Hello All,
I got my system infected with the win64/patched.a virus. The file it attacked was the services.exe. Unfortunately my AVG was unable to remove it since it is a system file.
I searched on the forum and found another guy who had the same virus, and someone helped him to solve it. I tried to follow the instructions and fix my problem but since I cannot read the FRST and ComboFix logs I would like to post them here for someone to check them and tell me if I successfully removed that awful virus from my system.
What i did was:
1. I restarted and with F8 I ran System Recover.
2. I ran FRST64 and created two logs; frst.txt and search.txt
( i searched for services.exe)
3. I disabled AVG and ran ComboFix.
FRST.TXT Log
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 16-10-2012
Ran by SYSTEM at 17-10-2012 18:56:39
Running from H:\
Windows 7 Professional (X64) OS Language: English(US)
The current controlset is ControlSet001
==================== Registry (Whitelisted) ===================
HKLM\...\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s [12503184 2012-06-11] (Realtek Semiconductor)
HKLM\...\Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices [112512 2010-03-13] (Microsoft Corporation)
HKLM\...\Run: [OODefragTray] C:\Program Files\OO Software\Defrag\oodtray.exe [7060848 2012-09-14] (O&O Software GmbH)
HKLM\...\Run: [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [446392 2012-04-03] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [vProt] "C:\Program Files (x86)\AVG Secure Search\vprot.exe" [947808 2012-09-13] ()
HKLM-x32\...\Run: [Live Update 5] C:\Program Files (x86)\MSI\Live Update 5\BootStartLiveupdate.exe /reminder [315392 2012-01-30] ()
HKLM-x32\...\Run: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2013\avgui.exe" /TRAYONLY [3116152 2012-10-10] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [ROC_ROC_NT] "C:\Program Files (x86)\AVG Secure Search\ROC_ROC_NT.exe" / /PROMPT /CMPID=ROC_NT [856160 2012-09-13] ()
HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [919008 2012-07-27] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] [x]
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe" [36760 2011-09-05] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe" [2904984 2011-09-05] (Adobe Systems Inc.)
HKLM-x32\...\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59240 2012-02-20] (Apple Inc.)
HKU\Dani\...\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [17418928 2012-07-13] (Skype Technologies S.A.)
HKU\Dani\...\Run: [Steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent [1353080 2012-09-05] (Valve Corporation)
HKU\Dani\...\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [3671904 2012-08-28] (DT Soft Ltd)
HKU\Dani\...\Run: [AdobeBridge] [x]
HKU\Dani\...\Run: [Raptr] C:\PROGRA~2\Raptr\raptrstub.exe --startup [53160 2012-02-07] (Raptr, Inc)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Startup: C:\Users\All Users\Start Menu\Programs\Startup\O&O Defrag Tray.lnk
ShortcutTarget: O&O Defrag Tray.lnk -> C:\Windows\Installer\{07D8F982-2B93-4805-B15D-7569023A394D}\DefragIcon.exe (No File)
==================== Services (Whitelisted) ===================
2 AVGIDSAgent; "C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe" [5783672 2012-10-01] (AVG Technologies CZ, s.r.o.)
2 avgwd; "C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe" [193568 2012-10-01] (AVG Technologies CZ, s.r.o.)
2 OODefragAgent; "C:\Program Files\OO Software\Defrag\oodag.exe" [2552176 2012-09-14] (O&O Software GmbH)
2 vToolbarUpdater12.2.6; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\12.2.6\ToolbarUpdater.exe [722528 2012-09-13] ()
3 wampmysqld; C:\wamp\bin\mysql\mysql5.5.24\bin\mysqld.exe wampmysqld [9693696 2012-04-19] ()
==================== Drivers (Whitelisted) =====================
1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [151904 2012-09-12] (AVG Technologies CZ, s.r.o. )
0 AVGIDSHA; C:\Windows\System32\Drivers\AVGIDSHA.sys [61792 2012-09-20] (AVG Technologies CZ, s.r.o. )
1 Avgldx64; C:\Windows\System32\Drivers\Avgldx64.sys [185696 2012-10-01] (AVG Technologies CZ, s.r.o.)
0 Avgloga; C:\Windows\System32\Drivers\Avgloga.sys [225120 2012-09-20] (AVG Technologies CZ, s.r.o.)
0 Avgmfx64; C:\Windows\System32\Drivers\Avgmfx64.sys [111456 2012-10-04] (AVG Technologies CZ, s.r.o.)
0 Avgrkx64; C:\Windows\System32\Drivers\Avgrkx64.sys [40800 2012-09-13] (AVG Technologies CZ, s.r.o.)
1 Avgtdia; C:\Windows\System32\Drivers\Avgtdia.sys [200032 2012-09-20] (AVG Technologies CZ, s.r.o.)
1 avgtp; \??\C:\Windows\system32\drivers\avgtpx64.sys [31080 2012-09-13] (AVG Technologies)
2 DgiVecp; C:\Windows\System32\Drivers\DgiVecp.sys [53816 2009-03-02] (Samsung Electronics Co., Ltd.)
1 dtsoftbus01; C:\Windows\System32\Drivers\dtsoftbus01.sys [283200 2012-10-07] (DT Soft Ltd)
3 MSI_MSIBIOS_010507; \??\C:\Program Files (x86)\MSI\Live Update 5\msibios64_100507.sys [33592 2010-05-10] (Your Corporation)
3 NTIOLib_1_0_4; \??\C:\Program Files (x86)\MSI\Live Update 5\NTIOLib_X64.sys [14136 2010-10-22] (MSI)
==================== NetSvcs (Whitelisted) ====================
==================== One Month Created Files and Folders ========
2012-10-17 18:56 - 2012-10-17 18:56 - 00000000 ____D C:\FRST
2012-10-17 08:25 - 2012-10-17 08:25 - 07135925 ____A C:\Users\Dani\Downloads\EasyUploader.rar
2012-10-17 08:25 - 2012-10-17 08:25 - 00000000 ____D C:\Users\Dani\Downloads\EasyUploader
2012-10-17 08:12 - 2012-10-17 08:12 - 00694287 ____A (Farbar) C:\Users\Dani\Downloads\FSS.exe
2012-10-17 08:12 - 2012-10-17 08:12 - 00004335 ____A C:\Users\Dani\Downloads\FSS.txt
2012-10-17 08:03 - 2012-10-17 08:53 - 00000000 ____D C:\Users\Dani\Downloads\cports-x64
2012-10-17 08:03 - 2012-10-17 08:03 - 00089867 ____A C:\Users\Dani\Downloads\cports-x64.zip
2012-10-16 17:03 - 2012-10-16 17:03 - 00000000 ____D C:\Users\Dani\Downloads\mymc-alpha-2.6
2012-10-16 17:02 - 2012-10-16 17:03 - 04710029 ____A C:\Users\Dani\Downloads\mymc-alpha-2.6.zip
2012-10-16 14:48 - 2012-10-16 14:48 - 00000000 ____D C:\Users\Dani\Downloads\Playstation-2-Bios-Pack
2012-10-16 14:47 - 2012-10-16 14:47 - 00000000 ____D C:\Users\Dani\Documents\PCSX2
2012-10-16 13:13 - 2012-10-16 14:49 - 00000000 ____D C:\Program Files (x86)\PCSX2 1.0.0
2012-10-16 13:13 - 2012-10-16 13:13 - 00001985 ____A C:\Users\Public\Desktop\PCSX2 1.0.0 (r5350).lnk
2012-10-16 13:12 - 2012-10-16 13:14 - 10031422 ____A C:\Users\Dani\Downloads\Playstation-2-Bios-Pack.7z
2012-10-16 13:10 - 2012-10-16 13:12 - 08945660 ____A C:\Users\Dani\Downloads\pcsx2-1.0.0-r5350-setup.exe
2012-10-16 13:03 - 2012-10-16 13:03 - 00710425 ____A C:\Users\Dani\Downloads\wwe smackdown vs raw 2011.par2.nzb
2012-10-16 13:01 - 2012-10-16 13:01 - 00000000 ____A C:\Users\Dani\Downloads\WWE Smackdown vs Raw 2010 PAL MULTI5 KuDoS.nzb
2012-10-16 08:23 - 2012-10-16 08:40 - 00000303 ____A C:\Users\Dani\Documents\java.html
2012-10-15 19:28 - 2012-10-15 19:28 - 33117850 ____A C:\Users\Dani\Downloads\Eclipse - Event System 2.3.zip
2012-10-15 19:28 - 2012-10-15 19:28 - 00000000 ____D C:\Users\Dani\Downloads\Eclipse - Event System 2.3
2012-10-15 12:03 - 2012-10-15 15:13 - 00001468 ____A C:\Users\Dani\Desktop\javascript2.html
2012-10-15 06:35 - 2012-10-15 13:37 - 00000484 ____A C:\Users\Dani\Desktop\javascript.html
2012-10-15 06:35 - 2012-10-15 06:35 - 00000690 ____A C:\Users\Dani\Desktop\javascript.php
2012-10-14 16:51 - 2012-10-17 06:49 - 00000000 ____D C:\Users\Dani\AppData\Roaming\Raptr
2012-10-14 16:51 - 2012-10-14 16:51 - 00001646 ____A C:\Users\Dani\Desktop\Raptr.lnk
2012-10-14 16:51 - 2012-10-14 16:51 - 00000000 ____D C:\Program Files (x86)\Raptr
2012-10-14 16:49 - 2012-10-16 17:23 - 00000000 ____D C:\Users\Dani\AppData\Roaming\Azureus
2012-10-14 16:49 - 2012-10-14 16:49 - 00000009 ____A C:\END
2012-10-14 16:49 - 2012-10-14 16:49 - 00000000 ____D C:\Users\Dani\.swt
2012-10-14 16:49 - 2012-10-14 16:49 - 00000000 ____D C:\Program Files (x86)\Vuze_Remote
2012-10-14 16:48 - 2012-10-14 16:48 - 00001848 ____A C:\Users\Public\Desktop\Vuze.lnk
2012-10-14 16:48 - 2012-10-14 16:48 - 00000000 ____D C:\Program Files (x86)\Vuze
2012-10-14 16:47 - 2012-10-14 16:47 - 07084496 ____A (Vuze Inc.) C:\Users\Dani\Downloads\Vuze_Installer.exe
2012-10-14 16:44 - 2012-10-14 16:44 - 00000000 ____D C:\Users\Dani\Downloads\Lynda.com - javascript Essential Training (2011)- VisionScaler
2012-10-14 15:33 - 2012-10-14 15:34 - 00000000 ____D C:\Users\Dani\Downloads\HTML5_Games-Creating_Fun_With_HTML5_CSS3_And_WebGL
2012-10-14 15:17 - 2012-10-14 16:07 - 00000000 ____D C:\Users\Dani\Downloads\Lynda.Com.HTML5.Video.Tutorials[HemZone]
2012-10-14 15:14 - 2012-10-14 15:15 - 00000000 ____D C:\Users\Dani\Downloads\The Essential Guide To HTML5 And CSS3 Web Design V413HAV
2012-10-14 13:47 - 2012-10-14 13:48 - 00062329 ____A C:\Users\Dani\Desktop\result.7z
2012-10-14 13:46 - 2012-10-14 13:46 - 02026144 ____A ( ) C:\Users\Dani\Downloads\AVG_Autoruns_en.exe
2012-10-14 13:38 - 2012-10-14 13:38 - 00000068 ____A C:\Users\Dani\Desktop\ref.txt
2012-10-14 12:36 - 2012-10-14 12:36 - 00000000 ____D C:\Users\Dani\AppData\Roaming\Apple Computer
2012-10-14 11:42 - 2012-10-14 11:42 - 00000000 ____D C:\Users\Dani\Downloads\avg_arl_ffi_all_120_120823a5226
2012-10-14 11:40 - 2012-10-14 11:41 - 98895466 ____A C:\Users\Dani\Downloads\avg_arl_ffi_all_120_120823a5226.rar
2012-10-14 11:38 - 2012-10-14 11:39 - 92121088 ____A C:\Users\Dani\Downloads\avg_arl_cdi_all_120_120823a5226.iso
2012-10-14 11:26 - 2012-10-14 11:26 - 00000000 ____D C:\Program Files (x86)\K-Lite Codec Pack
2012-10-14 11:26 - 2012-09-20 10:00 - 00112640 ____A C:\Windows\SysWOW64\ff_vfw.dll
2012-10-14 11:26 - 2012-07-01 14:15 - 04102656 ____A (x264vfw project) C:\Windows\SysWOW64\x264vfw.dll
2012-10-14 11:26 - 2012-06-09 09:21 - 00178688 ____A C:\Windows\SysWOW64\unrar.dll
2012-10-14 11:26 - 2011-12-21 09:14 - 00151552 ____A (fccHandler) C:\Windows\SysWOW64\ac3acm.acm
2012-10-14 11:26 - 2011-12-07 09:32 - 00216064 ____A ( ) C:\Windows\SysWOW64\lagarith.dll
2012-10-14 11:26 - 2011-06-24 06:44 - 00243200 ____A C:\Windows\SysWOW64\xvidvfw.dll
2012-10-14 11:26 - 2011-06-24 06:28 - 00650752 ____A C:\Windows\SysWOW64\xvidcore.dll
2012-10-14 11:26 - 2004-05-18 10:16 - 00039936 ____A (Disappearing Inc.) C:\Windows\SysWOW64\huffyuv.dll
2012-10-14 11:25 - 2012-10-14 11:25 - 25771406 ____A ( ) C:\Users\Dani\Downloads\K-Lite_Codec_Pack_930_Mega.exe
2012-10-14 11:17 - 2012-10-14 11:18 - 00000000 ____D C:\Users\Dani\Downloads\QT410 Keygen
2012-10-14 11:07 - 2012-10-14 11:07 - 00000000 ____D C:\Users\All Users\Apple Computer
2012-10-14 11:07 - 2012-10-14 11:07 - 00000000 ____D C:\Program Files (x86)\QT Lite
2012-10-14 11:07 - 2010-11-29 09:38 - 00180224 ____A (Apple Inc.) C:\Windows\SysWOW64\QTCF.dll
2012-10-14 11:07 - 2010-11-29 09:38 - 00094208 ____A (Apple Inc.) C:\Windows\SysWOW64\QuickTimeVR.qtx
2012-10-14 11:07 - 2010-11-29 09:38 - 00069632 ____A (Apple Inc.) C:\Windows\SysWOW64\QuickTime.qts
2012-10-14 11:05 - 2012-10-14 11:05 - 18136665 ____A ( ) C:\Users\Dani\Downloads\QT_Lite_410.exe
2012-10-14 10:57 - 2012-10-14 11:07 - 00000000 ____D C:\Users\Dani\AppData\Local\Apple Computer
2012-10-14 10:55 - 2012-10-14 10:55 - 00000000 ____D C:\Users\Dani\AppData\Local\Apple
2012-10-14 10:55 - 2012-10-14 10:55 - 00000000 ____D C:\Users\All Users\Apple
2012-10-14 10:55 - 2012-10-14 10:55 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2012-10-14 10:54 - 2012-10-14 10:54 - 39483256 ____A (Apple Inc.) C:\Users\Dani\Downloads\QuickTimeInstaller.exe
2012-10-14 10:44 - 2012-10-14 10:46 - 00000000 ____D C:\Users\Dani\AppData\Roaming\Unity
2012-10-14 10:43 - 2012-10-14 10:43 - 00000000 ____D C:\Users\Dani\AppData\Roaming\PACE Anti-Piracy
2012-10-14 10:43 - 2012-10-14 10:43 - 00000000 ____D C:\Users\Dani\AppData\Local\PACE Anti-Piracy
2012-10-14 10:43 - 2012-10-14 10:43 - 00000000 ____D C:\Users\All Users\PACE Anti-Piracy
2012-10-14 10:36 - 2012-10-14 10:36 - 00001120 ____A C:\Users\Public\Desktop\Unity.lnk
2012-10-14 10:36 - 2012-10-14 10:36 - 00000000 ____D C:\Users\Public\Documents\Unity Projects
2012-10-14 10:35 - 2012-10-14 10:36 - 00000000 ____D C:\Program Files (x86)\Unity
2012-10-14 10:02 - 2012-10-14 12:35 - 00000000 ____D C:\Users\Dani\AppData\Local\Unity
2012-10-14 10:02 - 2012-10-14 10:02 - 00591224 ____A (Unity Technologies ApS) C:\Users\Dani\Downloads\UnityWebPlayer.exe
2012-10-14 09:52 - 2012-10-14 10:20 - 530663312 ____A (Unity Technologies ApS) C:\Users\Dani\Downloads\UnitySetup-3.5.6.exe
2012-10-14 08:04 - 2012-10-16 12:13 - 00000000 ____D C:\Users\Dani\Documents\FIFA 13
2012-10-14 07:48 - 2012-10-14 07:48 - 00000000 ____D C:\Users\Dani\Desktop\New folder
2012-10-14 07:48 - 2012-10-14 07:48 - 00000000 ____D C:\Games
2012-10-14 03:17 - 2012-10-14 03:20 - 00000000 ____D C:\Users\Dani\Desktop\Mama
2012-10-13 14:34 - 2012-10-13 14:35 - 00019968 __ASH C:\Users\Dani\Thumbs.db
2012-10-13 12:08 - 2012-10-13 12:08 - 01137936 ____A C:\Users\Dani\Downloads\Win7Themes_Downloader(1).exe
2012-10-13 12:05 - 2012-10-16 12:05 - 00000000 ____D C:\Program Files (x86)\DealPly
2012-10-13 12:05 - 2012-10-13 12:04 - 20311097 ____A C:\Users\Dani\Downloads\949f383d02d0ea8eeb0ee9a76e7058a4.7z
2012-10-13 12:04 - 2012-10-13 12:04 - 01137936 ____A C:\Users\Dani\Downloads\Win7Themes_Downloader.exe
2012-10-12 16:20 - 2012-10-12 16:20 - 00000000 ____D C:\Users\Dani\Downloads\leaves_brushes_mega_pack_by_hawksmont
2012-10-12 16:19 - 2012-10-12 16:19 - 00422559 ____A C:\Users\Dani\Downloads\leaves_brushes_mega_pack_by_hawksmont.zip
2012-10-12 06:01 - 2012-10-12 06:01 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2012-10-10 01:27 - 2012-10-10 01:28 - 00000895 ____A C:\Users\Dani\Documents\mysql_resource_update.php
2012-10-10 01:14 - 2012-10-10 01:19 - 00000292 ____A C:\Users\Dani\Documents\connect.php
2012-10-10 01:12 - 2012-10-10 01:12 - 00001315 ____A C:\Users\Dani\Downloads\spqr.sql
2012-10-09 21:19 - 2012-09-14 11:19 - 00002048 ____A (Microsoft Corporation) C:\Windows\System32\tzres.dll
2012-10-09 21:19 - 2012-09-14 10:28 - 00002048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2012-10-09 21:19 - 2012-08-31 10:19 - 01659760 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ntfs.sys
2012-10-09 21:19 - 2012-08-30 10:03 - 05559664 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2012-10-09 21:19 - 2012-08-30 09:12 - 03968880 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2012-10-09 21:19 - 2012-08-30 09:12 - 03914096 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2012-10-09 21:19 - 2012-08-24 10:05 - 00220160 ____A (Microsoft Corporation) C:\Windows\System32\wintrust.dll
2012-10-09 21:19 - 2012-08-24 08:57 - 00172544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2012-10-09 21:19 - 2012-08-20 10:48 - 01162240 ____A (Microsoft Corporation) C:\Windows\System32\kernel32.dll
2012-10-09 21:19 - 2012-08-20 10:48 - 00424448 ____A (Microsoft Corporation) C:\Windows\System32\KernelBase.dll
2012-10-09 21:19 - 2012-08-20 10:48 - 00362496 ____A (Microsoft Corporation) C:\Windows\System32\wow64win.dll
2012-10-09 21:19 - 2012-08-20 10:48 - 00243200 ____A (Microsoft Corporation) C:\Windows\System32\wow64.dll
2012-10-09 21:19 - 2012-08-20 10:48 - 00215040 ____A (Microsoft Corporation) C:\Windows\System32\winsrv.dll
2012-10-09 21:19 - 2012-08-20 10:48 - 00016384 ____A (Microsoft Corporation) C:\Windows\System32\ntvdm64.dll
2012-10-09 21:19 - 2012-08-20 10:48 - 00013312 ____A (Microsoft Corporation) C:\Windows\System32\wow64cpu.dll
2012-10-09 21:19 - 2012-08-20 10:46 - 00338432 ____A (Microsoft Corporation) C:\Windows\System32\conhost.exe
2012-10-09 21:19 - 2012-08-20 10:38 - 00006144 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00005120 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00004608 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00004608 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:40 - 00014336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2012-10-09 21:19 - 2012-08-20 09:38 - 00025600 ____A (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2012-10-09 21:19 - 2012-08-20 09:37 - 01114112 ____A (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2012-10-09 21:19 - 2012-08-20 09:37 - 00274944 ____A (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2012-10-09 21:19 - 2012-08-20 09:37 - 00005120 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00005120 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00004608 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 07:38 - 00007680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2012-10-09 21:19 - 2012-08-20 07:38 - 00002048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2012-10-09 21:19 - 2012-08-20 07:33 - 00006144 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 07:33 - 00004608 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 07:33 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 07:33 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2012-10-09 21:19 - 2012-08-10 16:56 - 00715776 ____A (Microsoft Corporation) C:\Windows\System32\kerberos.dll
