Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

%hs missing


  • This topic is locked This topic is locked
5 replies to this topic

#1 catame2

catame2

  • Members
  • 2 posts
  • OFFLINE
  •  
  • Local time:08:18 PM

Posted 14 March 2012 - 10:24 AM

hello, i am new here and i wanted to ask someone for some help. today my laptop stopped starting windows. i saw some topics around here about %hs missing, and i saw everywhere that the solutions has to be in connection with som log from FRST. i scanned the laptop with FRST, and i have the log. my question is: can someone please help me, tell me what to do next? please? thanks.

BC AdBot (Login to Remove)

 


#2 catame2

catame2
  • Topic Starter

  • Members
  • 2 posts
  • OFFLINE
  •  
  • Local time:08:18 PM

Posted 14 March 2012 - 10:45 AM

Scan result of Farbar Recovery Scan Tool Version: 14-03-2012 01
Ran by SYSTEM at 14-03-2012 16:59:04
Running from F:\
Windows 7 Ultimate (X64) OS Language: English(US)
The current controlset is ControlSet001

========================== Registry (Whitelisted) =============

HKLM\...\Run: [SmartAudio] C:\Program Files\CONEXANT\SAII\SAIICpl.exe /t [307768 2009-11-18] ()
HKLM\...\Run: [ETDWare] %ProgramFiles%\Elantech\ETDCtrl.exe [635784 2010-01-13] (ELAN Microelectronic Corp.)
HKLM\...\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\ipoint.exe" [2320752 2009-11-05] (Microsoft Corporation)
HKLM\...\Run: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe [x]
HKLM-x32\...\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [7350912 2010-02-04] (ASUS)
HKLM-x32\...\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-01-05] (ASUS)
HKLM-x32\...\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [UIExec] "C:\Program Files (x86)\Join Air\UIExec.exe" [132096 2009-10-10] ()
HKLM-x32\...\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [31016 2006-10-26] (Microsoft Corporation)
HKLM-x32\...\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [421888 2010-11-29] (Apple Inc.)
HKLM-x32\...\Run: [AppleSyncNotifier] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [47904 2010-12-14] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [248552 2010-05-14] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" [421160 2011-04-14] (Apple Inc.)
HKLM-x32\...\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [336384 2011-03-08] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [HTC Sync Loader] "C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe" -startup [593920 2011-04-26] ()
HKLM-x32\...\Run: [WinsysMon] D:\Users\cata\Downloads\Nero.v9.4.26.0.Ultra.Edition.Incl.KEYMAKER-NOTME\Nero.v9.4.26.0.Ultra.Edition.Incl.KEYMAKER-NOTME\Nero.v9.4.26.0.Ultra.Edition.Incl.KEYMAKER-NOTME\LiveUpdate.exe [x]
HKLM-x32\...\Run: [FileServe Manager Task] "C:\Program Files (x86)\FileServe Manager\FSStarter.exe" [955808 2011-11-03] (FileServe Limited)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [37296 2012-01-03] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [843712 2012-01-02] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui [4031368 2012-02-23] (AVAST Software)
HKU\cata\...\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [369200 2009-10-30] (DT Soft Ltd)
HKU\cata\...\Run: [userinit] C:\Users\cata\AppData\Roaming\sdra64.exe [155648 2009-07-13] ()
HKU\cata\...\Run: [Pc2Phone-EP] [x]
HKU\cata\...\Winlogon: [Shell] C:\Users\cata\AppData\Local\7d7a948a\X [38912 2012-03-14] ()
HKLM\...\RunOnce: [*Restore] C:\Windows\system32\rstrui.exe /RUNONCE [296960 2009-07-13] (Microsoft Corporation)
HKLM-x32\...\Winlogon: [Userinit] userinit.exe,C:\Windows\system32\sdra64.exe, [x]
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
SubSystems: [Windows] ==> ZeroAccess

==================== Services (Whitelisted) ======

2 ASLDRService; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [84536 2009-06-15] (ASUS)
2 ATKGFNEXSrv; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [96896 2009-12-15] (ASUS)
2 Autodesk Content Service; "C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe" [18656 2011-02-02] ()
2 avast! Antivirus; "C:\Program Files\AVAST Software\Avast\AvastSvc.exe" [44768 2012-02-23] (AVAST Software)
2 beatjamupnpmusicserver; C:\Windows\System32\stac97.dll [5120 2009-07-13] ()
3 FLEXnet Licensing Service; "C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe" [651720 2010-12-16] (Macrovision Europe Ltd.)
2 mi-raysat_3dsmax2010_32; "C:\Program Files (x86)\Autodesk\3ds Max 2010\mentalray\satellite\raysat_3dsmax2010_32server.exe" [86016 2009-03-12] ()
2 mi-raysat_3dsmax2010_64; "C:\Program Files\Autodesk\3ds Max 2010\mentalray\satellite\raysat_3dsmax2010_64server.exe" [86016 2009-03-12] ()
3 Microsoft Office Groove Audit Service; "C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe" [65824 2006-10-26] (Microsoft Corporation)
2 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [80896 2011-03-31] ()
2 PSI_SVC_2; "C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe" [189728 2009-07-24] (Protexis Inc.)
2 RapiMgr; C:\Windows\WindowsMobile\rapimgr.dll [225672 2007-05-31] (Microsoft Corporation)
2 UI Assistant Service; C:\Program Files (x86)\Join Air\AssistantServices.exe [246272 2009-10-10] ()
2 UNS; "C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe" [2314240 2009-09-30] (Intel Corporation)
2 WcesComm; C:\Windows\WindowsMobile\wcescomm.dll [443784 2007-05-31] (Microsoft Corporation)

========================== Drivers (Whitelisted) =============

2 adfs; C:\Windows\System32\Drivers\adfs.sys [88632 2008-06-26] (Adobe Systems, Inc.)
2 aksdf; C:\Windows\System32\DRIVERS\aksdf.sys [65024 2006-12-13] (Aladdin Knowledge Systems Ltd.)
3 amdkmdag; C:\Windows\System32\DRIVERS\atipmdag.sys [6233088 2010-01-21] (ATI Technologies Inc.)
2 ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [15416 2009-07-02] (ASUS)
2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [24408 2012-02-23] (AVAST Software)
1 aswKbd; C:\Windows\System32\Drivers\aswKbd.sys [28504 2012-02-23] (AVAST Software)
2 aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [69976 2012-02-23] (AVAST Software)
1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [53080 2012-02-23] (AVAST Software)
1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [817496 2012-02-23] (AVAST Software)
1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [335704 2012-02-23] (AVAST Software)
1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [59224 2012-02-23] (AVAST Software)
2 Hardlock; \??\C:\Windows\system32\drivers\hardlock.sys [314368 2006-12-04] (Aladdin Knowledge Systems Ltd.)
3 HTCAND64; C:\Windows\System32\Drivers\ANDROIDUSB.sys [33736 2009-11-01] (HTC, Corporation)
3 htcnprot; C:\Windows\System32\DRIVERS\htcnprot.sys [36928 2010-06-25] (Windows ® Win 7 DDK provider)
3 JME; C:\Windows\System32\DRIVERS\JME.sys [107120 2009-12-03] (JMicron Technology Corp.)
3 jrdusbser; C:\Windows\System32\DRIVERS\jrdusbser.sys [119680 2009-11-16] (TCT International Mobile Ltd)
3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
3 massfilter; C:\Windows\System32\drivers\massfilter.sys [11776 2009-09-26] (ZTE Incorporated)
3 Point64; C:\Windows\System32\DRIVERS\point64k.sys [34160 2009-11-05] (Microsoft Corporation)
3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1800192 2009-08-19] ()
0 sptd; C:\Windows\System32\Drivers\sptd.sys [834544 2010-05-22] (Duplex Secure Ltd.)
2 TurboB; C:\Windows\System32\DRIVERS\TurboB.sys [13784 2009-08-06] ()
2 WIBUKEY; C:\Windows\System32\DRIVERS\WibuKey64.sys [103224 2009-12-02] (WIBU-SYSTEMS AG)
3 ZTEusbmdm6k; C:\Windows\System32\DRIVERS\ZTEusbmdm6k.sys [119680 2009-09-26] (ZTE Incorporated)
3 ZTEusbnmea; C:\Windows\System32\DRIVERS\ZTEusbnmea.sys [119680 2009-09-26] (ZTE Incorporated)
3 ZTEusbser6k; C:\Windows\System32\DRIVERS\ZTEusbser6k.sys [119680 2009-09-26] (ZTE Incorporated)
4 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [x]
3 tmlwf; [x]
3 tmwfp; [x]
3 usbbus; C:\Windows\System32\DRIVERS\lgx64bus.sys [x]
3 UsbDiag; C:\Windows\System32\DRIVERS\lgx64diag.sys [x]
3 USBModem; C:\Windows\System32\DRIVERS\lgx64modem.sys [x]

========================== NetSvcs (Whitelisted) ===========
NETSVC: beatjamupnpmusicserver

