Here is the FRST text:
Scan result of Farbar Recovery Scan Tool Version: 11-06-2012 03
Ran by SYSTEM at 13-06-2012 06:28:13
Running from F:\
Windows 7 Home Premium (X64) OS Language: English(US)
The current controlset is ControlSet001
========================== Registry (Whitelisted) =============
HKLM\...\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe [165912 2009-07-11] (Intel Corporation)
HKLM\...\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe [387608 2009-07-11] (Intel Corporation)
HKLM\...\Run: [Persistence] C:\Windows\system32\igfxpers.exe [365592 2009-07-11] (Intel Corporation)
HKLM\...\Run: [AmIcoSinglun64] C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [320000 2009-04-09] (AlcorMicro Co., Ltd.)
HKLM\...\Run: [ETDWare] C:\Program Files\Elantech\ETDCtrl.exe [619392 2009-06-11] (ELAN Microelectronic Corp.)
HKLM\...\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon [2710856 2009-11-02] (CANON INC.)
HKLM\...\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice [4030008 2011-08-09] (ESET)
HKLM\...\Run: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe [x]
HKLM-x32\...\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r [2244096 2009-07-12] (VIA)
HKLM-x32\...\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe [8493624 2009-07-07] (ASUS)
HKLM-x32\...\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe [159744 2009-04-20] (ASUS)
HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [253672 2011-01-07] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [ISUSScheduler] "C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe" -start [81920 2004-06-16] (InstallShield Software Corporation)
HKLM-x32\...\Run: [NBAgent] "C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart [1234216 2010-03-26] (Nero AG)
HKLM-x32\...\Run: [RIMBBLaunchAgent.exe] C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe [79192 2011-02-18] (Research In Motion Limited)
HKLM-x32\...\Run: [UVS11 Preload] C:\Program Files (x86)\Ulead Systems\Ulead VideoStudio 11\uvPL.exe [341232 2007-07-23] (InterVideo Digital Technology Corporation)
HKLM-x32\...\Run: [DVAPTray] C:\Windows\System32\DVAPTray.exe [x]
HKLM-x32\...\Run: [TkBellExe] "C:\Program Files (x86)\Common Files\Real\Update_OB\realsched.exe" -osboot [198160 2012-04-05] (RealNetworks, Inc.)
HKLM-x32\...\Run: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray [462408 2012-04-04] (Malwarebytes Corporation)
HKLM-x32\...\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59240 2012-02-20] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [421888 2011-10-24] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" [421736 2012-03-27] (Apple Inc.)
HKLM-x32\...\Run: [HTC Sync Loader] "C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe" -startup [634880 2012-04-01] ()
HKLM-x32\...\Run: [iSkysoft Helper Compact.exe] C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe [1667072 2012-02-28] (iSkySoft)
HKU\Gary\...\Run: [ISUSPM Startup] C:\PROGRA~2\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup [221184 2004-06-16] (InstallShield Software Corporation)
HKU\Gary\...\Run: [cdloader] "C:\Users\Gary\AppData\Roaming\mjusbsp\cdloader2.exe" MAGICJACK [50592 2012-02-01] (magicJack L.P.)
HKU\Gary\...\Run: [PC Suite Tray] "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray [1508408 2011-12-16] (Nokia)
HKU\QBPOSDBSrvUser\...\Run: [ISUSPM Startup] C:\PROGRA~2\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup [221184 2004-06-16] (InstallShield Software Corporation)
HKU\QBPOSDBSrvUser\...\Run: [cdloader] "C:\Users\Gary\AppData\Roaming\mjusbsp\cdloader2.exe" MAGICJACK [50592 2012-02-01] (magicJack L.P.)
HKU\QBPOSDBSrvUser\...\Run: [Google Update] "C:\Users\Gary\AppData\Local\Google\Update\GoogleUpdate.exe" /c [136176 2011-09-11] (Google Inc.)
HKLM\...\Winlogon: [Userinit] C:\Windows\explorer.exe, [2868224 2000-03-22] (Microsoft Corporation)
HKLM-x32\...\Winlogon: [Userinit] C:\Windows\explorer.exe, [2868224 2000-03-22] (Microsoft Corporation)
Winlogon\Notify\igfxcui: igfxdev.dll (Intel Corporation)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.2
Tcpip\..\Interfaces\{345FF04F-959A-4F62-8126-89C8F43A4272}: [NameServer]200.32.248.1,200.32.249.225
Startup: C:\Users\All Users\Start Menu\Programs\Startup\FancyStart daemon.lnk
ShortcutTarget: FancyStart daemon.lnk -> C:\Windows\Installer\{60D6618B-153F-4353-8185-908E676E5888}\_DCE9A4DB2A5F2786140FA3.exe ()
Startup: C:\Users\All Users\Start Menu\Programs\Startup\Kodak EasyShare software.lnk
ShortcutTarget: Kodak EasyShare software.lnk -> C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\EasyShare.exe (Eastman Kodak Company)
==================== Services (Whitelisted) ======
2 ATKGFNEXSrv; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [94208 2007-08-08] ()
2 Capture Device Service; "C:\Program Files (x86)\Common Files\InterVideo\DeviceService\DevSvc.exe" [198168 2007-03-06] (InterVideo Inc.)
2 ekrn; "C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe" [974944 2011-08-09] (ESET)
2 Fabs; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe /DisableUI [1840128 2011-05-24] (MAGIX AG)
2 FastBootAgent; "C:\Windows\SysWOW64\Fast Boot\FastBootAgent.exe" [306232 2009-07-23] (ASUSTeK Computer Inc.)
2 FirebirdGuardianDefaultInstance; "C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe" -s DefaultInstance [98304 2010-09-17] (Firebird Project)
3 FirebirdServerDefaultInstance; "C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe" -s DefaultInstance [3735552 2010-09-17] (Firebird Project)
3 FirebirdServerMAGIXInstance; "C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe" [2702848 2011-04-26] (MAGIX®)
3 GSService; "C:\Windows\SysWOW64\GSService.exe" [450048 2011-09-01] ()
2 Intuit Entitlement Service v6.0; "C:\Program Files (x86)\Common Files\Intuit\Entitlement Client\v6.0\Server\Intuit.Spc.Map.EntitlementClient.Server.Service.exe" [20480 2009-06-02] (Intuit, Inc.)
2 IntuitUpdateService; "C:\Program Files (x86)\Common Files\Intuit\Update Service\IntuitUpdateService.exe" [13088 2009-05-21] (Intuit Inc.)
2 MBAMService; "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe" [654408 2012-04-04] (Malwarebytes Corporation)
2 NvtlService; "C:\Program Files (x86)\Novatel Wireless\Novacore\Server\NvtlSrvr.exe" [91984 2010-07-22] ()
2 NWHelper; C:\Program Files (x86)\Novatel Wireless\Drivers\NWHelper.exe [270336 2010-06-10] (Novatel Wireless Inc.)
3 OpenVPNService; C:\Program Files\personalVPN\bin\openvpnserv.exe [37888 2010-06-21] ()
2 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [88576 2011-09-15] ()
4 POSPerformanceCounters; "C:\Program Files (x86)\Microsoft Point Of Service\Microsoft.PointOfService.Service.exe" [42056 2009-01-13] (Microsoft Corporation)
2 QBPOSDBServiceV9; "C:\Program Files (x86)\Intuit\QuickBooks Point of Sale 9.0\DatabaseServer\QBPOSDBService.exe" [2735480 2009-09-01] (Intuit Inc.)
2 RapiMgr; C:\Windows\WindowsMobile\rapimgr.dll [225672 2007-05-31] (Microsoft Corporation)
2 RichVideo64; "C:\Program Files\CyberLink\Shared files\RichVideo64.exe" [386344 2010-08-19] ()
2 WcesComm; C:\Windows\WindowsMobile\wcescomm.dll [443784 2007-05-31] (Microsoft Corporation)
2 CronService; "C:\Prey\platform\windows\cronsvc.exe" [x]
3 NMIndexingService; "C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe" [x]
2 XLDoctor Service; C:\Program Files (x86)\Thunder Network\Thunder\Program\DctSer.dll [x]
========================== Drivers (Whitelisted) =============
3 anvsnddrv; C:\Windows\System32\Drivers\anvsnddrv.sys [33872 2011-11-28] (AnvSoft Inc.)