2012-10-09 21:19 - 2012-08-10 15:56 - 00542208 ____A (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2012-10-09 21:19 - 2012-06-01 21:41 - 01464320 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll
2012-10-09 21:19 - 2012-06-01 21:41 - 00184320 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll
2012-10-09 21:19 - 2012-06-01 21:41 - 00140288 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll
2012-10-09 21:19 - 2012-06-01 20:36 - 01159680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2012-10-09 21:19 - 2012-06-01 20:36 - 00140288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2012-10-09 21:19 - 2012-06-01 20:36 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2012-10-08 22:49 - 2012-10-08 23:02 - 00000000 ____D C:\Users\Dani\Downloads\Lynda.com.CSS.For.Designers.DVD
2012-10-08 22:33 - 2012-10-08 22:35 - 00000000 ____D C:\Users\Dani\Downloads\Lynda.com - CSS Fundamentals
2012-10-08 01:57 - 2012-10-08 01:57 - 00000000 ____D C:\Users\Dani\Documents\Aurora3D
2012-10-08 01:49 - 2012-10-08 01:49 - 00000000 ____D C:\Users\Dani\AppData\Local\Maker3D
2012-10-08 01:49 - 2012-10-08 01:49 - 00000000 ____D C:\Users\Dani\AppData\Local\Configure
2012-10-08 01:47 - 2012-10-08 01:47 - 00000000 ____D C:\Program Files (x86)\Aurora3D
2012-10-08 01:47 - 2011-04-10 01:22 - 00667648 ____A (Optima SC Inc.) C:\Windows\SysWOW64\vp8vfw.dll
2012-10-08 00:10 - 2012-10-08 22:26 - 00000000 ____D C:\Users\All Users\regid.1986-12.com.adobe
2012-10-08 00:00 - 2012-10-08 00:00 - 00000000 ____D C:\Users\All Users\ALM
2012-10-07 23:57 - 2012-10-07 23:57 - 00000000 ____D C:\Users\Dani\Adobe Flash Builder 4.6
2012-10-07 23:49 - 2012-10-07 23:49 - 00000000 ____D C:\Program Files (x86)\My Company Name
2012-10-07 23:49 - 2011-11-02 17:01 - 00056208 ____N (Rovi Corporation) C:\Windows\System32\Drivers\PxHlpa64.sys
2012-10-07 23:49 - 2011-10-16 17:00 - 00010224 ____N (Sonic Solutions) C:\Windows\System32\Drivers\cdralw2k.sys
2012-10-07 23:49 - 2011-10-16 17:00 - 00010224 ____N (Sonic Solutions) C:\Windows\System32\Drivers\cdr4_xp.sys
2012-10-07 23:47 - 2012-10-07 23:47 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2012-10-07 23:47 - 2012-10-07 23:47 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2012-10-07 23:44 - 2012-10-08 00:03 - 00000000 ____D C:\Program Files\Common Files\Adobe
2012-10-07 23:44 - 2012-10-08 00:03 - 00000000 ____D C:\Program Files\Adobe
2012-10-07 23:20 - 2012-10-07 23:21 - 00000000 ____D C:\Users\Dani\AppData\Roaming\DAEMON Tools Lite
2012-10-07 23:20 - 2012-10-07 23:21 - 00000000 ____D C:\Users\All Users\DAEMON Tools Lite
2012-10-07 23:20 - 2012-10-07 23:20 - 00283200 ____A (DT Soft Ltd) C:\Windows\System32\Drivers\dtsoftbus01.sys
2012-10-07 23:20 - 2012-10-07 23:20 - 00000000 ____D C:\Program Files (x86)\DAEMON Tools Lite
2012-10-07 23:19 - 2012-10-07 23:20 - 14294360 ____A (DT Soft Ltd) C:\Users\Dani\Downloads\DTLite4454-0316.exe
2012-10-06 21:46 - 2012-10-06 21:46 - 00889856 ____A C:\Users\Dani\Documents\2 1_Change-Management_(1)_2012-2013(bb) Individual change.ppt
2012-10-06 06:34 - 2012-10-07 09:20 - 00141747 ____H C:\Users\Dani\Documents\~WRL0212.tmp
2012-10-04 17:26 - 2012-10-04 17:26 - 00111456 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgmfx64.sys
2012-10-01 20:28 - 2012-10-01 20:32 - 00000000 ____D C:\Users\Dani\AppData\Roaming\Audacity
2012-10-01 20:28 - 2012-10-01 20:28 - 00000000 ____D C:\Program Files (x86)\Audacity
2012-10-01 20:27 - 2012-10-01 20:27 - 21415874 ____A (Audacity Team ) C:\Users\Dani\Downloads\audacity-win-2.0.2.exe
2012-10-01 17:30 - 2012-10-01 17:30 - 00185696 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgldx64.sys
2012-10-01 15:12 - 2012-10-17 07:42 - 00000000 ____D C:\wamp
2012-10-01 15:10 - 2012-10-01 15:10 - 31515243 ____A (Hervé Leclerc (HeL) ) C:\Users\Dani\Downloads\wampserver2.2e-php5.3.13-httpd2.2.22-mysql5.5.24-x64.exe
2012-10-01 15:08 - 2012-10-01 15:08 - 05673816 ____A (Microsoft Corporation) C:\Users\Dani\Downloads\vcredist_x64.exe
2012-10-01 15:06 - 2012-10-01 15:06 - 00001931 ____A C:\Users\Dani\Downloads\localhost.sql
2012-10-01 13:17 - 2012-10-01 13:17 - 00000193 ____A C:\Windows\WORDPAD.INI
2012-10-01 07:51 - 2012-10-01 07:51 - 00003391 ____A C:\Users\Dani\Documents\STATS.txt
2012-09-30 14:37 - 2012-09-30 14:38 - 04829350 ____A C:\Users\Dani\Documents\MOV09884.AVI
2012-09-30 13:08 - 2012-09-30 13:08 - 00001089 ____A C:\Users\Dani\Documents\Legionaries vs Principes (elite).txt
2012-09-29 21:36 - 2012-09-29 22:19 - 00000000 ____D C:\Users\Dani\AppData\Roaming\Notepad++
2012-09-29 21:36 - 2012-09-29 21:36 - 00000000 ____D C:\Program Files (x86)\Notepad++
2012-09-29 21:35 - 2012-09-29 21:36 - 05844269 ____A C:\Users\Dani\Downloads\npp.6.1.8.Installer.exe
2012-09-29 21:33 - 2012-09-29 21:43 - 00000000 ____D C:\Users\Dani\Downloads\Lynda.com.PHP.With.MySQL.Beyond.The.Basics.DVD
2012-09-29 21:22 - 2012-10-01 15:11 - 00000000 ____D C:\xampp
2012-09-29 20:51 - 2012-09-29 21:13 - 00000000 ____D C:\Users\Dani\Downloads\Lynda.com.PHP.With.MySQL.Essential.Training.DVD
2012-09-29 20:11 - 2012-09-29 20:13 - 95614089 ____A C:\Users\Dani\Downloads\xampp-win32-1.8.0-VC9-installer.exe
2012-09-29 16:17 - 2012-10-15 16:25 - 00000000 ____D C:\Users\Dani\AppData\Roaming\FileZilla
2012-09-29 16:17 - 2012-09-29 16:17 - 04518720 ____A (FileZilla Project) C:\Users\Dani\Downloads\FileZilla_3.5.3_win32-setup.exe
2012-09-29 16:17 - 2012-09-29 16:17 - 00000000 ____D C:\Program Files (x86)\FileZilla FTP Client
2012-09-29 16:16 - 2012-09-29 16:16 - 01620836 ____A (FileZilla Project) C:\Users\Dani\Downloads\FileZilla_Server-0_9_41.exe
2012-09-29 15:26 - 2012-09-29 15:26 - 00656438 ____A (Welcome to CC File ) C:\Users\Dani\Downloads\ccfilesetup.exe
2012-09-29 13:55 - 2012-09-29 13:55 - 00001234 ____A C:\Users\Dani\Documents\Legionaries vs Principes (Green).txt
2012-09-27 04:41 - 2012-10-17 06:26 - 00034452 ____A C:\Windows\System32\oodbs.lor
2012-09-26 11:55 - 2012-09-26 11:55 - 00000000 ____D C:\Users\Dani\Downloads\saint-row-the-third-nude-female
2012-09-26 11:53 - 2012-09-26 11:54 - 21950207 ____A C:\Users\Dani\Downloads\saint-row-the-third-nude-female.rar
2012-09-26 10:15 - 2012-09-26 11:21 - 00000000 ____D C:\Rene
2012-09-26 09:39 - 2012-09-26 09:39 - 00000000 ____D C:\Windows\System32\oodag
2012-09-26 09:37 - 2012-09-26 09:37 - 00000000 ____D C:\Users\Dani\AppData\Local\O&O
2012-09-26 09:36 - 2012-09-26 09:36 - 00000000 ____D C:\Users\All Users\OO Software
2012-09-26 09:36 - 2012-09-26 09:36 - 00000000 ____D C:\Program Files\OO Software
2012-09-26 08:39 - 2012-09-26 08:39 - 01483723 ____A C:\Users\Dani\Downloads\SystemCheck_enUS.exe
2012-09-26 08:36 - 2012-09-28 07:08 - 00000000 ____D C:\Program Files (x86)\Diablo III
2012-09-26 08:35 - 2012-09-26 08:35 - 40048216 ____A (Blizzard Entertainment) C:\Users\Dani\Downloads\Diablo-III-Setup-enGB.exe
2012-09-26 04:30 - 2012-08-21 13:01 - 00245760 ____A (Microsoft Corporation) C:\Windows\System32\OxpsConverter.exe
2012-09-24 15:41 - 2012-08-30 11:14 - 26228072 ____A (NVIDIA Corporation) C:\Windows\System32\nvoglv64.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 25256296 ____A (NVIDIA Corporation) C:\Windows\System32\nvcompiler.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 19828584 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 18229096 ____A (NVIDIA Corporation) C:\Windows\System32\nvd3dumx.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 17559912 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 15291752 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 13391720 ____A (NVIDIA Corporation) C:\Windows\System32\Drivers\nvlddmkm.sys
2012-09-24 15:41 - 2012-08-30 11:14 - 09066344 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuda.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 07626088 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 07397736 ____A (NVIDIA Corporation) C:\Windows\System32\nvopencl.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 06109032 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 02745192 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvid.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 02573672 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 02422120 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 02216808 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvenc.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 01866088 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 01482600 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispgenco64.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 00830312 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 00247144 ____A (NVIDIA Corporation) C:\Windows\System32\nvinitx.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 00202600 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2012-09-24 15:41 - 2012-07-03 07:25 - 00189288 ____A (NVIDIA Corporation) C:\Windows\System32\Drivers\nvhda64v.sys
2012-09-24 15:41 - 2012-07-03 07:25 - 00031080 ____A (NVIDIA Corporation) C:\Windows\System32\nvhdap64.dll
2012-09-24 15:38 - 2012-09-24 15:40 - 183759160 ____A (NVIDIA Corporation) C:\Users\Dani\Downloads\306.23-desktop-win8-win7-winvista-64bit-english-whql.exe
2012-09-24 15:22 - 2012-09-24 15:22 - 00007628 ____A C:\Users\Dani\AppData\Local\Resmon.ResmonCfg
2012-09-23 08:33 - 2008-10-14 20:22 - 05631312 ____A (Microsoft Corporation) C:\Windows\System32\D3DX9_40.dll
2012-09-23 08:33 - 2008-10-14 20:22 - 04379984 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2012-09-23 08:33 - 2008-10-14 20:22 - 02605920 ____A (Microsoft Corporation) C:\Windows\System32\D3DCompiler_40.dll
2012-09-23 08:33 - 2008-10-14 20:22 - 02036576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2012-09-23 08:33 - 2008-10-14 20:22 - 00519000 ____A (Microsoft Corporation) C:\Windows\System32\d3dx10_40.dll
2012-09-23 08:33 - 2008-10-14 20:22 - 00452440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2012-09-22 14:44 - 2012-08-24 03:15 - 17810944 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2012-09-22 14:44 - 2012-08-24 02:39 - 10925568 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2012-09-22 14:44 - 2012-08-24 02:31 - 02312704 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2012-09-22 14:44 - 2012-08-24 02:22 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2012-09-22 14:44 - 2012-08-24 02:21 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2012-09-22 14:44 - 2012-08-24 02:20 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2012-09-22 14:44 - 2012-08-24 02:18 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2012-09-22 14:44 - 2012-08-24 02:17 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2012-09-22 14:44 - 2012-08-24 02:14 - 00816640 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2012-09-22 14:44 - 2012-08-24 02:14 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2012-09-22 14:44 - 2012-08-24 02:13 - 00599040 ____A (Microsoft Corporation) C:\Windows\System32\vbscript.dll
2012-09-22 14:44 - 2012-08-24 02:12 - 02144768 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2012-09-22 14:44 - 2012-08-24 02:11 - 00729088 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2012-09-22 14:44 - 2012-08-24 02:10 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2012-09-22 14:44 - 2012-08-24 02:09 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2012-09-22 14:44 - 2012-08-24 02:04 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2012-09-22 14:44 - 2012-08-23 23:27 - 12319744 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2012-09-22 14:44 - 2012-08-23 23:03 - 09738240 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2012-09-22 14:44 - 2012-08-23 22:59 - 01800704 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2012-09-22 14:44 - 2012-08-23 22:51 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2012-09-22 14:44 - 2012-08-23 22:51 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2012-09-22 14:44 - 2012-08-23 22:51 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2012-09-22 14:44 - 2012-08-23 22:49 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2012-09-22 14:44 - 2012-08-23 22:48 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2012-09-22 14:44 - 2012-08-23 22:47 - 00717824 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2012-09-22 14:44 - 2012-08-23 22:47 - 00420864 ____A (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2012-09-22 14:44 - 2012-08-23 22:47 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2012-09-22 14:44 - 2012-08-23 22:45 - 00607744 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2012-09-22 14:44 - 2012-08-23 22:44 - 01793024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2012-09-22 14:44 - 2012-08-23 22:44 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2012-09-22 14:44 - 2012-08-23 22:43 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2012-09-22 14:44 - 2012-08-23 22:40 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2012-09-21 13:09 - 2012-09-21 13:09 - 00318904 ____A (Microsoft Corporation) C:\Users\Dani\Downloads\wmpfirefoxplugin.exe
2012-09-21 00:30 - 2012-09-21 00:30 - 00000000 ____D C:\Users\Default\AppData\Roaming\TuneUp Software
2012-09-21 00:30 - 2012-09-21 00:30 - 00000000 ____D C:\Users\Default User\AppData\Roaming\TuneUp Software
2012-09-20 17:46 - 2012-09-20 17:46 - 00225120 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgloga.sys
2012-09-20 17:46 - 2012-09-20 17:46 - 00200032 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgtdia.sys
2012-09-20 17:45 - 2012-09-20 17:45 - 00061792 ____A (AVG Technologies CZ, s.r.o. ) C:\Windows\System32\Drivers\avgidsha.sys
2012-09-20 04:25 - 2012-09-20 04:25 - 00000000 ____D C:\Program Files (x86)\SAMSUNG
2012-09-20 04:25 - 2009-03-02 04:12 - 00053816 ____N (Samsung Electronics Co., Ltd.) C:\Windows\System32\Drivers\DGIVECP.SYS
2012-09-20 04:25 - 2009-03-02 04:12 - 00011576 ____N (Samsung Electronics) C:\Windows\System32\Drivers\SSPORT.SYS
2012-09-20 04:25 - 2006-12-03 15:26 - 00022016 ____A () C:\Windows\System32\SUGI1l6.DLL
2012-09-20 04:25 - 2006-11-21 01:40 - 00089600 ____A (SS) C:\Windows\System32\SUGI1ci.dll
2012-09-20 04:25 - 2006-11-19 22:22 - 00151552 ____A (SS) C:\Windows\System32\SUGI1ci.exe
2012-09-20 04:25 - 2006-10-17 02:08 - 00000411 ____A C:\Windows\System32\SUGI1l6.SMT
2012-09-20 04:24 - 2012-09-20 04:25 - 31498225 ____A (Samsung ) C:\Users\Dani\Downloads\CLX-3160.exe
==================== 3 Months Modified Files ==================
2012-10-17 08:54 - 2009-07-13 20:45 - 00014848 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2012-10-17 08:54 - 2009-07-13 20:45 - 00014848 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2012-10-17 08:53 - 2012-07-30 08:09 - 01524882 ____A C:\Windows\WindowsUpdate.log
2012-10-17 08:25 - 2012-10-17 08:25 - 07135925 ____A C:\Users\Dani\Downloads\EasyUploader.rar
2012-10-17 08:21 - 2012-08-15 20:40 - 00000830 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job
2012-10-17 08:12 - 2012-10-17 08:12 - 00694287 ____A (Farbar) C:\Users\Dani\Downloads\FSS.exe
2012-10-17 08:12 - 2012-10-17 08:12 - 00004335 ____A C:\Users\Dani\Downloads\FSS.txt
2012-10-17 08:03 - 2012-10-17 08:03 - 00089867 ____A C:\Users\Dani\Downloads\cports-x64.zip
2012-10-17 06:30 - 2009-07-13 21:13 - 00726316 ____A C:\Windows\System32\PerfStringBackup.INI
2012-10-17 06:26 - 2012-09-27 04:41 - 00034452 ____A C:\Windows\System32\oodbs.lor
2012-10-17 06:26 - 2012-08-06 03:54 - 00026448 ____A C:\Windows\PFRO.log
2012-10-17 06:26 - 2009-07-13 21:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2012-10-17 06:26 - 2009-07-13 20:51 - 00028938 ____A C:\Windows\setupact.log
2012-10-16 17:03 - 2012-10-16 17:02 - 04710029 ____A C:\Users\Dani\Downloads\mymc-alpha-2.6.zip
2012-10-16 13:14 - 2012-10-16 13:12 - 10031422 ____A C:\Users\Dani\Downloads\Playstation-2-Bios-Pack.7z
2012-10-16 13:13 - 2012-10-16 13:13 - 00001985 ____A C:\Users\Public\Desktop\PCSX2 1.0.0 (r5350).lnk
2012-10-16 13:12 - 2012-10-16 13:10 - 08945660 ____A C:\Users\Dani\Downloads\pcsx2-1.0.0-r5350-setup.exe
2012-10-16 13:03 - 2012-10-16 13:03 - 00710425 ____A C:\Users\Dani\Downloads\wwe smackdown vs raw 2011.par2.nzb
2012-10-16 13:01 - 2012-10-16 13:01 - 00000000 ____A C:\Users\Dani\Downloads\WWE Smackdown vs Raw 2010 PAL MULTI5 KuDoS.nzb
2012-10-16 08:40 - 2012-10-16 08:23 - 00000303 ____A C:\Users\Dani\Documents\java.html
2012-10-16 06:15 - 2012-07-30 10:07 - 00696760 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2012-10-16 06:15 - 2012-07-30 10:07 - 00073656 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2012-10-15 19:28 - 2012-10-15 19:28 - 33117850 ____A C:\Users\Dani\Downloads\Eclipse - Event System 2.3.zip
2012-10-15 15:13 - 2012-10-15 12:03 - 00001468 ____A C:\Users\Dani\Desktop\javascript2.html
2012-10-15 13:37 - 2012-10-15 06:35 - 00000484 ____A C:\Users\Dani\Desktop\javascript.html
2012-10-15 06:35 - 2012-10-15 06:35 - 00000690 ____A C:\Users\Dani\Desktop\javascript.php
2012-10-14 16:51 - 2012-10-14 16:51 - 00001646 ____A C:\Users\Dani\Desktop\Raptr.lnk
2012-10-14 16:49 - 2012-10-14 16:49 - 00000009 ____A C:\END
2012-10-14 16:48 - 2012-10-14 16:48 - 00001848 ____A C:\Users\Public\Desktop\Vuze.lnk
