Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Startup Repair Loop/ci.dll corrupt


  • This topic is locked This topic is locked
9 replies to this topic

#1 Rolf35

Rolf35

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:06:26 AM

Posted 16 August 2011 - 03:10 AM

Hi all, recently my computer rebooted on it's own and started the Startup Repair loop problem, every time stating that my ci.dll is corrupt. It will not let me run in safe mode and I can't find my Windows 7 installation disc at the moment, I plan to look more thoroughly tomorrow. I've tried the farbar recovery scan tool but when I try to run the tool in cmd, it says that the necessary subsystem needed to run it is not present. If anyone is able to shed some light on how to fix this virus/trojan it would be greatly appreciated. Thanks

BC AdBot (Login to Remove)

 


#2 Farbar

Farbar

    Just Curious


  • Security Developer
  • 21,719 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:The Netherlands
  • Local time:01:26 PM

Posted 16 August 2011 - 01:57 PM

Hi Rolf35,

Welcome to Bleeping Computer.

You are running the x32 (x86) version, that is the reason you get the error. You should download and run the x64 version.

For x32 (x86) bit systems download Farbar Recovery Scan Tool and save it to a flash drive.
For x64 bit systems download Farbar Recovery Scan Tool x64 and save it to a flash drive.

Plug the flashdrive into the infected PC.

Enter System Recovery Options.

To enter System Recovery Options from the Advanced Boot Options:
  • Restart the computer.
  • As soon as the BIOS is loaded begin tapping the F8 key until Advanced Boot Options appears.
  • Use the arrow keys to select the Repair your computer menu item.
  • Choose your language settings, and then click Next.
  • Select the operating system you want to repair, and then click Next.
  • Select your user account and click Next.
On the System Recovery Options menu you will get the following options:
Startup Repair
System Restore
Windows Complete PC Restore
Windows Memory Diagnostic Tool
Command Prompt
[*]Select Command Prompt
[*]In the command window type in notepad and press Enter.
[*]The notepad opens. Under File menu select Open.
[*]Select "Computer" and find your flash drive letter and close the notepad.
[*]In the command window type e:\frst.exe (for x64 bit version type e:\frst64) and press Enter
Note: Replace letter e with the drive letter of your flash drive.
[*]The tool will start to run.
[*]When the tool opens click Yes to disclaimer.
[*]Press Scan button.
[*]It will make a log (FRST.txt) on the flash drive. Please copy and paste it to your reply.[/list]

#3 Rolf35

Rolf35
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:06:26 AM

Posted 16 August 2011 - 02:33 PM

Wow can't believe I didn't think of that. Attached is the text file you requested. After the scan I did not click anything else, do I need to hit the "fix" button or is that something I should wait on? Thanks

Scan result of Farbars's Recovery Tool (FRST written by farbar) Version 2.2.1
Ran by SYSTEM at 2011-08-16 14:28:56
Running from H:\
Windows 7 Home Premium (X64) OS Language: English(US)
The current controlset is ControlSet001

========================== Registry (Whitelisted) =============

HKLM\...\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe [2122536 2010-05-07] (Synaptics Incorporated)
HKLM\...\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe [166424 2010-04-07] (Intel Corporation)
HKLM\...\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe [391192 2010-04-07] (Intel Corporation)
HKLM\...\Run: [Persistence] C:\Windows\system32\igfxpers.exe [413720 2010-04-07] (Intel Corporation)
HKLM\...\Run: [IntelliPoint] "c:\Program Files\Microsoft IntelliPoint\ipoint.exe" [2327952 2010-07-21] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [35696 2009-02-27] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey [1486392 2011-06-28] (McAfee, Inc.)
HKLM-x32\...\Run: [Dell DataSafe Online] "C:\Program Files (x86)\Dell DataSafe Online\DataSafeOnline.exe" /m [1807680 2010-02-09] ()
HKLM-x32\...\Run: [Desktop Disc Tool] "C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe" [498160 2009-10-15] ()
HKLM-x32\...\Run: [Dell Webcam Central] "C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" /mode2 [409744 2009-06-24] (Creative Technology Ltd)
HKLM-x32\...\Run: [DellSupportCenter] "c:\Program Files (x86)\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter [x]
HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [248552 2010-05-14] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices [91520 2010-03-13] (Microsoft Corporation)
HKLM-x32\...\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [421888 2010-11-29] (Apple Inc.)
HKLM-x32\...\Run: [AppleSyncNotifier] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [58656 2011-04-20] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" [421160 2011-06-07] (Apple Inc.)
HKU\Ben\...\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe [9728 2009-07-13] (Microsoft Corporation)
HKLM\...\RunOnce: [*Restore] C:\Windows\system32\rstrui.exe /RUNONCE [296960 2009-07-13] (Microsoft Corporation)
HKLM-x32\...\RunOnce: ["C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpdate.exe"] "C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpdate.exe" [560128 2010-10-22] (Dell)
Winlogon\Notify\GoToAssist: C:\Program Files (x86)\Citrix\GoToAssist\514\G2AWinLogon_x64.dll [X]
Winlogon\Notify\igfxcui: igfxdev.dll (Intel Corporation)
Tcpip\Parameters: [DhcpNameServer] 75.75.75.75 75.75.76.76
Tcpip\..\Interfaces\{5A5D1062-EDAD-4266-861D-2CEBBFC6E7C1}: [NameServer]192.168.1.1
Tcpip\..\Interfaces\{893D40DB-FE49-4314-BDE0-3BE7239E95D4}: [NameServer]192.168.1.1

==================== Services (Whitelisted) ======

3 McComponentHostService; "C:\Program Files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe" [227232 2010-01-15] (McAfee, Inc.)
2 McMPFSvc; "C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc [355440 2010-03-10] (McAfee, Inc.)
2 mcmscsvc; "C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe" /McCoreSvc [355440 2010-03-10] (McAfee, Inc.)
2 McNaiAnn; "C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe" /McCoreSvc [355440 2010-03-10] (McAfee, Inc.)
2 McNASvc; "C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe" /McCoreSvc [355440 2010-03-10] (McAfee, Inc.)
3 McODS; "C:\Program Files\mcafee\VirusScan\mcods.exe" [509416 2010-10-07] (McAfee, Inc.)
4 McOobeSv; "C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe" /McCoreSvc [355440 2010-03-10] (McAfee, Inc.)
2 McProxy; "C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe" /McCoreSvc [355440 2010-03-10] (McAfee, Inc.)
2 McShield; "C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe" [200056 2011-04-14] (McAfee, Inc.)
2 mfefire; "C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe" [245352 2011-04-14] (McAfee, Inc.)
2 mfevtp; "C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe" [149032 2011-04-14] (McAfee, Inc.)
3 Microsoft SharePoint Workspace Audit Service; "C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE" /auditservice [30969208 2010-03-25] (Microsoft Corporation)
2 UNS; "C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe" [2320920 2009-09-30] (Intel Corporation)
2 btwdins; c:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [x]

========================== Drivers (Whitelisted) =============

3 BcmVWL; C:\Windows\System32\DRIVERS\bcmvwl64.sys [20984 2010-02-02] (Broadcom Corporation)
3 btwrchid; C:\Windows\System32\DRIVERS\btwrchid.sys [21160 2010-03-30] (Broadcom Corporation.)
3 cfwids; C:\Windows\System32\drivers\cfwids.sys [63056 2011-04-14] (McAfee, Inc.)
3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [121376 2011-04-14] (McAfee, Inc.)
3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [190520 2011-04-14] (McAfee, Inc.)
3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [441840 2011-04-14] (McAfee, Inc.)
0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [530304 2011-04-14] (McAfee, Inc.)
1 mfenlfk; C:\Windows\System32\DRIVERS\mfenlfk.sys [75160 2011-04-14] (McAfee, Inc.)
3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [94992 2011-04-14] (McAfee, Inc.)
0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [283744 2011-04-14] (McAfee, Inc.)
2 SCManager; C:\Program Files (x86)\SafeConnect\scManager.sys servicestart [174432 2010-11-14] (Impulse Point, LLC)
3 IntcAzAudAddService; C:\Windows\System32\drivers\RTKVHD64.sys [x]
3 mfeavfk01; [x]

