226 ____A C:\Users\Sam\Downloads\1338463568564.gif
2012-05-31 04:45 - 2012-05-31 04:45 - 01739995 ____A C:\Users\Sam\Downloads\1338467275139.gif
2012-05-31 03:46 - 2012-05-31 03:46 - 00500483 ____A C:\Users\Sam\Downloads\1338462955239.gif
2012-05-31 03:11 - 2012-05-31 03:11 - 00597558 ____A C:\Users\Sam\Downloads\1338462659341.png
2012-05-31 03:04 - 2012-05-31 03:04 - 00125013 ____A C:\Users\Sam\Downloads\1338460103662.png
2012-05-31 01:40 - 2012-05-31 01:40 - 00303410 ____A C:\Users\Sam\Downloads\BobPage.png
2012-05-31 01:36 - 2012-05-31 01:37 - 00038797 ____A C:\Users\Sam\Downloads\1338456974352.png
2012-05-31 00:49 - 2012-05-31 00:49 - 00343600 ____A C:\Users\Sam\Downloads\1338450062772.gif
2012-05-31 00:47 - 2012-05-31 00:47 - 00872103 ____A C:\Users\Sam\Downloads\1338453174536.png
2012-05-31 00:41 - 2012-05-31 00:41 - 03004412 ____A C:\Users\Sam\Downloads\1338451381460.gif
2012-05-31 00:41 - 2012-05-31 00:41 - 00503979 ____A C:\Users\Sam\Downloads\1338451552153.gif
2012-05-31 00:13 - 2012-05-31 00:13 - 00042217 ____A C:\Users\Sam\Downloads\1338450067927.png
2012-05-31 00:10 - 2012-05-31 00:10 - 00363059 ____A C:\Users\Sam\Downloads\1338451438669.gif
2012-05-31 00:06 - 2012-05-31 00:06 - 00051766 ____A C:\Users\Sam\Downloads\1338450705862.png
2012-05-30 17:09 - 2012-05-30 17:09 - 00325363 ____A C:\Users\Sam\Downloads\1338392092126.gif
2012-05-30 17:06 - 2012-05-30 17:06 - 00332206 ____A C:\Users\Sam\Downloads\1338388826880.png
2012-05-30 17:02 - 2012-05-30 17:02 - 00207723 ____A C:\Users\Sam\Downloads\1338379694876.png
2012-05-30 15:48 - 2012-05-30 15:48 - 00000000 ____D C:\Users\Sam\Downloads\REDLINE Music Collection [FLAC]
2012-05-30 15:47 - 2012-05-30 15:47 - 00016667 ____A C:\Users\Sam\Downloads\[BakaBT.160937v1] REDLINE Music Collection [FLAC].torrent
2012-05-30 14:31 - 2012-05-30 14:28 - 16585571 ____A C:\Users\Sam\Downloads\OMGWTFOTLSetup[Nanatuha][AT2006].exe
2012-05-30 14:28 - 2012-05-30 14:28 - 00005268 ____A C:\Users\Sam\Downloads\OMGWTFOTLSetup[Nanatuha][AT2006].exe (1).torrent
2012-05-30 12:32 - 2012-05-16 05:06 - 00000000 ____D C:\Windows\SysWOW64\Adobe
2012-05-30 11:33 - 2012-05-30 11:33 - 02436542 ____A C:\Users\Sam\Downloads\1338404405047.gif
2012-05-30 08:30 - 2012-05-30 08:27 - 368334765 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_21_[h264-720p][BCB5C808].mkv
2012-05-30 08:27 - 2012-05-30 08:27 - 00014528 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_21_[h264-720p][BCB5C808].mkv.torrent
2012-05-30 08:22 - 2012-05-30 08:22 - 02671412 ____A C:\Users\Sam\Downloads\1338394246397.gif
2012-05-30 08:03 - 2012-05-30 08:03 - 01838721 ____A C:\Users\Sam\Downloads\1338393569559.gif
2012-05-30 07:59 - 2012-05-30 07:59 - 00268129 ____A C:\Users\Sam\Downloads\1338391239612.gif
2012-05-30 07:57 - 2012-05-30 07:57 - 02220249 ____A C:\Users\Sam\Downloads\1338389483646.gif
2012-05-30 06:38 - 2012-05-30 06:38 - 00554232 ____A C:\Users\Sam\Downloads\SkinEdit Alpha 3 pre 7 (1).zip
2012-05-29 19:02 - 2012-05-29 18:56 - 1367096420 ____A C:\Users\Sam\Downloads\Adobe Flash Pro CS6.exe
2012-05-29 18:05 - 2012-05-29 18:05 - 00636769 ____A C:\Users\Sam\Downloads\1338342691660.png
2012-05-29 16:12 - 2012-05-29 16:00 - 00000000 ____D C:\Users\Sam\Downloads\Diablo 2 with Lord of Destruction (v1.13c) (Direct Play)
2012-05-29 14:47 - 2012-05-29 14:47 - 00167722 ____A C:\Users\Sam\Downloads\Hazama_(Continuum_Shift,_Character_Select_Artwork).png
2012-05-29 05:23 - 2012-05-29 05:23 - 00036889 ____A C:\Users\Sam\Downloads\[BakaBT.163373v0] Legend.of.Galactic.Heroes.Overture.to.a.New.War.torrent
2012-05-29 05:23 - 2012-05-29 05:23 - 00000000 ____D C:\Users\Sam\Downloads\Legend.of.Galactic.Heroes.Overture.to.a.New.War
2012-05-29 04:44 - 2012-05-29 04:44 - 00646995 ____A C:\Users\Sam\Downloads\1338295426127.png
2012-05-29 04:43 - 2012-05-29 04:43 - 00393429 ____A C:\Users\Sam\Downloads\1338294795435.png
2012-05-29 02:31 - 2012-06-12 17:27 - 13513415 ____A C:\delver.jar
2012-05-28 18:43 - 2012-05-28 18:43 - 00264838 ____A C:\Users\Sam\Downloads\1338255862438.png
2012-05-28 17:15 - 2012-05-28 17:15 - 00103742 ____A C:\Users\Sam\Downloads\1338250741805.png
2012-05-28 17:12 - 2012-05-28 17:12 - 00048208 ____A C:\Users\Sam\Downloads\1338249300522.png
2012-05-28 16:08 - 2012-05-28 16:06 - 12256911 ____A C:\Users\Sam\Downloads\[SaHa] Kaworu Watashiya - Kodomo no Jikan Ch.83 (English).rar
2012-05-28 01:12 - 2012-05-28 01:12 - 00259339 ____A C:\Users\Sam\Downloads\1338190738707.png
2012-05-27 23:37 - 2012-05-27 23:37 - 00262995 ____A C:\Users\Sam\Downloads\1338188104291.png
2012-05-27 23:36 - 2012-05-27 23:36 - 00431069 ____A C:\Users\Sam\Downloads\1338188072876.png
2012-05-27 23:34 - 2012-05-27 23:34 - 00386484 ____A C:\Users\Sam\Downloads\1338187660848.png
2012-05-26 14:55 - 2012-05-26 14:55 - 00313718 ____A C:\Users\Sam\Downloads\n4fc15d72b93fb.png
2012-05-26 07:20 - 2012-05-26 07:20 - 00308571 ____A C:\Users\Sam\Downloads\1338024965410.gif
2012-05-26 04:25 - 2012-05-26 04:25 - 00026224 ____A C:\Users\Sam\Downloads\1338017225355.png
2012-05-25 14:33 - 2012-05-25 14:33 - 00000000 ____D C:\Program Files (x86)\Combined Community Codec Pack
2012-05-25 14:32 - 2012-05-25 14:32 - 09889896 ____A (CCCP Project ) C:\Users\Sam\Downloads\Combined-Community-Codec-Pack-2011-11-11 (1).exe
2012-05-25 14:26 - 2012-05-25 14:26 - 00000000 ____D C:\Program Files (x86)\VideoLAN
2012-05-25 14:22 - 2012-05-25 14:21 - 22259528 ____A C:\Users\Sam\Downloads\vlc-2.0.1-win32.exe
2012-05-25 14:22 - 2012-02-24 13:10 - 00000000 ____D C:\Users\Sam\Downloads\Legend of Galactic Heroes
2012-05-25 14:16 - 2012-05-25 14:16 - 00162416 ____A C:\Users\Sam\Downloads\[BakaBT.161010v1] Legend of Galactic Heroes.torrent
2012-05-25 13:04 - 2012-05-25 13:01 - 72731273 ____A C:\Users\Sam\Downloads\BIOS PCSX2 0.9.9.zip
2012-05-25 03:59 - 2012-05-25 03:59 - 00251413 ____A C:\Users\Sam\Downloads\1337939535602.png
2012-05-25 03:57 - 2012-05-25 03:57 - 00685892 ____A C:\Users\Sam\Downloads\1337938712729.png
2012-05-23 09:24 - 2012-05-23 09:24 - 00001678 ____A C:\Users\Sam\Downloads\FakedPlayers.rar
2012-05-23 07:17 - 2012-05-23 07:15 - 264329105 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_20_[h264-720p][AF35659F].mkv
2012-05-23 07:15 - 2012-05-23 07:15 - 00020648 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_20_[h264-720p][AF35659F].mkv.torrent
2012-05-23 04:53 - 2012-05-23 04:53 - 00077501 ____A C:\Users\Sam\Downloads\PBF071-Weeaboo.gif
2012-05-22 16:50 - 2012-05-22 16:50 - 00073801 ____A C:\Users\Sam\Downloads\1337732235664.png
2012-05-22 14:32 - 2012-05-22 14:32 - 00987153 ____A C:\Users\Sam\Downloads\1337719019473.gif
2012-05-22 12:33 - 2012-05-22 12:03 - 1774411798 ____A C:\Users\Sam\Downloads\Mars-bump.zip
2012-05-22 12:28 - 2012-05-22 12:18 - 453332159 ____A C:\Users\Sam\Downloads\Jupiter-moons.zip
2012-05-22 12:23 - 2012-05-22 12:16 - 340816325 ____A C:\Users\Sam\Downloads\Mars-surface-nonshaded.zip
2012-05-22 12:17 - 2012-05-22 12:03 - 715564281 ____A C:\Users\Sam\Downloads\Earth-clouds.zip
2012-05-22 12:15 - 2012-05-22 12:07 - 177003006 ____A C:\Users\Sam\Downloads\Mars-surface.zip
2012-05-22 12:07 - 2012-05-22 12:01 - 565675655 ____A C:\Users\Sam\Downloads\Moon-bump.zip
2012-05-22 12:02 - 2012-05-22 12:02 - 00000000 ____D C:\Users\Sam\Downloads\Earth-surface
2012-05-22 12:02 - 2012-05-22 12:02 - 00000000 ____D C:\Users\Sam\Downloads\Earth-bump
2012-05-22 11:50 - 2012-05-22 11:49 - 14644532 ____A C:\Users\Sam\Downloads\Hide (PC).zip
2012-05-22 10:57 - 2012-05-22 10:57 - 00293087 ____A C:\Users\Sam\Downloads\1337712498678.png
2012-05-22 10:55 - 2012-05-22 10:55 - 00865615 ____A C:\Users\Sam\Downloads\1337712444362.png
2012-05-22 10:54 - 2012-05-22 10:54 - 00288146 ____A C:\Users\Sam\Downloads\1337711910801.png
2012-05-22 10:54 - 2012-05-22 10:54 - 00215519 ____A C:\Users\Sam\Downloads\1337712340020.png
2012-05-22 10:49 - 2012-05-22 10:50 - 01113122 ____A C:\Users\Sam\Downloads\1337709125344.gif
2012-05-22 10:49 - 2012-05-22 10:49 - 02238553 ____A C:\Users\Sam\Downloads\1337708997975.gif
2012-05-22 10:35 - 2012-05-22 10:36 - 01345995 ____A C:\Users\Sam\Downloads\1337711730981.png
2012-05-22 09:03 - 2012-05-22 09:03 - 01936946 ____A C:\Users\Sam\Downloads\1337706172424.gif
2012-05-22 09:01 - 2012-05-22 09:01 - 00037336 ____A C:\Users\Sam\Downloads\1337705872956.png
2012-05-22 04:01 - 2012-05-22 04:01 - 03112052 ____A C:\Users\Sam\Downloads\1337666379697.gif
2012-05-22 00:55 - 2012-05-22 00:55 - 00586316 ____A C:\Users\Sam\Downloads\1337676765291.png
2012-05-22 00:37 - 2012-03-07 17:50 - 00000000 ____D C:\Users\Sam\Documents\Tay-tay
2012-05-21 18:06 - 2012-05-21 18:05 - 11086329 ____A C:\Users\Sam\Downloads\Mandrill Maze Nightmare Simulator Deluxe.rar
2012-05-21 17:34 - 2012-05-21 17:34 - 00449086 ____A C:\Users\Sam\Downloads\n4fbaa84554a0f.png
2012-05-21 16:20 - 2012-05-21 16:19 - 45198141 ____A C:\Users\Sam\Documents\Mandrill Maze Nightmare Simulator Delux.wmv
2012-05-21 15:52 - 2012-05-21 15:52 - 01170656 ____A (Microsoft Corporation) C:\Users\Sam\Downloads\IconChanger38.exe
2012-05-21 15:39 - 2012-05-21 15:38 - 00082048 ____A C:\Users\Sam\Downloads\monkey.mp3
2012-05-21 14:55 - 2012-05-21 14:55 - 00046208 ____A C:\Users\Sam\Downloads\monkey2 (1).mp3
2012-05-21 14:45 - 2012-05-21 14:45 - 00038256 ____A C:\Users\Sam\Downloads\baboon (1).aif
2012-05-21 14:43 - 2012-05-21 14:43 - 00038256 ____A C:\Users\Sam\Downloads\baboon.aif
2012-05-21 14:17 - 2012-05-21 14:17 - 00089893 ____A C:\Users\Sam\Downloads\M. Bison "Yes Yes!" Widescreen HD reupload.mp3
2012-05-21 13:41 - 2012-05-21 13:38 - 09590234 ____A C:\Users\Sam\Downloads\Mandrill Maze.mp3
2012-05-21 12:48 - 2012-05-21 12:48 - 00221703 ____A C:\Users\Sam\Downloads\baboon_face-389.gif
2012-05-21 12:43 - 2012-05-21 12:43 - 03070333 ____A C:\Users\Sam\Downloads\SCP-087-B (1).zip
2012-05-21 12:36 - 2012-05-21 12:36 - 00096879 ____A C:\Users\Sam\Downloads\1337631636043.png
2012-05-21 12:09 - 2012-05-21 12:09 - 00431501 ____A C:\Users\Sam\Downloads\1337630412229.gif
2012-05-21 12:00 - 2012-05-21 12:00 - 01023284 ____A C:\Users\Sam\Downloads\1337630156429.gif
2012-05-21 11:47 - 2012-05-21 11:47 - 00007422 ____A C:\Users\Sam\Downloads\1337629557344.png
2012-05-21 09:39 - 2012-05-21 09:39 - 00307685 ____A C:\Users\Sam\Downloads\1337621648970.png
2012-05-21 09:38 - 2012-05-21 09:38 - 00136568 ____A C:\Users\Sam\Downloads\1337621527756.png
2012-05-21 08:13 - 2012-05-21 08:13 - 00120097 ____A C:\Users\Sam\Downloads\1337616602975.png
2012-05-21 07:09 - 2012-05-21 07:09 - 00457268 ____A C:\Users\Sam\Downloads\1337612714834.png
2012-05-21 03:16 - 2012-05-21 03:16 - 00063587 ____A C:\Users\Sam\Downloads\1337597857886.png
2012-05-21 03:14 - 2012-05-21 03:14 - 00752401 ____A C:\Users\Sam\Downloads\1337594865082.png
2012-05-21 03:14 - 2012-05-21 03:14 - 00649066 ____A C:\Users\Sam\Downloads\1337595537347.png
2012-05-21 03:13 - 2012-05-21 03:14 - 00859577 ____A C:\Users\Sam\Downloads\1337594315018.png
2012-05-21 03:13 - 2012-05-21 03:13 - 00592067 ____A C:\Users\Sam\Downloads\1337593744050.png
2012-05-21 03:12 - 2012-05-21 03:12 - 00182151 ____A C:\Users\Sam\Downloads\1337593023215.png
2012-05-21 03:04 - 2012-05-21 03:04 - 00042623 ____A C:\Users\Sam\Downloads\1337587992040.png
2012-05-21 01:22 - 2012-05-21 01:22 - 03723078 ____A C:\Users\Sam\Downloads\1337380624779.gif
2012-05-21 01:09 - 2012-05-21 01:09 - 00156512 ____A C:\Users\Sam\Downloads\1337589637888.png
2012-05-21 01:07 - 2012-05-21 01:07 - 00133739 ____A C:\Users\Sam\Downloads\1337591157221.png
2012-05-21 01:02 - 2012-05-21 01:02 - 00080538 ____A C:\Users\Sam\Downloads\1337590393332.png
2012-05-21 00:54 - 2012-05-21 00:54 - 00037828 ____A C:\Users\Sam\Downloads\1337589346705.png
2012-05-21 00:06 - 2012-05-21 00:06 - 00399764 ____A C:\Users\Sam\Downloads\1337587521050.gif
2012-05-20 23:28 - 2012-05-20 23:28 - 00033158 ____A C:\Users\Sam\Downloads\1337585194866.png
2012-05-20 17:00 - 2012-05-20 17:00 - 00136159 ____A C:\Users\Sam\Downloads\1337561824289.png
2012-05-20 16:45 - 2012-05-20 16:45 - 00406656 ____A C:\Users\Sam\Downloads\1337561069256.png
2012-05-20 15:40 - 2012-05-20 15:40 - 01930272 ____A C:\Users\Sam\Downloads\1337557087245.gif
2012-05-20 14:08 - 2012-05-20 14:08 - 00795795 ____A C:\Users\Sam\Downloads\1337550665164.png
2012-05-20 14:08 - 2012-05-20 14:08 - 00205894 ____A C:\Users\Sam\Downloads\1337550288556.png
2012-05-20 14:04 - 2012-05-20 14:04 - 00012928 ____A C:\Users\Sam\Downloads\1337548119955.png
2012-05-20 07:42 - 2012-05-20 07:42 - 00068204 ____A C:\Users\Sam\Downloads\1337527254399.png
2012-05-20 07:40 - 2012-05-20 07:40 - 00264993 ____A C:\Users\Sam\Downloads\1337522559710.png
2012-05-20 07:39 - 2012-05-20 07:39 - 00146978 ____A C:\Users\Sam\Downloads\1337528204817.png
2012-05-20 07:27 - 2012-05-20 07:27 - 00297447 ____A C:\Users\Sam\Downloads\1337526850821.png
2012-05-20 07:12 - 2012-05-20 07:12 - 00002087 ____A C:\Users\Sam\Downloads\W1Xqu.png
2012-05-20 06:19 - 2012-05-20 06:19 - 00226657 ____A C:\Users\Sam\Downloads\1337522121652.png
2012-05-20 06:15 - 2012-05-20 06:15 - 00687850 ____A C:\Users\Sam\Downloads\1337521471982.png
2012-05-20 06:13 - 2012-05-20 06:13 - 00895839 ____A C:\Users\Sam\Downloads\1337521427782.png
2012-05-19 17:28 - 2012-05-19 17:28 - 00049203 ____A C:\Users\Sam\Downloads\lilypad-motioninjoy.zip
2012-05-19 17:28 - 2012-05-19 17:28 - 00049203 ____A C:\Users\Sam\Downloads\lilypad-motioninjoy (1).zip
2012-05-19 17:19 - 2012-05-19 17:19 - 00000000 ____D C:\Users\Sam\Documents\PCSX2
2012-05-19 17:14 - 2012-05-19 17:14 - 06526202 ____A C:\Users\Sam\Downloads\ps2bios.7z
2012-05-19 17:01 - 2012-05-19 17:01 - 00000000 ____D C:\Program Files (x86)\PCSX2 0.9.8
2012-05-19 16:57 - 2012-05-19 16:57 - 12780479 ____A C:\Users\Sam\Downloads\pcsx2-0.9.8-r4600-setup.exe
2012-05-19 09:34 - 2012-05-19 09:30 - 00000000 ____D C:\Users\Sam\Downloads\Mushishi OST Collection [Nipponsei]
2012-05-19 09:29 - 2012-05-19 09:29 - 00016322 ____A C:\Users\Sam\Downloads\[BakaBT.129516v1] mushishi.torrent
2012-05-19 09:25 - 2012-05-19 08:58 - 00000000 ____D C:\Users\Sam\Downloads\Mushishi
2012-05-19 09:05 - 2012-05-19 09:05 - 00000000 ____D C:\Program Files (x86)\Fotosizer
2012-05-19 08:59 - 2012-05-19 08:56 - 00000000 ____D C:\Users\Sam\Downloads\Onani Master Kurosawa
2012-05-19 08:57 - 2012-05-19 08:57 - 00015927 ____A C:\Users\Sam\Downloads\[BakaBT.159884v1] Mushishi.torrent
2012-05-19 08:55 - 2012-05-19 08:55 - 00020034 ____A C:\Users\Sam\Downloads\[BakaBT.150874v1] Onani Master Kurosawa.torrent
2012-05-19 08:49 - 2012-05-19 08:49 - 01741087 ____A C:\Users\Sam\Downloads\fsSetup134s.exe
2012-05-19 06:33 - 2012-05-19 06:33 - 00000000 ____D C:\Users\Sam\Downloads\The Stories of Anton Chekhov - Anton Chekhov [Uber]
2012-05-19 06:04 - 2012-05-19 05:49 - 00000000 ____D C:\Users\Sam\AppData\Roaming\calibre
2012-05-19 05:51 - 2012-05-19 05:50 - 11659387 ____A C:\Users\Sam\Downloads\[Evil_Genius]Berserk_v37c327.rar
2012-05-19 05:49 - 2012-05-19 05:49 - 00007487 ____A C:\Users\Sam\Downloads\[Evil_Genius]Berserk_v37c327.rar.torrent
2012-05-19 05:49 - 2012-05-19 05:49 - 00000000 ____D C:\Users\Sam\Documents\Calibre Library
2012-05-19 05:47 - 2012-05-19 05:47 - 08759248 ____A C:\Users\Sam\Downloads\mangle_2.3.zip
2012-05-19 05:47 - 2012-05-19 05:47 - 00000000 ____D C:\Program Files (x86)\Calibre2
2012-05-19 05:46 - 2012-05-19 05:46 - 47252912 ____A C:\Users\Sam\Downloads\calibre-0.8.52.msi
2012-05-19 05:29 - 2009-07-13 21:13 - 00006472 ____A C:\Windows\System32\PerfStringBackup.INI
2012-05-18 17:02 - 2012-05-18 17:02 - 00000000 ____D C:\Users\Sam\Downloads\Amagami SS Plus 01-13 [720p] [UTW]
2012-05-18 17:00 - 2012-05-18 17:00 - 00018046 ____A C:\Users\Sam\Downloads\[BakaBT.165970v3] Amagami SS Plus 01-13 [720p] [UTW].torrent
2012-05-18 17:00 - 2012-05-18 17:00 - 00018046 ____A C:\Users\Sam\Downloads\[BakaBT.165970v3] Amagami SS Plus 01-13 [720p] [UTW] (1).torrent
2012-05-18 09:45 - 2012-05-18 09:45 - 02478624 ____A C:\Users\Sam\Downloads\1337362318404.png
2012-05-18 09:45 - 2012-05-18 09:45 - 01901778 ____A C:\Users\Sam\Downloads\1337362916437.gif
2012-05-18 09:41 - 2012-05-18 09:41 - 00072435 ____A C:\Users\Sam\Downloads\1337362088191.png
2012-05-18 08:38 - 2012-05-18 08:38 - 00437059 ____A C:\Users\Sam\Downloads\1337287317451.gif
2012-05-18 07:17 - 2012-05-13 13:28 - 00000000 ____D C:\Users\Sam\AppData\Local\ArmA 2 OA
2012-05-18 05:30 - 2012-05-18 05:30 - 00146144 ____A C:\Users\Sam\Downloads\1337345056395.png
2012-05-18 03:48 - 2012-05-18 03:48 - 02673093 ____A C:\Users\Sam\Downloads\133511901889.gif
2012-05-18 03:40 - 2012-05-18 03:40 - 00485062 ____A C:\Users\Sam\Downloads\1337329406200.png
2012-05-17 19:21 - 2012-05-17 19:21 - 00822722 ____A C:\Users\Sam\Downloads\1337310736516.gif
2012-05-17 19:19 - 2012-05-17 19:19 - 00041032 ____A C:\Users\Sam\Downloads\1337311056550.png
2012-05-17 18:47 - 2012-06-13 18:00 - 17807360 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2012-05-17 18:16 - 2012-06-13 18:00 - 10924032 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2012-05-17 18:06 - 2012-06-13 18:00 - 02311680 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2012-05-17 17:59 - 2012-06-13 18:00 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2012-05-17 17:59 - 2012-06-13 18:00 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2012-05-17 17:58 - 2012-06-13 18:00 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2012-05-17 17:58 - 2012-06-13 18:00 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2012-05-17 17:56 - 2012-06-13 18:00 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2012-05-17 17:55 - 2012-06-13 18:00 - 00818688 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2012-05-17 17:55 - 2012-06-13 18:00 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2012-05-17 17:54 - 2012-06-13 18:00 - 02144768 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2012-05-17 17:51 - 2012-06-13 18:00 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2012-05-17 17:51 - 2012-06-13 18:00 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2012-05-17 17:49 - 2012-05-17 17:49 - 02108596 ____A C:\Users\Sam\Downloads\1337305743591.gif
2012-05-17 17:47 - 2012-06-13 18:00 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2012-05-17 17:47 - 2012-05-17 17:47 - 01691517 ____A C:\Users\Sam\Downloads\1337305382210.png
2012-05-17 17:11 - 2012-05-17 17:11 - 00001550 ____A C:\Users\Sam\Documents\0outof10.txt
2012-05-17 15:11 - 2012-06-13 18:00 - 12314624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2012-05-17 14:48 - 2012-06-13 18:00 - 09737728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2012-05-17 14:45 - 2012-06-13 18:00 - 01800192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2012-05-17 14:36 - 2012-06-13 18:00 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2012-05-17 14:35 - 2012-06-13 18:00 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2012-05-17 14:35 - 2012-06-13 18:00 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2012-05-17 14:33 - 2012-06-13 18:00 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2012-05-17 14:31 - 2012-06-13 18:00 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2012-05-17 14:29 - 2012-06-13 18:00 - 00716800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2012-05-17 14:29 - 2012-06-13 18:00 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2012-05-17 14:27 - 2012-06-13 18:00 - 01793024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2012-05-17 14:25 - 2012-06-13 18:00 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2012-05-17 14:24 - 2012-06-13 18:00 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2012-05-17 14:20 - 2012-06-13 18:00 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2012-05-17 12:01 - 2012-05-17 12:01 - 31961789 ____A C:\Users\Sam\Downloads\SCP - Containment Breach v0.2.zip
2012-05-17 08:45 - 2012-05-17 08:45 - 00007758 ____A C:\Users\Sam\Downloads\InstantViewDistancenoPvpv2.2 (2).7z
2012-05-17 08:40 - 2012-05-17 08:40 - 00007758 ____A C:\Users\Sam\Downloads\InstantViewDistancenoPvpv2.2 (1).7z
2012-05-17 07:13 - 2012-05-17 07:13 - 02215383 ____A C:\Users\Sam\Downloads\1337267362204.gif
2012-05-17 07:07 - 2011-11-30 14:57 - 00000000 ____D C:\Users\Sam\Downloads\[ www.Speed.Cd ] - House.S08E08.720p.HDTV.X264-DIMENSION
2012-05-17 04:00 - 2012-05-17 04:00 - 00068395 ____A C:\Users\Sam\Downloads\1337254847679.png
2012-05-17 00:12 - 2012-05-17 00:12 - 00009686 ____A C:\Users\Sam\Downloads\1337242148350.png
2012-05-17 00:01 - 2012-05-17 00:01 - 00411935 ____A C:\Users\Sam\Downloads\1337241653480.png
2012-05-16 23:50 - 2012-05-16 23:50 - 02386965 ____A C:\Users\Sam\Downloads\1337240875426.png
2012-05-16 23:49 - 2012-05-16 23:49 - 00778540 ____A C:\Users\Sam\Downloads\1337240726722.png
2012-05-16 23:48 - 2012-05-16 23:48 - 01086062 ____A C:\Users\Sam\Downloads\1337240881615.png
2012-05-16 19:18 - 2012-05-16 19:18 - 00028831 ____A C:\Users\Sam\Downloads\n4fb2c328300fe_large.png
2012-05-16 19:17 - 2012-05-16 19:17 - 00062207 ____A C:\Users\Sam\Downloads\1337218562768.png
2012-05-16 19:15 - 2012-05-16 19:15 - 00614970 ____A C:\Users\Sam\Downloads\1337219911202.png
2012-05-16 19:08 - 2012-05-16 19:08 - 00351379 ____A C:\Users\Sam\Downloads\1337220674250.png
2012-05-16 19:07 - 2012-05-16 19:07 - 00916529 ____A C:\Users\Sam\Downloads\1337220858586.gif
2012-05-16 18:42 - 2012-05-16 18:42 - 00363297 ____A C:\Users\Sam\Downloads\1337222490039.gif
2012-05-16 17:51 - 2012-05-16 17:51 - 00319162 ____A C:\Users\Sam\Downloads\1337219219651.png
2012-05-16 17:19 - 2012-05-16 17:20 - 00052054 ____A C:\Users\Sam\Downloads\1337208482736.png
2012-05-16 15:07 - 2012-05-16 15:07 - 00313052 ____A C:\Users\Sam\Downloads\1337208908398.png
2012-05-16 10:43 - 2012-04-29 13:31 - 00000000 ____D C:\Program Files (x86)\Facade
2012-05-16 06:55 - 2012-05-16 06:55 - 00272559 ____A C:\Users\Sam\Downloads\1337179702801.gif
2012-05-16 05:06 - 2012-05-16 05:06 - 06677264 ____A (Adobe Systems Inc.) C:\Users\Sam\Downloads\Shockwave_Installer_Slim.exe
2012-05-15 19:11 - 2012-05-15 19:11 - 01532218 ____A C:\Users\Sam\Downloads\1337130548593.gif
2012-05-15 15:35 - 2012-05-15 15:35 - 00390842 ____A C:\Users\Sam\Downloads\@CBA_v0.8.3.175_hotfix2.7z
2012-05-15 15:35 - 2012-05-15 15:35 - 00007758 ____A C:\Users\Sam\Downloads\InstantViewDistancenoPvpv2.2.7z
2012-05-15 13:18 - 2012-05-15 13:18 - 01533627 ____A C:\Users\Sam\Downloads\1337115101614.gif
2012-05-15 13:17 - 2012-05-15 13:17 - 01821921 ____A C:\Users\Sam\Downloads\1337114327846.gif
2012-05-15 05:47 - 2012-05-15 05:47 - 00427224 ____A C:\Users\Sam\Downloads\1337089407967.png
2012-05-15 05:39 - 2012-05-15 05:39 - 00493589 ____A C:\Users\Sam\Downloads\1337088151711.png
2012-05-15 05:37 - 2012-05-15 05:37 - 00080853 ____A C:\Users\Sam\Downloads\1337088661051.png
2012-05-15 05:34 - 2012-05-15 05:34 - 00264767 ____A C:\Users\Sam\Downloads\1337087693630.png
2012-05-14 17:32 - 2012-06-13 14:51 - 03144192 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys
2012-05-14 16:49 - 2012-05-14 16:49 - 00712581 ____A C:\Users\Sam\Downloads\MKVExtractGUI-2.2.2.5.zip
2012-05-14 16:48 - 2012-05-14 16:48 - 07496911 ____A (Moritz Bunkus) C:\Users\Sam\Downloads\mkvtoolnix-unicode-5.5.0-setup.exe
2012-05-14 16:35 - 2012-05-14 16:35 - 01063403 ____A C:\Users\Sam\Downloads\Cat_Head_Imako_02.png
2012-05-14 16:17 - 2012-05-14 16:17 - 00000000 ____D C:\Users\Sam\AppData\Local\Microsoft Games
2012-05-14 15:40 - 2012-05-14 15:40 - 00462465 ____A C:\Users\Sam\Downloads\n4fb14bfdebb3b.png
2012-05-14 07:27 - 2012-05-14 07:27 - 00000661 ____A C:\Users\Sam\Documents\ali.txt
2012-05-14 06:23 - 2012-05-14 06:21 - 32782149 ____A C:\Users\Sam\Downloads\dayz_anim_v0.1 (1).rar
2012-05-14 06:22 - 2012-05-14 06:21 - 30128808 ____A C:\Users\Sam\Downloads\dayz_sfx_v1.1.rar
2012-05-14 06:22 - 2012-05-14 06:21 - 14295634 ____A C:\Users\Sam\Downloads\dayz_weapons_v1.1.1 (1).rar
2012-05-14 06:22 - 2012-05-14 06:21 - 14132258 ____A C:\Users\Sam\Downloads\dayz_equip_v1.2.3 (1).rar
2012-05-14 06:22 - 2012-05-14 06:21 - 10856873 ____A C:\Users\Sam\Downloads\dayz_v1.2.4.rar
2012-05-14 06:22 - 2012-05-14 06:21 - 05611547 ____A C:\Users\Sam\Downloads\dayz_vehicles_v0.1 (1).rar
2012-05-14 06:21 - 2012-05-14 06:21 - 00132984 ____A C:\Users\Sam\Downloads\dayz_code_v1.5.7.rar
2012-05-14 05:13 - 2012-05-14 05:13 - 00000000 ____D C:\Program Files (x86)\Geeks3D
2012-05-14 05:11 - 2012-05-14 05:11 - 03931189 ____A (Geeks3D.com ) C:\Users\Sam\Downloads\FurMark_1.9.2 (1).exe
2012-05-13 19:29 - 2012-05-13 19:29 - 00000000 ____D C:\Users\All Users\ATI
2012-05-13 19:29 - 2011-11-11 07:17 - 00000000 ____D C:\Users\Sam\AppData\Roaming\ATI
2012-05-13 19:29 - 2011-11-11 07:17 - 00000000 ____D C:\Users\Sam\AppData\Local\ATI
2012-05-13 19:28 - 2012-05-13 19:28 - 00000000 ____A C:\Windows\ativpsrm.bin
2012-05-13 19:26 - 2012-05-13 19:26 - 00000000 ____D C:\Users\All Users\AMD
2012-05-13 19:26 - 2012-05-13 19:26 - 00000000 ____D C:\Program Files (x86)\AMD AVT
2012-05-13 19:25 - 2012-05-13 19:25 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2012-05-13 19:25 - 2012-05-13 19:23 - 00000000 ____D C:\Program Files\ATI Technologies
2012-05-13 19:24 - 2012-05-13 19:24 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2012-05-13 19:23 - 2012-05-13 19:23 - 00000000 ____D C:\Program Files\ATI
2012-05-13 19:22 - 2012-05-13 19:22 - 00000000 ____D C:\AMD
2012-05-13 18:14 - 2012-05-13 18:14 - 07902008 ____A (VS Revo Group ) C:\Users\Sam\Downloads\RevoUninProSetup.exe
2012-05-13 18:14 - 2012-05-13 18:14 - 02617176 ____A (VS Revo Group Ltd.) C:\Users\Sam\Downloads\revosetup.exe
2012-05-13 18:14 - 2012-05-13 18:14 - 00000000 ____D C:\Program Files (x86)\VS Revo Group
2012-05-13 18:03 - 2012-05-13 18:01 - 160889384 ____A (Advanced Micro Devices, Inc.) C:\Users\Sam\Downloads\12-4_vista_win7_64_dd_ccc.exe
2012-05-13 18:01 - 2012-05-13 18:01 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2012-05-13 18:01 - 2012-05-13 18:01 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2012-05-13 17:56 - 2012-05-13 17:56 - 05429372 ____A (Phyxion.net ) C:\Users\Sam\Downloads\DriverSweeper_3.2.0.exe
2012-05-13 17:56 - 2012-05-13 17:56 - 00463080 ____A (CNET Download.com) C:\Users\Sam\Downloads\cnet_DriverSweeper_3_2_0_exe.exe
2012-05-13 17:27 - 2012-05-09 11:01 - 00000000 ____D C:\Users\Sam\Documents\ArmA 2
2012-05-13 15:54 - 2012-05-13 15:53 - 15469769 ____A C:\Users\Sam\Documents\Chandeliers.wmv
2012-05-13 15:53 - 2012-05-13 14:23 - 00019928 ____A C:\Users\Sam\Documents\delboi.veg
2012-05-13 15:50 - 2012-05-13 15:49 - 15413769 ____A C:\Users\Sam\Documents\delboi.wmv
2012-05-13 15:49 - 2012-05-13 14:23 - 00019808 ____A C:\Users\Sam\Documents\delboi.veg.bak
2012-05-13 15:10 - 2012-05-13 15:07 - 00063383 ____A C:\Users\Sam\Downloads\pomf2.png
2012-05-13 14:47 - 2012-05-13 14:31 - 00000000 ____D C:\Users\Sam\Downloads\AVS.Video.Converter.v8.1.1.509.Cracked-F4CG
2012-05-13 14:46 - 2012-05-13 14:46 - 00000000 ____D C:\Users\Sam\AppData\Roaming\AVS4YOU
2012-05-13 14:46 - 2012-05-13 14:45 - 00000000 ____D C:\Users\All Users\AVS4YOU
2012-05-13 14:23 - 2012-01-16 06:31 - 00000000 ____D C:\Program Files (x86)\QuickTime
2012-05-13 14:20 - 2012-05-13 14:20 - 39401336 ____A (Apple Inc.) C:\Users\Sam\Downloads\QuickTimeInstaller (1).exe
2012-05-13 14:19 - 2012-05-13 14:14 - 00262560 ____A C:\Users\Sam\Documents\Only Fools and Horses.mp4.sfk
2012-05-13 14:15 - 2012-05-13 13:59 - 14608825 ____A C:\Users\Sam\Documents\Only Fools and Horses.mp4
2012-05-13 14:05 - 2012-05-13 14:04 - 00000000 ____D C:\Users\Sam\AppData\Roaming\tiger-k
2012-05-13 14:04 - 2012-05-13 14:04 - 00000000 ____D C:\Users\Sam\Documents\Leawo
2012-05-13 14:04 - 2012-05-13 14:04 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Leawo
2012-05-13 14:04 - 2012-05-13 14:04 - 00000000 ____D C:\Program Files (x86)\K-Lite Codec Pack
2012-05-13 14:02 - 2012-05-13 13:59 - 27901317 ____A (Leawo Software Co.,Ltd. ) C:\Users\Sam\Downloads\videoconverter_setup.exe
2012-05-13 12:27 - 2012-05-13 12:26 - 32782149 ____A C:\Users\Sam\Downloads\dayz_anim_v0.1.rar
2012-05-13 12:27 - 2012-05-13 12:26 - 29545827 ____A C:\Users\Sam\Downloads\dayz_sfx_v1.0.rar
2012-05-13 12:26 - 2012-05-13 12:26 - 14295634 ____A C:\Users\Sam\Downloads\dayz_weapons_v1.1.1.rar
2012-05-13 12:26 - 2012-05-13 12:26 - 14132258 ____A C:\Users\Sam\Downloads\dayz_equip_v1.2.3.rar
2012-05-13 12:26 - 2012-05-13 12:26 - 10296165 ____A C:\Users\Sam\Downloads\dayz_v1.2.3.rar
2012-05-13 12:26 - 2012-05-13 12:26 - 05611547 ____A C:\Users\Sam\Downloads\dayz_vehicles_v0.1.rar
2012-05-13 12:26 - 2012-05-13 12:26 - 00128751 ____A C:\Users\Sam\Downloads\dayz_code_v1.5.6.rar
2012-05-13 12:20 - 2012-05-13 12:20 - 00000000 ____D C:\Program Files (x86)\SIX Projects
2012-05-13 12:19 - 2012-05-13 12:19 - 09808136 ____A (Oleg N. Scherbakov) C:\Users\Sam\Downloads\Six Updater v2.9.5pre38 setup.exe
2012-05-13 10:23 - 2012-05-13 09:43 - 534642935 ____A C:\Users\Sam\Downloads\[sage]_Lupin_the_Third_-_Mine_Fujiko_to_Iu_Onna_-_05_[720p][10bit][2EC6002D].mkv
2012-05-13 10:18 - 2012-05-13 09:43 - 424336968 ____A C:\Users\Sam\Downloads\[sage]_Lupin_the_Third_-_Mine_Fujiko_to_Iu_Onna_-_06_[720p][10bit][93CECE13].mkv
2012-05-13 09:43 - 2012-05-13 09:43 - 00016702 ____A C:\Users\Sam\Downloads\[sage]_Lupin_the_Third_-_Mine_Fujiko_to_Iu_Onna_-_06_[720p][10bit][93CECE13].mkv.torrent
2012-05-13 09:42 - 2012-05-13 09:42 - 00020902 ____A C:\Users\Sam\Downloads\[sage]_Lupin_the_Third_-_Mine_Fujiko_to_Iu_Onna_-_05_[720p][10bit][2EC6002D].mkv.torrent
2012-05-13 08:12 - 2011-12-18 11:58 - 00000000 ____D C:\Program Files\Java
2012-05-13 08:08 - 2012-05-13 08:08 - 00193309 ____A C:\Users\Sam\Downloads\SpritecraftFree.jar
2012-05-13 08:08 - 2012-05-13 08:08 - 00000775 ____A C:\Users\Sam\Downloads\n4f05167958e69_medium.gif
2012-05-13 05:59 - 2012-05-13 05:59 - 00168260 ____A C:\Users\Sam\Downloads\n4faf4d95ba52e.png
2012-05-13 05:44 - 2012-05-13 05:44 - 00220473 ____A C:\Users\Sam\Downloads\n4faf5282879f1.png
2012-05-13 05:44 - 2012-05-13 05:44 - 00198210 ____A C:\Users\Sam\Downloads\n4faf52f4e62e3.png
2012-05-13 05:44 - 2012-05-13 05:44 - 00185170 ____A C:\Users\Sam\Downloads\n4faf54a799b40.png
2012-05-13 05:44 - 2012-05-13 05:44 - 00174571 ____A C:\Users\Sam\Downloads\n4faf546ca7e8b.png
2012-05-13 05:43 - 2012-05-13 05:43 - 00253496 ____A C:\Users\Sam\Downloads\n4faf525062eb2.png
2012-05-13 05:43 - 2012-05-13 05:43 - 00243261 ____A C:\Users\Sam\Downloads\n4faf51eb79b71.png
2012-05-12 18:35 - 2012-05-12 18:21 - 1306797193 ____A C:\Users\Sam\Downloads\NMRiH_Beta_1.04_Full.zip
2012-05-12 16:45 - 2012-02-11 20:09 - 00011759 ____A C:\Users\Sam\Documents\2worlds.odt
2012-05-12 13:00 - 2012-05-12 13:00 - 332493753 ____A C:\Users\Sam\Downloads\[Hatsuyuki]_Fate_Zero_-_18_[10bit][1280x720][A20F0914].mkv
2012-05-12 13:00 - 2012-05-12 12:42 - 245495167 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 19 [EEC4D378].mkv
2012-05-12 12:59 - 2012-05-12 12:59 - 00013225 ____A C:\Users\Sam\Downloads\[Hatsuyuki]_Fate_Zero_-_18_[10bit][1280x720][A20F0914].mkv.torrent
2012-05-12 12:41 - 2012-05-12 12:41 - 00019140 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 19 [EEC4D378].mkv (1).torrent
2012-05-12 12:40 - 2012-05-12 12:40 - 00019140 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 19 [EEC4D378].mkv.torrent
2012-05-12 12:40 - 2011-11-11 08:01 - 00880496 ____A (BitTorrent, Inc.) C:\Users\Sam\Downloads\utorrent.exe
2012-05-12 11:57 - 2012-05-12 11:57 - 17628887 ____A () C:\Users\Sam\Downloads\SkyrimOnline-Installer.exe
2012-05-11 15:02 - 2012-05-11 15:02 - 00238362 ____A C:\Users\Sam\Downloads\[BakaBT.163344v2] Legend.of.the.Galactic.Heroes.[x264.720p.10bit.AAC].torrent
2012-05-11 12:53 - 2012-05-11 12:53 - 00026723 ____A C:\Users\Sam\Downloads\[HorribleSubs] Space Brothers - 06 [720p].mkv.torrent
2012-05-11 12:53 - 2012-05-11 12:53 - 00026703 ____A C:\Users\Sam\Downloads\[HorribleSubs] Space Brothers - 05 [720p].mkv.torrent
2012-05-10 13:17 - 2012-05-10 13:17 - 00002706 ____A C:\Users\Sam\Downloads\c63Jv.png
2012-05-10 12:50 - 2012-05-10 12:50 - 11821269 ____A C:\Users\Sam\Downloads\serbline.ogg
2012-05-10 10:43 - 2012-05-10 10:43 - 00092076 ____A C:\Users\Sam\Downloads\FUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUU.png
2012-05-10 04:14 - 2012-05-10 04:14 - 75841115 ____A (Advanced Micro Devices, Inc.) C:\Users\Sam\Downloads\10-4_vista64_win7_64_dd_ccc_wdm_enu.exe
2012-05-10 03:35 - 2012-05-10 03:35 - 01058784 ____A (techPowerUp (www.techpowerup.com)) C:\Users\Sam\Downloads\GPU-Z.0.6.2.exe
2012-05-10 03:34 - 2012-05-10 03:34 - 00000000 ____D C:\Users\Sam\Documents\Criterion Games
2012-05-09 23:33 - 2012-05-09 23:33 - 00399309 ____A C:\Users\Sam\Downloads\n4fab38b132c50_large.gif
2012-05-09 23:16 - 2012-05-09 23:16 - 00471480 ____A C:\Users\Sam\Downloads\Gratuitous ViolenceMODIFIED.ESP
2012-05-09 18:00 - 2009-07-13 23:46 - 00000000 ____D C:\Program Files\Windows Journal
2012-05-09 14:37 - 2012-05-09 11:01 - 00000000 ____D C:\Users\Sam\AppData\Local\ArmA 2
2012-05-09 11:24 - 2012-05-09 11:24 - 00256277 ____A C:\Users\Sam\Downloads\FXAAToolHg6.zip
2012-05-09 11:24 - 2012-05-09 11:24 - 00134102 ____A C:\Users\Sam\Downloads\injectSMAA_by_mrhaandi_1.2 (3).7z
2012-05-09 11:20 - 2012-05-09 11:16 - 283658259 ____A C:\Users\Sam\Downloads\ARMA2Update_105.zip
2012-05-09 11:15 - 2012-05-09 11:12 - 222166155 ____A C:\Users\Sam\Downloads\ARMA2_Update_111.zip
2012-05-09 11:09 - 2012-05-09 11:09 - 00000074 ____A C:\Users\Sam\Documents\arma2.swr
2012-05-09 09:36 - 2012-05-09 09:36 - 00000000 ____D C:\Program Files\Bohemia Interactive
2012-05-07 17:55 - 2012-05-07 17:56 - 01691375 ____A C:\Users\Sam\Downloads\minimising a window with kinect.gif
2012-05-07 17:29 - 2012-05-07 17:29 - 00350979 ____A C:\Users\Sam\Downloads\jnes_1_0_2.exe
2012-05-07 17:29 - 2012-05-07 17:29 - 00126541 ____A C:\Users\Sam\Downloads\Strider.7z
2012-05-07 17:29 - 2012-05-07 17:29 - 00000000 ____D C:\Program Files (x86)\Jnes
2012-05-07 16:03 - 2012-04-10 05:48 - 00076888 ____A C:\Windows\SysWOW64\PnkBstrA.exe
2012-05-07 12:09 - 2012-05-07 12:06 - 493972892 ____A C:\Users\Sam\Downloads\DangerousWorld_2.0.exe
2012-05-07 00:34 - 2012-05-07 00:34 - 01764447 ____A C:\Users\Sam\Downloads\Vocaroo_s0lSq5b6Fm9J.mp3
2012-05-07 00:26 - 2012-05-07 00:26 - 01084817 ____A C:\Users\Sam\Downloads\n4fa7758f3187e.png
2012-05-06 15:36 - 2012-05-06 15:32 - 327581343 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_18_[h264-720p][CFAB3675].mkv
 