2012-10-14 16:47 - 2012-10-14 16:47 - 07084496 ____A (Vuze Inc.) C:\Users\Dani\Downloads\Vuze_Installer.exe
2012-10-14 13:48 - 2012-10-14 13:47 - 00062329 ____A C:\Users\Dani\Desktop\result.7z
2012-10-14 13:46 - 2012-10-14 13:46 - 02026144 ____A ( ) C:\Users\Dani\Downloads\AVG_Autoruns_en.exe
2012-10-14 13:38 - 2012-10-14 13:38 - 00000068 ____A C:\Users\Dani\Desktop\ref.txt
2012-10-14 11:41 - 2012-10-14 11:40 - 98895466 ____A C:\Users\Dani\Downloads\avg_arl_ffi_all_120_120823a5226.rar
2012-10-14 11:39 - 2012-10-14 11:38 - 92121088 ____A C:\Users\Dani\Downloads\avg_arl_cdi_all_120_120823a5226.iso
2012-10-14 11:25 - 2012-10-14 11:25 - 25771406 ____A ( ) C:\Users\Dani\Downloads\K-Lite_Codec_Pack_930_Mega.exe
2012-10-14 11:05 - 2012-10-14 11:05 - 18136665 ____A ( ) C:\Users\Dani\Downloads\QT_Lite_410.exe
2012-10-14 10:54 - 2012-10-14 10:54 - 39483256 ____A (Apple Inc.) C:\Users\Dani\Downloads\QuickTimeInstaller.exe
2012-10-14 10:36 - 2012-10-14 10:36 - 00001120 ____A C:\Users\Public\Desktop\Unity.lnk
2012-10-14 10:20 - 2012-10-14 09:52 - 530663312 ____A (Unity Technologies ApS) C:\Users\Dani\Downloads\UnitySetup-3.5.6.exe
2012-10-14 10:02 - 2012-10-14 10:02 - 00591224 ____A (Unity Technologies ApS) C:\Users\Dani\Downloads\UnityWebPlayer.exe
2012-10-14 07:54 - 2012-08-15 07:14 - 00095178 ____A C:\Windows\DirectX.log
2012-10-14 02:59 - 2009-07-13 21:08 - 00032632 ____A C:\Windows\Tasks\SCHEDLGU.TXT
2012-10-13 14:35 - 2012-10-13 14:34 - 00019968 __ASH C:\Users\Dani\Thumbs.db
2012-10-13 12:08 - 2012-10-13 12:08 - 01137936 ____A C:\Users\Dani\Downloads\Win7Themes_Downloader(1).exe
2012-10-13 12:04 - 2012-10-13 12:05 - 20311097 ____A C:\Users\Dani\Downloads\949f383d02d0ea8eeb0ee9a76e7058a4.7z
2012-10-13 12:04 - 2012-10-13 12:04 - 01137936 ____A C:\Users\Dani\Downloads\Win7Themes_Downloader.exe
2012-10-12 16:19 - 2012-10-12 16:19 - 00422559 ____A C:\Users\Dani\Downloads\leaves_brushes_mega_pack_by_hawksmont.zip
2012-10-10 01:28 - 2012-10-10 01:27 - 00000895 ____A C:\Users\Dani\Documents\mysql_resource_update.php
2012-10-10 01:19 - 2012-10-10 01:14 - 00000292 ____A C:\Users\Dani\Documents\connect.php
2012-10-10 01:12 - 2012-10-10 01:12 - 00001315 ____A C:\Users\Dani\Downloads\spqr.sql
2012-10-08 19:22 - 2009-07-13 20:45 - 05060536 ____A C:\Windows\System32\FNTCACHE.DAT
2012-10-08 01:48 - 2012-07-30 09:27 - 00126152 ____A C:\Users\Dani\AppData\Local\GDIPFONTCACHEV1.DAT
2012-10-07 23:20 - 2012-10-07 23:20 - 00283200 ____A (DT Soft Ltd) C:\Windows\System32\Drivers\dtsoftbus01.sys
2012-10-07 23:20 - 2012-10-07 23:19 - 14294360 ____A (DT Soft Ltd) C:\Users\Dani\Downloads\DTLite4454-0316.exe
2012-10-07 09:20 - 2012-10-06 06:34 - 00141747 ____H C:\Users\Dani\Documents\~WRL0212.tmp
2012-10-06 21:46 - 2012-10-06 21:46 - 00889856 ____A C:\Users\Dani\Documents\2 1_Change-Management_(1)_2012-2013(bb) Individual change.ppt
2012-10-04 17:26 - 2012-10-04 17:26 - 00111456 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgmfx64.sys
2012-10-01 20:27 - 2012-10-01 20:27 - 21415874 ____A (Audacity Team ) C:\Users\Dani\Downloads\audacity-win-2.0.2.exe
2012-10-01 17:30 - 2012-10-01 17:30 - 00185696 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgldx64.sys
2012-10-01 15:10 - 2012-10-01 15:10 - 31515243 ____A (Hervé Leclerc (HeL) ) C:\Users\Dani\Downloads\wampserver2.2e-php5.3.13-httpd2.2.22-mysql5.5.24-x64.exe
2012-10-01 15:08 - 2012-10-01 15:08 - 05673816 ____A (Microsoft Corporation) C:\Users\Dani\Downloads\vcredist_x64.exe
2012-10-01 15:06 - 2012-10-01 15:06 - 00001931 ____A C:\Users\Dani\Downloads\localhost.sql
2012-10-01 13:17 - 2012-10-01 13:17 - 00000193 ____A C:\Windows\WORDPAD.INI
2012-10-01 07:51 - 2012-10-01 07:51 - 00003391 ____A C:\Users\Dani\Documents\STATS.txt
2012-09-30 14:38 - 2012-09-30 14:37 - 04829350 ____A C:\Users\Dani\Documents\MOV09884.AVI
2012-09-30 13:08 - 2012-09-30 13:08 - 00001089 ____A C:\Users\Dani\Documents\Legionaries vs Principes (elite).txt
2012-09-29 21:36 - 2012-09-29 21:35 - 05844269 ____A C:\Users\Dani\Downloads\npp.6.1.8.Installer.exe
2012-09-29 20:13 - 2012-09-29 20:11 - 95614089 ____A C:\Users\Dani\Downloads\xampp-win32-1.8.0-VC9-installer.exe
2012-09-29 16:17 - 2012-09-29 16:17 - 04518720 ____A (FileZilla Project) C:\Users\Dani\Downloads\FileZilla_3.5.3_win32-setup.exe
2012-09-29 16:16 - 2012-09-29 16:16 - 01620836 ____A (FileZilla Project) C:\Users\Dani\Downloads\FileZilla_Server-0_9_41.exe
2012-09-29 15:26 - 2012-09-29 15:26 - 00656438 ____A (Welcome to CC File ) C:\Users\Dani\Downloads\ccfilesetup.exe
2012-09-29 13:55 - 2012-09-29 13:55 - 00001234 ____A C:\Users\Dani\Documents\Legionaries vs Principes (Green).txt
2012-09-26 11:54 - 2012-09-26 11:53 - 21950207 ____A C:\Users\Dani\Downloads\saint-row-the-third-nude-female.rar
2012-09-26 08:39 - 2012-09-26 08:39 - 01483723 ____A C:\Users\Dani\Downloads\SystemCheck_enUS.exe
2012-09-26 08:35 - 2012-09-26 08:35 - 40048216 ____A (Blizzard Entertainment) C:\Users\Dani\Downloads\Diablo-III-Setup-enGB.exe
2012-09-24 15:40 - 2012-09-24 15:38 - 183759160 ____A (NVIDIA Corporation) C:\Users\Dani\Downloads\306.23-desktop-win8-win7-winvista-64bit-english-whql.exe
2012-09-24 15:22 - 2012-09-24 15:22 - 00007628 ____A C:\Users\Dani\AppData\Local\Resmon.ResmonCfg
2012-09-21 13:09 - 2012-09-21 13:09 - 00318904 ____A (Microsoft Corporation) C:\Users\Dani\Downloads\wmpfirefoxplugin.exe
2012-09-20 17:46 - 2012-09-20 17:46 - 00225120 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgloga.sys
2012-09-20 17:46 - 2012-09-20 17:46 - 00200032 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgtdia.sys
2012-09-20 17:45 - 2012-09-20 17:45 - 00061792 ____A (AVG Technologies CZ, s.r.o. ) C:\Windows\System32\Drivers\avgidsha.sys
2012-09-20 10:00 - 2012-10-14 11:26 - 00112640 ____A C:\Windows\SysWOW64\ff_vfw.dll
2012-09-20 04:25 - 2012-09-20 04:24 - 31498225 ____A (Samsung ) C:\Users\Dani\Downloads\CLX-3160.exe
2012-09-14 11:19 - 2012-10-09 21:19 - 00002048 ____A (Microsoft Corporation) C:\Windows\System32\tzres.dll
2012-09-14 10:28 - 2012-10-09 21:19 - 00002048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2012-09-14 08:43 - 2012-09-14 08:43 - 04873072 ____A (O&O Software GmbH) C:\Windows\System32\ooscrsav.scr
2012-09-14 08:43 - 2012-09-14 08:43 - 00537456 ____A (O&O Software GmbH) C:\Windows\System32\oodssrs.dll
2012-09-14 08:43 - 2012-09-14 08:43 - 00256368 ____A (O&O Software GmbH) C:\Windows\System32\oodbs.exe
2012-09-14 08:43 - 2012-09-14 08:43 - 00010096 ____A (O&O Software GmbH) C:\Windows\System32\oodbsrs.dll
2012-09-13 17:05 - 2012-09-13 17:05 - 00040800 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgrkx64.sys
2012-09-13 05:46 - 2012-07-30 08:21 - 00031080 ____A (AVG Technologies) C:\Windows\System32\Drivers\avgtpx64.sys
2012-09-12 17:11 - 2012-09-12 17:11 - 00151904 ____A (AVG Technologies CZ, s.r.o. ) C:\Windows\System32\Drivers\avgidsdrivera.sys
2012-09-08 13:28 - 2012-09-08 13:28 - 00231614 ____A C:\Users\Dani\Documents\auxilia samples.rar
2012-09-05 07:18 - 2012-09-05 07:18 - 01606656 ____A C:\Users\Dani\Downloads\SteamInstall.msi
2012-09-04 08:13 - 2012-09-04 08:12 - 09798626 ____A C:\Users\Dani\Downloads\98756165H.rar
2012-09-04 07:54 - 2012-09-04 07:53 - 05893607 ____A C:\Users\Dani\Downloads\sr-hsccf.7z
2012-08-31 10:19 - 2012-10-09 21:19 - 01659760 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ntfs.sys
2012-08-30 11:14 - 2012-09-24 15:41 - 26228072 ____A (NVIDIA Corporation) C:\Windows\System32\nvoglv64.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 25256296 ____A (NVIDIA Corporation) C:\Windows\System32\nvcompiler.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 19828584 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 18229096 ____A (NVIDIA Corporation) C:\Windows\System32\nvd3dumx.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 17559912 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 15291752 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 13391720 ____A (NVIDIA Corporation) C:\Windows\System32\Drivers\nvlddmkm.sys
2012-08-30 11:14 - 2012-09-24 15:41 - 09066344 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuda.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 07626088 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 07397736 ____A (NVIDIA Corporation) C:\Windows\System32\nvopencl.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 06109032 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 02745192 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvid.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 02573672 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 02422120 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 02216808 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvenc.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 01866088 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 01482600 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispgenco64.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 00830312 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 00247144 ____A (NVIDIA Corporation) C:\Windows\System32\nvinitx.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 00202600 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2012-08-30 11:14 - 2012-07-30 09:17 - 01760104 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispco64.dll
2012-08-30 11:14 - 2012-07-30 09:17 - 00016366 ____A C:\Windows\System32\nvinfo.pb
2012-08-30 11:14 - 2012-02-09 12:43 - 14879080 ____A (NVIDIA Corporation) C:\Windows\System32\nvwgf2umx.dll
2012-08-30 11:14 - 2012-02-09 12:43 - 12465512 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2012-08-30 11:14 - 2012-02-09 12:43 - 02725224 ____A (NVIDIA Corporation) C:\Windows\System32\nvapi64.dll
2012-08-30 11:14 - 2012-02-09 12:43 - 00971624 ____A (NVIDIA Corporation) C:\Windows\System32\nvumdshimx.dll
2012-08-30 10:03 - 2012-10-09 21:19 - 05559664 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2012-08-30 09:12 - 2012-10-09 21:19 - 03968880 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2012-08-30 09:12 - 2012-10-09 21:19 - 03914096 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2012-08-30 08:18 - 2012-08-24 19:40 - 03487434 ____A C:\Windows\System32\nvcoproc.bin
2012-08-30 08:18 - 2012-07-30 09:17 - 03266920 ____A (NVIDIA Corporation) C:\Windows\System32\nvsvc64.dll
2012-08-30 08:18 - 2012-07-30 09:17 - 00891240 ____A (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
2012-08-30 08:18 - 2012-07-30 09:17 - 00118120 ____A (NVIDIA Corporation) C:\Windows\System32\nvmctray.dll
2012-08-30 08:18 - 2012-07-30 09:17 - 00063336 ____A (NVIDIA Corporation) C:\Windows\System32\nvshext.dll
2012-08-30 08:17 - 2012-07-30 09:17 - 06198120 ____A (NVIDIA Corporation) C:\Windows\System32\nvcpl.dll
2012-08-27 03:36 - 2012-08-27 03:36 - 00069043 ____A C:\Users\Dani\Downloads\memtest86+-4.20.iso.zip
2012-08-27 02:51 - 2012-08-27 02:51 - 00127860 ____A C:\Users\Dani\Downloads\memtest86+-4.20.usb.installer.zip
2012-08-27 02:49 - 2012-08-27 02:49 - 00043221 ____A C:\Users\Dani\Downloads\memtest86+-1.70.exe.zip
2012-08-27 02:29 - 2012-08-27 02:29 - 00291664 ____A C:\Windows\Minidump\082712-35546-01.dmp
2012-08-27 02:29 - 2012-08-02 06:53 - 770327499 ____A C:\Windows\MEMORY.DMP
2012-08-26 10:47 - 2012-08-26 10:47 - 00284372 ____A C:\Windows\msxml4-KB973688-enu.LOG
2012-08-25 07:00 - 2012-08-25 07:00 - 00286588 ____A C:\Windows\msxml4-KB954430-enu.LOG
2012-08-24 19:41 - 2012-08-24 19:41 - 00000020 ___SH C:\Users\UpdatusUser\ntuser.ini
2012-08-24 19:39 - 2012-08-24 19:36 - 211927944 ____A (NVIDIA Corporation) C:\Users\Dani\Downloads\301.42-desktop-win7-winvista-64bit-international-whql.exe
2012-08-24 19:28 - 2012-08-24 19:28 - 00291664 ____A C:\Windows\Minidump\082512-43296-01.dmp
2012-08-24 10:05 - 2012-10-09 21:19 - 00220160 ____A (Microsoft Corporation) C:\Windows\System32\wintrust.dll
2012-08-24 08:57 - 2012-10-09 21:19 - 00172544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2012-08-24 03:15 - 2012-09-22 14:44 - 17810944 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2012-08-24 02:39 - 2012-09-22 14:44 - 10925568 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2012-08-24 02:31 - 2012-09-22 14:44 - 02312704 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2012-08-24 02:22 - 2012-09-22 14:44 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2012-08-24 02:21 - 2012-09-22 14:44 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2012-08-24 02:20 - 2012-09-22 14:44 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2012-08-24 02:18 - 2012-09-22 14:44 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2012-08-24 02:17 - 2012-09-22 14:44 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2012-08-24 02:14 - 2012-09-22 14:44 - 00816640 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2012-08-24 02:14 - 2012-09-22 14:44 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2012-08-24 02:13 - 2012-09-22 14:44 - 00599040 ____A (Microsoft Corporation) C:\Windows\System32\vbscript.dll
2012-08-24 02:12 - 2012-09-22 14:44 - 02144768 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2012-08-24 02:11 - 2012-09-22 14:44 - 00729088 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2012-08-24 02:10 - 2012-09-22 14:44 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2012-08-24 02:09 - 2012-09-22 14:44 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2012-08-24 02:04 - 2012-09-22 14:44 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2012-08-23 23:27 - 2012-09-22 14:44 - 12319744 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2012-08-23 23:03 - 2012-09-22 14:44 - 09738240 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2012-08-23 22:59 - 2012-09-22 14:44 - 01800704 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2012-08-23 22:51 - 2012-09-22 14:44 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2012-08-23 22:51 - 2012-09-22 14:44 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2012-08-23 22:51 - 2012-09-22 14:44 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2012-08-23 22:49 - 2012-09-22 14:44 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2012-08-23 22:48 - 2012-09-22 14:44 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2012-08-23 22:47 - 2012-09-22 14:44 - 00717824 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2012-08-23 22:47 - 2012-09-22 14:44 - 00420864 ____A (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2012-08-23 22:47 - 2012-09-22 14:44 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2012-08-23 22:45 - 2012-09-22 14:44 - 00607744 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2012-08-23 22:44 - 2012-09-22 14:44 - 01793024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2012-08-23 22:44 - 2012-09-22 14:44 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2012-08-23 22:43 - 2012-09-22 14:44 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2012-08-23 22:40 - 2012-09-22 14:44 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2012-08-23 19:14 - 2012-08-23 19:13 - 16913728 ____A C:\Users\Dani\Downloads\aoe3-114-english.exe
2012-08-22 20:38 - 2009-07-13 18:36 - 00175616 ____A (Microsoft Corporation) C:\Windows\System32\msclmd.dll
2012-08-22 20:38 - 2009-07-13 18:36 - 00152576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll
2012-08-22 10:12 - 2012-09-13 05:22 - 01913200 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys
2012-08-22 10:12 - 2012-09-13 05:22 - 00950128 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ndis.sys
2012-08-22 10:12 - 2012-09-13 05:22 - 00376688 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\netio.sys
2012-08-22 10:12 - 2012-09-13 05:22 - 00288624 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\FWPKCLNT.SYS
2012-08-21 19:23 - 2012-08-21 19:23 - 00291608 ____A C:\Windows\Minidump\082212-37968-01.dmp
2012-08-21 13:40 - 2012-08-21 13:40 - 06550928 ____A (Bandisoft) C:\Users\Dani\Downloads\bdcamsetup.exe
2012-08-21 13:01 - 2012-09-26 04:30 - 00245760 ____A (Microsoft Corporation) C:\Windows\System32\OxpsConverter.exe
2012-08-20 10:48 - 2012-10-09 21:19 - 01162240 ____A (Microsoft Corporation) C:\Windows\System32\kernel32.dll
2012-08-20 10:48 - 2012-10-09 21:19 - 00424448 ____A (Microsoft Corporation) C:\Windows\System32\KernelBase.dll
2012-08-20 10:48 - 2012-10-09 21:19 - 00362496 ____A (Microsoft Corporation) C:\Windows\System32\wow64win.dll
2012-08-20 10:48 - 2012-10-09 21:19 - 00243200 ____A (Microsoft Corporation) C:\Windows\System32\wow64.dll
2012-08-20 10:48 - 2012-10-09 21:19 - 00215040 ____A (Microsoft Corporation) C:\Windows\System32\winsrv.dll
2012-08-20 10:48 - 2012-10-09 21:19 - 00016384 ____A (Microsoft Corporation) C:\Windows\System32\ntvdm64.dll
2012-08-20 10:48 - 2012-10-09 21:19 - 00013312 ____A (Microsoft Corporation) C:\Windows\System32\wow64cpu.dll
2012-08-20 10:46 - 2012-10-09 21:19 - 00338432 ____A (Microsoft Corporation) C:\Windows\System32\conhost.exe
2012-08-20 10:38 - 2012-10-09 21:19 - 00006144 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00005120 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00004608 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00004608 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll
