Arrrg, I suck, I skipped that line with the scan
Here is the scan result:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 10-10-2012 (ATTENTION: FRST version is 10 days old)
Ran by SYSTEM at 20-10-2012 15:50:05
Running from H:\
Windows 7 Professional (X64) OS Language: English(US)
The current controlset is ControlSet001
==================== Registry (Whitelisted) ===================
HKLM\...\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s [11660904 2010-11-29] (Realtek Semiconductor)
HKLM\...\Run: [AtherosBtStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe" [613536 2010-11-25] (Atheros Commnucations)
HKLM\...\Run: [AthBtTray] "C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe" [379040 2010-11-25] (Atheros Commnucations)
HKLM\...\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE [x]
HKLM\...\Run: [Bluetooth Connection Assistant] LBTWIZ.EXE -silent [x]
HKLM-x32\...\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [113288 2010-11-16] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe [43632 2010-01-18] ()
HKLM-x32\...\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW [1259376 2011-07-28] ()
HKLM-x32\...\Run: [vProt] "C:\Program Files (x86)\AVG Secure Search\vprot.exe" [947808 2012-10-04] ()
HKLM-x32\...\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2010-03-12] (Hewlett-Packard)
HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [919008 2012-07-27] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [ROC_ROC_JULY_P1] "C:\Program Files (x86)\AVG Secure Search\ROC_ROC_JULY_P1.exe" / /PROMPT /CMPID=ROC_JULY_P1 [x]
HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [252848 2012-07-03] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2013\avgui.exe" /TRAYONLY [3116152 2012-10-10] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [ROC_ROC_NT] "C:\Program Files (x86)\AVG Secure Search\ROC_ROC_NT.exe" / /PROMPT /CMPID=ROC_NT [856160 2012-10-04] ()
HKU\Vincent\...\Run: [Google Update] "C:\Users\Vincent\AppData\Local\Google\Update\GoogleUpdate.exe" /c [116648 2012-07-12] (Google Inc.)
HKU\Vincent\...\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background [4280184 2012-03-08] (Microsoft Corporation)
HKU\Vincent\...\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [17418928 2012-07-13] (Skype Technologies S.A.)
HKU\Vincent\...\Run: [ManyCam] "C:\Program Files (x86)\ManyCam\Bin\ManyCam.exe" /silent [2164632 2012-09-13] (ManyCam LLC)
Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Startup: C:\Users\All Users\Start Menu\Programs\Startup\Logitech SetPoint.lnk
ShortcutTarget: Logitech SetPoint.lnk -> C:\Program Files\Logitech\SetPoint\SetPoint.exe (Logitech, Inc.)
Startup: C:\Users\All Users\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files (x86)\McAfee Security Scan\3.0.207\SSScheduler.exe (McAfee, Inc.)
Startup: C:\Users\Vincent\Start Menu\Programs\Startup\wlmail.exe - Shortcut.lnk
ShortcutTarget: wlmail.exe - Shortcut.lnk -> C:\Program Files (x86)\Windows Live\Mail\wlmail.exe (Microsoft Corporation)
==================== Services (Whitelisted) ===================
2 AVGIDSAgent; "C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe" [5783672 2012-10-01] (AVG Technologies CZ, s.r.o.)
2 avgwd; "C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe" [193568 2012-10-01] (AVG Technologies CZ, s.r.o.)
2 MBAMScheduler; "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe" [399432 2012-09-29] (Malwarebytes Corporation)
2 MBAMService; "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe" [676936 2012-09-29] (Malwarebytes Corporation)
3 McComponentHostService; "C:\Program Files (x86)\McAfee Security Scan\3.0.207\McCHSvc.exe" [237008 2011-06-17] (McAfee, Inc.)
2 vToolbarUpdater12.2.6; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\12.2.6\ToolbarUpdater.exe [722528 2012-09-03] ()
2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-20] (Microsoft Corporation)
2 W3SVC; C:\Windows\SysWow64\inetsrv\iisw3adm.dll [397824 2010-11-20] (Microsoft Corporation)
3 rpcapd; "C:\Program Files (x86)\WinPcap\rpcapd.exe" -d -f "C:\Program Files (x86)\WinPcap\rpcapd.ini" [x]
==================== Drivers (Whitelisted) =====================
1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [151904 2012-09-12] (AVG Technologies CZ, s.r.o. )
0 AVGIDSHA; C:\Windows\System32\Drivers\AVGIDSHA.sys [61792 2012-09-20] (AVG Technologies CZ, s.r.o. )
1 Avgldx64; C:\Windows\System32\Drivers\Avgldx64.sys [185696 2012-10-01] (AVG Technologies CZ, s.r.o.)
0 Avgloga; C:\Windows\System32\Drivers\Avgloga.sys [225120 2012-09-20] (AVG Technologies CZ, s.r.o.)
0 Avgmfx64; C:\Windows\System32\Drivers\Avgmfx64.sys [111456 2012-10-04] (AVG Technologies CZ, s.r.o.)
0 Avgrkx64; C:\Windows\System32\Drivers\Avgrkx64.sys [40800 2012-09-13] (AVG Technologies CZ, s.r.o.)
1 Avgtdia; C:\Windows\System32\Drivers\Avgtdia.sys [200032 2012-09-20] (AVG Technologies CZ, s.r.o.)
1 avgtp; \??\C:\Windows\system32\drivers\avgtpx64.sys [31080 2012-09-03] (AVG Technologies)
3 ManyCam; C:\Windows\System32\DRIVERS\mcvidrv_x64.sys [44928 2012-07-20] (ManyCam LLC)
3 MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [25928 2012-09-29] (Malwarebytes Corporation)
3 mcaudrv_simple; C:\Windows\System32\drivers\mcaudrv_x64.sys [29696 2012-07-20] (ManyCam LLC)
3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2009-07-15] ()