============ One Month Created Files and Folders ==============

2012-03-14 06:51 - 2012-03-14 06:51 - 0287092 ____A C:\Windows\ntbtlog.txt
2012-03-14 05:27 - 2012-03-14 05:27 - 0001841 ____A C:\Users\Public\Desktop\avast! Pro Antivirus.lnk
2012-03-14 05:27 - 2012-03-14 05:27 - 0000000 ____A C:\Windows\SysWOW64\config.nt
2012-03-14 05:27 - 2012-02-23 08:23 - 0258520 ____A (AVAST Software) C:\Windows\System32\aswBoot.exe
2012-03-14 05:27 - 2012-02-23 08:23 - 0201352 ____A (AVAST Software) C:\Windows\SysWOW64\aswBoot.exe
2012-03-14 05:27 - 2012-02-23 08:23 - 0041184 ____A (AVAST Software) C:\Windows\avastSS.scr
2012-03-14 05:27 - 2012-02-23 08:12 - 0817496 ____A (AVAST Software) C:\Windows\System32\Drivers\aswSnx.sys
2012-03-14 05:27 - 2012-02-23 08:12 - 0335704 ____A (AVAST Software) C:\Windows\System32\Drivers\aswSP.sys
2012-03-14 05:27 - 2012-02-23 08:11 - 0053080 ____A (AVAST Software) C:\Windows\System32\Drivers\aswRdr2.sys
2012-03-14 05:27 - 2012-02-23 08:11 - 0028504 ____A (AVAST Software) C:\Windows\System32\Drivers\aswKbd.sys
2012-03-14 05:27 - 2012-02-23 08:10 - 0069976 ____A (AVAST Software) C:\Windows\System32\Drivers\aswMonFlt.sys
2012-03-14 05:27 - 2012-02-23 08:10 - 0059224 ____A (AVAST Software) C:\Windows\System32\Drivers\aswTdi.sys
2012-03-14 05:27 - 2012-02-23 08:10 - 0024408 ____A (AVAST Software) C:\Windows\System32\Drivers\aswFsBlk.sys
2012-03-14 05:26 - 2012-03-14 05:26 - 0000000 ____D C:\Users\All Users\AVAST Software
2012-03-14 05:26 - 2012-03-14 05:26 - 0000000 ____D C:\ProgramData\AVAST Software
2012-03-14 05:26 - 2012-03-14 05:26 - 0000000 ____D C:\Program Files\AVAST Software
2012-03-14 05:10 - 2012-03-14 05:10 - 0000000 ____D C:\Users\All Users\ESET
2012-03-14 05:10 - 2012-03-14 05:10 - 0000000 ____D C:\ProgramData\ESET
2012-03-14 05:10 - 2012-03-14 05:10 - 0000000 ____D C:\Program Files\ESET
2012-03-14 04:59 - 2012-03-14 05:14 - 0000000 __ASH C:\Windows\System32\dds_log_ad13.cmd
2012-03-14 04:58 - 2012-03-14 04:58 - 0000000 __SHD C:\Users\cata\AppData\Local\7d7a948a
2012-03-14 04:58 - 2012-03-14 04:58 - 0000000 ____D C:\Windows\System32\Macromed
2012-03-14 04:58 - 2012-03-14 04:58 - 0000000 ____D C:\Users\All Users\B7E8586B00008C4F0003621FA6014588
2012-03-14 04:58 - 2012-03-14 04:58 - 0000000 ____D C:\ProgramData\B7E8586B00008C4F0003621FA6014588
2012-03-13 12:45 - 2012-03-13 12:45 - 0401295 ____A C:\Users\cata\Downloads\27338_hotel.zip
2012-03-13 12:42 - 2012-03-13 12:43 - 0755509 ____A C:\Users\cata\Downloads\34738_hotel.zip
2012-03-13 12:39 - 2012-03-13 12:42 - 12179503 ____A C:\Users\cata\Downloads\37650_museumhotel.zip
2012-03-13 12:39 - 2012-03-13 12:40 - 3356838 ____A C:\Users\cata\Downloads\44577_hotelcommercialbuildingwith5floors.zip
2012-03-13 12:38 - 2012-03-13 12:38 - 0500986 ____A C:\Users\cata\Downloads\35132_hotel.zip
2012-03-13 12:36 - 2012-03-13 12:39 - 9672869 ____A C:\Users\cata\Downloads\35988_hotel5stars.zip
2012-03-13 12:33 - 2012-03-13 12:54 - 0000000 ____D C:\Users\cata\Downloads\36491_apart-hotel
2012-03-13 12:28 - 2012-03-13 12:29 - 2747924 ____A C:\Users\cata\Downloads\36491_apart-hotel.zip
2012-03-13 12:24 - 2012-03-13 12:24 - 1717945 ____A C:\Users\cata\Downloads\38408_hotelgreattourism.zip
2012-03-13 12:21 - 2012-03-13 12:23 - 0000000 ____D C:\Users\cata\Downloads\38407_hotelgreattourism
2012-03-13 12:14 - 2012-03-13 12:54 - 0000000 ____D C:\Users\cata\Downloads\28006_resort-plants
2012-03-13 12:14 - 2012-03-13 12:14 - 1272019 ____A C:\Users\cata\Downloads\38407_hotelgreattourism.zip
2012-03-13 12:13 - 2012-03-13 12:14 - 3835028 ____A C:\Users\cata\Downloads\23001_schoolremodeling.zip
2012-03-13 12:13 - 2012-03-13 12:14 - 1017217 ____A C:\Users\cata\Downloads\28006_resort-plants.zip
2012-03-13 12:13 - 2012-03-13 12:13 - 1243591 ____A C:\Users\cata\Downloads\30581_projectmultifamilybuilding.zip
2012-03-13 04:27 - 2012-03-13 04:29 - 8241565 ____A C:\Users\cata\Desktop\Lindsey Stirling-Crystallize.mp3
2012-03-12 22:08 - 2012-03-12 22:08 - 0697828 ____A C:\Users\cata\Desktop\13.03.2012-Model.pdf
2012-03-12 22:06 - 2012-03-12 22:09 - 0000834 ____A C:\Users\cata\Desktop\plot.log
2012-03-12 22:03 - 2012-03-12 22:03 - 0245273 ____A C:\Users\cata\Documents\plan1.pdf
2012-03-12 11:32 - 2012-03-12 11:32 - 1548651 ____A C:\Users\cata\Downloads\transfer_ro-12mar-afdbb989401f00f1.zip
2012-03-09 13:31 - 2012-03-09 14:05 - 991259659 ____A C:\Users\cata\Downloads\German-transfer_RO-09mar-24ea02.rar
2012-03-09 13:31 - 2012-03-09 14:00 - 660487574 ____A C:\Users\cata\Downloads\PERSPECTIVE_VASILE_MARCU-transfer_RO-09mar-9954ad.rar
2012-03-09 13:31 - 2012-03-09 14:00 - 616610887 ____A C:\Users\cata\Downloads\Japan-transfer_RO-09mar-52b88c.rar
2012-03-09 13:31 - 2012-03-09 13:49 - 359665388 ____A C:\Users\cata\Downloads\Berlin___French-transfer_RO-09mar-b0d576.rar
2012-03-07 13:33 - 2012-03-13 13:06 - 0000000 ____D C:\Users\cata\Desktop\44893_touriststoparequipa-chivayyura-kiosks
2012-03-07 12:55 - 2012-03-07 12:55 - 0047055 ____A C:\Users\cata\Desktop\026ad9f61d96d0bff5cd7b397f169cbc.pdf
2012-03-07 12:54 - 2012-03-12 16:38 - 0110398 ____A C:\Users\cata\Desktop\da7ac4dd314c07c5234f490d26ae9b83.pdf
2012-03-07 07:09 - 2012-03-07 07:09 - 0000656 ___AH C:\Users\cata\Documents\SWWATER.INI
2012-03-06 07:23 - 2012-03-06 07:23 - 0001137 ____A C:\Users\Public\Desktop\Yahoo! Messenger.lnk
2012-03-06 07:23 - 2012-03-06 07:23 - 0000000 ____D C:\Users\All Users\Yahoo! Companion
2012-03-06 07:23 - 2012-03-06 07:23 - 0000000 ____D C:\ProgramData\Yahoo! Companion