2012-05-06 15:32 - 2012-05-06 15:32 - 00012968 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_18_[h264-720p][CFAB3675].mkv.torrent
2012-05-06 12:57 - 2012-05-04 19:04 - 326414112 ____A C:\Users\Sam\Downloads\[HorribleSubs] Sakamichi no Apollon - 04 [720p].mkv
2012-05-06 12:48 - 2012-05-06 12:48 - 01324545 ____A C:\Users\Sam\Downloads\Vocaroo_s0SC7yydwxLu.mp3
2012-05-05 14:02 - 2011-12-02 14:15 - 00000000 ____D C:\Users\Sam\AppData\Local\LogMeIn Hamachi
2012-05-05 13:22 - 2012-05-05 13:22 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2012-05-05 13:22 - 2011-11-11 10:03 - 00000000 ____D C:\Users\Sam\Documents\My Games
2012-05-05 13:20 - 2012-05-05 13:20 - 00085879 ____A C:\Users\Sam\Downloads\winexp.zip
2012-05-05 12:21 - 2012-05-05 12:20 - 01408470 ____A C:\Users\Sam\Downloads\minecraft_server.jar
2012-05-05 12:15 - 2011-11-11 10:44 - 00000000 ____D C:\Windows\System32\appmgmt
2012-05-05 11:57 - 2012-05-05 11:57 - 00191264 ____A (Sun Microsystems, Inc.) C:\Windows\System32\javaws.exe
2012-05-05 11:57 - 2012-05-05 11:57 - 00172320 ____A (Sun Microsystems, Inc.) C:\Windows\System32\javaw.exe
2012-05-05 11:57 - 2012-05-05 11:57 - 00172320 ____A (Sun Microsystems, Inc.) C:\Windows\System32\java.exe
2012-05-05 11:34 - 2012-05-05 11:34 - 00476960 ____A (Sun Microsystems, Inc.) C:\Windows\SysWOW64\npdeployJava1.dll
2012-05-05 11:34 - 2012-05-05 11:34 - 00157472 ____A (Sun Microsystems, Inc.) C:\Windows\SysWOW64\javaws.exe
2012-05-05 11:34 - 2012-05-05 11:34 - 00149280 ____A (Sun Microsystems, Inc.) C:\Windows\SysWOW64\javaw.exe
2012-05-05 11:34 - 2012-05-05 11:34 - 00149280 ____A (Sun Microsystems, Inc.) C:\Windows\SysWOW64\java.exe
2012-05-05 11:34 - 2011-11-11 08:22 - 00472864 ____A (Sun Microsystems, Inc.) C:\Windows\SysWOW64\deployJava1.dll
2012-05-05 11:33 - 2012-05-05 11:33 - 00909088 ____A (Sun Microsystems, Inc.) C:\Users\Sam\Downloads\chromeinstall.exe
2012-05-05 11:27 - 2012-05-05 11:27 - 01345637 ____A C:\Users\Sam\Documents\minecraft_server_Full 1.2.3.jar
2012-05-05 11:18 - 2012-05-05 11:18 - 01601908 ____A C:\Users\Sam\Downloads\hackslashmine0.5.3.zip
2012-05-05 11:11 - 2012-05-05 11:11 - 00669179 ____A C:\Users\Sam\Downloads\MVC.zip
2012-05-05 10:58 - 2012-05-05 10:58 - 13974613 ____A C:\Users\Sam\Downloads\Tekkit_Server_2.1.1.zip
2012-05-05 10:58 - 2012-05-05 10:58 - 00052736 ____A (Technic) C:\Users\Sam\Downloads\TechnicLauncher (1).exe
2012-05-05 10:55 - 2012-05-05 10:55 - 00278561 ____A C:\Users\Sam\Downloads\Minecraft.exe
2012-05-04 19:23 - 2012-05-04 19:05 - 326444826 ____A C:\Users\Sam\Downloads\[HorribleSubs] Sakamichi no Apollon - 03 [720p].mkv
2012-05-04 19:22 - 2012-05-04 19:04 - 326668070 ____A C:\Users\Sam\Downloads\[HorribleSubs] Sakamichi no Apollon - 02 [720p].mkv
2012-05-04 19:04 - 2012-05-04 19:04 - 00025309 ____A C:\Users\Sam\Downloads\[HorribleSubs] Sakamichi no Apollon - 02 [720p].mkv.torrent
2012-05-04 19:04 - 2012-05-04 19:04 - 00025289 ____A C:\Users\Sam\Downloads\[HorribleSubs] Sakamichi no Apollon - 03 [720p].mkv.torrent
2012-05-04 19:03 - 2012-05-04 19:03 - 00025289 ____A C:\Users\Sam\Downloads\[HorribleSubs] Sakamichi no Apollon - 04 [720p].mkv.torrent
2012-05-04 19:03 - 2012-05-04 19:03 - 00011574 ____A C:\Users\Sam\Downloads\[Commie-Commie] Sakamichi no Apollon - 04 [C88B2AB6].mkv.torrent
2012-05-04 18:28 - 2012-05-04 18:24 - 341211507 ____A C:\Users\Sam\Downloads\[HorribleSubs] Haiyore! Nyaruko-san - 04 [720p].mkv
2012-05-04 18:23 - 2012-05-04 18:23 - 00026409 ____A C:\Users\Sam\Downloads\[HorribleSubs] Haiyore! Nyaruko-san - 04 [720p].mkv.torrent
2012-05-04 14:42 - 2012-03-14 14:19 - 00000000 ____D C:\Program Files (x86)\uTorrent
2012-05-04 06:11 - 2012-05-04 06:11 - 00554232 ____A C:\Users\Sam\Downloads\SkinEdit Alpha 3 pre 7.zip
2012-05-04 02:52 - 2012-06-13 14:51 - 05505392 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2012-05-04 02:08 - 2012-06-13 14:51 - 03958128 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2012-05-04 02:08 - 2012-06-13 14:51 - 03902320 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2012-05-03 22:50 - 2012-05-03 22:50 - 00013376 ____A C:\Users\Sam\Downloads\XG1lR.png
2012-05-03 22:49 - 2012-05-03 22:49 - 00271472 ____A C:\Users\Sam\Downloads\n4fa35faa191bf.png
2012-05-03 16:40 - 2012-05-03 16:39 - 60869635 ____A C:\Users\Sam\Downloads\Stephen Fry - All about I (What I wish I knew when I was 18).mp3
2012-05-03 16:17 - 2012-05-02 18:06 - 00032336 ____A C:\Users\Sam\Documents\dragon age 3.veg
2012-05-03 14:36 - 2012-03-06 16:54 - 00003931 ____A C:\Users\Sam\Documents\getoutofherestalker.txt
2012-05-03 13:44 - 2012-05-03 03:44 - 00023016 ____A C:\Users\Sam\Documents\email2.odt
2012-05-03 03:43 - 2012-04-30 16:48 - 00002675 ____A C:\Users\Sam\Documents\loli.txt
2012-05-03 02:56 - 2012-05-03 02:56 - 00155029 ____A C:\Users\Sam\Downloads\nnn0va.png
2012-05-02 19:19 - 2012-05-02 18:06 - 00026000 ____A C:\Users\Sam\Documents\dragon age 3.veg.bak
2012-05-02 18:15 - 2012-05-02 18:15 - 00507496 ____A C:\Users\Sam\Documents\PAX Prime 2010_ Dragon Age 2_ Interview with Bioware Lead Writer David Gaiter_(480p).mp4.sfk
2012-05-02 18:15 - 2012-05-02 18:12 - 39932994 ____A C:\Users\Sam\Documents\PAX Prime 2010_ Dragon Age 2_ Interview with Bioware Lead Writer David Gaiter_(480p).mp4
2012-05-02 18:04 - 2012-05-02 18:02 - 00024616 ____A C:\Users\Sam\Documents\It was the best of times, It was the blurst of times._(480p).mp4.sfk
2012-05-02 18:01 - 2012-05-02 18:01 - 02270582 ____A C:\Users\Sam\Documents\It was the best of times, It was the blurst of times._(480p).mp4
2012-05-02 17:56 - 2012-05-02 17:56 - 00000000 ____D C:\Program Files (x86)\Xvid
2012-05-02 17:56 - 2012-05-02 17:55 - 10768856 ____A (Xvid Team) C:\Users\Sam\Downloads\Xvid-1.3.2-20110601.exe
2012-05-02 17:53 - 2012-05-02 17:53 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Sony Creative Software Inc
2012-05-02 17:52 - 2012-05-02 17:52 - 00248596 ____A C:\Users\Sam\Downloads\1447_aviplug.zip
2012-05-02 17:50 - 2012-04-19 17:15 - 00000000 ____D C:\Users\Sam\Downloads\Prodropping
2012-05-02 17:43 - 2012-05-02 17:43 - 00000000 ____D C:\Program Files (x86)\Youtube Downloader HD
2012-05-02 17:40 - 2012-05-02 17:40 - 03722823 ____A (YoutubeDownloaderHD.com ) C:\Users\Sam\Downloads\youtube_downloader_hd_setup.exe
2012-05-02 17:37 - 2012-05-02 17:37 - 01497943 ____A C:\Users\Sam\Downloads\It was the best of times, It was the blurst of times. [SaveYouTube.com].mp4
2012-05-02 17:37 - 2012-05-02 17:37 - 00024832 ____A C:\Users\Sam\Downloads\It was the best of times, It was the blurst of times. [SaveYouTube.com].mp4.sfk
2012-05-02 17:26 - 2012-05-02 17:26 - 02766178 ____A C:\Users\Sam\Downloads\It was the best of times, It was the blurst of times. [SaveYouTube.com].flv
2012-05-01 21:32 - 2012-06-13 14:52 - 00208896 ____A (Microsoft Corporation) C:\Windows\System32\profsvc.dll
2012-04-30 13:22 - 2012-04-30 13:22 - 00205208 ____A C:\Users\Sam\Downloads\n4f9efecd6b0ae.png
2012-04-30 12:57 - 2012-04-30 12:57 - 00483269 ____A C:\Users\Sam\Downloads\n4f9efa8ba4316.png
2012-04-30 03:31 - 2012-04-30 03:31 - 00193523 ____A C:\Users\Sam\Downloads\GodHandGene.png
2012-04-29 13:27 - 2012-04-29 13:27 - 00001474 ____A C:\Users\Sam\Downloads\TechnicLauncher.exe - Shortcut.lnk
2012-04-29 10:10 - 2012-04-29 10:03 - 107930540 ____A C:\Users\Sam\Downloads\[Po-ju] Secret Journey Ch.0-7 (Complete) [ENG].zip
2012-04-28 19:11 - 2012-04-28 19:11 - 00660556 ____A C:\Users\Sam\Downloads\_save228017.sav
2012-04-28 19:06 - 2012-04-28 19:06 - 06340125 ____A (XxxXxXM374LG34R_420_5n1p3rN0ZC0P3Z12XxXxxX(Aka SePhIrOt D4RKM4NT) C:\Users\Sam\Downloads\sanic.exe
2012-04-28 17:40 - 2012-04-28 17:24 - 00000000 ____D C:\Users\Sam\Downloads\-=Arma II-OA CRASH FIX [MAJESTIC ONE]=-
2012-04-28 17:26 - 2012-04-28 17:26 - 00000000 ____D C:\Users\Sam\Downloads\Arma_2_Operation_Arrowhead-FLT
2012-04-28 15:23 - 2012-04-28 15:18 - 211118308 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 17 [8894A250].mkv
2012-04-28 15:17 - 2012-04-28 15:17 - 00016520 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 17 [8894A250].mkv.torrent
2012-04-28 13:15 - 2012-04-28 13:15 - 00400256 ____A C:\Users\Sam\Downloads\n4f9c5a52dcc29.png
2012-04-28 13:04 - 2012-04-28 13:04 - 04587073 ____A C:\Users\Sam\Downloads\**** YOU ?.flv
2012-04-28 12:57 - 2012-04-28 12:57 - 00174080 ____A (KeepVid) C:\Users\Sam\Downloads\KeepVid.exe
2012-04-28 12:56 - 2012-04-27 12:26 - 3014596237 ____A C:\Users\Sam\Downloads\Ghost_in_the_Shell_-_Stand_Alone_Complex_-_Solid_State_Society_(ANOTHER_DIMENSION)_[3xR][Blu-ray.1080p.H264.FLAC]_[C64DDCAD].mkv
2012-04-28 11:49 - 2012-04-28 10:51 - 337687782 ____A C:\Users\Sam\Downloads\[HorribleSubs] Fate Zero S2 - 03 [720p].mkv
2012-04-28 11:35 - 2012-04-28 11:35 - 00052736 ____A (Technic) C:\Users\Sam\Downloads\TechnicLauncher.exe
2012-04-28 10:44 - 2012-04-28 10:44 - 00026141 ____A C:\Users\Sam\Downloads\[HorribleSubs] Fate Zero S2 - 03 [720p].mkv.torrent
2012-04-27 20:35 - 2012-04-27 20:33 - 00000000 ____D C:\Users\Sam\AppData\Local\Procaster
2012-04-27 20:33 - 2012-04-27 20:33 - 00000000 ____D C:\Program Files (x86)\Livestream Procaster
2012-04-27 20:29 - 2012-04-27 20:28 - 22669060 ____A C:\Users\Sam\Downloads\LivestreamProcaster (1).pkg
2012-04-27 20:29 - 2012-04-27 20:28 - 18631248 ____A (Procaster) C:\Users\Sam\Downloads\Procaster.exe
2012-04-27 20:27 - 2012-04-27 20:27 - 22669060 ____A C:\Users\Sam\Downloads\LivestreamProcaster.pkg
2012-04-27 19:50 - 2012-06-13 14:51 - 00204800 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\rdpwd.sys
2012-04-27 12:25 - 2012-04-27 12:25 - 00055752 ____A C:\Users\Sam\Downloads\[BakaBT.161579v0] Ghost_in_the_Shell_-_Stand_Alone_Complex_-_Solid_State_Society_(ANOTHER_DIMENSION)_[3xR][Blu-ray.1080p.H264.FLAC]_[C64DDCAD].mkv.torrent
2012-04-27 08:34 - 2012-04-27 08:22 - 467572510 ____A C:\Users\Sam\Downloads\[gg]_EUREKA_SEVEN_AO_-_03_[EFC5CD18].mkv
2012-04-27 08:21 - 2012-04-27 08:21 - 00018321 ____A C:\Users\Sam\Downloads\[gg]_EUREKA_SEVEN_AO_-_03_[EFC5CD18].mkv.torrent
2012-04-27 07:32 - 2012-04-27 07:18 - 00000000 ____D C:\Users\Sam\Downloads\Ghost in the Shell Music Collection [FLAC]
2012-04-27 07:18 - 2012-04-27 07:18 - 00084574 ____A C:\Users\Sam\Downloads\[BakaBT.153340v4] Ghost in the Shell Music Collection [FLAC].torrent
2012-04-26 14:53 - 2012-04-26 14:53 - 04479327 ____A C:\Users\Sam\Downloads\(C81) [le pomf] (Its Not My Fault Im Unpopular) My Little sister cant be this UNpopular V01.rar
2012-04-26 09:44 - 2012-04-26 09:43 - 11041759 ____A C:\Users\Sam\Downloads\[SaHa]+Kaworu+Watashiya+-+Kodomo+no+Jikan+Ch.82+(English).rar
2012-04-26 09:28 - 2012-04-26 09:28 - 01037824 ____A C:\Users\Sam\Downloads\015.png
2012-04-25 21:34 - 2012-06-13 14:52 - 00149504 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorekmts.dll
2012-04-25 21:34 - 2012-06-13 14:52 - 00076288 ____A (Microsoft Corporation) C:\Windows\System32\rdpwsx.dll
2012-04-25 21:28 - 2012-06-13 14:52 - 00009216 ____A (Microsoft Corporation) C:\Windows\System32\rdrmemptylst.exe
2012-04-25 11:49 - 2012-04-25 11:49 - 01079339 ____A C:\Users\Sam\Downloads\psdouble_036.png
2012-04-24 09:32 - 2012-04-24 09:27 - 104366405 ____A C:\Users\Sam\Downloads\rocket-dayz-20120424-1713.zip
2012-04-24 03:14 - 2012-04-24 03:12 - 73239062 ____A C:\Users\Sam\Downloads\Complete Loli v0.3.rar
2012-04-24 03:13 - 2012-04-24 03:13 - 00037506 ____A C:\Users\Sam\Downloads\Performance_and_Quality_ENB_Final-14646-1-0.zip
2012-04-24 00:24 - 2012-04-22 16:52 - 00000000 ____D C:\Program Files (x86)\AllToAVI
2012-04-23 21:59 - 2012-06-13 14:51 - 01460224 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll
2012-04-23 21:59 - 2012-06-13 14:51 - 00182272 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll
2012-04-23 21:59 - 2012-06-13 14:51 - 00140288 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll
2012-04-23 20:47 - 2012-06-13 14:51 - 01156608 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2012-04-23 20:47 - 2012-06-13 14:51 - 00139264 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2012-04-23 20:47 - 2012-06-13 14:51 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2012-04-23 16:13 - 2012-04-23 16:13 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Actual Tools
2012-04-23 16:12 - 2012-04-23 16:12 - 05007000 ____A (Actual Tools ) C:\Users\Sam\Downloads\ammsetup.exe
2012-04-23 15:58 - 2012-04-23 15:58 - 00000000 ____D C:\Users\Sam\AppData\Roaming\XRay Engine
2012-04-23 14:24 - 2012-04-23 14:09 - 1287560058 ____A C:\Users\Sam\Downloads\MISERY_Stalker_CoP.zip
2012-04-23 14:10 - 2012-04-23 14:10 - 29578116 ____A C:\Users\Sam\Downloads\MISERY_patch_2.zip
2012-04-23 12:04 - 2012-04-23 12:04 - 00229191 ____A C:\Users\Sam\Downloads\Tripcode_Explorer.7z
2012-04-23 11:30 - 2012-04-23 11:11 - 340709288 ____A C:\Users\Sam\Downloads\[HorribleSubs] Haiyore! Nyaruko-san - 03 [720p].mkv
2012-04-23 11:29 - 2012-04-23 11:22 - 511826822 ____A C:\Users\Sam\Downloads\[gg]_EUREKA_SEVEN_AO_-_02_[A08B456C].mkv
2012-04-23 11:22 - 2012-04-23 11:22 - 00019887 ____A C:\Users\Sam\Downloads\[gg]_EUREKA_SEVEN_AO_-_02_[A08B456C].mkv.torrent
2012-04-23 11:21 - 2012-04-23 11:21 - 00012160 ____A C:\Users\Sam\Downloads\[Hadena] Eureka Seven AO - 02 [10bit][720p][E9CFD563].mkv.torrent
2012-04-23 11:11 - 2012-04-23 11:11 - 00026369 ____A C:\Users\Sam\Downloads\[HorribleSubs] Haiyore! Nyaruko-san - 03 [720p].mkv.torrent
2012-04-23 08:13 - 2012-04-23 08:13 - 00000000 ____D C:\Users\Sam\Downloads\GRIEF SYNDROME
2012-04-22 17:02 - 2012-04-22 17:02 - 00000223 ____A C:\Users\Sam\Downloads\stream.pls
2012-04-22 16:52 - 2012-04-22 16:52 - 26453613 ____A C:\Users\Sam\Downloads\AllToAVI_v4_r5394_Setup (1).exe
2012-04-22 16:49 - 2012-04-22 16:48 - 26453613 ____A C:\Users\Sam\Downloads\AllToAVI_v4_r5394_Setup.exe
2012-04-22 16:49 - 2012-04-22 16:40 - 00011232 ____A C:\Users\Sam\Documents\crawlinglogh.veg
2012-04-22 16:41 - 2012-04-22 16:39 - 00000000 ____D C:\Users\Sam\Downloads\Crawling
2012-04-22 16:40 - 2012-04-22 16:40 - 00006864 ____A C:\Users\Sam\Documents\crawlinglogh.veg.bak
2012-04-22 16:40 - 2012-04-19 17:58 - 00084192 ____A C:\Users\Sam\Documents\droppinghard.veg
2012-04-22 15:54 - 2012-04-22 15:53 - 26171084 ____A C:\Users\Sam\Downloads\Dubs_-_Containment_Breach_by_SenganGalo.rar
2012-04-22 05:56 - 2012-04-22 05:56 - 00026743 ____A C:\Users\Sam\Downloads\[HorribleSubs] Space Brothers - 04 [720p].mkv.torrent
2012-04-22 05:56 - 2012-04-22 05:56 - 00026743 ____A C:\Users\Sam\Downloads\[HorribleSubs] Space Brothers - 03 [720p].mkv.torrent
2012-04-21 14:50 - 2012-04-21 14:29 - 336362042 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 16 [7385C970].mkv
2012-04-21 14:34 - 2012-04-21 14:32 - 356145143 ____A C:\Users\Sam\Downloads\[gg]_Jormungand_-_02_[D48EDE54].mkv
2012-04-21 14:34 - 2012-04-21 14:29 - 401180181 ____A C:\Users\Sam\Downloads\[WhyNot] Sakamichi no Apollon - 02 [D7E73505].mkv
2012-04-21 14:32 - 2012-04-21 14:32 - 00014076 ____A C:\Users\Sam\Downloads\[gg]_Jormungand_-_02_[D48EDE54].mkv.torrent
2012-04-21 14:28 - 2012-04-21 14:28 - 00015705 ____A C:\Users\Sam\Downloads\[WhyNot] Sakamichi no Apollon - 02 [D7E73505].mkv.torrent
2012-04-21 14:27 - 2012-04-21 14:27 - 00013240 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 16 [7385C970].mkv.torrent
2012-04-21 09:14 - 2012-04-21 09:14 - 00364557 ____A C:\Users\Sam\Documents\1335022154229.gif
2012-04-21 09:05 - 2012-04-21 09:05 - 00398149 ____A C:\Users\Sam\Documents\1335025798217.png
2012-04-21 08:14 - 2012-04-21 08:07 - 15221631 ____A C:\Users\Sam\Documents\droppinghard.wmv
2012-04-21 08:12 - 2012-04-19 17:58 - 00084192 ____A C:\Users\Sam\Documents\droppinghard.veg.bak
2012-04-20 14:53 - 2012-04-20 14:53 - 00563776 ____A C:\Users\Sam\Downloads\n4f91e14dde25d.gif
2012-04-19 18:38 - 2012-04-19 16:12 - 00000000 ____D C:\Program Files (x86)\TERA
2012-04-19 17:01 - 2012-04-19 17:01 - 01459127 ____A C:\Users\Sam\Downloads\Balamory Theme (Dubstep Remix).mp3
2012-04-19 16:12 - 2012-04-19 16:12 - 00000000 ____D C:\Users\All Users\TERA
2012-04-19 16:10 - 2012-04-19 16:09 - 13822128 ____A (Frogster Online Gaming GmbH ) C:\Users\Sam\Downloads\TERASetup.exe
2012-04-19 14:27 - 2012-04-19 14:19 - 00000000 ____D C:\Program Files (x86)\Planescape - Torment
2012-04-19 14:12 - 2012-04-19 14:10 - 00000000 ____D C:\Users\Sam\Downloads\Planescape Torment Direct Play
2012-04-19 12:28 - 2012-04-19 11:44 - 00000000 ____D C:\Users\Sam\Downloads\Ultimate Collection
2012-04-19 11:55 - 2012-04-19 11:51 - 82769251 ____A C:\Users\Sam\Downloads\De-Censor Elin v1.2.rar
2012-04-19 11:48 - 2012-04-19 11:48 - 00000000 ____D C:\Users\Sam\AppData\Local\TERA-Diagnostic
2012-04-19 11:36 - 2012-04-19 11:35 - 96234888 ____A (En Masse Entertainment) C:\Users\Sam\Downloads\TERA-Setup.exe
2012-04-19 07:06 - 2012-04-19 06:54 - 463533534 ____A C:\Users\Sam\Downloads\[sage]_Lupin_the_Third_-_Mine_Fujiko_to_Iu_Onna_-_03_[720p][10bit][B65CE9E7].mkv
2012-04-19 06:52 - 2012-04-19 06:52 - 00018202 ____A C:\Users\Sam\Downloads\[sage]_Lupin_the_Third_-_Mine_Fujiko_to_Iu_Onna_-_03_[720p][10bit][B65CE9E7].mkv.torrent
2012-04-16 13:20 - 2012-04-16 13:01 - 341181549 ____A C:\Users\Sam\Downloads\[HorribleSubs] Haiyore! Nyaruko-san - 02 [720p].mkv
2012-04-16 13:08 - 2012-04-16 13:02 - 614129696 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_15_[h264-720p][422C8FDD].mkv
2012-04-16 13:02 - 2012-04-14 08:56 - 324733292 ____A C:\Users\Sam\Downloads\[NicoNico]_Fate_Zero_-_15_[720p].mp4
2012-04-16 13:01 - 2012-04-16 13:01 - 00012185 ____A C:\Users\Sam\Downloads\[UTW]_Fate_Zero_-_15_[h264-720p][422C8FDD].mkv.torrent
2012-04-16 13:01 - 2012-04-16 12:41 - 209231272 ____A (FUJITSU LIMITED ) C:\Users\Sam\Downloads\ATLASV14ETrial.exe
2012-04-16 13:00 - 2012-04-16 13:00 - 00026409 ____A C:\Users\Sam\Downloads\[HorribleSubs] Haiyore! Nyaruko-san - 02 [720p].mkv.torrent
2012-04-16 12:42 - 2012-04-16 12:42 - 00217199 ____A C:\Users\Sam\Downloads\AtlTransText.zip
2012-04-16 12:42 - 2012-04-16 12:42 - 00060299 ____A C:\Users\Sam\Downloads\ATLCHECK.zip
2012-04-16 12:42 - 2012-04-16 12:42 - 00005196 ____A C:\Users\Sam\Downloads\AGTHGENERALHELP.htm
2012-04-16 12:37 - 2012-04-16 12:37 - 00266079 ____A C:\Users\Sam\Downloads\Translation Aggregator 0.4.9.r171 (2).rar
2012-04-16 12:34 - 2012-04-16 12:34 - 00266079 ____A C:\Users\Sam\Downloads\Translation Aggregator 0.4.9.r171 (1).rar
2012-04-16 12:31 - 2012-04-16 12:31 - 00000000 ____D C:\Translation Aggregator 0.4.9.r171
2012-04-16 12:30 - 2012-04-16 12:30 - 00266079 ____A C:\Users\Sam\Downloads\Translation Aggregator 0.4.9.r171.rar
2012-04-16 12:25 - 2012-04-16 12:25 - 00000000 ____D C:\agth
2012-04-16 12:24 - 2012-04-16 12:24 - 00029360 ____A C:\Users\Sam\Downloads\agth.rar
2012-04-16 12:06 - 2012-04-16 11:58 - 00000000 ____D C:\VH_translated
2012-04-16 11:49 - 2012-04-16 11:49 - 05678166 ____A C:\Users\Sam\Downloads\RPGMaker Trans v1.97.7z
2012-04-16 11:49 - 2012-04-16 11:45 - 00000000 ____D C:\VH
2012-04-16 11:47 - 2012-04-16 11:47 - 02206782 ____A C:\Users\Sam\Downloads\VH Eng V0.6.rar
2012-04-16 11:43 - 2012-04-16 11:42 - 38136354 ____A C:\Users\Sam\Downloads\VH???01120319.7z
2012-04-16 09:36 - 2012-04-16 09:36 - 00063936 ____A C:\Users\Sam\Downloads\skeleton_dancing_hg_blk.gif
2012-04-16 09:35 - 2012-04-16 09:36 - 00006786 ____A C:\Users\Sam\Downloads\mummyl.gif
2012-04-16 09:35 - 2012-04-16 09:35 - 00026667 ____A C:\Users\Sam\Downloads\anighost.gif
2012-04-16 09:35 - 2012-04-16 09:35 - 00012696 ____A C:\Users\Sam\Downloads\boo.gif
2012-04-16 09:35 - 2012-04-16 09:35 - 00005454 ____A C:\Users\Sam\Downloads\skeleton.gif