2 NPF; C:\Windows\System32\Drivers\NPF.sys [35344 2010-06-25] (CACE Technologies, Inc.)
2 Sentinel; C:\Windows\SysWow64\Drivers\Sentinel.sys [73728 2001-06-21] (Rainbow Technologies, Inc.)
3 Sntnlusb; C:\Windows\SysWow64\Drivers\Sntnlusb.sys [20032 2001-06-21] (Rainbow Technologies Inc.)
2 DS1410D; \??\C:\Windows\system32\drivers\ds1410d.sys [x]
==================== NetSvcs (Whitelisted) ====================
==================== One Month Created Files and Folders ========
2012-10-19 19:52 - 2012-10-19 19:52 - 00004608 ____A C:\Users\Vincent\AppData\Local\recently-used.xbel
2012-10-19 11:02 - 2012-10-19 11:02 - 00000000 ____D C:\Users\Vincent\AppData\Local\{212743EC-4D70-4CA6-BB84-CA933A7C5033}
2012-10-19 00:03 - 2012-10-19 00:03 - 00036047 ____A C:\Users\Vincent\Downloads\FRST.txt
2012-10-19 00:00 - 2012-10-19 00:02 - 00000000 ____D C:\FRST
2012-10-19 00:00 - 2012-10-19 00:00 - 01458573 ____A (Farbar) C:\Users\Vincent\Downloads\FRST64 (1).exe
2012-10-18 23:15 - 2012-10-18 23:15 - 00001109 ____A C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2012-10-18 23:15 - 2012-10-18 23:15 - 00000000 ____D C:\Users\Vincent\AppData\Roaming\Malwarebytes
2012-10-18 23:15 - 2012-10-18 23:15 - 00000000 ____D C:\Users\All Users\Malwarebytes
2012-10-18 23:15 - 2012-10-18 23:15 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2012-10-18 23:15 - 2012-09-29 15:54 - 00025928 ____A (Malwarebytes Corporation) C:\Windows\System32\Drivers\mbam.sys
2012-10-18 23:14 - 2012-10-18 23:14 - 09502424 ____A (Malwarebytes Corporation ) C:\Users\Vincent\Downloads\mbam-setup-1.60.1.1000.exe
2012-10-18 22:46 - 2012-10-18 23:55 - 00007632 ____A C:\Users\Vincent\Desktop\avgrep.txt
2012-10-18 20:28 - 2012-10-18 20:28 - 00000000 ____D C:\Users\Vincent\AppData\Local\{2596B2D9-2939-49BE-809B-5040499F8DE5}
2012-10-18 08:27 - 2012-10-18 08:27 - 00000000 ____D C:\Users\Vincent\AppData\Local\{AF8F6DB2-BCEA-4766-8E83-55A0B25238B2}
2012-10-17 20:27 - 2012-10-17 20:27 - 00000000 ____D C:\Users\Vincent\AppData\Local\{FA30AD11-CD24-4D9D-8677-ECAF5F76BC34}
2012-10-17 08:27 - 2012-10-17 08:27 - 00000000 ____D C:\Users\Vincent\AppData\Local\{E91FCF60-5625-41BE-A2AE-058C6FDB8AB3}
2012-10-16 19:01 - 2012-10-16 19:01 - 00000000 ____D C:\Users\Vincent\AppData\Local\{29960B07-F84B-470B-8745-1E772263FC53}
2012-10-16 07:00 - 2012-10-16 07:01 - 00000000 ____D C:\Users\Vincent\AppData\Local\{21DDA171-5825-4632-9E44-AE55E224E34F}
2012-10-15 12:58 - 2012-10-15 12:58 - 00000000 ____D C:\Users\Vincent\AppData\Local\{60D19166-97A9-44EB-AA24-7742D8768CAA}
2012-10-14 18:28 - 2012-10-14 18:28 - 00000000 ____D C:\Users\Vincent\AppData\Local\{DD140107-C969-4040-824C-04C7DFC9109C}
2012-10-13 08:59 - 2012-10-13 08:59 - 00000000 ____D C:\Users\Vincent\AppData\Local\{DC870297-648A-4E8C-96BC-0B06946A646F}
2012-10-12 20:30 - 2012-10-12 20:30 - 00000000 ____D C:\Users\Vincent\AppData\Local\{D6B261FC-A850-46F5-82C3-BC129429A053}
2012-10-12 10:21 - 2012-10-12 10:21 - 00000000 ____D C:\Users\Default\AppData\Roaming\TuneUp Software
2012-10-12 10:21 - 2012-10-12 10:21 - 00000000 ____D C:\Users\Default User\AppData\Roaming\TuneUp Software
2012-10-12 08:29 - 2012-10-12 08:29 - 00000000 ____D C:\Users\Vincent\AppData\Local\{FB7188B6-F109-4E1F-B8E0-90513E4BF9B5}
2012-10-11 20:00 - 2012-10-11 20:00 - 11970272 ____A (ManyCam LLC) C:\Users\Vincent\Downloads\ManyCamSetup.exe
2012-10-11 15:37 - 2012-10-11 15:38 - 00000000 ____D C:\Users\Vincent\AppData\Local\{10971EA7-1CC1-4751-AF85-C62C3EA8FE63}
2012-10-10 21:27 - 2012-10-10 21:27 - 00000000 ____D C:\Users\Vincent\AppData\Local\{4381C485-C5C9-4FC0-985B-17256BC8DEE5}
2012-10-10 13:27 - 2012-10-10 13:27 - 00002533 ____A C:\Users\Public\Desktop\DBSelector.lnk
2012-10-10 13:27 - 2012-10-10 13:27 - 00002533 ____A C:\Users\Public\Desktop\aXionGUI.lnk
2012-10-10 13:27 - 2012-10-10 13:27 - 00002533 ____A C:\Users\Public\Desktop\aXion.lnk
2012-10-10 09:26 - 2012-10-10 09:27 - 00000000 ____D C:\Users\Vincent\AppData\Local\{5CDC406C-2D43-4426-851E-8C7A40295E33}
2012-10-10 09:18 - 2012-10-10 09:18 - 00003664 ____A C:\Users\Vincent\Desktop\RKreport[1].txt
2012-10-10 09:18 - 2012-10-10 09:18 - 00000000 ____D C:\Users\Vincent\Desktop\RK_Quarantine
2012-10-10 09:17 - 2012-10-10 09:17 - 01422336 ____A C:\Users\Vincent\Downloads\RogueKiller.exe
2012-10-10 09:14 - 2012-10-10 09:14 - 01456791 ____A (Farbar) C:\Users\Vincent\Downloads\FRST64.exe
2012-10-10 09:08 - 2012-10-10 09:09 - 00000000 ____D C:\Users\All Users\HitmanPro
