Scan result of Farbar Recovery Scan Tool Version: 05-05-2012 02 Ran by SYSTEM at 07-05-2012 00:05:59 Running from G:\ Windows 7 Home Premium (X64) OS Language: English(US) The current controlset is ControlSet001 ========================== Registry (Whitelisted) ============= HKLM\...\Run: [Persistence] C:\Windows\system32\igfxpers.exe [365592 2009-08-05] (Intel Corporation) HKLM\...\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [7938080 2009-07-24] (Realtek Semiconductor) HKLM\...\Run: [Skytel] C:\Program Files\Realtek\Audio\HDA\Skytel.exe [1833504 2009-07-24] (Realtek Semiconductor Corp.) HKLM\...\Run: [Apoint] %ProgramFiles%\Apoint\Apoint.exe [208384 2009-08-03] (Alps Electric Co., Ltd.) HKLM\...\Run: [IAAnotif] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-06-05] (Intel Corporation) HKLM\...\Run: [BbPrintMonitor] C:\Program Files\Common Files\Bluebeam Software\Brewery\V45\Printer Support\BBPrint.exe [211616 2008-01-15] (Bluebeam Software, Inc.) HKLM\...\Run: [BbInstallUser] C:\Program Files\Bluebeam Software\Pushbutton PDF\Bluebeam Admin User.exe [49824 2008-11-25] (Bluebeam Software, Inc.) HKLM\...\Run: [PrintDisp] C:\Windows\system32\PrintDisp.exe [878080 2009-08-21] (ActMask Co.,Ltd - http://www.all2pdf.com) HKLM\...\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe [387608 2009-08-05] (Intel Corporation) HKLM\...\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe [165912 2009-08-05] (Intel Corporation) HKLM\...\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" [171520 2009-08-17] (Sun Microsystems, Inc.) HKLM\...\Run: [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [499608 2011-03-15] (Adobe Systems Incorporated) HKLM-x32\...\Run: [ISBMgr.exe] "C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe" [317288 2009-05-26] (Sony Corporation) HKLM-x32\...\Run: [MarketingTools] C:\Program Files (x86)\Sony\Marketing Tools\MarketingTools.exe [26624 2009-12-03] (Sony Corporation) HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [843712 2012-01-03] (Adobe Systems Incorporated) HKLM-x32\...\Run: [WindowsLivePhone] C:\Program Files (x86)\Windows Live\Device Manager\msgrdvmn.exe /AutoRun [787816 2008-12-22] (Microsoft Corporation) HKLM-x32\...\Run: [SHTtray.exe] C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SHTtray.exe [99624 2009-07-28] (Sony Corporation) HKLM-x32\...\Run: [Simpo PDF Creator Lite Server] "C:\Program Files (x86)\Simpo PDF Creator Lite\SpcLiteSrv.exe" [101376 2010-08-18] (Simpo Technologies) HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe" [36760 2011-01-30] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe" [821144 2011-01-30] (Adobe Systems Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [248552 2010-05-14] (Sun Microsystems, Inc.) HKLM-x32\...\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [30040 2009-02-26] (Microsoft Corporation) HKLM-x32\...\Run: [AdobeCS4ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin [611712 2008-08-14] (Adobe Systems Incorporated) HKLM-x32\...\Run: [KiesHelper] C:\Program Files (x86)\Samsung\Kies\KiesHelper.exe /s [928656 2011-11-02] (Samsung) HKLM-x32\...\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [3508624 2011-11-02] (Samsung Electronics Co., Ltd.) HKLM-x32\...\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59240 2011-11-01] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" [421736 2011-12-08] (Apple Inc.) HKLM-x32\...\Run: [Anti-phishing Domain Advisor] "C:\ProgramData\Anti-phishing Domain Advisor\visicom_antiphishing.exe" [206504 2011-12-21] (Visicom Media Inc. (Powered by Panda Security)) HKLM-x32\...\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin [1523360 2011-01-12] (Adobe Systems Incorporated) HKU\Binki\...\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [x] HKU\Mcx1-PCWT5-VAIO\...\Run: [] [x] HKU\Mcx1-PCWT5-VAIO\...\Run: [WindowsLivePhone] "C:\Program Files (x86)\Windows Live\Device Manager\msgrdvmn.exe" /AutoRun [787816 2008-12-22] (Microsoft Corporation) HKU\Mcx1-PCWT5-VAIO\...\Run: [instanteyedropper] "C:\Program Files (x86)\InstantEyedropper\InstantEyedropper.exe" [352256 2007-10-17] () HKU\Mcx1-PCWT5-VAIO\...\Run: [OP9APrsC9TJ] control.exe "C:\Users\pcwt5\AppData\Local\kPqSZ2Y\OP9APrsC9TJ.cpl",0,0 [x] HKU\Mcx1-PCWT5-VAIO\...\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [x] HKU\Mcx1-PCWT5-VAIO\...\Winlogon: [Shell] C:\Windows\eHome\McrMgr.exe [343552 2009-07-14] (Microsoft Corporation) HKU\pcwt5\...\Run: [instanteyedropper] "C:\Program Files (x86)\InstantEyedropper\InstantEyedropper.exe" [352256 2007-10-17] () HKU\pcwt5\...\Run: [Raptr] C:\PROGRA~2\Raptr\raptrstub.exe --startup [53160 2012-02-07] (Raptr, Inc) HKU\pcwt5\...\Run: [KiesPDLR] C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [21392 2011-11-02] () HKU\pcwt5\...\Run: [Spotify] "C:\Users\pcwt5\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart [x] HKU\pcwt5\...\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background [4283256 2011-05-13] (Microsoft Corporation) HKU\pcwt5\...\Run: [WindowsLivePhone] "C:\Program Files (x86)\Windows Live\Device Manager\msgrdvmn.exe" /AutoRun [787816 2008-12-22] (Microsoft Corporation) HKU\pcwt5\...\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [17148552 2012-02-29] (Skype Technologies S.A.) HKLM-x32\...\Runonce: [GrpConv] grpconv -o [x] HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,C:\Program Files\Soluto\soluto.exe /userinit [1706544 2011-07-07] (Soluto) Winlogon\Notify\igfxcui: igfxdev.dll (Intel Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{F6C6BA11-BA8F-404F-A447-49C76C73EE3E}: [NameServer]23.21.182.24,206.214.214.28 SubSystems: [Windows] ==> ZeroAccess ==================== Services (Whitelisted) ====== 2 !SASCORE; "C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE" [140672 2011-08-11] (SUPERAntiSpyware.com) 3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.) 2 BBUpdate; "C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE" [249648 2011-10-13] (Microsoft Corporation) 2 bProtector; C:\ProgramData\bProtector\bProtect.exe [773624 2012-03-22] (bProtector) 2 CronService; "C:\Prey\platform\windows\cronsvc.exe" [19968 2011-02-15] (Fork Ltd.) 2 ExpatShieldService; C:\Program Files (x86)\Expat Shield\bin\openvpnas.exe [331608 2012-01-06] () 2 ExpatSrv; C:\Program Files (x86)\Expat Shield\HssWPR\hsssrv.exe [363336 2012-01-04] (AnchorFree Inc.) 3 ExpatTrayService; C:\Program Files (x86)\Expat Shield\bin\ExpatTrayService.EXE [77520 2012-01-06] () 2 ExpatWd; C:\Program Files (x86)\Expat Shield\bin\hsswd.exe -product Expat [329544 2012-01-04] () 3 GSService; "C:\Windows\SysWOW64\GSService.exe" [385024 2010-12-04] () 2 HitmanPro36CrusaderBoot; "C:\Users\pcwt5\Desktop\HitmanPro36_x64.exe" /crusader:boot [8252840 2012-05-02] (SurfRight B.V.) 2 HitmanProScheduler; C:\Program Files\HitmanPro\hmpsched.exe [107848 2012-05-02] (SurfRight B.V.) 2 Lavasoft Ad-Aware Service; "C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe" [1378040 2012-01-31] (Lavasoft) 3 Microsoft Office Groove Audit Service; "C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe" [64856 2009-02-26] (Microsoft Corporation) 2 Printer Control; C:\Windows\system32\PrintCtrl.exe [77824 2009-06-16] (ActMask Co.,Ltd - HTTP://WWW.ALL2PDF.COM) 2 RapportMgmtService; "C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe" [931640 2012-03-11] (Trusteer Ltd.) 3 Roxio UPnP Renderer 10; "C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe" [313840 2009-06-26] (Sonic Solutions) 2 Roxio Upnp Server 10; "C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe" [362992 2009-06-26] (Sonic Solutions) 2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [189984 2009-07-24] (Realtek Semiconductor) 3 SMServer; "C:\Windows\SysWOW64\snmvtsvc.exe" [245760 2010-12-04] (SMServer) 3 SOHCImp; "C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe" [120104 2009-07-28] (Sony Corporation) 3 SOHDBSvr; "C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDBSvr.exe" [70952 2009-07-28] (Sony Corporation) 3 SOHDms; "C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe" [427304 2009-07-28] (Sony Corporation) 3 SOHDs; "C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe" [75048 2009-07-28] (Sony Corporation) 3 SOHPlMgr; "C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHPlMgr.exe" [91432 2009-07-28] (Sony Corporation) 2 SolutoService; "C:\Program Files\Soluto\SolutoService.exe" [376352 2011-07-07] (Soluto) 2 TVersityMediaServer; "C:\ProgramData\TVersity\Media Server\MediaServer.exe" [921600 2010-11-24] () 2 uCamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [104960 2008-09-18] (ArcSoft, Inc.) 3 VAIO Entertainment TV Device Arbitration Service; "C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe" [69632 2009-07-23] (Sony Corporation) 2 VAIO Event Service; "C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe" [204648 2009-07-01] (Sony Corporation) 3 VAIO Power Management; "C:\Program Files\Sony\VAIO Power Management\SPMService.exe" [411496 2009-07-16] (Sony Corporation) 3 VCFw; "C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe" [642920 2009-07-22] (Sony Corporation) 2 VcmIAlzMgr; "C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe" [468264 2009-06-26] (Sony Corporation) 3 VcmINSMgr; "C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe" [357672 2009-06-26] (Sony Corporation) 3 VcmXmlIfHelper; "C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe" [110888 2009-06-18] (Sony Corporation) 3 Vcsw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe -RunBySCM [313264 2009-07-23] (Sony Corporation) 2 VSNService; "C:\Program Files\Sony\VAIO Smart Network\VSNService.exe" [522240 2009-08-13] (Sony Corporation) 3 VzCdbSvc; "C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe" [206336 2009-07-23] (Sony Corporation) 2 qmfrsrou; C:\Windows\system32\mggqslwy.dll [x] 2 smsltd-samctrll; c:\Smsltd\Sam\platform\bin\srvany.exe [x] 2 smsltdsam; c:\Smsltd\Sam\platform\tomcat\bin\tomcat5.exe //RS//smsltdsam [x] ========================== Drivers (Whitelisted) ============= 3 1394ohci; C:\Windows\System32\Drivers\1394ohci.sys [227840 2009-07-14] (Microsoft Corporation) 2 adfs; C:\Windows\System32\Drivers\adfs.sys [88632 2008-06-27] (Adobe Systems, Inc.) 2 adfs; C:\Windows\SysWow64\Drivers\adfs.sys [74720 2008-08-14] (Adobe Systems, Inc.) 3 ArcSoftKsUFilter; C:\Windows\System32\Drivers\ArcSoftKsUFilter.sys [19968 2009-05-26] (ArcSoft, Inc.) 3 BridgeMP; C:\Windows\System32\DRIVERS\bridge.sys [95232 2009-07-14] (Microsoft Corporation) 0 CLFS; C:\Windows\System32\CLFS.sys [367696 2009-07-14] (Microsoft Corporation) 3 DrmRAudio; C:\Windows\System32\Drivers\DrmRAudio.sys [34040 2010-12-05] (Windows (R) Codename Longhorn DDK provider) 3 ebdrv; C:\Windows\System32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) 3 hitmanpro35; \??