========================== NetSvcs ========================

============ One Month Created Files and Folders ==============

2011-08-13 01:37 - 2011-08-13 01:37 - 0000000 ____A C:\Windows\nsreg.dat
2011-08-13 00:55 - 2011-08-13 01:00 - 0009260 __ASH C:\Users\Ben\Local Settings\lvvd2lju371237kq43u66gj666dwqc3f3le5807hc57
2011-08-13 00:55 - 2011-08-13 01:00 - 0009260 __ASH C:\Users\Ben\Local Settings\Application Data\lvvd2lju371237kq43u66gj666dwqc3f3le5807hc57
2011-08-13 00:55 - 2011-08-13 01:00 - 0009260 __ASH C:\Users\Ben\AppData\Local\lvvd2lju371237kq43u66gj666dwqc3f3le5807hc57
2011-08-13 00:55 - 2011-08-13 01:00 - 0009260 __ASH C:\Users\All Users\lvvd2lju371237kq43u66gj666dwqc3f3le5807hc57
2011-08-13 00:55 - 2011-08-13 01:00 - 0009260 __ASH C:\Users\All Users\Application Data\lvvd2lju371237kq43u66gj666dwqc3f3le5807hc57
2011-08-13 00:55 - 2011-08-13 01:00 - 0009260 __ASH C:\ProgramData\lvvd2lju371237kq43u66gj666dwqc3f3le5807hc57
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\Local Settings\vbyk.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\Local Settings\ratv.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\Local Settings\qcap.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\Local Settings\iytw.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\Local Settings\Application Data\vbyk.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\Local Settings\Application Data\ratv.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\Local Settings\Application Data\qcap.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\Local Settings\Application Data\iytw.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\AppData\Local\vbyk.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\AppData\Local\ratv.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\AppData\Local\qcap.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\AppData\Local\iytw.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\All Users\wodp.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\All Users\erpp.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\All Users\eorj.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\All Users\Application Data\wodp.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\All Users\Application Data\erpp.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\All Users\Application Data\eorj.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\ProgramData\wodp.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\ProgramData\erpp.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\ProgramData\eorj.exe
2011-08-11 03:33 - 2011-08-11 03:33 - 0000000 __SHD C:\Windows\SysWOW64\%APPDATA%
2011-08-10 14:50 - 2011-07-08 21:44 - 0287744 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\mrxsmb10.sys
2011-08-10 14:50 - 2011-06-16 00:31 - 0199680 ____A (Microsoft Corporation) C:\Windows\System32\xmllite.dll
2011-08-10 14:50 - 2011-06-15 23:35 - 0180224 ____A (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll
2011-08-10 14:50 - 2011-06-15 04:58 - 0212992 ____A (Microsoft Corporation) C:\Windows\System32\odbctrac.dll
2011-08-10 14:50 - 2011-06-15 04:58 - 0163840 ____A (Microsoft Corporation) C:\Windows\System32\odbccp32.dll
2011-08-10 14:50 - 2011-06-15 04:58 - 0106496 ____A (Microsoft Corporation) C:\Windows\System32\odbccu32.dll
2011-08-10 14:50 - 2011-06-15 04:58 - 0106496 ____A (Microsoft Corporation) C:\Windows\System32\odbccr32.dll
2011-08-10 14:50 - 2011-06-15 04:04 - 0319488 ____A (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll
2011-08-10 14:50 - 2011-06-15 04:04 - 0163840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll
2011-08-10 14:50 - 2011-06-15 04:04 - 0122880 ____A (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll
2011-08-10 14:50 - 2011-06-15 04:04 - 0086016 ____A (Microsoft Corporation) C:\Windows\SysWOW64\odbccu32.dll
2011-08-10 14:50 - 2011-06-15 04:04 - 0081920 ____A (Microsoft Corporation) C:\Windows\SysWOW64\odbccr32.dll
2011-08-10 14:49 - 2011-07-22 02:34 - 9322496 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2011-08-10 14:49 - 2011-07-22 01:38 - 5989376 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2011-08-10 14:49 - 2011-07-16 00:26 - 0362496 ____A (Microsoft Corporation) C:\Windows\System32\wow64win.dll
2011-08-10 14:49 - 2011-07-16 00:26 - 0243200 ____A (Microsoft Corporation) C:\Windows\System32\wow64.dll
2011-08-10 14:49 - 2011-07-16 00:26 - 0214528 ____A (Microsoft Corporation) C:\Windows\System32\winsrv.dll
2011-08-10 14:49 - 2011-07-16 00:26 - 0013312 ____A (Microsoft Corporation) C:\Windows\System32\wow64cpu.dll
2011-08-10 14:49 - 2011-07-16 00:24 - 0016384 ____A (Microsoft Corporation) C:\Windows\System32\ntvdm64.dll
2011-08-10 14:49 - 2011-07-16 00:21 - 1162240 ____A (Microsoft Corporation) C:\Windows\System32\kernel32.dll
2011-08-10 14:49 - 2011-07-16 00:21 - 0422400 ____A (Microsoft Corporation) C:\Windows\System32\KernelBase.dll
2011-08-10 14:49 - 2011-07-16 00:17 - 0338432 ____A (Microsoft Corporation) C:\Windows\System32\conhost.exe
2011-08-10 14:49 - 2011-07-16 00:04 - 0006144 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0005120 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0004608 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0004608 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll
2011-08-10 14:49 - 2011-07-16 00:04 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 23:36 - 0014336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2011-08-10 14:49 - 2011-07-15 23:31 - 0025600 ____A (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2011-08-10 14:49 - 2011-07-15 23:30 - 1048576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2011-08-10 14:49 - 2011-07-15 23:30 - 0272384 ____A (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2011-08-10 14:49 - 2011-07-15 23:30 - 0005120 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2011-08-10 14:49 - 2011-07-15 23:19 - 0005120 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 23:19 - 0004608 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 23:19 - 0004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 23:19 - 0004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 23:19 - 0004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 23:19 - 0004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 23:19 - 0004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 23:19 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 23:19 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 23:19 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 23:19 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 23:19 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 23:19 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 23:19 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 23:19 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 23:19 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 23:19 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 23:19 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 23:19 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 23:19 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 23:19 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 23:19 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 23:19 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 23:19 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 21:26 - 0007680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2011-08-10 14:49 - 2011-07-15 21:26 - 0002048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2011-08-10 14:49 - 2011-07-15 21:21 - 0006144 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 21:21 - 0004608 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 21:21 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2011-08-10 14:49 - 2011-07-15 21:21 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2011-08-10 14:49 - 2011-06-21 01:27 - 1896832 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys
2011-08-10 14:49 - 2011-06-21 01:20 - 1499648 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2011-08-10 14:49 - 2011-06-21 01:19 - 2458624 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2011-08-10 14:49 - 2011-06-21 01:19 - 12371456 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2011-08-10 14:49 - 2011-06-21 00:36 - 1230336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2011-08-10 14:49 - 2011-06-21 00:34 - 2072576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2011-08-10 14:49 - 2011-06-21 00:34 - 10989568 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2011-08-10 14:48 - 2011-07-22 00:35 - 1638912 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2011-08-10 14:48 - 2011-07-21 23:56 - 1638912 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2011-08-10 14:48 - 2011-06-23 00:31 - 5474688 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2011-08-10 14:48 - 2011-06-22 23:32 - 3967872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2011-08-10 14:48 - 2011-06-22 23:32 - 3911552 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2011-08-10 14:48 - 2011-06-21 01:20 - 1197056 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2011-08-10 14:48 - 2011-06-21 01:20 - 1026560 ____A (Microsoft Corporation) C:\Windows\System32\mstime.dll
2011-08-10 14:48 - 2011-06-21 01:20 - 0703488 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2011-08-10 14:48 - 2011-06-21 01:20 - 0134144 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2011-08-10 14:48 - 2011-06-21 01:20 - 0097280 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2011-08-10 14:48 - 2011-06-21 01:20 - 0082944 ____A (Microsoft Corporation) C:\Windows\System32\msfeedsbs.dll
2011-08-10 14:48 - 2011-06-21 01:20 - 0057856 ____A (Microsoft Corporation) C:\Windows\System32\licmgr10.dll
2011-08-10 14:48 - 2011-06-21 01:19 - 0445952 ____A (Microsoft Corporation) C:\Windows\System32\iedkcs32.dll
2011-08-10 14:48 - 2011-06-21 01:19 - 0256000 ____A (Microsoft Corporation) C:\Windows\System32\iepeers.dll
2011-08-10 14:48 - 2011-06-21 01:19 - 0247808 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2011-08-10 14:48 - 2011-06-21 01:19 - 0064512 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2011-08-10 14:48 - 2011-06-21 01:17 - 0012288 ____A (Microsoft Corporation) C:\Windows\System32\msfeedssync.exe
2011-08-10 14:48 - 2011-06-21 00:36 - 0981504 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2011-08-10 14:48 - 2011-06-21 00:36 - 0132096 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2011-08-10 14:48 - 2011-06-21 00:35 - 0606208 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mstime.dll
2011-08-10 14:48 - 2011-06-21 00:35 - 0599552 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2011-08-10 14:48 - 2011-06-21 00:35 - 0067072 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2011-08-10 14:48 - 2011-06-21 00:35 - 0064512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2011-08-10 14:48 - 2011-06-21 00:35 - 0044544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2011-08-10 14:48 - 2011-06-21 00:34 - 0381440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2011-08-10 14:48 - 2011-06-21 00:34 - 0185856 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2011-08-10 14:48 - 2011-06-21 00:34 - 0176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2011-08-10 14:48 - 2011-06-21 00:34 - 0048128 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2011-08-10 14:48 - 2011-06-21 00:32 - 0012800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2011-08-10 14:48 - 2011-06-21 00:05 - 0482816 ____A (Microsoft Corporation) C:\Windows\System32\html.iec
2011-08-10 14:48 - 2011-06-20 23:26 - 0386048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2011-08-08 18:45 - 2011-08-08 18:46 - 13685936 ____A (Mozilla) C:\Users\Ben\Downloads\Firefox Setup 5.0.1.exe
2011-08-01 23:03 - 2011-08-01 23:54 - 4373892 ____A C:\Windows\SysWOW64\kernelcache.release.n72
2011-08-01 23:03 - 2011-08-01 23:54 - 0100676 ____A C:\Windows\SysWOW64\iBSS.n72ap
2011-08-01 22:58 - 2011-08-01 22:58 - 2179331 ____A C:\Users\Ben\Downloads\gp_win_rc6.1.zip
2011-07-25 19:34 - 2011-07-25 19:34 - 0064849 ____A C:\Users\Ben\Downloads\attachments.zip
2011-07-19 13:14 - 2011-07-19 13:14 - 0000000 ____D C:\Program Files (x86)\Apple Software Update
2011-07-19 13:13 - 2011-07-19 13:13 - 0000000 ____D C:\Program Files\iTunes
2011-07-19 13:13 - 2011-07-19 13:13 - 0000000 ____D C:\Program Files\iPod
2011-07-19 13:13 - 2011-07-19 13:13 - 0000000 ____D C:\Program Files (x86)\iTunes