2012-10-10 09:08 - 2012-10-10 09:08 - 08962000 ____A (SurfRight B.V.) C:\Users\Vincent\Downloads\HitmanPro36_x64.exe
2012-10-09 21:39 - 2012-10-09 21:41 - 92121088 ____A C:\Users\Vincent\Downloads\avg_arl_cdi_all_120_120823a5226.iso
2012-10-09 21:26 - 2012-10-09 21:26 - 00000000 ____D C:\Users\Vincent\AppData\Local\{540279FD-61AF-44F8-92B6-4E9C8ACE4934}
2012-10-09 20:21 - 2012-10-09 20:21 - 00000000 ____D C:\Users\Vincent\Desktop\avg_arl_ffi_all_120_120823a5226
2012-10-09 20:09 - 2012-10-09 20:11 - 103899007 ____A C:\Users\Vincent\Downloads\avg_arl_ffi_all_120_120823a5226.zip
2012-10-09 19:02 - 2012-10-09 19:02 - 00000000 __SHD C:\Windows\SysWOW64\%APPDATA%
2012-10-09 18:57 - 2012-10-09 18:57 - 00000000 ____D C:\Users\Vincent\Downloads\IBM.Rational.PurifyPlus.v7.0.W.keygen
2012-10-09 18:53 - 2012-10-09 18:53 - 00169910 ____A C:\Users\Vincent\Downloads\IBM.Rational.PurifyPlus.v7.0.W.keygen.zip
2012-10-09 18:14 - 2012-10-09 18:50 - 00000000 ____D C:\Program Files (x86)\Rational
2012-10-09 18:14 - 2012-10-09 18:49 - 00026560 ____A C:\Users\Vincent\AppData\Local\rational_state.log
2012-10-09 09:26 - 2012-10-09 09:26 - 00000000 ____D C:\Users\Vincent\AppData\Local\{8C252A56-0F28-4498-BF79-5EAC8CB8A2AA}
2012-10-08 15:18 - 2012-10-08 15:18 - 00000000 ____D C:\Users\Vincent\AppData\Local\{AF4FE3DA-F8A7-4CE3-866A-D5BA29D0B18F}
2012-10-07 20:56 - 2012-10-07 20:56 - 00000000 ____D C:\Users\Vincent\AppData\Local\{DFC6225C-E187-4345-9777-F91AAA83674C}
2012-10-07 08:55 - 2012-10-07 08:56 - 00000000 ____D C:\Users\Vincent\AppData\Local\{7636EAF4-49FF-4683-8649-E2EE2DB4711F}
2012-10-06 20:55 - 2012-10-06 20:55 - 00000000 ____D C:\Users\Vincent\AppData\Local\{A28611C8-4C17-4CE8-A00D-D85961850959}
2012-10-06 08:55 - 2012-10-06 08:55 - 00000000 ____D C:\Users\Vincent\AppData\Local\{1A9E419C-CE79-4172-B2C9-371017595800}
2012-10-05 15:42 - 2012-10-05 15:43 - 00000000 ____D C:\Users\Vincent\AppData\Local\{CD5EB37A-9C55-46FB-BE33-D482BB9C9B93}
2012-10-04 23:26 - 2012-10-04 23:26 - 00111456 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgmfx64.sys
2012-10-04 23:07 - 2012-10-04 23:08 - 00000000 ____D C:\Users\Vincent\AppData\Local\{EBBFAB05-C8C9-4DFA-A921-58EFB8AF121D}
2012-10-04 22:13 - 2012-10-04 22:13 - 00000000 ____D C:\Users\Vincent\AppData\Roaming\AVG2013
2012-10-04 22:12 - 2012-10-19 11:08 - 00000965 ____A C:\Users\Public\Desktop\AVG 2013.lnk
2012-10-04 22:12 - 2012-10-04 22:12 - 00000000 ____D C:\Users\Vincent\AppData\Roaming\TuneUp Software
2012-10-04 22:12 - 2012-10-04 22:12 - 00000000 ____D C:\Program Files (x86)\AVG Secure Search
2012-10-04 22:11 - 2012-10-09 23:41 - 00000000 ____D C:\Users\All Users\AVG2013
2012-10-04 15:54 - 2012-10-18 22:46 - 00000000 ____D C:\Users\Vincent\AppData\Local\Avg2013
2012-10-04 15:54 - 2012-10-04 15:54 - 00000000 ____D C:\Users\Vincent\AppData\Local\MFAData
2012-10-04 11:07 - 2012-10-04 11:07 - 00000000 ____D C:\Users\Vincent\AppData\Local\{BFF74DD3-7328-468E-8371-B4CD5252DC3E}
2012-10-04 07:25 - 2012-10-03 15:15 - 14906515 ____A C:\Users\Vincent\Desktop\Standard_Pushbacks.zip
2012-10-03 22:13 - 2012-10-03 22:14 - 00000000 ____D C:\Users\Vincent\AppData\Local\{68ED4D9B-4F0F-42EE-94FD-5D08AC580645}
2012-10-03 09:05 - 2012-10-03 09:06 - 00000000 ____D C:\Users\Vincent\AppData\Local\{962B1D9C-0544-4AE1-9784-E0B330F1DD99}
2012-10-02 21:05 - 2012-10-02 21:05 - 00000000 ____D C:\Users\Vincent\AppData\Local\{F1CC3EBE-7E86-4714-B6F7-6F0B42AA0C58}
2012-10-02 09:05 - 2012-10-02 09:05 - 00000000 ____D C:\Users\Vincent\AppData\Local\{50E7C8E2-8B33-4EEE-8FCA-6E3ECE5A234F}
2012-10-01 23:30 - 2012-10-01 23:30 - 00185696 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgldx64.sys
2012-10-01 21:05 - 2012-10-01 21:05 - 00000000 ____D C:\Users\Vincent\AppData\Local\{21BED80B-092F-43E5-BCD7-BF010FC2F1BB}
2012-10-01 20:00 - 2012-10-01 20:00 - 00295751 ____A C:\Users\Vincent\Downloads\DebugView.zip
2012-10-01 20:00 - 2012-10-01 20:00 - 00000000 ____D C:\Users\Vincent\Desktop\DebugView
2012-10-01 09:05 - 2012-10-01 09:07 - 92347544 ____A C:\Users\Vincent\Downloads\2008_03_24_divers 044.avi
2012-10-01 09:05 - 2012-10-01 09:05 - 00000000 ____D C:\Users\Vincent\AppData\Local\{B6616C7E-C3DB-4D80-97AA-EBBE11840E2F}
2012-09-30 16:22 - 2012-09-30 16:23 - 00000000 ____D C:\Users\Vincent\AppData\Local\{15C11C16-9ECA-4C61-BF3B-BA524F41C658}
2012-09-30 00:13 - 2012-09-30 00:13 - 00000000 ____D C:\Users\Vincent\AppData\Local\{C393C812-384C-4753-823E-7425881468BF}
2012-09-29 12:13 - 2012-09-29 12:13 - 00000000 ____D C:\Users\Vincent\AppData\Local\{778A3C3C-ABF9-4ADA-A4FD-9C4C3EE4CFB9}