2 ASMMAP64; \??\C:\Program Files\ATKGFNEX\ASMMAP64.sys [14904 2007-07-24] ()
2 eamonm; C:\Windows\System32\Drivers\eamonm.sys [202576 2011-08-09] (ESET)
1 ehdrv; C:\Windows\System32\Drivers\ehdrv.sys [146432 2011-08-04] (ESET)
2 epfwwfpr; C:\Windows\System32\Drivers\epfwwfpr.sys [137144 2011-08-04] (ESET)
3 HTCAND64; C:\Windows\System32\Drivers\ANDROIDUSB.sys [33736 2011-12-14] (HTC, Corporation)
3 htcnprot; C:\Windows\System32\Drivers\htcnprot.sys [36928 2010-06-25] (Windows ® Win 7 DDK provider)
3 IDMWFP; C:\Windows\System32\Drivers\IDMWFP.sys [154272 2012-04-23] (Tonec Inc.)
3 IMT0521; C:\Windows\SysWow64\Drivers\IMT0521.sys [34825 2003-07-11] (Inmax Technology Corp.)
3 ivusb; C:\Windows\System32\Drivers\ivusb.sys [29720 2010-07-28] (Initio Corporation)
3 kbfiltr; C:\Windows\System32\Drivers\kbfiltr.sys [15416 2009-07-20] ( )
0 lullaby; C:\Windows\System32\Drivers\lullaby.sys [15928 2009-06-18] (Windows ® Win 7 DDK provider)
3 MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [24904 2012-04-04] (Malwarebytes Corporation)
3 NWADI; C:\Windows\System32\DRIVERS\NWADIenum.sys [256512 2010-06-08] (Novatel Wireless Inc)
3 NWUSBModem_000; C:\Windows\System32\DRIVERS\nwusbmdm_000.sys [217856 2010-06-10] (Novatel Wireless Inc.)
3 NWUSBPort2_000; C:\Windows\System32\DRIVERS\nwusbser2_000.sys [217856 2010-06-10] (Novatel Wireless Inc.)
3 NWUSBPort_000; C:\Windows\System32\DRIVERS\nwusbser_000.sys [217856 2010-06-10] (Novatel Wireless Inc.)
3 SNP2UVC; C:\Windows\System32\Drivers\SNP2UVC.sys [1806400 2009-06-05] ()
3 ss_bus; C:\Windows\System32\Drivers\ss_bus.sys [127488 2011-12-14] (MCCI Corporation)
3 ss_mdfl; C:\Windows\System32\Drivers\ss_mdfl.sys [18944 2011-12-14] (MCCI Corporation)
3 ss_mdm; C:\Windows\System32\Drivers\ss_mdm.sys [161280 2011-12-14] (MCCI Corporation)
3 StkMini; C:\Windows\SysWow64\Drivers\StkMini.sys [600617 2004-08-31] (Syntek America Inc.)
3 StkScan; C:\Windows\SysWow64\Drivers\StkScan.sys [4265 2004-08-31] (Syntek America Inc.)
3 tap0901; C:\Windows\System32\Drivers\tap0901.sys [30720 2010-06-21] (The OpenVPN Project)
3 usbio; C:\Windows\System32\Drivers\dsiarhwprog_x64.sys [51600 2011-05-03] (Thesycon GmbH, Germany)
3 UsbserFilt; C:\Windows\System32\DRIVERS\usbser_lowerfltjx64.sys [9216 2011-11-01] (Nokia)
3 WsAudio_DeviceS(1); C:\Windows\System32\Drivers\WsAudio_DeviceS(1).sys [29288 2011-12-19] (Wondershare)
3 WsAudio_DeviceS(2); C:\Windows\System32\Drivers\WsAudio_DeviceS(2).sys [29288 2011-12-19] (Wondershare)
3 WsAudio_DeviceS(3); C:\Windows\System32\Drivers\WsAudio_DeviceS(3).sys [29288 2011-12-19] (Wondershare)
3 WsAudio_DeviceS(4); C:\Windows\System32\Drivers\WsAudio_DeviceS(4).sys [29288 2011-12-19] (Wondershare)
3 WsAudio_DeviceS(5); C:\Windows\System32\Drivers\WsAudio_DeviceS(5).sys [29288 2011-12-19] (Wondershare)
3 YMIDUSBW; C:\Windows\System32\drivers\ymidusbx64.sys [51016 2011-11-01] (Yamaha Corporation)
3 catchme; \??\C:\ComboFix\catchme.sys [x]
3 DIRECTIO; \??\c:\BIT_TEMP\DirectIo.sys [x]
2 RemoteAccess; [x]
3 SCR33X USB Smart Card Reader; C:\Windows\System32\DRIVERS\SCR33X2K.sys [x]
========================== NetSvcs (Whitelisted) ===========
NETSVCx32: Mcx2Svc -> No ServiceDLL Path.
============ One Month Created Files and Folders ==============
2012-06-13 03:12 - 2012-06-13 03:12 - 00000000 ____D C:\Windows\SysWOW64\3005
2012-06-12 19:19 - 2012-06-12 19:19 - 00034382 ____A C:\Users\Gary\Desktop\Combolog.txt
2012-06-12 19:09 - 2012-06-12 19:09 - 00034382 ____A C:\ComboFix.txt
2012-06-12 18:41 - 2012-06-12 18:41 - 00139374 ____A C:\TDSSKiller.2.7.36.0_12.06.2012_20.41.14_log.txt
2012-06-12 18:39 - 2012-06-12 18:39 - 02111270 ____A C:\Users\Gary\Desktop\tdsskiller.rar
2012-06-12 18:37 - 2012-06-12 18:37 - 04556274 ____R (Swearware) C:\Users\Gary\Desktop\ComboFix.exe
2012-06-12 18:34 - 2012-06-12 18:34 - 02127960 ____A (Kaspersky Lab ZAO) C:\Users\Gary\Desktop\tdsskiller.exe
2012-06-12 17:31 - 2012-06-12 17:31 - 00011486 ____A C:\Users\Gary\Documents\MyZip.zip
2012-06-12 17:30 - 2012-06-12 17:30 - 00001188 ____A C:\Users\Public\Desktop\Express Zip File Compression Software.lnk
2012-06-12 17:30 - 2012-06-12 17:30 - 00000000 ____D C:\Users\All Users\NCH Software
2012-06-12 17:30 - 2012-06-12 17:30 - 00000000 ____D C:\Program Files (x86)\NCH Software
2012-06-12 17:29 - 2012-06-12 17:29 - 00000000 ____D C:\Users\Gary\Documents\NCH.Express.Zip.Plus.v1.12.softarchive.net
2012-06-12 17:28 - 2012-06-12 17:28 - 04007836 ____A C:\Users\Gary\Documents\NCH.Express.Zip.Plus.v1.12.softarchive.net.rar
2012-06-12 17:07 - 2012-06-12 17:08 - 00011034 ____A C:\Users\Gary\Documents\Documents.rar
2012-06-12 17:07 - 2012-06-12 17:07 - 00026697 ____A C:\Users\Gary\Documents\DDS.txt
2012-06-12 17:06 - 2012-06-12 17:06 - 00010072 ____A C:\Users\Gary\Documents\Attach.txt
2012-06-12 05:27 - 2012-06-12 05:27 - 00000301 ____A C:\Users\Gary\Documents\virus path.txt
2012-06-11 19:50 - 2012-06-13 06:28 - 00000000 ____D C:\FRST
2012-06-11 16:14 - 2012-06-11 16:14 - 00000000 ____D C:\Users\Gary\Documents\Simply Super Software
2012-06-11 16:11 - 2012-06-12 14:04 - 00000000 ____D C:\Program Files (x86)\Trojan Remover
2012-06-10 08:19 - 2012-06-12 17:52 - 00000000 ____D C:\Drweb
2012-06-09 15:15 - 2012-06-09 15:15 - 00000000 ____D C:\Users\Gary\Downloads\Dr.Web.Scanner_downloaddownload.softarchive.net
2012-06-09 15:01 - 2012-06-09 15:01 - 00000000 __SHD C:\Windows\System32\%APPDATA%
2012-06-09 07:32 - 2012-06-09 07:32 - 00284057 ____A C:\Users\Gary\Documents\Scan Log.txt
2012-06-06 12:36 - 2012-06-06 12:36 - 00000218 ____A C:\Users\Gary\.recently-used.xbel
2012-06-05 17:57 - 2012-06-10 17:56 - 00000991 ____A C:\Users\Gary\Desktop\magicJack.lnk
2012-06-04 10:02 - 2012-06-04 10:02 - 00001140 ____A C:\Users\Gary\Desktop\ASIO4ALL v2 Instruction Manual.lnk
2012-06-04 10:02 - 2012-06-04 10:02 - 00000000 ____D C:\Program Files (x86)\ASIO4ALL v2
2012-06-04 10:02 - 2012-03-24 22:57 - 00215552 ____N C:\Windows\SysWOW64\amp3dj.oca
2012-06-04 10:02 - 2012-03-24 22:55 - 00202240 ____N C:\Windows\SysWOW64\asrecmms.oca
2012-06-04 10:02 - 2012-02-26 04:07 - 02040320 ____N (MultiMedia Soft) C:\Windows\SysWOW64\AdjMmsEng.dll
2012-06-04 10:02 - 2011-11-17 03:37 - 01117184 ____N (MultiMedia Soft) C:\Windows\SysWOW64\asrecmms.ocx