\C:\Windows\system32\drivers\hitmanpro36.sys [27936 2012-05-02] () 3 HssDrv; C:\Windows\System32\Drivers\HssDrv.sys [56832 2010-09-22] (AnchorFree Inc.) 3 igfx; C:\Windows\System32\DRIVERS\igdkmd64.sys [7345632 2009-08-05] (Intel Corporation) 3 IntcHdmiAddService; C:\Windows\System32\drivers\IntcHdmi.sys [139264 2009-08-05] (Intel(R) Corporation) 3 IpFilterDriver; C:\Windows\System32\DRIVERS\ipfltdrv.sys [82944 2009-07-14] (Microsoft Corporation) 3 iScsiPrt; C:\Windows\System32\DRIVERS\msiscsi.sys [224832 2009-07-14] (Microsoft Corporation) 3 Lavasoft Kernexplorer; \??\C:\Program Files (x86)\Lavasoft\Ad-Aware\KernExplorer64.sys [17440 2012-01-31] () 0 Lbd; C:\Windows\System32\Drivers\Lbd.sys [69152 2010-09-23] (Lavasoft AB) 3 NDProxy; C:\Windows\System32\Drivers\NDProxy.sys [57856 2009-07-14] (Microsoft Corporation) 3 pbfilter; \??\C:\Users\pcwt5\Downloads\PeerBlock_r162__x64_Release_(Vista)\pbfilter.sys [19544 2009-09-18] () 3 PSSDK42; C:\Windows\System32\Drivers\PSSDK42.sys [53312 2012-04-08] (microOLAP Technologies LTD) 3 PSSDKLBF; C:\Windows\System32\Drivers\PSSDKLBF.sys [65600 2012-04-08] (microOLAP Technologies LTD) 1 RapportCerberus_34302; \??\C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\34302\RapportCerberus64_34302.sys [397520 2011-12-15] () 1 RapportEI64; \??\C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys [55056 2012-03-11] (Trusteer Ltd.) 0 RapportKE64; C:\Windows\System32\Drivers\RapportKE64.sys [63760 2012-03-11] (Trusteer Ltd.) 1 RapportPG64; \??\C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys [61712 2012-03-11] (Trusteer Ltd.) 2 rimsptsk; C:\Windows\System32\DRIVERS\rimssn64.sys [86528 2009-07-31] (REDC) 2 risdptsk; C:\Windows\System32\DRIVERS\risdsn64.sys [76288 2009-07-31] (REDC) 1 SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com) 1 SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com) 3 sembbus; C:\Windows\System32\Drivers\sembbus.sys [302080 2008-04-08] (MCCI Corporation) 3 sembcard; C:\Windows\System32\Drivers\sembcard.sys [362496 2008-04-08] (MCCI Corporation) 3 sembmdfl2; C:\Windows\System32\Drivers\sembmdfl2.sys [19456 2008-04-08] (MCCI Corporation) 3 sembmdm2; C:\Windows\System32\Drivers\sembmdm2.sys [445952 2008-04-08] (MCCI Corporation) 3 sembmgmt; C:\Windows\System32\Drivers\sembmgmt.sys [370176 2008-04-08] (MCCI Corporation) 3 sembnd5; C:\Windows\System32\Drivers\sembnd5.sys [33792 2008-04-08] (MCCI Corporation) 3 sembunic; C:\Windows\System32\Drivers\sembunic.sys [396800 2008-04-08] (MCCI Corporation) 3 sembwwan; C:\Windows\System32\Drivers\sembwwan.sys [362496 2008-04-08] (MCCI Corporation) 3 SEMCReserved; C:\Windows\System32\DRIVERS\semcreserved64.sys [22528 2008-04-08] () 0 Soluto; C:\Windows\System32\Drivers\Soluto.sys [54728 2011-07-07] (Soluto LTD.) 3 Sony_EricssonWWSC; C:\Windows\System32\DRIVERS\seu4scard64.sys [23040 2008-04-08] (Sony Ericsson) 3 tbhsd; C:\Windows\System32\Drivers\tbhsd.sys [46112 2010-11-16] (RapidSolution Software AG) 3 catchme; \??\C:\ComboFix\catchme.sys [x] ========================== NetSvcs (Whitelisted) =========== NETSVC: Ndisipo NETSVCx32: qmfrsrou ============ One Month Created Files and Folders ============== 2012-05-06 14:33 - 2011-04-15 19:14 - 0000000 ____D C:\FRST 2012-05-02 04:43 - 2009-07-14 01:38 - 0012872 ____A (SurfRight B.V.) C:\Windows\System32\bootdelete.exe 2012-05-02 04:43 - - 0003956 ____A C:\Windows\System32\.crusader 2012-05-02 03:52 - 2009-07-14 00:06 - 0027936 ____A C:\Windows\System32\Drivers\hitmanpro36.sys 2012-05-02 03:52 - - 0001893 ____A C:\Users\Public\Desktop\HitmanPro.lnk 2012-05-02 03:51 - 2012-04-24 13:39 - 0000000 ____D C:\Users\All Users\HitmanPro 2012-05-02 03:51 - 2012-04-24 13:39 - 0000000 ____D C:\ProgramData\HitmanPro 2012-05-02 03:51 - 2011-10-28 23:56 - 0000000 ____D C:\Program Files\HitmanPro 2012-05-02 02:26 - 2011-03-10 14:04 - 8252840 ____A (SurfRight B.V.) C:\Users\pcwt5\Desktop\HitmanPro36_x64.exe 2012-05-02 01:28 - 2009-08-17 22:47 - 0000469 ____A C:\rkill.log 2012-05-02 01:24 - 2012-02-11 01:14 - 1008141 ____A C:\Users\pcwt5\Downloads\iExplore.exe 2012-05-02 01:21 - 2012-05-02 01:21 - 0784039 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_02_02_21_25.dmp 2012-05-02 01:21 - 2012-05-02 01:21 - 0781691 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_02_02_21_18.dmp 2012-05-02 01:21 - 2012-05-02 01:07 - 0782766 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_02_02_21_08.dmp 2012-05-02 01:12 - 2011-09-14 20:05 - 0000000 ____D C:\Users\pcwt5\AppData\Local\{F5353179-622E-47AA-9532-7FD204C7B70C} 2012-05-02 01:11 - 2011-09-09 04:48 - 0000000 ____D C:\Users\pcwt5\AppData\Local\{933A7BA7-EA40-4E13-9414-F3E2E90F3588} 2012-05-02 01:07 - 2012-05-02 01:07 - 0803839 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_02_02_07_47.dmp 2012-05-02 01:07 - 2012-05-02 01:07 - 0800420 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_02_02_07_39.dmp 2012-05-02 01:07 - 2012-05-01 22:18 - 0792075 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_02_02_07_24.dmp 2012-05-01 22:42 - 2012-05-02 01:11 - 0000184 ____A C:\Users\All Users\-XWE3mXJBRcdem8r 2012-05-01 22:42 - 2012-05-02 01:11 - 0000184 ____A C:\ProgramData\-XWE3mXJBRcdem8r 2012-05-01 22:42 - 2012-04-24 06:18 - 0000000 ____A C:\Users\All Users\-XWE3mXJBRcdem8 2012-05-01 22:42 - 2012-04-24 06:18 - 0000000 ____A C:\ProgramData\-XWE3mXJBRcdem8 2012-05-01 22:22 - 2011-03-08 07:31 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E85104C4-2416-430E-BAE8-FF63DD741C55} 2012-05-01 22:18 - 2012-05-01 22:18 - 0799081 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_23_18_28.dmp 2012-05-01 22:18 - 2012-05-01 22:18 - 0791957 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_23_18_36.dmp 2012-05-01 22:18 - 2012-05-01 21:39 - 0782060 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_23_18_09.dmp 2012-05-01 22:03 - 2012-05-01 22:22 - 0222208 ___AH C:\Users\All Users\XWE3mXJBRcdem8.exe_1336347353.arl 2012-05-01 22:03 - 2012-05-01 22:22 - 0222208 ___AH C:\ProgramData\XWE3mXJBRcdem8.exe_1336347353.arl 2012-05-01 22:03 - 2012-04-24 06:18 - 0000256 ___AH C:\Users\All Users\XWE3mXJBRcdem8 2012-05-01 22:03 - 2012-04-24 06:18 - 0000256 ___AH C:\ProgramData\XWE3mXJBRcdem8 2012-05-01 22:02 - 2012-03-27 18:24 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{05F87219-D93B-418A-BEEC-9D2CACF2503E} 2012-05-01 21:39 - 2012-05-01 21:39 - 0789979 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_22_39_58.dmp 2012-05-01 21:39 - 2012-05-01 21:39 - 0787085 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_22_39_51.dmp 2012-05-01 21:39 - 2012-05-01 20:52 - 0789956 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_22_39_30.dmp 2012-05-01 21:25 - 2012-05-01 13:10 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{AB0E2318-2FD3-4888-92CE-51BE7B0E5478} 2012-05-01 20:52 - 2012-05-01 20:52 - 0790536 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_52_55.dmp 2012-05-01 20:52 - 2012-05-01 20:52 - 0785009 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_52_48.dmp 2012-05-01 20:52 - 2012-05-01 20:41 - 0781895 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_52_27.dmp 2012-05-01 20:41 - 2012-05-01 20:41 - 0791043 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_41_46.dmp 2012-05-01 20:41 - 2012-05-01 20:41 - 0783783 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_41_53.dmp 2012-05-01 20:41 - 2012-05-01 20:39 - 0778775 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_41_34.dmp 2012-05-01 20:39 - 2012-05-01 20:38 - 0789095 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_39_01.dmp 2012-05-01 20:38 - 2012-05-01 20:38 - 0787807 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_38_52.dmp 2012-05-01 20:38 - 2012-05-01 20:35 - 0789024 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_38_27.dmp 2012-05-01 20:35 - 2012-05-01 20:35 - 0787098 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_35_32.dmp 2012-05-01 20:35 - 2012-05-01 20:32 - 0787958 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_35_19.dmp 2012-05-01 20:35 - 2012-02-26 19:01 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{1E9708A6-62C2-47A0-A8BF-D4111CAE3C12} 2012-05-01 20:32 - 2012-05-01 20:27 - 0791267 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_32_53.dmp 2012-05-01 20:30 - 2011-10-05 20:09 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A2975F85-EFFA-4B75-B6EB-38911A3DE0A5} 2012-05-01 20:27 - 2012-05-01 20:27 - 0789876 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_27_35.dmp 2012-05-01 20:27 - 2012-05-01 20:27 - 0781249 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_27_28.dmp 2012-05-01 20:27 - 2012-05-01 19:51 - 0776042 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_27_12.dmp 2012-05-01 19:51 - 2012-05-01 19:51 - 0783890 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_20_51_07.dmp 2012-05-01 19:51 - 2012-05-01 19:50 - 0777714 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_20_51_00.dmp 2012-05-01 19:50 - 2012-05-01 19:43 - 0795799 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_20_50_46.dmp 2012-05-01 19:49 - 2012-05-01 19:57 - 0222208 ___AH C:\Users\All Users\oVQukyH52o8jiV.exe_1336347353.arl 2012-05-01 19:49 - 2012-05-01 19:57 - 0222208 ___AH C:\ProgramData\oVQukyH52o8jiV.exe_1336347353.arl 2012-05-01 19:49 - 2012-05-01 19:57 - 0000184 ___AH C:\Users\All Users\-oVQukyH52o8jiVr 2012-05-01 19:49 - 2012-05-01 19:57 - 0000184 ___AH C:\ProgramData\-oVQukyH52o8jiVr 2012-05-01 19:49 - 2012-04-24 06:27 - 0000000 ___AH C:\Users\All Users\-oVQukyH52o8jiV 2012-05-01 19:49 - 2012-04-24 06:27 - 0000000 ___AH C:\ProgramData\-oVQukyH52o8jiV 2012-05-01 19:49 - 2012-03-23 21:55 - 0000655 ___AH C:\Users\pcwt5\Desktop\Data_Recovery.lnk 2012-05-01 19:49 - 2012-01-29 17:46 - 0000256 ___AH C:\Users\All Users\oVQukyH52o8jiV 2012-05-01 19:49 - 2012-01-29 17:46 - 0000256 ___AH C:\ProgramData\oVQukyH52o8jiV 2012-05-01 19:49 - 2011-09-19 12:53 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{021B4ECB-56E3-4844-B9EA-43E59C6576F6} 2012-05-01 19:49 - 2011-08-07 09:35 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D18AF664-8FB8-4D02-BF01-B78A88226172} 2012-05-01 19:43 - 2012-05-01 19:43 - 0782571 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_20_43_06.dmp 2012-05-01 19:42 - 2012-05-01 19:42 - 0791981 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_20_42_58.dmp 2012-05-01 19:42 - 2012-05-01 19:18 - 0786686 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_20_42_39.dmp 2012-05-01 19:18 - 2012-05-01 19:18 - 0786934 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_20_18_40.dmp 2012-05-01 19:18 - 2012-05-01 19:18 - 0783683 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_20_18_33.dmp 2012-05-01 19:18 - 2012-05-01 19:08 - 0786841 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_20_18_19.dmp 2012-05-01 19:08 - 2012-05-01 19:08 - 0785043 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_20_08_42.dmp 2012-05-01 19:08 - 2012-05-01 19:08 - 0782170 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_20_08_50.dmp 2012-05-01 19:08 - 2012-05-01 15:50 - 0792937 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_20_08_26.dmp 2012-05-01 19:07 - 2012-05-06 22:58 - 0006512 ____H C:\bootsqm.dat 2012-05-01 15:53 - 2011-08-27 00:59 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E78D314A-0FF3-45F2-AD60-640F565F4906} 