2012-09-28 23:38 - 2012-08-21 13:01 - 00245760 ____A (Microsoft Corporation) C:\Windows\System32\OxpsConverter.exe
2012-09-28 22:58 - 2012-09-28 22:58 - 00000000 ____D C:\Users\Vincent\AppData\Local\{12BDE522-5678-4995-B859-0F080D849B39}
2012-09-28 10:04 - 2012-09-28 10:04 - 00000000 ____D C:\Users\Vincent\AppData\Local\{77F8D701-B93B-4085-A982-A274D0A0F132}
2012-09-27 22:04 - 2012-09-27 22:04 - 00000000 ____D C:\Users\Vincent\AppData\Local\{08D4CADB-C703-4737-96C0-2F2477064E1C}
2012-09-27 18:13 - 2012-09-26 00:31 - 10187660 ____A C:\Users\Vincent\Desktop\aXMessages2.xls
2012-09-27 18:13 - 2012-09-26 00:25 - 10014509 ____A C:\Users\Vincent\Desktop\aXMessages1.xls
2012-09-27 18:13 - 2012-09-26 00:24 - 01690389 ____A C:\Users\Vincent\Desktop\aXMessages3.xls
2012-09-27 10:04 - 2012-09-27 10:04 - 00000000 ____D C:\Users\Vincent\AppData\Local\{DBDDC635-075B-4015-88D4-AEC1CC013263}
2012-09-27 00:55 - 2012-09-27 01:18 - 00021811 ____A C:\Users\Vincent\Documents\BCX 10 ans.wlmp
2012-09-26 20:29 - 2012-09-26 20:29 - 00000000 ____D C:\Users\Vincent\AppData\Local\{D9BC5BE4-05F7-47F6-BC20-57D2E22EB37C}
2012-09-26 08:28 - 2012-09-26 08:29 - 00000000 ____D C:\Users\Vincent\AppData\Local\{5443E003-59DB-4C6C-ADD5-E3072CC9F3CE}
2012-09-25 08:29 - 2012-09-25 08:29 - 00000000 ____D C:\Users\Vincent\AppData\Local\{A1FAD184-F7E2-48C4-A5FD-B443FA950F1A}
2012-09-24 08:50 - 2012-09-24 08:50 - 00000000 ____D C:\Users\Vincent\AppData\Local\{DCC3C874-2DE3-4FF6-8C9C-5BCE300767AC}
2012-09-24 00:19 - 2012-09-27 01:39 - 00000000 ____D C:\Program Files (x86)\TorsionBlend
2012-09-24 00:18 - 2012-09-24 00:18 - 00000000 ____D C:\Users\Vincent\Downloads\torsionblend_trial
2012-09-24 00:17 - 2012-09-24 00:17 - 15468988 ____A C:\Users\Vincent\Downloads\torsionblend_trial.7z
2012-09-23 20:50 - 2012-09-23 20:50 - 00000000 ____D C:\Users\Vincent\AppData\Local\{696465D9-E20C-44DD-9D8A-0BF29C0C9474}
2012-09-23 16:26 - 2012-08-24 03:15 - 17810944 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2012-09-23 16:26 - 2012-08-24 02:39 - 10925568 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2012-09-23 16:26 - 2012-08-24 02:31 - 02312704 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2012-09-23 16:26 - 2012-08-24 02:22 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2012-09-23 16:26 - 2012-08-24 02:21 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2012-09-23 16:26 - 2012-08-24 02:20 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2012-09-23 16:26 - 2012-08-24 02:18 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2012-09-23 16:26 - 2012-08-24 02:17 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2012-09-23 16:26 - 2012-08-24 02:14 - 00816640 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2012-09-23 16:26 - 2012-08-24 02:14 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2012-09-23 16:26 - 2012-08-24 02:13 - 00599040 ____A (Microsoft Corporation) C:\Windows\System32\vbscript.dll
2012-09-23 16:26 - 2012-08-24 02:12 - 02144768 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2012-09-23 16:26 - 2012-08-24 02:11 - 00729088 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2012-09-23 16:26 - 2012-08-24 02:10 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2012-09-23 16:26 - 2012-08-24 02:09 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2012-09-23 16:26 - 2012-08-24 02:04 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2012-09-23 16:26 - 2012-08-23 23:27 - 12319744 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2012-09-23 16:26 - 2012-08-23 23:03 - 09738240 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2012-09-23 16:26 - 2012-08-23 22:59 - 01800704 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2012-09-23 16:26 - 2012-08-23 22:51 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2012-09-23 16:26 - 2012-08-23 22:51 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2012-09-23 16:26 - 2012-08-23 22:51 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2012-09-23 16:26 - 2012-08-23 22:49 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2012-09-23 16:26 - 2012-08-23 22:48 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2012-09-23 16:26 - 2012-08-23 22:47 - 00717824 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2012-09-23 16:26 - 2012-08-23 22:47 - 00420864 ____A (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2012-09-23 16:26 - 2012-08-23 22:47 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2012-09-23 16:26 - 2012-08-23 22:45 - 00607744 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2012-09-23 16:26 - 2012-08-23 22:44 - 01793024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2012-09-23 16:26 - 2012-08-23 22:44 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2012-09-23 16:26 - 2012-08-23 22:43 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2012-09-23 16:26 - 2012-08-23 22:40 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2012-09-23 08:50 - 2012-09-23 08:50 - 00000000 ____D C:\Users\Vincent\AppData\Local\{77CFEE0C-46D1-4885-B7A3-C1B754C6DAB1}