2012-03-06 07:21 - 2012-03-06 07:21 - 0424072 ____A (Yahoo! Inc.) C:\Users\cata\Downloads\msgr11us.exe
2012-03-05 13:48 - 2012-03-05 13:48 - 0000000 ____D C:\Users\cata\Downloads\New_folder-transfer_RO-05mar-18e5f9
2012-03-05 12:26 - 2012-03-05 13:47 - 713974966 ____A C:\Users\cata\Downloads\New_folder-transfer_RO-05mar-18e5f9.zip
2012-03-05 12:26 - 2012-03-05 13:20 - 260250386 ____A C:\Users\cata\Downloads\New_folder-transfer_RO-05mar-18e5f9.zip.part
2012-03-05 03:57 - 2012-03-05 03:57 - 0030031 ____A C:\Users\cata\Downloads\3C2WZ-75X86-YBAE1-4M9D0.pdf
2012-03-04 10:14 - 2012-03-06 05:05 - 0000000 ____D C:\Users\cata\AppData\Roaming\systweak
2012-03-04 10:14 - 2012-03-05 12:30 - 0000000 ____D C:\Users\cata\AppData\Roaming\MyPhoneExplorer
2012-03-04 10:14 - 2012-03-04 10:14 - 0002057 ____A C:\Users\Public\Desktop\MyPhoneExplorer.lnk
2012-03-04 10:14 - 2012-03-04 10:14 - 0000000 ____D C:\Program Files (x86)\MyPhoneExplorer
2012-03-04 10:14 - 2012-01-20 04:14 - 0018816 ____A (Systweak Inc., (www.systweak.com)) C:\Windows\System32\roboot64.exe
2012-03-04 10:13 - 2012-03-04 10:14 - 4630696 ____A C:\Users\cata\Downloads\MyPhoneExplorer_Setup_1.8.2.exe
2012-03-03 12:09 - 2012-03-03 12:09 - 0276224 ____A C:\Windows\Minidump\030312-20420-01.dmp
2012-03-01 00:34 - 2012-03-01 00:34 - 0000175 ____A C:\Users\cata\Documents\acad.err
2012-02-29 09:10 - 2012-02-29 09:10 - 10067035 ____A C:\Users\cata\Downloads\3d complejo de capacitacion de montaa.dwg
2012-02-29 04:50 - 2012-02-29 04:49 - 0002000 ____A C:\Users\Public\Desktop\Bitstream Font Navigator.lnk
2012-02-29 04:50 - 2012-02-29 04:48 - 0002829 ____A C:\Users\Public\Desktop\Video Tutorials.lnk
2012-02-29 04:50 - 2012-02-29 04:48 - 0002641 ____A C:\Users\Public\Desktop\Corel PHOTO-PAINT X5.lnk
2012-02-29 04:50 - 2012-02-29 04:48 - 0002633 ____A C:\Users\Public\Desktop\Corel CAPTURE X5.lnk
2012-02-29 04:50 - 2012-02-29 04:48 - 0002040 ____A C:\Users\Public\Desktop\Corel CONNECT.lnk
2012-02-29 04:50 - 2012-02-29 04:47 - 0002625 ____A C:\Users\Public\Desktop\CorelDRAW X5.lnk
2012-02-29 01:23 - 2012-02-29 01:23 - 0002014 ____A C:\Users\Public\Desktop\Adobe Reader 9.lnk
2012-02-28 12:19 - 2012-02-28 12:19 - 0080427 ____A C:\Users\cata\Downloads\425245_267539409986517_100001913809882_665669_1581301607_n.jpg
2012-02-28 10:17 - 2012-02-28 10:17 - 0055123 ____A C:\Users\cata\Desktop\c9f411cbc2b9904cdd899761fcdfa575.pdf
2012-02-28 02:35 - 2012-02-28 02:35 - 0260160 ____A (Premium) C:\Users\cata\Downloads\DownloadSetup.exe
2012-02-27 10:09 - 2012-02-27 10:13 - 0000000 ____D C:\Users\cata\Desktop\reviste
2012-02-26 05:47 - 2012-02-26 05:47 - 0000000 ____D C:\Users\cata\AppData\Local\Conexant
2012-02-26 05:47 - 2012-02-26 05:47 - 0000000 ____D C:\Users\All Users\Conexant
2012-02-26 05:47 - 2012-02-26 05:47 - 0000000 ____D C:\ProgramData\Conexant
2012-02-19 09:07 - 2012-02-19 09:07 - 1941456 ____A C:\Users\cata\Downloads\IMAG0127.jpg
2012-02-19 09:06 - 2012-02-19 09:06 - 1075103 ____A C:\Users\cata\Downloads\IMAG0126.jpg
2012-02-16 17:20 - 2012-02-16 17:21 - 0000000 ____D C:\Users\cata\Documents\Assassin's Creed Revelations
2012-02-16 17:20 - 2012-02-16 17:20 - 0000000 ____D C:\Users\All Users\Ubisoft
2012-02-16 17:20 - 2012-02-16 17:20 - 0000000 ____D C:\ProgramData\Ubisoft
2012-02-16 16:49 - 2012-02-16 16:49 - 0000000 ____D C:\Users\cata\AppData\Roaming\PunkBuster
2012-02-14 15:21 - 2008-11-23 02:23 - 0097792 ____A (T0r0 2008) C:\Windows\SysWOW64\Drivers\NSHE.SYS
2012-02-14 15:15 - 2012-02-14 15:23 - 0007493 ____A C:\Windows\SysWOW64\HLDRV.LOG
2012-02-14 15:15 - 2006-12-20 01:55 - 3066968 ____A (Aladdin Knowledge Systems.) C:\Windows\SysWOW64\hinstd.dll
2012-02-14 15:15 - 2006-12-20 00:00 - 2511360 ____A (Aladdin Knowledge Systems Ltd.) C:\Windows\SysWOW64\haspds_windows.dll
2012-02-14 15:15 - 2006-12-20 00:00 - 0671112 ____A (Aladdin Knowledge Systems Ltd.) C:\Windows\SysWOW64\hdinst_windows.dll
2012-02-14 15:15 - 2006-12-13 08:14 - 0065024 ____A (Aladdin Knowledge Systems Ltd.) C:\Windows\System32\Drivers\aksdf.sys
2012-02-14 15:15 - 2006-11-30 01:06 - 0069632 ____A (Aladdin Knowledge Systems) C:\Windows\SysWOW64\hasp_inst_help1.dll
2012-02-14 15:15 - 2006-10-18 09:12 - 0191488 ____A (Aladdin Knowledge Systems Ltd.) C:\Windows\SysWOW64\hlvdd.dll
2012-02-14 15:15 - 2005-09-06 07:06 - 0028672 ____A C:\Windows\SysWOW64\hlduinst.exe
2012-02-14 15:15 - 2002-07-26 07:02 - 0153088 ____A C:\Windows\SysWOW64\UNWISE.EXE
2012-02-14 14:59 - 2012-02-14 14:59 - 0000000 ____D C:\Windows\ETKA7.3_International
2012-02-14 14:53 - 2012-02-14 14:55 - 0000000 ____D C:\Users\cata\Downloads\ET73_Int_865
2012-02-14 10:36 - 2012-03-13 00:14 - 0000000 ____D C:\Users\cata\Desktop\docum pensiune
2012-02-14 05:36 - 2012-02-14 05:36 - 0000000 ____D C:\Users\cata\AppData\Roaming\Canon
2012-02-14 05:34 - 2012-02-14 05:34 - 0000000 ____D C:\Users\cata\AppData\Local\CANON_INC
2012-02-14 04:35 - 2012-02-14 04:35 - 0000951 ____A C:\Users\Public\Desktop\ZoomBrowser EX.lnk
2012-02-14 04:35 - 2012-02-14 04:35 - 0000766 ____A C:\Users\Public\Desktop\Picture Style Editor.lnk
2012-02-14 04:35 - 2012-02-14 04:35 - 0000748 ____A C:\Users\Public\Desktop\EOS Utility.lnk
2012-02-14 04:35 - 2012-02-14 04:35 - 0000000 ____D C:\Users\All Users\ZoomBrowser
2012-02-14 04:35 - 2012-02-14 04:35 - 0000000 ____D C:\ProgramData\ZoomBrowser
2012-02-14 04:35 - 2012-02-14 04:35 - 0000000 ____D C:\Program Files (x86)\Canon
2012-02-14 04:34 - 2012-02-14 04:34 - 0000787 ____A C:\Users\Public\Desktop\Digital Photo Professional.lnk