2012-05-01 15:52 - 2011-09-10 16:13 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{1ADA076C-41D3-42E4-B40A-4D9EFF4CA05A} 2012-05-01 15:50 - 2012-05-01 15:49 - 0791512 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_16_50_06.dmp 2012-05-01 15:49 - 2012-05-01 15:49 - 0785722 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_16_49_59.dmp 2012-05-01 15:49 - 2012-05-01 15:12 - 0801095 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_16_49_37.dmp 2012-05-01 15:15 - 2011-03-30 04:45 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{3B207406-5269-40F8-BFCB-F0B8BB77D266} 2012-05-01 15:14 - 2011-12-26 17:55 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{075CAA42-8CEA-4FBB-BDFB-1ED928DE1D1F} 2012-05-01 15:12 - 2012-05-01 15:12 - 0796427 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_16_12_45.dmp 2012-05-01 15:12 - 2012-05-01 15:12 - 0791552 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_16_12_52.dmp 2012-05-01 15:12 - 2012-05-01 13:07 - 0790742 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_16_12_28.dmp 2012-05-01 13:29 - 2012-05-01 13:29 - 0156547 ___AH C:\Users\pcwt5\Downloads\quarterly Fuel Bill till 10-4-2012 (2).pdf 2012-05-01 13:29 - 2011-05-12 07:50 - 0156547 ___AH C:\Users\pcwt5\Downloads\quarterly Fuel Bill till 10-4-2012 (1).pdf 2012-05-01 13:27 - 2012-05-01 13:29 - 0156547 ___AH C:\Users\pcwt5\Downloads\quarterly Fuel Bill till 10-4-2012.pdf 2012-05-01 13:10 - 2012-04-24 13:48 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{32B36069-735D-4CCA-A776-29B3565FE3DA} 2012-05-01 13:10 - 2012-03-24 16:15 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{AB03D844-CA98-4B74-BB32-D3D70394EE8B} 2012-05-01 13:07 - 2012-05-01 13:07 - 0798888 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_14_07_50.dmp 2012-05-01 13:07 - 2012-05-01 13:07 - 0790157 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_14_07_57.dmp 2012-05-01 13:07 - 2012-05-01 02:50 - 0800497 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_14_07_33.dmp 2012-05-01 02:53 - 2011-08-29 20:11 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{64FD770E-160E-4BBA-A849-9CB159B9659F} 2012-05-01 02:52 - 2011-11-07 05:51 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{52FF098F-2F01-4B83-834C-A9FDCDDDC138} 2012-05-01 02:50 - 2012-05-01 02:50 - 0792921 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_03_50_19.dmp 2012-05-01 02:50 - 2012-05-01 02:50 - 0789216 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_03_50_28.dmp 2012-05-01 02:50 - 2012-04-30 17:51 - 0783036 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_03_50_03.dmp 2012-04-30 17:55 - 2012-02-09 19:21 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{03FA506E-9631-44BD-85BD-A1A27E16823E} 2012-04-30 17:55 - 2012-01-29 18:45 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{2EDE731F-374B-403F-8E55-0241F8E58F86} 2012-04-30 17:51 - 2012-04-30 17:51 - 0793299 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_18_51_15.dmp 2012-04-30 17:51 - 2012-04-30 17:51 - 0789666 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_18_51_22.dmp 2012-04-30 17:51 - 2012-04-30 15:25 - 0781664 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_18_51_00.dmp 2012-04-30 15:32 - 2012-04-30 04:03 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{2FEEE62A-78AF-4546-B0C0-16D9AE495017} 2012-04-30 15:32 - 2011-05-29 03:59 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{33600838-AA50-4D26-969E-1E4F5C46B515} 2012-04-30 15:25 - 2012-04-30 15:25 - 0789150 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_16_25_37.dmp 2012-04-30 15:25 - 2012-04-30 15:25 - 0783489 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_16_25_44.dmp 2012-04-30 15:25 - 2012-04-30 13:09 - 0786950 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_16_25_19.dmp 2012-04-30 14:29 - 2011-09-05 21:43 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{C2CF7053-C654-42C5-B309-866771921306} 2012-04-30 14:29 - 2011-08-18 08:34 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{79B31A9F-FCD1-472C-A50D-7A3904E78E2B} 2012-04-30 13:11 - 2012-01-04 01:54 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D3F65FE2-0574-47C8-8C19-FB662CF90ED6} 2012-04-30 13:11 - 2011-03-07 16:33 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{9EDF099C-70C3-4236-B234-870275134302} 2012-04-30 13:09 - 2012-04-30 13:09 - 0801382 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_14_09_20.dmp 2012-04-30 13:09 - 2012-04-30 13:08 - 0789164 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_14_09_12.dmp 2012-04-30 13:08 - 2012-04-30 03:59 - 0782357 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_14_08_56.dmp 2012-04-30 04:13 - 2011-02-21 04:03 - 0070449 ___AH C:\Users\pcwt5\Downloads\PR (1).jpg 2012-04-30 04:12 - 2012-04-30 04:13 - 0070449 ___AH C:\Users\pcwt5\Downloads\PR.jpg 2012-04-30 04:02 - 2012-04-28 15:36 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{2FBE040E-C82D-4463-ACD4-D9124F0D8E1E} 2012-04-30 04:02 - 2012-03-15 14:26 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{4CD64D5C-8771-458B-BCCF-D175B872D2EE} 2012-04-30 03:59 - 2012-04-30 03:59 - 0786827 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_04_59_42.dmp 2012-04-30 03:59 - 2012-04-30 03:59 - 0779775 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_04_59_34.dmp 2012-04-30 03:59 - 2012-04-30 01:40 - 0785659 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_04_59_03.dmp 2012-04-30 01:43 - 2011-12-25 23:07 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{CC418A48-DD5A-486B-A7F4-CE0D2B83E4E8} 2012-04-30 01:43 - 2011-10-04 13:23 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D6AEC580-1A07-4B3A-BCE8-DD7E41DE6790} 2012-04-30 01:40 - 2012-04-30 01:40 - 0785753 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_02_40_32.dmp 2012-04-30 01:40 - 2012-04-30 01:40 - 0778123 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_02_40_24.dmp 2012-04-30 01:40 - 2012-04-30 01:24 - 0781843 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_02_40_04.dmp 2012-04-30 01:28 - 2012-02-14 02:06 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{576A53C0-CCD3-4BD2-A9C9-5B858017D6F8} 2012-04-30 01:28 - 2011-08-24 23:10 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{5FC3AE8E-E727-4BB0-921A-DEEF8FFE49AB} 2012-04-30 01:24 - 2012-04-30 01:24 - 0791463 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_02_24_11.dmp 2012-04-30 01:24 - 2012-04-30 01:23 - 0786782 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_02_24_02.dmp 2012-04-30 01:23 - 2012-04-29 19:23 - 0785503 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_02_23_38.dmp 2012-04-29 19:26 - 2011-08-23 13:00 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{553F0817-2044-4627-9F0D-B308963417A9} 2012-04-29 19:25 - 2011-09-12 06:11 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{CF5C11B9-00A8-4DF1-9A2B-9C6093128BAD} 2012-04-29 19:23 - 2012-04-29 19:22 - 0786359 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_29_20_23_06.dmp 2012-04-29 19:22 - 2012-04-29 19:22 - 0789031 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_29_20_22_57.dmp 2012-04-29 19:22 - 2012-04-29 15:32 - 0779132 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_29_20_22_35.dmp 2012-04-29 16:42 - 2012-04-28 17:21 - 2880026 ___AH C:\Users\pcwt5\Downloads\20120428_121349 (3).jpg 2012-04-29 16:19 - 2011-08-11 08:19 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{558FE5DB-7EB1-4562-A264-12AB3C6BE863} 2012-04-29 16:18 - 2011-08-07 09:38 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{57F5021F-AB92-49D3-BD9C-2B24A4315BCF} 2012-04-29 15:32 - 2012-04-29 15:32 - 0790950 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_29_16_32_41.dmp 2012-04-29 15:32 - 2012-04-29 15:32 - 0787774 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_29_16_32_32.dmp 2012-04-29 15:32 - 2012-04-28 16:25 - 0781462 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_29_16_32_06.dmp 2012-04-28 17:27 - - 0081159 ___AH C:\Users\pcwt5\Downloads\20120111_152838 (1).jpg 2012-04-28 17:24 - 2010-04-15 19:40 - 0168556 ___AH C:\Users\pcwt5\Downloads\Original Sony Battery.jpg 2012-04-28 17:20 - 2012-04-28 17:20 - 2880026 ___AH C:\Users\pcwt5\Downloads\20120428_121349 (2).jpg 2012-04-28 17:19 - 2012-04-29 16:42 - 2880026 ___AH C:\Users\pcwt5\Downloads\20120428_121349.jpg 2012-04-28 17:19 - 2012-04-12 07:39 - 2880026 ___AH C:\Users\pcwt5\Downloads\20120428_121349 (1).jpg 2012-04-28 17:16 - 2012-04-28 17:30 - 1989298 ___AH C:\Users\pcwt5\Downloads\20120111_152838.jpg 2012-04-28 16:27 - 2011-10-21 12:48 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{B282FABB-52D9-4910-B8E2-9DFB3B0A3107} 2012-04-28 16:27 - 2011-07-30 10:08 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A47945CB-A781-4E5D-8B7D-C4BA3C9A749A} 2012-04-28 16:25 - 2012-04-28 16:25 - 0785246 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_17_25_23.dmp 2012-04-28 16:25 - 2012-04-28 16:24 - 0789785 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_17_25_14.dmp 2012-04-28 16:24 - 2012-04-28 16:04 - 0785477 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_17_24_54.dmp 2012-04-28 16:06 - 2011-11-15 05:09 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{1B382B8F-87EA-4636-BC81-CBD65E17A27D} 2012-04-28 16:06 - 2011-09-22 13:15 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{531B8A56-6C79-4811-AC81-94A7B9D88AFE} 2012-04-28 16:04 - 2012-04-28 16:04 - 0784190 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_17_04_18.dmp 2012-04-28 16:04 - 2012-04-28 16:03 - 0779038 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_17_04_09.dmp 2012-04-28 16:03 - 2012-04-28 15:32 - 0789905 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_17_03_49.dmp 2012-04-28 15:35 - 2012-01-26 17:41 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{9F9FEF7D-0527-45C4-AC87-6AEEE7184FC5} 2012-04-28 15:35 - 2011-11-27 05:55 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{2F80ECB8-52B9-4301-A1E4-6C4D9B6D586D} 2012-04-28 15:32 - 2012-04-28 15:32 - 0793127 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_16_32_48.dmp 2012-04-28 15:32 - 2012-04-28 15:32 - 0781605 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_16_32_58.dmp 2012-04-28 15:32 - 2012-04-28 15:30 - 0782515 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_16_32_31.dmp 2012-04-28 15:30 - 2012-04-28 15:30 - 0789534 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_16_30_26.dmp 2012-04-28 15:30 - 2012-04-28 15:28 - 0797299 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_16_30_18.dmp 2012-04-28 15:28 - 2012-04-28 03:33 - 0785402 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_16_28_30.dmp 2012-04-28 03:37 - 2011-12-17 02:33 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{108705A9-1A2B-48C7-8C74-AAABD8AC6BD9} 2012-04-28 03:37 - 2011-07-01 05:07 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E6872542-D5F7-47CE-BD23-36F9DCF97098} 2012-04-28 03:33 - 2012-04-28 03:33 - 0795425 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_04_33_50.dmp 2012-04-28 03:33 - 