============ 3 Months Modified Files and Folders =============

2011-08-16 14:29 - 2011-08-16 14:28 - 0000000 ____D C:\FRST
2011-08-16 01:55 - 2010-10-24 03:08 - 0000000 ____D C:\Users\All Users\McAfee Security Scan
2011-08-16 01:55 - 2010-10-24 03:08 - 0000000 ____D C:\Users\All Users\Application Data\McAfee Security Scan
2011-08-16 01:55 - 2010-10-24 03:08 - 0000000 ____D C:\ProgramData\McAfee Security Scan
2011-08-16 01:55 - 2010-10-20 19:55 - 0000000 ____D C:\Users\Ben\Local Settings\Stardock_Corporation
2011-08-16 01:55 - 2010-10-20 19:55 - 0000000 ____D C:\Users\Ben\Local Settings\Application Data\Stardock_Corporation
2011-08-16 01:55 - 2010-10-20 19:55 - 0000000 ____D C:\Users\Ben\Application Data\Roxio
2011-08-16 01:55 - 2010-10-20 19:55 - 0000000 ____D C:\Users\Ben\AppData\Roaming\Roxio
2011-08-16 01:55 - 2010-10-20 19:55 - 0000000 ____D C:\Users\Ben\AppData\Local\Stardock_Corporation
2011-08-16 01:55 - 2010-10-20 19:51 - 0000000 ____D C:\users\Ben
2011-08-16 01:55 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\AppCompat
2011-08-16 01:54 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\registration
2011-08-15 12:02 - 2010-10-22 18:13 - 0524288 __ASH C:\Windows\System32\config\COMPONENTS{5e93ea4c-de31-11df-881a-5cac4ce8e8bd}.TMContainer00000000000000000002.regtrans-ms
2011-08-15 12:02 - 2010-10-22 18:13 - 0065536 __ASH C:\Windows\System32\config\COMPONENTS{5e93ea4c-de31-11df-881a-5cac4ce8e8bd}.TM.blf
2011-08-15 11:47 - 2010-10-09 21:14 - 3061202944 __ASH C:\hiberfil.sys
2011-08-15 01:09 - 2011-06-16 10:14 - 3068272 ___AH C:\Users\Ben\Local Settings\IconCache.db
2011-08-15 01:09 - 2011-06-16 10:14 - 3068272 ___AH C:\Users\Ben\Local Settings\Application Data\IconCache.db
2011-08-15 01:09 - 2011-06-16 10:14 - 3068272 ___AH C:\Users\Ben\AppData\Local\IconCache.db
2011-08-14 01:10 - 2011-03-22 16:06 - 0000892 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2011-08-14 01:10 - 2009-07-14 00:10 - 2088224 ____A C:\Windows\WindowsUpdate.log
2011-08-13 19:23 - 2011-06-16 10:07 - 0000392 ____A C:\Windows\Tasks\Defraggler Volume C Task.job
2011-08-13 17:43 - 2009-07-13 23:45 - 0014240 ____A C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2011-08-13 17:43 - 2009-07-13 23:45 - 0014240 ____A C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2011-08-13 17:39 - 2009-07-14 00:13 - 0727246 ____A C:\Windows\System32\PerfStringBackup.INI
2011-08-13 13:26 - 2011-06-16 10:13 - 0000506 ____A C:\Windows\Tasks\SystemToolsDailyTest.job
2011-08-13 13:04 - 2011-06-16 10:13 - 0003025 ____A C:\Windows\setupact.log
2011-08-13 13:04 - 2011-03-22 16:06 - 0000888 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2011-08-13 13:04 - 2009-07-14 00:08 - 0000006 ___AH C:\Windows\Tasks\SA.DAT
2011-08-13 01:37 - 2011-08-13 01:37 - 0000000 ____A C:\Windows\nsreg.dat
2011-08-13 01:37 - 2010-10-23 15:13 - 0000000 ____D C:\Users\Ben\Application Data\Mozilla
2011-08-13 01:37 - 2010-10-23 15:13 - 0000000 ____D C:\Users\Ben\AppData\Roaming\Mozilla
2011-08-13 01:37 - 2010-10-23 15:13 - 0000000 ____D C:\Program Files (x86)\Mozilla Firefox
2011-08-13 01:00 - 2011-08-13 00:55 - 0009260 __ASH C:\Users\Ben\Local Settings\lvvd2lju371237kq43u66gj666dwqc3f3le5807hc57
2011-08-13 01:00 - 2011-08-13 00:55 - 0009260 __ASH C:\Users\Ben\Local Settings\Application Data\lvvd2lju371237kq43u66gj666dwqc3f3le5807hc57
2011-08-13 01:00 - 2011-08-13 00:55 - 0009260 __ASH C:\Users\Ben\AppData\Local\lvvd2lju371237kq43u66gj666dwqc3f3le5807hc57
2011-08-13 01:00 - 2011-08-13 00:55 - 0009260 __ASH C:\Users\All Users\lvvd2lju371237kq43u66gj666dwqc3f3le5807hc57
2011-08-13 01:00 - 2011-08-13 00:55 - 0009260 __ASH C:\Users\All Users\Application Data\lvvd2lju371237kq43u66gj666dwqc3f3le5807hc57
2011-08-13 01:00 - 2011-08-13 00:55 - 0009260 __ASH C:\ProgramData\lvvd2lju371237kq43u66gj666dwqc3f3le5807hc57
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\Local Settings\vbyk.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\Local Settings\ratv.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\Local Settings\qcap.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\Local Settings\iytw.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\Local Settings\Application Data\vbyk.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\Local Settings\Application Data\ratv.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\Local Settings\Application Data\qcap.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\Local Settings\Application Data\iytw.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\AppData\Local\vbyk.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\AppData\Local\ratv.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\AppData\Local\qcap.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\AppData\Local\iytw.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\All Users\wodp.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\All Users\erpp.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\All Users\eorj.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\All Users\Application Data\wodp.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\All Users\Application Data\erpp.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\All Users\Application Data\eorj.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\ProgramData\wodp.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\ProgramData\erpp.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\ProgramData\eorj.exe
2011-08-11 03:33 - 2011-08-11 03:33 - 0000000 __SHD C:\Windows\SysWOW64\%APPDATA%
2011-08-11 03:30 - 2009-07-14 00:08 - 0032592 ____A C:\Windows\Tasks\SCHEDLGU.TXT
2011-08-11 03:29 - 2011-06-16 10:13 - 0000564 ____A C:\Windows\Tasks\PCDoctorBackgroundMonitorTask.job
2011-08-11 03:27 - 2010-10-22 19:43 - 0000000 ____D C:\Users\Ben\Application Data\SoftGrid Client
2011-08-11 03:27 - 2010-10-22 19:43 - 0000000 ____D C:\Users\Ben\AppData\Roaming\SoftGrid Client
2011-08-11 03:08 - 2010-10-22 19:53 - 54065608 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
2011-08-11 03:08 - 2010-10-22 19:26 - 0000000 ____D C:\Users\All Users\Microsoft Help
2011-08-11 03:08 - 2010-10-22 19:26 - 0000000 ____D C:\Users\All Users\Application Data\Microsoft Help
2011-08-11 03:08 - 2010-10-22 19:26 - 0000000 ____D C:\ProgramData\Microsoft Help
2011-08-08 18:46 - 2011-08-08 18:45 - 13685936 ____A (Mozilla) C:\Users\Ben\Downloads\Firefox Setup 5.0.1.exe
2011-08-05 07:07 - 2011-06-16 10:21 - 0001496 ____A C:\Windows\PFRO.log
2011-08-01 23:54 - 2011-08-01 23:03 - 4373892 ____A C:\Windows\SysWOW64\kernelcache.release.n72
2011-08-01 23:54 - 2011-08-01 23:03 - 0100676 ____A C:\Windows\SysWOW64\iBSS.n72ap
2011-08-01 22:58 - 2011-08-01 22:58 - 2179331 ____A C:\Users\Ben\Downloads\gp_win_rc6.1.zip
2011-07-31 21:51 - 2010-11-16 01:06 - 0000000 ____D C:\Users\Ben\Local Settings\Windows Live
2011-07-31 21:51 - 2010-11-16 01:06 - 0000000 ____D C:\Users\Ben\Local Settings\Application Data\Windows Live
2011-07-31 21:51 - 2010-11-16 01:06 - 0000000 ____D C:\Users\Ben\AppData\Local\Windows Live
2011-07-27 20:50 - 2011-06-16 10:12 - 0000000 ____D C:\Program Files\Dell Support Center
2011-07-27 20:50 - 2010-10-09 19:36 - 0000000 ____D C:\Users\All Users\PCDr
2011-07-27 20:50 - 2010-10-09 19:36 - 0000000 ____D C:\Users\All Users\Application Data\PCDr
2011-07-27 20:50 - 2010-10-09 19:36 - 0000000 ____D C:\ProgramData\PCDr
2011-07-25 19:34 - 2011-07-25 19:34 - 0064849 ____A C:\Users\Ben\Downloads\attachments.zip
2011-07-22 02:34 - 2011-08-10 14:49 - 9322496 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2011-07-22 01:38 - 2011-08-10 14:49 - 5989376 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2011-07-22 00:35 - 2011-08-10 14:48 - 1638912 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2011-07-21 23:56 - 2011-08-10 14:48 - 1638912 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2011-07-19 13:14 - 2011-07-19 13:14 - 0000000 ____D C:\Program Files (x86)\Apple Software Update
2011-07-19 13:13 - 2011-07-19 13:13 - 0000000 ____D C:\Program Files\iTunes
2011-07-19 13:13 - 2011-07-19 13:13 - 0000000 ____D C:\Program Files\iPod
2011-07-19 13:13 - 2011-07-19 13:13 - 0000000 ____D C:\Program Files (x86)\iTunes
2011-07-16 00:26 - 2011-08-10 14:49 - 0362496 ____A (Microsoft Corporation) C:\Windows\System32\wow64win.dll
2011-07-16 00:26 - 2011-08-10 14:49 - 0243200 ____A (Microsoft Corporation) C:\Windows\System32\wow64.dll
2011-07-16 00:26 - 2011-08-10 14:49 - 0214528 ____A (Microsoft Corporation) C:\Windows\System32\winsrv.dll
2011-07-16 00:26 - 2011-08-10 14:49 - 0013312 ____A (Microsoft Corporation) C:\Windows\System32\wow64cpu.dll
2011-07-16 00:24 - 2011-08-10 14:49 - 0016384 ____A (Microsoft Corporation) C:\Windows\System32\ntvdm64.dll
2011-07-16 00:21 - 2011-08-10 14:49 - 1162240 ____A (Microsoft Corporation) C:\Windows\System32\kernel32.dll
2011-07-16 00:21 - 2011-08-10 14:49 - 0422400 ____A (Microsoft Corporation) C:\Windows\System32\KernelBase.dll
2011-07-16 00:17 - 2011-08-10 14:49 - 0338432 ____A (Microsoft Corporation) C:\Windows\System32\conhost.exe