============ 3 Months Modified Files and Folders =============

2012-03-14 16:59 - 2012-03-14 16:58 - 0000000 ____D C:\FRST
2012-03-14 16:34 - 2011-04-18 13:21 - 0000000 ____D C:\Program Files\Bonjour
2012-03-14 16:34 - 2011-04-18 13:21 - 0000000 ____D C:\Program Files (x86)\Bonjour
2012-03-14 16:34 - 2010-05-22 00:38 - 0000000 ____D C:\Users\All Users\P4G
2012-03-14 16:34 - 2010-05-22 00:38 - 0000000 ____D C:\ProgramData\P4G
2012-03-14 16:34 - 2010-05-22 00:14 - 0000000 ____D C:\users\cata
2012-03-14 16:33 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\registration
2012-03-14 06:51 - 2012-03-14 06:51 - 0287092 ____A C:\Windows\ntbtlog.txt
2012-03-14 06:51 - 2010-05-22 00:06 - 3105259520 __ASH C:\hiberfil.sys
2012-03-14 06:34 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\config\TxR
2012-03-14 05:27 - 2012-03-14 05:27 - 0001841 ____A C:\Users\Public\Desktop\avast! Pro Antivirus.lnk
2012-03-14 05:27 - 2012-03-14 05:27 - 0000000 ____A C:\Windows\SysWOW64\config.nt
2012-03-14 05:26 - 2012-03-14 05:26 - 0000000 ____D C:\Users\All Users\AVAST Software
2012-03-14 05:26 - 2012-03-14 05:26 - 0000000 ____D C:\ProgramData\AVAST Software
2012-03-14 05:26 - 2012-03-14 05:26 - 0000000 ____D C:\Program Files\AVAST Software
2012-03-14 05:23 - 2010-06-01 15:46 - 0000000 ____D C:\Users\cata\AppData\Roaming\uTorrent
2012-03-14 05:20 - 2009-07-13 20:45 - 0014192 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2012-03-14 05:20 - 2009-07-13 20:45 - 0014192 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2012-03-14 05:18 - 2011-08-02 11:09 - 0000400 ____A C:\Windows\Tasks\FreeFileViewerUpdateChecker.job
2012-03-14 05:16 - 2012-01-21 13:48 - 0000000 ____D C:\Users\cata\AppData\Local\FileServe Manager
2012-03-14 05:16 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\tracing
2012-03-14 05:15 - 2011-07-23 02:14 - 0000000 ____D C:\Users\cata\AppData\Local\Htc
2012-03-14 05:14 - 2012-03-14 04:59 - 0000000 __ASH C:\Windows\System32\dds_log_ad13.cmd
2012-03-14 05:14 - 2010-05-22 01:17 - 0049888 ____A C:\Windows\PFRO.log
2012-03-14 05:14 - 2009-07-13 21:08 - 0000006 ___AH C:\Windows\Tasks\SA.DAT
2012-03-14 05:14 - 2009-07-13 20:51 - 0163183 ____A C:\Windows\setupact.log
2012-03-14 05:13 - 2011-10-14 15:54 - 0327680 ____A C:\Windows\System32\Ikeext.etl
2012-03-14 05:10 - 2012-03-14 05:10 - 0000000 ____D C:\Users\All Users\ESET
2012-03-14 05:10 - 2012-03-14 05:10 - 0000000 ____D C:\ProgramData\ESET
2012-03-14 05:10 - 2012-03-14 05:10 - 0000000 ____D C:\Program Files\ESET
2012-03-14 05:09 - 2011-11-23 05:52 - 0000000 ____D C:\Users\cata\Documents\Visual Studio 2008
2012-03-14 04:58 - 2012-03-14 04:58 - 0000000 __SHD C:\Users\cata\AppData\Local\7d7a948a
2012-03-14 04:58 - 2012-03-14 04:58 - 0000000 ____D C:\Windows\System32\Macromed
2012-03-14 04:58 - 2012-03-14 04:58 - 0000000 ____D C:\Users\All Users\B7E8586B00008C4F0003621FA6014588
2012-03-14 04:58 - 2012-03-14 04:58 - 0000000 ____D C:\ProgramData\B7E8586B00008C4F0003621FA6014588
2012-03-14 04:58 - 2011-06-19 00:10 - 0414368 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2012-03-14 04:58 - 2010-05-22 00:13 - 1257298 ____A C:\Windows\WindowsUpdate.log
2012-03-13 13:06 - 2012-03-07 13:33 - 0000000 ____D C:\Users\cata\Desktop\44893_touriststoparequipa-chivayyura-kiosks
2012-03-13 12:54 - 2012-03-13 12:33 - 0000000 ____D C:\Users\cata\Downloads\36491_apart-hotel
2012-03-13 12:54 - 2012-03-13 12:14 - 0000000 ____D C:\Users\cata\Downloads\28006_resort-plants
2012-03-13 12:45 - 2012-03-13 12:45 - 0401295 ____A C:\Users\cata\Downloads\27338_hotel.zip
2012-03-13 12:43 - 2012-03-13 12:42 - 0755509 ____A C:\Users\cata\Downloads\34738_hotel.zip
2012-03-13 12:42 - 2012-03-13 12:39 - 12179503 ____A C:\Users\cata\Downloads\37650_museumhotel.zip
2012-03-13 12:40 - 2012-03-13 12:39 - 3356838 ____A C:\Users\cata\Downloads\44577_hotelcommercialbuildingwith5floors.zip
2012-03-13 12:39 - 2012-03-13 12:36 - 9672869 ____A C:\Users\cata\Downloads\35988_hotel5stars.zip
2012-03-13 12:38 - 2012-03-13 12:38 - 0500986 ____A C:\Users\cata\Downloads\35132_hotel.zip
2012-03-13 12:29 - 2012-03-13 12:28 - 2747924 ____A C:\Users\cata\Downloads\36491_apart-hotel.zip
2012-03-13 12:24 - 2012-03-13 12:24 - 1717945 ____A C:\Users\cata\Downloads\38408_hotelgreattourism.zip
2012-03-13 12:23 - 2012-03-13 12:21 - 0000000 ____D C:\Users\cata\Downloads\38407_hotelgreattourism
2012-03-13 12:14 - 2012-03-13 12:14 - 1272019 ____A C:\Users\cata\Downloads\38407_hotelgreattourism.zip
2012-03-13 12:14 - 2012-03-13 12:13 - 3835028 ____A C:\Users\cata\Downloads\23001_schoolremodeling.zip
2012-03-13 12:14 - 2012-03-13 12:13 - 1017217 ____A C:\Users\cata\Downloads\28006_resort-plants.zip
2012-03-13 12:13 - 2012-03-13 12:13 - 1243591 ____A C:\Users\cata\Downloads\30581_projectmultifamilybuilding.zip
2012-03-13 05:16 - 2010-05-24 07:58 - 0000000 ____D C:\Users\cata\AppData\Roaming\vlc
2012-03-13 04:29 - 2012-03-13 04:27 - 8241565 ____A C:\Users\cata\Desktop\Lindsey Stirling-Crystallize.mp3
2012-03-13 02:04 - 2010-05-25 13:45 - 0000000 ____D C:\Program Files (x86)\Mozilla Firefox
2012-03-13 00:14 - 2012-02-14 10:36 - 0000000 ____D C:\Users\cata\Desktop\docum pensiune
2012-03-12 22:09 - 2012-03-12 22:06 - 0000834 ____A C:\Users\cata\Desktop\plot.log
2012-03-12 22:08 - 2012-03-12 22:08 - 0697828 ____A C:\Users\cata\Desktop\13.03.2012-Model.pdf
2012-03-12 22:05 - 2010-05-27 18:29 - 0006697 ____A C:\Users\cata\Documents\plot.log
2012-03-12 22:03 - 2012-03-12 22:03 - 0245273 ____A C:\Users\cata\Documents\plan1.pdf
2012-03-12 22:02 - 2009-07-13 21:13 - 0778150 ____A C:\Windows\System32\PerfStringBackup.INI
2012-03-12 16:38 - 2012-03-07 12:54 - 0110398 ____A C:\Users\cata\Desktop\da7ac4dd314c07c5234f490d26ae9b83.pdf
2012-03-12 11:32 - 2012-03-12 11:32 - 1548651 ____A C:\Users\cata\Downloads\transfer_ro-12mar-afdbb989401f00f1.zip
2012-03-09 14:05 - 2012-03-09 13:31 - 991259659 ____A C:\Users\cata\Downloads\German-transfer_RO-09mar-24ea02.rar
2012-03-09 14:00 - 2012-03-09 13:31 - 660487574 ____A C:\Users\cata\Downloads\PERSPECTIVE_VASILE_MARCU-transfer_RO-09mar-9954ad.rar
2012-03-09 14:00 - 2012-03-09 13:31 - 616610887 ____A C:\Users\cata\Downloads\Japan-transfer_RO-09mar-52b88c.rar
2012-03-09 13:49 - 2012-03-09 13:31 - 359665388 ____A C:\Users\cata\Downloads\Berlin___French-transfer_RO-09mar-b0d576.rar
2012-03-09 08:03 - 2009-07-13 21:08 - 0032648 ____A C:\Windows\Tasks\SCHEDLGU.TXT
2012-03-07 12:55 - 2012-03-07 12:55 - 0047055 ____A C:\Users\cata\Desktop\026ad9f61d96d0bff5cd7b397f169cbc.pdf