2012-04-28 03:33 - 0792123 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_04_33_41.dmp 2012-04-28 03:33 - 2012-04-27 15:30 - 0784934 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_04_33_27.dmp 2012-04-27 17:59 - 2011-11-28 14:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{FB38EC1A-6AB6-4353-B878-388C7ADE7B96} 2012-04-27 17:59 - 2011-08-23 00:47 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{1F3721B6-A781-472F-83C7-9D27CBB578F9} 2012-04-27 17:57 - 2011-10-10 03:21 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{C5188DF6-F7BA-4E8B-8821-A60698DA82CB} 2012-04-27 17:57 - 2011-09-08 01:49 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{B426DF39-4D50-4388-BE99-03CF16ED7379} 2012-04-27 17:39 - 2011-12-29 23:49 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{2D581EFE-4700-4CAA-9158-676BD12A40AB} 2012-04-27 17:39 - 2011-11-17 17:14 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{3E7DAE22-3ED5-4B4E-AF3E-EB59A4DFF1BC} 2012-04-27 15:33 - 2012-02-20 17:10 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{41F2DFE5-C6A2-421C-9EB2-3BDF470232C5} 2012-04-27 15:33 - 2011-09-23 00:20 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D4BAF2C8-0F63-4CF9-97D4-1876CC0AED1E} 2012-04-27 15:30 - 2012-04-27 15:30 - 0785538 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_16_30_53.dmp 2012-04-27 15:30 - 2012-04-27 15:30 - 0779102 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_16_30_45.dmp 2012-04-27 15:30 - 2012-04-27 15:21 - 0787218 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_16_30_27.dmp 2012-04-27 15:21 - 2012-04-27 15:21 - 0790918 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_16_21_45.dmp 2012-04-27 15:21 - 2012-04-27 15:21 - 0777732 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_16_21_53.dmp 2012-04-27 15:21 - 2012-04-27 13:02 - 0785328 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_16_21_24.dmp 2012-04-27 13:54 - 2012-03-28 18:26 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A8FEA25A-B4C5-4029-BA6D-14B2BA8B80F9} 2012-04-27 13:53 - 2011-09-22 20:16 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{5B1EEF44-10B1-4D58-AE44-908835AA8397} 2012-04-27 13:04 - 2012-02-22 14:02 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{CD6A5E9D-A60B-4FF1-ACD4-A961812B18B6} 2012-04-27 13:04 - 2011-09-19 23:11 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{8ED8CBAA-63EE-423E-B9A1-5526E88DE3A4} 2012-04-27 13:02 - 2012-04-27 13:02 - 0787169 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_14_02_33.dmp 2012-04-27 13:02 - 2012-04-27 13:02 - 0783207 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_14_02_22.dmp 2012-04-27 13:02 - 2012-04-27 05:46 - 0779859 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_14_02_03.dmp 2012-04-27 05:51 - 2011-09-07 23:52 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{95DFD585-DA13-428F-B394-2688CBAA8F88} 2012-04-27 05:51 - 2011-08-25 20:43 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{51E57184-713E-4E71-A8A2-1BA267E61EBD} 2012-04-27 05:46 - 2012-04-27 05:46 - 0792164 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_06_46_43.dmp 2012-04-27 05:46 - 2012-04-27 05:46 - 0789770 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_06_46_51.dmp 2012-04-27 05:46 - 2012-04-27 03:13 - 0790641 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_06_46_29.dmp 2012-04-27 03:16 - 2011-09-19 04:07 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{5DFEB043-46D2-4D8D-9863-77F088DA354A} 2012-04-27 03:15 - 2012-01-24 14:10 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D4FAEB01-F5EC-48DC-B88B-D0B90E307E26} 2012-04-27 03:13 - 2012-04-27 03:13 - 0795327 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_04_13_37.dmp 2012-04-27 03:13 - 2012-04-27 03:13 - 0789476 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_04_13_47.dmp 2012-04-27 03:13 - 2012-04-26 21:52 - 0792593 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_04_13_23.dmp 2012-04-26 23:52 - 2011-12-29 00:30 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{55DA07C6-E1F0-4E99-8DCC-132FB5D09D4A} 2012-04-26 23:52 - 2011-09-04 22:27 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{DFE1E5DF-D3A5-4447-8C60-F843DF81158C} 2012-04-26 21:57 - 2011-09-09 04:09 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{424DACEE-60F0-4829-B2C9-840C98C7738C} 2012-04-26 21:57 - 2011-09-05 20:00 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{C1C7A6EC-701E-41CC-88A1-162ACB714D1E} 2012-04-26 21:54 - 2012-03-16 02:27 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{04D8B1B1-16C2-4C26-BB7D-E457CA34D198} 2012-04-26 21:54 - 2011-11-24 05:29 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{7505BF48-DE75-4B24-A3D1-8C66AE470666} 2012-04-26 21:52 - 2012-04-26 21:52 - 0787727 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_26_22_52_25.dmp 2012-04-26 21:52 - 2012-04-26 21:51 - 0787204 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_26_22_52_16.dmp 2012-04-26 21:51 - 2012-04-26 12:58 - 0785994 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_26_22_51_59.dmp 2012-04-26 15:25 - 2011-12-13 05:51 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{46A188E6-A9CD-4819-A40B-588063915CE9} 2012-04-26 15:25 - 2011-06-27 14:47 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{CA922E3E-9C56-4BFD-B052-034CAB5CA1CE} 2012-04-26 13:00 - 2011-10-31 17:36 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{DCFAB97E-8821-465F-BB25-0E5C25000104} 2012-04-26 13:00 - 2011-08-26 20:10 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{0A9DAF1E-4D2B-4AFE-BB38-015559D64F2E} 2012-04-26 12:58 - 2012-04-26 12:58 - 0791752 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_26_13_58_14.dmp 2012-04-26 12:58 - 2012-04-26 12:57 - 0789490 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_26_13_58_05.dmp 2012-04-26 12:57 - 2012-04-26 00:04 - 0781966 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_26_13_57_48.dmp 2012-04-26 01:29 - 2011-10-15 18:20 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{B207130E-BE6F-4F84-99EC-D00D0D36EAD2} 2012-04-26 01:29 - 2011-08-23 20:14 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{8A7C4930-DF62-4A1E-BE63-18DA113D706E} 2012-04-26 00:48 - 2011-11-16 17:12 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{20612B03-EF2B-4E63-A563-1E1CFFCBDE4A} 2012-04-26 00:48 - 2011-08-27 04:28 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A4EA1576-8793-4475-A05B-C42EB59C6489} 2012-04-26 00:07 - 2011-02-19 15:56 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{859EAD84-BF9A-443F-8086-6AD1B44038D4} 2012-04-26 00:06 - 2011-08-11 08:14 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{811A91E9-233A-4944-B2E8-103A75AF0BB7} 2012-04-26 00:04 - 2012-04-26 00:03 - 0782730 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_26_01_04_01.dmp 2012-04-26 00:03 - 2012-04-26 00:03 - 0789468 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_26_01_03_53.dmp 2012-04-26 00:03 - 2012-04-25 13:12 - 0811648 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_26_01_03_33.dmp 2012-04-25 15:38 - 2011-08-18 15:27 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D1CA7815-275C-4288-8C42-5DAD0D8A3F3D} 2012-04-25 15:16 - 2010-06-25 23:31 - 0004996 ___AH C:\Users\pcwt5\Downloads\Wind Tool - Vessel Version_2.xls.crdownload 2012-04-25 15:15 - 2008-01-28 07:21 - 0007922 ___AH C:\Users\pcwt5\Downloads\convert.zip.crdownload 2012-04-25 13:22 - 2012-03-27 06:23 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{33D6AC9C-7D95-4B5B-95C5-5BBE9475A908} 2012-04-25 13:22 - 2011-12-09 03:19 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{B4B205DC-3D03-4B8F-BBDA-66795296BF89} 2012-04-25 13:12 - 2012-04-25 13:12 - 0785146 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_25_14_12_21.dmp 2012-04-25 13:12 - 2012-04-25 13:11 - 0795818 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_25_14_12_14.dmp 2012-04-25 13:11 - 2012-04-24 23:54 - 0794921 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_25_14_11_58.dmp 2012-04-24 23:58 - 2012-01-01 05:15 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D097A033-CFCB-4251-8AEE-22FAF638C6F2} 2012-04-24 23:56 - 2011-02-21 05:35 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E83F3566-3329-492C-9ED5-A2516B66BE04} 2012-04-24 23:54 - 2012-04-24 23:54 - 0782380 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_25_00_54_20.dmp 2012-04-24 23:54 - 2012-04-24 23:53 - 0794217 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_25_00_54_13.dmp 2012-04-24 23:53 - 2012-04-24 13:43 - 0781083 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_25_00_53_54.dmp 2012-04-24 13:48 - 2011-11-12 04:09 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{32B105ED-CE6C-4BF2-AD4D-09A76BFEC0B6} 2012-04-24 13:48 - 2011-05-31 02:07 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{4D5E7009-355F-4DC5-9B62-34906DC4B5E2} 2012-04-24 13:43 - 2012-04-24 13:43 - 0800330 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_24_14_43_53.dmp 2012-04-24 13:43 - 2012-04-24 13:42 - 0789013 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_24_14_43_44.dmp 2012-04-24 13:42 - 2012-04-19 21:57 - 0792872 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_24_14_42_51.dmp 2012-04-24 06:46 - 2011-10-28 23:56 - 0000000 ____D C:\Program Files (x86)\GridinSoft Trojan Killer 2012-04-24 06:27 - 2012-04-24 06:27 - 0000176 ___AH C:\Users\All Users\-iK09Ukc2QUuHdcr 2012-04-24 06:27 - 2012-04-24 06:27 - 0000176 ___AH C:\ProgramData\-iK09Ukc2QUuHdcr 2012-04-24 06:27 - 2011-02-18 00:48 - 0000256 ___AH C:\Users\All Users\iK09Ukc2QUuHdc 2012-04-24 06:27 - 2011-02-18 00:48 - 0000256 ___AH C:\ProgramData\iK09Ukc2QUuHdc 2012-04-24 06:27 - - 0000000 ___AH C:\Users\All Users\-iK09Ukc2QUuHdc 2012-04-24 06:27 - - 0000000 ___AH C:\ProgramData\-iK09Ukc2QUuHdc 2012-04-24 06:18 - 2012-05-01 19:49 - 0000000 ___AH C:\Users\All Users\-xNrcacGalCqvsv 2012-04-24 06:18 - 2012-05-01 19:49 - 0000000 ___AH C:\ProgramData\-xNrcacGalCqvsv 2012-04-24 06:18 - 2012-04-24 06:18 - 0000176 ___AH C:\Users\All Users\-xNrcacGalCqvsvr 2012-04-24 06:18 - 2012-04-24 06:18 - 0000176 ___AH C:\ProgramData\-xNrcacGalCqvsvr 2012-04-24 06:18 - 2011-01-14 17:48 - 0000256 ___AH C:\Users\All Users\xNrcacGalCqvsv 2012-04-24 06:18 - 2011-01-14 17:48 - 0000256 ___AH C:\ProgramData\xNrcacGalCqvsv 2012-04-24 03:24 - 2011-08-13 16:49 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{43AE9C61-05DE-4C91-853E-302F29661CCA} 2012-04-24 03:24 - 2011-04-01 16:43 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{97F48C24-A033-46DC-9CD8-ADCC8147FF21} 2012-04-24 03:23 - 2012-03-07 05:17 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{52996862-9F5F-4364-8E7A-2B9AF6018770} 2012-04-24 03:23 - 2011-09-09 13:21 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{C219EA38-300B-49BB-8F6F-9EC74DAB2307} 2012-04-23 15:23 - 2011-10-19 13:14 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{69164B96-39E7-4A76-80E2-026A0B147615} 2012-04-23 15:22 - 2012-02-22 14:01 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D6077CBC-A654-41DA-994E-592FD328ED83} 