2012-04-16 09:22 - 2012-04-16 09:22 - 14031936 ____A C:\Users\Sam\Downloads\GhostDubsters Mastered.mp3
2012-04-16 08:00 - 2012-04-16 07:58 - 32716585 ____A C:\Users\Sam\Downloads\SCP.zip
2012-04-16 07:55 - 2012-04-16 07:55 - 03070333 ____A C:\Users\Sam\Downloads\SCP-087-B.zip
2012-04-16 06:20 - 2012-04-16 06:20 - 20384302 ____A C:\Users\Sam\Downloads\SCP - Containment Breach v0.1.zip
2012-04-15 06:02 - 2012-04-15 06:01 - 12316713 ____A () C:\Users\Sam\Downloads\2000rtp (1).exe
2012-04-14 10:24 - 2012-04-14 10:24 - 00004417 ____A C:\Users\Sam\Downloads\wurmclient (5).jnlp
2012-04-14 08:54 - 2012-04-14 08:54 - 00012757 ____A C:\Users\Sam\Downloads\[NicoNico]_Fate_Zero_-_15_[720p].mp4.torrent
2012-04-14 07:17 - 2012-04-14 07:17 - 00004417 ____A C:\Users\Sam\Downloads\wurmclient (4).jnlp
2012-04-14 06:31 - 2012-04-14 06:31 - 00378872 ____A C:\Users\Sam\Downloads\1MPEK.gif
2012-04-13 15:37 - 2012-04-13 15:37 - 00004417 ____A C:\Users\Sam\Downloads\wurmclient (3).jnlp
2012-04-13 15:29 - 2012-04-13 15:29 - 00004417 ____A C:\Users\Sam\Downloads\wurmclient (2).jnlp
2012-04-13 08:57 - 2012-04-13 08:25 - 00000000 ____D C:\Users\Sam\Documents\WURM
2012-04-13 08:31 - 2012-04-13 08:13 - 486731659 ____A C:\Users\Sam\Downloads\[gg]_EUREKA_SEVEN_AO_-_01_[946DCCD6].mkv
2012-04-13 08:24 - 2012-04-13 08:24 - 00004417 ____A C:\Users\Sam\Downloads\wurmclient (1).jnlp
2012-04-13 08:20 - 2012-04-13 08:20 - 00004417 ____A C:\Users\Sam\Downloads\wurmclient.jnlp
2012-04-13 08:13 - 2012-04-13 08:13 - 00019061 ____A C:\Users\Sam\Downloads\[gg]_EUREKA_SEVEN_AO_-_01_[946DCCD6].mkv.torrent
2012-04-13 08:13 - 2012-04-13 08:13 - 00011054 ____A C:\Users\Sam\Downloads\[NemDiggers] Eureka Seven AO - 01 [720p] [H264 AAC MP4].mp4.torrent
2012-04-13 06:09 - 2012-04-13 05:41 - 269618062 ____A C:\Users\Sam\Downloads\[AKFDP]_Kiss_x_sis_00_(DVD)_(H264_AC3)_[909C9D5C].mkv
2012-04-13 05:41 - 2012-04-13 05:41 - 00010709 ____A C:\Users\Sam\Downloads\[AKFDP]_Kiss_x_sis_00_(DVD)_(H264_AC3)_[909C9D5C].mkv.torrent
2012-04-13 05:38 - 2012-04-13 05:38 - 00036999 ____A C:\Users\Sam\Downloads\[BakaBT.155434v1] [Coalgirls]_Kiss_x_Sis_(1280x720_Blu-Ray_FLAC).torrent
2012-04-13 05:38 - 2012-04-13 05:38 - 00036999 ____A C:\Users\Sam\Downloads\[BakaBT.155434v1] [Coalgirls]_Kiss_x_Sis_(1280x720_Blu-Ray_FLAC) (1).torrent
2012-04-12 16:48 - 2012-04-12 16:37 - 2726526577 ____A C:\Users\Sam\Downloads\3D Max 9.rar
2012-04-12 12:44 - 2012-04-12 11:29 - 00000000 ____D C:\Users\Sam\Downloads\Royal Space Force: The Wings of Honneamise [1028p]
2012-04-12 11:31 - 2012-04-12 11:25 - 293445126 ____A C:\Users\Sam\Downloads\[Commie] Tasogare Otome × Amnesia - 01 [1A5B2C81].mkv
2012-04-12 10:46 - 2012-04-12 10:36 - 354490879 ____A C:\Users\Sam\Downloads\[sage]_Lupin_III_-_Mine_Fujiko_to_Iu_Onna_-_02_[720p][10bit][CE3F3607].mkv
2012-04-12 10:32 - 2012-04-12 10:32 - 00014036 ____A C:\Users\Sam\Downloads\[sage]_Lupin_III_-_Mine_Fujiko_to_Iu_Onna_-_02_[720p][10bit][CE3F3607].mkv.torrent
2012-04-12 08:53 - 2012-04-12 08:38 - 326174703 ____A C:\Users\Sam\Downloads\[HorribleSubs] Sakamichi no Apollon - 01 [720p].mkv
2012-04-12 08:37 - 2012-04-12 08:37 - 00025269 ____A C:\Users\Sam\Downloads\[HorribleSubs] Sakamichi no Apollon - 01 [720p].mkv.torrent
2012-04-12 06:25 - 2012-04-12 06:25 - 00134215 ____A C:\Users\Sam\Downloads\n4f861b3983db6.png
2012-04-11 09:59 - 2012-04-11 09:59 - 00011612 ____A C:\Users\Sam\Downloads\[Commie] Tasogare Otome × Amnesia - 01 [1A5B2C81].mkv.torrent
2012-04-11 06:43 - 2012-04-11 06:32 - 453052323 ____A C:\Users\Sam\Downloads\[gg]_Jormungand_-_01_[382A285D].mkv
2012-04-10 20:04 - 2012-04-10 20:04 - 00017776 ____A C:\Users\Sam\Downloads\[gg]_Jormungand_-_01_[382A285D].mkv.torrent
2012-04-10 19:09 - 2012-01-04 05:12 - 00000000 ____D C:\Program Files (x86)\Hi-Rez Studios
2012-04-10 18:52 - 2012-04-10 18:52 - 00560635 ____A C:\Users\Sam\Downloads\m8HkO.png
2012-04-10 07:44 - 2012-04-10 07:44 - 00000000 ____D C:\Users\Sam\AppData\Local\PunkBuster
2012-04-09 13:53 - 2012-04-09 13:50 - 338957586 ____A C:\Users\Sam\Downloads\[HorribleSubs] Mysterious Girlfriend X - 01 [720p].mkv
2012-04-09 13:49 - 2012-04-09 13:49 - 00026252 ____A C:\Users\Sam\Downloads\[HorribleSubs] Mysterious Girlfriend X - 01 [720p].mkv.torrent
2012-04-09 13:00 - 2012-04-09 12:48 - 341696121 ____A C:\Users\Sam\Downloads\[HorribleSubs] Haiyore! Nyaruko-san - 01 [720p].mkv
2012-04-09 12:47 - 2012-04-09 12:47 - 00026449 ____A C:\Users\Sam\Downloads\[HorribleSubs] Haiyore! Nyaruko-san - 01 [720p].mkv.torrent
2012-04-09 10:12 - 2012-04-09 10:12 - 01291677 ____A ( ) C:\Users\Sam\Downloads\setup_t3sneakyupgrade_1.1.0.exe
2012-04-08 13:57 - 2012-04-08 13:57 - 00026723 ____A C:\Users\Sam\Downloads\[HorribleSubs] Space Brothers - 02 [720p].mkv.torrent
2012-04-07 17:02 - 2012-04-07 17:02 - 00060431 ____A C:\Users\Sam\Downloads\n4f80dd637ab4e.png
2012-04-07 14:43 - 2012-04-07 13:48 - 427667138 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 14 [1AA40CC4].mkv
2012-04-07 13:59 - 2012-04-07 13:57 - 394403364 ____A C:\Users\Sam\Downloads\[Commie] Accel World - 01 [30E0CD08].mkv
2012-04-07 13:57 - 2012-04-07 13:57 - 00016718 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 14 [1AA40CC4].mkv (1).torrent
2012-04-07 13:51 - 2012-01-24 18:38 - 00000000 ____D C:\Program Files (x86)\XChat-WDK
2012-04-07 13:48 - 2012-04-07 13:48 - 00060630 ____A C:\Users\Sam\Downloads\[Kagura] Royal Space Force: The Wings of Honneamise [BDRip 1788x1028 x264 Hi10P TrueHD].torrent
2012-04-07 13:48 - 2012-04-07 13:48 - 00015456 ____A C:\Users\Sam\Downloads\[Commie] Accel World - 01 [30E0CD08].mkv.torrent
2012-04-07 13:48 - 2012-04-07 13:47 - 00014172 ____A C:\Users\Sam\Downloads\[Warui-chan] Upotte!! - 01v2 [720p] [79B1B28C].mkv.torrent
2012-04-07 13:47 - 2012-04-07 13:47 - 00010764 ____A C:\Users\Sam\Downloads\[NemDiggers] Upotte!! - 01 [720p] [H264 AAC MP4].mp4.torrent
2012-04-07 13:46 - 2012-04-07 13:46 - 00016718 ____A C:\Users\Sam\Downloads\[Commie] Fate / Zero - 14 [1AA40CC4].mkv.torrent
2012-04-07 04:18 - 2012-06-13 14:51 - 03213824 ____A (Microsoft Corporation) C:\Windows\System32\msi.dll
2012-04-07 03:34 - 2012-06-13 14:51 - 02342400 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2012-04-05 21:22 - 2012-04-05 21:22 - 11174400 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\Drivers\atikmdag.sys
2012-04-05 18:23 - 2012-04-05 18:23 - 00245896 ____A C:\Windows\SysWOW64\atiapfxx.blb
2012-04-05 18:23 - 2012-04-05 18:23 - 00245896 ____A C:\Windows\System32\atiapfxx.blb
2012-04-05 18:22 - 2012-04-05 18:22 - 00159744 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\atiapfxx.exe
2012-04-05 18:21 - 2012-04-05 18:21 - 00909312 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll
2012-04-05 18:20 - 2012-04-05 18:20 - 01067520 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\aticfx64.dll
2012-04-05 18:16 - 2012-04-05 18:16 - 00503808 ____A (AMD) C:\Windows\System32\atieclxx.exe
2012-04-05 18:16 - 2012-04-05 18:16 - 00442368 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\ATIDEMGX.dll
2012-04-05 18:16 - 2012-04-05 18:16 - 00236544 ____A (AMD) C:\Windows\System32\atiesrxx.exe
2012-04-05 18:14 - 2012-04-05 18:14 - 00120320 ____A (AMD) C:\Windows\System32\atitmm64.dll
2012-04-05 18:14 - 2012-04-05 18:14 - 00059392 ____A (ATI Technologies, Inc.) C:\Windows\System32\atiedu64.dll
2012-04-05 18:14 - 2012-04-05 18:14 - 00043520 ____A (ATI Technologies, Inc.) C:\Windows\SysWOW64\ati2edxx.dll
2012-04-05 18:14 - 2012-04-05 18:14 - 00021504 ____A (AMD) C:\Windows\System32\atimuixx.dll
2012-04-05 18:13 - 2012-04-05 18:13 - 06800896 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll
2012-04-05 18:10 - 2012-04-05 18:10 - 26181632 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\atio6axx.dll
2012-04-05 18:00 - 2012-04-05 18:00 - 00064000 ____A (AMD) C:\Windows\System32\coinst.dll
2012-04-05 17:54 - 2012-04-05 17:54 - 07479296 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atidxx64.dll
2012-04-05 17:50 - 2012-04-05 17:50 - 19753984 ____A (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll
2012-04-05 17:35 - 2012-04-05 17:35 - 01120768 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atiumd6v.dll
2012-04-05 17:34 - 2012-04-05 17:34 - 06203392 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll
2012-04-05 17:34 - 2012-04-05 17:34 - 04731904 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atiumd6a.dll
2012-04-05 17:34 - 2012-04-05 17:34 - 01831424 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdmv.dll
2012-04-05 17:30 - 2012-04-05 17:30 - 00051200 ____A (Advanced Micro Devices Inc.) C:\Windows\System32\aticalrt64.dll
2012-04-05 17:30 - 2012-04-05 17:30 - 00046080 ____A (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll
2012-04-05 17:30 - 2012-04-05 17:30 - 00044544 ____A (Advanced Micro Devices Inc.) C:\Windows\System32\aticalcl64.dll
2012-04-05 17:30 - 2012-04-05 17:30 - 00044032 ____A (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll
2012-04-05 17:29 - 2012-04-05 17:29 - 16090624 ____A (Advanced Micro Devices Inc.) C:\Windows\System32\aticaldd64.dll
2012-04-05 17:29 - 2012-04-05 17:29 - 02631008 ____A C:\Windows\System32\atiumd6a.cap
2012-04-05 17:29 - 2012-04-05 17:29 - 00204952 ____A C:\Windows\SysWOW64\ativvsvl.dat
2012-04-05 17:29 - 2012-04-05 17:29 - 00204952 ____A C:\Windows\System32\ativvsvl.dat
2012-04-05 17:29 - 2012-04-05 17:29 - 00157144 ____A C:\Windows\SysWOW64\ativvsva.dat
2012-04-05 17:29 - 2012-04-05 17:29 - 00157144 ____A C:\Windows\System32\ativvsva.dat
2012-04-05 17:25 - 2012-04-05 17:25 - 13764096 ____A (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll
2012-04-05 17:23 - 2012-04-05 17:23 - 07431680 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atiumd64.dll
2012-04-05 17:22 - 2012-04-05 17:22 - 04795904 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll
2012-04-05 17:21 - 2012-04-05 17:21 - 02664704 ____A C:\Windows\SysWOW64\atiumdva.cap
2012-04-05 17:11 - 2012-04-05 17:11 - 00514560 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\atiadlxx.dll
2012-04-05 17:11 - 2012-04-05 17:11 - 00360448 ____A (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll
2012-04-05 17:11 - 2012-04-05 17:11 - 00041984 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atig6txx.dll
2012-04-05 17:11 - 2012-04-05 17:11 - 00017408 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atig6pxx.dll
2012-04-05 17:11 - 2012-04-05 17:11 - 00014848 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll
2012-04-05 17:11 - 2012-04-05 17:11 - 00014848 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atiglpxx.dll
2012-04-05 17:10 - 2012-04-05 17:10 - 00343040 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\Drivers\atikmpag.sys
2012-04-05 17:10 - 2012-04-05 17:10 - 00033280 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll
2012-04-05 17:09 - 2012-04-05 17:09 - 00054784 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atiuxp64.dll
2012-04-05 17:09 - 2012-04-05 17:09 - 00053248 ____A (Advanced Micro Devices, Inc.) C:\Windows\System32\Drivers\ati2erec.dll
2012-04-05 17:09 - 2012-04-05 17:09 - 00044544 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atiu9p64.dll
2012-04-05 17:09 - 2012-04-05 17:09 - 00041984 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll
2012-04-05 17:09 - 2012-04-05 17:09 - 00032256 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll
2012-04-05 17:06 - 2012-04-05 17:06 - 00054784 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\atimpc64.dll
2012-04-05 17:06 - 2012-04-05 17:06 - 00054784 ____A (Advanced Micro Devices, Inc. ) C:\Windows\System32\amdpcom64.dll
2012-04-05 17:06 - 2012-04-05 17:06 - 00053760 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
2012-04-05 17:06 - 2012-04-05 17:06 - 00053760 ____A (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
2012-04-05 13:34 - 2012-04-05 13:34 - 00187392 ____A C:\Windows\System32\clinfo.exe
2012-04-05 13:34 - 2012-04-05 13:34 - 00074752 ____A (Advanced Micro Devices Inc.) C:\Windows\System32\OpenVideo64.dll
2012-04-05 13:34 - 2012-04-05 13:34 - 00064512 ____A (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll
2012-04-05 13:33 - 2012-04-05 13:33 - 16457216 ____A (Advanced Micro Devices Inc.) C:\Windows\System32\amdocl64.dll
2012-04-05 13:33 - 2012-04-05 13:33 - 00063488 ____A (Advanced Micro Devices Inc.) C:\Windows\System32\OVDecode64.dll
2012-04-05 13:33 - 2012-04-05 13:33 - 00056320 ____A (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll
2012-04-05 13:32 - 2012-04-05 13:32 - 13007872 ____A (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll
2012-04-05 13:32 - 2012-04-05 13:32 - 00054784 ____A (Khronos Group) C:\Windows\System32\OpenCL.dll
2012-04-05 13:32 - 2012-04-05 13:32 - 00050176 ____A (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2012-04-05 10:08 - 2012-04-05 09:48 - 605554163 ____A C:\Users\Sam\Downloads\[sage]_Lupin_III_-_Mine_Fujiko_to_Iu_Onna_-_01_[720p][10bit][53E61CD8].mkv
2012-04-05 08:28 - 2012-04-05 08:28 - 00000000 ____D C:\Program Files (x86)\AutoHotkey
2012-04-05 08:28 - 2009-07-13 23:46 - 00000000 ____D C:\Windows\ShellNew
2012-04-05 08:17 - 2012-04-05 08:17 - 02047357 ____A C:\Users\Sam\Downloads\AutoHotkey104805_Install.exe
2012-04-05 08:08 - 2012-04-05 08:08 - 02695067 ____A C:\Users\Sam\Downloads\AutoHotkey110703_Install.exe
2012-04-05 07:38 - 2012-04-05 07:38 - 00012057 ____A C:\Users\Sam\Downloads\[sage]_Lupin_III_-_Mine_Fujiko_to_Iu_Onna_-_01_[720p][10bit][53E61CD8].mkv.torrent
2012-04-05 06:18 - 2012-04-05 06:15 - 352522302 ____A C:\Users\Sam\Downloads\[WhyNot] Medaka Box - 01 [720F54E9].mkv
2012-04-05 06:14 - 2012-04-05 06:14 - 00013835 ____A C:\Users\Sam\Downloads\[WhyNot] Medaka Box - 01 [720F54E9].mkv.torrent
2012-04-04 18:28 - 2012-04-04 18:28 - 00017227 ____A C:\Users\Sam\Downloads\[BakaBT.140470v0] Kodomo No Jikan.torrent
2012-04-04 18:28 - 2012-04-04 18:27 - 00019820 ____A C:\Users\Sam\Downloads\[BakaBT.150728v4] [BarkySeal]Kodomo no Jikan - Ni Gakki (1).torrent
2012-04-04 16:10 - 2012-04-04 16:10 - 00486826 ____A C:\Users\Sam\Downloads\n4f7ce232f0a03.gif
2012-04-04 15:49 - 2012-04-04 15:42 - 00000000 ____D C:\Users\Sam\Downloads\Kore wa Zombie Desu ka [720p]
2012-04-04 15:40 - 2012-04-04 15:40 - 00022371 ____A C:\Users\Sam\Downloads\Kore_wa_Zombie_Desu_ka_2011_Doki1280x720_h264_AAC.torrent
2012-04-04 06:56 - 2012-06-21 12:54 - 00024904 ____A (Malwarebytes Corporation) C:\Windows\System32\Drivers\mbam.sys
2012-04-03 16:40 - 2012-04-03 16:40 - 00001717 ____A C:\Users\Sam\Downloads\saints row the third no autoaim mod.zip
2012-04-03 08:06 - 2012-04-03 07:59 - 572412648 ____A () C:\Users\Sam\Downloads\Crysis_2_DX11_Pack.exe
2012-04-03 07:53 - 2012-04-03 07:06 - 00000000 ____D C:\Users\Sam\Downloads\Crysis_2-FLT
2012-04-03 02:36 - 2012-04-03 02:33 - 233541575 ____A C:\Users\Sam\Downloads\SMAA-Enhanced-Subpixel-Morphological-Antialiasing.mp4
2012-04-02 13:54 - 2012-04-02 13:52 - 21607248 ____A (Igor Pavlov) C:\Users\Sam\Downloads\tor-browser-2.2.35-8_en-US.exe
2012-04-02 04:11 - 2012-04-02 04:11 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Toribash
2012-04-02 04:09 - 2012-04-02 04:08 - 16503720 ____A (Nabi Studios Pte Ltd ) C:\Users\Sam\Downloads\Toribash-3.99-Setup.exe
2012-04-02 04:05 - 2012-04-02 04:03 - 387584954 ____A C:\Users\Sam\Downloads\[Triad]_The_Legend_of_Koizumi_-_01.mkv
2012-04-02 04:00 - 2012-04-02 04:00 - 00015148 ____A C:\Users\Sam\Downloads\[BakaBT.158259v0] mudazumo.torrent
2012-04-01 16:58 - 2012-04-01 16:52 - 352175109 ____A C:\Users\Sam\Downloads\[HorribleSubs] Another - 11 [720p].mkv
2012-04-01 16:58 - 2012-04-01 16:52 - 348781447 ____A C:\Users\Sam\Downloads\[HorribleSubs] Another - 12 [720p].mkv
2012-04-01 16:40 - 2012-04-01 16:28 - 352406378 ____A C:\Users\Sam\Downloads\[HorribleSubs] Another - 10 [720p].mkv
2012-04-01 16:40 - 2012-04-01 16:28 - 352097142 ____A C:\Users\Sam\Downloads\[HorribleSubs] Another - 09 [720p].mkv
2012-04-01 16:11 - 2012-04-01 15:57 - 352493219 ____A C:\Users\Sam\Downloads\[HorribleSubs] Another - 08 [720p].mkv
2012-04-01 15:57 - 2012-04-01 15:36 - 352376981 ____A C:\Users\Sam\Downloads\[HorribleSubs] Another - 06 [720p].mkv
2012-04-01 15:56 - 2012-04-01 15:36 - 352810968 ____A C:\Users\Sam\Downloads\[HorribleSubs] Another - 07 [720p].mkv
2012-04-01 05:54 - 2012-04-01 05:54 - 00105545 ____A C:\Users\Sam\Downloads\n4f18fdbf80ae0.png
2012-04-01 04:46 - 2012-04-01 04:46 - 00026743 ____A C:\Users\Sam\Downloads\[HorribleSubs] Space Brothers - 01 [720p].mkv.torrent
2012-03-31 08:20 - 2012-03-31 08:20 - 00134102 ____A C:\Users\Sam\Downloads\injectSMAA_by_mrhaandi_1.2 (2).7z
2012-03-31 08:15 - 2012-03-31 08:15 - 00612246 ____A C:\Users\Sam\Downloads\GameplayCrush.SR3.game_launcherV1.3.2.zip
2012-03-30 03:09 - 2012-05-08 22:32 - 01895280 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys
2012-03-30 00:11 - 2012-03-28 12:16 - 00000000 ____D C:\Users\Sam\Downloads\Proxifier v3.0 Standard Edition
2012-03-29 17:34 - 2012-03-29 17:34 - 02222791 ____A C:\Users\Sam\Downloads\4e6fad580d8a09dd2485c0647defe341.gif
2012-03-29 09:27 - 2012-03-28 14:33 - 00000000 ____D C:\Silent Hill 2- Electric Boogaloo
2012-03-29 07:41 - 2012-03-29 07:41 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Mael
2012-03-29 07:35 - 2012-03-29 07:35 - 00872029 ____A C:\Users\Sam\Downloads\HxDSetupEN.zip
2012-03-29 07:35 - 2012-03-29 07:35 - 00000000 ____D C:\Program Files (x86)\HxD
2012-03-29 04:42 - 2012-03-29 04:42 - 00945108 ____A C:\Users\Sam\Downloads\01b1f7ea2ca8b4b69c4e09dd22f87e88.png
2012-03-28 16:44 - 2012-03-28 16:33 - 293311865 ____A C:\Users\Sam\Downloads\[yug] Tentacle and Witches - 01.mkv
2012-03-28 16:37 - 2012-03-28 16:35 - 00000000 ____D C:\Users\Sam\Downloads\Dark Love - 01 Uncensored Eng Subs
2012-03-28 16:33 - 2012-03-28 16:30 - 324433528 ____A C:\Users\Sam\Downloads\[yug] Tentacle and Witches - 02.mkv
2012-03-28 16:29 - 2012-03-28 16:29 - 00012800 ____A C:\Users\Sam\Downloads\[yug] Tentacle and Witches - 02.mkv.torrent
2012-03-28 16:29 - 2012-03-28 16:29 - 00011620 ____A C:\Users\Sam\Downloads\[yug] Tentacle and Witches - 01.mkv.torrent
2012-03-28 16:29 - 2012-03-28 16:29 - 00011452 ____A C:\Users\Sam\Downloads\Dark Love - 01 Uncensored Eng Subs.torrent
2012-03-28 16:29 - 2012-03-28 16:28 - 339096046 ____A C:\Users\Sam\Downloads\[SubDESU-H]_Imouto_Paradise!_-_01_[96CBE1ED].mkv
2012-03-28 16:27 - 2012-03-28 16:27 - 00013309 ____A C:\Users\Sam\Downloads\[SubDESU-H]_Imouto_Paradise!_-_01_[96CBE1ED].mkv.torrent
2012-03-28 15:45 - 2012-03-28 15:45 - 01661648 ____A C:\Users\Sam\Downloads\sh2patch.exe
2012-03-28 12:25 - 2012-03-28 12:25 - 17185771 ____A C:\Users\Sam\Downloads\i2pinstall_0.8.13.exe
2012-03-28 12:25 - 2012-03-28 12:24 - 10845039 ____A C:\Users\Sam\Downloads\Anomos_0.9.5_Setup.exe
2012-03-28 12:19 - 2012-03-28 12:19 - 00000000 ____D C:\Users\Sam\AppData\Roaming\Proxifier
2012-03-28 12:18 - 2012-03-28 12:18 - 03691656 ____A (Initex ) C:\Users\Sam\Downloads\ProxifierSetup.exe
2012-03-28 12:18 - 2012-03-28 12:18 - 00000000 ____D C:\Program Files (x86)\Proxifier
2012-03-28 11:21 - 2012-03-28 10:35 - 00000000 ____D C:\Users\Sam\Downloads\Silent Hill 3 PC
2012-03-28 10:51 - 2012-03-28 10:34 - 00000000 ____D C:\Users\Sam\Downloads\Silent.Hill.2.Directors.Cut.PC.Game(djDEVASTATE™)
2012-03-27 11:23 - 2012-03-27 09:53 - 1480818528 ____A C:\Users\Sam\Downloads\Corpse Run Festival Cut.avi
2012-03-27 09:51 - 2012-03-27 09:51 - 00014571 ____A C:\Users\Sam\Downloads\[kat.ph]corpse.run.torrent
2012-03-26 13:56 - 2012-05-05 11:12 - 01058316 ____A ( ) C:\Users\Sam\Documents\Minecraft Version Changer.exe