2011-07-16 00:04 - 2011-08-10 14:49 - 0006144 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0005120 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0004608 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0004608 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll
2011-07-16 00:04 - 2011-08-10 14:49 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll
2011-07-15 23:36 - 2011-08-10 14:49 - 0014336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2011-07-15 23:31 - 2011-08-10 14:49 - 0025600 ____A (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2011-07-15 23:30 - 2011-08-10 14:49 - 1048576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2011-07-15 23:30 - 2011-08-10 14:49 - 0272384 ____A (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2011-07-15 23:30 - 2011-08-10 14:49 - 0005120 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2011-07-15 23:19 - 2011-08-10 14:49 - 0005120 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2011-07-15 23:19 - 2011-08-10 14:49 - 0004608 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2011-07-15 23:19 - 2011-08-10 14:49 - 0004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2011-07-15 23:19 - 2011-08-10 14:49 - 0004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2011-07-15 23:19 - 2011-08-10 14:49 - 0004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2011-07-15 23:19 - 2011-08-10 14:49 - 0004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2011-07-15 23:19 - 2011-08-10 14:49 - 0004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2011-07-15 23:19 - 2011-08-10 14:49 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2011-07-15 23:19 - 2011-08-10 14:49 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2011-07-15 23:19 - 2011-08-10 14:49 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2011-07-15 23:19 - 2011-08-10 14:49 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2011-07-15 23:19 - 2011-08-10 14:49 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2011-07-15 23:19 - 2011-08-10 14:49 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2011-07-15 23:19 - 2011-08-10 14:49 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2011-07-15 23:19 - 2011-08-10 14:49 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-07-15 23:19 - 2011-08-10 14:49 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2011-07-15 23:19 - 2011-08-10 14:49 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2011-07-15 23:19 - 2011-08-10 14:49 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2011-07-15 23:19 - 2011-08-10 14:49 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2011-07-15 23:19 - 2011-08-10 14:49 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2011-07-15 23:19 - 2011-08-10 14:49 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2011-07-15 23:19 - 2011-08-10 14:49 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2011-07-15 23:19 - 2011-08-10 14:49 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2011-07-15 23:19 - 2011-08-10 14:49 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2011-07-15 21:26 - 2011-08-10 14:49 - 0007680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2011-07-15 21:26 - 2011-08-10 14:49 - 0002048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2011-07-15 21:21 - 2011-08-10 14:49 - 0006144 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2011-07-15 21:21 - 2011-08-10 14:49 - 0004608 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2011-07-15 21:21 - 2011-08-10 14:49 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2011-07-15 21:21 - 2011-08-10 14:49 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2011-07-14 03:21 - 2009-07-13 23:45 - 0418168 ____A C:\Windows\System32\FNTCACHE.DAT
2011-07-08 21:44 - 2011-08-10 14:50 - 0287744 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\mrxsmb10.sys
2011-06-26 12:04 - 2011-06-26 12:04 - 0000000 ____D C:\Windows\Sun
2011-06-24 18:39 - 2011-06-15 15:15 - 0000000 ____D C:\Inky
2011-06-23 19:04 - 2011-06-16 09:45 - 0000000 __SHD C:\$RECYCLE.BIN
2011-06-23 00:31 - 2011-08-10 14:48 - 5474688 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2011-06-22 23:32 - 2011-08-10 14:48 - 3967872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2011-06-22 23:32 - 2011-08-10 14:48 - 3911552 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2011-06-21 01:27 - 2011-08-10 14:49 - 1896832 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys
2011-06-21 01:20 - 2011-08-10 14:49 - 1499648 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2011-06-21 01:20 - 2011-08-10 14:48 - 1197056 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2011-06-21 01:20 - 2011-08-10 14:48 - 1026560 ____A (Microsoft Corporation) C:\Windows\System32\mstime.dll
2011-06-21 01:20 - 2011-08-10 14:48 - 0703488 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2011-06-21 01:20 - 2011-08-10 14:48 - 0134144 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2011-06-21 01:20 - 2011-08-10 14:48 - 0097280 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2011-06-21 01:20 - 2011-08-10 14:48 - 0082944 ____A (Microsoft Corporation) C:\Windows\System32\msfeedsbs.dll
2011-06-21 01:20 - 2011-08-10 14:48 - 0057856 ____A (Microsoft Corporation) C:\Windows\System32\licmgr10.dll
2011-06-21 01:19 - 2011-08-10 14:49 - 2458624 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2011-06-21 01:19 - 2011-08-10 14:49 - 12371456 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2011-06-21 01:19 - 2011-08-10 14:48 - 0445952 ____A (Microsoft Corporation) C:\Windows\System32\iedkcs32.dll
2011-06-21 01:19 - 2011-08-10 14:48 - 0256000 ____A (Microsoft Corporation) C:\Windows\System32\iepeers.dll
2011-06-21 01:19 - 2011-08-10 14:48 - 0247808 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2011-06-21 01:19 - 2011-08-10 14:48 - 0064512 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2011-06-21 01:17 - 2011-08-10 14:48 - 0012288 ____A (Microsoft Corporation) C:\Windows\System32\msfeedssync.exe
2011-06-21 00:36 - 2011-08-10 14:49 - 1230336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2011-06-21 00:36 - 2011-08-10 14:48 - 0981504 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2011-06-21 00:36 - 2011-08-10 14:48 - 0132096 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2011-06-21 00:35 - 2011-08-10 14:48 - 0606208 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mstime.dll
2011-06-21 00:35 - 2011-08-10 14:48 - 0599552 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2011-06-21 00:35 - 2011-08-10 14:48 - 0067072 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2011-06-21 00:35 - 2011-08-10 14:48 - 0064512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2011-06-21 00:35 - 2011-08-10 14:48 - 0044544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2011-06-21 00:34 - 2011-08-10 14:49 - 2072576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2011-06-21 00:34 - 2011-08-10 14:49 - 10989568 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2011-06-21 00:34 - 2011-08-10 14:48 - 0381440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2011-06-21 00:34 - 2011-08-10 14:48 - 0185856 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2011-06-21 00:34 - 2011-08-10 14:48 - 0176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2011-06-21 00:34 - 2011-08-10 14:48 - 0048128 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2011-06-21 00:32 - 2011-08-10 14:48 - 0012800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2011-06-21 00:05 - 2011-08-10 14:48 - 0482816 ____A (Microsoft Corporation) C:\Windows\System32\html.iec
2011-06-20 23:26 - 2011-08-10 14:48 - 0386048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2011-06-20 08:25 - 2011-03-22 16:06 - 0000000 ____D C:\Program Files (x86)\Google
2011-06-16 10:29 - 2010-10-09 21:16 - 0000000 ____D C:\Windows\SysWOW64\RTCOM
2011-06-16 10:28 - 2011-06-16 10:26 - 83633504 ____A C:\Users\Ben\Downloads\R272187.exe
2011-06-16 10:18 - 2011-06-16 10:18 - 3039640 ____A C:\Users\Ben\Downloads\R301250.exe
2011-06-16 10:13 - 2011-06-16 10:13 - 0000000 ____A C:\Windows\setuperr.log
2011-06-16 10:13 - 2010-10-20 19:55 - 0000000 ____D C:\Users\Ben\Application Data\Dell
2011-06-16 10:13 - 2010-10-20 19:55 - 0000000 ____D C:\Users\Ben\AppData\Roaming\Dell
2011-06-16 10:12 - 2010-10-09 19:36 - 0000000 ____D C:\Program Files (x86)\Dell Support Center
2011-06-16 10:12 - 2010-10-09 19:25 - 0000000 ____D C:\Users\All Users\Dell
2011-06-16 10:12 - 2010-10-09 19:25 - 0000000 ____D C:\Users\All Users\Application Data\Dell
2011-06-16 10:12 - 2010-10-09 19:25 - 0000000 ____D C:\ProgramData\Dell
2011-06-16 10:10 - 2011-06-16 10:10 - 0000000 ____D C:\Users\Ben\Application Data\PCDr
2011-06-16 10:10 - 2011-06-16 10:10 - 0000000 ____D C:\Users\Ben\AppData\Roaming\PCDr
2011-06-16 10:10 - 2010-10-09 21:48 - 0000000 ____D C:\DELL
2011-06-16 10:09 - 2011-06-16 10:09 - 1732960 ____A C:\Users\Ben\Downloads\DELL_SUPPORT-CENTER-3-0_A01_R289543.exe
2011-06-16 10:07 - 2011-06-15 15:07 - 0000000 ____D C:\Program Files\Defraggler
