Continued from last post . . .
And then I ran FRST64, here's the LOG:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 22-05-2013 01
Ran by FRAZ (administrator) on 29-05-2013 19:09:05
Running from C:\Users\FRAZ\Desktop
Windows 7 Ultimate (X64) OS Language: English(US)
Internet Explorer Version 9
Boot Mode: Normal
==================== Processes (Whitelisted) =================
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [ACPW06EN] "C:\Program Files\ACD Systems\ACDSee Pro\6.0\ACDSeePro6InTouch2.exe" /pid ACPW06EN [1231992 2012-08-31] (ACD Systems)
HKCU\...\Run: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe" [267056 2011-10-09] (BitTorrent, Inc.)
HKCU\...\Run: [EPSON Stylus Photo R220 Series] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIAIA.EXE /FU "C:\Windows\TEMP\E_S6681.tmp" /EF "HKCU" [148 2012-12-16] ()
HKLM-x32\...\Run: [AVP] "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe" [356376 2012-11-13] (Kaspersky Lab ZAO)
HKLM-x32\...\Run: [ACPW05EN] "C:\Program Files (x86)\ACD Systems\ACDSee Pro\5.0\ACDSeeProInTouch2.exe" /pid ACPW05EN [822384 2011-09-20] (ACD Systems)
HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [252848 2012-07-03] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [958576 2013-04-04] (Adobe Systems Incorporated)
Startup: C:\ProgramData\Start Menu\Programs\Startup\iReboot 1.1.1.lnk
ShortcutTarget: iReboot 1.1.1.lnk -> C:\Program Files (x86)\NeoSmart Technologies\iReboot\iReboot.exe (NeoSmart Technologies)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://google.co.uk/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache =
http://uk.msn.com/?ocid=iehp
HKCU SearchScopes: DefaultScope {829EA780-935C-4A2F-92FC-73E858B5C6E1} URL =
http://www.google.co.uk/search?hl=en&q={searchTerms}&meta=
SearchScopes: HKCU - {829EA780-935C-4A2F-92FC-73E858B5C6E1} URL =
http://www.google.co.uk/search?hl=en&q={searchTerms}&meta=
SearchScopes: HKCU - {AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8} URL =
http://www.daemon-search.com/search?q={searchTerms}
BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
Toolbar: HKLM - DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll ()
Toolbar: HKLM-x32 - DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll ()
Toolbar: HKLM-x32 - Delta Toolbar - {82E1477C-B154-48D3-9891-33D83C26BCD3} - C:\Program Files (x86)\Delta\delta\1.8.16.16\deltaTlbr.dll (Delta-search.com)
Toolbar: HKCU - DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll ()
PDF: HKLM {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\system32\urlmon.dll (Microsoft Corporation)
Handler-x32: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\syswow64\urlmon.dll (Microsoft Corporation)
Hosts: 127.0.0.1 activate.adobe.com
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF ProfilePath: C:\Users\FRAZ\AppData\Roaming\Mozilla\Firefox\Profiles\usfkuo0s.default
FF Homepage: user_pref("browser.startup.homepage", "");
FF SelectedSearchEngine: user_pref("browser.search.selectedEngine", "");