2012-03-07 07:09 - 2012-03-07 07:09 - 0000656 ___AH C:\Users\cata\Documents\SWWATER.INI
2012-03-06 23:45 - 2010-06-01 16:06 - 0000000 ____D C:\Users\cata\AppData\Roaming\Skype
2012-03-06 10:32 - 2011-11-08 13:52 - 0000000 ____D C:\Users\cata\AppData\Local\cache
2012-03-06 07:23 - 2012-03-06 07:23 - 0001137 ____A C:\Users\Public\Desktop\Yahoo! Messenger.lnk
2012-03-06 07:23 - 2012-03-06 07:23 - 0000000 ____D C:\Users\All Users\Yahoo! Companion
2012-03-06 07:23 - 2012-03-06 07:23 - 0000000 ____D C:\ProgramData\Yahoo! Companion
2012-03-06 07:23 - 2010-05-26 00:36 - 0000000 ____D C:\Users\All Users\Yahoo!
2012-03-06 07:23 - 2010-05-26 00:36 - 0000000 ____D C:\ProgramData\Yahoo!
2012-03-06 07:23 - 2010-05-26 00:35 - 0000000 ____D C:\Program Files (x86)\Yahoo!
2012-03-06 07:21 - 2012-03-06 07:21 - 0424072 ____A (Yahoo! Inc.) C:\Users\cata\Downloads\msgr11us.exe
2012-03-06 07:21 - 2010-05-26 00:37 - 0000000 ____D C:\Users\cata\AppData\Local\Yahoo
2012-03-06 05:05 - 2012-03-04 10:14 - 0000000 ____D C:\Users\cata\AppData\Roaming\systweak
2012-03-05 13:48 - 2012-03-05 13:48 - 0000000 ____D C:\Users\cata\Downloads\New_folder-transfer_RO-05mar-18e5f9
2012-03-05 13:47 - 2012-03-05 12:26 - 713974966 ____A C:\Users\cata\Downloads\New_folder-transfer_RO-05mar-18e5f9.zip
2012-03-05 13:20 - 2012-03-05 12:26 - 260250386 ____A C:\Users\cata\Downloads\New_folder-transfer_RO-05mar-18e5f9.zip.part
2012-03-05 12:30 - 2012-03-04 10:14 - 0000000 ____D C:\Users\cata\AppData\Roaming\MyPhoneExplorer
2012-03-05 11:52 - 2010-07-05 12:49 - 0000000 ____D C:\ATI
2012-03-05 03:57 - 2012-03-05 03:57 - 0030031 ____A C:\Users\cata\Downloads\3C2WZ-75X86-YBAE1-4M9D0.pdf
2012-03-04 10:14 - 2012-03-04 10:14 - 0002057 ____A C:\Users\Public\Desktop\MyPhoneExplorer.lnk
2012-03-04 10:14 - 2012-03-04 10:14 - 0000000 ____D C:\Program Files (x86)\MyPhoneExplorer
2012-03-04 10:14 - 2012-03-04 10:13 - 4630696 ____A C:\Users\cata\Downloads\MyPhoneExplorer_Setup_1.8.2.exe
2012-03-03 12:09 - 2012-03-03 12:09 - 0276224 ____A C:\Windows\Minidump\030312-20420-01.dmp
2012-03-03 12:09 - 2010-06-19 05:05 - 0000000 ____D C:\Windows\Minidump
2012-03-01 00:34 - 2012-03-01 00:34 - 0000175 ____A C:\Users\cata\Documents\acad.err
2012-02-29 09:10 - 2012-02-29 09:10 - 10067035 ____A C:\Users\cata\Downloads\3d complejo de capacitacion de montaa.dwg
2012-02-29 04:50 - 2010-06-19 10:30 - 0000000 ____D C:\Users\All Users\Microsoft Help
2012-02-29 04:50 - 2010-06-19 10:30 - 0000000 ____D C:\ProgramData\Microsoft Help
2012-02-29 04:49 - 2012-02-29 04:50 - 0002000 ____A C:\Users\Public\Desktop\Bitstream Font Navigator.lnk
2012-02-29 04:49 - 2011-11-23 05:48 - 0000000 ____D C:\Users\All Users\Corel
2012-02-29 04:49 - 2011-11-23 05:48 - 0000000 ____D C:\ProgramData\Corel
2012-02-29 04:48 - 2012-02-29 04:50 - 0002829 ____A C:\Users\Public\Desktop\Video Tutorials.lnk
2012-02-29 04:48 - 2012-02-29 04:50 - 0002641 ____A C:\Users\Public\Desktop\Corel PHOTO-PAINT X5.lnk
2012-02-29 04:48 - 2012-02-29 04:50 - 0002633 ____A C:\Users\Public\Desktop\Corel CAPTURE X5.lnk
2012-02-29 04:48 - 2012-02-29 04:50 - 0002040 ____A C:\Users\Public\Desktop\Corel CONNECT.lnk
2012-02-29 04:47 - 2012-02-29 04:50 - 0002625 ____A C:\Users\Public\Desktop\CorelDRAW X5.lnk
2012-02-29 01:23 - 2012-02-29 01:23 - 0002014 ____A C:\Users\Public\Desktop\Adobe Reader 9.lnk
2012-02-29 01:23 - 2010-05-22 00:47 - 0000000 ____D C:\Users\All Users\Adobe
2012-02-29 01:23 - 2010-05-22 00:47 - 0000000 ____D C:\ProgramData\Adobe
2012-02-29 01:23 - 2010-05-22 00:46 - 0000000 ____D C:\Program Files (x86)\Adobe
2012-02-29 01:22 - 2010-05-22 00:47 - 0000000 ____D C:\Users\cata\AppData\Local\Adobe
2012-02-28 12:19 - 2012-02-28 12:19 - 0080427 ____A C:\Users\cata\Downloads\425245_267539409986517_100001913809882_665669_1581301607_n.jpg
2012-02-28 10:17 - 2012-02-28 10:17 - 0055123 ____A C:\Users\cata\Desktop\c9f411cbc2b9904cdd899761fcdfa575.pdf
2012-02-28 02:35 - 2012-02-28 02:35 - 0260160 ____A (Premium) C:\Users\cata\Downloads\DownloadSetup.exe
2012-02-27 10:13 - 2012-02-27 10:09 - 0000000 ____D C:\Users\cata\Desktop\reviste
2012-02-26 07:25 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\LiveKernelReports
2012-02-26 05:47 - 2012-02-26 05:47 - 0000000 ____D C:\Users\cata\AppData\Local\Conexant
2012-02-26 05:47 - 2012-02-26 05:47 - 0000000 ____D C:\Users\All Users\Conexant
2012-02-26 05:47 - 2012-02-26 05:47 - 0000000 ____D C:\ProgramData\Conexant
2012-02-23 08:23 - 2012-03-14 05:27 - 0258520 ____A (AVAST Software) C:\Windows\System32\aswBoot.exe
2012-02-23 08:23 - 2012-03-14 05:27 - 0201352 ____A (AVAST Software) C:\Windows\SysWOW64\aswBoot.exe
2012-02-23 08:23 - 2012-03-14 05:27 - 0041184 ____A (AVAST Software) C:\Windows\avastSS.scr
2012-02-23 08:12 - 2012-03-14 05:27 - 0817496 ____A (AVAST Software) C:\Windows\System32\Drivers\aswSnx.sys
2012-02-23 08:12 - 2012-03-14 05:27 - 0335704 ____A (AVAST Software) C:\Windows\System32\Drivers\aswSP.sys
2012-02-23 08:11 - 2012-03-14 05:27 - 0053080 ____A (AVAST Software) C:\Windows\System32\Drivers\aswRdr2.sys
2012-02-23 08:11 - 2012-03-14 05:27 - 0028504 ____A (AVAST Software) C:\Windows\System32\Drivers\aswKbd.sys
2012-02-23 08:10 - 2012-03-14 05:27 - 0069976 ____A (AVAST Software) C:\Windows\System32\Drivers\aswMonFlt.sys
2012-02-23 08:10 - 2012-03-14 05:27 - 0059224 ____A (AVAST Software) C:\Windows\System32\Drivers\aswTdi.sys
2012-02-23 08:10 - 2012-03-14 05:27 - 0024408 ____A (AVAST Software) C:\Windows\System32\Drivers\aswFsBlk.sys
2012-02-19 09:07 - 2012-02-19 09:07 - 1941456 ____A C:\Users\cata\Downloads\IMAG0127.jpg
2012-02-19 09:06 - 2012-02-19 09:06 - 1075103 ____A C:\Users\cata\Downloads\IMAG0126.jpg
2012-02-18 08:13 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\NDF
2012-02-16 17:21 - 2012-02-16 17:20 - 0000000 ____D C:\Users\cata\Documents\Assassin's Creed Revelations
2012-02-16 17:20 - 2012-02-16 17:20 - 0000000 ____D C:\Users\All Users\Ubisoft
2012-02-16 17:20 - 2012-02-16 17:20 - 0000000 ____D C:\ProgramData\Ubisoft
2012-02-16 16:49 - 2012-02-16 16:49 - 0000000 ____D C:\Users\cata\AppData\Roaming\PunkBuster
2012-02-16 16:48 - 2010-05-23 10:20 - 0457848 ____A C:\Windows\DirectX.log
2012-02-16 16:35 - 2010-05-22 00:22 - 0000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2012-02-14 15:31 - 2012-02-08 10:06 - 0000021 ____A C:\Windows\etkinst.ini
2012-02-14 15:23 - 2012-02-14 15:15 - 0007493 ____A C:\Windows\SysWOW64\HLDRV.LOG
2012-02-14 15:23 - 2012-02-08 10:07 - 0000668 ____A C:\Windows\aksdrvsetup.log
2012-02-14 15:18 - 2012-02-08 10:07 - 0000673 ____A C:\Windows\aksdrvsetup.1.log