2011-06-16 10:04 - 2011-06-11 19:04 - 0000000 ____D C:\Program Files\CCleaner
2011-06-16 09:35 - 2010-10-09 19:34 - 0000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2011-06-16 09:34 - 2010-10-22 18:13 - 0524288 __ASH C:\Windows\System32\config\COMPONENTS{5e93ea4c-de31-11df-881a-5cac4ce8e8bd}.TMContainer00000000000000000001.regtrans-ms
2011-06-16 09:18 - 2011-06-16 08:04 - 0000000 ____D C:\Windows\en
2011-06-16 09:14 - 2009-07-13 22:20 - 0000000 ____D C:\Program Files\Common Files\Microsoft Shared
2011-06-16 09:07 - 2011-06-16 09:07 - 0020562 ____A C:\ComboFix.txt
2011-06-16 09:07 - 2011-06-15 15:15 - 0000000 ____D C:\Qoobox
2011-06-16 09:04 - 2009-07-13 21:34 - 0000215 ____A C:\Windows\system.ini
2011-06-16 08:51 - 2011-06-15 15:06 - 0000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2011-06-16 08:49 - 2011-06-15 16:48 - 0000524 ____A C:\rkill.log
2011-06-16 08:48 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\config\TxR
2011-06-16 08:46 - 2010-10-20 19:54 - 0000072 ____A C:\Windows\SysWOW64\ToasterLauncherLog.log
2011-06-16 08:46 - 2010-10-20 19:54 - 0000000 ____D C:\Users\Ben\Local Settings\SoftThinks
2011-06-16 08:46 - 2010-10-20 19:54 - 0000000 ____D C:\Users\Ben\Local Settings\Application Data\SoftThinks
2011-06-16 08:46 - 2010-10-20 19:54 - 0000000 ____D C:\Users\Ben\AppData\Local\SoftThinks
2011-06-16 08:46 - 2010-10-09 19:51 - 0000000 ____D C:\Program Files (x86)\Dell DataSafe Local Backup
2011-06-16 08:44 - 2011-05-24 00:21 - 0000000 ____D C:\Program Files\Bonjour
2011-06-16 08:44 - 2010-10-22 19:42 - 0000000 ____D C:\Program Files (x86)\Microsoft Application Virtualization Client
2011-06-16 08:44 - 2010-10-09 19:51 - 0000000 ____D C:\Program Files (x86)\Dell DataSafe Online
2011-06-16 08:44 - 2009-07-14 00:32 - 0000000 ____D C:\Program Files\Windows Portable Devices
2011-06-16 08:43 - 2010-10-09 21:17 - 0000000 ____D C:\Windows\System32\SRSLabs
2011-06-16 08:43 - 2009-07-14 02:45 - 0000000 ____D C:\Windows\ShellNew
2011-06-16 08:43 - 2009-07-14 00:32 - 0000000 ____D C:\Program Files\Windows Sidebar
2011-06-16 08:43 - 2009-07-14 00:32 - 0000000 ____D C:\Program Files (x86)\Windows Sidebar
2011-06-16 08:43 - 2009-07-13 23:45 - 0000000 ____D C:\Windows\Setup
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\TAPI
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\SysWOW64\Recovery
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\zh-TW
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\zh-HK
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\zh-CN
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\tr-TR
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\th-TH
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\sysprep
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\sv-SE
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\sl-SI
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\sk-SK
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\ru-RU
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\ro-RO
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\pt-PT
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\pt-BR
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\pl-PL
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\oobe
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\nl-NL
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\NDF
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\nb-NO
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\Msdtc
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\lv-LV
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\lt-LT
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\ko-KR
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\ja-JP
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\it-IT
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\hu-HU
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\hr-HR
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\he-IL
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\fr-FR
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\fi-FI
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\et-EE
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\es-ES
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\el-GR
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\de-DE
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\da-DK
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\cs-CZ
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\bg-BG
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\ar-SA
2011-06-16 08:43 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\security
2011-06-16 08:42 - 2011-05-30 21:55 - 0000000 ____D C:\Users\Ben\Application Data\Macrovision
2011-06-16 08:42 - 2011-05-30 21:55 - 0000000 ____D C:\Users\Ben\AppData\Roaming\Macrovision
2011-06-16 08:42 - 2011-05-24 00:19 - 0000000 ____D C:\Program Files (x86)\Safari
2011-06-16 08:42 - 2011-05-24 00:17 - 0000000 ____D C:\Program Files (x86)\QuickTime
2011-06-16 08:42 - 2011-01-25 13:45 - 0000000 ____D C:\Program Files (x86)\Starcraft
2011-06-16 08:42 - 2010-11-14 18:33 - 0000000 ____D C:\Program Files (x86)\SafeConnect
2011-06-16 08:42 - 2010-10-24 21:43 - 0000000 ____D C:\Users\Ben\Application Data\Skype
2011-06-16 08:42 - 2010-10-24 21:43 - 0000000 ____D C:\Users\Ben\AppData\Roaming\Skype
2011-06-16 08:42 - 2010-10-24 17:20 - 0000000 ____D C:\Program Files\Microsoft IntelliPoint
2011-06-16 08:42 - 2010-10-23 15:50 - 0000000 ____D C:\Users\All Users\Application Data\Apple Computer
2011-06-16 08:42 - 2010-10-23 15:50 - 0000000 ____D C:\Users\All Users\Apple Computer
2011-06-16 08:42 - 2010-10-23 15:50 - 0000000 ____D C:\ProgramData\Apple Computer
2011-06-16 08:42 - 2010-10-23 15:50 - 0000000 ____D C:\Program Files\Common Files\Apple
2011-06-16 08:42 - 2010-10-23 15:49 - 0000000 ____D C:\Users\All Users\Application Data\Apple
2011-06-16 08:42 - 2010-10-23 15:49 - 0000000 ____D C:\Users\All Users\Apple
2011-06-16 08:42 - 2010-10-23 15:49 - 0000000 ____D C:\ProgramData\Apple
2011-06-16 08:42 - 2010-10-22 19:26 - 0000000 ____D C:\Users\Ben\Local Settings\Microsoft Help
2011-06-16 08:42 - 2010-10-22 19:26 - 0000000 ____D C:\Users\Ben\Local Settings\Application Data\Microsoft Help
2011-06-16 08:42 - 2010-10-22 19:26 - 0000000 ____D C:\Users\Ben\AppData\Local\Microsoft Help
2011-06-16 08:42 - 2010-10-20 20:05 - 0000000 ____D C:\Users\Ben\Application Data\Creative
2011-06-16 08:42 - 2010-10-20 20:05 - 0000000 ____D C:\Users\Ben\AppData\Roaming\Creative
2011-06-16 08:42 - 2010-10-20 20:05 - 0000000 ____D C:\Program Files (x86)\MSN Toolbar Installer
2011-06-16 08:42 - 2010-10-09 22:12 - 0000000 ____D C:\Program Files\Synaptics
2011-06-16 08:42 - 2010-10-09 19:59 - 0000000 ___RD C:\Program Files (x86)\Skype
2011-06-16 08:42 - 2010-10-09 19:58 - 0000000 ____D C:\Users\All Users\Skype
2011-06-16 08:42 - 2010-10-09 19:58 - 0000000 ____D C:\Users\All Users\Application Data\Skype
2011-06-16 08:42 - 2010-10-09 19:58 - 0000000 ____D C:\ProgramData\Skype
2011-06-16 08:42 - 2010-10-09 19:46 - 0000000 ____D C:\Users\All Users\WildTangent
2011-06-16 08:42 - 2010-10-09 19:46 - 0000000 ____D C:\Users\All Users\Application Data\WildTangent
2011-06-16 08:42 - 2010-10-09 19:46 - 0000000 ____D C:\ProgramData\WildTangent
2011-06-16 08:42 - 2010-10-09 19:43 - 0000000 ____D C:\Program Files\mcafee
2011-06-16 08:42 - 2010-10-09 19:43 - 0000000 ____D C:\Program Files\Common Files\mcafee
2011-06-16 08:42 - 2010-10-09 19:38 - 0000000 ___DC C:\Users\All Users\Application Data\{D19C2D22-6043-47E7-B400-83A351841204}
2011-06-16 08:42 - 2010-10-09 19:38 - 0000000 ___DC C:\Users\All Users\{D19C2D22-6043-47E7-B400-83A351841204}
2011-06-16 08:42 - 2010-10-09 19:38 - 0000000 ___DC C:\ProgramData\{D19C2D22-6043-47E7-B400-83A351841204}
2011-06-16 08:42 - 2010-10-09 19:30 - 0000000 ____D C:\Program Files (x86)\Windows Live
2011-06-16 08:42 - 2009-07-14 00:32 - 0000000 ____D C:\Program Files\Microsoft Games
2011-06-16 08:42 - 2009-07-14 00:32 - 0000000 ____D C:\Program Files (x86)\MSBuild
2011-06-16 08:42 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\Help
2011-06-16 08:41 - 2011-05-24 00:21 - 0000000 ____D C:\Program Files (x86)\Bonjour
2011-06-16 08:41 - 2011-01-18 14:26 - 0000000 ____D C:\Program Files (x86)\Microsoft Synchronization Services
2011-06-16 08:41 - 2011-01-18 14:21 - 0000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 8
2011-06-16 08:41 - 2010-10-24 03:08 - 0000000 ____D C:\Program Files (x86)\McAfee Security Scan
2011-06-16 08:41 - 2010-10-09 19:56 - 0000000 ____D C:\Program Files (x86)\Creative
2011-06-16 08:41 - 2010-10-09 19:55 - 0000000 ____D C:\Program Files (x86)\Creative Live! Cam
2011-06-16 08:41 - 2010-10-09 19:51 - 0000000 ____D C:\Program Files (x86)\Microsoft CAPICOM 2.1.0.2
2011-06-16 08:41 - 2010-10-09 19:51 - 0000000 ____D C:\Program Files (x86)\Cozi Express
2011-06-16 08:41 - 2010-10-09 19:43 - 0000000 ____D C:\Program Files (x86)\mcafee.com
2011-06-16 08:41 - 2010-10-09 19:43 - 0000000 ____D C:\Program Files (x86)\McAfee