FF Plugin-x32:
google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.11.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.11.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
==================== Services (Whitelisted) =================
R2 AcrSch2Svc; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [891432 2009-09-12] (Acronis)
S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [68096 2012-09-15] ()
S2 afcdpsrv; C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [2326920 2011-10-09] (Acronis)
S2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe [356376 2012-11-13] (Kaspersky Lab ZAO)
S3 BITS; C:\Windows\System32\qmgr.dll [848384 2009-07-14] ()
S2 iReboot; C:\Program Files (x86)\NeoSmart Technologies\iReboot\iRebootd.exe [17408 2009-09-15] ()
S3 Macromedia Licensing Service; C:\Program Files (x86)\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe [68096 2012-09-15] ()
S2 PCLEPCI; C:\Windows\SysWOW64\drivers\pclepci.sys [14165 2005-02-09] (Pinnacle Systems GmbH)
==================== Drivers (Whitelisted) ====================
S3 61883; C:\Windows\System32\DRIVERS\61883.sys [60288 2009-07-14] (Microsoft Corporation)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458584 2012-06-19] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [620128 2013-04-22] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [28504 2012-08-02] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29016 2012-09-17] (Kaspersky Lab)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29528 2012-09-17] (Kaspersky Lab)
R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [55056 2013-04-22] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178448 2013-04-22] (Kaspersky Lab ZAO)
R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [8192 2005-03-29] ()
S3 WimFltr; C:\Windows\SysWow64\DRIVERS\wimfltr.sys [128104 2006-11-02] (Microsoft Corporation)
R0 snapman; system32\DRIVERS\snapman.sys [x]
R0 tdrpman251; system32\DRIVERS\tdrpm251.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-05-29 19:08 - 2013-05-29 19:08 - 00012088 ____A C:\Users\FRAZ\Desktop\Rkill.txt
2013-05-29 18:11 - 2013-05-29 18:11 - 00010543 ____A C:\Users\FRAZ\Desktop\Addition.txt
2013-05-29 18:11 - 2013-05-29 18:11 - 00000184 ____A C:\Users\FRAZ\Desktop\Result.txt
2013-05-29 18:08 - 2013-05-29 18:08 - 00000000 ___SD C:\fraz
2013-05-29 18:04 - 2013-05-29 18:04 - 00000000 ____D C:\Users\FRAZ\Desktop\rkill
2013-05-29 18:00 - 2013-05-29 17:31 - 05073804 ____R (Swearware) C:\Users\FRAZ\Desktop\fraz.exe
2013-05-29 17:37 - 2013-05-29 17:13 - 00004602 ____A C:\Users\FRAZ\Desktop\combo fix - how to run etc.txt
2013-05-29 17:18 - 2013-05-29 17:18 - 01796736 ____A (Bleeping Computer, LLC) C:\Users\FRAZ\Desktop\rkill.exe
2013-05-29 01:25 - 2013-05-29 01:25 - 00000000 ____D C:\_OTL
2013-05-28 22:41 - 2013-05-28 22:41 - 00111160 ____A C:\OTL.Txt
2013-05-28 12:29 - 2013-05-27 23:21 - 00003946 ____A C:\Z - WINDOWS RECOVERY.txt