2012-06-04 10:02 - 2011-09-19 08:26 - 00747008 ____N (MultiMedia Soft) C:\Windows\SysWOW64\amp3dj.ocx
2012-06-04 10:02 - 2010-02-27 02:42 - 00000194 ____N C:\Windows\SysWOW64\DJStudioPro.BAT
2012-06-04 10:02 - 2010-02-27 02:41 - 00002831 ____N C:\Windows\SysWOW64\DJStudioPro.DDF
2012-06-04 10:02 - 2008-01-19 03:04 - 00554008 ____N (Microsoft Corporation) C:\Windows\SysWOW64\dao360.dll
2012-06-04 10:02 - 2007-10-17 02:17 - 00073728 ____N () C:\Windows\SysWOW64\vbzlib1.dll
2012-06-04 10:02 - 2007-05-30 15:29 - 00667648 ____N (Gogowishs Software) C:\Windows\SysWOW64\PictureViewer.ocx
2012-06-04 10:02 - 2007-04-16 00:44 - 00905216 ____N (MultiMedia Soft) C:\Windows\SysWOW64\3dabm8u.ocx
2012-06-04 10:02 - 2006-12-30 14:38 - 00245760 ____N (audio2convert.com) C:\Windows\SysWOW64\CDAConverterAX.ocx
2012-06-04 10:02 - 2006-06-29 09:19 - 00135168 ____N () C:\Windows\SysWOW64\id3vx_ocx.dll
2012-06-04 10:02 - 2006-05-10 18:54 - 00000868 ____N C:\Windows\SysWOW64\PictureViewer.lpk
2012-06-04 10:02 - 2006-03-11 14:04 - 00061440 ____N (TODO: <Company name>) C:\Windows\SysWOW64\audioburner.ocx
2012-06-04 10:02 - 2006-02-28 18:01 - 00000389 ____N C:\Windows\SysWOW64\audioburner.lic
2012-06-04 10:02 - 2005-12-31 06:19 - 01097728 ____N C:\Windows\SysWOW64\vorbis.dll
2012-06-04 10:02 - 2005-12-31 06:13 - 00024576 ____N C:\Windows\SysWOW64\ogg.dll
2012-06-04 10:02 - 2005-11-30 03:49 - 00161792 ____N C:\Windows\SysWOW64\lame_enc.dll
2012-06-04 10:02 - 2004-08-03 23:56 - 01227264 ____N (Microsoft Corporation) C:\Windows\SysWOW64\dx8vb.dll
2012-06-04 10:02 - 2004-05-10 22:19 - 00192512 ____N (Matthew T. Ashland) C:\Windows\SysWOW64\MACDll.dll
2012-06-04 10:02 - 2003-08-22 05:46 - 00237568 ____N (NCT Company Ltd.) C:\Windows\SysWOW64\NCTAudioConvert3.exe
2012-06-04 10:02 - 2003-08-19 07:39 - 01028096 ____N (NCT Company Ltd.) C:\Windows\SysWOW64\NCTAudioInformation2.dll
2012-06-04 10:02 - 2003-06-17 19:35 - 00000299 ____N C:\Windows\SysWOW64\NCTAudioConvert3.dep
2012-06-04 10:02 - 2003-06-02 21:06 - 00286720 ____N (NCT Company Ltd.) C:\Windows\SysWOW64\NCTWMAFile2.dll
2012-06-04 10:02 - 2003-06-02 20:55 - 01720320 ____N (NCT Company Ltd.) C:\Windows\SysWOW64\NCTAudioFile2.dll
2012-06-04 10:02 - 2003-05-21 16:50 - 01700352 ____N (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2012-06-04 10:02 - 2003-03-24 04:03 - 00000289 ____N C:\Windows\SysWOW64\NCTWMAFile2.dep
2012-06-04 10:02 - 2003-03-24 04:02 - 00000307 ____N C:\Windows\SysWOW64\NCTAudioInformation2.dep
2012-06-04 10:02 - 2003-03-24 04:02 - 00000291 ____N C:\Windows\SysWOW64\NCTAudioFile2.dep
2012-06-04 10:02 - 2002-03-24 13:03 - 00380928 ____N (NUGROOVZ) C:\Windows\SysWOW64\CDRipperX.ocx
2012-06-04 10:02 - 2002-01-14 13:36 - 00172032 ____N C:\Windows\SysWOW64\MP2enc.dll
2012-06-04 10:02 - 2001-08-12 08:08 - 00360448 ____N (NCT Company) C:\Windows\SysWOW64\NCTWavPlayer.ocx
2012-06-04 10:02 - 2000-12-06 04:01 - 00415176 ____N (Microsoft Corporation ) C:\Windows\SysWOW64\comct332.ocx
2012-06-04 10:02 - 2000-07-01 05:36 - 00053248 ____N (E-Soft) C:\Windows\SysWOW64\Slider.ocx
2012-06-04 10:02 - 1999-07-14 03:36 - 00068608 ____N (BinaryWork Corp.) C:\Windows\SysWOW64\bw6mi15r.ocx
2012-06-04 10:02 - 1998-10-23 08:28 - 00187904 ____N (Global Majic Software, Inc.) C:\Windows\SysWOW64\Sliderdj.ocx
2012-06-04 10:02 - 1997-09-25 06:18 - 00520192 ____N (Microsoft Corporation) C:\Windows\SysWOW64\dbgrid32.ocx
2012-06-04 10:01 - 2012-06-04 10:01 - 00000000 ____D C:\Users\All Users\Tarma Installer
2012-06-04 10:01 - 2012-06-04 10:01 - 00000000 ____D C:\Users\All Users\E-Soft
2012-06-04 10:01 - 2005-11-05 10:34 - 00145408 ____N C:\Windows\SysWOW64\Lame.exe
2012-06-01 19:55 - 2012-06-01 19:55 - 00012525 ____A C:\Users\Gary\Documents\Tamales.docx
2012-05-31 12:33 - 2012-05-31 12:33 - 00000435 ____A C:\Windows\SysWOW64\mprdin.ocx
2012-05-31 12:32 - 2012-05-31 12:32 - 01752576 ____A C:\Windows\SysWOW64\mprdin.dll
2012-05-31 04:35 - 2012-06-13 04:24 - 00083015 ____A C:\Windows\WindowsUpdate.log
2012-05-31 04:33 - 2012-06-12 19:01 - 01097952 ____A C:\Windows\PFRO.log
2012-05-30 03:12 - 2012-06-13 03:12 - 00000000 ____D C:\Windows\SysWOW64\1070
2012-05-27 18:34 - 2012-06-12 19:01 - 00003360 ____A C:\Windows\setupact.log
2012-05-27 18:04 - 2012-06-05 00:06 - 00000000 ____D C:\Users\Gary\Desktop\Unused Icons
2012-05-27 08:51 - 2012-05-27 08:51 - 00000000 ____D C:\Users\Gary\Documents\NeroVision
2012-05-27 08:33 - 2012-05-27 08:33 - 00000000 ____D C:\Program Files (x86)\Xvid
2012-05-27 08:33 - 2011-05-30 05:42 - 00255488 ____A C:\Windows\System32\xvidvfw.dll
2012-05-27 08:33 - 2011-05-30 05:42 - 00240640 ____A C:\Windows\SysWOW64\xvidvfw.dll
2012-05-27 08:33 - 2011-05-23 01:52 - 00153088 ____A C:\Windows\SysWOW64\xvid.ax
2012-05-27 08:33 - 2011-05-22 23:49 - 00173568 ____A C:\Windows\System32\xvid.ax
2012-05-27 08:33 - 2011-05-22 23:46 - 00645632 ____A C:\Windows\SysWOW64\xvidcore.dll
2012-05-27 08:33 - 2011-05-22 23:45 - 00696832 ____A C:\Windows\System32\xvidcore.dll
2012-05-27 07:02 - 2012-05-27 08:54 - 00000000 ____D C:\Users\Gary\Documents\Aimersoft DRM Media Converter
2012-05-27 07:02 - 2012-05-27 07:02 - 00001329 ____A C:\Users\Gary\Desktop\Aimersoft DRM Media Converter.lnk
2012-05-27 07:02 - 2012-05-27 07:02 - 00000000 ____D C:\Program Files (x86)\Aimersoft
2012-05-27 07:02 - 2011-01-15 12:08 - 00153600 ____A C:\Windows\SysWOW64\WS_ATLMovie.dll
2012-05-27 06:38 - 2012-05-27 06:38 - 00000000 ____D C:\Users\Gary\Documents\Gygan Downloads
2012-05-27 06:38 - 2012-05-27 06:38 - 00000000 ____D C:\Users\Gary\AppData\Local\Xenocode
2012-05-27 06:37 - 2012-06-09 21:20 - 00000000 ____D C:\Program Files (x86)\Gygan BETA
2012-05-27 06:37 - 2012-05-27 06:38 - 00000000 ____D C:\Users\Gary\AppData\Roaming\Gygan
2012-05-27 06:31 - 2012-05-27 06:32 - 00000000 ____D C:\Program Files (x86)\K-Lite Codec Pack
2012-05-27 06:31 - 2012-05-15 10:00 - 00079872 ____A C:\Windows\SysWOW64\ff_vfw.dll
2012-05-27 06:31 - 2011-12-21 09:14 - 00151552 ____A (fccHandler) C:\Windows\SysWOW64\ac3acm.acm
2012-05-27 06:31 - 2008-10-03 04:30 - 00000414 ____A C:\Windows\SysWOW64\lame_acm.xml
2012-05-27 06:31 - 2008-09-24 10:41 - 00839680 ____A (
http://www.mp3dev.org/) C:\Windows\SysWOW64\lameACM.acm
2012-05-27 06:26 - 2012-05-27 06:26 - 00000841 ____A C:\Users\Public\Desktop\Total Uninstall 6.lnk