ZeroAccess:
C:\Windows\Installer\{c07c8d13-da90-dacd-4643-a2c48c3764db}
C:\Windows\Installer\{c07c8d13-da90-dacd-4643-a2c48c3764db}\@
C:\Windows\Installer\{c07c8d13-da90-dacd-4643-a2c48c3764db}\L
C:\Windows\Installer\{c07c8d13-da90-dacd-4643-a2c48c3764db}\U
C:\Windows\Installer\{c07c8d13-da90-dacd-4643-a2c48c3764db}\U\800000cb.@

ZeroAccess:
C:\Users\Sam\AppData\Local\{c07c8d13-da90-dacd-4643-a2c48c3764db}
C:\Users\Sam\AppData\Local\{c07c8d13-da90-dacd-4643-a2c48c3764db}\@
C:\Users\Sam\AppData\Local\{c07c8d13-da90-dacd-4643-a2c48c3764db}\L
C:\Users\Sam\AppData\Local\{c07c8d13-da90-dacd-4643-a2c48c3764db}\U

========================= Known DLLs (Whitelisted) ============


========================= Bamital & volsnap Check ============

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe 014A9CB92514E27C0107614DF764BC06 ZeroAccess <==== ATTENTION!.
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

==================== EXE ASSOCIATION =====================

HKLM\...\.exe: exefile => OK
HKLM\...\exefile\DefaultIcon: %1 => OK
HKLM\...\exefile\open\command: "%1" %* => OK

========================= Memory info ======================

Percentage of memory in use: 13%
Total physical RAM: 6142.49 MB
Available physical RAM: 5300.35 MB
Total Pagefile: 6140.64 MB
Available Pagefile: 5305.28 MB
Total Virtual: 8192 MB
Available Virtual: 8191.9 MB

======================= Partitions =========================

2 Drive c: () (Fixed) (Total:1397.16 GB) (Free:418.68 GB) NTFS
3 Drive d: (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[System with boot components (obtained from reading drive)]
5 Drive g: () (Removable) (Total:14.89 GB) (Free:14.8 GB) NTFS
6 Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS
7 Drive y: (2.0TB Storage) (Fixed) (Total:1863.01 GB) (Free:281.36 GB) NTFS

Disk ### Status Size Free Dyn Gpt
-------- ------------- ------- ------- --- ---
Disk 0 Online 1863 GB 0 B
Disk 1 Online 1397 GB 0 B
Disk 2 Online 14 GB 0 B

Partitions of Disk 0:
===============

Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 1863 GB 1024 KB

======================================================================================================

Disk: 0
Partition 1
Type : 07
Hidden: No
Active: No

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 1 Y 2.0TB Stora NTFS Partition 1863 GB Healthy

======================================================================================================

Partitions of Disk 1:
===============

Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 100 MB 1024 KB
Partition 2 Primary 1397 GB 101 MB

======================================================================================================

Disk: 1
Partition 1
Type : 07
Hidden: No
Active: Yes

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 2 D System Rese NTFS Partition 100 MB Healthy

======================================================================================================

Disk: 1
Partition 2
Type : 07
Hidden: No
Active: No

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 3 C NTFS Partition 1397 GB Healthy

======================================================================================================

Partitions of Disk 2:
===============

Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 14 GB 4096 KB

======================================================================================================

Disk: 2
Partition 1
Type : 07
Hidden: No
Active: Yes

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 4 G NTFS Removable 14 GB Healthy

======================================================================================================

==========================================================

Last Boot: 2012-06-17 23:53

======================= End Of Log ==========================
 
In Vista or Windows 7: Boot to System Recovery Options and run FRST.
In Windows XP: Please boot to UBCD and run FRST.
Type the following in the edit box after "Search:".

services.exe

Click Search button and post the log (Search.txt) it makes to your reply.
 
Farbar Recovery Scan Tool Version: 21-06-2012 02
Ran by SYSTEM at 2012-06-23 08:25:48
Running from G:\

================== Search: "services.exe" ===================

C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe
[2009-07-13 15:19] - [2009-07-13 17:39] - 0328704 ____A (Microsoft Corporation) 24ACB7E5BE595468E3B9AA488B9B4FCB

C:\Windows\System32\services.exe
[2009-07-13 15:19] - [2009-07-13 17:39] - 0328704 ____A (Microsoft Corporation) 014A9CB92514E27C0107614DF764BC06

====== End Of Search ======
 
Download attached fixlist.txt file and save it to the very same USB flash drive you've been using. Plug the drive back in.

NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

On Vista or Windows 7: Now please enter System Recovery Options.
On Windows XP: Now please boot into the UBCD.
Run FRST64 and press the Fix button just once and wait.
The tool will make a log on the flashdrive (Fixlog.txt) please post it to your reply.

Next....

Restart normally and....

Please download ComboFix from Here, Here or Here to your Desktop.

**Note: In the event you already have Combofix, this is a new version that I need you to download. It is important that it is saved directly to your desktop**
  • Never rename Combofix unless instructed.
  • Close any open browsers.
  • Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.
  • Very Important! Temporarily disable your anti-virus, script blocking and any anti-malware real-time protection before performing a scan. They can interfere with ComboFix or remove some of its embedded files which may cause "unpredictable results".
  • Click on this link to see a list of programs that should be disabled. The list is not all inclusive. If yours is not listed and you don't know how to disable it, please ask.
  • Close any open browsers.
  • WARNING: Combofix will disconnect your machine from the Internet as soon as it starts
  • Please do not attempt to re-connect your machine back to the Internet until Combofix has completely finished.
  • If there is no internet connection after running Combofix, then restart your computer to restore back your connection.
  • Double click on combofix.exe & follow the prompts.