2012-04-23 03:22 - 2012-02-08 18:05 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{288B7964-2EFA-43AF-93CA-28D15B4C3392} 2012-04-23 03:22 - 2012-01-03 00:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{89D02B0C-C3DD-486B-A895-D2945C76DED4} 2012-04-23 03:22 - 2011-09-21 21:27 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{735FDAC4-2A2C-43EE-BA84-7A7399097F23} 2012-04-23 03:21 - 2012-02-11 07:24 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{29FF4DF6-8736-4AE0-AD15-062A7F1A748E} 2012-04-22 15:21 - 2011-12-22 14:47 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{722040FF-6460-45D1-8E32-7894DF0D9CCD} 2012-04-22 15:21 - 2011-05-07 16:00 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{C56441E2-8276-4920-85FB-0D31FD66FBD7} 2012-04-21 16:28 - 2012-01-02 06:50 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{5442258D-A63F-4949-8E15-DA761F238855} 2012-04-21 16:28 - 2011-10-25 02:29 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{199DE0D8-5874-43F0-8F47-76CBE3BACD1E} 2012-04-21 01:18 - 2011-09-20 16:54 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A1F149BD-6A28-4455-8460-7D1187E091F4} 2012-04-21 01:18 - 2011-09-12 18:40 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A4934BAF-31E7-4B74-B910-8AD120F4EC23} 2012-04-20 13:17 - 2011-07-15 04:58 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{4EA12E26-5A23-4697-A9EB-879467545178} 2012-04-20 13:16 - 2011-09-12 04:03 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{560730B6-ED93-48C1-ACE3-3594F6D781BD} 2012-04-19 22:29 - 2011-04-13 00:52 - 0021901 ___AH C:\Users\pcwt5\Downloads\apm495.zip 2012-04-19 22:25 - 2012-04-19 22:02 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{BF1DE36E-7F1C-45D1-839B-63F88C58528A} 2012-04-19 22:24 - 2011-10-20 01:15 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{91295554-F56C-4BE5-91FA-6C404F8567E2} 2012-04-19 22:02 - 2012-02-08 06:04 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{44C99892-68F9-4F98-83B7-D0B80B3F3FE1} 2012-04-19 22:02 - 2011-09-09 16:16 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{BF156C13-8B85-4654-A790-6F4D5A5C13C7} 2012-04-19 21:57 - 2012-04-19 21:57 - 0784965 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_19_22_57_32.dmp 2012-04-19 21:57 - 2012-04-19 21:57 - 0778389 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_19_22_57_24.dmp 2012-04-19 21:57 - 2012-04-19 13:22 - 0780438 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_19_22_57_00.dmp 2012-04-19 21:38 - 2012-04-08 16:35 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{0CB1BC80-E6B3-46D1-9779-C0996C454200} 2012-04-19 21:38 - 2011-12-14 18:06 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D43A8419-CABA-4A29-A1BC-CA0E948AD6ED} 2012-04-19 21:36 - 2011-11-03 06:21 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{18FF0A2E-8C82-42A7-BE9E-70AE7A2E5A04} 2012-04-19 21:36 - 2011-09-13 12:53 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{08F5D69C-7901-4EA1-98F6-430B2A2A0090} 2012-04-19 16:29 - 2011-09-28 20:09 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{22374D4D-7C80-4349-A0B0-810A102FBAA4} 2012-04-19 16:28 - 2011-10-17 13:27 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{8DC38F73-3245-4E8C-8520-8EA3D8E01718} 2012-04-19 16:05 - 2011-10-14 14:03 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{57DE47CF-F98C-410A-ADE5-621D3CCF8804} 2012-04-19 16:05 - 2011-09-29 05:07 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{CE54D447-7509-4B67-B89D-02B40C894469} 2012-04-19 13:52 - 2011-08-31 01:29 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{1F8F429B-0543-4311-944D-FC66DFFC77CA} 2012-04-19 13:52 - 2011-02-16 19:05 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{70D9BC37-A4C0-4621-81EA-BE7152FC10BA} 2012-04-19 13:28 - 2011-09-21 13:17 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{61C5B988-DA83-4CFF-9CF7-E85D312B28C1} 2012-04-19 13:27 - 2012-02-07 18:03 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{BDAE4FCC-714F-4B4C-A51F-E76F39F072C2} 2012-04-19 13:23 - 2011-09-29 20:10 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{03C8D5CD-2DCF-4CD6-9B0E-337EC43B7D4B} 2012-04-19 13:23 - 2011-08-23 23:43 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D9C5E915-63DA-4DFF-BCD0-B801B13F1323} 2012-04-19 13:22 - 2012-04-19 13:22 - 0790945 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_19_14_22_49.dmp 2012-04-19 13:22 - 2012-04-19 13:20 - 0796352 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_19_14_22_35.dmp 2012-04-19 13:20 - 2012-04-19 02:44 - 0784984 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_19_14_20_26.dmp 2012-04-19 02:45 - 2011-09-06 12:48 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E2678831-FABB-4C75-A42E-7102B09F3A98} 2012-04-19 02:44 - 2012-04-19 02:43 - 0790586 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_19_03_44_02.dmp 2012-04-19 02:44 - 2012-04-13 13:34 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{82BBDDD2-A80A-4DD3-9255-AA985EEB91B6} 2012-04-19 02:43 - 2012-04-19 02:42 - 0784060 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_19_03_43_47.dmp 2012-04-19 02:42 - 2012-04-18 22:23 - 0786154 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_19_03_42_09.dmp 2012-04-19 00:55 - 2011-09-07 20:17 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A53C9D78-AF14-4259-9481-FE19169F680A} 2012-04-19 00:55 - 2011-07-20 22:28 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{DA57205D-14AF-4E5A-8696-15769F382670} 2012-04-18 23:19 - 2011-10-14 02:54 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{FA0BE2EC-3860-4287-9113-6F7A1E2785A5} 2012-04-18 23:19 - 2011-10-12 01:02 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{1580ED82-76E1-4691-9FF8-0BDDDA1B5E38} 2012-04-18 22:26 - 2011-09-08 20:33 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{1B0B7B5F-8DDB-485F-8E1C-5FFE30CDCE10} 2012-04-18 22:25 - 2011-04-04 13:06 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{434C05BB-2966-4200-9BE4-7A2EB7C036FA} 2012-04-18 22:23 - 2012-04-18 22:23 - 0790901 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_18_23_23_33.dmp 2012-04-18 22:23 - 2012-04-18 22:23 - 0781542 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_18_23_23_42.dmp 2012-04-18 22:23 - 2012-04-18 13:11 - 0785757 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_18_23_23_09.dmp 2012-04-18 19:11 - 2010-11-12 19:19 - 11142912 ___AH C:\Users\pcwt5\Downloads\Adele_-_Someone_Like_You.pdf 2012-04-18 13:45 - 2011-08-23 23:43 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{87391CD7-E608-4341-BD74-FC3F999C0638} 2012-04-18 13:20 - 2011-09-08 13:02 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{B1C53AB1-B108-4FFB-8701-E86449390611} 2012-04-18 13:19 - 2011-09-28 23:17 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A67D1F11-FE4B-4F67-9F70-666689508F63} 2012-04-18 13:14 - 2012-04-18 03:26 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{58C575D5-4FC9-4DDA-BD09-3555E8BBE601} 2012-04-18 13:14 - 2012-02-12 07:26 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{210A9212-1CB2-404E-95EB-A560BAA7E532} 2012-04-18 13:11 - 2012-04-18 13:11 - 0795388 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_18_14_11_43.dmp 2012-04-18 13:11 - 2012-04-18 13:11 - 0786984 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_18_14_11_35.dmp 2012-04-18 13:11 - 2012-04-18 04:10 - 0783674 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_18_14_11_13.dmp 2012-04-18 05:31 - 2011-10-17 22:59 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{8C07C826-F6A0-485D-AFF7-1DF31D64F785} 2012-04-18 05:31 - 2011-08-24 14:26 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{AD848781-E807-4088-9396-E91826AAD135} 2012-04-18 04:15 - 2011-08-26 13:00 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{B2EFE5D9-FBB7-4843-8964-0FAB9F2822EE} 2012-04-18 04:14 - 2012-01-14 18:59 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{C4398CE3-91B5-42FA-8050-FAB92BE703C5} 2012-04-18 04:10 - 2012-04-18 04:10 - 0791872 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_18_05_10_28.dmp 2012-04-18 04:10 - 2012-04-18 04:10 - 0788883 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_18_05_10_20.dmp 2012-04-18 04:10 - 2012-04-17 23:50 - 0783495 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_18_05_10_06.dmp 2012-04-18 03:26 - 2011-12-11 17:48 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{C45CA3AA-5444-4611-AA4E-21287E16D560} 2012-04-18 03:26 - 2011-11-17 05:13 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{58B8A91A-DC0F-4FCF-9DAD-EB2B7AC1D5F5} 2012-04-17 23:54 - 2012-01-15 19:01 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{F4A00506-46BF-43AC-8B61-71EDEDEBDAD2} 2012-04-17 23:54 - 2011-08-07 14:51 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{F02C6E1F-1F2A-465D-B7E7-03190852C68F} 2012-04-17 23:50 - 2012-04-17 23:50 - 0785677 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_18_00_50_51.dmp 2012-04-17 23:50 - 2012-04-17 23:50 - 0784649 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_18_00_50_43.dmp 2012-04-17 23:50 - 2012-04-17 13:10 - 0781193 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_18_00_50_26.dmp 2012-04-17 14:49 - 2011-08-11 09:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{3F96A602-47B6-4B85-BFBF-54550569C44C} 2012-04-17 14:48 - 2011-11-09 16:05 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{7EEA07A1-22C7-4BAE-926B-21AAFA611CFE} 2012-04-17 13:18 - 2011-09-13 12:53 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{2DACD392-0E0F-4446-9FE2-96CDABD918EF} 2012-04-17 13:18 - 2011-08-20 18:36 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E18B719F-10C4-472B-9EFB-032FA7A63EFC} 2012-04-17 13:15 - 2011-09-27 13:05 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A32B6CDD-863D-40EE-95CB-33F06DEA0D44} 2012-04-17 13:14 - 2012-02-04 15:43 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{F176C6E3-46CE-46A0-B510-7010FDD1DE4D} 2012-04-17 13:11 - 2012-04-13 17:36 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{F3A19CE7-9943-44CF-832A-1FFCCC18FC72} 2012-04-17 13:10 - 2012-04-17 13:10 - 0786175 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_17_14_10_31.dmp 2012-04-17 13:10 - 2012-04-17 13:10 - 0785602 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_17_14_10_20.dmp 2012-04-17 13:10 - 2012-04-16 13:14 - 0787995 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_17_14_10_00.dmp 2012-04-17 05:49 - 2011-12-02 15:41 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{ABE57913-591E-46DF-AE23-7918AE6E8E39} 2012-04-17 05:49 - 2011-11-18 17:15 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E8001B5E-8B40-4597-9340-307654384186} 2012-04-16 14:03 - 2011-10-30 17:34 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{1489A46E-E4A1-427A-92D0-021AAA7D907A} 2012-04-16 14:02 - 2011-06-27 13:52 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{45365696-A885-4A1D-8B86-829555F8F299} 2012-04-16 13:17 - 2011-08-24 23:11 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{94DFC8FC-ED4D-4BC1-BCC8-1EF65E016879} 