2013-05-28 04:18 - 2013-05-28 04:18 - 00000000 ____D C:\Windows\System32\config\HiveBackup
2013-05-25 07:58 - 2013-05-23 11:17 - 01878472 ____A (Farbar) C:\Users\FRAZ\Desktop\FRST64.exe
2013-05-23 19:40 - 2013-05-25 17:15 - 00000000 ____D C:\FRST
2013-05-23 14:40 - 2013-05-23 14:40 - 02237968 ____A (Kaspersky Lab ZAO) C:\Users\FRAZ\Desktop\tdsskiller.exe
2013-05-23 14:24 - 2013-05-23 14:24 - 00000000 ____D C:\Windows\erdnt
2013-05-23 14:24 - 2013-05-23 14:24 - 00000000 ____D C:\Qoobox
2013-05-23 14:20 - 2013-05-23 14:12 - 00321416 ____A (ESET) C:\ESETSirefefCleaner.exe
2013-05-17 19:11 - 2013-05-17 19:11 - 00000000 __SHD C:\found.000
2013-05-16 14:21 - 2013-05-16 19:10 - 00000000 ____D C:\Users\FRAZ\Desktop\family photos spain
2013-05-15 07:28 - 2013-05-15 07:28 - 00300768 ____A C:\Windows\Minidump\051513-27908-01.dmp
2013-05-13 00:03 - 2013-05-13 00:04 - 00000000 ____D C:\Users\FRAZ\Desktop\Panasonic Camcorder photo test
2013-05-12 23:54 - 2013-05-12 23:55 - 00000000 ____D C:\Users\FRAZ\Desktop\FashionRingtones
2013-05-12 16:04 - 2013-05-12 16:04 - 00000952 ____A C:\Users\FRAZ\Desktop\HD Tune.lnk
2013-05-12 16:04 - 2013-05-12 16:04 - 00000000 ____D C:\Program Files (x86)\HD Tune
2013-05-11 12:29 - 2013-05-11 12:34 - 00000000 ____D C:\Users\FRAZ\Desktop\moby northern
2013-05-11 12:29 - 2013-05-03 23:58 - 09093237 ____N C:\Users\FRAZ\Desktop\20130503_235820.mp4
2013-05-11 12:29 - 2013-05-03 23:05 - 245591627 ____N C:\Users\FRAZ\Desktop\20130503_230306.mp4
2013-05-11 12:29 - 2013-05-03 23:02 - 71031828 ____N C:\Users\FRAZ\Desktop\20130503_230220.mp4
2013-05-11 10:16 - 2013-05-11 10:16 - 00000000 ___HD C:\Users\Public\[Originals]
2013-05-11 09:54 - 2013-05-11 09:54 - 00000000 ____D C:\Users\FRAZ\Documents\Adobe
2013-05-11 09:48 - 2013-05-11 09:48 - 00002077 ____A C:\Users\Public\Desktop\Lightroom 4.3 64-bit.lnk
2013-05-11 09:48 - 2013-05-11 09:48 - 00002077 ____A C:\ProgramData\Desktop\Lightroom 4.3 64-bit.lnk
2013-05-11 09:36 - 2013-05-11 09:36 - 00000000 ____D C:\Users\FRAZ\Desktop\Adobe
2013-05-09 08:17 - 2013-05-09 08:17 - 00000000 ____D C:\Windows\SysWOW64\searchplugins
2013-05-09 08:17 - 2013-05-09 08:17 - 00000000 ____D C:\Windows\SysWOW64\Extensions
2013-05-07 14:30 - 2013-05-07 14:30 - 00001072 ____A C:\Users\Public\Desktop\YTD YouTube Downloader & Converter.lnk
2013-05-07 14:30 - 2013-05-07 14:30 - 00001072 ____A C:\ProgramData\Desktop\YTD YouTube Downloader & Converter.lnk
2013-05-07 14:30 - 2013-05-07 14:30 - 00000000 ____D C:\ProgramData\YTD YouTube Downloader & Converter
2013-05-07 14:30 - 2013-05-07 14:30 - 00000000 ____D C:\ProgramData\Application Data\YTD YouTube Downloader & Converter
2013-04-30 10:44 - 2013-04-30 10:44 - 00001388 ____A C:\Users\Public\Desktop\Free Video Flip and Rotate.lnk
2013-04-30 10:44 - 2013-04-30 10:44 - 00001388 ____A C:\ProgramData\Desktop\Free Video Flip and Rotate.lnk
2013-04-30 10:44 - 2013-04-30 10:44 - 00001265 ____A C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2013-04-30 10:44 - 2013-04-30 10:44 - 00001265 ____A C:\ProgramData\Desktop\DVDVideoSoft Free Studio.lnk