  • NOTE1. If Combofix asks you to install Recovery Console, please allow it.
    NOTE 2. If Combofix asks you to update the program, always do so.
  • When finished, it will produce a report for you.
  • Please post the "C:\ComboFix.txt"
**Note 1: Do not mouseclick combofix's window while it's running. That may cause it to stall
**Note 2 for AVG and CA Internet Security (Total Defense Internet Security) users: ComboFix will not run until AVG/CA Internet Security is uninstalled as a protective measure against the anti-virus. This is because AVG/CA Internet Security "falsely" detects ComboFix (or its embedded files) as a threat and may remove them resulting in the tool not working correctly which in turn can cause "unpredictable results". Since AVG/CA Internet Security cannot be effectively disabled before running ComboFix, the author recommends you to uninstall AVG/CA Internet Security first.
Use AppRemover to uninstall it: https://www.techspot.com/downloads/5514-appremover.html
We can reinstall it when we're done with CF.
**Note 3: If you receive an error "Illegal operation attempted on a registery key that has been marked for deletion", restart computer to fix the issue.
**Note 4: Some infections may take some significant time to be cured. As long as your computer clock is running Combofix is still working. Be patient.


Make sure, you re-enable your security programs, when you're done with Combofix.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

NOTE.
If, for some reason, Combofix refuses to run, try one of the following:

1. Run Combofix from Safe Mode.

2. Delete Combofix file, download fresh one, but rename combofix.exe to your_name.exe BEFORE saving it to your desktop.
Do NOT run it yet.
Please download and run the below tool named Rkill (courtesy of BleepingComputer.com) which may help allow other programs to run.
There are 4 different versions. If one of them won't run then download and try to run the other one.
Vista and Win7 users need to right click Rkill and choose Run as Administrator
You only need to get one of these to run, not all of them. You may get warnings from your antivirus about this tool, ignore them or shutdown your antivirus.

* Rkill.com
* Rkill.scr
* Rkill.exe
  • Double-click on the Rkill icon to run the tool.
  • If using Vista or Windows 7 right-click on it and choose Run As Administrator.
  • A black DOS box will briefly flash and then disappear. This is normal and indicates the tool ran successfully.
  • If not, delete the file, then download and use the one provided in Link 2.
  • If it does not work, repeat the process and attempt to use one of the remaining links until the tool runs.
  • Do not reboot until instructed.
  • If the tool does not run from any of the links provided, please let me know.
Once you've gotten one of them to run, immediately run your_name.exe by double clicking on it.

If normal mode still doesn't work, run BOTH tools from safe mode.

In case #2, please post BOTH logs, rKill and Combofix.

DO NOT make any other changes to your computer (like installing programs, using other cleaning tools, etc.), until it's officially declared clean!!!
 

Attachments

  • fixlist.txt
    371 bytes · Views: 1
Fix result of Farbar Recovery Tool (FRST written by Farbar) Version: 21-06-2012 02
Ran by SYSTEM at 2012-06-23 18:02:25 Run:1
Running from G:\

==============================================

HKEY_LOCAL_MACHINE\System\ControlSet001\Control\Session Manager\SubSystems\\Windows Value was restored successfully .
C:\Windows\System32\consrv.dll not found.
C:\Windows\Installer\{c07c8d13-da90-dacd-4643-a2c48c3764db} moved successfully.
C:\Users\Sam\AppData\Local\{c07c8d13-da90-dacd-4643-a2c48c3764db} moved successfully.
C:\Windows\System32\services.exe moved successfully.
C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe copied successfully to C:\Windows\System32\services.exe

==== End of Fixlog ====
 
ComboFix 12-06-23.05 - Sam 23/06/2012 18:11:29.1.4 - x64
Microsoft Windows 7 Ultimate 6.1.7600.0.932.81.1033.18.6142.4573 [GMT 1:00]
Running from: c:\users\Sam\Desktop\ComboFix.exe
AV: Microsoft Security Essentials *Disabled/Updated* {9765EA51-0D3C-7DFB-6091-10E4E1F341F6}
SP: Microsoft Security Essentials *Disabled/Updated* {2C040BB5-2B06-7275-5A21-2B969A740B4B}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\Install.exe
c:\users\Sam\AppData\Roaming\FFSJ
c:\users\Sam\AppData\Roaming\FFSJ\FFSJ.cfg
c:\windows\apppatch\AppLoc.exe
c:\windows\AppPatch\Custom\{deb7008b-681e-4a4a-8aae-cc833e8216ce}.sdb
.
.
((((((((((((((((((((((((( Files Created from 2012-05-23 to 2012-06-23 )))))))))))))))))))))))))))))))
.
.
2012-06-23 22:15 . 2012-06-02 22:1957880----a-w-c:\windows\system32\wuauclt.exe
2012-06-23 22:15 . 2012-06-02 22:1944056----a-w-c:\windows\system32\wups2.dll
2012-06-23 22:15 . 2012-06-02 22:192428952----a-w-c:\windows\system32\wuaueng.dll
2012-06-23 22:15 . 2012-06-02 22:152622464----a-w-c:\windows\system32\wucltux.dll
2012-06-23 22:15 . 2012-06-02 14:19186752----a-w-c:\windows\system32\wuwebv.dll
2012-06-23 22:15 . 2012-06-02 14:1536864----a-w-c:\windows\system32\wuapp.exe
2012-06-23 19:12 . 2012-05-30 20:049013136----a-w-c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{76BB56E6-23EA-4E11-BDF9-9F5A7FD34FCE}\mpengine.dll
2012-06-23 17:20 . 2012-06-23 17:20--------d-----w-c:\users\Default\AppData\Local\temp
2012-06-23 01:08 . 2012-06-23 01:10--------d-----w-C:\FRST
2012-06-22 15:50 . 2012-06-22 15:50328704----a-w-c:\windows\system32\services.exe.71AA2B530F37956C
2012-06-22 15:46 . 2012-06-22 15:46328704----a-w-c:\windows\system32\services.exe.389A80A780DC0FE3
2012-06-22 15:43 . 2012-06-22 15:43328704----a-w-c:\windows\system32\services.exe.F99EF225C3D55B0D
2012-06-22 15:41 . 2012-06-22 15:41927800------w-c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{7295C28F-C275-47FB-B991-4E62367CC463}\gapaengine.dll
2012-06-22 15:41 . 2012-05-30 20:049013136------w-c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2012-06-22 02:00 . 2012-06-22 02:00--------d-----w-c:\program files (x86)\Microsoft Security Client
2012-06-21 20:56 . 2012-06-21 20:56--------d-----w-c:\windows\Temp6393BB15-1E27-C26B-7004-B24A9920C884-Signatures
2012-06-21 20:54 . 2012-06-21 20:54--------d-----w-c:\users\Sam\AppData\Roaming\Malwarebytes
2012-06-21 20:54 . 2012-06-21 20:54--------d-----w-c:\programdata\Malwarebytes
2012-06-21 20:54 . 2012-06-21 20:54--------d-----w-c:\program files (x86)\Malwarebytes' Anti-Malware
2012-06-21 20:54 . 2012-04-04 14:5624904----a-w-c:\windows\system32\drivers\mbam.sys
2012-06-19 10:45 . 2012-06-19 10:45--------d-----w-C:\found.000
2012-06-19 01:50 . 2003-02-02 18:06153088----a-w-c:\windows\SysWow64\UNRAR3.dll
2012-06-19 01:50 . 2002-03-05 23:0075264----a-w-c:\windows\SysWow64\unacev2.dll
2012-06-19 01:50 . 2012-06-19 02:06--------d-----w-c:\program files (x86)\Trojan Remover
2012-06-19 01:50 . 2012-06-19 01:50--------d-----w-c:\users\Sam\AppData\Roaming\Simply Super Software
2012-06-19 01:50 . 2012-06-19 01:50--------d-----w-c:\programdata\Simply Super Software
2012-06-18 18:52 . 2012-06-22 02:01--------d-----w-c:\program files\Microsoft Security Client
2012-06-18 11:29 . 2012-06-18 21:01--------d-----w-C:\a7d3c6e75a23b56f19fcd6dcd35c3d9b
2012-06-16 12:07 . 2012-06-18 21:01--------d-----w-c:\program files\Web Assistant
2012-06-14 21:07 . 2012-06-18 22:48--------d-----w-c:\users\Sam\AppData\Roaming\Rainmeter
2012-06-14 21:07 . 2012-06-14 21:11--------d-----w-c:\program files\Rainmeter
2012-06-14 14:29 . 2012-06-14 14:33--------d-----w-C:\FlvGrabber
2012-06-14 14:25 . 2012-06-14 14:25--------d-sh--w-c:\windows\system32\%APPDATA%
2012-06-14 14:20 . 2012-06-14 14:20--------d-----w-c:\program files (x86)\WinPcap
2012-06-13 22:52 . 2012-04-26 05:3476288----a-w-c:\windows\system32\rdpwsx.dll
2012-06-13 22:52 . 2012-04-26 05:34149504----a-w-c:\windows\system32\rdpcorekmts.dll
2012-06-13 22:52 . 2012-04-26 05:289216----a-w-c:\windows\system32\rdrmemptylst.exe
2012-06-13 22:52 . 2012-05-02 05:32208896----a-w-c:\windows\system32\profsvc.dll
2012-06-09 20:30 . 2012-06-09 20:30--------d-----w-c:\users\Sam\AppData\Local\ElevatedDiagnostics
2012-06-07 22:58 . 2012-06-07 22:58--------d-----w-c:\users\Sam\AppData\Local\CAPCOM
2012-06-07 22:48 . 2012-06-07 22:48--------d-----w-c:\program files (x86)\CAPCOM
2012-06-06 14:04 . 2012-06-06 14:10--------d-----w-C:\mugen
2012-06-06 13:52 . 2012-06-06 13:52--------d-----w-c:\programdata\VirtuallTek
2012-06-06 13:52 . 2012-06-06 13:52--------d-----w-c:\program files (x86)\VirtuallTek
2012-06-05 23:06 . 2012-06-05 23:0640960----a-r-c:\users\Sam\AppData\Roaming\Microsoft\Installer\{9559F7CA-5E34-4237-A2D9-D856464AD727}\NewShortcut1_9559F7CA5E344237A2D9D856464AD727.exe
2012-06-05 23:06 . 2012-06-05 23:0640960----a-r-c:\users\Sam\AppData\Roaming\Microsoft\Installer\{9559F7CA-5E34-4237-A2D9-D856464AD727}\ARPPRODUCTICON.exe
2012-06-05 23:06 . 2012-06-05 23:08--------d-----w-c:\program files (x86)\Project64 1.6
2012-06-03 00:46 . 2012-06-03 00:46--------d--h--w-c:\program files (x86)\Common Files\EAInstaller
2012-06-03 00:31 . 2012-06-03 16:51--------d-----w-c:\program files (x86)\Battlefield 3
2012-06-01 13:55 . 2012-06-11 14:24--------d-----w-c:\program files (x86)\Black_Box
2012-05-31 17:13 . 2012-05-31 17:31--------d-----w-c:\program files (x86)\OMGWTFOTL
2012-05-25 22:33 . 2012-05-25 22:33--------d-----w-c:\program files (x86)\Combined Community Codec Pack
2012-05-25 22:28 . 2012-06-18 22:48--------d-----w-c:\users\Sam\AppData\Roaming\vlc
2012-05-25 22:26 . 2012-05-25 22:26--------d-----w-c:\program files (x86)\VideoLAN
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-06-08 23:03 . 2012-04-10 15:44281288----a-w-c:\windows\SysWow64\PnkBstrB.xtr
2012-06-08 23:03 . 2012-04-10 13:49281288----a-w-c:\windows\SysWow64\PnkBstrB.exe
2012-06-08 22:36 . 2012-04-10 13:49281288----a-w-c:\windows\SysWow64\PnkBstrB.ex0
2012-05-08 00:03 . 2012-04-10 13:4876888----a-w-c:\windows\SysWow64\PnkBstrA.exe
2012-05-05 19:34 . 2012-05-05 19:34476960----a-w-c:\windows\SysWow64\npdeployJava1.dll
2012-05-05 19:34 . 2011-11-11 16:22472864----a-w-c:\windows\SysWow64\deployJava1.dll
2012-04-18 02:03 . 2012-05-01 02:028917360------w-c:\programdata\Microsoft\Windows Defender\Definition Updates\{4C808E29-1E6D-4CEB-B7ED-09787002A54A}\mpengine.dll
2012-04-06 05:22 . 2012-04-06 05:2211174400----a-w-c:\windows\system32\drivers\atikmdag.sys
2012-04-06 02:22 . 2012-04-06 02:22159744----a-w-c:\windows\system32\atiapfxx.exe
2012-04-06 02:21 . 2012-04-06 02:21909312----a-w-c:\windows\SysWow64\aticfx32.dll
2012-04-06 02:20 . 2012-04-06 02:201067520----a-w-c:\windows\system32\aticfx64.dll
2012-04-06 02:16 . 2012-04-06 02:16442368----a-w-c:\windows\system32\ATIDEMGX.dll
2012-04-06 02:16 . 2012-04-06 02:16503808----a-w-c:\windows\system32\atieclxx.exe
2012-04-06 02:16 . 2012-04-06 02:16236544----a-w-c:\windows\system32\atiesrxx.exe
2012-04-06 02:14 . 2012-04-06 02:14120320----a-w-c:\windows\system32\atitmm64.dll
2012-04-06 02:14 . 2012-04-06 02:1421504----a-w-c:\windows\system32\atimuixx.dll
2012-04-06 02:14 . 2012-04-06 02:1459392----a-w-c:\windows\system32\atiedu64.dll
2012-04-06 02:14 . 2012-04-06 02:1443520----a-w-c:\windows\SysWow64\ati2edxx.dll
2012-04-06 02:13 . 2012-04-06 02:136800896----a-w-c:\windows\SysWow64\atidxx32.dll
2012-04-06 02:10 . 2012-04-06 02:1026181632----a-w-c:\windows\system32\atio6axx.dll
2012-04-06 02:00 . 2012-04-06 02:0064000----a-w-c:\windows\system32\coinst.dll
2012-04-06 01:54 . 2012-04-06 01:547479296----a-w-c:\windows\system32\atidxx64.dll
2012-04-06 01:50 . 2012-04-06 01:5019753984----a-w-c:\windows\SysWow64\atioglxx.dll
2012-04-06 01:35 . 2012-04-06 01:351120768----a-w-c:\windows\system32\atiumd6v.dll
2012-04-06 01:34 . 2012-04-06 01:341831424----a-w-c:\windows\SysWow64\atiumdmv.dll
2012-04-06 01:34 . 2012-04-06 01:344731904----a-w-c:\windows\system32\atiumd6a.dll
2012-04-06 01:34 . 2012-04-06 01:346203392----a-w-c:\windows\SysWow64\atiumdag.dll
2012-04-06 01:30 . 2012-04-06 01:3051200----a-w-c:\windows\system32\aticalrt64.dll
2012-04-06 01:30 . 2012-04-06 01:3046080----a-w-c:\windows\SysWow64\aticalrt.dll
2012-04-06 01:30 . 2012-04-06 01:3044544----a-w-c:\windows\system32\aticalcl64.dll
2012-04-06 01:30 . 2012-04-06 01:3044032----a-w-c:\windows\SysWow64\aticalcl.dll
2012-04-06 01:29 . 2012-04-06 01:2916090624----a-w-c:\windows\system32\aticaldd64.dll
2012-04-06 01:25 . 2012-04-06 01:2513764096----a-w-c:\windows\SysWow64\aticaldd.dll
2012-04-06 01:23 . 2012-04-06 01:237431680----a-w-c:\windows\system32\atiumd64.dll
2012-04-06 01:22 . 2012-04-06 01:224795904----a-w-c:\windows\SysWow64\atiumdva.dll
2012-04-06 01:11 . 2012-04-06 01:11514560----a-w-c:\windows\system32\atiadlxx.dll
2012-04-06 01:11 . 2012-04-06 01:11360448----a-w-c:\windows\SysWow64\atiadlxy.dll
2012-04-06 01:11 . 2012-04-06 01:1117408----a-w-c:\windows\system32\atig6pxx.dll
2012-04-06 01:11 . 2012-04-06 01:1114848----a-w-c:\windows\SysWow64\atiglpxx.dll
2012-04-06 01:11 . 2012-04-06 01:1114848----a-w-c:\windows\system32\atiglpxx.dll
2012-04-06 01:11 . 2012-04-06 01:1141984----a-w-c:\windows\system32\atig6txx.dll
2012-04-06 01:10 . 2012-04-06 01:1033280----a-w-c:\windows\SysWow64\atigktxx.dll
2012-04-06 01:10 . 2012-04-06 01:10343040----a-w-c:\windows\system32\drivers\atikmpag.sys
2012-04-06 01:09 . 2012-04-06 01:0954784----a-w-c:\windows\system32\atiuxp64.dll
2012-04-06 01:09 . 2012-04-06 01:0941984----a-w-c:\windows\SysWow64\atiuxpag.dll
2012-04-06 01:09 . 2012-04-06 01:0944544----a-w-c:\windows\system32\atiu9p64.dll
2012-04-06 01:09 . 2012-04-06 01:0932256----a-w-c:\windows\SysWow64\atiu9pag.dll
2012-04-06 01:09 . 2012-04-06 01:0953248----a-w-c:\windows\system32\drivers\ati2erec.dll
2012-04-06 01:06 . 2012-04-06 01:0654784----a-w-c:\windows\system32\atimpc64.dll
2012-04-06 01:06 . 2012-04-06 01:0654784----a-w-c:\windows\system32\amdpcom64.dll
2012-04-06 01:06 . 2012-04-06 01:0653760----a-w-c:\windows\SysWow64\atimpc32.dll
2012-04-06 01:06 . 2012-04-06 01:0653760----a-w-c:\windows\SysWow64\amdpcom32.dll
2012-04-05 21:34 . 2012-04-05 21:34187392----a-w-c:\windows\system32\clinfo.exe
2012-04-05 21:34 . 2012-04-05 21:3474752----a-w-c:\windows\system32\OpenVideo64.dll
2012-04-05 21:34 . 2012-04-05 21:3464512----a-w-c:\windows\SysWow64\OpenVideo.dll
2012-04-05 21:33 . 2012-04-05 21:3363488----a-w-c:\windows\system32\OVDecode64.dll
2012-04-05 21:33 . 2012-04-05 21:3356320----a-w-c:\windows\SysWow64\OVDecode.dll
2012-04-05 21:33 . 2012-04-05 21:3316457216----a-w-c:\windows\system32\amdocl64.dll
2012-04-05 21:32 . 2012-04-05 21:3213007872----a-w-c:\windows\SysWow64\amdocl.dll
2012-04-05 21:32 . 2012-04-05 21:3254784----a-w-c:\windows\system32\OpenCL.dll
2012-04-05 21:32 . 2012-04-05 21:3250176----a-w-c:\windows\SysWow64\OpenCL.dll
2012-03-30 11:09 . 2012-05-09 06:321895280----a-w-c:\windows\system32\drivers\tcpip.sys
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Steam"="c:\program files (x86)\Steam\steam.exe" [2011-11-13 1242448]
"PeerBlock"="c:\program files\PeerBlock\peerblock.exe" [2010-11-06 2646128]
"DisplayFusion"="c:\program files (x86)\DisplayFusion\DisplayFusion.exe" [2012-01-12 2789280]
"Xvid"="c:\program files (x86)\Xvid\CheckUpdate.exe" [2011-01-17 8192]
"uTorrent"="c:\users\Sam\Downloads\uTorrent.exe" [2012-05-12 880496]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2011-11-10 3514176]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"AMD AVT"="start AMD Accelerated Video Transcoding device initialization" [X]
"AdobeCS5.5ServiceManager"="c:\program files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" [2011-01-12 1523360]
"SwitchBoard"="c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2011-10-24 421888]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2012-04-06 641664]
"TrojanScanner"="c:\program files (x86)\Trojan Remover\Trjscan.exe" [2012-06-19 1240848]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Rainmeter.lnk - c:\program files\Rainmeter\Rainmeter.exe [2012-1-8 107720]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux2"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security PackagesREG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
R0 sptd;sptd; [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R3 dc3d;MS Hardware Device Detection Driver;c:\windows\system32\DRIVERS\dc3d.sys [x]
R3 EagleX64;EagleX64;c:\windows\system32\drivers\EagleX64.sys [x]
R3 GPU-Z;GPU-Z;c:\users\Sam\AppData\Local\Temp\GPU-Z.sys [x]
R3 MotioninJoyXFilter;MotioninJoy Virtual Xinput device Filter Driver;c:\windows\system32\DRIVERS\MijXfilt.sys [x]
R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [x]
R3 NisSrv;Microsoft Network Inspection;c:\program files\Microsoft Security Client\NisSrv.exe [2012-03-26 291696]
R3 Point64;Microsoft IntelliPoint Filter Driver;c:\windows\system32\DRIVERS\point64.sys [x]
R3 SwitchBoard;SwitchBoard;c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe [2012-02-28 2343816]
S2 HiPatchService;Hi-Rez Studios Authenticate and Update Service;c:\program files (x86)\Hi-Rez Studios\HiPatchService.exe [2012-04-05 8704]
S2 NPF;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [x]
S2 RadeonPro Support Service;RadeonPro Support Service;c:\program files (x86)\RadeonPro\RadeonProSupport.exe [2011-02-10 12800]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [x]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys [x]
S3 netr28x;Ralink 802.11n Extensible Wireless Driver;c:\windows\system32\DRIVERS\netr28x.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]
.
.
--- Other Services/Drivers In Memory ---
.
*Deregistered* - pbfilter
.
Contents of the 'Scheduled Tasks' folder
.
2012-06-18 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3332832593-3043654-485038372-1000Core.job
- c:\users\Sam\AppData\Local\Google\Update\GoogleUpdate.exe [2011-11-11 15:21]
.
2012-06-23 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3332832593-3043654-485038372-1000UA.job
- c:\users\Sam\AppData\Local\Google\Update\GoogleUpdate.exe [2011-11-11 15:21]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Eraser"="c:\progra~1\Eraser\Eraser.exe" [2011-11-05 980368]
"IntelliPoint"="c:\program files\Microsoft IntelliPoint\ipoint.exe" [2011-08-01 2417032]
"EvtMgr6"="c:\program files\Logitech\SetPointP\SetPoint.exe" [2011-10-07 1744152]
"AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2011-03-15 499608]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2012-03-26 1271168]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x0
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
uInternet Settings,ProxyOverride = *.local
LSP: %SystemRoot%\system32\PrxerDrv.dll
.
- - - - ORPHANS REMOVED - - - -
.
AddRemove-BattlEye for OA - c:\program files (x86)\steam\steamapps\common\arma 2 operation arrowheadExpansion\BattlEye\UnInstallBE.exe
AddRemove-{1AA94747-3BF6-4237-9E1A-7B3067738FE1} - c:\program files (x86)\InstallShield Installation Information\{1AA94747-3BF6-4237-9E1A-7B3067738FE1}\setup.exe
AddRemove-{5A67D2EA-FB70-4033-A6F3-606AD85B2015}_is1 - c:\program files (x86)\Phyxion.net\Driver Sweeper\unins000.exe
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11e_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11e_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Other Running Processes ------------------------
.
c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\windows\SysWOW64\PnkBstrA.exe
c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
.
**************************************************************************
.
Completion time: 2012-06-23 23:50:16 - machine was rebooted
ComboFix-quarantined-files.txt 2012-06-23 22:50
.
Pre-Run: 449,384,747,008 bytes free
Post-Run: 453,907,841,024 bytes free
.
- - End Of File - - B27619A119546A2FBE1C2C6E49A39536
 
Looks good.

How is computer doing?

Download Malwarebytes' Anti-Malware: http://www.malwarebytes.org/products/malwarebytes_free to your desktop.

* Double-click mbam-setup.exe and follow the prompts to install the program.
* At the end, be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
* If an update is found, it will download and install the latest version.
* Once the program has loaded, select Perform quick scan, then click Scan.
* When the scan is complete, click OK, then Show Results to view the results.
* Be sure that everything is checked, and click Remove Selected.
* When completed, a log will open in Notepad.
* Post the log back here.

Be sure to restart the computer.

The log can also be found here:
C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\log-date.txt
Or at C:\Program Files\Malwarebytes' Anti-Malware\Logs\log-date.txt

=====================================================

Download OTL to your Desktop.

  • Double click on the icon to run it. Make sure all other windows are closed and to let it run uninterrupted.
  • Click the Scan All Users checkbox.
  • Under the Custom Scan box paste this in:


netsvcs
drivers32
%SYSTEMDRIVE%\*.*
%systemroot%\Fonts\*.com
%systemroot%\Fonts\*.dll
%systemroot%\Fonts\*.ini
%systemroot%\Fonts\*.ini2
%systemroot%\Fonts\*.exe
%systemroot%\system32\spool\prtprocs\w32x86\*.*
%systemroot%\REPAIR\*.bak1
%systemroot%\REPAIR\*.ini
%systemroot%\system32\*.jpg
%systemroot%\*.jpg
%systemroot%\*.png
%systemroot%\*.scr
%systemroot%\*._sy
%APPDATA%\Adobe\Update\*.*
%ALLUSERSPROFILE%\Favorites\*.*
%APPDATA%\Microsoft\*.*
%PROGRAMFILES%\*.*
%APPDATA%\Update\*.*
%systemroot%\*. /mp /s
CREATERESTOREPOINT
%systemroot%\System32\config\*.sav
%PROGRAMFILES%\bak. /s
%systemroot%\system32\bak. /s
%ALLUSERSPROFILE%\Start Menu\*.lnk /x
%systemroot%\system32\config\systemprofile\*.dat /x
%systemroot%\*.config
%systemroot%\system32\*.db
%APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x
%USERPROFILE%\Desktop\*.exe
%PROGRAMFILES%\Common Files\*.*
%systemroot%\*.src
%systemroot%\install\*.*
%systemroot%\system32\DLL\*.*
%systemroot%\system32\HelpFiles\*.*
%systemroot%\tasks\*.*
%systemroot%\system32\rundll\*.*
%systemroot%\winn32\*.*
%systemroot%\Java\*.*
%systemroot%\system32\test\*.*
%systemroot%\system32\Rundll32\*.*
%systemroot%\AppPatch\Custom\*.*
%APPDATA%\Roaming\Microsoft\Windows\Recent\*.lnk /x
%PROGRAMFILES%\PC-Doctor\Downloads\*.*
%PROGRAMFILES%\Internet Explorer\*.tmp
%PROGRAMFILES%\Internet Explorer\*.dat
%USERPROFILE%\My Documents\*.exe
%USERPROFILE%\*.exe
%systemroot%\ADDINS\*.*
%systemroot%\assembly\*.bak2
%systemroot%\Config\*.*
%systemroot%\REPAIR\*.bak2
%systemroot%\SECURITY\Database\*.sdb /x
%systemroot%\SYSTEM\*.bak2
%systemroot%\Web\*.bak2
%systemroot%\Driver Cache\*.*
%PROGRAMFILES%\Mozilla Firefox\0*.exe
%ProgramFiles%\Microsoft Common\*.*
%ProgramFiles%\TinyProxy.
%USERPROFILE%\Favorites\*.url /x
%systemroot%\system32\*.bk
%systemroot%\*.te
%systemroot%\system32\system32\*.*
%ALLUSERSPROFILE%\*.dat /x
%systemroot%\system32\drivers\*.rmv
dir /b "%systemroot%\system32\*.exe" | find /I " " /c
dir /b "%systemroot%\*.exe" | find /I " " /c
%PROGRAMFILES%\Microsoft\*.*
%systemroot%\System32\Wbem\proquota.exe
%PROGRAMFILES%\Mozilla Firefox\*.dat
%USERPROFILE%\Cookies\*.txt /x
%SystemRoot%\system32\fonts\*.*
%systemroot%\system32\winlog\*.*
%systemroot%\system32\Language\*.*
%systemroot%\system32\Settings\*.*
%systemroot%\system32\*.quo
%SYSTEMROOT%\AppPatch\*.exe
%SYSTEMROOT%\inf\*.exe
%SYSTEMROOT%\Installer\*.exe
%systemroot%\system32\config\*.bak2
%systemroot%\system32\Computers\*.*
%SystemRoot%\system32\Sound\*.*
%SystemRoot%\system32\SpecialImg\*.*
%SystemRoot%\system32\code\*.*
%SystemRoot%\system32\draft\*.*
%SystemRoot%\system32\MSSSys\*.*
%ProgramFiles%\Javascript\*.*
%systemroot%\pchealth\helpctr\System\*.exe /s
%systemroot%\Web\*.exe
%systemroot%\system32\msn\*.*
%systemroot%\system32\*.tro
%AppData%\Microsoft\Installer\msupdates\*.*
%ProgramFiles%\Messenger\*.*
%systemroot%\system32\systhem32\*.*
%systemroot%\system\*.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\LastSuccessTime /rs
/md5start
/md5stop


  • Click the Quick Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.
  • When the scan completes, it will open two notepad windows: OTL.txt and Extras.txt. These are saved in the same location as OTL.
  • Please copy (Edit->Select All, Edit->Copy) the contents of these files, one at a time, and post them back here.
 