2012-04-16 13:16 - 2011-08-17 17:38 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{F0F60063-0DBF-4E48-B92E-348A294104CB} 2012-04-16 13:14 - 2012-04-16 13:14 - 0789595 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_16_14_14_30.dmp 2012-04-16 13:14 - 2012-04-16 13:14 - 0783185 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_16_14_14_40.dmp 2012-04-16 13:14 - 2012-04-15 15:15 - 0787549 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_16_14_14_11.dmp 2012-04-16 03:23 - 2011-09-17 13:24 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D4B70738-FE3E-4827-A789-AE711623858B} 2012-04-16 02:10 - 2011-10-12 23:47 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{2CB0EE03-B12D-4BCB-9196-805CF535872F} 2012-04-16 02:10 - 2011-08-25 23:49 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{491945EF-E879-40B7-8EE8-AA17301D70F5} 2012-04-15 15:23 - 2011-09-15 13:00 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{2748E8F8-0D87-4266-88FF-5921A7D0990A} 2012-04-15 15:22 - 2011-06-23 13:33 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{68CEE430-B38E-405B-8AC4-55A1C7B0C317} 2012-04-15 15:17 - 2011-06-12 04:58 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{5FF3E234-1531-4C6B-87EB-983894087982} 2012-04-15 15:17 - 2011-04-30 04:05 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{AF10622C-DBA9-48A2-B281-0572241D7946} 2012-04-15 15:14 - 2012-04-15 15:14 - 0785973 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_15_16_14_47.dmp 2012-04-15 15:14 - 2012-04-15 15:14 - 0779291 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_15_16_14_58.dmp 2012-04-15 15:14 - 2012-04-15 03:46 - 0782209 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_15_16_14_30.dmp 2012-04-15 06:50 - 2011-12-01 15:38 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E0D0AA84-6462-4F1B-A8D0-5574DFCF3007} 2012-04-15 06:49 - 2012-01-09 02:53 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{1E0D43D8-1EC0-4E4F-9F63-3CEB28890198} 2012-04-15 03:49 - 2011-12-01 03:37 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{67E0F8EA-7860-4AA6-8937-FE1DB5FCC905} 2012-04-15 03:49 - 2011-10-08 01:08 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{9A484E71-F550-451B-A73B-E86739E27EBD} 2012-04-15 03:46 - 2012-04-15 03:46 - 0783479 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_15_04_46_17.dmp 2012-04-15 03:46 - 2012-04-15 03:45 - 0790764 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_15_04_46_08.dmp 2012-04-15 03:45 - 2012-04-14 17:40 - 0778715 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_15_04_45_47.dmp 2012-04-14 17:41 - 2012-04-17 05:49 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{ABEBD130-82C7-4C49-A985-F3E48C1C6183} 2012-04-14 17:41 - 2012-01-18 14:10 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{CB7FE5B6-6AD3-4E38-B371-6894CE3B287D} 2012-04-14 17:40 - 2012-04-14 17:40 - 0780846 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_14_18_40_35.dmp 2012-04-14 17:40 - 2012-04-14 17:38 - 0785641 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_14_18_40_24.dmp 2012-04-14 17:38 - 2012-04-14 14:19 - 0790272 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_14_18_38_41.dmp 2012-04-14 16:09 - 2011-11-02 02:13 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{0FC923E6-D953-44D5-B39F-9FFDADC407A5} 2012-04-14 16:09 - 2011-04-07 13:17 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{0B556D15-FD19-438D-8B94-6E6D61B41BCA} 2012-04-14 14:52 - 2011-11-03 18:23 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{72A92459-7926-4922-BF6B-4463F8F80DC0} 2012-04-14 14:52 - 2011-09-06 21:06 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{5D47B65F-2F72-4B05-8D4D-48E8FD528978} 2012-04-14 14:23 - 2012-04-14 14:23 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{313F7EDF-4DF2-42A2-B895-0DA5AEDD31CC} 2012-04-14 14:23 - 2012-02-01 06:50 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{313D4C30-E78E-407A-920D-BBD688050117} 2012-04-14 14:19 - 2012-04-14 14:19 - 0787562 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_14_15_19_53.dmp 2012-04-14 14:19 - 2012-04-14 14:19 - 0787277 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_14_15_19_44.dmp 2012-04-14 14:19 - 2012-04-13 17:31 - 0784531 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_14_15_19_20.dmp 2012-04-14 05:22 - 2011-09-02 12:50 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{BF521969-D467-4031-A912-F52C09F8BDB3} 2012-04-14 05:21 - 2011-08-21 02:08 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{9840A383-5F1E-438D-9077-305671440D13} 2012-04-13 23:06 - 2011-12-23 14:48 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{81C5D2F1-0148-44C4-A76E-7C06AC1E192A} 2012-04-13 23:05 - 2012-04-04 01:17 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{9606C1EB-455B-4263-8ACE-2469480A4E09} 2012-04-13 17:41 - 2012-05-01 02:53 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{653DD3B9-D5AD-4AE9-9636-7C8FF0016088} 2012-04-13 17:41 - 2012-04-24 13:26 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{0067F58B-BB7D-4921-8415-A956CA5B91C2} 2012-04-13 17:36 - 2012-03-05 17:14 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A847926F-8746-4F4D-8509-DF3D811FD8C0} 2012-04-13 17:36 - 2011-09-28 13:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{F3965CFE-5CCE-438F-B5DF-B1439CF3E79B} 2012-04-13 17:31 - 2012-04-13 17:31 - 0790237 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_13_18_31_08.dmp 2012-04-13 17:31 - 2012-04-13 17:30 - 0791681 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_13_18_31_00.dmp 2012-04-13 17:30 - 2012-04-13 13:31 - 0778717 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_13_18_30_39.dmp 2012-04-13 13:35 - 2011-08-29 17:53 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E4DF7679-72FF-4292-8A85-FEF50CE70334} 2012-04-13 13:34 - 2012-02-11 19:25 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{828CCF63-AD4B-49B0-B936-BA2B43234980} 2012-04-13 13:31 - 2012-04-13 13:31 - 0784531 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_13_14_31_21.dmp 2012-04-13 13:31 - 2012-04-13 13:30 - 0792463 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_13_14_31_13.dmp 2012-04-13 13:30 - 2012-04-13 02:30 - 0790106 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_13_14_30_54.dmp 2012-04-13 02:55 - 2012-01-29 18:45 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A4AB0C19-B51B-426E-83BB-08D24A444C79} 2012-04-13 02:30 - 2012-04-13 02:29 - 0785607 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_13_03_30_05.dmp 2012-04-13 02:29 - 2012-04-13 02:29 - 0791112 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_13_03_29_57.dmp 2012-04-13 02:29 - 2012-04-12 20:20 - 0783487 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_13_03_29_39.dmp 2012-04-12 20:20 - 2012-04-12 20:19 - 0779458 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_21_20_07.dmp 2012-04-12 20:19 - 2012-04-12 20:19 - 0782612 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_21_19_57.dmp 2012-04-12 20:19 - 2012-04-12 19:36 - 0781808 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_21_19_42.dmp 2012-04-12 19:51 - 2012-02-28 07:34 - 2382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2012-04-12 19:51 - 2012-02-28 06:56 - 0085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll 2012-04-12 19:51 - 2012-02-28 06:48 - 1345536 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2012-04-12 19:51 - 2012-02-28 06:45 - 2311168 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2012-04-12 19:51 - 2012-02-28 06:42 - 0096256 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll 2012-04-12 19:51 - 2012-02-28 01:52 - 2382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2012-04-12 19:51 - 2012-02-28 01:18 - 0065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2012-04-12 19:51 - 2012-02-28 01:09 - 1103360 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2012-04-12 19:51 - 2012-02-28 01:06 - 1799168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2012-04-12 19:51 - 2012-02-28 01:03 - 0072704 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2012-04-12 19:51 - 2012-02-11 00:00 - 9705984 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2012-04-12 19:51 - 2012-02-11 00:00 - 2144256 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2012-04-12 19:51 - 2012-02-11 00:00 - 1792000 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2012-04-12 19:51 - 2012-02-11 00:00 - 17790976 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2012-04-12 19:51 - 2012-02-11 00:00 - 12281856 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2012-04-12 19:51 - 2012-02-11 00:00 - 10888704 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2012-04-12 19:51 - 2012-02-11 00:00 - 0248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2012-04-12 19:51 - 2012-02-11 00:00 - 0176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2012-04-12 19:51 - 2011-05-03 05:21 - 1493504 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl 2012-04-12 19:51 - 2011-05-03 04:50 - 1427456 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2012-04-12 19:51 - 2010-12-21 06:16 - 1390080 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll 2012-04-12 19:51 - 2010-12-21 05:38 - 1127424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2012-04-12 19:51 - 2009-07-14 01:41 - 0237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll 2012-04-12 19:51 - 2009-07-14 01:38 - 0818688 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll 2012-04-12 19:51 - 2009-07-14 01:16 - 0231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2012-04-12 19:51 - 2009-07-14 01:14 - 0716800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2012-04-12 19:36 - 2012-04-12 19:36 - 0785453 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_20_36_36.dmp 2012-04-12 19:36 - 2012-04-12 19:35 - 0786966 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_20_36_26.dmp 2012-04-12 19:35 - 2012-04-12 14:08 - 0780589 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_20_35_14.dmp 2012-04-12 19:25 - 2011-01-12 01:12 - 0000000 ____D C:\53d69b7d3999c7df3d785d5d 2012-04-12 19:23 - 2009-07-14 01:41 - 5504880 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe 2012-04-12 19:23 - 2009-07-14 01:16 - 3958128 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2012-04-12 19:23 - 2009-07-14 01:16 - 3902320 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2012-04-12 19:16 - 2010-09-23 00:36 - 0022896 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\fs_rec.sys 2012-04-12 19:16 - 2009-07-14 01:41 - 0220672 ____A (Microsoft Corporation) C:\Windows\System32\wintrust.dll 2012-04-12 19:16 - 2009-07-14 01:38 - 0080896 ____A (Microsoft Corporation) C:\Windows\System32\imagehlp.dll 2012-04-12 19:16 - 2009-07-14 01:33 - 0005120 ____A (Microsoft Corporation) C:\Windows\System32\wmi.dll 2012-04-12 19:16 - 2009-07-14 01:16 - 0172544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2012-04-12 19:16 - 2009-07-14 01:14 - 0158720 ____A (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2012-04-12 19:16 - 2009-07-14 01:11 - 0005120 