2012-09-22 20:50 - 2012-09-22 20:50 - 00000000 ____D C:\Users\Vincent\AppData\Local\{F4883C55-63D0-4CAB-AC4A-3DDE227BE255}
2012-09-21 22:35 - 2012-09-21 22:35 - 00000000 ____D C:\Users\Vincent\AppData\Local\{91B38821-3930-40A4-A73A-A66B507C2B78}
2012-09-21 00:00 - 2012-09-21 00:00 - 00000000 ____D C:\Users\Vincent\AppData\Local\{B1669182-A816-43CC-A14D-210A38299F87}
2012-09-20 23:46 - 2012-09-20 23:46 - 00225120 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgloga.sys
2012-09-20 23:46 - 2012-09-20 23:46 - 00200032 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgtdia.sys
2012-09-20 23:45 - 2012-09-20 23:45 - 00061792 ____A (AVG Technologies CZ, s.r.o. ) C:\Windows\System32\Drivers\avgidsha.sys
2012-09-20 10:03 - 2012-09-20 10:03 - 00000000 ____D C:\Users\Vincent\AppData\Local\{FEB60193-628A-4435-A38A-26A70E23AD6B}
==================== 3 Months Modified Files ==================
2012-10-20 11:44 - 2012-07-12 17:00 - 00000035 ____A C:\Users\Public\Documents\AtherosServiceConfig.ini
2012-10-20 11:44 - 2012-07-12 16:14 - 00000916 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-355343389-3714370867-124594232-1001UA.job
2012-10-20 07:53 - 2012-07-12 16:14 - 00000864 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-355343389-3714370867-124594232-1001Core.job
2012-10-19 19:52 - 2012-10-19 19:52 - 00004608 ____A C:\Users\Vincent\AppData\Local\recently-used.xbel
2012-10-19 18:44 - 2009-07-13 20:45 - 00013984 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2012-10-19 18:44 - 2009-07-13 20:45 - 00013984 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2012-10-19 18:43 - 2009-07-13 21:13 - 00961518 ____A C:\Windows\System32\PerfStringBackup.INI
2012-10-19 18:37 - 2009-07-13 21:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2012-10-19 18:37 - 2009-07-13 20:51 - 00033717 ____A C:\Windows\setupact.log
2012-10-19 11:08 - 2012-10-04 22:12 - 00000965 ____A C:\Users\Public\Desktop\AVG 2013.lnk
2012-10-19 00:03 - 2012-10-19 00:03 - 00036047 ____A C:\Users\Vincent\Downloads\FRST.txt
2012-10-19 00:00 - 2012-10-19 00:00 - 01458573 ____A (Farbar) C:\Users\Vincent\Downloads\FRST64 (1).exe
2012-10-18 23:55 - 2012-10-18 22:46 - 00007632 ____A C:\Users\Vincent\Desktop\avgrep.txt
2012-10-18 23:42 - 2012-07-12 16:58 - 00364304 ____A C:\Windows\PFRO.log
2012-10-18 23:15 - 2012-10-18 23:15 - 00001109 ____A C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2012-10-18 23:14 - 2012-10-18 23:14 - 09502424 ____A (Malwarebytes Corporation ) C:\Users\Vincent\Downloads\mbam-setup-1.60.1.1000.exe
2012-10-18 23:11 - 2012-07-12 16:02 - 01563731 ____A C:\Windows\WindowsUpdate.log
2012-10-11 20:00 - 2012-10-11 20:00 - 11970272 ____A (ManyCam LLC) C:\Users\Vincent\Downloads\ManyCamSetup.exe
2012-10-10 13:27 - 2012-10-10 13:27 - 00002533 ____A C:\Users\Public\Desktop\DBSelector.lnk
2012-10-10 13:27 - 2012-10-10 13:27 - 00002533 ____A C:\Users\Public\Desktop\aXionGUI.lnk
2012-10-10 13:27 - 2012-10-10 13:27 - 00002533 ____A C:\Users\Public\Desktop\aXion.lnk
2012-10-10 09:18 - 2012-10-10 09:18 - 00003664 ____A C:\Users\Vincent\Desktop\RKreport[1].txt
2012-10-10 09:17 - 2012-10-10 09:17 - 01422336 ____A C:\Users\Vincent\Downloads\RogueKiller.exe
2012-10-10 09:14 - 2012-10-10 09:14 - 01456791 ____A (Farbar) C:\Users\Vincent\Downloads\FRST64.exe
2012-10-10 09:08 - 2012-10-10 09:08 - 08962000 ____A (SurfRight B.V.) C:\Users\Vincent\Downloads\HitmanPro36_x64.exe
2012-10-09 21:41 - 2012-10-09 21:39 - 92121088 ____A C:\Users\Vincent\Downloads\avg_arl_cdi_all_120_120823a5226.iso
2012-10-09 20:11 - 2012-10-09 20:09 - 103899007 ____A C:\Users\Vincent\Downloads\avg_arl_ffi_all_120_120823a5226.zip
2012-10-09 18:53 - 2012-10-09 18:53 - 00169910 ____A C:\Users\Vincent\Downloads\IBM.Rational.PurifyPlus.v7.0.W.keygen.zip
2012-10-09 18:49 - 2012-10-09 18:14 - 00026560 ____A C:\Users\Vincent\AppData\Local\rational_state.log