2012-05-27 06:26 - 2012-05-27 06:26 - 00000000 ____D C:\Users\All Users\Martau
2012-05-27 06:26 - 2012-05-27 06:26 - 00000000 ____D C:\Program Files\Total Uninstall 6
2012-05-27 06:23 - 2012-05-27 06:36 - 00000000 ____D C:\Users\Gary\Documents\iSkysoft DRM Removal
2012-05-27 06:22 - 2011-12-19 14:41 - 00029288 ____A (Wondershare) C:\Windows\System32\Drivers\WsAudio_DeviceS(5).sys
2012-05-27 06:22 - 2011-12-19 14:41 - 00029288 ____A (Wondershare) C:\Windows\System32\Drivers\WsAudio_DeviceS(4).sys
2012-05-27 06:21 - 2012-05-27 06:21 - 00001213 ____A C:\Users\Gary\Desktop\iSkysoft DRM Removal.lnk
2012-05-27 06:21 - 2012-05-27 06:21 - 00000000 ____D C:\Users\Gary\AppData\Local\iSkysoft
2012-05-27 06:21 - 2012-05-27 06:21 - 00000000 ____D C:\Program Files (x86)\iSkysoft
2012-05-27 06:21 - 2011-12-19 14:41 - 00029288 ____A (Wondershare) C:\Windows\System32\Drivers\WsAudio_DeviceS(3).sys
2012-05-27 06:21 - 2011-12-19 14:41 - 00029288 ____A (Wondershare) C:\Windows\System32\Drivers\WsAudio_DeviceS(2).sys
2012-05-27 06:21 - 2011-12-19 14:41 - 00029288 ____A (Wondershare) C:\Windows\System32\Drivers\WsAudio_DeviceS(1).sys
2012-05-27 06:21 - 2011-12-09 13:35 - 00892928 ____A (Free Software Foundation) C:\Windows\SysWOW64\iconv.dll
2012-05-27 06:21 - 2011-12-09 13:35 - 00675840 ____A () C:\Windows\SysWOW64\ac3filter.ax
2012-05-26 09:03 - 2012-05-26 09:03 - 00002185 ____A C:\Users\Gary\Desktop\Camfrog Video Chat 6.2.lnk
2012-05-26 08:42 - 2012-05-26 17:05 - 00210656 ___AH C:\Windows\temporaneo.html
2012-05-26 08:42 - 2012-05-26 17:05 - 00210656 ___AH C:\Windows\log.html
2012-05-24 07:37 - 2012-05-24 07:37 - 00000833 ____A C:\Users\Public\Desktop\MAGIX Audio Cleaning Lab MX Download Version.lnk
2012-05-24 07:36 - 2012-05-24 07:36 - 00000000 ____D C:\Program Files (x86)\MAGIX
2012-05-24 05:41 - 2012-05-24 05:41 - 00043151 ____A C:\Users\Gary\Downloads\AACencoder_upgrade_en_II.rtf
2012-05-24 05:09 - 2012-05-24 05:09 - 00000000 ____D C:\Users\Gary\Documents\MAGIX
2012-05-24 05:09 - 2012-05-24 05:09 - 00000000 ____D C:\Users\Gary\AppData\Roaming\MAGIX
2012-05-24 05:06 - 2012-05-24 07:36 - 00000000 ____D C:\Users\All Users\MAGIX
2012-05-24 04:59 - 2012-05-14 03:41 - 00000000 ____D C:\Users\Gary\Desktop\Language
2012-05-23 05:09 - 2012-05-23 05:09 - 00000000 ____D C:\Program Files (x86)\Lame For Audacity
2012-05-22 17:27 - 2012-05-22 17:27 - 00308720 ____A C:\Users\Gary\Documents\Doc5.docx
2012-05-22 14:37 - 2012-05-22 14:37 - 00000000 ____D C:\Users\Public\Documents\AKVIS
2012-05-22 14:36 - 2012-05-22 14:36 - 00000977 ____A C:\Users\Public\Desktop\AKVIS Retoucher.lnk
2012-05-22 14:36 - 2012-05-22 14:36 - 00000000 ____D C:\Program Files (x86)\AKVIS
2012-05-21 09:14 - 2012-05-21 09:14 - 00001009 ____A C:\Users\Public\Desktop\PowerISO.lnk
2012-05-21 09:14 - 2012-05-21 09:14 - 00000000 ____D C:\Program Files (x86)\PowerISO
2012-05-21 09:14 - 2012-04-18 19:57 - 00126912 ____A (Power Software Ltd) C:\Windows\System32\Drivers\scdemu.sys
2012-05-20 16:57 - 2012-05-20 16:57 - 00001136 ____A C:\Users\Public\Desktop\Mozilla Firefox.lnk
2012-05-20 16:57 - 2012-05-20 16:57 - 00000000 ____D C:\Users\Gary\AppData\Local\Mozilla
2012-05-20 16:57 - 2012-05-20 16:57 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2012-05-20 09:42 - 2012-05-20 09:42 - 00003504 ____A C:\Users\Gary\Documents\Nucht.rtf
2012-05-19 16:54 - 2012-05-19 16:54 - 00000772 ____A C:\Users\Public\Desktop\PhotoInstrument.lnk
2012-05-19 16:49 - 2012-06-10 06:39 - 00000000 ____D C:\Users\Gary\AppData\Roaming\Complitly
2012-05-19 16:49 - 2012-05-19 16:49 - 00000828 ____A C:\Users\Public\Desktop\uTorrent Turbo Booster.lnk
2012-05-19 16:49 - 2012-05-19 16:49 - 00000000 ____D C:\Users\Gary\AppData\Roaming\uTorrent Turbo Booster
2012-05-19 16:46 - 2012-05-19 16:46 - 00000803 ____A C:\Users\Public\Desktop\MarvelousDesigner2.lnk
2012-05-19 02:28 - 2012-05-19 02:28 - 00000000 ____D C:\Program Files (x86)\NirSoft
2012-05-16 18:38 - 2012-05-16 18:38 - 00000130 ____A C:\Users\Gary\AppData\Roaming\Network Monitor II_Traffic.ini
2012-05-16 18:28 - 2012-05-16 18:28 - 00000634 ____A C:\Users\Gary\AppData\Roaming\Network Monitor II_Settings.ini
2012-05-16 06:03 - 2012-05-16 06:03 - 00000000 ____D C:\Users\Gary\AppData\Roaming\jdnetmon
2012-05-16 05:51 - 2012-05-16 05:59 - 00000000 ____D C:\Users\Gary\AppData\Roaming\jdast
2012-05-16 05:51 - 2012-05-16 05:51 - 00001921 ____A C:\Users\Gary\Desktop\JDs Auto Speed Tester.lnk
2012-05-16 05:51 - 2012-05-16 05:51 - 00000000 ____D C:\Users\Gary\Documents\Speed_Tester
2012-05-16 05:51 - 2012-05-16 05:51 - 00000000 ____D C:\Program Files (x86)\JDAST
2012-05-15 19:19 - 2012-05-24 09:51 - 00031771 ____A C:\Users\Gary\Documents\estimate.docx
============ 3 Months Modified Files and Folders =============
2012-06-13 06:28 - 2012-06-11 19:50 - 00000000 ____D C:\FRST
2012-06-13 04:24 - 2012-05-31 04:35 - 00083015 ____A C:\Windows\WindowsUpdate.log
2012-06-13 04:22 - 2011-08-28 05:30 - 00000029 ____A C:\Windows\SysWOW64\TempWmicBatchFile.bat
2012-06-13 03:43 - 2011-09-11 16:19 - 00000904 ___AH C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3700817450-263443993-1340972289-1000UA.job
2012-06-13 03:12 - 2012-06-13 03:12 - 00000000 ____D C:\Windows\SysWOW64\3005
2012-06-13 03:12 - 2012-05-30 03:12 - 00000000 ____D C:\Windows\SysWOW64\1070
2012-06-13 03:12 - 2012-04-11 04:20 - 00000348 ____A C:\Windows\Tasks\At2.job
2012-06-13 03:12 - 2012-04-11 04:19 - 00000348 ____A C:\Windows\Tasks\At1.job
2012-06-12 19:19 - 2012-06-12 19:19 - 00034382 ____A C:\Users\Gary\Desktop\Combolog.txt
2012-06-12 19:10 - 2009-07-13 20:45 - 00010016 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2012-06-12 19:10 - 2009-07-13 20:45 - 00010016 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2012-06-12 19:09 - 2012-06-12 19:09 - 00034382 ____A C:\ComboFix.txt
2012-06-12 19:09 - 2011-11-30 09:18 - 00000000 ___AD C:\Qoobox
2012-06-12 19:03 - 2012-04-30 22:33 - 00000000 ____D C:\Users\Gary\AppData\Local\Htc
2012-06-12 19:02 - 2011-11-30 09:18 - 00000000 ____D C:\Windows\ERDNT
2012-06-12 19:02 - 2009-07-13 18:34 - 00000215 ____A C:\Windows\system.ini
2012-06-12 19:02 - 2009-07-13 18:34 - 00000027 ____A C:\Windows\System32\Drivers\etc\hosts