2011-06-16 08:41 - 2010-10-09 19:36 - 0000000 ____D C:\Program Files (x86)\Citrix
2011-06-16 08:40 - 2009-07-14 00:37 - 0000000 ____D C:\Windows\SysWOW64\winrm
2011-06-16 08:40 - 2009-07-14 00:37 - 0000000 ____D C:\Windows\SysWOW64\WCN
2011-06-16 08:40 - 2009-07-14 00:37 - 0000000 ____D C:\Windows\SysWOW64\slmgr
2011-06-16 08:40 - 2009-07-14 00:37 - 0000000 ____D C:\Windows\SysWOW64\Printing_Admin_Scripts
2011-06-16 08:40 - 2009-07-14 00:32 - 0000000 ____D C:\Windows\SysWOW64\WindowsPowerShell
2011-06-16 08:40 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\Web
2011-06-16 08:40 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\Vss
2011-06-16 08:40 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\SysWOW64\spp
2011-06-16 08:40 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\SysWOW64\Speech
2011-06-16 08:39 - 2010-10-09 19:22 - 0000000 ____D C:\Windows\SysWOW64\Macromed
2011-06-16 08:39 - 2009-07-14 00:37 - 0000000 ____D C:\Windows\System32\winrm
2011-06-16 08:39 - 2009-07-14 00:37 - 0000000 ____D C:\Windows\System32\WCN
2011-06-16 08:39 - 2009-07-14 00:37 - 0000000 ____D C:\Windows\System32\slmgr
2011-06-16 08:39 - 2009-07-14 00:37 - 0000000 ____D C:\Windows\System32\Printing_Admin_Scripts
2011-06-16 08:39 - 2009-07-14 00:32 - 0000000 ____D C:\Windows\System32\WindowsPowerShell
2011-06-16 08:39 - 2009-07-14 00:32 - 0000000 ____D C:\Windows\System32\WinBioPlugIns
2011-06-16 08:39 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\SysWOW64\NetworkList
2011-06-16 08:39 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\SysWOW64\MUI
2011-06-16 08:39 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\SysWOW64\Msdtc
2011-06-16 08:39 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\SysWOW64\migwiz
2011-06-16 08:39 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\SysWOW64\InstallShield
2011-06-16 08:39 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\SysWOW64\IME
2011-06-16 08:39 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\SysWOW64\Dism
2011-06-16 08:39 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\SysWOW64\com
2011-06-16 08:39 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\spp
2011-06-16 08:39 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\spool
2011-06-16 08:39 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\Speech
2011-06-16 08:39 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\SMI
2011-06-16 08:39 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\NetworkList
2011-06-16 08:39 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\MUI
2011-06-16 08:39 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\migwiz
2011-06-16 08:39 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\IME
2011-06-16 08:38 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\Dism
2011-06-16 08:38 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\System32\com
2011-06-16 08:38 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\Speech
2011-06-16 08:37 - 2009-07-14 00:32 - 0000000 ____D C:\Windows\Performance
2011-06-16 08:37 - 2009-07-13 23:45 - 0000000 ____D C:\Windows\ServiceProfiles
2011-06-16 08:37 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\schemas
2011-06-16 08:37 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\Resources
2011-06-16 08:37 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\PolicyDefinitions
2011-06-16 08:37 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\PLA
2011-06-16 08:35 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\IME
2011-06-16 08:35 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\Globalization
2011-06-16 08:34 - 2009-07-13 22:20 - 0000000 ____D C:\Windows\Branding
2011-06-16 08:31 - 2010-10-23 15:13 - 0000000 ____D C:\Users\Ben\Local Settings\Mozilla
2011-06-16 08:31 - 2010-10-23 15:13 - 0000000 ____D C:\Users\Ben\Local Settings\Application Data\Mozilla
2011-06-16 08:31 - 2010-10-23 15:13 - 0000000 ____D C:\Users\Ben\AppData\Local\Mozilla
2011-06-16 08:31 - 2010-10-20 20:08 - 0000000 ____D C:\Users\Ben\Application Data\Adobe
2011-06-16 08:31 - 2010-10-20 20:08 - 0000000 ____D C:\Users\Ben\AppData\Roaming\Adobe
2011-06-16 08:31 - 2010-10-20 19:51 - 0000000 ____D C:\Users\Ben\AppData\LocalLow
2011-06-16 08:31 - 2009-07-14 02:44 - 0000000 ___RD C:\Users\Public\Recorded TV
2011-06-16 08:31 - 2009-07-13 22:20 - 0000000 ___RD C:\users\Public
2011-06-16 08:31 - 2009-07-13 22:20 - 0000000 ___RD C:\users\Default
2011-06-16 08:30 - 2010-11-16 02:05 - 0000000 ____D C:\Users\Ben\Local Settings\Microsoft Games
2011-06-16 08:30 - 2010-11-16 02:05 - 0000000 ____D C:\Users\Ben\Local Settings\Application Data\Microsoft Games
2011-06-16 08:30 - 2010-11-16 02:05 - 0000000 ____D C:\Users\Ben\AppData\Local\Microsoft Games
2011-06-16 08:30 - 2010-10-23 15:51 - 0000000 ____D C:\Users\All Users\Application Data\{93E26451-CD9A-43A5-A2FA-C42392EA4001}
2011-06-16 08:30 - 2010-10-23 15:51 - 0000000 ____D C:\Users\All Users\{93E26451-CD9A-43A5-A2FA-C42392EA4001}
2011-06-16 08:30 - 2010-10-23 15:51 - 0000000 ____D C:\ProgramData\{93E26451-CD9A-43A5-A2FA-C42392EA4001}
2011-06-16 08:29 - 2010-10-09 19:55 - 0000000 ____D C:\Users\All Users\Uninstall
2011-06-16 08:29 - 2010-10-09 19:55 - 0000000 ____D C:\Users\All Users\Application Data\Uninstall
2011-06-16 08:29 - 2010-10-09 19:55 - 0000000 ____D C:\ProgramData\Uninstall
2011-06-16 08:28 - 2010-10-22 19:27 - 0000000 ____D C:\Program Files\Microsoft Office
2011-06-16 08:28 - 2010-10-09 21:16 - 0000000 ____D C:\Program Files\Realtek
2011-06-16 08:28 - 2010-10-09 19:55 - 0000000 ____D C:\Users\All Users\Macrovision
2011-06-16 08:28 - 2010-10-09 19:55 - 0000000 ____D C:\Users\All Users\Application Data\Macrovision
2011-06-16 08:28 - 2010-10-09 19:55 - 0000000 ____D C:\ProgramData\Macrovision
2011-06-16 08:28 - 2010-10-09 19:43 - 0000000 ____D C:\Users\All Users\McAfee
2011-06-16 08:28 - 2010-10-09 19:43 - 0000000 ____D C:\Users\All Users\Application Data\McAfee
2011-06-16 08:28 - 2010-10-09 19:43 - 0000000 ____D C:\ProgramData\McAfee
2011-06-16 08:28 - 2010-10-09 19:26 - 0000000 ____D C:\Program Files\WIDCOMM
2011-06-16 08:28 - 2009-07-14 02:45 - 0000000 ____D C:\Program Files\Windows Journal
2011-06-16 08:28 - 2009-07-14 00:32 - 0000000 ____D C:\Program Files\Windows Photo Viewer
2011-06-16 08:28 - 2009-07-14 00:32 - 0000000 ____D C:\Program Files\Windows Defender
2011-06-16 08:28 - 2009-07-14 00:32 - 0000000 ____D C:\Program Files\Reference Assemblies
2011-06-16 08:28 - 2009-07-14 00:32 - 0000000 ____D C:\Program Files\MSBuild
2011-06-16 08:28 - 2009-07-13 22:20 - 0000000 ____D C:\Program Files\Windows NT
2011-06-16 08:27 - 2010-10-09 19:43 - 0000000 ____D C:\Program Files\mcafee.com
2011-06-16 08:27 - 2010-10-09 19:25 - 0000000 ____D C:\Program Files\Dell
2011-06-16 08:27 - 2010-10-09 19:24 - 0000000 ____D C:\Program Files\Dell Inc
2011-06-16 08:27 - 2010-10-09 19:23 - 0000000 ____D C:\Program Files\Java
2011-06-16 08:27 - 2009-07-14 00:32 - 0000000 ____D C:\Program Files\DVD Maker
2011-06-16 08:27 - 2009-07-14 00:32 - 0000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2011-06-16 08:27 - 2009-07-13 22:20 - 0000000 ____D C:\Program Files\Common Files\System
2011-06-16 08:27 - 2009-07-13 22:20 - 0000000 ____D C:\Program Files\Common Files\SpeechEngines
2011-06-16 08:27 - 2009-07-13 22:20 - 0000000 ____D C:\Program Files (x86)\Windows NT
2011-06-16 08:26 - 2010-10-22 18:12 - 0000000 ____D C:\Program Files (x86)\MSN Toolbar
2011-06-16 08:26 - 2010-10-09 19:54 - 0000000 ____D C:\Program Files (x86)\Roxio
2011-06-16 08:26 - 2010-10-09 19:46 - 0000000 ____D C:\Program Files (x86)\WildTangent
2011-06-16 08:26 - 2009-07-14 00:32 - 0000000 ____D C:\Program Files (x86)\Windows Defender
2011-06-16 08:26 - 2009-07-14 00:32 - 0000000 ____D C:\Program Files (x86)\Reference Assemblies
2011-06-16 08:25 - 2010-10-09 19:33 - 0000000 ____D C:\Program Files (x86)\Microsoft Sync Framework
2011-06-16 08:25 - 2010-10-09 19:32 - 0000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2011-06-16 08:24 - 2011-01-18 14:21 - 0000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2011-06-16 08:24 - 2010-10-09 19:54 - 0000000 ____D C:\Program Files (x86)\Microsoft Office
2011-06-16 08:23 - 2010-10-09 21:16 - 0000000 ____D C:\Program Files (x86)\Intel
2011-06-16 08:23 - 2010-10-09 20:00 - 0000000 ____D C:\Program Files (x86)\Dell
2011-06-16 08:23 - 2010-10-09 19:55 - 0000000 ____D C:\Program Files (x86)\Dell Webcam
2011-06-16 08:23 - 2010-10-09 19:51 - 0000000 ____D C:\Program Files (x86)\InstallShield Installation Information
2011-06-16 08:23 - 2010-10-09 19:23 - 0000000 ____D C:\Program Files (x86)\Java
2011-06-16 08:20 - 2010-10-22 18:55 - 0000000 ____D C:\My Documents
2011-06-16 08:20 - 2010-10-09 19:34 - 0000000 ____D C:\Program Files (x86)\Adobe
2011-06-16 08:20 - 2010-10-09 19:24 - 0000000 ____D C:\Program Files (x86)\Absolute Software
2011-06-16 08:19 - 2010-10-22 19:25 - 0000000 __RHD C:\MSOCache
2011-06-16 08:17 - 2011-06-15 16:44 - 0524288 __ASH C:\Windows\System32\config\components{6d577c65-9798-11e0-8d9a-f04da25117ed}.TMContainer00000000000000000001.regtrans-ms