My PC seems to have regained normal function, thank you. Here are the logs.

Malwarebytes Anti-Malware 1.61.0.1400
www.malwarebytes.org

Database version: v2012.06.23.06

Windows 7 x64 NTFS
Internet Explorer 9.0.8112.16421
Sam :: SAM-PC [administrator]

24/06/2012 00:58:55
mbam-log-2012-06-24 (00-58-55).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 210584
Time elapsed: 6 minute(s), 11 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)
 
OTL logfile created on: 24/06/2012 01:28:39 - Run 1
OTL by OldTimer - Version 3.2.52.0 Folder = C:\Users\Sam\Desktop
64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

6.00 Gb Total Physical Memory | 4.30 Gb Available Physical Memory | 71.61% Memory free
12.00 Gb Paging File | 10.16 Gb Available in Paging File | 84.66% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 1397.16 Gb Total Space | 422.81 Gb Free Space | 30.26% Space Free | Partition Type: NTFS
Drive E: | 1863.01 Gb Total Space | 287.12 Gb Free Space | 15.41% Space Free | Partition Type: NTFS
Drive G: | 14.89 Gb Total Space | 14.79 Gb Free Space | 99.30% Space Free | Partition Type: NTFS

Computer Name: SAM-PC | User Name: Sam | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2012/06/24 00:38:56 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\Sam\Desktop\OTL.exe
PRC - [2012/05/08 01:03:06 | 000,076,888 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe
PRC - [2012/01/12 12:54:26 | 000,095,640 | ---- | M] (Binary Fortress Software) -- C:\Program Files (x86)\DisplayFusion\AppHookx86.exe
PRC - [2012/01/03 14:10:42 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2011/02/10 02:00:16 | 000,012,800 | ---- | M] (Mr. John aka japamd) -- C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe


========== Modules (No Company Name) ==========


========== Win32 Services (SafeList) ==========

SRV:64bit: - [2012/04/06 03:16:02 | 000,236,544 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2012/03/26 18:49:56 | 000,291,696 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- c:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV:64bit: - [2012/03/26 18:49:56 | 000,012,600 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV:64bit: - [2011/09/27 20:04:08 | 000,359,192 | ---- | M] (Logitech, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe -- (LBTServ)
SRV:64bit: - [2009/07/14 02:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009/07/14 02:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2012/05/19 17:46:59 | 000,529,232 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2012/05/08 01:03:06 | 000,076,888 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2012/04/05 20:50:06 | 000,008,704 | ---- | M] (Hi-Rez Studios) [Auto | Running] -- C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe -- (HiPatchService)
SRV - [2012/02/28 18:38:54 | 002,343,816 | ---- | M] (LogMeIn Inc.) [Auto | Running] -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc)
SRV - [2012/01/03 14:10:42 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2011/02/10 02:00:16 | 000,012,800 | ---- | M] (Mr. John aka japamd) [Auto | Running] -- C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe -- (RadeonPro Support Service)
SRV - [2010/03/18 14:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010/02/19 14:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2009/10/20 19:19:48 | 000,117,264 | ---- | M] (CACE Technologies, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\WinPcap\rpcapd.exe -- (rpcapd) Remote Packet Capture Protocol v.0 (experimental)
SRV - [2009/06/10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2012/04/06 06:22:40 | 011,174,400 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2012/04/06 02:10:44 | 000,343,040 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2012/03/20 20:44:12 | 000,098,688 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv)
DRV:64bit: - [2012/03/01 07:54:38 | 000,022,896 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012/02/23 13:32:04 | 000,095,760 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2012/02/13 05:26:32 | 000,834,544 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\sptd.sys.vir -- (sptd)
DRV:64bit: - [2011/11/11 17:49:49 | 000,279,616 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:64bit: - [2011/11/10 19:32:02 | 000,115,272 | ---- | M] (MotioninJoy) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\MijXfilt.sys -- (MotioninJoyXFilter)
DRV:64bit: - [2011/09/02 07:30:36 | 000,060,696 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LMouFilt.Sys -- (LMouFilt)
DRV:64bit: - [2011/09/02 07:30:24 | 000,066,840 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LHidFilt.Sys -- (LHidFilt)
DRV:64bit: - [2011/08/01 16:59:06 | 000,045,416 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\point64.sys -- (Point64)
DRV:64bit: - [2011/05/18 09:08:32 | 000,047,616 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dc3d.sys -- (dc3d)
DRV:64bit: - [2011/03/11 07:22:41 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/11 07:22:40 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010/08/19 20:24:34 | 000,074,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xusb21.sys -- (xusb21)
DRV:64bit: - [2009/10/20 19:19:54 | 000,047,632 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\npf.sys -- (NPF)
DRV:64bit: - [2009/07/14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/14 02:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2009/07/14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/19 08:56:08 | 000,712,704 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\netr28x.sys -- (netr28x)
DRV:64bit: - [2009/06/10 21:35:42 | 000,187,392 | ---- | M] (Realtek Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2009/06/10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/03/18 18:35:42 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV - [2009/07/14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-3332832593-3043654-485038372-1000\SOFTWARE\Microsoft\Internet Explorer\Main,DefaultNetworkProfile = 517540814
IE - HKU\S-1-5-21-3332832593-3043654-485038372-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-GB
IE - HKU\S-1-5-21-3332832593-3043654-485038372-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 80 3D A9 01 3A 4A CD 01 [binary data]
IE - HKU\S-1-5-21-3332832593-3043654-485038372-1000\..\SearchScopes,DefaultScope = {60F942CD-4576-4A7E-8301-0ED012D7F5AC}
IE - HKU\S-1-5-21-3332832593-3043654-485038372-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-3332832593-3043654-485038372-1000\..\SearchScopes\{60F942CD-4576-4A7E-8301-0ED012D7F5AC}: "URL" = http://www.google.co.uk/search?hl=en&q={searchTerms}&meta=
IE - HKU\S-1-5-21-3332832593-3043654-485038372-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-3332832593-3043654-485038372-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

========== FireFox ==========



FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_1_102.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.2.1: C:\Windows\system32\npDeployJava1.dll (Sun Microsystems, Inc.)
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=1.6.0_32: C:\Windows\SysWOW64\npdeployJava1.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nexon.net/NxGame: C:\ProgramData\NexonUS\NGM\npNxGameUS.dll (Nexon)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll File not found
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.1: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Sam\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Sam\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)


[2011/11/11 16:23:42 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Sam\AppData\Roaming\mozilla\Extensions
[2012/06/16 13:07:31 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Sam\AppData\Roaming\mozilla\Firefox\Profiles\ra1mkfoe.default\extensions
[2012/06/18 22:01:42 | 000,000,000 | ---D | M] (incredibar.com) -- C:\Users\Sam\AppData\Roaming\mozilla\Firefox\Profiles\ra1mkfoe.default\extensions\ffxtlbr@incredibar.com
[2012/02/04 12:45:35 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2012/06/18 22:01:43 | 000,000,000 | ---D | M] ("CrazyJApps Daily Deals") -- C:\Program Files (x86)\Mozilla Firefox\extensions\{2b44b65f-87dd-4448-a0a7-0b6ffdbd4dea}
[2011/12/02 23:39:23 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2011/11/10 06:54:13 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll
[2011/10/26 19:49:56 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll

========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:eek:riginalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\Sam\AppData\Local\Google\Chrome\Application\19.0.1084.56\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\Sam\AppData\Local\Google\Chrome\Application\19.0.1084.56\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Sam\AppData\Local\Google\Chrome\Application\19.0.1084.56\gcswf32.dll
CHR - plugin: Shockwave Flash (Disabled) = C:\Users\Sam\AppData\Local\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
CHR - plugin: Skype Toolbars (Enabled) = C:\Users\Sam\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.7.0.8773_0\npSkypeChromePlugin.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin7.dll
CHR - plugin: Java(TM) Platform SE 6 U32 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll
CHR - plugin: Java Deployment Toolkit 6.0.320.5 (Enabled) = C:\Windows\SysWOW64\npdeployJava1.dll
CHR - plugin: Nexon Game Controller (Enabled) = C:\ProgramData\NexonUS\NGM\npNxGameUS.dll
CHR - plugin: Google Update (Enabled) = C:\Users\Sam\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll
CHR - Extension: YouTube = C:\Users\Sam\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Google Search = C:\Users\Sam\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Marlies Dekkers = C:\Users\Sam\AppData\Local\Google\Chrome\User Data\Default\Extensions\fepnljgdbelppefncogilfbjikmnbhjm\2_0\
CHR - Extension: AdBlock = C:\Users\Sam\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.5.36_0\
CHR - Extension: Skype Click to Call = C:\Users\Sam\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.7.0.8773_0\
CHR - Extension: 4chan Plus = C:\Users\Sam\AppData\Local\Google\Chrome\User Data\Default\Extensions\pinelipedelckihohgdlpcclgocodhjj\2.5.4_0\
CHR - Extension: Gmail = C:\Users\Sam\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2012/06/23 23:45:27 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2:64bit: - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Oracle\JavaFX 2.0 Runtime\bin\ssv.dll File not found
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [Eraser] c:\Program Files\Eraser\Eraser.exe (The Eraser Project)
O4:64bit: - HKLM..\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.)
O4:64bit: - HKLM..\Run: [IntelliPoint] c:\Program Files\Microsoft IntelliPoint\ipoint.exe (Microsoft Corporation)
O4:64bit: - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4 - HKLM..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin File not found
O4 - HKLM..\Run: [AMD AVT] C:\Windows\SysWow64\cmd.exe (Microsoft Corporation)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [TrojanScanner] C:\Program Files (x86)\Trojan Remover\Trjscan.exe (Simply Super Software)
O4 - HKU\S-1-5-21-3332832593-3043654-485038372-1000..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKU\S-1-5-21-3332832593-3043654-485038372-1000..\Run: [DisplayFusion] C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe (Binary Fortress Software)
O4 - HKU\S-1-5-21-3332832593-3043654-485038372-1000..\Run: [PeerBlock] C:\Program Files\PeerBlock\peerblock.exe (PeerBlock, LLC)
O4 - HKU\S-1-5-21-3332832593-3043654-485038372-1000..\Run: [Steam] C:\Program Files (x86)\Steam\steam.exe (Valve Corporation)
O4 - HKU\S-1-5-21-3332832593-3043654-485038372-1000..\Run: [uTorrent] C:\Users\Sam\Downloads\uTorrent.exe (BitTorrent, Inc.)
O4 - HKU\S-1-5-21-3332832593-3043654-485038372-1000..\Run: [Xvid] C:\Program Files (x86)\Xvid\CheckUpdate.exe ()
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-3332832593-3043654-485038372-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-3332832593-3043654-485038372-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000010 [] - C:\Windows\SysNative\PrxerNsp.dll ()
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Windows\SysNative\PrxerDrv.dll (Initex)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Windows\SysNative\PrxerDrv.dll (Initex)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Windows\SysNative\PrxerDrv.dll (Initex)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\Windows\SysNative\PrxerDrv.dll (Initex)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000015 - C:\Windows\SysNative\PrxerDrv.dll (Initex)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000010 [] - C:\Windows\SysWOW64\PrxerNsp.dll ()
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\SysWOW64\PrxerDrv.dll (Initex)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\SysWOW64\PrxerDrv.dll (Initex)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\SysWOW64\PrxerDrv.dll (Initex)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\SysWOW64\PrxerDrv.dll (Initex)
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\Windows\SysWOW64\PrxerDrv.dll (Initex)
O16:64bit: - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 1.6.0_32)
O16:64bit: - DPF: {CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 1.6.0_32)
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 1.6.0_32)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 1.6.0_32)
O16 - DPF: {CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 1.6.0_32)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 1.6.0_32)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A7405511-9D97-4A52-B803-3564DBEAB194}: DhcpNameServer = 192.168.1.1
O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20:64bit: - Winlogon\Notify\LBTWlgn: DllName - (c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll) - c:\Program Files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

NetSvcs:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)

Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32:64bit: VIDC.FPS1 - frapsv64.dll (Beepa P/L)
Drivers32:64bit: vidc.XVID - xvidvfw.dll ()
Drivers32: msacm.l3acm - C:\Windows\SysWow64\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FFDS - C:\Program Files (x86)\Combined Community Codec Pack\Filters\FFDShow\ff_vfw.dll ()
Drivers32: VIDC.FPS1 - C:\Windows\SysWow64\frapsvid.dll (Beepa P/L)
Drivers32: vidc.XVID - C:\Windows\SysWow64\xvidvfw.dll ()

CREATERESTOREPOINT
Restore point Set: OTL Restore Point
 
========== Files/Folders - Created Within 30 Days ==========

[2012/06/24 00:55:30 | 000,596,480 | ---- | C] (OldTimer Tools) -- C:\Users\Sam\Desktop\OTL.exe
[2012/06/24 00:55:29 | 010,063,000 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\Sam\Desktop\mbam-setup-1.61.0.1400 (2).exe
[2012/06/23 23:50:18 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2012/06/23 23:45:33 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2012/06/23 18:09:28 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2012/06/23 18:09:28 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2012/06/23 18:09:28 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2012/06/23 18:09:18 | 000,000,000 | ---D | C] -- C:\Qoobox
[2012/06/23 18:08:47 | 000,000,000 | ---D | C] -- C:\Windows\erdnt
[2012/06/23 18:08:12 | 004,565,820 | R--- | C] (Swearware) -- C:\Users\Sam\Desktop\ComboFix.exe
[2012/06/23 02:08:51 | 000,000,000 | ---D | C] -- C:\FRST
[2012/06/22 03:00:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Security Client
[2012/06/21 22:11:12 | 000,000,000 | ---D | C] -- C:\Users\Sam\Desktop\fix
[2012/06/21 21:56:40 | 000,000,000 | ---D | C] -- C:\Windows\Temp6393BB15-1E27-C26B-7004-B24A9920C884-Signatures
[2012/06/21 21:54:27 | 000,000,000 | ---D | C] -- C:\Users\Sam\AppData\Roaming\Malwarebytes
[2012/06/21 21:54:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2012/06/21 21:54:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2012/06/21 21:54:01 | 000,024,904 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2012/06/21 21:54:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2012/06/19 11:45:00 | 000,000,000 | ---D | C] -- C:\found.000
[2012/06/19 02:52:09 | 000,000,000 | ---D | C] -- C:\Users\Sam\Documents\Simply Super Software
[2012/06/19 02:52:08 | 000,000,000 | ---D | C] -- C:\ProgramData\TEMP
[2012/06/19 02:50:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trojan Remover
[2012/06/19 02:50:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Trojan Remover
[2012/06/19 02:50:28 | 000,000,000 | ---D | C] -- C:\Users\Sam\AppData\Roaming\Simply Super Software
[2012/06/19 02:50:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Simply Super Software
[2012/06/19 02:49:58 | 000,000,000 | ---D | C] -- C:\Users\Sam\Desktop\KEY
[2012/06/19 02:49:51 | 012,137,424 | ---- | C] (Simply Super Software ) -- C:\Users\Sam\Desktop\trjsetup683.exe
[2012/06/18 19:52:59 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Security Client
[2012/06/18 12:29:02 | 000,000,000 | ---D | C] -- C:\a7d3c6e75a23b56f19fcd6dcd35c3d9b
[2012/06/16 13:07:28 | 000,000,000 | ---D | C] -- C:\Program Files\Web Assistant
[2012/06/16 13:06:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pazera Free MP4 to AVI Converter
[2012/06/15 18:42:24 | 000,000,000 | ---D | C] -- C:\Users\Sam\Desktop\REESEQUEST
[2012/06/14 22:07:06 | 000,000,000 | ---D | C] -- C:\Users\Sam\Documents\Rainmeter
[2012/06/14 22:07:06 | 000,000,000 | ---D | C] -- C:\Users\Sam\AppData\Roaming\Rainmeter
[2012/06/14 22:07:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rainmeter
[2012/06/14 22:07:04 | 000,000,000 | ---D | C] -- C:\Program Files\Rainmeter
[2012/06/14 15:29:44 | 000,000,000 | ---D | C] -- C:\FlvGrabber
[2012/06/14 15:25:22 | 000,000,000 | -HSD | C] -- C:\Windows\SysNative\%APPDATA%
[2012/06/14 15:23:00 | 000,000,000 | ---D | C] -- C:\Users\Sam\Documents\FlvGrabber
[2012/06/14 15:20:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap
[2012/06/14 15:20:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\WinPcap
[2012/06/11 16:56:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Max Payne 3
[2012/06/11 16:56:51 | 000,000,000 | ---D | C] -- C:\Users\Sam\Documents\Rockstar Games
[2012/06/11 01:14:37 | 000,000,000 | ---D | C] -- C:\Users\Sam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Yume Nikki 0.10 English
[2012/06/09 21:30:48 | 000,000,000 | ---D | C] -- C:\Users\Sam\AppData\Local\ElevatedDiagnostics
[2012/06/07 23:58:35 | 000,000,000 | ---D | C] -- C:\Users\Sam\Documents\CAPCOM
[2012/06/07 23:58:33 | 000,000,000 | ---D | C] -- C:\Users\Sam\AppData\Local\CAPCOM
[2012/06/07 23:48:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\CAPCOM
[2012/06/06 15:04:18 | 000,000,000 | ---D | C] -- C:\mugen
[2012/06/06 14:52:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VirtuallTek
[2012/06/06 14:52:02 | 000,000,000 | ---D | C] -- C:\ProgramData\VirtuallTek
[2012/06/06 14:52:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VirtuallTek
[2012/06/06 00:06:48 | 000,000,000 | ---D | C] -- C:\Users\Sam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\project64 1.6
[2012/06/06 00:06:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Project64 1.6
[2012/06/03 15:45:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 3 Update 4
[2012/06/03 02:20:40 | 000,000,000 | ---D | C] -- C:\Users\Sam\Documents\Battlefield 3
[2012/06/03 01:46:30 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Common Files\EAInstaller
[2012/06/03 01:31:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Battlefield 3
[2012/06/01 15:42:30 | 000,000,000 | ---D | C] -- C:\Users\Sam\Documents\WB Games
[2012/06/01 15:13:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Batman Arkham City
[2012/06/01 14:55:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Black_Box
[2012/05/31 21:51:05 | 000,000,000 | ---D | C] -- C:\Users\Sam\Documents\Wolfire
[2012/05/31 21:44:35 | 000,000,000 | ---D | C] -- C:\Users\Sam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Overgrowth
[2012/05/31 21:44:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Overgrowth
[2012/05/31 18:13:05 | 000,000,000 | ---D | C] -- C:\Users\Sam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OMGWTFOTL
[2012/05/31 18:13:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OMGWTFOTL
[2012/05/31 18:13:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\OMGWTFOTL
[2012/05/25 23:33:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Combined Community Codec Pack
[2012/05/25 23:33:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Combined Community Codec Pack
[2012/05/25 23:28:41 | 000,000,000 | ---D | C] -- C:\Users\Sam\AppData\Roaming\vlc
[2012/05/25 23:27:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
[2012/05/25 23:26:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VideoLAN

========== Files - Modified Within 30 Days ==========

[2012/06/24 01:23:34 | 000,013,456 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012/06/24 01:23:34 | 000,013,456 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012/06/24 01:15:42 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012/06/24 01:15:38 | 535,683,071 | -HS- | M] () -- C:\hiberfil.sys
[2012/06/24 00:58:11 | 000,001,105 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012/06/24 00:39:06 | 010,063,000 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Sam\Desktop\mbam-setup-1.61.0.1400 (2).exe
[2012/06/24 00:38:56 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\Sam\Desktop\OTL.exe
[2012/06/24 00:36:32 | 000,000,900 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3332832593-3043654-485038372-1000UA.job
[2012/06/23 23:54:48 | 000,681,710 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2012/06/23 23:54:48 | 000,485,924 | ---- | M] () -- C:\Windows\SysNative\perfh011.dat
[2012/06/23 23:54:48 | 000,146,038 | ---- | M] () -- C:\Windows\SysNative\perfc011.dat
[2012/06/23 23:54:48 | 000,145,282 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2012/06/23 23:54:48 | 000,006,472 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2012/06/23 23:45:27 | 000,000,027 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2012/06/23 18:05:02 | 004,565,820 | R--- | M] (Swearware) -- C:\Users\Sam\Desktop\ComboFix.exe
[2012/06/22 03:01:11 | 000,001,945 | ---- | M] () -- C:\Windows\epplauncher.mif
[2012/06/22 03:01:01 | 000,006,438 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2012/06/18 19:36:00 | 000,000,848 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3332832593-3043654-485038372-1000Core.job
[2012/06/18 03:29:40 | 000,014,113 | ---- | M] () -- C:\Users\Sam\.recently-used.xbel
[2012/06/17 01:54:35 | 111,406,435 | ---- | M] () -- C:\Users\Sam\Documents\REESE.wmv
[2012/06/15 23:07:29 | 006,360,088 | ---- | M] () -- C:\Users\Sam\Documents\Reese Witherspoon Black Eye the song.Ray Sipe.Lady GaGa..avi
[2012/06/15 21:40:38 | 019,384,518 | ---- | M] () -- C:\Users\Sam\Documents\reese.wmv_(480p).avi
[2012/06/15 20:49:17 | 000,333,064 | ---- | M] () -- C:\Users\Sam\Documents\BRODYQUEST_(480p).mp4.sfk
[2012/06/15 20:43:54 | 052,151,891 | ---- | M] () -- C:\Users\Sam\Documents\BRODYQUEST_(480p).mp4
[2012/06/15 20:37:01 | 024,766,486 | ---- | M] () -- C:\Users\Sam\Documents\BRODYQUEST_(480p).avi
[2012/06/15 19:25:56 | 005,944,542 | ---- | M] () -- C:\Users\Sam\Documents\Big Reese (Song)_(360p).mp4
[2012/06/15 15:49:17 | 004,863,800 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2012/06/14 22:07:04 | 000,001,712 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk
[2012/06/14 17:49:18 | 000,010,752 | ---- | M] () -- C:\Users\Sam\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012/06/09 00:03:41 | 000,281,288 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.xtr
[2012/06/09 00:03:41 | 000,281,288 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2012/06/08 23:36:46 | 000,281,288 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.ex0
[2012/06/07 14:07:18 | 000,072,720 | ---- | M] () -- C:\Windows\SysNative\peerblock.dmp
[2012/06/06 22:46:45 | 000,025,516 | ---- | M] () -- C:\Users\Sam\Documents\fanfic.odt
[2012/06/03 15:46:00 | 000,001,031 | ---- | M] () -- C:\Users\Sam\Application Data\Microsoft\Internet Explorer\Quick Launch\Battlefield 3 Update 4.lnk
[2012/05/29 11:31:48 | 013,513,415 | ---- | M] () -- C:\delver.jar