2013-04-30 10:44 - 2013-04-30 10:44 - 00000000 ____D C:\Users\FRAZ\Application Data\DVDVideoSoft
2013-04-30 10:44 - 2013-04-30 10:44 - 00000000 ____D C:\Users\FRAZ\AppData\Roaming\DVDVideoSoft
2013-04-30 10:44 - 2013-04-30 10:44 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft
==================== One Month Modified Files and Folders =======
2013-05-29 19:08 - 2013-05-29 19:08 - 00012088 ____A C:\Users\FRAZ\Desktop\Rkill.txt
2013-05-29 19:08 - 2011-10-08 22:41 - 02068570 ____A C:\Windows\WindowsUpdate.log
2013-05-29 19:08 - 2009-07-14 06:08 - 00032608 ____A C:\Windows\Tasks\SCHEDLGU.TXT
2013-05-29 19:05 - 2012-09-15 09:17 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2013-05-29 19:05 - 2012-09-15 09:17 - 00000000 ____D C:\ProgramData\Application Data\Kaspersky Lab
2013-05-29 19:05 - 2011-10-09 00:31 - 00000000 ____D C:\Users\FRAZ\Application Data\uTorrent
2013-05-29 19:05 - 2011-10-09 00:31 - 00000000 ____D C:\Users\FRAZ\AppData\Roaming\uTorrent
2013-05-29 19:05 - 2009-07-14 06:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2013-05-29 19:04 - 2011-10-08 23:59 - 00000000 ____D C:\ProgramData\NVIDIA
2013-05-29 19:04 - 2011-10-08 23:59 - 00000000 ____D C:\ProgramData\Application Data\NVIDIA
2013-05-29 19:04 - 2003-12-01 13:31 - 00072120 ____A C:\Windows\setupact.log
2013-05-29 18:11 - 2013-05-29 18:11 - 00010543 ____A C:\Users\FRAZ\Desktop\Addition.txt
2013-05-29 18:11 - 2013-05-29 18:11 - 00000184 ____A C:\Users\FRAZ\Desktop\Result.txt
2013-05-29 18:08 - 2013-05-29 18:08 - 00000000 ___SD C:\fraz
2013-05-29 18:04 - 2013-05-29 18:04 - 00000000 ____D C:\Users\FRAZ\Desktop\rkill
2013-05-29 17:31 - 2013-05-29 18:00 - 05073804 ____R (Swearware) C:\Users\FRAZ\Desktop\fraz.exe
2013-05-29 17:18 - 2013-05-29 17:18 - 01796736 ____A (Bleeping Computer, LLC) C:\Users\FRAZ\Desktop\rkill.exe
2013-05-29 17:13 - 2013-05-29 17:37 - 00004602 ____A C:\Users\FRAZ\Desktop\combo fix - how to run etc.txt
2013-05-29 01:25 - 2013-05-29 01:25 - 00000000 ____D C:\_OTL
2013-05-28 22:41 - 2013-05-28 22:41 - 00111160 ____A C:\OTL.Txt
2013-05-28 18:46 - 2011-10-08 22:41 - 00000000 ____D C:\users\FRAZ
2013-05-28 04:18 - 2013-05-28 04:18 - 00000000 ____D C:\Windows\System32\config\HiveBackup
2013-05-27 23:21 - 2013-05-28 12:29 - 00003946 ____A C:\Z - WINDOWS RECOVERY.txt
2013-05-25 17:15 - 2013-05-23 19:40 - 00000000 ____D C:\FRST
2013-05-25 08:03 - 2003-12-01 13:31 - 00036866 ____A C:\Windows\PFRO.log
2013-05-23 14:40 - 2013-05-23 14:40 - 02237968 ____A (Kaspersky Lab ZAO) C:\Users\FRAZ\Desktop\tdsskiller.exe
2013-05-23 14:24 - 2013-05-23 14:24 - 00000000 ____D C:\Windows\erdnt
2013-05-23 14:24 - 2013-05-23 14:24 - 00000000 ____D C:\Qoobox
2013-05-23 14:12 - 2013-05-23 14:20 - 00321416 ____A (ESET) C:\ESETSirefefCleaner.exe
2013-05-23 11:17 - 2013-05-25 07:58 - 01878472 ____A (Farbar) C:\Users\FRAZ\Desktop\FRST64.exe
2013-05-23 10:54 - 2011-10-09 09:44 - 00000000 ____D C:\Users\FRAZ\Local Settings\Application Data\ACD Systems