2011-06-16 08:17 - 2011-06-15 16:44 - 0065536 __ASH C:\Windows\System32\config\components{6d577c65-9798-11e0-8d9a-f04da25117ed}.TM.blf
2011-06-16 08:08 - 2011-06-16 08:08 - 0000000 ____D C:\Users\Ben\Local Settings\Windows Live Writer
2011-06-16 08:08 - 2011-06-16 08:08 - 0000000 ____D C:\Users\Ben\Local Settings\Application Data\Windows Live Writer
2011-06-16 08:08 - 2011-06-16 08:08 - 0000000 ____D C:\Users\Ben\Application Data\Windows Live Writer
2011-06-16 08:08 - 2011-06-16 08:08 - 0000000 ____D C:\Users\Ben\AppData\Roaming\Windows Live Writer
2011-06-16 08:08 - 2011-06-16 08:08 - 0000000 ____D C:\Users\Ben\AppData\Local\Windows Live Writer
2011-06-16 08:02 - 2011-06-16 08:02 - 0000000 ____D C:\Program Files\Windows Live
2011-06-16 00:31 - 2011-08-10 14:50 - 0199680 ____A (Microsoft Corporation) C:\Windows\System32\xmllite.dll
2011-06-15 23:35 - 2011-08-10 14:50 - 0180224 ____A (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll
2011-06-15 16:59 - 2011-06-15 16:44 - 0524288 __ASH C:\Windows\System32\config\components{6d577c65-9798-11e0-8d9a-f04da25117ed}.TMContainer00000000000000000002.regtrans-ms
2011-06-15 16:43 - 2011-06-11 19:30 - 0000000 ____D C:\users\Brent
2011-06-15 16:18 - 2011-06-09 21:05 - 0524288 __ASH C:\Windows\System32\config\COMPONENTS{808d50e2-9304-11e0-a9db-f04da25117ed}.TMContainer00000000000000000001.regtrans-ms
2011-06-15 16:18 - 2011-06-09 21:05 - 0065536 __ASH C:\Windows\System32\config\COMPONENTS{808d50e2-9304-11e0-a9db-f04da25117ed}.TM.blf
2011-06-15 15:23 - 2011-06-13 13:27 - 0000000 ____D C:\users\New folder
2011-06-15 15:20 - 2011-06-15 15:15 - 0000000 ____D C:\Windows\ERDNT
2011-06-15 15:12 - 2011-06-15 15:12 - 0000000 ____D C:\Users\Ben\Application Data\Malwarebytes
2011-06-15 15:12 - 2011-06-15 15:12 - 0000000 ____D C:\Users\Ben\AppData\Roaming\Malwarebytes
2011-06-15 15:06 - 2011-06-15 15:06 - 0000000 ____D C:\Users\Brent\Application Data\Malwarebytes
2011-06-15 15:06 - 2011-06-15 15:06 - 0000000 ____D C:\Users\Brent\AppData\Roaming\Malwarebytes
2011-06-15 15:06 - 2011-06-15 15:06 - 0000000 ____D C:\Users\All Users\Malwarebytes
2011-06-15 15:06 - 2011-06-15 15:06 - 0000000 ____D C:\Users\All Users\Application Data\Malwarebytes
2011-06-15 15:06 - 2011-06-15 15:06 - 0000000 ____D C:\ProgramData\Malwarebytes
2011-06-15 15:01 - 2011-06-15 15:01 - 0000000 ____D C:\Users\Brent\Application Data\Macromedia
2011-06-15 15:01 - 2011-06-15 15:01 - 0000000 ____D C:\Users\Brent\Application Data\Adobe
2011-06-15 15:01 - 2011-06-15 15:01 - 0000000 ____D C:\Users\Brent\AppData\Roaming\Macromedia
2011-06-15 15:01 - 2011-06-15 15:01 - 0000000 ____D C:\Users\Brent\AppData\Roaming\Adobe
2011-06-15 04:58 - 2011-08-10 14:50 - 0212992 ____A (Microsoft Corporation) C:\Windows\System32\odbctrac.dll
2011-06-15 04:58 - 2011-08-10 14:50 - 0163840 ____A (Microsoft Corporation) C:\Windows\System32\odbccp32.dll
2011-06-15 04:58 - 2011-08-10 14:50 - 0106496 ____A (Microsoft Corporation) C:\Windows\System32\odbccu32.dll
2011-06-15 04:58 - 2011-08-10 14:50 - 0106496 ____A (Microsoft Corporation) C:\Windows\System32\odbccr32.dll
2011-06-15 04:04 - 2011-08-10 14:50 - 0319488 ____A (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll
2011-06-15 04:04 - 2011-08-10 14:50 - 0163840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll
2011-06-15 04:04 - 2011-08-10 14:50 - 0122880 ____A (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll
2011-06-15 04:04 - 2011-08-10 14:50 - 0086016 ____A (Microsoft Corporation) C:\Windows\SysWOW64\odbccu32.dll
2011-06-15 04:04 - 2011-08-10 14:50 - 0081920 ____A (Microsoft Corporation) C:\Windows\SysWOW64\odbccr32.dll
2011-06-13 13:28 - 2011-06-13 13:27 - 0000000 ____D C:\Users\New folder\100DICAM
2011-06-11 19:32 - 2011-06-11 19:32 - 0109232 ____A C:\Users\Brent\Local Settings\GDIPFONTCACHEV1.DAT
2011-06-11 19:32 - 2011-06-11 19:32 - 0109232 ____A C:\Users\Brent\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2011-06-11 19:32 - 2011-06-11 19:32 - 0109232 ____A C:\Users\Brent\AppData\Local\GDIPFONTCACHEV1.DAT
2011-06-11 19:32 - 2011-06-11 19:32 - 0000000 ____D C:\Users\Brent\Local Settings\Application Data\Apple Computer
2011-06-11 19:32 - 2011-06-11 19:32 - 0000000 ____D C:\Users\Brent\Local Settings\Apple Computer
2011-06-11 19:32 - 2011-06-11 19:32 - 0000000 ____D C:\Users\Brent\Application Data\Roxio
2011-06-11 19:32 - 2011-06-11 19:32 - 0000000 ____D C:\Users\Brent\Application Data\Dell
2011-06-11 19:32 - 2011-06-11 19:32 - 0000000 ____D C:\Users\Brent\Application Data\Apple Computer
2011-06-11 19:32 - 2011-06-11 19:32 - 0000000 ____D C:\Users\Brent\AppData\Roaming\Roxio
2011-06-11 19:32 - 2011-06-11 19:32 - 0000000 ____D C:\Users\Brent\AppData\Roaming\Dell
2011-06-11 19:32 - 2011-06-11 19:32 - 0000000 ____D C:\Users\Brent\AppData\Roaming\Apple Computer
2011-06-11 19:32 - 2011-06-11 19:32 - 0000000 ____D C:\Users\Brent\AppData\Local\Apple Computer
2011-06-11 19:32 - 2011-06-11 19:30 - 0000000 ____D C:\Users\Brent\AppData\LocalLow
2011-06-11 19:31 - 2011-06-11 19:31 - 0000000 ____D C:\Users\Brent\Local Settings\VirtualStore
2011-06-11 19:31 - 2011-06-11 19:31 - 0000000 ____D C:\Users\Brent\Local Settings\SupportSoft
2011-06-11 19:31 - 2011-06-11 19:31 - 0000000 ____D C:\Users\Brent\Local Settings\Application Data\VirtualStore
2011-06-11 19:31 - 2011-06-11 19:31 - 0000000 ____D C:\Users\Brent\Local Settings\Application Data\SupportSoft
2011-06-11 19:31 - 2011-06-11 19:31 - 0000000 ____D C:\Users\Brent\AppData\Local\VirtualStore
2011-06-11 19:31 - 2011-06-11 19:31 - 0000000 ____D C:\Users\Brent\AppData\Local\SupportSoft
2011-06-11 19:30 - 2011-06-11 19:30 - 0000000 __SHD C:\Users\Brent\Templates
2011-06-11 19:30 - 2011-06-11 19:30 - 0000000 __SHD C:\Users\Brent\Start Menu
2011-06-11 19:30 - 2011-06-11 19:30 - 0000000 __SHD C:\Users\Brent\PrintHood
2011-06-11 19:30 - 2011-06-11 19:30 - 0000000 __SHD C:\Users\Brent\NetHood
2011-06-11 19:30 - 2011-06-11 19:30 - 0000000 __SHD C:\Users\Brent\My Documents\My Videos
2011-06-11 19:30 - 2011-06-11 19:30 - 0000000 __SHD C:\Users\Brent\My Documents\My Pictures
2011-06-11 19:30 - 2011-06-11 19:30 - 0000000 __SHD C:\Users\Brent\My Documents\My Music
2011-06-11 19:30 - 2011-06-11 19:30 - 0000000 __SHD C:\Users\Brent\My Documents
2011-06-11 19:30 - 2011-06-11 19:30 - 0000000 __SHD C:\Users\Brent\Local Settings\Temporary Internet Files
2011-06-11 19:30 - 2011-06-11 19:30 - 0000000 __SHD C:\Users\Brent\Local Settings\History
2011-06-11 19:30 - 2011-06-11 19:30 - 0000000 __SHD C:\Users\Brent\Local Settings\Application Data\Temporary Internet Files
2011-06-11 19:30 - 2011-06-11 19:30 - 0000000 __SHD C:\Users\Brent\Local Settings\Application Data\History
2011-06-11 19:30 - 2011-06-11 19:30 - 0000000 __SHD C:\Users\Brent\Documents\My Videos
2011-06-11 19:30 - 2011-06-11 19:30 - 0000000 __SHD C:\Users\Brent\Documents\My Pictures
2011-06-11 19:30 - 2011-06-11 19:30 - 0000000 __SHD C:\Users\Brent\Documents\My Music
2011-06-11 19:30 - 2011-06-11 19:30 - 0000000 __SHD C:\Users\Brent\AppData\Local\Temporary Internet Files
2011-06-11 19:30 - 2011-06-11 19:30 - 0000000 __SHD C:\Users\Brent\AppData\Local\History
2011-06-11 19:09 - 2010-10-09 19:51 - 0000000 ____D C:\Users\All Users\Cozi
2011-06-11 19:09 - 2010-10-09 19:51 - 0000000 ____D C:\Users\All Users\Application Data\Cozi
2011-06-11 19:09 - 2010-10-09 19:51 - 0000000 ____D C:\ProgramData\Cozi
2011-06-11 19:06 - 2010-11-07 14:38 - 0000000 ____D C:\Users\Ben\Tracing
2011-06-10 21:56 - 2011-07-13 20:28 - 3134464 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys
2011-06-09 21:15 - 2011-06-09 21:05 - 0524288 __ASH C:\Windows\System32\config\COMPONENTS{808d50e2-9304-11e0-a9db-f04da25117ed}.TMContainer00000000000000000002.regtrans-ms
2011-06-09 07:25 - 2011-06-09 07:25 - 0000040 ____A C:\Users\All Users\Application Data\~42327800
2011-06-09 07:25 - 2011-06-09 07:25 - 0000040 ____A C:\Users\All Users\~42327800
2011-06-09 07:25 - 2011-06-09 07:25 - 0000040 ____A C:\ProgramData\~42327800
2011-05-29 09:11 - 2011-06-16 08:51 - 0039984 ____A (Malwarebytes Corporation) C:\Windows\SysWOW64\Drivers\mbamswissarmy.sys
2011-05-29 09:11 - 2011-06-16 08:50 - 0025912 ____A (Malwarebytes Corporation) C:\Windows\System32\Drivers\mbam.sys
2011-05-24 06:21 - 2011-06-29 08:36 - 0404992 ____A (Microsoft Corporation) C:\Windows\System32\umpnpmgr.dll
2011-05-24 05:34 - 2011-06-29 08:36 - 0145920 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll
2011-05-24 05:34 - 2011-06-29 08:36 - 0064512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\devobj.dll
2011-05-24 05:34 - 2011-06-29 08:36 - 0044544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\devrtl.dll
2011-05-24 05:32 - 2011-06-29 08:36 - 0252928 ____A (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe
2011-05-24 00:19 - 2010-10-23 15:51 - 0000000 ____D C:\Users\Ben\Local Settings\Application Data\Apple Computer
2011-05-24 00:19 - 2010-10-23 15:51 - 0000000 ____D C:\Users\Ben\Local Settings\Apple Computer
2011-05-24 00:19 - 2010-10-23 15:51 - 0000000 ____D C:\Users\Ben\AppData\Local\Apple Computer