========== Files Created - No Company Name ==========

[2012/06/24 00:58:11 | 000,001,105 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012/06/23 18:09:28 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2012/06/23 18:09:28 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2012/06/23 18:09:28 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2012/06/23 18:09:28 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2012/06/23 18:09:28 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2012/06/19 02:50:29 | 000,153,088 | ---- | C] () -- C:\Windows\SysWow64\UNRAR3.dll
[2012/06/19 02:50:29 | 000,075,264 | ---- | C] () -- C:\Windows\SysWow64\unacev2.dll
[2012/06/18 19:53:00 | 000,001,915 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
[2012/06/18 03:29:40 | 000,014,113 | ---- | C] () -- C:\Users\Sam\.recently-used.xbel
[2012/06/17 00:49:39 | 111,406,435 | ---- | C] () -- C:\Users\Sam\Documents\REESE.wmv
[2012/06/15 23:07:27 | 006,360,088 | ---- | C] () -- C:\Users\Sam\Documents\Reese Witherspoon Black Eye the song.Ray Sipe.Lady GaGa..avi
[2012/06/15 21:40:13 | 019,384,518 | ---- | C] () -- C:\Users\Sam\Documents\reese.wmv_(480p).avi
[2012/06/15 20:45:18 | 000,333,064 | ---- | C] () -- C:\Users\Sam\Documents\BRODYQUEST_(480p).mp4.sfk
[2012/06/15 20:41:12 | 052,151,891 | ---- | C] () -- C:\Users\Sam\Documents\BRODYQUEST_(480p).mp4
[2012/06/15 20:36:23 | 024,766,486 | ---- | C] () -- C:\Users\Sam\Documents\BRODYQUEST_(480p).avi
[2012/06/15 19:25:44 | 005,944,542 | ---- | C] () -- C:\Users\Sam\Documents\Big Reese (Song)_(360p).mp4
[2012/06/14 22:07:04 | 000,001,712 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk
[2012/06/13 02:27:05 | 013,513,415 | ---- | C] () -- C:\delver.jar
[2012/06/07 14:06:29 | 000,072,720 | ---- | C] () -- C:\Windows\SysNative\peerblock.dmp
[2012/06/06 17:36:33 | 000,025,516 | ---- | C] () -- C:\Users\Sam\Documents\fanfic.odt
[2012/06/03 15:46:00 | 000,001,031 | ---- | C] () -- C:\Users\Sam\Application Data\Microsoft\Internet Explorer\Quick Launch\Battlefield 3 Update 4.lnk
[2012/05/14 04:28:08 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2012/05/13 23:04:34 | 000,175,616 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2012/05/03 02:56:32 | 000,645,632 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2012/05/03 02:56:32 | 000,240,640 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2012/04/10 14:49:00 | 000,281,288 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2012/04/10 14:48:59 | 000,076,888 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2012/04/06 02:29:34 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
[2012/04/06 02:29:34 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
[2012/03/28 21:18:43 | 000,054,000 | ---- | C] () -- C:\Windows\SysWow64\PrxerNsp.dll
[2012/03/09 14:06:14 | 000,024,576 | ---- | C] () -- C:\Windows\SysWow64\kdbsdk32.dll
[2012/01/16 15:38:48 | 000,001,456 | ---- | C] () -- C:\Users\Sam\AppData\Local\Adobe Save for Web 12.0 Prefs
[2012/01/16 15:35:44 | 000,000,132 | ---- | C] () -- C:\Users\Sam\AppData\Roaming\Adobe GIF Format CS5 Prefs
[2012/01/16 14:10:14 | 000,002,070 | ---- | C] () -- C:\Users\Sam\fagbut.html
[2012/01/16 14:10:13 | 000,071,038 | ---- | C] () -- C:\Users\Sam\fagbut.swf
[2012/01/16 13:18:35 | 000,004,373 | ---- | C] () -- C:\Users\Sam\AuthortimeSharedAssets.fla
[2012/01/16 13:18:35 | 000,000,829 | ---- | C] () -- C:\Users\Sam\.actionScriptProperties
[2012/01/16 13:18:35 | 000,000,472 | ---- | C] () -- C:\Users\Sam\.project
[2012/01/16 13:18:34 | 001,245,528 | ---- | C] () -- C:\Users\Sam\fagbut.fla
[2011/12/12 18:12:41 | 000,794,906 | ---- | C] () -- C:\Windows\unins000.exe
[2011/12/12 18:12:41 | 000,004,147 | ---- | C] () -- C:\Windows\unins000.dat
[2011/11/11 17:38:55 | 000,010,752 | ---- | C] () -- C:\Users\Sam\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/11/11 16:27:56 | 000,006,438 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2011/09/28 18:44:14 | 000,179,271 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
[2011/09/12 23:06:16 | 000,003,917 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat

========== LOP Check ==========

[2012/03/05 18:35:35 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\.minecraft
[2011/12/18 19:56:52 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\.Nitrous
[2012/06/18 23:48:59 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\.techniclauncher
[2012/03/14 23:21:45 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\.Tribler
[2012/04/24 01:13:42 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\Actual Tools
[2012/06/18 23:48:59 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\Audacity
[2012/01/16 14:22:36 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\Babylon
[2012/05/19 15:04:52 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\calibre
[2012/01/16 12:42:43 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
[2012/06/10 21:20:02 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\DAEMON Tools Lite
[2012/06/17 15:47:17 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\DisplayFusion
[2012/01/25 03:13:31 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\FileZilla
[2012/03/06 13:03:24 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\gnupg
[2012/06/18 23:48:59 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\gtk-2.0
[2012/06/18 23:48:59 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\IrfanView
[2011/12/25 14:22:55 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\Leadertech
[2012/05/13 23:04:43 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\Leawo
[2012/03/29 16:41:02 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\Mael
[2011/11/27 19:27:16 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\MotioninJoy
[2012/02/27 00:22:29 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\MTE
[2011/11/15 12:32:08 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\OpenOffice.org
[2012/03/28 21:19:41 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\Proxifier
[2012/02/29 23:37:03 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\Publish Providers
[2012/02/13 00:45:58 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\RadeonPro
[2012/06/18 23:48:59 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\Rainmeter
[2012/01/04 21:47:48 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\RenPy
[2012/03/06 13:03:34 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\RetroShare
[2012/06/19 02:50:28 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\Simply Super Software
[2012/03/01 19:42:28 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\Sony
[2012/05/03 02:53:57 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\Sony Creative Software Inc
[2012/05/13 23:05:53 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\tiger-k
[2012/06/24 01:27:08 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\uTorrent
[2012/06/17 07:35:51 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\X-Chat 2
[2012/04/24 00:58:49 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\XRay Engine
[2012/06/18 23:48:59 | 000,000,000 | ---D | M] -- C:\Users\Sam\AppData\Roaming\Youtube Downloader HD
[2012/06/19 02:08:54 | 000,032,608 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========



========== Custom Scans ==========

< %SYSTEMDRIVE%\*.* >
[2012/06/23 23:50:16 | 000,022,423 | ---- | M] () -- C:\ComboFix.txt
[2012/05/29 11:31:48 | 013,513,415 | ---- | M] () -- C:\delver.jar
[2007/11/07 09:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1028.txt
[2007/11/07 09:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1031.txt
[2007/11/07 09:00:40 | 000,010,134 | ---- | M] () -- C:\eula.1033.txt
[2007/11/07 09:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1036.txt
[2007/11/07 09:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1040.txt
[2007/11/07 09:00:40 | 000,000,118 | ---- | M] () -- C:\eula.1041.txt
[2007/11/07 09:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1042.txt
[2007/11/07 09:00:40 | 000,017,734 | ---- | M] () -- C:\eula.2052.txt
[2007/11/07 09:00:40 | 000,017,734 | ---- | M] () -- C:\eula.3082.txt
[2007/11/07 09:00:40 | 000,001,110 | ---- | M] () -- C:\globdata.ini
[2012/06/24 01:15:38 | 535,683,071 | -HS- | M] () -- C:\hiberfil.sys
[2007/11/07 09:00:40 | 000,000,843 | ---- | M] () -- C:\install.ini
[2007/11/07 09:44:20 | 000,075,280 | ---- | M] (Microsoft Corporation) -- C:\install.res.1028.dll
[2007/11/07 09:44:20 | 000,095,248 | ---- | M] (Microsoft Corporation) -- C:\install.res.1031.dll
[2007/11/07 09:44:20 | 000,090,128 | ---- | M] (Microsoft Corporation) -- C:\install.res.1033.dll
[2007/11/07 09:44:20 | 000,096,272 | ---- | M] (Microsoft Corporation) -- C:\install.res.1036.dll
[2007/11/07 09:44:20 | 000,094,224 | ---- | M] (Microsoft Corporation) -- C:\install.res.1040.dll
[2007/11/07 09:44:20 | 000,080,400 | ---- | M] (Microsoft Corporation) -- C:\install.res.1041.dll
[2007/11/07 09:44:20 | 000,078,864 | ---- | M] (Microsoft Corporation) -- C:\install.res.1042.dll
[2007/11/07 09:44:20 | 000,074,768 | ---- | M] (Microsoft Corporation) -- C:\install.res.2052.dll
[2007/11/07 09:44:20 | 000,095,248 | ---- | M] (Microsoft Corporation) -- C:\install.res.3082.dll
[2005/09/23 00:39:38 | 000,894,976 | ---- | M] (Microsoft Corporation) -- C:\msdia80.dll
[2012/06/24 01:15:41 | 2145,902,591 | -HS- | M] () -- C:\pagefile.sys
[2012/01/16 14:32:44 | 000,073,222 | ---- | M] () -- C:\testtemp1.swf
[2012/01/16 14:22:44 | 000,000,237 | ---- | M] () -- C:\user.js
[2007/11/07 09:00:40 | 000,005,686 | ---- | M] () -- C:\vcredist.bmp
[2007/11/07 09:50:40 | 001,927,956 | ---- | M] () -- C:\VC_RED.cab
[2007/11/07 09:53:12 | 000,242,176 | ---- | M] () -- C:\VC_RED.MSI

< %systemroot%\Fonts\*.com >
[2009/07/14 06:32:31 | 000,026,040 | ---- | M] () -- C:\Windows\Fonts\GlobalMonospace.CompositeFont
[2009/07/14 06:32:31 | 000,026,489 | ---- | M] () -- C:\Windows\Fonts\GlobalSansSerif.CompositeFont
[2009/07/14 06:32:31 | 000,029,779 | ---- | M] () -- C:\Windows\Fonts\GlobalSerif.CompositeFont
[2009/07/14 06:32:31 | 000,043,318 | ---- | M] () -- C:\Windows\Fonts\GlobalUserInterface.CompositeFont

< %systemroot%\Fonts\*.dll >

< %systemroot%\Fonts\*.ini >
[2009/06/10 21:49:50 | 000,000,065 | ---- | M] () -- C:\Windows\Fonts\desktop.ini

< %systemroot%\Fonts\*.ini2 >

< %systemroot%\Fonts\*.exe >

< %systemroot%\system32\spool\prtprocs\w32x86\*.* >

< %systemroot%\REPAIR\*.bak1 >

< %systemroot%\REPAIR\*.ini >

< %systemroot%\system32\*.jpg >

< %systemroot%\*.jpg >

< %systemroot%\*.png >

< %systemroot%\*.scr >

< %systemroot%\*._sy >

< %APPDATA%\Adobe\Update\*.* >

< %ALLUSERSPROFILE%\Favorites\*.* >

< %APPDATA%\Microsoft\*.* >

< %PROGRAMFILES%\*.* >
[2009/07/14 05:54:24 | 000,000,174 | -HS- | M] () -- C:\Program Files (x86)\desktop.ini

< %APPDATA%\Update\*.* >

< %systemroot%\*. /mp /s >

< %systemroot%\System32\config\*.sav >

< %PROGRAMFILES%\bak. /s >
[2011/12/12 18:38:04 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Steam\steamapps\common\stalker shadow of chernobyl\gamedata\textures\wpn\BAK

< %systemroot%\system32\bak. /s >

< %ALLUSERSPROFILE%\Start Menu\*.lnk /x >

< %systemroot%\system32\config\systemprofile\*.dat /x >

< %systemroot%\*.config >

< %systemroot%\system32\*.db >

< %APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x >
[2011/12/18 20:03:41 | 000,000,221 | -HS- | M] () -- C:\Users\Sam\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\desktop.ini

< %USERPROFILE%\Desktop\*.exe >
[2012/06/23 18:05:02 | 004,565,820 | R--- | M] (Swearware) -- C:\Users\Sam\Desktop\ComboFix.exe
[2012/06/24 00:39:06 | 010,063,000 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Sam\Desktop\mbam-setup-1.61.0.1400 (2).exe
[2012/06/24 00:38:56 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\Sam\Desktop\OTL.exe
[2012/03/14 15:26:01 | 012,137,424 | ---- | M] (Simply Super Software ) -- C:\Users\Sam\Desktop\trjsetup683.exe

< %PROGRAMFILES%\Common Files\*.* >

< %systemroot%\*.src >

< %systemroot%\install\*.* >

< %systemroot%\system32\DLL\*.* >

< %systemroot%\system32\HelpFiles\*.* >

< %systemroot%\tasks\*.* >
[2012/06/18 19:36:00 | 000,000,848 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3332832593-3043654-485038372-1000Core.job
[2012/06/24 01:36:00 | 000,000,900 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3332832593-3043654-485038372-1000UA.job
[2012/06/24 01:15:51 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2012/06/19 02:08:54 | 000,032,608 | ---- | M] () -- C:\Windows\tasks\SCHEDLGU.TXT

< %systemroot%\system32\rundll\*.* >

< %systemroot%\winn32\*.* >

< %systemroot%\Java\*.* >

< %systemroot%\system32\test\*.* >

< %systemroot%\system32\Rundll32\*.* >

< %systemroot%\AppPatch\Custom\*.* >

< %APPDATA%\Roaming\Microsoft\Windows\Recent\*.lnk /x >

< %PROGRAMFILES%\PC-Doctor\Downloads\*.* >

< %PROGRAMFILES%\Internet Explorer\*.tmp >

< %PROGRAMFILES%\Internet Explorer\*.dat >

< %USERPROFILE%\My Documents\*.exe >

< %USERPROFILE%\*.exe >

< %systemroot%\ADDINS\*.* >
[2009/06/10 22:20:04 | 000,000,802 | ---- | M] () -- C:\Windows\ADDINS\FXSEXT.ecf

< %systemroot%\assembly\*.bak2 >

< %systemroot%\Config\*.* >

< %systemroot%\REPAIR\*.bak2 >

< %systemroot%\SECURITY\Database\*.sdb /x >

< %systemroot%\SYSTEM\*.bak2 >

< %systemroot%\Web\*.bak2 >

< %systemroot%\Driver Cache\*.* >

< %PROGRAMFILES%\Mozilla Firefox\0*.exe >

< %ProgramFiles%\Microsoft Common\*.* >

< %ProgramFiles%\TinyProxy. >

< %USERPROFILE%\Favorites\*.url /x >
[2012/02/16 15:47:23 | 000,000,402 | -HS- | M] () -- C:\Users\Sam\Favorites\desktop.ini

< %systemroot%\system32\*.bk >

< %systemroot%\*.te >

< %systemroot%\system32\system32\*.* >

< %ALLUSERSPROFILE%\*.dat /x >

< %systemroot%\system32\drivers\*.rmv >

< dir /b "%systemroot%\system32\*.exe" | find /I " " /c >

< dir /b "%systemroot%\*.exe" | find /I " " /c >

< %PROGRAMFILES%\Microsoft\*.* >

< %systemroot%\System32\Wbem\proquota.exe >

< %PROGRAMFILES%\Mozilla Firefox\*.dat >

< %USERPROFILE%\Cookies\*.txt /x >

< %SystemRoot%\system32\fonts\*.* >

< %systemroot%\system32\winlog\*.* >

< %systemroot%\system32\Language\*.* >

< %systemroot%\system32\Settings\*.* >

< %systemroot%\system32\*.quo >

< %SYSTEMROOT%\AppPatch\*.exe >

< %SYSTEMROOT%\inf\*.exe >

< %SYSTEMROOT%\Installer\*.exe >

< %systemroot%\system32\config\*.bak2 >

< %systemroot%\system32\Computers\*.* >

< %SystemRoot%\system32\Sound\*.* >

< %SystemRoot%\system32\SpecialImg\*.* >

< %SystemRoot%\system32\code\*.* >

< %SystemRoot%\system32\draft\*.* >

< %SystemRoot%\system32\MSSSys\*.* >

< %ProgramFiles%\Javascript\*.* >

< %systemroot%\pchealth\helpctr\System\*.exe /s >

< %systemroot%\Web\*.exe >

< %systemroot%\system32\msn\*.* >

< %systemroot%\system32\*.tro >

< %AppData%\Microsoft\Installer\msupdates\*.* >

< %ProgramFiles%\Messenger\*.* >

< %systemroot%\system32\systhem32\*.* >

< %systemroot%\system\*.exe >

< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >

< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\LastSuccessTime /rs >

========== Alternate Data Streams ==========

@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:CB0AACC9

< End of report >
 
OTL Extras logfile created on: 24/06/2012 01:28:42 - Run 1
OTL by OldTimer - Version 3.2.52.0 Folder = C:\Users\Sam\Desktop
64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

6.00 Gb Total Physical Memory | 4.30 Gb Available Physical Memory | 71.61% Memory free
12.00 Gb Paging File | 10.16 Gb Available in Paging File | 84.66% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 1397.16 Gb Total Space | 422.81 Gb Free Space | 30.26% Space Free | Partition Type: NTFS
Drive E: | 1863.01 Gb Total Space | 287.12 Gb Free Space | 15.41% Space Free | Partition Type: NTFS
Drive G: | 14.89 Gb Total Space | 14.79 Gb Free Space | 99.30% Space Free | Partition Type: NTFS

Computer Name: SAM-PC | User Name: Sam | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5.1\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5.1\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

========== Firewall Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0294BB2F-6178-459D-8C46-8D1C40D6AD6B}" = rport=445 | protocol=6 | dir=out | app=system |
"{057550CC-1C7E-4C7B-A2F8-3A8DDC978C8C}" = lport=138 | protocol=17 | dir=in | app=system |
"{08E024BB-596A-4DFF-A430-159062EB67CE}" = lport=10243 | protocol=6 | dir=in | app=system |
"{19A5737B-0BEE-43C8-BCD3-3CC714AA4FD3}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{25B9D31D-64EC-44F5-900B-17177C3E5D3C}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{295EF879-34FC-4A05-A484-51AA1443280E}" = lport=445 | protocol=6 | dir=in | app=system |
"{2FA65B31-3A9D-4C20-AFC6-469495F0EF44}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{4084E937-EAAA-47EE-9520-7BE7CE434C09}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{4BF5EB07-06A2-40E2-B5B6-244EF5C49A0F}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{5456EA1E-AF45-48BD-9C96-AB99A6CCF1D9}" = lport=139 | protocol=6 | dir=in | app=system |
"{6364B77A-8796-4078-B3CC-5963A3E70B4F}" = rport=139 | protocol=6 | dir=out | app=system |
"{6EFD3216-D4DB-448C-81DA-E8838C66FFD2}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{7C7BD74E-D59D-40F9-8481-A74C4729E9DD}" = rport=138 | protocol=17 | dir=out | app=system |
"{86444BB3-291D-4D31-A046-BB4AA3243C28}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{AF8150A9-8B4A-4262-900E-D368942052B3}" = lport=2869 | protocol=6 | dir=in | app=system |
"{BE10AB93-C4A6-464B-BE93-069E778BFF99}" = rport=10243 | protocol=6 | dir=out | app=system |
"{C232D951-55E7-4D04-9346-F88A07FC0B22}" = lport=137 | protocol=17 | dir=in | app=system |
"{C428A183-FD79-40B5-990D-895328F43AC8}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{CF0676E6-E2EC-438A-9741-7029DEBD00CE}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{F534D21D-02A4-4E48-A237-A3745ED5E6D3}" = rport=137 | protocol=17 | dir=out | app=system |
"{F9C1EEE5-72B7-40C6-BC7C-64E9DF7DEB39}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{003C7A18-60D9-4C89-94D8-DE42C1AA1D76}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{02A4D600-582A-4C14-ADFE-C125CF0CB18F}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{1473D86F-6F04-46A3-9153-CD04272511DC}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{20AB5F49-6362-457E-B837-7390D83F8166}" = protocol=6 | dir=in | app=c:\users\sam\downloads\utorrent.exe |
"{4849799C-D8E9-4360-8F9A-6B5F2BCC7EA4}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{56E808A1-BFD0-4B79-B567-B9FA848D697F}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{61FB8AD2-C831-45AB-9DFB-D685C3A8300D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{62F27534-2769-4D2F-B42F-E96E62F64F44}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{65901CFC-D156-4C8F-90EA-C26D256CA195}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{68F6992D-6E9D-4F14-88EC-3E0B8BEC7EFF}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{8642AF85-31DC-4BB3-8E9D-1E478C224084}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{869CC934-0C48-4F5F-9E12-9DB942A94F12}" = protocol=17 | dir=in | app=c:\users\sam\downloads\utorrent.exe |
"{A5589677-56C4-46C1-A86B-1F0B5425786F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{AB3FBA72-52C3-4476-9A38-230DBE05659B}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{BC7833D1-AE4B-4CAB-BDD5-6EA587E5C763}" = protocol=6 | dir=out | app=system |
"{CE504808-152F-4073-8BB9-0F8E7C4D30C6}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{D3648D1D-2BA3-4973-9B7E-EDC907B6E342}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{E8715BB0-E132-4617-B344-62E03BFE2C1C}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{E926E57D-011D-4F63-BCC5-FFCFDC28D091}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{EFA98652-B437-42AA-B7D3-EFFD71ED4ECD}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{F7DCF881-DB9D-4779-8D1C-CCCBAC7C73FF}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{015C5B35-B678-451C-9AEE-821E8D69621C}_is1" = PeerBlock 1.1 (r518)
"{119B2F5A-2A06-DB96-FF28-992EC2A10BDF}" = AMD Accelerated Video Transcoding
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{1E9FC118-651D-4934-97BE-E53CAE5C7D45}" = Microsoft_VC80_MFCLOC_x86_x64
"{26A24AE4-039D-4CA4-87B4-2F86416032FF}" = Java(TM) 6 Update 32 (64-bit)
"{2E8D6204-D656-8355-1ED3-2988AC52EB0F}" = ccc-utility64
"{314DDDC0-E935-11E0-8F9F-F04DA23A5C58}" = Vegas Pro 11.0 (64-bit)
"{330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1" = MotioninJoy DS3 driver version 0.6.0005
"{33C19CDE-E935-11E0-A0DA-F04DA23A5C58}" = MSVCRT Redists
"{350AA351-21FA-3270-8B7A-835434E766AD}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022
"{3ABFAF33-D6EE-9348-CE96-AF51E9D6D2FF}" = AMD Drag and Drop Transcoding
"{3D33F6F0-4D90-484D-A1D9-09AE791CCBD9}" = Eraser 6.0.9.2343
"{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}" = Microsoft_VC80_CRT_x86_x64
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime
"{5831C6D6-309D-DBB5-14F7-FEE57086CEE7}" = AMD Catalyst Install Manager
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{624C7F0A-89B2-4C49-9CAB-9D69613EC95A}" = Microsoft IntelliPoint 8.2
"{63CE6C32-1EB3-4C51-89FC-9FD96A661A9C}" = AMD Media Foundation Decoders
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{75104836-CAC7-444E-A39E-3F54151942F5}" = Apple Mobile Device Support
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{8557397C-A42D-486F-97B3-A2CBC2372593}" = Microsoft_VC90_ATL_x86_x64
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
"{90BF0360-A1DB-4599-A643-95AB90A52C1E}" = Microsoft_VC90_MFCLOC_x86_x64
"{925D058B-564A-443A-B4B2-7E90C6432E55}" = Microsoft_VC80_ATL_x86_x64
"{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}" = Microsoft_VC90_CRT_x86_x64
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9B48B0AC-C813-4174-9042-476A887592C7}" = Windows Live ID Sign-in Assistant
"{9D046B26-7978-47CD-91E6-AC3C1DFBC3D0}" = Microsoft Security Client
"{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}" = Microsoft_VC90_MFC_x86_x64
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}" = Microsoft_VC80_MFC_x86_x64
"{deb7008b-681e-4a4a-8aae-cc833e8216ce}.sdb" = Microsoft Windows Application Compatibility Database
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"6af12c54-643b-4752-87d0-8335503010de_is1" = Nexus Mod Manager
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX 64-bit
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin 64-bit
"CCleaner" = CCleaner
"Explorer Suite_is1" = Explorer Suite III
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft IntelliPoint 8.2" = Microsoft IntelliPoint 8.2
"Microsoft Security Client" = Microsoft Security Essentials
"sp6" = Logitech SetPoint 6.32
"WinRAR archiver" = WinRAR 4.10 beta 3 (64-bit)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{03D4C700-2BFE-43E0-A0B4-9512B43C5B9F}" = Catalyst Control Center - Branding
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{117B6BF6-82C3-420C-B284-9247C8568E53}" = The Sims™ 3 Outdoor Living Stuff
"{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}" = Microsoft XNA Framework Redistributable 3.1
"{19D614EB-D62A-AEE7-2391-E74126601D59}" = CCC Help Italian
"{1AA94747-3BF6-4237-9E1A-7B3067738FE1}" = Max Payne 3
"{1C373820-B9C8-0F7F-8F84-FC1B76A85F27}" = CCC Help Portuguese
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{2397CAD4-2263-4CD0-96BE-E43A980B9C9A}_is1" = Geeks3D.com FurMark 1.9.2
"{23E445D5-FD83-4C50-A211-EB26A2975317}" = Adobe Flash Professional CS5.5
"{24E34264-D483-477C-A9A0-4E53F69834CF}" = Façade
"{26A24AE4-039D-4CA4-87B4-2F83216032FF}" = Java(TM) 6 Update 32
"{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}" = Microsoft XNA Framework Redistributable 4.0
"{2D35BC33-7D08-D529-DF91-8A15FBF2600E}" = CCC Help Polish
"{2E295B5B-1AD4-4d36-97C2-A316084722CF}" = Python 2.7.2
"{31758AE2-D16E-4E1E-A448-945EF61B48A8}" = calibre
"{337788D1-43D1-9A0F-9787-DD00DB512D41}" = Catalyst Control Center Localization All
"{33F7A957-A66D-45A1-BADF-6576083B14E2}" = RPGツクール2000 ランタイムパッケージ
"{343666E2-A059-48AC-AD67-230BF74E2DB2}" = Apple Application Support
"{3521BDBD-D453-5D9F-AA55-44B75D214629}" = Adobe Community Help
"{394BE3D9-7F57-4638-A8D1-1D88671913B7}" = Microsoft AppLocale
"{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF010}" = Tribes Ascend Closed Beta
"{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}" = Hi-Rez Studios Authenticate and Update Service
"{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = eReg
"{45057FCE-5784-48BE-8176-D9D00AF56C3C}" = The Sims™ 3 Late Night
"{4725833D-4325-5C34-57D4-1FE23E5AE578}" = CCC Help Chinese Standard
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4B271648-43CB-DD31-FF24-E7B06D3EE72A}" = Catalyst Control Center InstallProxy
"{4DC37F33-7AEC-A4CB-56B1-69A402828763}" = CCC Help Japanese
"{52E9A798-88C7-4EE6-94D4-2D54FEC8EE52}" = Ragnarok Online
"{5710DAC2-8F2A-503C-CFC2-A973ADE0EA4C}" = CCC Help Czech
"{58E5AF4D-F896-41E6-9CA0-ECC4816B8C67}" = Ace of Spades
"{5A67D2EA-FB70-4033-A6F3-606AD85B2015}_is1" = Driver Sweeper version 3.2.0
"{5C763682-4C40-86DA-9C46-31924D7D2C34}" = CCC Help Thai
"{60E5022D-FA4B-C6A2-1E80-B46EC39096F3}" = CCC Help Chinese Traditional
"{60F34FDF-267C-408F-290E-EC90D841C8CB}" = CCC Help German
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{66B79AE1-C6E2-B958-689C-D0812DE86BAB}" = CCC Help Greek
"{6787B847-DE1D-4B75-AF7F-9F0B0FF9E59E}_is1" = Thief 3 Sneaky Upgrade version 1.1.0
"{6B39BE0F-0F5E-A8FA-33E4-8481AE39D96C}" = CCC Help Russian
"{7032B400-11EC-11E0-A9BF-0013D3D69929}" = MSVCRT Redists
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{71828142-5A24-4BD0-97E7-976DA08CE6CF}" = The Sims™ 3 High-End Loft Stuff
"{75D84EF7-0D8C-4e70-MAXP3-7B42A5D4E0EB}_is1" = Max Payne 3 version 1.02
"{76285C16-411A-488A-BCE3-C83CB933D8CF}" = Battlefield 3™
"{7694E0B1-2332-448B-9235-929F84B41E3F}" = Active@ ISO Burner
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{7B11296A-F894-449C-8DF6-6AAAA7D4D118}" = The Sims™ 3 Town Life Stuff
"{7BE15435-2D3E-4B58-867F-9C75BED0208C}" = QuickTime
"{82AF3E91-57E1-4754-84D0-40A46E2479AB}" = OpenOffice.org 3.3
"{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}" = Microsoft Games for Windows - LIVE Redistributable
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8A809006-C25A-4A3A-9DAB-94659BCDB107}" = NVIDIA PhysX
"{8B7IL77L-LKS1-AC3-BATAC-18CD6E6334R1}_is1" = Batman Arkham City version 1.0
"{8E19F2AF-7145-51DE-E395-7729A9374973}" = Catalyst Control Center Graphics Previews Common
"{910F4A29-1134-49E0-AD8B-56E4A3152BD1}" = The Sims™ 3 Ambitions
"{9158FF30-78D7-40EF-B83E-451AC5334640}" = Adobe Photoshop CS5.1
"{918A9082-6287-4D25-9002-5E5D5E4971CB}" = League of Legends
"{91CB5B8B-4EC8-DBA1-A88D-99FD480567B0}" = CCC Help English
"{924FBAC4-60D2-7981-3C3E-979DF9CBB346}" = CCC Help Finnish
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{9559F7CA-5E34-4237-A2D9-D856464AD727}" = Project64 1.6
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9DC939DC-B7A4-D0E2-C582-A442DF1B3EBE}" = CCC Help Spanish
"{A1BD938B-F006-6E6D-70B2-47E1DD56F7DE}" = CCC Help Swedish
"{A2S166A0-F031-4E27-A057-C69733219434}_is1" = TERA
"{A33A89D0-2F48-FD1C-A243-9073EE0592E0}" = Catalyst Control Center InstallProxy
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
"{AA59DDE4-B672-4621-A016-4C248204957A}" = Skype™ 5.5
"{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.3)
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call
"{B6D38690-755E-4F40-A35A-23F8BC2B86AC}" = Microsoft_VC90_MFCLOC_x86
"{BA26FFA5-6D47-47DB-BE56-34C357B5F8CC}" = The Sims™ 3 World Adventures
"{BABF7852-C2DD-6A8A-9956-101720C715C7}" = CCC Help Turkish
"{BB7C2A56-9706-43B8-5A8C-210AF5816106}" = CCC Help French
"{BE3A3BDB-93B0-4F19-ABB1-D63575210C6C}_is1" = Dig-N-Rig version 1.0
"{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = The Sims™ 3
"{C12631C6-804D-4B32-B0DD-8A496462F106}" = The Sims™ 3 Pets
"{C325F588-D6B1-4A7F-B6A2-914C75DDA348}" = Morrowind
"{CFC2CB60-5654-05A7-4D30-C661800A3A92}" = CCC Help Korean
"{D04CE005-D1D2-80F3-84C8-B3524FCD39C3}" = CCC Help Norwegian
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}" = GTA San Andreas
"{D4E5A687-797D-44B1-8F96-4FD7A24166A9}" = DEVIL MAY CRY 4
"{D544AE4C-4152-225B-A897-6756C8986B14}" = Catalyst Control Center
"{D81E9069-3CCC-4405-3751-71E4AFEACC52}" = CCC Help Hungarian
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{DB3C800B-081B-4146-B4E3-EFB5B77AA913}" = TES Construction Set
"{DE43AA92-E8C0-4620-AFE2-FBD623C71643}" = Sizer 3.33
"{DEAD48E5-E36C-431E-B83C-E61CE71AA13F}" = Livestream Procaster
"{E1845F1C-068C-F8F4-D31D-D3540D47C453}" = Adobe Download Assistant
"{E2494AD8-314D-44F8-B39C-4358A60DC184}" = LogMeIn Hamachi
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E6B88BD6-E4B2-4701-A648-B6DAC6E491CC}" = The Sims™ 3 Generations
"{E93FF166-DF14-2537-8FB4-96BB5810A96C}" = CCC Help Danish
"{EA2DB6E0-72C5-4ef9-A3A0-E6705F4A6A9E}" = Nexon Game Manager
"{ED436EA8-4145-4703-AE5D-4D09DD24AF5A}" = The Sims™ 3 Fast Lane Stuff
"{EF2F12AA-3E37-4826-A9F9-B37ABB3A4B23}" = Six Updater
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F112F66E-25CA-42DD-983C-6118EB38F606}" = Microsoft Games for Windows - LIVE
"{FA9827E1-8A8E-C176-4923-0840A67ED4DE}" = CCC Help Dutch
"{FE23D063-934D-4829-A0D8-00634CE79B4A}" = Adobe AIR
"Absolute Nature Texture Pack 2 CS_is1" = Absolute Nature 2 for S.T.A.L.K.E.R - Clear Sky
"Absolute Structures Texture Pack_is1" = Absolute Structures for S.T.A.L.K.E.R - Clear Sky
"Adobe AIR" = Adobe AIR
"Adobe Shockwave Player" = Adobe Shockwave Player 11.6
"ArmA 2" = ArmA 2 Uninstall
"Audacity 1.3 Beta (Unicode)_is1" = Audacity 1.3.14 (Unicode)
"AutoHotkey" = AutoHotkey 1.1.07.03
"B076073A-5527-4f4f-B46B-B10692277DA2_is1" = DisplayFusion 3.4.1
"Battlefield 3 Update 4_is1" = Battlefield 3 Update 4
"BattlEye" = BattlEye Uninstall
"BattlEye for OA" = BattlEye for OA Uninstall
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"com.adobe.downloadassistant.AdobeDownloadAssistant" = Adobe Download Assistant
"Combined Community Codec Pack_is1" = Combined Community Codec Pack 2011-11-11
"DAEMON Tools Lite" = DAEMON Tools Lite
"File Splitter and Joiner_is1" = File Splitter and Joiner (FFSJ v3.3)
"FileZilla Client" = FileZilla Client 3.5.3
"Fotosizer" = Fotosizer 1.34
"Fraps" = Fraps (remove only)
"FXAA Post-Process Injector" = FXAA Post-Process Injector
"HDTP" = Deus Ex - HDTP
"hon" = Heroes of Newerth
"HxD Hex Editor_is1" = HxD Hex Editor version 1.7.7.0
"IrfanView" = IrfanView (remove only)
"Katawa Shoujo" = Katawa Shoujo
"KLiteCodecPack_is1" = K-Lite Codec Pack 7.9.0 (Basic)
"LAME_is1" = LAME v3.99.3 (for Windows)
"LogMeIn Hamachi" = LogMeIn Hamachi
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.61.0.1400
"Minecraft Texturepack Editor" = Minecraft Texturepack Editor
"MISERY_is1" = MISERY for S.T.A.L.K.E.R - Call of Pripyat
"MTA:SA 1.3" = MTA:SA v1.3
"OMGWTFOTL" = OMGWTFOTL 1.0E
"pcsx2-r4600" = PCSX2 - Playstation 2 Emulator
"PowerMenu" = PowerMenu 1.51
"Proxifier_is1" = Proxifier version 3.0
"PunkBusterSvc" = PunkBuster Services
"RadeonPro_is1" = RadeonPro 1.0 (Build 1.1.0.6)
"Rainmeter" = Rainmeter
"RetroShare" = RetroShare
"Revo Uninstaller" = Revo Uninstaller 1.93
"Rockstar Games Social Club" = Rockstar Games Social Club
"ShiftWindow_is1" = ShiftWindow 1.02
"Steam App 105600" = Terraria
"Steam App 113400" = APB Reloaded
"Steam App 113420" = Fallen Earth
"Steam App 1250" = Killing Floor
"Steam App 12900" = Audiosurf
"Steam App 17520" = Synergy
"Steam App 20500" = Red Faction: Guerrilla
"Steam App 20510" = S.T.A.L.K.E.R.: Clear Sky
"Steam App 218" = Source SDK Base 2007
"Steam App 220" = Half-Life 2
"Steam App 33930" = ARMA 2: Operation Arrowhead
"Steam App 380" = Half-Life 2: Episode One
"Steam App 4000" = Garry's Mod
"Steam App 4010" = Garry's Mod 13
"Steam App 41700" = S.T.A.L.K.E.R.: Call of Pripyat
"Steam App 420" = Half-Life 2: Episode Two
"Steam App 42910" = Magicka
"Steam App 4500" = S.T.A.L.K.E.R.: Shadow of Chernobyl
"Steam App 47870" = Need for Speed: Hot Pursuit
"Steam App 48700" = Mount & Blade: Warband
"Steam App 550" = Left 4 Dead 2
"Steam App 55230" = Saints Row: The Third
"Steam App 620" = Portal 2
"Steam App 6910" = Deus Ex: Game of the Year Edition
"Steam App 6980" = Thief: Deadly Shadows
"Steam App 7060" = Infernal
"Steam App 91310" = Dead Island
"Steam App 91600" = Sanctum
"Steam App 9480" = Saints Row 2
"Steam App 98200" = Frozen Synapse
"uTorrent" = µTorrent
"Vindictus" = Vindictus
"VirtuallTek Fighter Factory Ultimate_is1" = Fighter Factory Ultimate
"VLC media player" = VLC media player 2.0.1
"Winamp" = Winamp
"WinGimp-2.0_is1" = GIMP 2.6.11
"WinPcapInst" = WinPcap 4.1.1
"XChat-WDK (x86)_is1" = XChat-WDK (x86)
"Xvid Video Codec 1.3.2" = Xvid Video Codec
"Youtube Downloader HD_is1" = Youtube Downloader HD v. 2.9.2