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll 2012-04-12 14:54 - 2011-08-05 09:05 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{9BED58FD-B02C-4C85-8924-70F1E62D2FCD} 2012-04-12 14:08 - 2012-04-12 14:08 - 0792474 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_15_08_21.dmp 2012-04-12 14:08 - 2012-04-12 14:07 - 0784566 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_15_08_13.dmp 2012-04-12 14:07 - 2012-04-12 03:45 - 0788513 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_15_07_57.dmp 2012-04-12 07:39 - 2012-04-28 17:16 - 3422506 ___AH C:\Users\pcwt5\Downloads\20120406_123023.jpg 2012-04-12 03:45 - 2012-04-12 03:45 - 0779361 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_04_45_16.dmp 2012-04-12 03:45 - 2012-04-12 03:44 - 0796109 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_04_45_01.dmp 2012-04-12 03:44 - 2012-04-12 03:34 - 0785387 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_04_44_10.dmp 2012-04-12 03:34 - 2012-04-12 03:34 - 0784170 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_04_34_50.dmp 2012-04-12 03:34 - 2012-04-12 03:34 - 0778844 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_04_34_41.dmp 2012-04-12 03:34 - 2012-04-12 02:48 - 0781696 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_04_34_22.dmp 2012-04-12 02:53 - 2011-08-26 20:07 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{0A0DBCC2-1F4A-4CC9-B8A7-91036D32088E} 2012-04-12 02:48 - 2012-04-12 02:48 - 0791094 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_03_48_19.dmp 2012-04-12 02:48 - 2012-04-12 02:47 - 0786174 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_03_48_10.dmp 2012-04-12 02:47 - 2012-04-11 23:40 - 0786894 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_03_47_53.dmp 2012-04-11 23:40 - 2012-04-11 23:40 - 0791475 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_00_40_15.dmp 2012-04-11 23:40 - 2012-04-11 23:38 - 0783811 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_00_40_01.dmp 2012-04-11 23:38 - 2012-04-11 13:43 - 0788472 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_00_38_37.dmp 2012-04-11 21:54 - 2009-12-22 10:55 - 0000000 ___HD C:\Users\pcwt5\AppData\Roaming\Ihyl 2012-04-11 14:26 - 2012-02-23 22:12 - 0055040 ____A C:\Windows\SysWOW64\aylzcsni.dat 2012-04-11 14:26 - 2011-08-30 23:05 - 0365824 ____A C:\Windows\SysWOW64\jnjvffgk.dat 2012-04-11 14:26 - 2009-07-14 01:16 - 0041216 ____A C:\Windows\SysWOW64\ussqpxhp.dat 2012-04-11 14:26 - 2009-07-14 01:16 - 0036608 ____A C:\Windows\SysWOW64\yffknixm.dat 2012-04-11 14:26 - 2009-07-14 01:15 - 0154368 ____A C:\Windows\SysWOW64\hcvhdhoj.dat 2012-04-11 14:26 - 2009-07-14 01:15 - 0136960 ____A C:\Windows\SysWOW64\itrevakl.dat 2012-04-11 14:26 - 2009-07-14 01:15 - 0034048 ____A C:\Windows\SysWOW64\ifoaxtlp.dat 2012-04-11 14:26 - 2009-07-14 01:09 - 0058112 ____A C:\Windows\SysWOW64\nlwpporx.dat 2012-04-11 14:00 - 2011-08-31 02:18 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{90E20183-D7B9-4275-967C-40903175EBC7} 2012-04-11 13:54 - 2012-04-24 13:39 - 0000000 ___HD C:\Users\All Users\windows-updater 2012-04-11 13:54 - 2012-04-24 13:39 - 0000000 ___HD C:\ProgramData\windows-updater 2012-04-11 13:54 - - 0000436 ____A C:\Windows\Tasks\At1.job 2012-04-11 13:43 - 2012-04-11 13:43 - 0790464 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_11_14_43_24.dmp 2012-04-11 13:43 - 2012-04-11 13:42 - 0786434 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_11_14_43_13.dmp 2012-04-11 13:42 - 2012-04-11 01:57 - 0789746 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_11_14_42_55.dmp 2012-04-11 01:59 - 2011-10-05 20:10 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{CEA53D8F-D31B-4B37-A5BE-6E93364126A7} 2012-04-11 01:57 - 2012-04-11 01:57 - 0790605 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_11_02_57_44.dmp 2012-04-11 01:57 - 2012-04-11 01:57 - 0785523 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_11_02_57_56.dmp 2012-04-11 01:57 - 2012-04-10 13:12 - 0787417 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_11_02_57_27.dmp 2012-04-10 13:14 - 2012-03-07 05:17 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E7BD7768-28D8-4205-ADB3-1FBC269072A2} 2012-04-10 13:12 - 2012-04-10 13:12 - 0787851 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_10_14_12_44.dmp 2012-04-10 13:12 - 2012-04-10 13:12 - 0780642 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_10_14_12_52.dmp 2012-04-10 13:12 - 2012-04-09 22:10 - 0793712 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_10_14_12_27.dmp 2012-04-09 22:37 - 2009-07-14 01:40 - 0000000 __ASH C:\Windows\System32\dds_trash_log.cmd 2012-04-09 22:36 - 2012-05-02 04:44 - 0000000 ____D C:\Windows\system64 2012-04-09 22:10 - 2012-04-09 22:10 - 0786582 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_09_23_10_31.dmp 2012-04-09 22:10 - 2012-04-09 22:09 - 0800009 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_09_23_10_22.dmp 2012-04-09 22:09 - 2012-04-09 21:53 - 0799121 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_09_23_09_55.dmp 2012-04-09 21:56 - 2012-03-07 17:19 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{01DD07FF-A88C-4A6C-81D8-1FE1CC4A21A3} 2012-04-09 21:53 - 2012-04-09 21:53 - 0792488 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_09_22_53_45.dmp 2012-04-09 21:53 - 2012-04-09 21:53 - 0785514 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_09_22_53_52.dmp 2012-04-09 21:53 - 2012-04-09 02:37 - 0787627 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_09_22_53_23.dmp 2012-04-09 04:35 - 2011-12-11 05:48 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{CCC4CAEB-E454-49EB-A9D8-FC7F99F080EE} 2012-04-09 02:37 - 2012-04-09 02:37 - 0789330 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_09_03_37_29.dmp 2012-04-09 02:37 - 2012-04-09 02:37 - 0788739 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_09_03_37_20.dmp 2012-04-09 02:37 - 2012-04-08 16:06 - 0782053 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_09_03_37_03.dmp 2012-04-08 17:42 - 2009-10-18 17:32 - 0057344 ___AH C:\Users\pcwt5\Downloads\Amended Checklist-PreTransferofBunkers Final version.doc 2012-04-08 16:35 - 2011-08-10 07:47 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{0CA70EB3-809F-41A8-8B31-75A13DC848CD} 2012-04-08 16:06 - 2012-04-08 16:06 - 0780079 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_08_17_06_34.dmp 2012-04-08 16:06 - 2012-04-08 16:05 - 0776152 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_08_17_06_26.dmp 2012-04-08 16:05 - 2012-04-08 01:32 - 0782915 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_08_17_05_59.dmp 2012-04-08 04:34 - 2012-04-23 03:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{28AD863C-A57E-4225-BD13-8A98E22F16D5} 2012-04-08 01:32 - 2012-04-08 01:32 - 0791776 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_08_02_32_46.dmp 2012-04-08 01:32 - 2012-04-08 01:32 - 0791288 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_08_02_32_37.dmp 2012-04-08 01:32 - 2012-04-07 16:31 - 0790229 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_08_02_32_05.dmp 2012-04-07 16:34 - 2011-08-27 16:35 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{C0E83092-E37B-4227-A187-DAD3BE5D9EF6} 2012-04-07 16:31 - 2012-04-07 16:31 - 0789654 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_07_17_31_36.dmp 2012-04-07 16:31 - 2012-04-07 16:30 - 0787146 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_07_17_31_29.dmp 2012-04-07 16:30 - 2012-04-06 16:53 - 0785691 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_07_17_30_57.dmp ============ 3 Months Modified Files and Folders ============= 2012-05-07 00:06 - 2012-05-06 14:33 - 0000000 ____D C:\FRST 2012-05-06 22:58 - 2011-01-11 14:03 - 0282246 ____A C:\aaw7boot.log 2012-05-06 22:58 - 2009-12-22 18:51 - 3094622208 __ASH C:\hiberfil.sys 2012-05-06 22:58 - 2009-07-14 04:45 - 0493072 ____A C:\Windows\System32\FNTCACHE.DAT 2012-05-06 22:38 - 2010-05-16 21:09 - 4577706 ____A C:\Windows\ntbtlog.txt 2012-05-06 14:28 - 2012-02-05 11:20 - 0000000 ___HD C:\Users\All Users\Recovery 2012-05-06 14:28 - 2012-02-05 11:20 - 0000000 ___HD C:\ProgramData\Recovery 2012-05-02 04:43 - 2012-05-02 04:43 - 0012872 ____A (SurfRight B.V.) C:\Windows\System32\bootdelete.exe 2012-05-02 04:43 - 2012-05-02 04:43 - 0003956 ____A C:\Windows\System32\.crusader 2012-05-02 04:43 - 2012-05-02 03:52 - 0027936 ____A C:\Windows\System32\Drivers\hitmanpro36.sys 2012-05-02 04:43 - 2012-05-02 03:51 - 0000000 ____D C:\Users\All Users\HitmanPro 2012-05-02 04:43 - 2012-05-02 03:51 - 0000000 ____D C:\ProgramData\HitmanPro 2012-05-02 03:52 - 2012-05-02 03:52 - 0001893 ____A C:\Users\Public\Desktop\HitmanPro.lnk 2012-05-02 03:52 - 2012-05-02 03:51 - 0000000 ____D C:\Program Files\HitmanPro 2012-05-02 02:27 - 2012-05-02 02:26 - 8252840 ____A (SurfRight B.V.) C:\Users\pcwt5\Desktop\HitmanPro36_x64.exe 2012-05-02 01:29 - 2012-05-02 01:28 - 0000469 ____A C:\rkill.log 2012-05-02 01:24 - 2012-05-02 01:24 - 1008141 ____A C:\Users\pcwt5\Downloads\iExplore.exe 2012-05-02 01:21 - 2012-05-02 01:21 - 0784039 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_02_02_21_25.dmp 2012-05-02 01:21 - 2012-05-02 01:21 - 0782766 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_02_02_21_08.dmp 2012-05-02 01:21 - 2012-05-02 01:21 - 0781691 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_02_02_21_18.dmp 2012-05-02 01:20 - 2009-07-14 04:45 - 0010096 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2012-05-02 01:20 - 2009-07-14 04:45 - 0010096 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2012-05-02 01:19 - 2009-12-03 01:34 - 1990266 ____A C:\Windows\WindowsUpdate.log 2012-05-02 01:17 - 2011-09-04 04:31 - 0000029 ____A C:\Windows\SysWOW64\TempWmicBatchFile.bat 2012-05-02 01:12 - 2012-05-02 01:12 - 0000000 ____D C:\Users\pcwt5\AppData\Local\{F5353179-622E-47AA-9532-7FD204C7B70C} 2012-05-02 01:12 - 2012-05-02 01:11 - 0000000 ____D C:\Users\pcwt5\AppData\Local\{933A7BA7-EA40-4E13-9414-F3E2E90F3588} 2012-05-02 01:11 - 2012-05-01 22:42 - 0000184 ____A C:\Users\All Users\-XWE3mXJBRcdem8r 2012-05-02 01:11 - 2012-05-01 22:42 - 0000184 ____A C:\ProgramData\-XWE3mXJBRcdem8r 2012-05-02 01:11 - 2012-05-01 22:42 - 0000000 ____A C:\Users\All Users\-XWE3mXJBRcdem8 2012-05-02 01:11 - 2012-05-01 22:42 - 0000000 ____A C:\ProgramData\-XWE3mXJBRcdem8 2012-05-02 01:11 - 2011-09-25 02:08 - 0000000 ___HD C:\Users\pcwt5\AppData\Roaming\Raptr 2012-05-02 01:11 - 2010-03-27 08:20 - 0000000 ___HD C:\Users\pcwt5\Tracing 2012-05-02 01:10 - 2012-01-27 20:22 - 0000000 ___HD C:\Users\All Users\Anti-phishing Domain Advisor 2012-05-02 01:10 - 2012-01-27 20:22 - 0000000 ___HD C:\ProgramData\Anti-phishing Domain Advisor 2012-05-02 01:09 - 2009-12-03 01:36 - 0000908 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2012-05-02 01:08 - 2011-03-07 02:30 - 0000000 ____A C:\Windows\SysWOW64\com.smslimited.sam.admin-init.log.lck 2012-05-02 01:07 - 2012-05-02 01:07 - 0803839 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_02_02_07_47.dmp 2012-05-02 01:07 - 2012-05-02 01:07 - 0800420 