2012-08-20 09:40 - 2012-10-09 21:19 - 00014336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2012-08-20 09:38 - 2012-10-09 21:19 - 00025600 ____A (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2012-08-20 09:37 - 2012-10-09 21:19 - 01114112 ____A (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2012-08-20 09:37 - 2012-10-09 21:19 - 00274944 ____A (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2012-08-20 09:37 - 2012-10-09 21:19 - 00005120 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00005120 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00004608 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2012-08-20 07:38 - 2012-10-09 21:19 - 00007680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2012-08-20 07:38 - 2012-10-09 21:19 - 00002048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2012-08-20 07:33 - 2012-10-09 21:19 - 00006144 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2012-08-20 07:33 - 2012-10-09 21:19 - 00004608 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2012-08-20 07:33 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2012-08-20 07:33 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2012-08-16 05:30 - 2012-08-16 05:27 - 159244410 ____A C:\Users\Dani\Downloads\Choo Biggz - The Underground Star Mixtape.zip
2012-08-15 11:40 - 2012-08-15 11:40 - 00291600 ____A C:\Windows\Minidump\081512-27015-01.dmp
2012-08-15 07:55 - 2012-08-15 07:55 - 00291552 ____A C:\Windows\Minidump\081512-39078-01.dmp
2012-08-15 07:12 - 2012-08-15 07:12 - 00292184 ____A (Microsoft Corporation) C:\Users\Dani\Downloads\dxwebsetup.exe
2012-08-15 07:08 - 2012-08-15 07:08 - 24010178 ____A C:\Users\Dani\Downloads\MSIAfterburnerSetup223.zip
2012-08-14 21:14 - 2012-08-14 21:14 - 00288424 ____A C:\Windows\Minidump\081512-22500-01.dmp
2012-08-14 20:48 - 2012-08-14 20:48 - 00013507 ____A C:\Users\Dani\Downloads\MemTest.zip
2012-08-14 20:46 - 2012-08-14 20:46 - 00370911 ____A C:\Users\Dani\Downloads\memtest86-4.0a.iso.zip
2012-08-14 11:36 - 2012-08-14 11:36 - 00283640 ____A C:\Windows\Minidump\081412-26875-01.dmp
2012-08-14 11:29 - 2012-08-14 11:29 - 00289784 ____A C:\Windows\Minidump\081412-26453-01.dmp
2012-08-14 05:40 - 2012-08-14 05:40 - 00291608 ____A C:\Windows\Minidump\081412-42156-01.dmp
2012-08-12 10:43 - 2012-08-12 10:43 - 01155638 ____A (GameFabrique ) C:\Users\Dani\Downloads\blades_of_vengence.exe
2012-08-12 10:42 - 2012-08-12 10:42 - 00027520 ____A C:\Users\Dani\AppData\Local\dt.dat
2012-08-12 10:41 - 2012-08-12 10:41 - 01059088 ____A C:\Users\Dani\Downloads\DownloadManagerSetup.exe
2012-08-12 10:41 - 2012-08-12 10:41 - 00384835 ____A C:\Users\Dani\AppData\Local\speeddial.crx
2012-08-11 18:18 - 2012-08-11 18:18 - 00286224 ____A C:\Windows\Minidump\081212-32984-01.dmp
2012-08-11 17:46 - 2012-08-11 17:45 - 00284760 ____A C:\Windows\Minidump\081212-29609-01.dmp
2012-08-11 17:35 - 2012-08-11 17:35 - 00291608 ____A C:\Windows\Minidump\081212-33218-01.dmp
2012-08-11 17:17 - 2012-08-11 17:16 - 16400384 ____A C:\Users\Dani\Downloads\Goldencutie_mpeg2video.mpg
2012-08-10 16:56 - 2012-10-09 21:19 - 00715776 ____A (Microsoft Corporation) C:\Windows\System32\kerberos.dll
2012-08-10 15:56 - 2012-10-09 21:19 - 00542208 ____A (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2012-08-08 10:14 - 2009-07-13 18:34 - 00000478 ____A C:\Windows\win.ini
2012-08-07 18:46 - 2012-08-07 18:02 - 401786868 ____A C:\Users\Dani\Downloads\18VS 1.rar.part
2012-08-07 17:13 - 2012-08-07 17:13 - 00291296 ____A C:\Windows\Minidump\080812-32921-01.dmp
2012-08-07 00:09 - 2012-08-07 00:00 - 81384797 ____A C:\Users\Dani\Downloads\Loira.rar
2012-08-05 03:20 - 2012-08-05 03:20 - 00896400 ____A (BitTorrent, Inc.) C:\Users\Dani\Downloads\uTorrent.exe
2012-08-03 16:33 - 2012-08-03 15:58 - 204417236 ____A C:\Users\Dani\Downloads\Hot-Body-Blonde-Sex-On-Webcam.flv
2012-08-02 09:58 - 2012-09-13 05:22 - 00574464 ____A (Microsoft Corporation) C:\Windows\System32\d3d10level9.dll
2012-08-02 08:57 - 2012-09-13 05:22 - 00490496 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2012-08-02 06:53 - 2012-08-02 06:53 - 00291608 ____A C:\Windows\Minidump\080212-33781-01.dmp
2012-08-02 02:38 - 2012-08-02 02:37 - 117545011 ____A C:\Users\Dani\Downloads\V6_The_Gift-(DatPiff.com).zip
2012-07-31 10:28 - 2012-07-31 10:28 - 34808767 ____A C:\Users\Dani\Downloads\725_kmeaw_cfw_lv2.pkg.rar
2012-07-31 10:19 - 2012-07-31 10:19 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2012-07-31 00:05 - 2012-07-31 00:05 - 00501363 ____A (Peter B Clements) C:\Users\Dani\Downloads\QuickPar-0.9.1.0.exe
2012-07-31 00:04 - 2012-07-31 00:04 - 10855920 ____A C:\Users\Dani\Downloads\powarc1300.exe
2012-07-30 18:00 - 2012-07-30 18:00 - 00008192 _RASH C:\BOOTSECT.BAK
2012-07-30 18:00 - 2009-07-13 21:38 - 00025600 __ASH C:\Windows\System32\config\BCD-Template.LOG
2012-07-30 18:00 - 2009-07-13 21:32 - 00028672 ____A C:\Windows\System32\config\BCD-Template
2012-07-30 17:03 - 2012-07-30 17:03 - 00001313 ____A C:\Windows\TSSysprep.log
2012-07-30 17:03 - 2009-07-13 20:46 - 00001774 ____A C:\Windows\DtcInstall.log
2012-07-30 14:20 - 2012-07-30 14:20 - 03695416 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2012-07-30 14:20 - 2012-07-30 14:20 - 03695416 ____A (Microsoft Corporation) C:\Windows\System32\ieapfltr.dat
2012-07-30 14:20 - 2012-07-30 14:20 - 00534528 ____A (Microsoft Corporation) C:\Windows\System32\ieapfltr.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00452608 ____A (Microsoft Corporation) C:\Windows\System32\dxtmsft.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00448512 ____A (Microsoft Corporation) C:\Windows\System32\html.iec
2012-07-30 14:20 - 2012-07-30 14:20 - 00434176 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00403248 ____A (Microsoft Corporation) C:\Windows\System32\iedkcs32.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00367104 ____A (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2012-07-30 14:20 - 2012-07-30 14:20 - 00353792 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00353584 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00282112 ____A (Microsoft Corporation) C:\Windows\System32\dxtrans.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00267776 ____A (Microsoft Corporation) C:\Windows\System32\ieaksie.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00249344 ____A (Microsoft Corporation) C:\Windows\System32\webcheck.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00227840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieaksie.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00223232 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00222208 ____A (Microsoft Corporation) C:\Windows\System32\msls31.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00203776 ____A (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00197120 ____A (Microsoft Corporation) C:\Windows\System32\msrating.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00165888 ____A (Microsoft Corporation) C:\Windows\System32\iexpress.exe
2012-07-30 14:20 - 2012-07-30 14:20 - 00163840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieakui.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00163840 ____A (Microsoft Corporation) C:\Windows\System32\ieakui.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00162304 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00161792 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00160256 ____A (Microsoft Corporation) C:\Windows\System32\wextract.exe
2012-07-30 14:20 - 2012-07-30 14:20 - 00160256 ____A (Microsoft Corporation) C:\Windows\System32\ieakeng.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00152064 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2012-07-30 14:20 - 2012-07-30 14:20 - 00150528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2012-07-30 14:20 - 2012-07-30 14:20 - 00149504 ____A (Microsoft Corporation) C:\Windows\System32\occache.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00145920 ____A (Microsoft Corporation) C:\Windows\System32\iepeers.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00135168 ____A (Microsoft Corporation) C:\Windows\System32\IEAdvpack.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00130560 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieakeng.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00123392 ____A (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00118784 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00114176 ____A (Microsoft Corporation) C:\Windows\System32\admparse.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00111616 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00110592 ____A (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00103936 ____A (Microsoft Corporation) C:\Windows\System32\inseng.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00101888 ____A (Microsoft Corporation) C:\Windows\SysWOW64\admparse.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00091648 ____A (Microsoft Corporation) C:\Windows\System32\SetIEInstalledDate.exe
2012-07-30 14:20 - 2012-07-30 14:20 - 00089088 ____A (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe
2012-07-30 14:20 - 2012-07-30 14:20 - 00089088 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe
2012-07-30 14:20 - 2012-07-30 14:20 - 00086528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00082432 ____A (Microsoft Corporation) C:\Windows\System32\icardie.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00078848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00076800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2012-07-30 14:20 - 2012-07-30 14:20 - 00076800 ____A (Microsoft Corporation) C:\Windows\System32\tdc.ocx
2012-07-30 14:20 - 2012-07-30 14:20 - 00074752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2012-07-30 14:20 - 2012-07-30 14:20 - 00074752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00074240 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ie4uinit.exe
2012-07-30 14:20 - 2012-07-30 14:20 - 00066048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00065024 ____A (Microsoft Corporation) C:\Windows\System32\pngfilt.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00063488 ____A (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2012-07-30 14:20 - 2012-07-30 14:20 - 00055296 ____A (Microsoft Corporation) C:\Windows\System32\msfeedsbs.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00054272 ____A (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00049664 ____A (Microsoft Corporation) C:\Windows\System32\imgutil.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00048640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00048640 ____A (Microsoft Corporation) C:\Windows\System32\mshtmler.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00041472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00035840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00031744 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\licmgr10.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00023552 ____A (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00012288 ____A (Microsoft Corporation) C:\Windows\System32\mshta.exe
2012-07-30 14:20 - 2012-07-30 14:20 - 00011776 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2012-07-30 14:20 - 2012-07-30 14:20 - 00010752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2012-07-30 14:20 - 2012-07-30 14:20 - 00010752 ____A (Microsoft Corporation) C:\Windows\System32\msfeedssync.exe
2012-07-30 14:20 - 2012-07-30 14:18 - 00004039 ____A C:\Windows\IE9_main.log
2012-07-30 11:14 - 2012-07-30 11:14 - 02427820 ____A (Ilan Shemes ) C:\Users\Dani\Downloads\GrabIt172b6.exe
2012-07-30 09:36 - 2012-07-30 09:36 - 04119086 ____A C:\Users\Dani\Downloads\iiyama_drivers.zip
2012-07-30 09:16 - 2012-07-30 09:14 - 197137246 ____A C:\Users\Dani\Downloads\nv_vw64_285_62_vga.zip
2012-07-30 09:10 - 2012-07-30 09:10 - 00045727 ____A C:\Users\Dani\Downloads\NV801MS.KK1.zip
2012-07-30 08:52 - 2012-07-30 08:52 - 09088473 ____A C:\Users\Dani\Downloads\LiveUpdate.zip
2012-07-30 08:30 - 2012-07-30 08:28 - 154383709 ____A C:\Users\Dani\Downloads\nv_vw32_285_62_vga.zip
2012-07-30 08:25 - 2012-07-30 08:25 - 16814136 ____A (Mozilla) C:\Users\Dani\Downloads\Firefox Setup 14.0.1.exe
2012-07-30 08:15 - 2012-07-30 08:14 - 03879808 ____A (AVG Technologies) C:\Users\Dani\Downloads\avg_avc_stb_all_2012_2197.exe
2012-07-30 08:09 - 2012-07-30 08:09 - 00000020 ___SH C:\Users\Dani\ntuser.ini
ZeroAccess:
C:\Windows\Installer\{8224f814-3f2f-a9f4-8db6-56ca902c0f98}
C:\Windows\Installer\{8224f814-3f2f-a9f4-8db6-56ca902c0f98}\@
C:\Windows\Installer\{8224f814-3f2f-a9f4-8db6-56ca902c0f98}\L
C:\Windows\Installer\{8224f814-3f2f-a9f4-8db6-56ca902c0f98}\U
C:\Windows\Installer\{8224f814-3f2f-a9f4-8db6-56ca902c0f98}\U\00000008.@
C:\Windows\Installer\{8224f814-3f2f-a9f4-8db6-56ca902c0f98}\U\000000cb.@
C:\Windows\Installer\{8224f814-3f2f-a9f4-8db6-56ca902c0f98}\U\80000064.@
ZeroAccess:
C:\Windows\assembly\GAC_32\Desktop.ini
ZeroAccess:
C:\Windows\assembly\GAC_64\Desktop.ini
==================== Known DLLs (Whitelisted) =================
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe 50BEA589F7D7958BDD2528A8F69D05CC ZeroAccess <==== ATTENTION!.
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
==================== EXE ASSOCIATION =====================
HKLM\...\.exe: exefile => OK
HKLM\...\exefile\DefaultIcon: %1 => OK
HKLM\...\exefile\open\command: "%1" %* => OK
==================== Restore Points =========================
Restore point made on: 2012-10-03 10:53:42
Restore point made on: 2012-10-07 23:20:53
Restore point made on: 2012-10-10 10:14:38
Restore point made on: 2012-10-14 07:53:24
Restore point made on: 2012-10-14 10:55:24
==================== Memory info ===========================
Percentage of memory in use: 6%
Total physical RAM: 20471.08 MB
Available physical RAM: 19136.29 MB
Total Pagefile: 20469.23 MB
Available Pagefile: 19130.14 MB
Total Virtual: 8192 MB
Available Virtual: 8191.9 MB
==================== Partitions =============================
1 Drive c: () (Fixed) (Total:931.42 GB) (Free:205.66 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
2 Drive d: (2x1tb) (Fixed) (Total:1863.02 GB) (Free:626.46 GB) NTFS
3 Drive e: (dani 3) (Fixed) (Total:465.76 GB) (Free:46.55 GB) NTFS ==>[System with boot components (obtained from reading drive)]
5 Drive g: (GRMCPRXFREO_EN_DVD) (CDROM) (Total:3 GB) (Free:0 GB) UDF
6 Drive h: (CRUNZER32GB) (Removable) (Total:29.81 GB) (Free:29.81 GB) FAT32
7 Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS
Disk ### Status Size Free Dyn Gpt
-------- ------------- ------- ------- --- ---
Disk 0 Online 931 GB 100 MB
Disk 1 Online 1863 GB 1024 KB
Disk 2 Online 465 GB 0 B
Disk 3 Online 29 GB 0 B
Partitions of Disk 0:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 931 GB 101 MB
==================================================================================
Disk: 0
Partition 1
Type : 07
Hidden: No
Active: Yes
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 2 C NTFS Partition 931 GB Healthy
=========================================================
Partitions of Disk 1:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 1863 GB 1024 KB
==================================================================================
Disk: 1
Partition 1
Type : 07
Hidden: No
Active: No
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 3 D 2x1tb NTFS Partition 1863 GB Healthy
=========================================================
Partitions of Disk 2:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 465 GB 1024 KB
==================================================================================
Disk: 2
Partition 1
Type : 07
Hidden: No
Active: Yes
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 4 E dani 3 NTFS Partition 465 GB Healthy
=========================================================
Partitions of Disk 3:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 29 GB 32 KB
==================================================================================
Disk: 3
Partition 1
Type : 0C
Hidden: No
Active: Yes
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 5 H CRUNZER32GB FAT32 Removable 29 GB Healthy
=========================================================
Last Boot: 2012-10-16 05:36
==================== End Of Log =============================
FRST64 search.txt
Farbar Recovery Scan Tool (x64) Version: 16-10-2012
Ran by SYSTEM at 2012-10-17 18:58:35
Running from H:\
================== Search: "services.exe" ===================
C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe
[2009-07-13 15:19] - [2009-07-13 17:39] - 0328704 ____A (Microsoft Corporation) 24ACB7E5BE595468E3B9AA488B9B4FCB
C:\Windows\System32\services.exe
[2009-07-13 15:19] - [2009-07-13 17:39] - 0329216 ____A (Microsoft Corporation) 50BEA589F7D7958BDD2528A8F69D05CC
====== End Of Search ======
I got my system infected with the win64/patched.a virus. The file it attacked was the services.exe. Unfortunately my AVG was unable to remove it since it is a system file.