2012-10-04 23:26 - 2012-10-04 23:26 - 00111456 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgmfx64.sys
2012-10-03 15:15 - 2012-10-04 07:25 - 14906515 ____A C:\Users\Vincent\Desktop\Standard_Pushbacks.zip
2012-10-01 23:30 - 2012-10-01 23:30 - 00185696 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgldx64.sys
2012-10-01 20:00 - 2012-10-01 20:00 - 00295751 ____A C:\Users\Vincent\Downloads\DebugView.zip
2012-10-01 09:07 - 2012-10-01 09:05 - 92347544 ____A C:\Users\Vincent\Downloads\2008_03_24_divers 044.avi
2012-09-29 15:54 - 2012-10-18 23:15 - 00025928 ____A (Malwarebytes Corporation) C:\Windows\System32\Drivers\mbam.sys
2012-09-29 12:13 - 2009-07-13 20:45 - 00310896 ____A C:\Windows\System32\FNTCACHE.DAT
2012-09-27 11:52 - 2012-07-12 16:14 - 00067872 ____A C:\Users\Vincent\AppData\Local\GDIPFONTCACHEV1.DAT
2012-09-27 01:18 - 2012-09-27 00:55 - 00021811 ____A C:\Users\Vincent\Documents\BCX 10 ans.wlmp
2012-09-26 00:31 - 2012-09-27 18:13 - 10187660 ____A C:\Users\Vincent\Desktop\aXMessages2.xls
2012-09-26 00:25 - 2012-09-27 18:13 - 10014509 ____A C:\Users\Vincent\Desktop\aXMessages1.xls
2012-09-26 00:24 - 2012-09-27 18:13 - 01690389 ____A C:\Users\Vincent\Desktop\aXMessages3.xls
2012-09-24 00:17 - 2012-09-24 00:17 - 15468988 ____A C:\Users\Vincent\Downloads\torsionblend_trial.7z
2012-09-20 23:46 - 2012-09-20 23:46 - 00225120 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgloga.sys
2012-09-20 23:46 - 2012-09-20 23:46 - 00200032 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgtdia.sys
2012-09-20 23:45 - 2012-09-20 23:45 - 00061792 ____A (AVG Technologies CZ, s.r.o. ) C:\Windows\System32\Drivers\avgidsha.sys
2012-09-19 01:20 - 2012-07-12 16:17 - 00696240 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2012-09-19 01:20 - 2012-07-12 16:17 - 00073136 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2012-09-14 01:49 - 2012-09-14 01:44 - 183721414 ____A C:\Users\Vincent\Downloads\RATL_PURIFYPLUS_WIN_EVAL_V7.0.1_ML.zip
2012-09-14 01:37 - 2012-09-14 01:37 - 00000044 ____A C:\Users\Vincent\dlmgr_.pro
2012-09-13 23:05 - 2012-09-13 23:05 - 00040800 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgrkx64.sys
2012-09-12 23:11 - 2012-09-12 23:11 - 00151904 ____A (AVG Technologies CZ, s.r.o. ) C:\Windows\System32\Drivers\avgidsdrivera.sys
2012-09-06 20:29 - 2012-09-06 20:29 - 00000020 __ASH C:\Users\VaultIndexAppPool\ntuser.ini
2012-09-06 13:07 - 2012-09-06 13:07 - 00001880 ____A C:\Users\Public\Desktop\Vault Professional Client.lnk
2012-09-06 13:06 - 2012-09-06 13:06 - 24069632 ____A C:\Users\Vincent\Downloads\VaultProClient.msi
2012-09-06 13:05 - 2012-09-06 13:05 - 00000020 ___SH C:\Users\VaultNotifyAppPool\ntuser.ini
2012-09-06 12:57 - 2012-09-06 12:57 - 00000020 ___SH C:\Users\VaultAppPool\ntuser.ini
2012-09-06 12:57 - 2012-09-06 12:57 - 00000020 ___SH C:\Users\DefaultAppPool\ntuser.ini
2012-09-06 12:40 - 2012-09-06 12:36 - 185048928 ____A (Microsoft Corporation) C:\Users\Vincent\Downloads\SQLManagementStudio_x64_ENU.exe
2012-09-03 23:54 - 2012-09-03 23:54 - 00000970 ____A C:\Users\Vincent\Desktop\Downloads - Shortcut.lnk
2012-09-03 23:53 - 2012-09-03 23:53 - 00000020 __ASH C:\Users\Classic .NET AppPool\ntuser.ini
2012-09-03 23:53 - 2012-09-03 23:48 - 00044201 ____A C:\Windows\iis7.log
2012-09-03 23:53 - 2012-07-12 19:18 - 00933150 ____A C:\Windows\SysWOW64\PerfStringBackup.INI
2012-09-03 23:51 - 2012-09-03 23:51 - 00246760 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2012-09-03 23:51 - 2012-09-03 23:51 - 00174056 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2012-09-03 23:51 - 2012-09-03 23:51 - 00174056 ____A (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2012-09-03 23:51 - 2012-09-03 23:51 - 00095208 ____A (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2012-09-03 23:51 - 2012-07-12 16:07 - 00821736 ____A (Oracle Corporation) C:\Windows\SysWOW64\npDeployJava1.dll
2012-09-03 23:51 - 2012-07-12 16:07 - 00746984 ____A (Oracle Corporation) C:\Windows\SysWOW64\deployJava1.dll
2012-09-03 23:34 - 2012-09-03 23:34 - 39076864 ____A C:\Users\Vincent\Downloads\VaultProServer64_6_0_0_30477.msi
2012-09-03 20:14 - 2012-09-03 20:14 - 00031080 ____A (AVG Technologies) C:\Windows\System32\Drivers\avgtpx64.sys
2012-09-01 20:42 - 2012-07-12 18:53 - 00306415 ____N C:\Windows\Minidump\090212-18844-01.dmp
2012-09-01 20:07 - 2012-07-13 10:10 - 00000667 ____A C:\Users\Vincent\Desktop\aXion.sln - Shortcut.lnk
2012-08-30 20:43 - 2012-07-12 16:48 - 64462936 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