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-3332832593-3043654-485038372-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome
"Winamp Detect" = Winamp Detector Plug-in
"Yume Nikki 0.10 English" = Yume Nikki 0.10 English

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 18/06/2012 21:57:27 | Computer Name = Sam-PC | Source = Windows Search Service | ID = 7010
Description =

Error - 18/06/2012 22:00:17 | Computer Name = Sam-PC | Source = Application Hang | ID = 1002
Description = The program Trjscan.exe version 6.8.3.1312 stopped interacting with
Windows and was closed. To see if more information about the problem is available,
check the problem history in the Action Center control panel. Process ID: f78 Start
Time: 01cd4dbef33e95b5 Termination Time: 0 Application Path: C:\Program Files (x86)\Trojan
Remover\Trjscan.exe Report Id: 5f4ce59f-b9b2-11e1-91b1-001fd0a2a7fa

Error - 18/06/2012 22:03:36 | Computer Name = Sam-PC | Source = Application Hang | ID = 1002
Description = The program trupd.exe version 1.3.7.1094 stopped interacting with
Windows and was closed. To see if more information about the problem is available,
check the problem history in the Action Center control panel. Process ID: eb8 Start
Time: 01cd4dbfa7d0ff7b Termination Time: 0 Application Path: C:\Program Files (x86)\Trojan
Remover\trupd.exe Report Id: f7c55bb7-b9b2-11e1-91b1-001fd0a2a7fa

Error - 21/06/2012 17:00:30 | Computer Name = Sam-PC | Source = MsiInstaller | ID = 11921
Description =

Error - 21/06/2012 17:01:19 | Computer Name = Sam-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012
Description = The performance strings in the Performance registry value is corrupted
when process Performance extension counter provider. The BaseIndex value from the
Performance registry is the first DWORD in the Data section, LastCounter value
is the second DWORD in the Data section, and LastHelp value is the third DWORD in
the Data section.

Error - 21/06/2012 17:01:19 | Computer Name = Sam-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012
Description = The performance strings in the Performance registry value is corrupted
when process Performance extension counter provider. The BaseIndex value from the
Performance registry is the first DWORD in the Data section, LastCounter value
is the second DWORD in the Data section, and LastHelp value is the third DWORD in
the Data section.

Error - 21/06/2012 17:01:19 | Computer Name = Sam-PC | Source = Microsoft-Windows-LoadPerf | ID = 3011
Description = Unloading the performance counter strings for service Network Inspection
System (Network Inspection System) failed. The first DWORD in the Data section
contains the error code.

Error - 21/06/2012 17:01:39 | Computer Name = Sam-PC | Source = Microsoft Security Client Setup | ID = 100
Description = HRESULT:0x8004FF80 Description:Cannot complete the Security Essentials
Upgrade. An error has prevented the Security Essentials Upgrade Wizard from continuing.
The previous version of Security Essentials was restored. Error code:0x8004FF80.

Error - 21/06/2012 18:09:33 | Computer Name = Sam-PC | Source = SideBySide | ID = 16842824
Description = Activation context generation failed for "c:\program files\microsoft
security client\MSESysprep.dll".Error in manifest or policy file "c:\program files\microsoft
security client\MSESysprep.dll" on line 10. The element imaging appears as a child
of element urn:schemas-microsoft-com:asm.v1^assembly which is not supported by
this version of Windows.

Error - 21/06/2012 22:00:48 | Computer Name = Sam-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012
Description = The performance strings in the Performance registry value is corrupted
when process Performance extension counter provider. The BaseIndex value from the
Performance registry is the first DWORD in the Data section, LastCounter value
is the second DWORD in the Data section, and LastHelp value is the third DWORD in
the Data section.

Error - 21/06/2012 22:00:48 | Computer Name = Sam-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012
Description = The performance strings in the Performance registry value is corrupted
when process Performance extension counter provider. The BaseIndex value from the
Performance registry is the first DWORD in the Data section, LastCounter value
is the second DWORD in the Data section, and LastHelp value is the third DWORD in
the Data section.

Error - 21/06/2012 22:00:48 | Computer Name = Sam-PC | Source = Microsoft-Windows-LoadPerf | ID = 3011
Description = Unloading the performance counter strings for service Network Inspection
System (Network Inspection System) failed. The first DWORD in the Data section
contains the error code.

[ System Events ]
Error - 30/04/2012 22:01:56 | Computer Name = Sam-PC | Source = Microsoft Antimalware | ID = 3002
Description = %%860 Real-Time Protection feature has encountered an error and failed.

Feature:
%%834 Error Code: 0x80070005 Error description: Access is denied. Reason: %%837

Error - 30/04/2012 22:01:56 | Computer Name = Sam-PC | Source = Microsoft Antimalware | ID = 3002
Description = %%860 Real-Time Protection feature has encountered an error and failed.

Feature:
%%835 Error Code: 0x80070005 Error description: Access is denied. Reason: %%837

Error - 30/04/2012 22:11:59 | Computer Name = Sam-PC | Source = Microsoft Antimalware | ID = 3002
Description = %%860 Real-Time Protection feature has encountered an error and failed.

Feature:
%%834 Error Code: 0x80070006 Error description: The handle is invalid. Reason: %%837

Error - 30/04/2012 22:11:59 | Computer Name = Sam-PC | Source = Microsoft Antimalware | ID = 3002
Description = %%860 Real-Time Protection feature has encountered an error and failed.

Feature:
%%835 Error Code: 0x80070006 Error description: The handle is invalid. Reason: %%837

Error - 01/05/2012 11:49:00 | Computer Name = Sam-PC | Source = EventLog | ID = 6008
Description = The previous system shutdown at 04:44:19 on ?01/?05/?2012 was unexpected.

Error - 01/05/2012 12:02:22 | Computer Name = Sam-PC | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Installation Failure: Windows failed to install the following update
with error 0x80070643: Definition Update for Windows Defender - KB915597 (Definition
1.125.886.0).

Error - 02/05/2012 06:10:54 | Computer Name = Sam-PC | Source = EventLog | ID = 6008
Description = The previous system shutdown at 04:02:58 on ?02/?05/?2012 was unexpected.

Error - 03/05/2012 03:09:48 | Computer Name = Sam-PC | Source = EventLog | ID = 6008
Description = The previous system shutdown at 04:18:59 on ?03/?05/?2012 was unexpected.

Error - 03/05/2012 06:22:49 | Computer Name = Sam-PC | Source = EventLog | ID = 6008
Description = The previous system shutdown at 08:33:40 on ?03/?05/?2012 was unexpected.

Error - 04/05/2012 02:42:02 | Computer Name = Sam-PC | Source = EventLog | ID = 6008
Description = The previous system shutdown at 04:19:55 on ?04/?05/?2012 was unexpected.


< End of report >
 
Uninstall Trojan Remover, rather questionable program.

Run OTL
  • Under the Custom Scans/Fixes box at the bottom, paste in the following

    Code:
    :OTL
    O2:64bit: - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Oracle\JavaFX 2.0 Runtime\bin\ssv.dll File not found
    @Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:CB0AACC9
    
    :Commands
    [purity]
    [emptytemp]
    [emptyjava]
    [emptyflash]
    [Reboot]
  • Then click the Run Fix button at the top
  • Let the program run unhindered, reboot the PC when it is done
  • You will get a log that shows the results of the fix. Please post it.

==============================================================

Last scans....

1. Download Security Check from HERE, and save it to your Desktop.
  • Double-click SecurityCheck.exe
  • Follow the onscreen instructions inside of the black box.
  • A Notepad document should open automatically called checkup.txt; please post the contents of that document.

    NOTE SecurityCheck may produce some false warning(s), so leave the results reading to me.

2. Please download Farbar Service Scanner (FSS) and run it on the computer with the issue.
  • Make sure the following options are checked:
    • Internet Services
    • Windows Firewall
    • System Restore
    • Security Center
    • Windows Update
    • Windows Defender
  • Press "Scan".
  • It will create a log (FSS.txt) in the same directory the tool is run.
  • Please copy and paste the log to your reply.


3. Download Temp File Cleaner (TFC)
  • Double click on TFC.exe to run the program.
  • Click on Start button to begin cleaning process.
  • TFC will close all running programs, and it may ask you to restart computer.


4. Please run a free online scan with the ESET Online Scanner

  • Disable your antivirus program
  • Tick the box next to YES, I accept the Terms of Use
  • Click Start
  • Accept any security warnings from your browser.
  • Check Scan archives
  • Click Start
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click on List of found threats
  • Click on Export to text file , and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • NOTE. If Eset won't find any threats, it won't produce any log.
 
Results of screen317's Security Check version 0.99.24
Windows 7 x64 (UAC is disabled!)
Internet Explorer 9
``````````````````````````````
Antivirus/Firewall Check:

Windows Firewall Enabled!
[size=1]WMI entry may not exist for antivirus; attempting automatic update.[/size]
```````````````````````````````
Anti-malware/Other Utilities Check:

Java(TM) 6 Update 32
Adobe Reader X (10.1.3)
````````````````````````````````
Process Check:
objlist.exe by Laurent

Windows Defender MSMpEng.exe
Microsoft Security Essentials msseces.exe
``````````End of Log````````````
Farbar Service Scanner Version: 23-06-2012
Ran by Sam (administrator) on 24-06-2012 at 02:48:41
Running from "C:\Users\Sam\Desktop"
Microsoft Windows 7 Ultimate (X64)
Boot Mode: Normal
****************************************************************
Internet Services:
============
Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Attempt to access Yahoo IP returned error: Other errors
Yahoo.com is accessible.
Windows Firewall:
=============
Firewall Disabled Policy:
==================
System Restore:
============
System Restore Disabled Policy:
========================
Action Center:
============
Windows Update:
============
Windows Autoupdate Disabled Policy:
============================
Windows Defender:
==============
WinDefend Service is not running. Checking service configuration:
The start type of WinDefend service is set to Demand. The default start type is Auto.
The ImagePath of WinDefend service is OK.
The ServiceDll of WinDefend service is OK.
Windows Defender Disabled Policy:
==========================
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender]
"DisableAntiSpyware"=DWORD:1
File Check:
========
C:\Windows\System32\nsisvc.dll => MD5 is legit
C:\Windows\System32\drivers\nsiproxy.sys => MD5 is legit
C:\Windows\System32\dhcpcore.dll => MD5 is legit
C:\Windows\System32\drivers\afd.sys
[2012-02-16 06:09] - [2011-12-28 04:59] - 0499200 ____A (Microsoft Corporation) DB9D6C6B2CD95A9CA414D045B627422E
C:\Windows\System32\drivers\tdx.sys => MD5 is legit
C:\Windows\System32\Drivers\tcpip.sys
[2012-05-09 07:32] - [2012-03-30 12:09] - 1895280 ____A (Microsoft Corporation) 624C5B3AA4C99B3184BB922D9ECE3FF0
C:\Windows\System32\dnsrslvr.dll => MD5 is legit
C:\Windows\System32\mpssvc.dll
[2009-07-14 01:09] - [2009-07-14 02:41] - 0824832 ____A (Microsoft Corporation) AECAB449567D1846DAD63ECE49E893E3
C:\Windows\System32\bfe.dll => MD5 is legit
C:\Windows\System32\drivers\mpsdrv.sys => MD5 is legit
C:\Windows\System32\SDRSVC.dll
[2009-07-14 00:36] - [2009-07-14 02:41] - 0170496 ____A (Microsoft Corporation) 765A27C3279CE11D14CB9E4F5869FCA5
C:\Windows\System32\vssvc.exe => MD5 is legit
C:\Windows\System32\wscsvc.dll => MD5 is legit
C:\Windows\System32\wbem\WMIsvc.dll => MD5 is legit
C:\Windows\System32\wuaueng.dll => MD5 is legit
C:\Windows\System32\qmgr.dll => MD5 is legit
C:\Windows\System32\es.dll => MD5 is legit
C:\Windows\System32\cryptsvc.dll
[2012-06-13 23:51] - [2012-04-24 06:59] - 0182272 ____A (Microsoft Corporation) F02786B66375292E58C8777082D4396D
C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
**** End of log ****
C:\Desk\Translation Aggregator 0.4.9.r171\agth.dllprobably a variant of Win32/AGTH.A applicationcleaned by deleting - quarantined
C:\FRST\Quarantine\services.exeWin64/Patched.B.Gen trojandeleted - quarantined
C:\FRST\Quarantine\{c07c8d13-da90-dacd-4643-a2c48c3764db}\U\80000000.@Win64/Sirefef.AE trojancleaned by deleting - quarantined
C:\Program Files (x86)\Black_Box\Max Payne 3\gsrld.dlla variant of Win32/Packed.VMProtect.AAH trojancleaned by deleting - quarantined
C:\Translation Aggregator 0.4.9.r171\agth.dllprobably a variant of Win32/AGTH.A applicationcleaned by deleting - quarantined
C:\Users\Sam\Downloads\cnet2_SwfToGifConverter_setup_zip.exea variant of Win32/InstallCore.D applicationcleaned by deleting - quarantined
C:\Users\Sam\Downloads\cnet_DriverSweeper_3_2_0_exe.exea variant of Win32/InstallCore.D applicationcleaned by deleting - quarantined
C:\Users\Sam\Downloads\Translation Aggregator 0.4.9.r171 (1).rarprobably a variant of Win32/AGTH.A applicationdeleted - quarantined
C:\Users\Sam\Downloads\Translation Aggregator 0.4.9.r171 (2).rarprobably a variant of Win32/AGTH.A applicationdeleted - quarantined
C:\Users\Sam\Downloads\Translation Aggregator 0.4.9.r171.rarprobably a variant of Win32/AGTH.A applicationdeleted - quarantined
C:\Users\Sam\Downloads\The Sims 3 - Razor1911 Final MAXSPEED\The Sims 3 - Razor1911 MAXSPEED www.torentz.3xforum.ro\The Sims 3 - Razor1911 MAXSPEED www.torentz.3xforum.ro.isoprobably a variant of Win32/Hupigon.CJKIBCX trojandeleted - quarantined
 
1. Update your Java version here: http://www.java.com/en/download/installed.jsp

Note 1: UNCHECK any pre-checked toolbar and/or software offered with the Java update. The pre-checked toolbars/software are not part of the Java update.

Note 2: The Java Quick Starter (JQS.exe) adds a service to improve the initial startup time of Java applets and applications. If you don't want to run another extra service, go to Start > Control Panel > Java > Advanced > Miscellaneous and uncheck the box for Java Quick Starter. Click OK and restart your computer.

2. Now, we need to remove old Java version and its remnants...

Download JavaRa to your desktop and unzip it.
  • Run JavaRa.exe (Vista users! Right click on JavaRa.exe, click Run As Administrator), pick the language of your choice and click Select. Then click Remove Older Versions.
  • Accept any prompts.
  • Do NOT post JavaRa log.

======================================================

Your computer is clean

1. We need to reset system restore to prevent your computer from being accidentally reinfected by using some old restore point(s). We'll create fresh, clean restore point, using following OTL script:

Run OTL

  • Under the Custom Scans/Fixes box at the bottom, paste in the following:

Code:
:OTL
:Commands
[purity]
[emptytemp]
[EMPTYFLASH]
[emptyjava]
[CLEARALLRESTOREPOINTS]
[Reboot]

  • Then click the Run Fix button at the top
  • Let the program run unhindered, reboot the PC when it is done
  • Post resulting log.

2. Now, we'll remove all tools, we used during our cleaning process

Clean up with OTL:

  • Double-click OTL.exe to start the program.
  • Close all other programs apart from OTL as this step will require a reboot
  • On the OTL main screen, press the CLEANUP button
  • Say Yes to the prompt and then allow the program to reboot your computer.

If you still have any tools or logs leftover on your computer you can go ahead and delete those off of your computer now.

3. Make sure, Windows Updates are current.

4. If any Trojan was listed among your infection(s), make sure, you change all of your on-line important passwords (bank account(s), secured web sites, etc.) immediately!

5. Download, and install WOT (Web OF Trust): http://www.mywot.com/. It'll warn you (in most cases) about dangerous web sites.

6. Run Malwarebytes "Quick scan" once in a while to assure safety of your computer.

7. Run Temporary File Cleaner (TFC) weekly.

8. Download and install Secunia Personal Software Inspector (PSI): https://www.techspot.com/downloads/4898-secunia-personal-software-inspector-psi.html. The Secunia PSI is a FREE security tool designed to detect vulnerable and out-dated programs and plug-ins which expose your PC to attacks. Run it weekly.

9. (optional) If you want to keep all your programs up to date, download and install FileHippo Update Checker.
The Update Checker will scan your computer for installed software, check the versions and then send this information to FileHippo.com to see if there are any newer releases.

10. (Windows XP only) Run defrag at your convenience.

11. When installing\updating ANY program, make sure you always select "Custom " installation, so you can UN-check any possible "drive-by-install" (foistware), like toolbars etc., which may try to install along with the legitimate program. Do NOT click "Next" button without looking at any given page.

12. Read How did I get infected?, With steps so it does not happen again!: http://www.bleepingcomputer.com/forums/topic2520.html

13. Please, let me know, how your computer is doing.
 
All processes killed
========== OTL ==========
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Public
->Temp folder emptied: 0 bytes

User: Sam
->Temp folder emptied: 3332927 bytes
->Temporary Internet Files folder emptied: 143332 bytes
->Java cache emptied: 2027 bytes
->FireFox cache emptied: 0 bytes
->Google Chrome cache emptied: 334300874 bytes
->Flash cache emptied: 1379 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 3988 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 4542110 bytes

Total Files Cleaned = 326.00 mb


[EMPTYFLASH]

User: All Users

User: Default
->Flash cache emptied: 0 bytes

User: Default User
->Flash cache emptied: 0 bytes

User: Public

User: Sam
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0.00 mb


[EMPTYJAVA]

User: All Users

User: Default

User: Default User

User: Public

User: Sam
->Java cache emptied: 0 bytes

Total Java Files Cleaned = 0.00 mb

Restore point Set: OTL Restore Point

OTL by OldTimer - Version 3.2.52.0 log created on 06242012_195909

Files\Folders moved on Reboot...
C:\Users\Sam\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.

Registry entries deleted on Reboot...

Thank you very much for all the help, my computer is now back to normal.

I shall be sure to follow your advice in the future.
 
Back