I searched on the forum and found another guy who had the same virus, and someone helped him to solve it. I tried to follow the instructions and fix my problem but since I cannot read the FRST and ComboFix logs I would like to post them here for someone to check them and tell me if I successfully removed that awful virus from my system.
What i did was:
1. I restarted and with F8 I ran System Recover.
2. I ran FRST64 and created two logs; frst.txt and search.txt
( i searched for services.exe)
3. I disabled AVG and ran ComboFix.
FRST.TXT Log
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 16-10-2012
Ran by SYSTEM at 17-10-2012 18:56:39
Running from H:\
Windows 7 Professional (X64) OS Language: English(US)
The current controlset is ControlSet001
==================== Registry (Whitelisted) ===================
HKLM\...\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s [12503184 2012-06-11] (Realtek Semiconductor)
HKLM\...\Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices [112512 2010-03-13] (Microsoft Corporation)
HKLM\...\Run: [OODefragTray] C:\Program Files\OO Software\Defrag\oodtray.exe [7060848 2012-09-14] (O&O Software GmbH)
HKLM\...\Run: [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [446392 2012-04-03] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [vProt] "C:\Program Files (x86)\AVG Secure Search\vprot.exe" [947808 2012-09-13] ()
HKLM-x32\...\Run: [Live Update 5] C:\Program Files (x86)\MSI\Live Update 5\BootStartLiveupdate.exe /reminder [315392 2012-01-30] ()
HKLM-x32\...\Run: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2013\avgui.exe" /TRAYONLY [3116152 2012-10-10] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [ROC_ROC_NT] "C:\Program Files (x86)\AVG Secure Search\ROC_ROC_NT.exe" / /PROMPT /CMPID=ROC_NT [856160 2012-09-13] ()
HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [919008 2012-07-27] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] [x]
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe" [36760 2011-09-05] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe" [2904984 2011-09-05] (Adobe Systems Inc.)
HKLM-x32\...\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59240 2012-02-20] (Apple Inc.)
HKU\Dani\...\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [17418928 2012-07-13] (Skype Technologies S.A.)
HKU\Dani\...\Run: [Steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent [1353080 2012-09-05] (Valve Corporation)
HKU\Dani\...\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [3671904 2012-08-28] (DT Soft Ltd)
HKU\Dani\...\Run: [AdobeBridge] [x]
HKU\Dani\...\Run: [Raptr] C:\PROGRA~2\Raptr\raptrstub.exe --startup [53160 2012-02-07] (Raptr, Inc)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Startup: C:\Users\All Users\Start Menu\Programs\Startup\O&O Defrag Tray.lnk
ShortcutTarget: O&O Defrag Tray.lnk -> C:\Windows\Installer\{07D8F982-2B93-4805-B15D-7569023A394D}\DefragIcon.exe (No File)
==================== Services (Whitelisted) ===================
2 AVGIDSAgent; "C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe" [5783672 2012-10-01] (AVG Technologies CZ, s.r.o.)
2 avgwd; "C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe" [193568 2012-10-01] (AVG Technologies CZ, s.r.o.)
2 OODefragAgent; "C:\Program Files\OO Software\Defrag\oodag.exe" [2552176 2012-09-14] (O&O Software GmbH)
2 vToolbarUpdater12.2.6; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\12.2.6\ToolbarUpdater.exe [722528 2012-09-13] ()
3 wampmysqld; C:\wamp\bin\mysql\mysql5.5.24\bin\mysqld.exe wampmysqld [9693696 2012-04-19] ()
==================== Drivers (Whitelisted) =====================
1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [151904 2012-09-12] (AVG Technologies CZ, s.r.o. )
0 AVGIDSHA; C:\Windows\System32\Drivers\AVGIDSHA.sys [61792 2012-09-20] (AVG Technologies CZ, s.r.o. )
1 Avgldx64; C:\Windows\System32\Drivers\Avgldx64.sys [185696 2012-10-01] (AVG Technologies CZ, s.r.o.)
0 Avgloga; C:\Windows\System32\Drivers\Avgloga.sys [225120 2012-09-20] (AVG Technologies CZ, s.r.o.)
0 Avgmfx64; C:\Windows\System32\Drivers\Avgmfx64.sys [111456 2012-10-04] (AVG Technologies CZ, s.r.o.)
0 Avgrkx64; C:\Windows\System32\Drivers\Avgrkx64.sys [40800 2012-09-13] (AVG Technologies CZ, s.r.o.)
1 Avgtdia; C:\Windows\System32\Drivers\Avgtdia.sys [200032 2012-09-20] (AVG Technologies CZ, s.r.o.)
1 avgtp; \??\C:\Windows\system32\drivers\avgtpx64.sys [31080 2012-09-13] (AVG Technologies)
2 DgiVecp; C:\Windows\System32\Drivers\DgiVecp.sys [53816 2009-03-02] (Samsung Electronics Co., Ltd.)
1 dtsoftbus01; C:\Windows\System32\Drivers\dtsoftbus01.sys [283200 2012-10-07] (DT Soft Ltd)
3 MSI_MSIBIOS_010507; \??\C:\Program Files (x86)\MSI\Live Update 5\msibios64_100507.sys [33592 2010-05-10] (Your Corporation)
3 NTIOLib_1_0_4; \??\C:\Program Files (x86)\MSI\Live Update 5\NTIOLib_X64.sys [14136 2010-10-22] (MSI)
==================== NetSvcs (Whitelisted) ====================
==================== One Month Created Files and Folders ========
2012-10-17 18:56 - 2012-10-17 18:56 - 00000000 ____D C:\FRST
2012-10-17 08:25 - 2012-10-17 08:25 - 07135925 ____A C:\Users\Dani\Downloads\EasyUploader.rar
2012-10-17 08:25 - 2012-10-17 08:25 - 00000000 ____D C:\Users\Dani\Downloads\EasyUploader
2012-10-17 08:12 - 2012-10-17 08:12 - 00694287 ____A (Farbar) C:\Users\Dani\Downloads\FSS.exe
2012-10-17 08:12 - 2012-10-17 08:12 - 00004335 ____A C:\Users\Dani\Downloads\FSS.txt
2012-10-17 08:03 - 2012-10-17 08:53 - 00000000 ____D C:\Users\Dani\Downloads\cports-x64
2012-10-17 08:03 - 2012-10-17 08:03 - 00089867 ____A C:\Users\Dani\Downloads\cports-x64.zip
2012-10-16 17:03 - 2012-10-16 17:03 - 00000000 ____D C:\Users\Dani\Downloads\mymc-alpha-2.6
2012-10-16 17:02 - 2012-10-16 17:03 - 04710029 ____A C:\Users\Dani\Downloads\mymc-alpha-2.6.zip
2012-10-16 14:48 - 2012-10-16 14:48 - 00000000 ____D C:\Users\Dani\Downloads\Playstation-2-Bios-Pack
2012-10-16 14:47 - 2012-10-16 14:47 - 00000000 ____D C:\Users\Dani\Documents\PCSX2
2012-10-16 13:13 - 2012-10-16 14:49 - 00000000 ____D C:\Program Files (x86)\PCSX2 1.0.0
2012-10-16 13:13 - 2012-10-16 13:13 - 00001985 ____A C:\Users\Public\Desktop\PCSX2 1.0.0 (r5350).lnk
2012-10-16 13:12 - 2012-10-16 13:14 - 10031422 ____A C:\Users\Dani\Downloads\Playstation-2-Bios-Pack.7z
2012-10-16 13:10 - 2012-10-16 13:12 - 08945660 ____A C:\Users\Dani\Downloads\pcsx2-1.0.0-r5350-setup.exe
2012-10-16 13:03 - 2012-10-16 13:03 - 00710425 ____A C:\Users\Dani\Downloads\wwe smackdown vs raw 2011.par2.nzb
2012-10-16 13:01 - 2012-10-16 13:01 - 00000000 ____A C:\Users\Dani\Downloads\WWE Smackdown vs Raw 2010 PAL MULTI5 KuDoS.nzb
2012-10-16 08:23 - 2012-10-16 08:40 - 00000303 ____A C:\Users\Dani\Documents\java.html
2012-10-15 19:28 - 2012-10-15 19:28 - 33117850 ____A C:\Users\Dani\Downloads\Eclipse - Event System 2.3.zip
2012-10-15 19:28 - 2012-10-15 19:28 - 00000000 ____D C:\Users\Dani\Downloads\Eclipse - Event System 2.3
2012-10-15 12:03 - 2012-10-15 15:13 - 00001468 ____A C:\Users\Dani\Desktop\javascript2.html
2012-10-15 06:35 - 2012-10-15 13:37 - 00000484 ____A C:\Users\Dani\Desktop\javascript.html
2012-10-15 06:35 - 2012-10-15 06:35 - 00000690 ____A C:\Users\Dani\Desktop\javascript.php
2012-10-14 16:51 - 2012-10-17 06:49 - 00000000 ____D C:\Users\Dani\AppData\Roaming\Raptr
2012-10-14 16:51 - 2012-10-14 16:51 - 00001646 ____A C:\Users\Dani\Desktop\Raptr.lnk
2012-10-14 16:51 - 2012-10-14 16:51 - 00000000 ____D C:\Program Files (x86)\Raptr
2012-10-14 16:49 - 2012-10-16 17:23 - 00000000 ____D C:\Users\Dani\AppData\Roaming\Azureus
2012-10-14 16:49 - 2012-10-14 16:49 - 00000009 ____A C:\END
2012-10-14 16:49 - 2012-10-14 16:49 - 00000000 ____D C:\Users\Dani\.swt
2012-10-14 16:49 - 2012-10-14 16:49 - 00000000 ____D C:\Program Files (x86)\Vuze_Remote
2012-10-14 16:48 - 2012-10-14 16:48 - 00001848 ____A C:\Users\Public\Desktop\Vuze.lnk
2012-10-14 16:48 - 2012-10-14 16:48 - 00000000 ____D C:\Program Files (x86)\Vuze
2012-10-14 16:47 - 2012-10-14 16:47 - 07084496 ____A (Vuze Inc.) C:\Users\Dani\Downloads\Vuze_Installer.exe
2012-10-14 16:44 - 2012-10-14 16:44 - 00000000 ____D C:\Users\Dani\Downloads\Lynda.com - javascript Essential Training (2011)- VisionScaler
2012-10-14 15:33 - 2012-10-14 15:34 - 00000000 ____D C:\Users\Dani\Downloads\HTML5_Games-Creating_Fun_With_HTML5_CSS3_And_WebGL
2012-10-14 15:17 - 2012-10-14 16:07 - 00000000 ____D C:\Users\Dani\Downloads\Lynda.Com.HTML5.Video.Tutorials[HemZone]
2012-10-14 15:14 - 2012-10-14 15:15 - 00000000 ____D C:\Users\Dani\Downloads\The Essential Guide To HTML5 And CSS3 Web Design V413HAV
2012-10-14 13:47 - 2012-10-14 13:48 - 00062329 ____A C:\Users\Dani\Desktop\result.7z
2012-10-14 13:46 - 2012-10-14 13:46 - 02026144 ____A ( ) C:\Users\Dani\Downloads\AVG_Autoruns_en.exe
2012-10-14 13:38 - 2012-10-14 13:38 - 00000068 ____A C:\Users\Dani\Desktop\ref.txt
2012-10-14 12:36 - 2012-10-14 12:36 - 00000000 ____D C:\Users\Dani\AppData\Roaming\Apple Computer
2012-10-14 11:42 - 2012-10-14 11:42 - 00000000 ____D C:\Users\Dani\Downloads\avg_arl_ffi_all_120_120823a5226
2012-10-14 11:40 - 2012-10-14 11:41 - 98895466 ____A C:\Users\Dani\Downloads\avg_arl_ffi_all_120_120823a5226.rar
2012-10-14 11:38 - 2012-10-14 11:39 - 92121088 ____A C:\Users\Dani\Downloads\avg_arl_cdi_all_120_120823a5226.iso
2012-10-14 11:26 - 2012-10-14 11:26 - 00000000 ____D C:\Program Files (x86)\K-Lite Codec Pack
2012-10-14 11:26 - 2012-09-20 10:00 - 00112640 ____A C:\Windows\SysWOW64\ff_vfw.dll
2012-10-14 11:26 - 2012-07-01 14:15 - 04102656 ____A (x264vfw project) C:\Windows\SysWOW64\x264vfw.dll
2012-10-14 11:26 - 2012-06-09 09:21 - 00178688 ____A C:\Windows\SysWOW64\unrar.dll
2012-10-14 11:26 - 2011-12-21 09:14 - 00151552 ____A (fccHandler) C:\Windows\SysWOW64\ac3acm.acm
2012-10-14 11:26 - 2011-12-07 09:32 - 00216064 ____A ( ) C:\Windows\SysWOW64\lagarith.dll
2012-10-14 11:26 - 2011-06-24 06:44 - 00243200 ____A C:\Windows\SysWOW64\xvidvfw.dll
2012-10-14 11:26 - 2011-06-24 06:28 - 00650752 ____A C:\Windows\SysWOW64\xvidcore.dll
2012-10-14 11:26 - 2004-05-18 10:16 - 00039936 ____A (Disappearing Inc.) C:\Windows\SysWOW64\huffyuv.dll
2012-10-14 11:25 - 2012-10-14 11:25 - 25771406 ____A ( ) C:\Users\Dani\Downloads\K-Lite_Codec_Pack_930_Mega.exe
2012-10-14 11:17 - 2012-10-14 11:18 - 00000000 ____D C:\Users\Dani\Downloads\QT410 Keygen
2012-10-14 11:07 - 2012-10-14 11:07 - 00000000 ____D C:\Users\All Users\Apple Computer
2012-10-14 11:07 - 2012-10-14 11:07 - 00000000 ____D C:\Program Files (x86)\QT Lite
2012-10-14 11:07 - 2010-11-29 09:38 - 00180224 ____A (Apple Inc.) C:\Windows\SysWOW64\QTCF.dll
2012-10-14 11:07 - 2010-11-29 09:38 - 00094208 ____A (Apple Inc.) C:\Windows\SysWOW64\QuickTimeVR.qtx
2012-10-14 11:07 - 2010-11-29 09:38 - 00069632 ____A (Apple Inc.) C:\Windows\SysWOW64\QuickTime.qts
2012-10-14 11:05 - 2012-10-14 11:05 - 18136665 ____A ( ) C:\Users\Dani\Downloads\QT_Lite_410.exe
2012-10-14 10:57 - 2012-10-14 11:07 - 00000000 ____D C:\Users\Dani\AppData\Local\Apple Computer
2012-10-14 10:55 - 2012-10-14 10:55 - 00000000 ____D C:\Users\Dani\AppData\Local\Apple
2012-10-14 10:55 - 2012-10-14 10:55 - 00000000 ____D C:\Users\All Users\Apple
2012-10-14 10:55 - 2012-10-14 10:55 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2012-10-14 10:54 - 2012-10-14 10:54 - 39483256 ____A (Apple Inc.) C:\Users\Dani\Downloads\QuickTimeInstaller.exe
2012-10-14 10:44 - 2012-10-14 10:46 - 00000000 ____D C:\Users\Dani\AppData\Roaming\Unity
2012-10-14 10:43 - 2012-10-14 10:43 - 00000000 ____D C:\Users\Dani\AppData\Roaming\PACE Anti-Piracy
2012-10-14 10:43 - 2012-10-14 10:43 - 00000000 ____D C:\Users\Dani\AppData\Local\PACE Anti-Piracy
2012-10-14 10:43 - 2012-10-14 10:43 - 00000000 ____D C:\Users\All Users\PACE Anti-Piracy
2012-10-14 10:36 - 2012-10-14 10:36 - 00001120 ____A C:\Users\Public\Desktop\Unity.lnk
2012-10-14 10:36 - 2012-10-14 10:36 - 00000000 ____D C:\Users\Public\Documents\Unity Projects
2012-10-14 10:35 - 2012-10-14 10:36 - 00000000 ____D C:\Program Files (x86)\Unity
2012-10-14 10:02 - 2012-10-14 12:35 - 00000000 ____D C:\Users\Dani\AppData\Local\Unity
2012-10-14 10:02 - 2012-10-14 10:02 - 00591224 ____A (Unity Technologies ApS) C:\Users\Dani\Downloads\UnityWebPlayer.exe
2012-10-14 09:52 - 2012-10-14 10:20 - 530663312 ____A (Unity Technologies ApS) C:\Users\Dani\Downloads\UnitySetup-3.5.6.exe
2012-10-14 08:04 - 2012-10-16 12:13 - 00000000 ____D C:\Users\Dani\Documents\FIFA 13
2012-10-14 07:48 - 2012-10-14 07:48 - 00000000 ____D C:\Users\Dani\Desktop\New folder
2012-10-14 07:48 - 2012-10-14 07:48 - 00000000 ____D C:\Games
2012-10-14 03:17 - 2012-10-14 03:20 - 00000000 ____D C:\Users\Dani\Desktop\Mama
2012-10-13 14:34 - 2012-10-13 14:35 - 00019968 __ASH C:\Users\Dani\Thumbs.db
2012-10-13 12:08 - 2012-10-13 12:08 - 01137936 ____A C:\Users\Dani\Downloads\Win7Themes_Downloader(1).exe
2012-10-13 12:05 - 2012-10-16 12:05 - 00000000 ____D C:\Program Files (x86)\DealPly
2012-10-13 12:05 - 2012-10-13 12:04 - 20311097 ____A C:\Users\Dani\Downloads\949f383d02d0ea8eeb0ee9a76e7058a4.7z
2012-10-13 12:04 - 2012-10-13 12:04 - 01137936 ____A C:\Users\Dani\Downloads\Win7Themes_Downloader.exe
2012-10-12 16:20 - 2012-10-12 16:20 - 00000000 ____D C:\Users\Dani\Downloads\leaves_brushes_mega_pack_by_hawksmont
2012-10-12 16:19 - 2012-10-12 16:19 - 00422559 ____A C:\Users\Dani\Downloads\leaves_brushes_mega_pack_by_hawksmont.zip
2012-10-12 06:01 - 2012-10-12 06:01 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2012-10-10 01:27 - 2012-10-10 01:28 - 00000895 ____A C:\Users\Dani\Documents\mysql_resource_update.php
2012-10-10 01:14 - 2012-10-10 01:19 - 00000292 ____A C:\Users\Dani\Documents\connect.php
2012-10-10 01:12 - 2012-10-10 01:12 - 00001315 ____A C:\Users\Dani\Downloads\spqr.sql
2012-10-09 21:19 - 2012-09-14 11:19 - 00002048 ____A (Microsoft Corporation) C:\Windows\System32\tzres.dll
2012-10-09 21:19 - 2012-09-14 10:28 - 00002048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2012-10-09 21:19 - 2012-08-31 10:19 - 01659760 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ntfs.sys
2012-10-09 21:19 - 2012-08-30 10:03 - 05559664 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2012-10-09 21:19 - 2012-08-30 09:12 - 03968880 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2012-10-09 21:19 - 2012-08-30 09:12 - 03914096 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2012-10-09 21:19 - 2012-08-24 10:05 - 00220160 ____A (Microsoft Corporation) C:\Windows\System32\wintrust.dll
2012-10-09 21:19 - 2012-08-24 08:57 - 00172544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2012-10-09 21:19 - 2012-08-20 10:48 - 01162240 ____A (Microsoft Corporation) C:\Windows\System32\kernel32.dll
2012-10-09 21:19 - 2012-08-20 10:48 - 00424448 ____A (Microsoft Corporation) C:\Windows\System32\KernelBase.dll
2012-10-09 21:19 - 2012-08-20 10:48 - 00362496 ____A (Microsoft Corporation) C:\Windows\System32\wow64win.dll
2012-10-09 21:19 - 2012-08-20 10:48 - 00243200 ____A (Microsoft Corporation) C:\Windows\System32\wow64.dll
2012-10-09 21:19 - 2012-08-20 10:48 - 00215040 ____A (Microsoft Corporation) C:\Windows\System32\winsrv.dll
2012-10-09 21:19 - 2012-08-20 10:48 - 00016384 ____A (Microsoft Corporation) C:\Windows\System32\ntvdm64.dll
2012-10-09 21:19 - 2012-08-20 10:48 - 00013312 ____A (Microsoft Corporation) C:\Windows\System32\wow64cpu.dll
2012-10-09 21:19 - 2012-08-20 10:46 - 00338432 ____A (Microsoft Corporation) C:\Windows\System32\conhost.exe
2012-10-09 21:19 - 2012-08-20 10:38 - 00006144 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00005120 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00004608 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00004608 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 10:38 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:40 - 00014336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2012-10-09 21:19 - 2012-08-20 09:38 - 00025600 ____A (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2012-10-09 21:19 - 2012-08-20 09:37 - 01114112 ____A (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2012-10-09 21:19 - 2012-08-20 09:37 - 00274944 ____A (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2012-10-09 21:19 - 2012-08-20 09:37 - 00005120 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00005120 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00004608 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 09:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 07:38 - 00007680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2012-10-09 21:19 - 2012-08-20 07:38 - 00002048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2012-10-09 21:19 - 2012-08-20 07:33 - 00006144 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 07:33 - 00004608 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 07:33 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2012-10-09 21:19 - 2012-08-20 07:33 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2012-10-09 21:19 - 2012-08-10 16:56 - 00715776 ____A (Microsoft Corporation) C:\Windows\System32\kerberos.dll
2012-10-09 21:19 - 2012-08-10 15:56 - 00542208 ____A (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2012-10-09 21:19 - 2012-06-01 21:41 - 01464320 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll
2012-10-09 21:19 - 2012-06-01 21:41 - 00184320 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll
2012-10-09 21:19 - 2012-06-01 21:41 - 00140288 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll
2012-10-09 21:19 - 2012-06-01 20:36 - 01159680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2012-10-09 21:19 - 2012-06-01 20:36 - 00140288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2012-10-09 21:19 - 2012-06-01 20:36 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2012-10-08 22:49 - 2012-10-08 23:02 - 00000000 ____D C:\Users\Dani\Downloads\Lynda.com.CSS.For.Designers.DVD
2012-10-08 22:33 - 2012-10-08 22:35 - 00000000 ____D C:\Users\Dani\Downloads\Lynda.com - CSS Fundamentals
2012-10-08 01:57 - 2012-10-08 01:57 - 00000000 ____D C:\Users\Dani\Documents\Aurora3D
2012-10-08 01:49 - 2012-10-08 01:49 - 00000000 ____D C:\Users\Dani\AppData\Local\Maker3D
2012-10-08 01:49 - 2012-10-08 01:49 - 00000000 ____D C:\Users\Dani\AppData\Local\Configure
2012-10-08 01:47 - 2012-10-08 01:47 - 00000000 ____D C:\Program Files (x86)\Aurora3D
2012-10-08 01:47 - 2011-04-10 01:22 - 00667648 ____A (Optima SC Inc.) C:\Windows\SysWOW64\vp8vfw.dll
2012-10-08 00:10 - 2012-10-08 22:26 - 00000000 ____D C:\Users\All Users\regid.1986-12.com.adobe
2012-10-08 00:00 - 2012-10-08 00:00 - 00000000 ____D C:\Users\All Users\ALM
2012-10-07 23:57 - 2012-10-07 23:57 - 00000000 ____D C:\Users\Dani\Adobe Flash Builder 4.6
2012-10-07 23:49 - 2012-10-07 23:49 - 00000000 ____D C:\Program Files (x86)\My Company Name
2012-10-07 23:49 - 2011-11-02 17:01 - 00056208 ____N (Rovi Corporation) C:\Windows\System32\Drivers\PxHlpa64.sys
2012-10-07 23:49 - 2011-10-16 17:00 - 00010224 ____N (Sonic Solutions) C:\Windows\System32\Drivers\cdralw2k.sys
2012-10-07 23:49 - 2011-10-16 17:00 - 00010224 ____N (Sonic Solutions) C:\Windows\System32\Drivers\cdr4_xp.sys
2012-10-07 23:47 - 2012-10-07 23:47 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2012-10-07 23:47 - 2012-10-07 23:47 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2012-10-07 23:44 - 2012-10-08 00:03 - 00000000 ____D C:\Program Files\Common Files\Adobe
2012-10-07 23:44 - 2012-10-08 00:03 - 00000000 ____D C:\Program Files\Adobe
2012-10-07 23:20 - 2012-10-07 23:21 - 00000000 ____D C:\Users\Dani\AppData\Roaming\DAEMON Tools Lite
2012-10-07 23:20 - 2012-10-07 23:21 - 00000000 ____D C:\Users\All Users\DAEMON Tools Lite
2012-10-07 23:20 - 2012-10-07 23:20 - 00283200 ____A (DT Soft Ltd) C:\Windows\System32\Drivers\dtsoftbus01.sys
2012-10-07 23:20 - 2012-10-07 23:20 - 00000000 ____D C:\Program Files (x86)\DAEMON Tools Lite
2012-10-07 23:19 - 2012-10-07 23:20 - 14294360 ____A (DT Soft Ltd) C:\Users\Dani\Downloads\DTLite4454-0316.exe
2012-10-06 21:46 - 2012-10-06 21:46 - 00889856 ____A C:\Users\Dani\Documents\2 1_Change-Management_(1)_2012-2013(bb) Individual change.ppt
2012-10-06 06:34 - 2012-10-07 09:20 - 00141747 ____H C:\Users\Dani\Documents\~WRL0212.tmp
2012-10-04 17:26 - 2012-10-04 17:26 - 00111456 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgmfx64.sys
2012-10-01 20:28 - 2012-10-01 20:32 - 00000000 ____D C:\Users\Dani\AppData\Roaming\Audacity
2012-10-01 20:28 - 2012-10-01 20:28 - 00000000 ____D C:\Program Files (x86)\Audacity
2012-10-01 20:27 - 2012-10-01 20:27 - 21415874 ____A (Audacity Team ) C:\Users\Dani\Downloads\audacity-win-2.0.2.exe
2012-10-01 17:30 - 2012-10-01 17:30 - 00185696 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgldx64.sys
2012-10-01 15:12 - 2012-10-17 07:42 - 00000000 ____D C:\wamp
2012-10-01 15:10 - 2012-10-01 15:10 - 31515243 ____A (Hervé Leclerc (HeL) ) C:\Users\Dani\Downloads\wampserver2.2e-php5.3.13-httpd2.2.22-mysql5.5.24-x64.exe
2012-10-01 15:08 - 2012-10-01 15:08 - 05673816 ____A (Microsoft Corporation) C:\Users\Dani\Downloads\vcredist_x64.exe
2012-10-01 15:06 - 2012-10-01 15:06 - 00001931 ____A C:\Users\Dani\Downloads\localhost.sql
2012-10-01 13:17 - 2012-10-01 13:17 - 00000193 ____A C:\Windows\WORDPAD.INI
2012-10-01 07:51 - 2012-10-01 07:51 - 00003391 ____A C:\Users\Dani\Documents\STATS.txt
2012-09-30 14:37 - 2012-09-30 14:38 - 04829350 ____A C:\Users\Dani\Documents\MOV09884.AVI
2012-09-30 13:08 - 2012-09-30 13:08 - 00001089 ____A C:\Users\Dani\Documents\Legionaries vs Principes (elite).txt
2012-09-29 21:36 - 2012-09-29 22:19 - 00000000 ____D C:\Users\Dani\AppData\Roaming\Notepad++
2012-09-29 21:36 - 2012-09-29 21:36 - 00000000 ____D C:\Program Files (x86)\Notepad++
2012-09-29 21:35 - 2012-09-29 21:36 - 05844269 ____A C:\Users\Dani\Downloads\npp.6.1.8.Installer.exe
2012-09-29 21:33 - 2012-09-29 21:43 - 00000000 ____D C:\Users\Dani\Downloads\Lynda.com.PHP.With.MySQL.Beyond.The.Basics.DVD
2012-09-29 21:22 - 2012-10-01 15:11 - 00000000 ____D C:\xampp
2012-09-29 20:51 - 2012-09-29 21:13 - 00000000 ____D C:\Users\Dani\Downloads\Lynda.com.PHP.With.MySQL.Essential.Training.DVD
2012-09-29 20:11 - 2012-09-29 20:13 - 95614089 ____A C:\Users\Dani\Downloads\xampp-win32-1.8.0-VC9-installer.exe
2012-09-29 16:17 - 2012-10-15 16:25 - 00000000 ____D C:\Users\Dani\AppData\Roaming\FileZilla
2012-09-29 16:17 - 2012-09-29 16:17 - 04518720 ____A (FileZilla Project) C:\Users\Dani\Downloads\FileZilla_3.5.3_win32-setup.exe
2012-09-29 16:17 - 2012-09-29 16:17 - 00000000 ____D C:\Program Files (x86)\FileZilla FTP Client
2012-09-29 16:16 - 2012-09-29 16:16 - 01620836 ____A (FileZilla Project) C:\Users\Dani\Downloads\FileZilla_Server-0_9_41.exe
2012-09-29 15:26 - 2012-09-29 15:26 - 00656438 ____A (Welcome to CC File ) C:\Users\Dani\Downloads\ccfilesetup.exe
2012-09-29 13:55 - 2012-09-29 13:55 - 00001234 ____A C:\Users\Dani\Documents\Legionaries vs Principes (Green).txt
2012-09-27 04:41 - 2012-10-17 06:26 - 00034452 ____A C:\Windows\System32\oodbs.lor
2012-09-26 11:55 - 2012-09-26 11:55 - 00000000 ____D C:\Users\Dani\Downloads\saint-row-the-third-nude-female
2012-09-26 11:53 - 2012-09-26 11:54 - 21950207 ____A C:\Users\Dani\Downloads\saint-row-the-third-nude-female.rar
2012-09-26 10:15 - 2012-09-26 11:21 - 00000000 ____D C:\Rene
2012-09-26 09:39 - 2012-09-26 09:39 - 00000000 ____D C:\Windows\System32\oodag
2012-09-26 09:37 - 2012-09-26 09:37 - 00000000 ____D C:\Users\Dani\AppData\Local\O&O
2012-09-26 09:36 - 2012-09-26 09:36 - 00000000 ____D C:\Users\All Users\OO Software
2012-09-26 09:36 - 2012-09-26 09:36 - 00000000 ____D C:\Program Files\OO Software
2012-09-26 08:39 - 2012-09-26 08:39 - 01483723 ____A C:\Users\Dani\Downloads\SystemCheck_enUS.exe
2012-09-26 08:36 - 2012-09-28 07:08 - 00000000 ____D C:\Program Files (x86)\Diablo III
2012-09-26 08:35 - 2012-09-26 08:35 - 40048216 ____A (Blizzard Entertainment) C:\Users\Dani\Downloads\Diablo-III-Setup-enGB.exe
2012-09-26 04:30 - 2012-08-21 13:01 - 00245760 ____A (Microsoft Corporation) C:\Windows\System32\OxpsConverter.exe
2012-09-24 15:41 - 2012-08-30 11:14 - 26228072 ____A (NVIDIA Corporation) C:\Windows\System32\nvoglv64.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 25256296 ____A (NVIDIA Corporation) C:\Windows\System32\nvcompiler.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 19828584 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 18229096 ____A (NVIDIA Corporation) C:\Windows\System32\nvd3dumx.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 17559912 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 15291752 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 13391720 ____A (NVIDIA Corporation) C:\Windows\System32\Drivers\nvlddmkm.sys
2012-09-24 15:41 - 2012-08-30 11:14 - 09066344 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuda.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 07626088 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 07397736 ____A (NVIDIA Corporation) C:\Windows\System32\nvopencl.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 06109032 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 02745192 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvid.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 02573672 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 02422120 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 02216808 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvenc.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 01866088 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 01482600 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispgenco64.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 00830312 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 00247144 ____A (NVIDIA Corporation) C:\Windows\System32\nvinitx.dll
2012-09-24 15:41 - 2012-08-30 11:14 - 00202600 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2012-09-24 15:41 - 2012-07-03 07:25 - 00189288 ____A (NVIDIA Corporation) C:\Windows\System32\Drivers\nvhda64v.sys
2012-09-24 15:41 - 2012-07-03 07:25 - 00031080 ____A (NVIDIA Corporation) C:\Windows\System32\nvhdap64.dll
2012-09-24 15:38 - 2012-09-24 15:40 - 183759160 ____A (NVIDIA Corporation) C:\Users\Dani\Downloads\306.23-desktop-win8-win7-winvista-64bit-english-whql.exe
2012-09-24 15:22 - 2012-09-24 15:22 - 00007628 ____A C:\Users\Dani\AppData\Local\Resmon.ResmonCfg
2012-09-23 08:33 - 2008-10-14 20:22 - 05631312 ____A (Microsoft Corporation) C:\Windows\System32\D3DX9_40.dll
2012-09-23 08:33 - 2008-10-14 20:22 - 04379984 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2012-09-23 08:33 - 2008-10-14 20:22 - 02605920 ____A (Microsoft Corporation) C:\Windows\System32\D3DCompiler_40.dll
2012-09-23 08:33 - 2008-10-14 20:22 - 02036576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2012-09-23 08:33 - 2008-10-14 20:22 - 00519000 ____A (Microsoft Corporation) C:\Windows\System32\d3dx10_40.dll
2012-09-23 08:33 - 2008-10-14 20:22 - 00452440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2012-09-22 14:44 - 2012-08-24 03:15 - 17810944 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2012-09-22 14:44 - 2012-08-24 02:39 - 10925568 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2012-09-22 14:44 - 2012-08-24 02:31 - 02312704 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2012-09-22 14:44 - 2012-08-24 02:22 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2012-09-22 14:44 - 2012-08-24 02:21 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2012-09-22 14:44 - 2012-08-24 02:20 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2012-09-22 14:44 - 2012-08-24 02:18 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2012-09-22 14:44 - 2012-08-24 02:17 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2012-09-22 14:44 - 2012-08-24 02:14 - 00816640 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2012-09-22 14:44 - 2012-08-24 02:14 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2012-09-22 14:44 - 2012-08-24 02:13 - 00599040 ____A (Microsoft Corporation) C:\Windows\System32\vbscript.dll
2012-09-22 14:44 - 2012-08-24 02:12 - 02144768 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2012-09-22 14:44 - 2012-08-24 02:11 - 00729088 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2012-09-22 14:44 - 2012-08-24 02:10 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2012-09-22 14:44 - 2012-08-24 02:09 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2012-09-22 14:44 - 2012-08-24 02:04 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2012-09-22 14:44 - 2012-08-23 23:27 - 12319744 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2012-09-22 14:44 - 2012-08-23 23:03 - 09738240 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2012-09-22 14:44 - 2012-08-23 22:59 - 01800704 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2012-09-22 14:44 - 2012-08-23 22:51 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2012-09-22 14:44 - 2012-08-23 22:51 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2012-09-22 14:44 - 2012-08-23 22:51 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2012-09-22 14:44 - 2012-08-23 22:49 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2012-09-22 14:44 - 2012-08-23 22:48 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2012-09-22 14:44 - 2012-08-23 22:47 - 00717824 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2012-09-22 14:44 - 2012-08-23 22:47 - 00420864 ____A (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2012-09-22 14:44 - 2012-08-23 22:47 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2012-09-22 14:44 - 2012-08-23 22:45 - 00607744 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2012-09-22 14:44 - 2012-08-23 22:44 - 01793024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2012-09-22 14:44 - 2012-08-23 22:44 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2012-09-22 14:44 - 2012-08-23 22:43 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2012-09-22 14:44 - 2012-08-23 22:40 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2012-09-21 13:09 - 2012-09-21 13:09 - 00318904 ____A (Microsoft Corporation) C:\Users\Dani\Downloads\wmpfirefoxplugin.exe
2012-09-21 00:30 - 2012-09-21 00:30 - 00000000 ____D C:\Users\Default\AppData\Roaming\TuneUp Software
2012-09-21 00:30 - 2012-09-21 00:30 - 00000000 ____D C:\Users\Default User\AppData\Roaming\TuneUp Software
2012-09-20 17:46 - 2012-09-20 17:46 - 00225120 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgloga.sys
2012-09-20 17:46 - 2012-09-20 17:46 - 00200032 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgtdia.sys
2012-09-20 17:45 - 2012-09-20 17:45 - 00061792 ____A (AVG Technologies CZ, s.r.o. ) C:\Windows\System32\Drivers\avgidsha.sys
2012-09-20 04:25 - 2012-09-20 04:25 - 00000000 ____D C:\Program Files (x86)\SAMSUNG
2012-09-20 04:25 - 2009-03-02 04:12 - 00053816 ____N (Samsung Electronics Co., Ltd.) C:\Windows\System32\Drivers\DGIVECP.SYS
2012-09-20 04:25 - 2009-03-02 04:12 - 00011576 ____N (Samsung Electronics) C:\Windows\System32\Drivers\SSPORT.SYS
2012-09-20 04:25 - 2006-12-03 15:26 - 00022016 ____A () C:\Windows\System32\SUGI1l6.DLL
2012-09-20 04:25 - 2006-11-21 01:40 - 00089600 ____A (SS) C:\Windows\System32\SUGI1ci.dll
2012-09-20 04:25 - 2006-11-19 22:22 - 00151552 ____A (SS) C:\Windows\System32\SUGI1ci.exe
2012-09-20 04:25 - 2006-10-17 02:08 - 00000411 ____A C:\Windows\System32\SUGI1l6.SMT
2012-09-20 04:24 - 2012-09-20 04:25 - 31498225 ____A (Samsung ) C:\Users\Dani\Downloads\CLX-3160.exe
==================== 3 Months Modified Files ==================
2012-10-17 08:54 - 2009-07-13 20:45 - 00014848 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2012-10-17 08:54 - 2009-07-13 20:45 - 00014848 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2012-10-17 08:53 - 2012-07-30 08:09 - 01524882 ____A C:\Windows\WindowsUpdate.log
2012-10-17 08:25 - 2012-10-17 08:25 - 07135925 ____A C:\Users\Dani\Downloads\EasyUploader.rar
2012-10-17 08:21 - 2012-08-15 20:40 - 00000830 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job
2012-10-17 08:12 - 2012-10-17 08:12 - 00694287 ____A (Farbar) C:\Users\Dani\Downloads\FSS.exe
2012-10-17 08:12 - 2012-10-17 08:12 - 00004335 ____A C:\Users\Dani\Downloads\FSS.txt
2012-10-17 08:03 - 2012-10-17 08:03 - 00089867 ____A C:\Users\Dani\Downloads\cports-x64.zip
2012-10-17 06:30 - 2009-07-13 21:13 - 00726316 ____A C:\Windows\System32\PerfStringBackup.INI
2012-10-17 06:26 - 2012-09-27 04:41 - 00034452 ____A C:\Windows\System32\oodbs.lor
2012-10-17 06:26 - 2012-08-06 03:54 - 00026448 ____A C:\Windows\PFRO.log
2012-10-17 06:26 - 2009-07-13 21:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2012-10-17 06:26 - 2009-07-13 20:51 - 00028938 ____A C:\Windows\setupact.log
2012-10-16 17:03 - 2012-10-16 17:02 - 04710029 ____A C:\Users\Dani\Downloads\mymc-alpha-2.6.zip
2012-10-16 13:14 - 2012-10-16 13:12 - 10031422 ____A C:\Users\Dani\Downloads\Playstation-2-Bios-Pack.7z
2012-10-16 13:13 - 2012-10-16 13:13 - 00001985 ____A C:\Users\Public\Desktop\PCSX2 1.0.0 (r5350).lnk
2012-10-16 13:12 - 2012-10-16 13:10 - 08945660 ____A C:\Users\Dani\Downloads\pcsx2-1.0.0-r5350-setup.exe
2012-10-16 13:03 - 2012-10-16 13:03 - 00710425 ____A C:\Users\Dani\Downloads\wwe smackdown vs raw 2011.par2.nzb
2012-10-16 13:01 - 2012-10-16 13:01 - 00000000 ____A C:\Users\Dani\Downloads\WWE Smackdown vs Raw 2010 PAL MULTI5 KuDoS.nzb
2012-10-16 08:40 - 2012-10-16 08:23 - 00000303 ____A C:\Users\Dani\Documents\java.html
2012-10-16 06:15 - 2012-07-30 10:07 - 00696760 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2012-10-16 06:15 - 2012-07-30 10:07 - 00073656 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2012-10-15 19:28 - 2012-10-15 19:28 - 33117850 ____A C:\Users\Dani\Downloads\Eclipse - Event System 2.3.zip
2012-10-15 15:13 - 2012-10-15 12:03 - 00001468 ____A C:\Users\Dani\Desktop\javascript2.html
2012-10-15 13:37 - 2012-10-15 06:35 - 00000484 ____A C:\Users\Dani\Desktop\javascript.html
2012-10-15 06:35 - 2012-10-15 06:35 - 00000690 ____A C:\Users\Dani\Desktop\javascript.php
2012-10-14 16:51 - 2012-10-14 16:51 - 00001646 ____A C:\Users\Dani\Desktop\Raptr.lnk
2012-10-14 16:49 - 2012-10-14 16:49 - 00000009 ____A C:\END
2012-10-14 16:48 - 2012-10-14 16:48 - 00001848 ____A C:\Users\Public\Desktop\Vuze.lnk
2012-10-14 16:47 - 2012-10-14 16:47 - 07084496 ____A (Vuze Inc.) C:\Users\Dani\Downloads\Vuze_Installer.exe