2012-08-29 21:44 - 2012-08-29 21:44 - 00001248 ____A C:\Users\Public\Desktop\NVIDIA Compute Visual Profiler v4.0.lnk
2012-08-27 09:32 - 2012-08-27 09:16 - 1000886272 ____A C:\Users\Vincent\Downloads\envi50win64_setup.exe
2012-08-24 03:15 - 2012-09-23 16:26 - 17810944 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2012-08-24 02:39 - 2012-09-23 16:26 - 10925568 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2012-08-24 02:31 - 2012-09-23 16:26 - 02312704 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2012-08-24 02:22 - 2012-09-23 16:26 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2012-08-24 02:21 - 2012-09-23 16:26 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2012-08-24 02:20 - 2012-09-23 16:26 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2012-08-24 02:18 - 2012-09-23 16:26 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2012-08-24 02:17 - 2012-09-23 16:26 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2012-08-24 02:14 - 2012-09-23 16:26 - 00816640 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2012-08-24 02:14 - 2012-09-23 16:26 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2012-08-24 02:13 - 2012-09-23 16:26 - 00599040 ____A (Microsoft Corporation) C:\Windows\System32\vbscript.dll
2012-08-24 02:12 - 2012-09-23 16:26 - 02144768 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2012-08-24 02:11 - 2012-09-23 16:26 - 00729088 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2012-08-24 02:10 - 2012-09-23 16:26 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2012-08-24 02:09 - 2012-09-23 16:26 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2012-08-24 02:04 - 2012-09-23 16:26 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2012-08-23 23:27 - 2012-09-23 16:26 - 12319744 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2012-08-23 23:03 - 2012-09-23 16:26 - 09738240 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2012-08-23 22:59 - 2012-09-23 16:26 - 01800704 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2012-08-23 22:51 - 2012-09-23 16:26 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2012-08-23 22:51 - 2012-09-23 16:26 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2012-08-23 22:51 - 2012-09-23 16:26 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2012-08-23 22:49 - 2012-09-23 16:26 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2012-08-23 22:48 - 2012-09-23 16:26 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2012-08-23 22:47 - 2012-09-23 16:26 - 00717824 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2012-08-23 22:47 - 2012-09-23 16:26 - 00420864 ____A (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2012-08-23 22:47 - 2012-09-23 16:26 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2012-08-23 22:45 - 2012-09-23 16:26 - 00607744 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2012-08-23 22:44 - 2012-09-23 16:26 - 01793024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2012-08-23 22:44 - 2012-09-23 16:26 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2012-08-23 22:43 - 2012-09-23 16:26 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2012-08-23 22:40 - 2012-09-23 16:26 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2012-08-22 10:12 - 2012-09-19 01:21 - 01913200 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys
2012-08-22 10:12 - 2012-09-19 01:21 - 00950128 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ndis.sys
2012-08-22 10:12 - 2012-09-19 01:21 - 00376688 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\netio.sys
2012-08-22 10:12 - 2012-09-19 01:21 - 00288624 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\FWPKCLNT.SYS
2012-08-21 13:01 - 2012-09-28 23:38 - 00245760 ____A (Microsoft Corporation) C:\Windows\System32\OxpsConverter.exe
2012-08-18 23:41 - 2012-08-18 23:41 - 00000000 ___AH C:\Users\Vincent\Documents\Default.rdp
2012-08-17 20:03 - 2012-08-17 20:03 - 14048031 ____A C:\Users\Vincent\Downloads\Vancouver_ETM_RGB.zip
2012-08-16 23:51 - 2012-08-16 23:51 - 00027520 ____A C:\Users\Vincent\AppData\Local\dt.dat
2012-08-16 21:39 - 2012-07-12 18:53 - 00306287 ____N C:\Windows\Minidump\081712-20326-01.dmp
2012-08-09 18:35 - 2012-08-09 18:33 - 00001993 ____A C:\Users\Vincent\Desktop\Computer.lnk
2012-08-02 09:58 - 2012-09-19 01:21 - 00574464 ____A (Microsoft Corporation) C:\Windows\System32\d3d10level9.dll
2012-08-02 08:57 - 2012-09-19 01:21 - 00490496 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2012-07-26 09:52 - 2012-07-13 21:36 - 00007368 ____A C:\Windows\DirectX.log