2012-02-14 15:16 - 2012-02-08 10:07 - 0000673 ____A C:\Windows\aksdrvsetup.2.log
2012-02-14 15:15 - 2012-02-08 10:07 - 0000669 ____A C:\Windows\aksdrvsetup.3.log
2012-02-14 14:59 - 2012-02-14 14:59 - 0000000 ____D C:\Windows\ETKA7.3_International
2012-02-14 14:59 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\system
2012-02-14 14:55 - 2012-02-14 14:53 - 0000000 ____D C:\Users\cata\Downloads\ET73_Int_865
2012-02-14 05:36 - 2012-02-14 05:36 - 0000000 ____D C:\Users\cata\AppData\Roaming\Canon
2012-02-14 05:34 - 2012-02-14 05:34 - 0000000 ____D C:\Users\cata\AppData\Local\CANON_INC
2012-02-14 04:35 - 2012-02-14 04:35 - 0000951 ____A C:\Users\Public\Desktop\ZoomBrowser EX.lnk
2012-02-14 04:35 - 2012-02-14 04:35 - 0000766 ____A C:\Users\Public\Desktop\Picture Style Editor.lnk
2012-02-14 04:35 - 2012-02-14 04:35 - 0000748 ____A C:\Users\Public\Desktop\EOS Utility.lnk
2012-02-14 04:35 - 2012-02-14 04:35 - 0000000 ____D C:\Users\All Users\ZoomBrowser
2012-02-14 04:35 - 2012-02-14 04:35 - 0000000 ____D C:\ProgramData\ZoomBrowser
2012-02-14 04:35 - 2012-02-14 04:35 - 0000000 ____D C:\Program Files (x86)\Canon
2012-02-14 04:34 - 2012-02-14 04:34 - 0000787 ____A C:\Users\Public\Desktop\Digital Photo Professional.lnk
2012-02-10 16:12 - 2012-02-10 16:12 - 0876479 ____A C:\Users\cata\Downloads\Attachments_2012_02_11.zip
2012-02-10 16:12 - 2012-02-10 16:12 - 0000000 ____D C:\Users\cata\Downloads\Attachments_2012_02_11
2012-02-08 10:29 - 2012-02-08 10:07 - 0001309 ____A C:\Windows\aksdrvsetup.4.log
2012-02-08 10:29 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\Setup
2012-02-08 09:19 - 2012-02-07 11:34 - 0000000 ____D C:\Users\cata\AppData\Local\PokerStars.NET
2012-02-08 06:52 - 2012-02-08 06:52 - 2461965 ____A C:\Users\cata\Downloads\transfer_ro-08feb-1e9dfee280721.zip
2012-02-07 12:07 - 2012-02-07 12:07 - 0001093 ____A C:\Users\Public\Desktop\PokerStars.net.lnk
2012-02-07 12:07 - 2012-02-07 11:34 - 0000000 ____D C:\Program Files (x86)\PokerStars.NET
2012-02-07 11:33 - 2012-02-07 11:33 - 14478360 ____A (PokerStars) C:\Users\cata\Downloads\PokerStarsInstallPM.exe
2012-02-07 10:41 - 2012-02-07 10:41 - 0000000 ____D C:\Program Files (x86)\Corel
2012-02-07 09:32 - 2012-02-07 09:04 - 59250872 ____A C:\Users\cata\Downloads\Toata_cartea-transfer_RO-07feb-90b50d.rar
2012-02-06 07:59 - 2012-02-06 07:59 - 3914086 ____A C:\Users\cata\Downloads\01 PLAN PARTER.pdf
2012-01-31 16:42 - 2012-01-31 16:42 - 0031824 ____A C:\Users\cata\Downloads\thumb.jpg
2012-01-30 14:41 - 2012-01-24 13:35 - 0000000 ____D C:\Users\cata\AppData\Roaming\Abvent_Artlantis4
2012-01-30 14:28 - 2011-11-19 11:39 - 0000000 ____D C:\Users\All Users\Abvent
2012-01-30 14:28 - 2011-11-19 11:39 - 0000000 ____D C:\ProgramData\Abvent
2012-01-30 14:27 - 2012-01-23 10:06 - 0000000 ____D C:\Program Files\Artlantis Studio 4
2012-01-30 13:00 - 2011-12-05 02:52 - 0000000 ____D C:\Users\cata\Desktop\New folder (3)
2012-01-30 05:51 - 2012-01-30 05:42 - 261265517 ____A C:\Users\cata\Downloads\tkOF0lId9w9E7LnP6QtlPT8Jg.rar
2012-01-30 05:35 - 2012-01-30 05:34 - 69626944 ____A C:\Users\cata\Downloads\yQCWb5CFfJCRJEguh2sdAMlJJ.rar
2012-01-29 13:12 - 2012-01-30 06:55 - 0000000 ____D C:\Users\cata\Downloads\AmourAngels.com_12.01.27.Alsu.Gutta.XXX.IMAGESET-FuGLi
2012-01-29 12:54 - 2012-01-29 12:51 - 143467610 ____A C:\Users\cata\Downloads\ghFE6CWrhzre0sG0JWcnKhdSe.rar
2012-01-27 08:52 - 2012-01-27 08:51 - 0276224 ____A C:\Windows\Minidump\012712-27970-01.dmp
2012-01-27 07:39 - 2012-01-27 07:39 - 2087424 ____A C:\Users\cata\Downloads\QuakeLiveNP_491.msi
2012-01-27 07:39 - 2012-01-27 07:39 - 0000000 ____D C:\Users\All Users\id Software
2012-01-27 07:39 - 2012-01-27 07:39 - 0000000 ____D C:\ProgramData\id Software
2012-01-25 09:05 - 2010-11-14 12:56 - 0000000 ____D C:\Users\cata\Graphisoft
2012-01-24 05:11 - 2012-01-24 05:11 - 8631723 ____A C:\Users\cata\Downloads\Dark_icons.zip
2012-01-24 05:11 - 2012-01-24 05:11 - 0000000 ____D C:\Users\cata\Downloads\Dark_icons
2012-01-24 05:09 - 2012-01-24 05:09 - 1735673 ____A C:\Users\cata\Downloads\Butoane web.zip
2012-01-24 05:09 - 2012-01-24 05:09 - 0000000 ____D C:\Users\cata\Downloads\Butoane web
2012-01-24 05:07 - 2012-01-24 05:07 - 0705443 ____A C:\Users\cata\Desktop\616f58499f672c779c5e720f7717cdcf.pdf
2012-01-24 04:13 - 2012-01-24 04:13 - 0036106 ____A C:\Users\cata\Desktop\examene.pdf
2012-01-23 03:01 - 2010-05-22 00:40 - 0002024 ____A C:\Windows\System32\AutoRunFilter.ini
2012-01-22 11:14 - 2012-01-22 11:13 - 1894176 ____A C:\Users\cata\Downloads\Turmo_gr3.55.part16.rar
2012-01-22 11:11 - 2012-01-22 10:01 - 445644800 ____A C:\Users\cata\Downloads\Turmo_gr3.55.part09.rar
2012-01-22 10:31 - 2012-01-22 09:47 - 445644800 ____A C:\Users\cata\Downloads\Turmo_gr3.55.part10.rar
2012-01-22 09:57 - 2012-01-22 08:50 - 445644800 ____A C:\Users\cata\Downloads\Turmo_gr3.55.part08.rar
2012-01-22 09:38 - 2012-01-22 08:50 - 445644800 ____A C:\Users\cata\Downloads\Turmo_gr3.55.part25.rar
2012-01-22 09:22 - 2012-01-22 08:49 - 445644800 ____A C:\Users\cata\Downloads\Turmo_gr3.55.part07.rar
2012-01-21 17:13 - 2010-06-08 00:43 - 0000000 ____D C:\Users\cata\AppData\Roaming\DC++
2012-01-21 17:13 - 2010-06-08 00:43 - 0000000 ____D C:\Users\cata\AppData\Local\DC++
2012-01-21 14:22 - 2012-01-21 13:47 - 0000000 ____D C:\Program Files (x86)\FileServe Manager
2012-01-21 14:21 - 2012-01-21 13:52 - 445644800 ____A C:\Users\cata\Downloads\Turmo_gr3.55.part22.rar
2012-01-21 13:47 - 2012-01-21 13:47 - 0000000 ____D C:\Users\All Users\FileServe Limited
2012-01-21 13:47 - 2012-01-21 13:47 - 0000000 ____D C:\ProgramData\FileServe Limited
2012-01-21 13:26 - 2012-01-21 12:20 - 445644800 ____A C:\Users\cata\Downloads\Turmo_gr3.55.part03.rar
2012-01-21 13:15 - 2012-01-21 12:04 - 445644800 ____A C:\Users\cata\Downloads\Turmo_gr3.55.part02.rar
2012-01-21 12:54 - 2012-01-21 12:25 - 445644800 ____A C:\Users\cata\Downloads\Turmo_gr3.55.part29.rar
2012-01-21 12:25 - 2012-01-21 12:25 - 0000000 ____D C:\Users\All Users\Web Installer
2012-01-21 12:25 - 2012-01-21 12:25 - 0000000 ____D C:\ProgramData\Web Installer
2012-01-21 12:25 - 2012-01-21 12:24 - 1271200 ____A (FileServe Limited) C:\Users\cata\Downloads\FileServeManagerSetup.exe
2012-01-21 11:57 - 2011-05-12 13:45 - 0000000 ____D C:\Users\cata\AppData\Roaming\FileZilla
2012-01-21 08:13 - 2012-01-21 08:13 - 0289739 ____A C:\Users\cata\Desktop\pensiune sit.pdf
2012-01-20 07:45 - 2012-01-20 07:45 - 0146795 ____A C:\Users\cata\Downloads\ostafi.rar
2012-01-20 07:37 - 2012-01-20 07:37 - 0063372 ____A C:\users\costina.jpg