========================= Known DLLs (Whitelisted) ============


========================= Bamital & volsnap Check ============

C:\Windows\System32\winlogon.exe => MD5 is legit

C:\Windows\System32\wininit.exe => MD5 is legit

C:\Windows\explorer.exe => MD5 is legit

C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

========================= Memory info ======================

Percentage of memory in use: 15%
Total physical RAM: 3892.51 MB
Available physical RAM: 3275.11 MB
Total Pagefile: 3890.66 MB
Available Pagefile: 3260.29 MB
Total Virtual: 8192 MB
Available Virtual: 8191.88 MB

======================= Partitions =========================

1 Drive c: (OS) (Fixed) (Total:451.01 GB) (Free:389.45 GB) NTFS
3 Drive e: (RECOVERY) (Fixed) (Total:14.65 GB) (Free:7.63 GB) NTFS
6 Drive h: () (Removable) (Total:0.47 GB) (Free:0.44 GB) FAT
7 Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS

==========================================================

Last Boot: 2011-08-13 00:13

======================= End Of Log ==========================

Attached Files


Edited by farbar, 16 August 2011 - 02:46 PM.


#4 Farbar

Farbar

    Just Curious


  • Security Developer
  • 21,719 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:The Netherlands
  • Local time:01:26 PM

Posted 16 August 2011 - 02:56 PM

Open notepad (Start =>All Programs => Accessories => Notepad). Please copy the entire contents of the code box below. (To do this highlight the contents of the box, right click on it and select copy. Right-click in the open notepad and select Paste). Save it on the flashdrive as fixlist.txt

start
2011-08-13 00:55 - 2011-08-13 01:00 - 0009260 __ASH C:\Users\Ben\Local Settings\lvvd2lju371237kq43u66gj666dwqc3f3le5807hc57
2011-08-13 00:55 - 2011-08-13 01:00 - 0009260 __ASH C:\Users\Ben\Local Settings\Application Data\lvvd2lju371237kq43u66gj666dwqc3f3le5807hc57
2011-08-13 00:55 - 2011-08-13 01:00 - 0009260 __ASH C:\Users\Ben\AppData\Local\lvvd2lju371237kq43u66gj666dwqc3f3le5807hc57
2011-08-13 00:55 - 2011-08-13 01:00 - 0009260 __ASH C:\Users\All Users\lvvd2lju371237kq43u66gj666dwqc3f3le5807hc57
2011-08-13 00:55 - 2011-08-13 01:00 - 0009260 __ASH C:\Users\All Users\Application Data\lvvd2lju371237kq43u66gj666dwqc3f3le5807hc57
2011-08-13 00:55 - 2011-08-13 01:00 - 0009260 __ASH C:\ProgramData\lvvd2lju371237kq43u66gj666dwqc3f3le5807hc57
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\Local Settings\vbyk.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\Local Settings\ratv.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\Local Settings\qcap.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\Local Settings\iytw.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\Local Settings\Application Data\vbyk.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\Local Settings\Application Data\ratv.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\Local Settings\Application Data\qcap.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\Local Settings\Application Data\iytw.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\AppData\Local\vbyk.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\AppData\Local\ratv.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\AppData\Local\qcap.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\Ben\AppData\Local\iytw.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\All Users\wodp.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\All Users\erpp.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\All Users\eorj.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\All Users\Application Data\wodp.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\All Users\Application Data\erpp.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\Users\All Users\Application Data\eorj.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\ProgramData\wodp.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\ProgramData\erpp.exe
2011-08-13 00:55 - 2011-08-13 00:55 - 0000000 ____A C:\ProgramData\eorj.exe
cmd: bootrec /FixMbr
Control: 
end

NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

Now please enter System Recovery Options.

Run FRST and press the Fix button just once and wait.
The tool will make a log on the flashdrive (Fixlog.txt) please post it to your reply.

Also please restart, let the computer boot normally and tell me how it went.

#5 Rolf35

Rolf35
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:06:26 AM

Posted 16 August 2011 - 03:33 PM

Amazing! My computer was able to boot up. I ran Malwarebytes Anti-Malware and it found: Spyware.Passwords.Xgen, Rootkit.tdss, malware.trace, and trojon.agent.gen. All were successfully quarantined and deleted however my Mcafee real time scanning keeps turning off and won't stay on, is this a separate issue or is it somehow related? Thanks

EDIT: Updating my Mcafee appears to have solved the problem.

Fix result of Farbars's Recovery Tool (FRST written by farbar version 2.2.1)
Ran by SYSTEM at 2011-08-16 15:11:35 R:1
Running from H:\

==============================================

C:\Users\Ben\Local Settings\lvvd2lju371237kq43u66gj666dwqc3f3le5807hc57 moved successfully.
C:\Users\Ben\Local Settings\Application Data\lvvd2lju371237kq43u66gj666dwqc3f3le5807hc57 not found.
C:\Users\Ben\AppData\Local\lvvd2lju371237kq43u66gj666dwqc3f3le5807hc57 not found.
C:\Users\All Users\lvvd2lju371237kq43u66gj666dwqc3f3le5807hc57 moved successfully.
C:\Users\All Users\Application Data\lvvd2lju371237kq43u66gj666dwqc3f3le5807hc57 not found.
C:\ProgramData\lvvd2lju371237kq43u66gj666dwqc3f3le5807hc57 not found.
C:\Users\Ben\Local Settings\vbyk.exe moved successfully.
C:\Users\Ben\Local Settings\ratv.exe moved successfully.
C:\Users\Ben\Local Settings\qcap.exe moved successfully.
C:\Users\Ben\Local Settings\iytw.exe moved successfully.
C:\Users\Ben\Local Settings\Application Data\vbyk.exe not found.
C:\Users\Ben\Local Settings\Application Data\ratv.exe not found.
C:\Users\Ben\Local Settings\Application Data\qcap.exe not found.
C:\Users\Ben\Local Settings\Application Data\iytw.exe not found.
C:\Users\Ben\AppData\Local\vbyk.exe not found.
C:\Users\Ben\AppData\Local\ratv.exe not found.
C:\Users\Ben\AppData\Local\qcap.exe not found.
C:\Users\Ben\AppData\Local\iytw.exe not found.
C:\Users\All Users\wodp.exe moved successfully.
C:\Users\All Users\erpp.exe moved successfully.
C:\Users\All Users\eorj.exe moved successfully.
C:\Users\All Users\Application Data\wodp.exe not found.
C:\Users\All Users\Application Data\erpp.exe not found.
C:\Users\All Users\Application Data\eorj.exe not found.
C:\ProgramData\wodp.exe not found.
C:\ProgramData\erpp.exe not found.
C:\ProgramData\eorj.exe not found.

========= bootrec /FixMbr =========

ÿþT h e o p e r a t i o n c o m p l e t e d s u c c e s s f u l l y .

========= End of CMD: =========


=========== Control: ===========

The operation completed successfully.

==== End of Control: ====

==== End of Fixlog ====

Attached Files


Edited by farbar, 16 August 2011 - 04:02 PM.


#6 Farbar

Farbar

    Just Curious


  • Security Developer
  • 21,719 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:The Netherlands
  • Local time:01:26 PM

Posted 16 August 2011 - 04:05 PM

Great. :thumbsup:

Please delete FRST tool as we don't need it any more. Also go to C:\FRST and delete the entire FRST folder as it contains infected quarantined files.

Do you require my assistance or you can do the rest?

#7 Rolf35

Rolf35
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:06:26 AM

Posted 16 August 2011 - 04:11 PM

Alright I deleted the FRST tool from the flash drive. Is there any special way I need to delete the FRST folder on the infected computer or should I just delete like a standard unwanted file?

#8 Farbar

Farbar

    Just Curious


  • Security Developer
  • 21,719 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:The Netherlands
  • Local time:01:26 PM

Posted 16 August 2011 - 04:20 PM

You may delete it and then empty recycle bin or select the FRST folder and use Shift+Delte to remove it.

#9 Rolf35

Rolf35
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:06:26 AM

Posted 16 August 2011 - 04:25 PM

Alright it's done! Thank you so much, you are truly a miracle worker.

#10 Farbar

Farbar

    Just Curious


  • Security Developer
  • 21,719 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:The Netherlands
  • Local time:01:26 PM

Posted 17 August 2011 - 09:36 AM

You are most welcome. :)

This thread will now be closed since the issue seems to be resolved.

If you need this topic reopened, please send me a Private Message and I will reopen it for you. If you should have a new issue, please start a new topic.

Every one else should start a new topic.




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users