2013-05-23 10:54 - 2011-10-09 09:44 - 00000000 ____D C:\Users\FRAZ\AppData\Local\ACD Systems
2013-05-17 19:30 - 2009-07-14 00:38 - 00129024 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\videoprt.sys
2013-05-17 19:28 - 2009-07-14 01:10 - 00845824 ____A (Microsoft Corporation) C:\Windows\System32\IKEEXT.DLL
2013-05-17 19:27 - 2009-07-14 00:28 - 01162240 ____A (Microsoft Corporation) C:\Windows\System32\kernel32.dll
2013-05-17 19:25 - 2009-07-14 00:49 - 01065984 ____A (Microsoft Corporation) C:\Windows\System32\cryptui.dll
2013-05-17 19:14 - 2009-07-14 00:25 - 01898576 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys
2013-05-17 19:13 - 2009-07-14 00:20 - 01659984 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ntfs.sys
2013-05-17 19:11 - 2013-05-17 19:11 - 00000000 __SHD C:\found.000
2013-05-17 09:57 - 2009-07-14 05:45 - 00015504 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-05-17 09:57 - 2009-07-14 05:45 - 00015504 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-05-17 09:47 - 2012-09-15 16:19 - 00000830 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-05-16 19:51 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\LiveKernelReports
2013-05-16 19:42 - 2011-10-09 00:03 - 00000000 ____D C:\Users\FRAZ\Application Data\Adobe
2013-05-16 19:42 - 2011-10-09 00:03 - 00000000 ____D C:\Users\FRAZ\AppData\Roaming\Adobe
2013-05-16 19:10 - 2013-05-16 14:21 - 00000000 ____D C:\Users\FRAZ\Desktop\family photos spain
2013-05-15 17:47 - 2012-09-15 16:19 - 00692104 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-05-15 17:47 - 2012-09-15 16:19 - 00071048 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-05-15 07:28 - 2013-05-15 07:28 - 00300768 ____A C:\Windows\Minidump\051513-27908-01.dmp
2013-05-15 07:28 - 2012-11-19 12:00 - 00000000 ____D C:\Windows\Minidump
2013-05-13 07:50 - 2009-07-14 06:13 - 00726316 ____A C:\Windows\System32\PerfStringBackup.INI
2013-05-13 00:04 - 2013-05-13 00:03 - 00000000 ____D C:\Users\FRAZ\Desktop\Panasonic Camcorder photo test
2013-05-12 23:55 - 2013-05-12 23:54 - 00000000 ____D C:\Users\FRAZ\Desktop\FashionRingtones
2013-05-12 16:04 - 2013-05-12 16:04 - 00000952 ____A C:\Users\FRAZ\Desktop\HD Tune.lnk
2013-05-12 16:04 - 2013-05-12 16:04 - 00000000 ____D C:\Program Files (x86)\HD Tune
2013-05-11 12:34 - 2013-05-11 12:29 - 00000000 ____D C:\Users\FRAZ\Desktop\moby northern
2013-05-11 10:16 - 2013-05-11 10:16 - 00000000 ___HD C:\Users\Public\[Originals]
2013-05-11 09:54 - 2013-05-11 09:54 - 00000000 ____D C:\Users\FRAZ\Documents\Adobe
2013-05-11 09:54 - 2011-10-09 12:54 - 00000000 ____D C:\Users\FRAZ\Local Settings\Application Data\Adobe
2013-05-11 09:54 - 2011-10-09 12:54 - 00000000 ____D C:\Users\FRAZ\AppData\Local\Adobe
2013-05-11 09:48 - 2013-05-11 09:48 - 00002077 ____A C:\Users\Public\Desktop\Lightroom 4.3 64-bit.lnk
2013-05-11 09:48 - 2013-05-11 09:48 - 00002077 ____A C:\ProgramData\Desktop\Lightroom 4.3 64-bit.lnk