2012-06-12 19:01 - 2012-05-31 04:33 - 01097952 ____A C:\Windows\PFRO.log
2012-06-12 19:01 - 2012-05-27 18:34 - 00003360 ____A C:\Windows\setupact.log
2012-06-12 19:01 - 2009-07-13 21:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2012-06-12 18:41 - 2012-06-12 18:41 - 00139374 ____A C:\TDSSKiller.2.7.36.0_12.06.2012_20.41.14_log.txt
2012-06-12 18:39 - 2012-06-12 18:39 - 02111270 ____A C:\Users\Gary\Desktop\tdsskiller.rar
2012-06-12 18:37 - 2012-06-12 18:37 - 04556274 ____R (Swearware) C:\Users\Gary\Desktop\ComboFix.exe
2012-06-12 18:34 - 2012-06-12 18:34 - 02127960 ____A (Kaspersky Lab ZAO) C:\Users\Gary\Desktop\tdsskiller.exe
2012-06-12 17:52 - 2012-06-10 08:19 - 00000000 ____D C:\Drweb
2012-06-12 17:31 - 2012-06-12 17:31 - 00011486 ____A C:\Users\Gary\Documents\MyZip.zip
2012-06-12 17:30 - 2012-06-12 17:30 - 00001188 ____A C:\Users\Public\Desktop\Express Zip File Compression Software.lnk
2012-06-12 17:30 - 2012-06-12 17:30 - 00000000 ____D C:\Users\All Users\NCH Software
2012-06-12 17:30 - 2012-06-12 17:30 - 00000000 ____D C:\Program Files (x86)\NCH Software
2012-06-12 17:29 - 2012-06-12 17:29 - 00000000 ____D C:\Users\Gary\Documents\NCH.Express.Zip.Plus.v1.12.softarchive.net
2012-06-12 17:28 - 2012-06-12 17:28 - 04007836 ____A C:\Users\Gary\Documents\NCH.Express.Zip.Plus.v1.12.softarchive.net.rar
2012-06-12 17:08 - 2012-06-12 17:07 - 00011034 ____A C:\Users\Gary\Documents\Documents.rar
2012-06-12 17:07 - 2012-06-12 17:07 - 00026697 ____A C:\Users\Gary\Documents\DDS.txt
2012-06-12 17:06 - 2012-06-12 17:06 - 00010072 ____A C:\Users\Gary\Documents\Attach.txt
2012-06-12 16:45 - 2011-09-11 16:26 - 00002395 ____A C:\Users\Gary\Desktop\Google Chrome.lnk
2012-06-12 14:04 - 2012-06-11 16:11 - 00000000 ____D C:\Program Files (x86)\Trojan Remover
2012-06-12 14:00 - 2009-07-13 21:13 - 00778150 ____A C:\Windows\System32\PerfStringBackup.INI
2012-06-12 13:56 - 2012-02-10 04:49 - 00045056 ____A C:\Windows\System32\acovcnt.exe
2012-06-12 05:27 - 2012-06-12 05:27 - 00000301 ____A C:\Users\Gary\Documents\virus path.txt
2012-06-12 01:56 - 2011-08-27 08:39 - 02198582 ____A C:\Windows\ntbtlog.txt
2012-06-11 16:14 - 2012-06-11 16:14 - 00000000 ____D C:\Users\Gary\Documents\Simply Super Software
2012-06-11 15:50 - 2011-08-27 08:46 - 00000000 ____D C:\Users\Gary\Tracing
2012-06-11 12:52 - 2011-09-11 16:19 - 00000852 ___AH C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3700817450-263443993-1340972289-1000Core.job
2012-06-10 21:10 - 2011-10-06 14:54 - 00000000 ____D C:\Users\Gary\Downloads\Google_Chrome_15.0.874.15_Beta
2012-06-10 17:56 - 2012-06-05 17:57 - 00000991 ____A C:\Users\Gary\Desktop\magicJack.lnk
2012-06-10 17:56 - 2011-09-07 12:24 - 00000000 ____D C:\Users\Gary\AppData\Roaming\mjusbsp
2012-06-10 06:39 - 2012-05-19 16:49 - 00000000 ____D C:\Users\Gary\AppData\Roaming\Complitly
2012-06-09 22:58 - 2012-04-29 16:17 - 00000000 ____D C:\Program Files (x86)\VirtualDJ
2012-06-09 21:20 - 2012-05-27 06:37 - 00000000 ____D C:\Program Files (x86)\Gygan BETA
2012-06-09 15:15 - 2012-06-09 15:15 - 00000000 ____D C:\Users\Gary\Downloads\Dr.Web.Scanner_downloaddownload.softarchive.net
2012-06-09 15:01 - 2012-06-09 15:01 - 00000000 __SHD C:\Windows\System32\%APPDATA%
2012-06-09 14:29 - 2009-07-13 21:08 - 00005094 ____A C:\Windows\Tasks\SCHEDLGU.TXT
2012-06-09 07:32 - 2012-06-09 07:32 - 00284057 ____A C:\Users\Gary\Documents\Scan Log.txt
2012-06-09 04:37 - 2012-05-12 02:08 - 00000000 ____D C:\Users\Gary\AppData\Roaming\DMCache
2012-06-08 11:49 - 2011-08-27 08:48 - 00000000 ____D C:\Users\Gary\AppData\Roaming\Camfrog
2012-06-06 15:55 - 2011-08-27 12:25 - 00000000 ____D C:\Users\Gary\AppData\Roaming\uTorrent
2012-06-06 12:36 - 2012-06-06 12:36 - 00000218 ____A C:\Users\Gary\.recently-used.xbel
2012-06-06 12:36 - 2011-08-27 03:55 - 00000000 ____D C:\users\Gary
2012-06-06 12:25 - 2011-12-04 20:02 - 00000000 ____D C:\Users\Gary\Downloads\Torrents
2012-06-05 06:50 - 2011-09-10 06:58 - 00000000 ____D C:\Users\Gary\AppData\Roaming\Skype
2012-06-05 00:06 - 2012-05-27 18:04 - 00000000 ____D C:\Users\Gary\Desktop\Unused Icons
2012-06-04 10:02 - 2012-06-04 10:02 - 00001140 ____A C:\Users\Gary\Desktop\ASIO4ALL v2 Instruction Manual.lnk
2012-06-04 10:02 - 2012-06-04 10:02 - 00000000 ____D C:\Program Files (x86)\ASIO4ALL v2
2012-06-04 10:01 - 2012-06-04 10:01 - 00000000 ____D C:\Users\All Users\Tarma Installer
2012-06-04 10:01 - 2012-06-04 10:01 - 00000000 ____D C:\Users\All Users\E-Soft
2012-06-01 19:55 - 2012-06-01 19:55 - 00012525 ____A C:\Users\Gary\Documents\Tamales.docx
2012-05-31 12:33 - 2012-05-31 12:33 - 00000435 ____A C:\Windows\SysWOW64\mprdin.ocx
2012-05-31 12:32 - 2012-05-31 12:32 - 01752576 ____A C:\Windows\SysWOW64\mprdin.dll
2012-05-27 14:58 - 2009-07-28 22:03 - 00000000 ____D C:\Windows\Panther
2012-05-27 14:58 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\ModemLogs
2012-05-27 14:50 - 2012-02-11 14:00 - 00000000 ____D C:\Users\Gary\AppData\Roaming\Xilisoft
2012-05-27 14:50 - 2012-02-11 14:00 - 00000000 ____D C:\Users\All Users\Xilisoft
2012-05-27 08:54 - 2012-05-27 07:02 - 00000000 ____D C:\Users\Gary\Documents\Aimersoft DRM Media Converter
2012-05-27 08:51 - 2012-05-27 08:51 - 00000000 ____D C:\Users\Gary\Documents\NeroVision
2012-05-27 08:33 - 2012-05-27 08:33 - 00000000 ____D C:\Program Files (x86)\Xvid
2012-05-27 07:02 - 2012-05-27 07:02 - 00001329 ____A C:\Users\Gary\Desktop\Aimersoft DRM Media Converter.lnk
2012-05-27 07:02 - 2012-05-27 07:02 - 00000000 ____D C:\Program Files (x86)\Aimersoft
2012-05-27 06:38 - 2012-05-27 06:38 - 00000000 ____D C:\Users\Gary\Documents\Gygan Downloads
2012-05-27 06:38 - 2012-05-27 06:38 - 00000000 ____D C:\Users\Gary\AppData\Local\Xenocode
2012-05-27 06:38 - 2012-05-27 06:37 - 00000000 ____D C:\Users\Gary\AppData\Roaming\Gygan
2012-05-27 06:36 - 2012-05-27 06:23 - 00000000 ____D C:\Users\Gary\Documents\iSkysoft DRM Removal
2012-05-27 06:32 - 2012-05-27 06:31 - 00000000 ____D C:\Program Files (x86)\K-Lite Codec Pack
2012-05-27 06:26 - 2012-05-27 06:26 - 00000841 ____A C:\Users\Public\Desktop\Total Uninstall 6.lnk
2012-05-27 06:26 - 2012-05-27 06:26 - 00000000 ____D C:\Users\All Users\Martau
2012-05-27 06:26 - 2012-05-27 06:26 - 00000000 ____D C:\Program Files\Total Uninstall 6
2012-05-27 06:21 - 2012-05-27 06:21 - 00001213 ____A C:\Users\Gary\Desktop\iSkysoft DRM Removal.lnk