2012-07-24 19:12 - 2012-07-12 18:53 - 00305455 ____N C:\Windows\Minidump\072412-22276-01.dmp
ZeroAccess:
C:\Windows\Installer\{e2b02ccd-6083-4afe-10b5-4d16529e2728}
C:\Windows\Installer\{e2b02ccd-6083-4afe-10b5-4d16529e2728}\@
C:\Windows\Installer\{e2b02ccd-6083-4afe-10b5-4d16529e2728}\L
C:\Windows\Installer\{e2b02ccd-6083-4afe-10b5-4d16529e2728}\U
C:\Windows\Installer\{e2b02ccd-6083-4afe-10b5-4d16529e2728}\L\00000004.@
C:\Windows\Installer\{e2b02ccd-6083-4afe-10b5-4d16529e2728}\L\201d3dde
C:\Windows\Installer\{e2b02ccd-6083-4afe-10b5-4d16529e2728}\U\00000004.@
C:\Windows\Installer\{e2b02ccd-6083-4afe-10b5-4d16529e2728}\U\00000008.@
C:\Windows\Installer\{e2b02ccd-6083-4afe-10b5-4d16529e2728}\U\000000cb.@
C:\Windows\Installer\{e2b02ccd-6083-4afe-10b5-4d16529e2728}\U\80000000.@
C:\Windows\Installer\{e2b02ccd-6083-4afe-10b5-4d16529e2728}\U\80000032.@
C:\Windows\Installer\{e2b02ccd-6083-4afe-10b5-4d16529e2728}\U\80000064.@
ZeroAccess:
C:\Windows\assembly\GAC_32\Desktop.ini
ZeroAccess:
C:\Windows\assembly\GAC_64\Desktop.ini
==================== Known DLLs (Whitelisted) =================
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe 50BEA589F7D7958BDD2528A8F69D05CC ZeroAccess <==== ATTENTION!.
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
==================== EXE ASSOCIATION =====================
HKLM\...\.exe: exefile => OK
HKLM\...\exefile\DefaultIcon: %1 => OK
HKLM\...\exefile\open\command: "%1" %* => OK
==================== Restore Points =========================
Restore point made on: 2012-10-19 14:36:33
==================== Memory info ===========================
Percentage of memory in use: 6%
Total physical RAM: 22519.12 MB
Available physical RAM: 21118.05 MB
Total Pagefile: 22517.27 MB
Available Pagefile: 21106.95 MB
Total Virtual: 8192 MB
Available Virtual: 8191.9 MB
==================== Partitions =============================
1 Drive c: () (Fixed) (Total:74.53 GB) (Free:6.88 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
2 Drive d: (geotextures) (Fixed) (Total:2794.39 GB) (Free:594.36 GB) NTFS
3 Drive e: () (Fixed) (Total:1862.92 GB) (Free:606.06 GB) NTFS
5 Drive g: (U3 System) (CDROM) (Total:0.01 GB) (Free:0 GB) CDFS
6 Drive h: () (Removable) (Total:1.9 GB) (Free:0.91 GB) FAT
7 Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS
Disk ### Status Size Free Dyn Gpt
-------- ------------- ------- ------- --- ---
Disk 0 Online 74 GB 1024 KB
Disk 1 Online 2794 GB 0 B *
Disk 2 Online 1863 GB 100 MB
Disk 3 Online 1952 MB 0 B
Partitions of Disk 0:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 74 GB 31 KB
==================================================================================
Disk: 0
Partition 1
Type : 07
Hidden: No
Active: Yes
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 2 C NTFS Partition 74 GB Healthy
=========================================================
Partitions of Disk 1:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Reserved 128 MB 17 KB
Partition 2 Primary 2794 GB 129 MB
==================================================================================
Disk: 1
Partition 1
Type : e3c9e316-0b5c-4db8-817d-f92df00215ae
Hidden : Yes
Required: No
Attrib : 0000000000000000
There is no volume associated with this partition.
=========================================================
Disk: 1
Partition 2
Type : ebd0a0a2-b9e5-4433-87c0-68b6b72699c7
Hidden : No
Required: No
Attrib : 0000000000000000
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 3 D geotextures NTFS Partition 2794 GB Healthy
=========================================================
Partitions of Disk 2:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 1862 GB 101 MB
==================================================================================
Disk: 2
Partition 1
Type : 07
Hidden: No
Active: No
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 4 E NTFS Partition 1862 GB Healthy
=========================================================
Partitions of Disk 3:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 1950 MB 122 KB
==================================================================================
Disk: 3
Partition 1
Type : 06
Hidden: No
Active: No
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 5 H FAT Removable 1950 MB Healthy
=========================================================
Last Boot: 2012-10-16 07:34
==================== End Of Log =============================
Thanks again