2013-05-11 09:48 - 2011-10-09 12:59 - 00000000 ____D C:\Program Files\Common Files\Adobe
2013-05-11 09:48 - 2011-10-09 00:54 - 00000000 ____D C:\ProgramData\Application Data\Adobe
2013-05-11 09:48 - 2011-10-09 00:54 - 00000000 ____D C:\ProgramData\Adobe
2013-05-11 09:47 - 2011-10-09 13:00 - 00000000 ____D C:\Program Files\Adobe
2013-05-11 09:36 - 2013-05-11 09:36 - 00000000 ____D C:\Users\FRAZ\Desktop\Adobe
2013-05-09 08:17 - 2013-05-09 08:17 - 00000000 ____D C:\Windows\SysWOW64\searchplugins
2013-05-09 08:17 - 2013-05-09 08:17 - 00000000 ____D C:\Windows\SysWOW64\Extensions
2013-05-07 14:30 - 2013-05-07 14:30 - 00001072 ____A C:\Users\Public\Desktop\YTD YouTube Downloader & Converter.lnk
2013-05-07 14:30 - 2013-05-07 14:30 - 00001072 ____A C:\ProgramData\Desktop\YTD YouTube Downloader & Converter.lnk
2013-05-07 14:30 - 2013-05-07 14:30 - 00000000 ____D C:\ProgramData\YTD YouTube Downloader & Converter
2013-05-07 14:30 - 2013-05-07 14:30 - 00000000 ____D C:\ProgramData\Application Data\YTD YouTube Downloader & Converter
2013-05-07 14:30 - 2011-10-09 09:37 - 00000000 ____D C:\Program Files (x86)\YouTube Downloader
2013-05-03 23:58 - 2013-05-11 12:29 - 09093237 ____N C:\Users\FRAZ\Desktop\20130503_235820.mp4
2013-05-03 23:05 - 2013-05-11 12:29 - 245591627 ____N C:\Users\FRAZ\Desktop\20130503_230306.mp4
2013-05-03 23:02 - 2013-05-11 12:29 - 71031828 ____N C:\Users\FRAZ\Desktop\20130503_230220.mp4
2013-04-30 10:44 - 2013-04-30 10:44 - 00001388 ____A C:\Users\Public\Desktop\Free Video Flip and Rotate.lnk
2013-04-30 10:44 - 2013-04-30 10:44 - 00001388 ____A C:\ProgramData\Desktop\Free Video Flip and Rotate.lnk
2013-04-30 10:44 - 2013-04-30 10:44 - 00001265 ____A C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2013-04-30 10:44 - 2013-04-30 10:44 - 00001265 ____A C:\ProgramData\Desktop\DVDVideoSoft Free Studio.lnk
2013-04-30 10:44 - 2013-04-30 10:44 - 00000000 ____D C:\Users\FRAZ\Application Data\DVDVideoSoft
2013-04-30 10:44 - 2013-04-30 10:44 - 00000000 ____D C:\Users\FRAZ\AppData\Roaming\DVDVideoSoft
2013-04-30 10:44 - 2013-04-30 10:44 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft
2013-04-30 10:44 - 2011-10-09 15:29 - 00000000 ____D C:\Users\FRAZ\Documents\DVDVideoSoft
2013-04-30 10:22 - 2011-10-09 15:34 - 00000349 ____A C:\Users\Public\Documents\PCLECHAL.INI
2013-04-30 10:22 - 2011-10-09 15:34 - 00000349 ____A C:\ProgramData\Documents\PCLECHAL.INI
2013-04-30 10:21 - 2011-10-09 15:34 - 00000000 ____D C:\Users\Public\Documents\Pinnacle
2013-04-30 10:21 - 2011-10-09 15:34 - 00000000 ____D C:\ProgramData\Documents\Pinnacle
2013-04-30 10:21 - 2011-10-09 12:06 - 00000000 ____D C:\Users\FRAZ\Documents\Pinnacle Studio
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe
[2009-07-14 00:56] - [2009-07-14 02:39] - 2868224 ____A (Microsoft Corporation) 22424AE68280D6FDE95CD40F2D238049
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
Last Boot: 2013-05-14 14:58
==================== End Of Log ============================