2012-05-27 06:21 - 2012-05-27 06:21 - 00000000 ____D C:\Users\Gary\AppData\Local\iSkysoft
2012-05-27 06:21 - 2012-05-27 06:21 - 00000000 ____D C:\Program Files (x86)\iSkysoft
2012-05-26 17:05 - 2012-05-26 08:42 - 00210656 ___AH C:\Windows\temporaneo.html
2012-05-26 17:05 - 2012-05-26 08:42 - 00210656 ___AH C:\Windows\log.html
2012-05-26 09:06 - 2011-08-27 03:55 - 00000000 ____D C:\Users\Gary\AppData\LocalLow
2012-05-26 09:03 - 2012-05-26 09:03 - 00002185 ____A C:\Users\Gary\Desktop\Camfrog Video Chat 6.2.lnk
2012-05-26 08:00 - 2011-08-27 11:20 - 00000000 ____D C:\Users\Gary\AppData\Roaming\Canon
2012-05-24 09:51 - 2012-05-15 19:19 - 00031771 ____A C:\Users\Gary\Documents\estimate.docx
2012-05-24 07:37 - 2012-05-24 07:37 - 00000833 ____A C:\Users\Public\Desktop\MAGIX Audio Cleaning Lab MX Download Version.lnk
2012-05-24 07:36 - 2012-05-24 07:36 - 00000000 ____D C:\Program Files (x86)\MAGIX
2012-05-24 07:36 - 2012-05-24 05:06 - 00000000 ____D C:\Users\All Users\MAGIX
2012-05-24 05:41 - 2012-05-24 05:41 - 00043151 ____A C:\Users\Gary\Downloads\AACencoder_upgrade_en_II.rtf
2012-05-24 05:09 - 2012-05-24 05:09 - 00000000 ____D C:\Users\Gary\Documents\MAGIX
2012-05-24 05:09 - 2012-05-24 05:09 - 00000000 ____D C:\Users\Gary\AppData\Roaming\MAGIX
2012-05-23 05:09 - 2012-05-23 05:09 - 00000000 ____D C:\Program Files (x86)\Lame For Audacity
2012-05-22 17:27 - 2012-05-22 17:27 - 00308720 ____A C:\Users\Gary\Documents\Doc5.docx
2012-05-22 17:10 - 2011-09-13 09:54 - 00000000 ____D C:\Users\Gary\Documents\My Received Files
2012-05-22 16:59 - 2009-07-13 21:32 - 00000000 ____D C:\Windows\System32\FxsTmp
2012-05-22 14:37 - 2012-05-22 14:37 - 00000000 ____D C:\Users\Public\Documents\AKVIS
2012-05-22 14:36 - 2012-05-22 14:36 - 00000977 ____A C:\Users\Public\Desktop\AKVIS Retoucher.lnk
2012-05-22 14:36 - 2012-05-22 14:36 - 00000000 ____D C:\Program Files (x86)\AKVIS
2012-05-22 14:36 - 2011-08-28 05:02 - 00000000 ____D C:\Users\Gary\AppData\Local\Downloaded Installations
2012-05-21 09:14 - 2012-05-21 09:14 - 00001009 ____A C:\Users\Public\Desktop\PowerISO.lnk
2012-05-21 09:14 - 2012-05-21 09:14 - 00000000 ____D C:\Program Files (x86)\PowerISO
2012-05-20 16:57 - 2012-05-20 16:57 - 00001136 ____A C:\Users\Public\Desktop\Mozilla Firefox.lnk
2012-05-20 16:57 - 2012-05-20 16:57 - 00000000 ____D C:\Users\Gary\AppData\Local\Mozilla
2012-05-20 16:57 - 2012-05-20 16:57 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2012-05-20 16:57 - 2011-10-08 04:44 - 00000000 ____D C:\Users\Gary\AppData\Roaming\Mozilla
2012-05-20 09:42 - 2012-05-20 09:42 - 00003504 ____A C:\Users\Gary\Documents\Nucht.rtf
2012-05-19 16:54 - 2012-05-19 16:54 - 00000772 ____A C:\Users\Public\Desktop\PhotoInstrument.lnk
2012-05-19 16:49 - 2012-05-19 16:49 - 00000828 ____A C:\Users\Public\Desktop\uTorrent Turbo Booster.lnk
2012-05-19 16:49 - 2012-05-19 16:49 - 00000000 ____D C:\Users\Gary\AppData\Roaming\uTorrent Turbo Booster
2012-05-19 16:46 - 2012-05-19 16:46 - 00000803 ____A C:\Users\Public\Desktop\MarvelousDesigner2.lnk
2012-05-19 02:28 - 2012-05-19 02:28 - 00000000 ____D C:\Program Files (x86)\NirSoft
2012-05-19 02:10 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\System32\NDF
2012-05-17 04:13 - 2012-05-12 02:08 - 00000000 ____D C:\Users\Gary\AppData\Roaming\IDM
2012-05-16 18:38 - 2012-05-16 18:38 - 00000130 ____A C:\Users\Gary\AppData\Roaming\Network Monitor II_Traffic.ini
2012-05-16 18:28 - 2012-05-16 18:28 - 00000634 ____A C:\Users\Gary\AppData\Roaming\Network Monitor II_Settings.ini
2012-05-16 06:03 - 2012-05-16 06:03 - 00000000 ____D C:\Users\Gary\AppData\Roaming\jdnetmon
2012-05-16 05:59 - 2012-05-16 05:51 - 00000000 ____D C:\Users\Gary\AppData\Roaming\jdast
2012-05-16 05:51 - 2012-05-16 05:51 - 00001921 ____A C:\Users\Gary\Desktop\JDs Auto Speed Tester.lnk
2012-05-16 05:51 - 2012-05-16 05:51 - 00000000 ____D C:\Users\Gary\Documents\Speed_Tester
2012-05-16 05:51 - 2012-05-16 05:51 - 00000000 ____D C:\Program Files (x86)\JDAST
2012-05-16 05:50 - 2012-05-12 02:08 - 00000000 ____D C:\Users\Gary\Downloads\Compressed
2012-05-15 10:00 - 2012-05-27 06:31 - 00079872 ____A C:\Windows\SysWOW64\ff_vfw.dll
2012-05-14 03:41 - 2012-05-24 04:59 - 00000000 ____D C:\Users\Gary\Desktop\Language
2012-05-12 11:03 - 2012-05-12 10:20 - 00000000 ____D C:\Users\Gary\Desktop\Kindle Fire Utility
2012-05-12 09:55 - 2012-05-12 09:55 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_WinUsb_01009.Wdf
2012-05-12 09:06 - 2012-05-12 09:06 - 00001913 ____A C:\Users\Gary\Desktop\GetGo YouTube Downloader 1.6.0.742 Portable.exe - Shortcut.lnk
2012-05-12 08:26 - 2012-05-12 07:59 - 11457024 ____A C:\Users\Gary\Documents\Baptist Invitation.pcr
2012-05-12 02:20 - 2012-05-12 02:20 - 00000071 ____A C:\Users\Gary\Desktop\Base.txt
2012-05-10 18:21 - 2012-05-10 18:21 - 00004270 ____A C:\Users\Gary\Desktop\android_winusb.inf
2012-05-10 17:20 - 2012-05-10 17:20 - 01002728 ____A (Microsoft Corporation) C:\Windows\System32\WinUSBCoInstaller2.dll
2012-05-08 06:07 - 2011-08-27 08:48 - 00000000 ____D C:\Program Files (x86)\Camfrog
2012-05-08 05:47 - 2012-05-08 05:44 - 00000000 ____D C:\Users\Gary\AppData\Local\Camfrog Single Server
2012-05-08 05:43 - 2012-05-08 05:43 - 00000000 ____D C:\Users\All Users\Camfrog Server
2012-05-07 07:14 - 2011-09-08 05:35 - 00000000 ____D C:\Users\Gary\Documents\ClaudeFlash
2012-05-07 07:13 - 2012-05-07 07:13 - 00000000 ____D C:\Program Files\personalVPN
2012-05-05 08:11 - 2012-05-05 08:11 - 00178096 ____A C:\Users\Gary\BUSY DROP7.vdj
2012-05-05 08:01 - 2012-05-05 08:01 - 00082505 ____A C:\Users\Gary\!wicked_horn!.vdj
2012-05-05 06:13 - 2012-05-05 06:13 - 00523485 ____A C:\Users\Gary\Documents\Unlock iphone 4.docx
2012-05-04 20:01 - 2011-12-04 13:12 - 00000000 ____D C:\Users\Gary\AppData\Roaming\Apple Computer
2012-05-01 17:34 - 2012-05-01 17:34 - 00000000 ____D C:\Users\Gary\Documents\Bigasoft 3GP Converter
2012-05-01 17:32 - 2012-05-01 17:32 - 00001113 ____A C:\Users\Public\Desktop\Bigasoft 3GP Converter.lnk
2012-05-01 17:32 - 2011-12-04 07:27 - 00000000 ____D C:\Program Files (x86)\Bigasoft
2012-05-01 14:08 - 2012-05-01 14:08 - 00000000 ____D C:\Users\Gary\AppData\Roaming\HTC.388BC06ACDAB6261375BCE37FBA2E023C0D7EE34.1