2012-01-20 07:32 - 2012-01-20 07:32 - 0092056 ____A C:\Users\cata\Downloads\miky1.jpg
2012-01-20 07:31 - 2012-01-20 07:31 - 0159115 ____A C:\Users\cata\Downloads\miky2.jpg
2012-01-20 07:25 - 2012-01-20 07:25 - 0888845 ____A C:\Users\cata\Downloads\viz.rar
2012-01-20 06:58 - 2012-01-20 06:57 - 3085889 ____A C:\Users\cata\Downloads\20120120_165558.jpg
2012-01-20 04:14 - 2012-03-04 10:14 - 0018816 ____A (Systweak Inc., (www.systweak.com)) C:\Windows\System32\roboot64.exe
2012-01-19 18:36 - 2012-01-19 18:12 - 445644800 ____A C:\Users\cata\Downloads\Turmo_gr3.55.part01.rar
2012-01-19 10:17 - 2012-01-19 10:15 - 6393584 ____A C:\Users\cata\Downloads\truss.avi.zip
2012-01-19 09:39 - 2012-01-19 09:39 - 0209935 ____A C:\Users\cata\Downloads\botle.max.zip.zip
2012-01-19 09:23 - 2012-01-19 09:18 - 34963653 ____A C:\Users\cata\Downloads\catame2 2012-01-19 at 11.17.45 AM.zip
2012-01-19 09:09 - 2012-01-19 09:09 - 0000000 ____D C:\Users\cata\Downloads\Old Boat
2012-01-19 08:56 - 2012-01-19 08:54 - 10097497 ____A C:\Users\cata\Downloads\Old Boat.zip
2012-01-19 00:03 - 2012-01-19 00:03 - 2289683 ____A C:\Users\cata\Downloads\transfer_ro-19jan-100a7a20935816d.zip
2012-01-19 00:01 - 2012-01-19 00:01 - 0489396 ____A C:\Users\cata\Documents\andrei fatade.pdf
2012-01-18 22:48 - 2012-01-18 22:48 - 0500405 ____A C:\Users\cata\Documents\andrei.pdf
2012-01-18 10:30 - 2011-12-12 07:34 - 0000000 ____D C:\Users\cata\Downloads\45340_multipurposecenter
2012-01-18 07:24 - 2011-11-19 11:39 - 0000000 ____D C:\Users\cata\AppData\Roaming\Abvent_Artlantis3
2012-01-17 03:41 - 2011-07-22 14:50 - 0000000 ____D C:\Users\cata\AppData\Roaming\BSplayer
2012-01-17 02:54 - 2010-12-25 04:27 - 0000000 ____D C:\Users\cata\Documents\KONAMI
2012-01-13 10:43 - 2012-01-13 10:41 - 5133873 ____A C:\Users\cata\Downloads\5_wood_textures_part2.rar.zip
2012-01-13 10:41 - 2012-01-13 10:34 - 51789480 ____A C:\Users\cata\Downloads\catame2 2012-01-13 at 12.34.09 PM.zip
2012-01-13 10:33 - 2012-01-13 10:31 - 23354409 ____A C:\Users\cata\Downloads\catame2 2012-01-13 at 12.30.42 PM.zip
2012-01-12 12:46 - 2012-01-12 12:45 - 7594431 ____A C:\Users\cata\Downloads\tavane-transfer_RO-09jan-b6da6e.rar
2012-01-11 16:18 - 2012-01-11 16:14 - 0000000 ____D C:\Users\cata\Downloads\37607_motel
2012-01-11 16:17 - 2012-01-11 16:14 - 0000000 ____D C:\Users\cata\Downloads\37594_communitycenter
2012-01-11 16:17 - 2012-01-11 16:14 - 0000000 ____D C:\Users\cata\Downloads\37586_municipalbuilding
2012-01-11 16:16 - 2012-01-11 16:16 - 0000000 ____D C:\Users\cata\Downloads\27501_hotel
2012-01-11 16:16 - 2012-01-11 16:15 - 0000000 ____D C:\Users\cata\Downloads\37122_historicalcenter
2012-01-11 16:13 - 2011-11-09 07:55 - 0000000 ____D C:\Users\cata\Downloads\45347_apartmentbuildingcollective
2012-01-11 16:12 - 2011-12-12 22:54 - 0000000 ____D C:\Users\cata\Downloads\37121_offices
2012-01-11 16:12 - 2011-11-09 08:10 - 0000000 ____D C:\Users\cata\Downloads\36727_administrativebuilding
2012-01-11 16:11 - 2011-11-09 08:06 - 0000000 ____D C:\Users\cata\Downloads\36267_multifunctionalbuilding
2012-01-11 16:09 - 2011-12-12 22:53 - 0000000 ____D C:\Users\cata\Downloads\29242_sportcenter-project
2012-01-11 16:06 - 2011-12-12 22:53 - 0000000 ____D C:\Users\cata\Downloads\28539_magiccenter-multipurposeroom
2012-01-11 16:05 - 2011-12-12 22:53 - 0000000 ____D C:\Users\cata\Downloads\27405_multipurposebuilding-plants
2012-01-11 16:02 - 2011-11-09 07:49 - 0000000 ____D C:\Users\cata\Downloads\51675_mall-shopping
2012-01-11 16:01 - 2011-12-12 22:53 - 0000000 ____D C:\Users\cata\Downloads\37585_hotelandmeetingcenter
2012-01-11 12:01 - 2011-12-28 14:58 - 0000000 ____D C:\Users\cata\Documents\FIFA 12
2012-01-09 23:42 - 2012-01-09 23:42 - 1403123 ____A C:\Users\cata\Downloads\memoriu pg1.pdf
2012-01-09 23:42 - 2012-01-09 23:42 - 1391279 ____A C:\Users\cata\Downloads\memoriu pg2.pdf
2012-01-09 23:40 - 2012-01-09 23:40 - 4443806 ____A C:\Users\cata\Downloads\0 - planuri de incadrare.pdf
2012-01-09 23:40 - 2012-01-09 23:40 - 0393153 ____A C:\Users\cata\Downloads\prima pagina urbanism.pdf
2012-01-07 07:42 - 2011-12-14 14:30 - 0000000 ____D C:\Users\cata\Downloads\Goodies_Pack_6
2012-01-05 07:59 - 2010-05-23 10:30 - 0000000 ____D C:\Users\cata\AppData\Local\Microsoft Games
2012-01-01 13:07 - 2012-01-01 13:07 - 0000963 ____A C:\Users\cata\Desktop\LIMBO.lnk
2012-01-01 13:07 - 2012-01-01 13:06 - 0000000 ____D C:\Program Files (x86)\LIMBO
2011-12-25 11:16 - 2011-12-25 11:16 - 0000000 ____D C:\Users\cata\Documents\ANNO 2070
2011-12-25 10:49 - 2011-12-25 10:49 - 0000000 ____D C:\Users\cata\AppData\Roaming\Ubisoft
2011-12-24 14:22 - 2011-12-24 14:22 - 6325892 ____A C:\Users\cata\Downloads\3.66_Version_Spoofer_2.0_355.rar
2011-12-24 14:22 - 2011-12-24 14:22 - 0000000 ____D C:\Users\cata\Downloads\3.66_Version_Spoofer_2.0_355_Links
2011-12-24 14:22 - 2011-12-24 14:22 - 0000000 ____D C:\Users\cata\Downloads\3.66_Version_Spoofer_2.0_355
2011-12-24 14:20 - 2011-12-24 14:20 - 0000616 ____A C:\Users\cata\Downloads\3.66_Version_Spoofer_2.0_355_Links.rar
2011-12-24 12:43 - 2011-12-24 12:42 - 0000000 ____D C:\Users\cata\Downloads\multiMAN ver 02.09.02 FULL (20111011-111011)
2011-12-24 12:37 - 2011-12-24 12:34 - 111337272 ____A C:\Users\cata\Downloads\multiMAN ver 02.09.02 FULL (20111011-111011).rar
2011-12-24 12:32 - 2011-12-24 12:31 - 0000000 ____D C:\Users\cata\Desktop\ps3
2011-12-24 12:31 - 2011-12-24 12:31 - 0000000 ____D C:\Users\cata\Downloads\PS3_355_KMEAW_CFW
2011-12-24 12:24 - 2011-12-24 12:15 - 178933085 ____A C:\Users\cata\Downloads\PS3_355_KMEAW_CFW.RAR
2011-12-24 12:11 - 2011-12-24 12:11 - 0102400 ____A C:\Users\cata\Downloads\BDEMU-355KM.pkg
2011-12-23 18:16 - 2011-12-23 18:16 - 0069406 ____A C:\Users\cata\Downloads\379498_179750262123959_100002669587548_308229_1500251430_n.jpg
2011-12-23 14:12 - 2011-12-23 14:12 - 1261920 ____A C:\Users\cata\Downloads\PlayB3yond.p3t
2011-12-23 14:10 - 2011-12-23 14:10 - 1798160 ____A C:\Users\cata\Downloads\10358-HeavyRainDynamicPS3Theme.p3t
2011-12-23 12:58 - 2011-12-23 12:58 - 0590873 ____A (Karmian.org ) C:\Users\cata\Downloads\660_ps3splitter-1-1-5-1.exe
2011-12-23 12:58 - 2011-12-23 12:58 - 0000000 ____D C:\Program Files (x86)\Karmian
2011-12-17 14:35 - 2011-12-17 14:35 - 0000000 ____D C:\Users\cata\Downloads\BSA_unpacker-3117
2011-12-17 14:34 - 2011-12-17 14:34 - 0013164 ____A C:\Users\cata\Downloads\BSA_unpacker-3117.7z
2011-12-17 13:17 - 2011-12-17 13:17 - 0070196 ____A C:\Users\cata\Desktop\385908_336893293002939_100000468133202_1386942_1296933091_n.jpg