2012-10-14 13:48 - 2012-10-14 13:47 - 00062329 ____A C:\Users\Dani\Desktop\result.7z
2012-10-14 13:46 - 2012-10-14 13:46 - 02026144 ____A ( ) C:\Users\Dani\Downloads\AVG_Autoruns_en.exe
2012-10-14 13:38 - 2012-10-14 13:38 - 00000068 ____A C:\Users\Dani\Desktop\ref.txt
2012-10-14 11:41 - 2012-10-14 11:40 - 98895466 ____A C:\Users\Dani\Downloads\avg_arl_ffi_all_120_120823a5226.rar
2012-10-14 11:39 - 2012-10-14 11:38 - 92121088 ____A C:\Users\Dani\Downloads\avg_arl_cdi_all_120_120823a5226.iso
2012-10-14 11:25 - 2012-10-14 11:25 - 25771406 ____A ( ) C:\Users\Dani\Downloads\K-Lite_Codec_Pack_930_Mega.exe
2012-10-14 11:05 - 2012-10-14 11:05 - 18136665 ____A ( ) C:\Users\Dani\Downloads\QT_Lite_410.exe
2012-10-14 10:54 - 2012-10-14 10:54 - 39483256 ____A (Apple Inc.) C:\Users\Dani\Downloads\QuickTimeInstaller.exe
2012-10-14 10:36 - 2012-10-14 10:36 - 00001120 ____A C:\Users\Public\Desktop\Unity.lnk
2012-10-14 10:20 - 2012-10-14 09:52 - 530663312 ____A (Unity Technologies ApS) C:\Users\Dani\Downloads\UnitySetup-3.5.6.exe
2012-10-14 10:02 - 2012-10-14 10:02 - 00591224 ____A (Unity Technologies ApS) C:\Users\Dani\Downloads\UnityWebPlayer.exe
2012-10-14 07:54 - 2012-08-15 07:14 - 00095178 ____A C:\Windows\DirectX.log
2012-10-14 02:59 - 2009-07-13 21:08 - 00032632 ____A C:\Windows\Tasks\SCHEDLGU.TXT
2012-10-13 14:35 - 2012-10-13 14:34 - 00019968 __ASH C:\Users\Dani\Thumbs.db
2012-10-13 12:08 - 2012-10-13 12:08 - 01137936 ____A C:\Users\Dani\Downloads\Win7Themes_Downloader(1).exe
2012-10-13 12:04 - 2012-10-13 12:05 - 20311097 ____A C:\Users\Dani\Downloads\949f383d02d0ea8eeb0ee9a76e7058a4.7z
2012-10-13 12:04 - 2012-10-13 12:04 - 01137936 ____A C:\Users\Dani\Downloads\Win7Themes_Downloader.exe
2012-10-12 16:19 - 2012-10-12 16:19 - 00422559 ____A C:\Users\Dani\Downloads\leaves_brushes_mega_pack_by_hawksmont.zip
2012-10-10 01:28 - 2012-10-10 01:27 - 00000895 ____A C:\Users\Dani\Documents\mysql_resource_update.php
2012-10-10 01:19 - 2012-10-10 01:14 - 00000292 ____A C:\Users\Dani\Documents\connect.php
2012-10-10 01:12 - 2012-10-10 01:12 - 00001315 ____A C:\Users\Dani\Downloads\spqr.sql
2012-10-08 19:22 - 2009-07-13 20:45 - 05060536 ____A C:\Windows\System32\FNTCACHE.DAT
2012-10-08 01:48 - 2012-07-30 09:27 - 00126152 ____A C:\Users\Dani\AppData\Local\GDIPFONTCACHEV1.DAT
2012-10-07 23:20 - 2012-10-07 23:20 - 00283200 ____A (DT Soft Ltd) C:\Windows\System32\Drivers\dtsoftbus01.sys
2012-10-07 23:20 - 2012-10-07 23:19 - 14294360 ____A (DT Soft Ltd) C:\Users\Dani\Downloads\DTLite4454-0316.exe
2012-10-07 09:20 - 2012-10-06 06:34 - 00141747 ____H C:\Users\Dani\Documents\~WRL0212.tmp
2012-10-06 21:46 - 2012-10-06 21:46 - 00889856 ____A C:\Users\Dani\Documents\2 1_Change-Management_(1)_2012-2013(bb) Individual change.ppt
2012-10-04 17:26 - 2012-10-04 17:26 - 00111456 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgmfx64.sys
2012-10-01 20:27 - 2012-10-01 20:27 - 21415874 ____A (Audacity Team ) C:\Users\Dani\Downloads\audacity-win-2.0.2.exe
2012-10-01 17:30 - 2012-10-01 17:30 - 00185696 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgldx64.sys
2012-10-01 15:10 - 2012-10-01 15:10 - 31515243 ____A (Hervé Leclerc (HeL) ) C:\Users\Dani\Downloads\wampserver2.2e-php5.3.13-httpd2.2.22-mysql5.5.24-x64.exe
2012-10-01 15:08 - 2012-10-01 15:08 - 05673816 ____A (Microsoft Corporation) C:\Users\Dani\Downloads\vcredist_x64.exe
2012-10-01 15:06 - 2012-10-01 15:06 - 00001931 ____A C:\Users\Dani\Downloads\localhost.sql
2012-10-01 13:17 - 2012-10-01 13:17 - 00000193 ____A C:\Windows\WORDPAD.INI
2012-10-01 07:51 - 2012-10-01 07:51 - 00003391 ____A C:\Users\Dani\Documents\STATS.txt
2012-09-30 14:38 - 2012-09-30 14:37 - 04829350 ____A C:\Users\Dani\Documents\MOV09884.AVI
2012-09-30 13:08 - 2012-09-30 13:08 - 00001089 ____A C:\Users\Dani\Documents\Legionaries vs Principes (elite).txt
2012-09-29 21:36 - 2012-09-29 21:35 - 05844269 ____A C:\Users\Dani\Downloads\npp.6.1.8.Installer.exe
2012-09-29 20:13 - 2012-09-29 20:11 - 95614089 ____A C:\Users\Dani\Downloads\xampp-win32-1.8.0-VC9-installer.exe
2012-09-29 16:17 - 2012-09-29 16:17 - 04518720 ____A (FileZilla Project) C:\Users\Dani\Downloads\FileZilla_3.5.3_win32-setup.exe
2012-09-29 16:16 - 2012-09-29 16:16 - 01620836 ____A (FileZilla Project) C:\Users\Dani\Downloads\FileZilla_Server-0_9_41.exe
2012-09-29 15:26 - 2012-09-29 15:26 - 00656438 ____A (Welcome to CC File ) C:\Users\Dani\Downloads\ccfilesetup.exe
2012-09-29 13:55 - 2012-09-29 13:55 - 00001234 ____A C:\Users\Dani\Documents\Legionaries vs Principes (Green).txt
2012-09-26 11:54 - 2012-09-26 11:53 - 21950207 ____A C:\Users\Dani\Downloads\saint-row-the-third-nude-female.rar
2012-09-26 08:39 - 2012-09-26 08:39 - 01483723 ____A C:\Users\Dani\Downloads\SystemCheck_enUS.exe
2012-09-26 08:35 - 2012-09-26 08:35 - 40048216 ____A (Blizzard Entertainment) C:\Users\Dani\Downloads\Diablo-III-Setup-enGB.exe
2012-09-24 15:40 - 2012-09-24 15:38 - 183759160 ____A (NVIDIA Corporation) C:\Users\Dani\Downloads\306.23-desktop-win8-win7-winvista-64bit-english-whql.exe
2012-09-24 15:22 - 2012-09-24 15:22 - 00007628 ____A C:\Users\Dani\AppData\Local\Resmon.ResmonCfg
2012-09-21 13:09 - 2012-09-21 13:09 - 00318904 ____A (Microsoft Corporation) C:\Users\Dani\Downloads\wmpfirefoxplugin.exe
2012-09-20 17:46 - 2012-09-20 17:46 - 00225120 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgloga.sys
2012-09-20 17:46 - 2012-09-20 17:46 - 00200032 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgtdia.sys
2012-09-20 17:45 - 2012-09-20 17:45 - 00061792 ____A (AVG Technologies CZ, s.r.o. ) C:\Windows\System32\Drivers\avgidsha.sys
2012-09-20 10:00 - 2012-10-14 11:26 - 00112640 ____A C:\Windows\SysWOW64\ff_vfw.dll
2012-09-20 04:25 - 2012-09-20 04:24 - 31498225 ____A (Samsung ) C:\Users\Dani\Downloads\CLX-3160.exe
2012-09-14 11:19 - 2012-10-09 21:19 - 00002048 ____A (Microsoft Corporation) C:\Windows\System32\tzres.dll
2012-09-14 10:28 - 2012-10-09 21:19 - 00002048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2012-09-14 08:43 - 2012-09-14 08:43 - 04873072 ____A (O&O Software GmbH) C:\Windows\System32\ooscrsav.scr
2012-09-14 08:43 - 2012-09-14 08:43 - 00537456 ____A (O&O Software GmbH) C:\Windows\System32\oodssrs.dll
2012-09-14 08:43 - 2012-09-14 08:43 - 00256368 ____A (O&O Software GmbH) C:\Windows\System32\oodbs.exe
2012-09-14 08:43 - 2012-09-14 08:43 - 00010096 ____A (O&O Software GmbH) C:\Windows\System32\oodbsrs.dll
2012-09-13 17:05 - 2012-09-13 17:05 - 00040800 ____A (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgrkx64.sys
2012-09-13 05:46 - 2012-07-30 08:21 - 00031080 ____A (AVG Technologies) C:\Windows\System32\Drivers\avgtpx64.sys
2012-09-12 17:11 - 2012-09-12 17:11 - 00151904 ____A (AVG Technologies CZ, s.r.o. ) C:\Windows\System32\Drivers\avgidsdrivera.sys
2012-09-08 13:28 - 2012-09-08 13:28 - 00231614 ____A C:\Users\Dani\Documents\auxilia samples.rar
2012-09-05 07:18 - 2012-09-05 07:18 - 01606656 ____A C:\Users\Dani\Downloads\SteamInstall.msi
2012-09-04 08:13 - 2012-09-04 08:12 - 09798626 ____A C:\Users\Dani\Downloads\98756165H.rar
2012-09-04 07:54 - 2012-09-04 07:53 - 05893607 ____A C:\Users\Dani\Downloads\sr-hsccf.7z
2012-08-31 10:19 - 2012-10-09 21:19 - 01659760 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ntfs.sys
2012-08-30 11:14 - 2012-09-24 15:41 - 26228072 ____A (NVIDIA Corporation) C:\Windows\System32\nvoglv64.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 25256296 ____A (NVIDIA Corporation) C:\Windows\System32\nvcompiler.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 19828584 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 18229096 ____A (NVIDIA Corporation) C:\Windows\System32\nvd3dumx.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 17559912 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 15291752 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 13391720 ____A (NVIDIA Corporation) C:\Windows\System32\Drivers\nvlddmkm.sys
2012-08-30 11:14 - 2012-09-24 15:41 - 09066344 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuda.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 07626088 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 07397736 ____A (NVIDIA Corporation) C:\Windows\System32\nvopencl.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 06109032 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 02745192 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvid.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 02573672 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 02422120 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 02216808 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvenc.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 01866088 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 01482600 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispgenco64.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 00830312 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 00247144 ____A (NVIDIA Corporation) C:\Windows\System32\nvinitx.dll
2012-08-30 11:14 - 2012-09-24 15:41 - 00202600 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2012-08-30 11:14 - 2012-07-30 09:17 - 01760104 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispco64.dll
2012-08-30 11:14 - 2012-07-30 09:17 - 00016366 ____A C:\Windows\System32\nvinfo.pb
2012-08-30 11:14 - 2012-02-09 12:43 - 14879080 ____A (NVIDIA Corporation) C:\Windows\System32\nvwgf2umx.dll
2012-08-30 11:14 - 2012-02-09 12:43 - 12465512 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2012-08-30 11:14 - 2012-02-09 12:43 - 02725224 ____A (NVIDIA Corporation) C:\Windows\System32\nvapi64.dll
2012-08-30 11:14 - 2012-02-09 12:43 - 00971624 ____A (NVIDIA Corporation) C:\Windows\System32\nvumdshimx.dll
2012-08-30 10:03 - 2012-10-09 21:19 - 05559664 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2012-08-30 09:12 - 2012-10-09 21:19 - 03968880 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2012-08-30 09:12 - 2012-10-09 21:19 - 03914096 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2012-08-30 08:18 - 2012-08-24 19:40 - 03487434 ____A C:\Windows\System32\nvcoproc.bin
2012-08-30 08:18 - 2012-07-30 09:17 - 03266920 ____A (NVIDIA Corporation) C:\Windows\System32\nvsvc64.dll
2012-08-30 08:18 - 2012-07-30 09:17 - 00891240 ____A (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
2012-08-30 08:18 - 2012-07-30 09:17 - 00118120 ____A (NVIDIA Corporation) C:\Windows\System32\nvmctray.dll
2012-08-30 08:18 - 2012-07-30 09:17 - 00063336 ____A (NVIDIA Corporation) C:\Windows\System32\nvshext.dll
2012-08-30 08:17 - 2012-07-30 09:17 - 06198120 ____A (NVIDIA Corporation) C:\Windows\System32\nvcpl.dll
2012-08-27 03:36 - 2012-08-27 03:36 - 00069043 ____A C:\Users\Dani\Downloads\memtest86+-4.20.iso.zip
2012-08-27 02:51 - 2012-08-27 02:51 - 00127860 ____A C:\Users\Dani\Downloads\memtest86+-4.20.usb.installer.zip
2012-08-27 02:49 - 2012-08-27 02:49 - 00043221 ____A C:\Users\Dani\Downloads\memtest86+-1.70.exe.zip
2012-08-27 02:29 - 2012-08-27 02:29 - 00291664 ____A C:\Windows\Minidump\082712-35546-01.dmp
2012-08-27 02:29 - 2012-08-02 06:53 - 770327499 ____A C:\Windows\MEMORY.DMP
2012-08-26 10:47 - 2012-08-26 10:47 - 00284372 ____A C:\Windows\msxml4-KB973688-enu.LOG
2012-08-25 07:00 - 2012-08-25 07:00 - 00286588 ____A C:\Windows\msxml4-KB954430-enu.LOG
2012-08-24 19:41 - 2012-08-24 19:41 - 00000020 ___SH C:\Users\UpdatusUser\ntuser.ini
2012-08-24 19:39 - 2012-08-24 19:36 - 211927944 ____A (NVIDIA Corporation) C:\Users\Dani\Downloads\301.42-desktop-win7-winvista-64bit-international-whql.exe
2012-08-24 19:28 - 2012-08-24 19:28 - 00291664 ____A C:\Windows\Minidump\082512-43296-01.dmp
2012-08-24 10:05 - 2012-10-09 21:19 - 00220160 ____A (Microsoft Corporation) C:\Windows\System32\wintrust.dll
2012-08-24 08:57 - 2012-10-09 21:19 - 00172544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2012-08-24 03:15 - 2012-09-22 14:44 - 17810944 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2012-08-24 02:39 - 2012-09-22 14:44 - 10925568 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2012-08-24 02:31 - 2012-09-22 14:44 - 02312704 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2012-08-24 02:22 - 2012-09-22 14:44 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2012-08-24 02:21 - 2012-09-22 14:44 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2012-08-24 02:20 - 2012-09-22 14:44 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2012-08-24 02:18 - 2012-09-22 14:44 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2012-08-24 02:17 - 2012-09-22 14:44 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2012-08-24 02:14 - 2012-09-22 14:44 - 00816640 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2012-08-24 02:14 - 2012-09-22 14:44 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2012-08-24 02:13 - 2012-09-22 14:44 - 00599040 ____A (Microsoft Corporation) C:\Windows\System32\vbscript.dll
2012-08-24 02:12 - 2012-09-22 14:44 - 02144768 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2012-08-24 02:11 - 2012-09-22 14:44 - 00729088 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2012-08-24 02:10 - 2012-09-22 14:44 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2012-08-24 02:09 - 2012-09-22 14:44 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2012-08-24 02:04 - 2012-09-22 14:44 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2012-08-23 23:27 - 2012-09-22 14:44 - 12319744 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2012-08-23 23:03 - 2012-09-22 14:44 - 09738240 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2012-08-23 22:59 - 2012-09-22 14:44 - 01800704 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2012-08-23 22:51 - 2012-09-22 14:44 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2012-08-23 22:51 - 2012-09-22 14:44 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2012-08-23 22:51 - 2012-09-22 14:44 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2012-08-23 22:49 - 2012-09-22 14:44 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2012-08-23 22:48 - 2012-09-22 14:44 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2012-08-23 22:47 - 2012-09-22 14:44 - 00717824 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2012-08-23 22:47 - 2012-09-22 14:44 - 00420864 ____A (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2012-08-23 22:47 - 2012-09-22 14:44 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2012-08-23 22:45 - 2012-09-22 14:44 - 00607744 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2012-08-23 22:44 - 2012-09-22 14:44 - 01793024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2012-08-23 22:44 - 2012-09-22 14:44 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2012-08-23 22:43 - 2012-09-22 14:44 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2012-08-23 22:40 - 2012-09-22 14:44 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2012-08-23 19:14 - 2012-08-23 19:13 - 16913728 ____A C:\Users\Dani\Downloads\aoe3-114-english.exe
2012-08-22 20:38 - 2009-07-13 18:36 - 00175616 ____A (Microsoft Corporation) C:\Windows\System32\msclmd.dll
2012-08-22 20:38 - 2009-07-13 18:36 - 00152576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll
2012-08-22 10:12 - 2012-09-13 05:22 - 01913200 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys
2012-08-22 10:12 - 2012-09-13 05:22 - 00950128 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ndis.sys
2012-08-22 10:12 - 2012-09-13 05:22 - 00376688 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\netio.sys
2012-08-22 10:12 - 2012-09-13 05:22 - 00288624 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\FWPKCLNT.SYS
2012-08-21 19:23 - 2012-08-21 19:23 - 00291608 ____A C:\Windows\Minidump\082212-37968-01.dmp
2012-08-21 13:40 - 2012-08-21 13:40 - 06550928 ____A (Bandisoft) C:\Users\Dani\Downloads\bdcamsetup.exe
2012-08-21 13:01 - 2012-09-26 04:30 - 00245760 ____A (Microsoft Corporation) C:\Windows\System32\OxpsConverter.exe
2012-08-20 10:48 - 2012-10-09 21:19 - 01162240 ____A (Microsoft Corporation) C:\Windows\System32\kernel32.dll
2012-08-20 10:48 - 2012-10-09 21:19 - 00424448 ____A (Microsoft Corporation) C:\Windows\System32\KernelBase.dll
2012-08-20 10:48 - 2012-10-09 21:19 - 00362496 ____A (Microsoft Corporation) C:\Windows\System32\wow64win.dll
2012-08-20 10:48 - 2012-10-09 21:19 - 00243200 ____A (Microsoft Corporation) C:\Windows\System32\wow64.dll
2012-08-20 10:48 - 2012-10-09 21:19 - 00215040 ____A (Microsoft Corporation) C:\Windows\System32\winsrv.dll
2012-08-20 10:48 - 2012-10-09 21:19 - 00016384 ____A (Microsoft Corporation) C:\Windows\System32\ntvdm64.dll
2012-08-20 10:48 - 2012-10-09 21:19 - 00013312 ____A (Microsoft Corporation) C:\Windows\System32\wow64cpu.dll
2012-08-20 10:46 - 2012-10-09 21:19 - 00338432 ____A (Microsoft Corporation) C:\Windows\System32\conhost.exe
2012-08-20 10:38 - 2012-10-09 21:19 - 00006144 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00005120 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00004608 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00004608 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll
2012-08-20 10:38 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll
2012-08-20 09:40 - 2012-10-09 21:19 - 00014336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2012-08-20 09:38 - 2012-10-09 21:19 - 00025600 ____A (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2012-08-20 09:37 - 2012-10-09 21:19 - 01114112 ____A (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2012-08-20 09:37 - 2012-10-09 21:19 - 00274944 ____A (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2012-08-20 09:37 - 2012-10-09 21:19 - 00005120 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00005120 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00004608 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2012-08-20 09:32 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2012-08-20 07:38 - 2012-10-09 21:19 - 00007680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2012-08-20 07:38 - 2012-10-09 21:19 - 00002048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2012-08-20 07:33 - 2012-10-09 21:19 - 00006144 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2012-08-20 07:33 - 2012-10-09 21:19 - 00004608 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2012-08-20 07:33 - 2012-10-09 21:19 - 00003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2012-08-20 07:33 - 2012-10-09 21:19 - 00003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2012-08-16 05:30 - 2012-08-16 05:27 - 159244410 ____A C:\Users\Dani\Downloads\Choo Biggz - The Underground Star Mixtape.zip
2012-08-15 11:40 - 2012-08-15 11:40 - 00291600 ____A C:\Windows\Minidump\081512-27015-01.dmp
2012-08-15 07:55 - 2012-08-15 07:55 - 00291552 ____A C:\Windows\Minidump\081512-39078-01.dmp
2012-08-15 07:12 - 2012-08-15 07:12 - 00292184 ____A (Microsoft Corporation) C:\Users\Dani\Downloads\dxwebsetup.exe
2012-08-15 07:08 - 2012-08-15 07:08 - 24010178 ____A C:\Users\Dani\Downloads\MSIAfterburnerSetup223.zip
2012-08-14 21:14 - 2012-08-14 21:14 - 00288424 ____A C:\Windows\Minidump\081512-22500-01.dmp
2012-08-14 20:48 - 2012-08-14 20:48 - 00013507 ____A C:\Users\Dani\Downloads\MemTest.zip
2012-08-14 20:46 - 2012-08-14 20:46 - 00370911 ____A C:\Users\Dani\Downloads\memtest86-4.0a.iso.zip
2012-08-14 11:36 - 2012-08-14 11:36 - 00283640 ____A C:\Windows\Minidump\081412-26875-01.dmp
2012-08-14 11:29 - 2012-08-14 11:29 - 00289784 ____A C:\Windows\Minidump\081412-26453-01.dmp
2012-08-14 05:40 - 2012-08-14 05:40 - 00291608 ____A C:\Windows\Minidump\081412-42156-01.dmp
2012-08-12 10:43 - 2012-08-12 10:43 - 01155638 ____A (GameFabrique ) C:\Users\Dani\Downloads\blades_of_vengence.exe
2012-08-12 10:42 - 2012-08-12 10:42 - 00027520 ____A C:\Users\Dani\AppData\Local\dt.dat
2012-08-12 10:41 - 2012-08-12 10:41 - 01059088 ____A C:\Users\Dani\Downloads\DownloadManagerSetup.exe
2012-08-12 10:41 - 2012-08-12 10:41 - 00384835 ____A C:\Users\Dani\AppData\Local\speeddial.crx
2012-08-11 18:18 - 2012-08-11 18:18 - 00286224 ____A C:\Windows\Minidump\081212-32984-01.dmp
2012-08-11 17:46 - 2012-08-11 17:45 - 00284760 ____A C:\Windows\Minidump\081212-29609-01.dmp
2012-08-11 17:35 - 2012-08-11 17:35 - 00291608 ____A C:\Windows\Minidump\081212-33218-01.dmp
2012-08-11 17:17 - 2012-08-11 17:16 - 16400384 ____A C:\Users\Dani\Downloads\Goldencutie_mpeg2video.mpg
2012-08-10 16:56 - 2012-10-09 21:19 - 00715776 ____A (Microsoft Corporation) C:\Windows\System32\kerberos.dll
2012-08-10 15:56 - 2012-10-09 21:19 - 00542208 ____A (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2012-08-08 10:14 - 2009-07-13 18:34 - 00000478 ____A C:\Windows\win.ini
2012-08-07 18:46 - 2012-08-07 18:02 - 401786868 ____A C:\Users\Dani\Downloads\18VS 1.rar.part
2012-08-07 17:13 - 2012-08-07 17:13 - 00291296 ____A C:\Windows\Minidump\080812-32921-01.dmp
2012-08-07 00:09 - 2012-08-07 00:00 - 81384797 ____A C:\Users\Dani\Downloads\Loira.rar
2012-08-05 03:20 - 2012-08-05 03:20 - 00896400 ____A (BitTorrent, Inc.) C:\Users\Dani\Downloads\uTorrent.exe
2012-08-03 16:33 - 2012-08-03 15:58 - 204417236 ____A C:\Users\Dani\Downloads\Hot-Body-Blonde-Sex-On-Webcam.flv
2012-08-02 09:58 - 2012-09-13 05:22 - 00574464 ____A (Microsoft Corporation) C:\Windows\System32\d3d10level9.dll
2012-08-02 08:57 - 2012-09-13 05:22 - 00490496 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2012-08-02 06:53 - 2012-08-02 06:53 - 00291608 ____A C:\Windows\Minidump\080212-33781-01.dmp
2012-08-02 02:38 - 2012-08-02 02:37 - 117545011 ____A C:\Users\Dani\Downloads\V6_The_Gift-(DatPiff.com).zip
2012-07-31 10:28 - 2012-07-31 10:28 - 34808767 ____A C:\Users\Dani\Downloads\725_kmeaw_cfw_lv2.pkg.rar
2012-07-31 10:19 - 2012-07-31 10:19 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2012-07-31 00:05 - 2012-07-31 00:05 - 00501363 ____A (Peter B Clements) C:\Users\Dani\Downloads\QuickPar-0.9.1.0.exe
2012-07-31 00:04 - 2012-07-31 00:04 - 10855920 ____A C:\Users\Dani\Downloads\powarc1300.exe
2012-07-30 18:00 - 2012-07-30 18:00 - 00008192 _RASH C:\BOOTSECT.BAK
2012-07-30 18:00 - 2009-07-13 21:38 - 00025600 __ASH C:\Windows\System32\config\BCD-Template.LOG
2012-07-30 18:00 - 2009-07-13 21:32 - 00028672 ____A C:\Windows\System32\config\BCD-Template
2012-07-30 17:03 - 2012-07-30 17:03 - 00001313 ____A C:\Windows\TSSysprep.log
2012-07-30 17:03 - 2009-07-13 20:46 - 00001774 ____A C:\Windows\DtcInstall.log
2012-07-30 14:20 - 2012-07-30 14:20 - 03695416 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2012-07-30 14:20 - 2012-07-30 14:20 - 03695416 ____A (Microsoft Corporation) C:\Windows\System32\ieapfltr.dat
2012-07-30 14:20 - 2012-07-30 14:20 - 00534528 ____A (Microsoft Corporation) C:\Windows\System32\ieapfltr.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00452608 ____A (Microsoft Corporation) C:\Windows\System32\dxtmsft.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00448512 ____A (Microsoft Corporation) C:\Windows\System32\html.iec
2012-07-30 14:20 - 2012-07-30 14:20 - 00434176 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00403248 ____A (Microsoft Corporation) C:\Windows\System32\iedkcs32.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00367104 ____A (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2012-07-30 14:20 - 2012-07-30 14:20 - 00353792 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00353584 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00282112 ____A (Microsoft Corporation) C:\Windows\System32\dxtrans.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00267776 ____A (Microsoft Corporation) C:\Windows\System32\ieaksie.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00249344 ____A (Microsoft Corporation) C:\Windows\System32\webcheck.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00227840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieaksie.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00223232 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00222208 ____A (Microsoft Corporation) C:\Windows\System32\msls31.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00203776 ____A (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00197120 ____A (Microsoft Corporation) C:\Windows\System32\msrating.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00165888 ____A (Microsoft Corporation) C:\Windows\System32\iexpress.exe
2012-07-30 14:20 - 2012-07-30 14:20 - 00163840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieakui.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00163840 ____A (Microsoft Corporation) C:\Windows\System32\ieakui.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00162304 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00161792 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00160256 ____A (Microsoft Corporation) C:\Windows\System32\wextract.exe
2012-07-30 14:20 - 2012-07-30 14:20 - 00160256 ____A (Microsoft Corporation) C:\Windows\System32\ieakeng.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00152064 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2012-07-30 14:20 - 2012-07-30 14:20 - 00150528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2012-07-30 14:20 - 2012-07-30 14:20 - 00149504 ____A (Microsoft Corporation) C:\Windows\System32\occache.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00145920 ____A (Microsoft Corporation) C:\Windows\System32\iepeers.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00135168 ____A (Microsoft Corporation) C:\Windows\System32\IEAdvpack.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00130560 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieakeng.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00123392 ____A (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00118784 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00114176 ____A (Microsoft Corporation) C:\Windows\System32\admparse.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00111616 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00110592 ____A (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00103936 ____A (Microsoft Corporation) C:\Windows\System32\inseng.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00101888 ____A (Microsoft Corporation) C:\Windows\SysWOW64\admparse.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00091648 ____A (Microsoft Corporation) C:\Windows\System32\SetIEInstalledDate.exe
2012-07-30 14:20 - 2012-07-30 14:20 - 00089088 ____A (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe
2012-07-30 14:20 - 2012-07-30 14:20 - 00089088 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe
2012-07-30 14:20 - 2012-07-30 14:20 - 00086528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00082432 ____A (Microsoft Corporation) C:\Windows\System32\icardie.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00078848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00076800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2012-07-30 14:20 - 2012-07-30 14:20 - 00076800 ____A (Microsoft Corporation) C:\Windows\System32\tdc.ocx
2012-07-30 14:20 - 2012-07-30 14:20 - 00074752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2012-07-30 14:20 - 2012-07-30 14:20 - 00074752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00074240 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ie4uinit.exe
2012-07-30 14:20 - 2012-07-30 14:20 - 00066048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00065024 ____A (Microsoft Corporation) C:\Windows\System32\pngfilt.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00063488 ____A (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2012-07-30 14:20 - 2012-07-30 14:20 - 00055296 ____A (Microsoft Corporation) C:\Windows\System32\msfeedsbs.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00054272 ____A (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00049664 ____A (Microsoft Corporation) C:\Windows\System32\imgutil.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00048640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00048640 ____A (Microsoft Corporation) C:\Windows\System32\mshtmler.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00041472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00035840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00031744 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\licmgr10.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00023552 ____A (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2012-07-30 14:20 - 2012-07-30 14:20 - 00012288 ____A (Microsoft Corporation) C:\Windows\System32\mshta.exe
2012-07-30 14:20 - 2012-07-30 14:20 - 00011776 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2012-07-30 14:20 - 2012-07-30 14:20 - 00010752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2012-07-30 14:20 - 2012-07-30 14:20 - 00010752 ____A (Microsoft Corporation) C:\Windows\System32\msfeedssync.exe
2012-07-30 14:20 - 2012-07-30 14:18 - 00004039 ____A C:\Windows\IE9_main.log
2012-07-30 11:14 - 2012-07-30 11:14 - 02427820 ____A (Ilan Shemes ) C:\Users\Dani\Downloads\GrabIt172b6.exe
2012-07-30 09:36 - 2012-07-30 09:36 - 04119086 ____A C:\Users\Dani\Downloads\iiyama_drivers.zip
2012-07-30 09:16 - 2012-07-30 09:14 - 197137246 ____A C:\Users\Dani\Downloads\nv_vw64_285_62_vga.zip
2012-07-30 09:10 - 2012-07-30 09:10 - 00045727 ____A C:\Users\Dani\Downloads\NV801MS.KK1.zip
2012-07-30 08:52 - 2012-07-30 08:52 - 09088473 ____A C:\Users\Dani\Downloads\LiveUpdate.zip
2012-07-30 08:30 - 2012-07-30 08:28 - 154383709 ____A C:\Users\Dani\Downloads\nv_vw32_285_62_vga.zip
2012-07-30 08:25 - 2012-07-30 08:25 - 16814136 ____A (Mozilla) C:\Users\Dani\Downloads\Firefox Setup 14.0.1.exe
2012-07-30 08:15 - 2012-07-30 08:14 - 03879808 ____A (AVG Technologies) C:\Users\Dani\Downloads\avg_avc_stb_all_2012_2197.exe
2012-07-30 08:09 - 2012-07-30 08:09 - 00000020 ___SH C:\Users\Dani\ntuser.ini
ZeroAccess:
C:\Windows\Installer\{8224f814-3f2f-a9f4-8db6-56ca902c0f98}
C:\Windows\Installer\{8224f814-3f2f-a9f4-8db6-56ca902c0f98}\@
C:\Windows\Installer\{8224f814-3f2f-a9f4-8db6-56ca902c0f98}\L
C:\Windows\Installer\{8224f814-3f2f-a9f4-8db6-56ca902c0f98}\U
C:\Windows\Installer\{8224f814-3f2f-a9f4-8db6-56ca902c0f98}\U\00000008.@
C:\Windows\Installer\{8224f814-3f2f-a9f4-8db6-56ca902c0f98}\U\000000cb.@
C:\Windows\Installer\{8224f814-3f2f-a9f4-8db6-56ca902c0f98}\U\80000064.@
ZeroAccess:
C:\Windows\assembly\GAC_32\Desktop.ini
ZeroAccess:
C:\Windows\assembly\GAC_64\Desktop.ini
==================== Known DLLs (Whitelisted) =================
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe 50BEA589F7D7958BDD2528A8F69D05CC ZeroAccess <==== ATTENTION!.
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
==================== EXE ASSOCIATION =====================
HKLM\...\.exe: exefile => OK
HKLM\...\exefile\DefaultIcon: %1 => OK
HKLM\...\exefile\open\command: "%1" %* => OK
==================== Restore Points =========================
Restore point made on: 2012-10-03 10:53:42
Restore point made on: 2012-10-07 23:20:53
Restore point made on: 2012-10-10 10:14:38
Restore point made on: 2012-10-14 07:53:24
Restore point made on: 2012-10-14 10:55:24
==================== Memory info ===========================
Percentage of memory in use: 6%
Total physical RAM: 20471.08 MB
Available physical RAM: 19136.29 MB
Total Pagefile: 20469.23 MB
Available Pagefile: 19130.14 MB
Total Virtual: 8192 MB
Available Virtual: 8191.9 MB
==================== Partitions =============================
1 Drive c: () (Fixed) (Total:931.42 GB) (Free:205.66 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
2 Drive d: (2x1tb) (Fixed) (Total:1863.02 GB) (Free:626.46 GB) NTFS
3 Drive e: (dani 3) (Fixed) (Total:465.76 GB) (Free:46.55 GB) NTFS ==>[System with boot components (obtained from reading drive)]
5 Drive g: (GRMCPRXFREO_EN_DVD) (CDROM) (Total:3 GB) (Free:0 GB) UDF
6 Drive h: (CRUNZER32GB) (Removable) (Total:29.81 GB) (Free:29.81 GB) FAT32
7 Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS
Disk ### Status Size Free Dyn Gpt
-------- ------------- ------- ------- --- ---
Disk 0 Online 931 GB 100 MB
Disk 1 Online 1863 GB 1024 KB
Disk 2 Online 465 GB 0 B
Disk 3 Online 29 GB 0 B
Partitions of Disk 0:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 931 GB 101 MB
==================================================================================
Disk: 0
Partition 1
Type : 07
Hidden: No
Active: Yes
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 2 C NTFS Partition 931 GB Healthy
=========================================================
Partitions of Disk 1:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 1863 GB 1024 KB
==================================================================================
Disk: 1
Partition 1
Type : 07
Hidden: No
Active: No
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 3 D 2x1tb NTFS Partition 1863 GB Healthy
=========================================================
Partitions of Disk 2:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 465 GB 1024 KB
==================================================================================
Disk: 2
Partition 1
Type : 07
Hidden: No
Active: Yes
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 4 E dani 3 NTFS Partition 465 GB Healthy
=========================================================
Partitions of Disk 3:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 29 GB 32 KB
==================================================================================
Disk: 3
Partition 1
Type : 0C
Hidden: No
Active: Yes
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 5 H CRUNZER32GB FAT32 Removable 29 GB Healthy
=========================================================
Last Boot: 2012-10-16 05:36
==================== End Of Log =============================
FRST64 search.txt
Farbar Recovery Scan Tool (x64) Version: 16-10-2012
Ran by SYSTEM at 2012-10-17 18:58:35
Running from H:\
================== Search: "services.exe" ===================
C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe
[2009-07-13 15:19] - [2009-07-13 17:39] - 0328704 ____A (Microsoft Corporation) 24ACB7E5BE595468E3B9AA488B9B4FCB
C:\Windows\System32\services.exe
[2009-07-13 15:19] - [2009-07-13 17:39] - 0329216 ____A (Microsoft Corporation) 50BEA589F7D7958BDD2528A8F69D05CC
====== End Of Search ======