2012-05-01 10:06 - 2012-04-30 18:59 - 00000000 ____D C:\Android
2012-05-01 06:22 - 2012-05-01 06:22 - 00000000 ____D C:\HTC
2012-05-01 06:15 - 2012-04-01 10:47 - 00000000 ____D C:\Program Files (x86)\Android
2012-04-30 22:33 - 2012-04-30 22:32 - 00000000 ____D C:\Users\Gary\AppData\Roaming\HTC
2012-04-30 22:32 - 2012-04-30 22:32 - 00001084 ____A C:\Users\Public\Desktop\HTC Sync.lnk
2012-04-30 22:32 - 2012-04-14 04:38 - 00000000 ____D C:\Program Files (x86)\HTC
2012-04-30 22:31 - 2012-04-30 22:31 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2012-04-30 22:31 - 2012-04-30 22:31 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2012-04-30 22:31 - 2011-08-27 12:10 - 00000000 ____D C:\Users\Gary\AppData\Local\Adobe
2012-04-30 22:31 - 2000-03-22 02:46 - 00000000 ____D C:\Program Files (x86)\Adobe
2012-04-30 17:16 - 2012-04-30 17:16 - 00001785 ____A C:\Users\Public\Desktop\iTunes.lnk
2012-04-30 17:16 - 2012-04-30 17:16 - 00000000 ____D C:\Program Files\iTunes
2012-04-30 17:16 - 2012-04-30 17:16 - 00000000 ____D C:\Program Files\iPod
2012-04-30 17:16 - 2012-04-30 17:16 - 00000000 ____D C:\Program Files (x86)\iTunes
2012-04-30 17:13 - 2012-04-30 17:13 - 00000000 ____D C:\Program Files\Bonjour
2012-04-30 17:13 - 2012-04-30 17:13 - 00000000 ____D C:\Program Files (x86)\Bonjour
2012-04-30 16:57 - 2012-04-30 16:57 - 00001847 ____A C:\Users\Public\Desktop\QuickTime Player.lnk
2012-04-30 16:57 - 2012-04-30 16:57 - 00000000 ____D C:\Program Files (x86)\QuickTime
2012-04-30 16:40 - 2012-04-30 16:40 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2012-04-29 16:38 - 2012-04-29 16:38 - 00001043 ____A C:\Users\Gary\Desktop\VirtualDJ 7 Pro.lnk
2012-04-28 08:09 - 2012-04-28 08:09 - 00001364 ____A C:\Users\Gary\Desktop\Amediasoft YouTube Video Converter.lnk
2012-04-28 08:09 - 2012-04-28 08:09 - 00000000 ____D C:\Windows\SysWOW64\Mpeg
2012-04-28 08:09 - 2012-04-28 08:09 - 00000000 ____D C:\Users\Gary\AppData\Local\Amediasoft
2012-04-28 08:09 - 2012-04-28 08:09 - 00000000 ____D C:\Program Files (x86)\Amediasoft
2012-04-28 07:30 - 2011-09-25 19:01 - 00000000 ____D C:\Users\Gary\AppData\Local\Nero
2012-04-28 06:41 - 2012-04-28 06:41 - 00000000 ____D C:\Users\Gary\Documents\Xilisoft
2012-04-28 06:41 - 2012-02-11 14:00 - 00000000 ____D C:\Users\Gary\AppData\Local\Xilisoft
2012-04-28 06:40 - 2012-04-28 06:40 - 00001105 ____A C:\Users\Public\Desktop\Xilisoft YouTube HD Video Downloader.lnk
2012-04-27 05:25 - 2012-04-27 05:08 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2012-04-27 05:15 - 2012-04-27 05:08 - 00001111 ____A C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2012-04-27 05:08 - 2012-04-27 05:08 - 00000000 ____D C:\Users\Gary\AppData\Roaming\Malwarebytes
2012-04-27 05:08 - 2012-04-27 05:08 - 00000000 ____D C:\Users\All Users\Malwarebytes
2012-04-25 08:56 - 2012-04-06 08:13 - 00000000 ____D C:\Users\Gary\AppData\Roaming\MOBILedit
2012-04-25 08:47 - 2012-04-25 08:47 - 00000000 ____D C:\Program Files (x86)\DVAPTray
2012-04-24 05:18 - 2012-01-19 11:15 - 00000000 ____D C:\Users\Public\CyberLink
2012-04-23 03:26 - 2012-05-03 11:07 - 00154272 ____A (Tonec Inc.) C:\Windows\System32\Drivers\idmwfp.sys
2012-04-20 11:52 - 2012-04-20 11:52 - 00001216 ____A C:\Users\Public\Desktop\Wondershare Data Recovery.lnk
2012-04-20 11:52 - 2012-04-20 11:52 - 00000000 ____D C:\Users\Gary\AppData\Local\Wondershare
2012-04-20 11:52 - 2012-04-20 11:52 - 00000000 ____D C:\Program Files (x86)\Wondershare
2012-04-20 11:33 - 2012-04-20 11:33 - 00000000 ____D C:\Program Files (x86)\GetData
2012-04-20 08:16 - 2012-04-20 08:16 - 00001065 ____A C:\Users\QBPOSDBSrvUser\Desktop\Recover Deleted Files.lnk
2012-04-20 08:16 - 2012-04-20 08:16 - 00000000 ____D C:\Program Files (x86)\Recover Deleted Files
2012-04-19 12:34 - 2012-02-08 08:27 - 00000000 ____D C:\Users\Gary\Documents\Any Video Converter Ultimate
2012-04-19 11:36 - 2012-01-19 11:12 - 00000000 ____D C:\Users\All Users\CyberLink
2012-04-19 11:20 - 2011-12-05 06:28 - 00000000 ____D C:\Users\Gary\AppData\Roaming\Thinstall
2012-04-18 19:57 - 2012-05-21 09:14 - 00126912 ____A (Power Software Ltd) C:\Windows\System32\Drivers\scdemu.sys
2012-04-17 22:03 - 2012-04-17 22:03 - 00000000 ____D C:\Program Files (x86)\Datel
2012-04-17 15:31 - 2012-04-17 15:31 - 00000000 ____D C:\Users\Gary\Documents\Datel
2012-04-15 16:46 - 2011-12-11 18:30 - 00000000 ____D C:\Users\All Users\MSNRecorderMax
2012-04-15 06:27 - 2012-04-15 05:44 - 00000000 ____D C:\ruu_log
2012-04-14 04:42 - 2011-08-27 12:10 - 00000000 ____D C:\Users\Gary\AppData\Roaming\Adobe
2012-04-14 04:38 - 2012-04-14 04:38 - 00000000 ____D C:\Program Files (x86)\Spirent Communications
2012-04-14 04:33 - 2012-04-14 04:33 - 00000000 ____D C:\Program Files (x86)\MSXML 4.0
2012-04-11 11:39 - 2012-04-11 11:39 - 00000000 ____D C:\Program Files\SoftwareForMe Inc
2012-04-09 15:06 - 2011-12-13 17:52 - 00000000 ____D C:\Program Files (x86)\RadioGet
2012-04-09 08:45 - 2012-04-09 08:45 - 00000000 ____D C:\Users\Gary\AppData\Local\MPlayer
2012-04-09 08:41 - 2012-04-09 08:41 - 00000000 ____D C:\Users\Gary\Documents\SnowFox Output
2012-04-09 08:37 - 2012-04-09 08:37 - 00000000 ____D C:\Program Files (x86)\SnowFox Software
2012-04-08 20:53 - 2012-04-08 21:33 - 13815412 ____A C:\Skype_2.7.0.907_v14.apk
2012-04-08 08:48 - 2012-04-08 07:36 - 00000000 ____D C:\Users\Gary\AppData\Roaming\Paltalk
2012-04-08 07:36 - 2012-04-08 07:36 - 00000000 ____D C:\Windows\Paltalk Messenger
2012-04-08 07:36 - 2012-04-08 07:36 - 00000000 ____D C:\Program Files (x86)\Paltalk Messenger
2012-04-08 07:36 - 2012-04-08 07:35 - 00021389 ____A C:\Windows\Paltalk Messenger Setup Log.txt
2012-04-06 08:16 - 2012-04-06 08:16 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_motmodem_01007.Wdf
2012-04-06 08:13 - 2012-04-06 08:13 - 00000000 ____D C:\Users\Gary\Documents\MOBILedit!
2012-04-06 08:11 - 2012-04-06 07:30 - 00000000 ____D C:\Program Files (x86)\MOBILedit!
2012-04-06 07:52 - 2012-04-06 07:52 - 00000000 ____D C:\Program Files\Compiled Driver Disc (Full)
2012-04-06 07:51 - 2012-04-06 07:51 - 00000000 ____D C:\Program Files\Phone Drivers Downloader
2012-04-06 07:30 - 2012-04-06 07:30 - 00000965 ____A C:\Users\Public\Desktop\MOBILedit!.lnk
2012-04-06 07:30 - 2012-04-06 07:30 - 00000000 ____D C:\Users\Public\Documents\MobilEdit!