========================= Known DLLs (Whitelisted) ============


========================= Bamital & volsnap Check ============

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe
[2010-02-09 22:13] - [2009-10-30 21:45] - 2614272 ____A (Microsoft Corporation) 2626FC9755BE22F805D3CFA0CE3EE727

C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

========================= Memory info ======================

Percentage of memory in use: 15%
Total physical RAM: 3948.54 MB
Available physical RAM: 3339.64 MB
Total Pagefile: 3946.69 MB
Available Pagefile: 3334.7 MB
Total Virtual: 8192 MB
Available Virtual: 8191.9 MB

======================= Partitions =========================

1 Drive c: () (Fixed) (Total:119.23 GB) (Free:2.62 GB) NTFS ==>[Drive with boot components (obtanied from BCD)]
2 Drive d: () (Fixed) (Total:178.85 GB) (Free:5.56 GB) NTFS
4 Drive f: () (Fixed) (Total:465.76 GB) (Free:464.38 GB) NTFS
5 Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS

Disk ### Status Size Free Dyn Gpt
-------- ------------- ------- ------- --- ---
Disk 0 Online 298 GB 4096 KB
Disk 1 Online 465 GB 1024 KB

Partitions of Disk 0:
===============

Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 119 GB 31 KB
Partition 2 Primary 178 GB 119 GB

======================================================================================================

Disk: 0
Partition 1
Type : 07
Hidden: No
Active: Yes

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 1 C NTFS Partition 119 GB Healthy

======================================================================================================

Disk: 0
Partition 2
Type : 07
Hidden: No
Active: No

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 2 D NTFS Partition 178 GB Healthy

======================================================================================================

Partitions of Disk 1:
===============

Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 465 GB 31 KB

======================================================================================================

Disk: 1
Partition 1
Type : 07
Hidden: No
Active: No

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 3 F NTFS Partition 465 GB Healthy

======================================================================================================

==========================================================

Last Boot: 2012-03-12 05:03

======================= End Of Log ==========================

#3 gringo_pr

gringo_pr

    Bleepin Gringo


  • Malware Response Team
  • 136,772 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Puerto rico
  • Local time:03:18 PM

Posted 17 March 2012 - 05:08 AM

Open notepad. Please copy the contents of the code box below. To do this highlight the contents of the box and right click on it. Paste this into the open notepad. Save it on the flashdrive as fixlist.txt


HKU\cata\...\Run: [userinit] C:\Users\cata\AppData\Roaming\sdra64.exe [155648 2009-07-13] ()
HKU\cata\...\Winlogon: [Shell] C:\Users\cata\AppData\Local\7d7a948a\X [38912 2012-03-14] ()
HKLM-x32\...\Winlogon: [Userinit] userinit.exe,C:\Windows\system32\sdra64.exe, [x]
SubSystems: [Windows] ==> ZeroAccess
2 beatjamupnpmusicserver; C:\Windows\System32\stac97.dll [5120 2009-07-13] ()
C:\Windows\System32\stac97.dll
NETSVC: beatjamupnpmusicserver
2012-03-14 04:59 - 2012-03-14 05:14 - 0000000 __ASH C:\Windows\System32\dds_log_ad13.cmd
2012-03-14 04:58 - 2012-03-14 04:58 - 0000000 __SHD C:\Users\cata\AppData\Local\7d7a948a
2012-03-14 04:58 - 2012-03-14 04:58 - 0000000 ____D C:\Windows\System32\Macromed
2012-03-14 04:58 - 2012-03-14 04:58 - 0000000 ____D C:\Users\All Users\B7E8586B00008C4F0003621FA6014588
2012-03-14 04:58 - 2012-03-14 04:58 - 0000000 ____D C:\ProgramData\B7E8586B00008C4F0003621FA6014588

NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

On Vista or Windows 7: Now please enter System Recovery Options.

Run FRST64 and press the Fix button just once and wait.
The tool will make a log on the flashdrive (Fixlog.txt) please post it to your reply.

Gringo
I Close My Topics If You Have Not Replied In 5 Days If You Will Be Longer Please Let Me Know

If I Have Not Replied To One Of My Topics In 48 Hrs Please Bump The Topic



My help is free, however, if you wish to make a small donation to show your appreciation or to help me continue the fight against Malware, then click here -->btn_donate_SM.gif<-- Don't worry every little bit helps.

Proud Graduate Of Malware Removal University

#4 gringo_pr

gringo_pr

    Bleepin Gringo


  • Malware Response Team
  • 136,772 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Puerto rico
  • Local time:03:18 PM

Posted 20 March 2012 - 12:19 AM

Hello


Just checking in on you as it has been a couple of days since I have heard from you.

Are you having any troubles or just need more time?




Gringo
I Close My Topics If You Have Not Replied In 5 Days If You Will Be Longer Please Let Me Know

If I Have Not Replied To One Of My Topics In 48 Hrs Please Bump The Topic



My help is free, however, if you wish to make a small donation to show your appreciation or to help me continue the fight against Malware, then click here -->btn_donate_SM.gif<-- Don't worry every little bit helps.

Proud Graduate Of Malware Removal University

#5 gringo_pr

gringo_pr

    Bleepin Gringo


  • Malware Response Team
  • 136,772 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Puerto rico
  • Local time:03:18 PM

Posted 22 March 2012 - 11:39 PM

Hello

48 Hour bump

It has been more than 48 hours since my last post.

  • do you still need help with this?
  • do you need more time?
  • are you having problems following my instructions?
  • if after 48hrs you have not replied to this thread then it will have to be closed!

Gringo
I Close My Topics If You Have Not Replied In 5 Days If You Will Be Longer Please Let Me Know

If I Have Not Replied To One Of My Topics In 48 Hrs Please Bump The Topic



My help is free, however, if you wish to make a small donation to show your appreciation or to help me continue the fight against Malware, then click here -->btn_donate_SM.gif<-- Don't worry every little bit helps.

Proud Graduate Of Malware Removal University

#6 gringo_pr

gringo_pr

    Bleepin Gringo


  • Malware Response Team
  • 136,772 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Puerto rico
  • Local time:03:18 PM

Posted 26 March 2012 - 08:48 AM

Due to the lack of feedback, this topic is now closed.In the event you still have problems, please send me or any Moderator a Private Message and ask them to reopen this topic within the next 5 days. Please include a link to your topic in the Private Message. Thank you.
I Close My Topics If You Have Not Replied In 5 Days If You Will Be Longer Please Let Me Know

If I Have Not Replied To One Of My Topics In 48 Hrs Please Bump The Topic



My help is free, however, if you wish to make a small donation to show your appreciation or to help me continue the fight against Malware, then click here -->btn_donate_SM.gif<-- Don't worry every little bit helps.

Proud Graduate Of Malware Removal University




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users