2012-04-06 07:30 - 2012-04-06 07:30 - 00000000 ____D C:\Program Files (x86)\COMPELSON Labs
2012-04-05 05:59 - 2012-04-05 05:59 - 00000000 ____D C:\Program Files (x86)\Real
2012-04-05 05:59 - 2012-02-08 18:42 - 00185920 ____A (RealNetworks, Inc.) C:\Windows\SysWOW64\rmoc3260.dll
2012-04-05 05:59 - 2012-02-08 18:42 - 00006656 ____A (RealNetworks, Inc.) C:\Windows\SysWOW64\pndx5016.dll
2012-04-05 05:59 - 2012-02-08 18:42 - 00005632 ____A (RealNetworks, Inc.) C:\Windows\SysWOW64\pndx5032.dll
2012-04-05 05:59 - 2012-02-08 18:42 - 00000000 ____D C:\Users\Gary\AppData\Roaming\Real
2012-04-05 05:59 - 2012-02-08 18:42 - 00000000 ____D C:\Users\All Users\Real
2012-04-05 05:59 - 2012-02-08 18:42 - 00000000 ____D C:\Program Files (x86)\Real Alternative
2012-04-05 05:59 - 2008-09-03 17:47 - 00278528 ____A (Real Networks, Inc) C:\Windows\SysWOW64\pncrt.dll
2012-04-05 05:59 - 2008-05-23 04:02 - 00348160 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll
2012-04-04 18:57 - 2011-10-09 09:19 - 00000000 ___HD C:\Users\All Users\firebird
2012-04-04 13:56 - 2012-04-27 05:08 - 00024904 ____A (Malwarebytes Corporation) C:\Windows\System32\Drivers\mbam.sys
2012-04-01 19:07 - 2012-04-01 16:37 - 00000000 ____D C:\Users\Gary\.android
2012-04-01 10:46 - 2012-04-01 10:46 - 00000000 ____D C:\Program Files\Oracle
2012-04-01 10:45 - 2012-04-01 10:45 - 00188808 ____A (Oracle Corporation) C:\Windows\System32\javaw.exe
2012-04-01 10:45 - 2012-04-01 10:45 - 00188808 ____A (Oracle Corporation) C:\Windows\System32\java.exe
2012-04-01 10:45 - 2012-04-01 10:45 - 00000000 ____D C:\Program Files\Java
2012-03-30 03:20 - 2012-03-29 00:12 - 00016037 ____A C:\Users\Gary\Documents\Glad to help.docx
2012-03-28 05:03 - 2012-03-28 05:03 - 00000000 ____D C:\Users\Gary\Downloads\CCM7_Eris_V23
2012-03-28 04:08 - 2012-03-28 04:08 - 90359862 ____A C:\Users\Gary\Downloads\CCM7_Eris_V23.zip
2012-03-27 17:39 - 2012-03-27 17:39 - 00000215 ____A C:\Windows\injector.ini
2012-03-27 08:14 - 2012-03-27 08:14 - 00000000 ____D C:\Program Files (x86)\Android Injector
2012-03-26 08:09 - 2012-03-26 08:09 - 00280698 ____A C:\Users\Gary\Documents\erisone010.apk
2012-03-25 14:03 - 2012-03-25 14:03 - 00006144 ____A C:\Users\Gary\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-03-25 14:03 - 2000-03-22 02:39 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2012-03-24 22:57 - 2012-06-04 10:02 - 00215552 ____N C:\Windows\SysWOW64\amp3dj.oca
2012-03-24 22:55 - 2012-06-04 10:02 - 00202240 ____N C:\Windows\SysWOW64\asrecmms.oca
2012-03-23 05:41 - 2011-11-13 19:06 - 00001259 ____A C:\Users\Gary\Desktop\TreeSize Professional.lnk
2012-03-23 05:29 - 2011-08-27 03:56 - 00000000 ____D C:\Users\Gary\AppData\Local\VirtualStore
2012-03-23 05:26 - 2012-03-23 05:26 - 00001166 ____A C:\Users\QBPOSDBSrvUser\Desktop\Video Watermark Pro.lnk
2012-03-23 05:26 - 2012-03-23 05:26 - 00001166 ____A C:\Users\Gary\Desktop\Video Watermark Pro.lnk
2012-03-23 05:26 - 2012-03-23 05:26 - 00000000 ____D C:\Program Files\AoaoPhoto Digital Studio
2012-03-19 09:37 - 2012-03-19 09:37 - 00000000 ____D C:\Users\Gary\Documents\iVisit
2012-03-19 09:37 - 2012-03-19 09:37 - 00000000 ____D C:\Users\Gary\AppData\Roaming\iVisit Data
2012-03-19 09:37 - 2012-03-19 09:37 - 00000000 ____D C:\Program Files (x86)\iVisit
2012-03-19 06:05 - 2012-03-19 06:04 - 00460140 ____A C:\Users\Gary\Downloads\o2b2update.tar.gz
2012-03-18 23:35 - 2012-03-18 23:34 - 00010636 ____A C:\Users\Gary\Documents\Burnout Websites Articles.docx
2012-03-18 23:33 - 2012-03-18 23:33 - 00011565 ____A C:\Users\Gary\Documents\I just used this file on my 920.docx
2012-03-17 22:18 - 2012-03-17 17:55 - 00000000 ____D C:\Users\Gary\AppData\Local\Samsung
2012-03-17 22:18 - 2012-02-20 08:38 - 00000000 ____D C:\Users\All Users\Samsung
2012-03-17 18:43 - 2012-03-17 18:43 - 00000000 ____D C:\Users\Gary\AppData\Roaming\Verizon Wireless
2012-03-17 18:38 - 2011-12-03 09:20 - 00000000 ____D C:\Program Files (x86)\Samsung
2012-03-17 17:54 - 2012-03-17 17:54 - 00000000 ____D C:\Users\Gary\Documents\samsung
2012-03-17 17:54 - 2012-03-17 17:54 - 00000000 ____D C:\Users\Gary\AppData\Roaming\Samsung
2012-03-17 17:51 - 2012-03-17 17:51 - 00000000 ____D C:\Program Files (x86)\MarkAny
2012-03-17 07:52 - 2012-03-17 07:52 - 00010862 ____A C:\Users\Gary\Documents\Supaphorn Kokklang Address.docx
ZeroAccess:
C:\Windows\Installer\{cbcbd993-506d-96b9-6602-879c2385f055}
C:\Windows\Installer\{cbcbd993-506d-96b9-6602-879c2385f055}\L
C:\Windows\Installer\{cbcbd993-506d-96b9-6602-879c2385f055}\U
ZeroAccess:
C:\Users\Gary\AppData\Local\{cbcbd993-506d-96b9-6602-879c2385f055}
C:\Users\Gary\AppData\Local\{cbcbd993-506d-96b9-6602-879c2385f055}\@
C:\Users\Gary\AppData\Local\{cbcbd993-506d-96b9-6602-879c2385f055}\L
C:\Users\Gary\AppData\Local\{cbcbd993-506d-96b9-6602-879c2385f055}\U
========================= Known DLLs (Whitelisted) ============
========================= Bamital & volsnap Check ============
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe
[2000-03-22 03:16] - [2000-03-22 03:16] - 2613248 ____A (Microsoft Corporation) B95EEB0F4E5EFBF1038A35B3351CF047
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe
[2009-07-13 15:19] - [2009-07-13 17:39] - 0328704 ____A (Microsoft Corporation) 014A9CB92514E27C0107614DF764BC06
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
==================== EXE ASSOCIATION =====================
HKLM\...\.exe: exefile => OK
HKLM\...\exefile\DefaultIcon: %1 => OK
HKLM\...\exefile\open\command: "%1" %* => OK
========================= Memory info ======================
Percentage of memory in use: 14%
Total physical RAM: 4061.09 MB
Available physical RAM: 3490.09 MB
Total Pagefile: 4059.23 MB
Available Pagefile: 3481.36 MB
Total Virtual: 8192 MB
Available Virtual: 8191.89 MB
======================= Partitions =========================
1 Drive c: (OS) (Fixed) (Total:116.44 GB) (Free:8.33 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
2 Drive d: (DATA) (Fixed) (Total:331.01 GB) (Free:116.3 GB) NTFS
4 Drive f: (HP) (Removable) (Total:3.73 GB) (Free:1.1 GB) FAT32
5 Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS
Disk ### Status Size Free Dyn Gpt
-------- ------------- ------- ------- --- ---
Disk 0 Online 465 GB 2048 KB
Disk 1 Online 3824 MB 0 B
Partitions of Disk 0:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 18 GB 31 KB
Partition 2 Primary 116 GB 18 GB
Partition 0 Extended 331 GB 134 GB
Partition 3 Logical 331 GB 134 GB
======================================================================================================
Disk: 0
Partition 1
Type : 1C
Hidden: Yes
Active: No
There is no volume associated with this partition.
======================================================================================================
Disk: 0
Partition 2
Type : 07
Hidden: No
Active: Yes
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 1 C OS NTFS Partition 116 GB Healthy
======================================================================================================
Disk: 0
Partition 3
Type : 07
Hidden: No
Active: No
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 2 D DATA NTFS Partition 331 GB Healthy
======================================================================================================
Partitions of Disk 1:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 3823 MB 64 KB
======================================================================================================
Disk: 1
Partition 1
Type : 0B
Hidden: No
Active: Yes
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 3 F HP FAT32 Removable 3823 MB Healthy
======================================================================================================
==========================================================
Last Boot: 2012-06-08 02:13
======================= End Of Log ==========================