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_02_02_07_39.dmp 2012-05-02 01:07 - 2012-05-02 01:07 - 0792075 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_02_02_07_24.dmp 2012-05-02 01:07 - 2011-03-07 02:30 - 0019877 ____A C:\Windows\SysWOW64\com.smslimited.iforms-init.log 2012-05-02 01:07 - 2011-03-07 02:30 - 0000000 ____A C:\Windows\SysWOW64\smk.startup.temp.log.lck 2012-05-02 01:07 - 2011-03-07 02:30 - 0000000 ____A C:\Windows\SysWOW64\smk.startup.temp.log 2012-05-02 01:07 - 2011-03-07 02:30 - 0000000 ____A C:\Windows\SysWOW64\com.smslimited.iforms-init.log.lck 2012-05-02 01:07 - 2010-12-30 23:26 - 0001051 ____A C:\Windows\SysWOW64\tversity.cookies 2012-05-02 01:07 - 2010-12-30 23:23 - 0003492 ____A C:\Windows\SysWOW64\TVersityMediaServer.log 2012-05-02 01:07 - 2009-07-14 05:08 - 0000006 ___AH C:\Windows\Tasks\SA.DAT 2012-05-02 01:07 - 2009-07-14 04:51 - 0188919 ____A C:\Windows\setupact.log 2012-05-02 01:06 - 2009-12-03 02:11 - 0457992 ____A C:\Windows\PFRO.log 2012-05-02 00:35 - 2009-12-03 01:36 - 0000912 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2012-05-02 00:35 - 2009-07-14 03:20 - 0000000 ___HD C:\Windows\tracing 2012-05-01 22:41 - 2010-03-29 16:02 - 0000000 ___HD C:\Users\pcwt5\AppData\Roaming\Skype 2012-05-01 22:22 - 2012-05-01 22:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E85104C4-2416-430E-BAE8-FF63DD741C55} 2012-05-01 22:22 - 2012-05-01 22:03 - 0000256 ___AH C:\Users\All Users\XWE3mXJBRcdem8 2012-05-01 22:22 - 2012-05-01 22:03 - 0000256 ___AH C:\ProgramData\XWE3mXJBRcdem8 2012-05-01 22:18 - 2012-05-01 22:18 - 0799081 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_23_18_28.dmp 2012-05-01 22:18 - 2012-05-01 22:18 - 0791957 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_23_18_36.dmp 2012-05-01 22:18 - 2012-05-01 22:18 - 0782060 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_23_18_09.dmp 2012-05-01 22:03 - 2012-05-01 22:03 - 0222208 ___AH C:\Users\All Users\XWE3mXJBRcdem8.exe_1336347353.arl 2012-05-01 22:03 - 2012-05-01 22:03 - 0222208 ___AH C:\ProgramData\XWE3mXJBRcdem8.exe_1336347353.arl 2012-05-01 22:02 - 2012-05-01 22:02 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{05F87219-D93B-418A-BEEC-9D2CACF2503E} 2012-05-01 21:39 - 2012-05-01 21:39 - 0789979 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_22_39_58.dmp 2012-05-01 21:39 - 2012-05-01 21:39 - 0789956 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_22_39_30.dmp 2012-05-01 21:39 - 2012-05-01 21:39 - 0787085 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_22_39_51.dmp 2012-05-01 21:25 - 2012-05-01 21:25 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{AB0E2318-2FD3-4888-92CE-51BE7B0E5478} 2012-05-01 20:52 - 2012-05-01 20:52 - 0790536 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_52_55.dmp 2012-05-01 20:52 - 2012-05-01 20:52 - 0785009 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_52_48.dmp 2012-05-01 20:52 - 2012-05-01 20:52 - 0781895 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_52_27.dmp 2012-05-01 20:41 - 2012-05-01 20:41 - 0791043 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_41_46.dmp 2012-05-01 20:41 - 2012-05-01 20:41 - 0783783 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_41_53.dmp 2012-05-01 20:41 - 2012-05-01 20:41 - 0778775 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_41_34.dmp 2012-05-01 20:39 - 2012-05-01 20:39 - 0789095 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_39_01.dmp 2012-05-01 20:38 - 2012-05-01 20:38 - 0789024 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_38_27.dmp 2012-05-01 20:38 - 2012-05-01 20:38 - 0787807 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_38_52.dmp 2012-05-01 20:35 - 2012-05-01 20:35 - 0787958 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_35_19.dmp 2012-05-01 20:35 - 2012-05-01 20:35 - 0787098 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_35_32.dmp 2012-05-01 20:35 - 2012-05-01 20:35 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{1E9708A6-62C2-47A0-A8BF-D4111CAE3C12} 2012-05-01 20:32 - 2012-05-01 20:32 - 0791267 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_32_53.dmp 2012-05-01 20:30 - 2012-05-01 20:30 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A2975F85-EFFA-4B75-B6EB-38911A3DE0A5} 2012-05-01 20:27 - 2012-05-01 20:27 - 0789876 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_27_35.dmp 2012-05-01 20:27 - 2012-05-01 20:27 - 0781249 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_27_28.dmp 2012-05-01 20:27 - 2012-05-01 20:27 - 0776042 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_21_27_12.dmp 2012-05-01 19:57 - 2012-05-01 19:49 - 0000256 ___AH C:\Users\All Users\oVQukyH52o8jiV 2012-05-01 19:57 - 2012-05-01 19:49 - 0000256 ___AH C:\ProgramData\oVQukyH52o8jiV 2012-05-01 19:57 - 2012-05-01 19:49 - 0000000 ___AH C:\Users\All Users\-oVQukyH52o8jiV 2012-05-01 19:57 - 2012-05-01 19:49 - 0000000 ___AH C:\ProgramData\-oVQukyH52o8jiV 2012-05-01 19:51 - 2012-05-01 19:51 - 0783890 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_20_51_07.dmp 2012-05-01 19:51 - 2012-05-01 19:51 - 0777714 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_20_51_00.dmp 2012-05-01 19:50 - 2012-05-01 19:50 - 0795799 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_20_50_46.dmp 2012-05-01 19:49 - 2012-05-01 19:49 - 0222208 ___AH C:\Users\All Users\oVQukyH52o8jiV.exe_1336347353.arl 2012-05-01 19:49 - 2012-05-01 19:49 - 0222208 ___AH C:\ProgramData\oVQukyH52o8jiV.exe_1336347353.arl 2012-05-01 19:49 - 2012-05-01 19:49 - 0000655 ___AH C:\Users\pcwt5\Desktop\Data_Recovery.lnk 2012-05-01 19:49 - 2012-05-01 19:49 - 0000184 ___AH C:\Users\All Users\-oVQukyH52o8jiVr 2012-05-01 19:49 - 2012-05-01 19:49 - 0000184 ___AH C:\ProgramData\-oVQukyH52o8jiVr 2012-05-01 19:49 - 2012-05-01 19:49 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D18AF664-8FB8-4D02-BF01-B78A88226172} 2012-05-01 19:49 - 2012-05-01 19:49 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{021B4ECB-56E3-4844-B9EA-43E59C6576F6} 2012-05-01 19:43 - 2012-05-01 19:43 - 0782571 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_20_43_06.dmp 2012-05-01 19:43 - 2012-05-01 19:42 - 0791981 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_20_42_58.dmp 2012-05-01 19:42 - 2012-05-01 19:42 - 0786686 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_20_42_39.dmp 2012-05-01 19:18 - 2012-05-01 19:18 - 0786934 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_20_18_40.dmp 2012-05-01 19:18 - 2012-05-01 19:18 - 0786841 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_20_18_19.dmp 2012-05-01 19:18 - 2012-05-01 19:18 - 0783683 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_20_18_33.dmp 2012-05-01 19:08 - 2012-05-01 19:08 - 0792937 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_20_08_26.dmp 2012-05-01 19:08 - 2012-05-01 19:08 - 0785043 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_20_08_42.dmp 2012-05-01 19:08 - 2012-05-01 19:08 - 0782170 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_20_08_50.dmp 2012-05-01 19:07 - 2012-05-01 19:07 - 0006512 ____H C:\bootsqm.dat 2012-05-01 18:42 - 2010-03-27 17:31 - 0000000 ____D C:\Users\Public\Desktop\MyDSC2 2012-05-01 15:54 - 2012-05-01 15:53 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E78D314A-0FF3-45F2-AD60-640F565F4906} 2012-05-01 15:53 - 2012-05-01 15:52 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{1ADA076C-41D3-42E4-B40A-4D9EFF4CA05A} 2012-05-01 15:50 - 2012-05-01 15:50 - 0791512 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_16_50_06.dmp 2012-05-01 15:49 - 2012-05-01 15:49 - 0801095 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_16_49_37.dmp 2012-05-01 15:49 - 2012-05-01 15:49 - 0785722 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_16_49_59.dmp 2012-05-01 15:15 - 2012-05-01 15:15 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{3B207406-5269-40F8-BFCB-F0B8BB77D266} 2012-05-01 15:15 - 2012-05-01 15:14 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{075CAA42-8CEA-4FBB-BDFB-1ED928DE1D1F} 2012-05-01 15:12 - 2012-05-01 15:12 - 0796427 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_16_12_45.dmp 2012-05-01 15:12 - 2012-05-01 15:12 - 0791552 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_16_12_52.dmp 2012-05-01 15:12 - 2012-05-01 15:12 - 0790742 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_16_12_28.dmp 2012-05-01 15:12 - 2012-04-11 13:54 - 0000436 ____A C:\Windows\Tasks\At1.job 2012-05-01 13:29 - 2012-05-01 13:29 - 0156547 ___AH C:\Users\pcwt5\Downloads\quarterly Fuel Bill till 10-4-2012 (2).pdf 2012-05-01 13:29 - 2012-05-01 13:29 - 0156547 ___AH C:\Users\pcwt5\Downloads\quarterly Fuel Bill till 10-4-2012 (1).pdf 2012-05-01 13:28 - 2010-04-02 21:18 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\Adobe 2012-05-01 13:27 - 2012-05-01 13:27 - 0156547 ___AH C:\Users\pcwt5\Downloads\quarterly Fuel Bill till 10-4-2012.pdf 2012-05-01 13:10 - 2012-05-01 13:10 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{AB03D844-CA98-4B74-BB32-D3D70394EE8B} 2012-05-01 13:10 - 2012-05-01 13:10 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{32B36069-735D-4CCA-A776-29B3565FE3DA} 2012-05-01 13:07 - 2012-05-01 13:07 - 0800497 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_14_07_33.dmp 2012-05-01 13:07 - 2012-05-01 13:07 - 0798888 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_14_07_50.dmp 2012-05-01 13:07 - 2012-05-01 13:07 - 0790157 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_14_07_57.dmp 2012-05-01 06:31 - 2012-01-03 14:12 - 0000000 ___HD C:\smslimited 2012-05-01 06:31 - 2010-06-15 22:48 - 0000000 ___HD C:\__smslimited 2012-05-01 06:31 - 2010-03-27 20:39 - 0002074 ___AH C:\Users\pcwt5\Documents\Default.rdp 2012-05-01 02:53 - 2012-05-01 02:53 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{64FD770E-160E-4BBA-A849-9CB159B9659F} 2012-05-01 02:53 - 2012-05-01 02:52 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{52FF098F-2F01-4B83-834C-A9FDCDDDC138} 2012-05-01 02:50 - 2012-05-01 02:50 - 0792921 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_03_50_19.dmp 2012-05-01 02:50 - 2012-05-01 02:50 - 0789216 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_03_50_28.dmp 2012-05-01 02:50 - 2012-05-01 02:50 - 0783036 ____A C:\Windows\SysWOW64\(null)AAWService__2012_05_01_03_50_03.dmp 2012-04-30 17:55 - 2012-04-30 17:55 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{2EDE731F-374B-403F-8E55-0241F8E58F86} 2012-04-30 17:55 - 2012-04-30 17:55 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{03FA506E-9631-44BD-85BD-A1A27E16823E} 2012-04-30 17:51 - 2012-04-30 17:51 - 0793299 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_18_51_15.dmp 2012-04-30 17:51 - 2012-04-30 17:51 - 0789666 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_18_51_22.dmp 2012-04-30 17:51 - 2012-04-30 17:51 - 0781664 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_18_51_00.dmp 2012-04-30 15:32 - 2012-04-30 15:32 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{33600838-AA50-4D26-969E-1E4F5C46B515} 2012-04-30 15:32 - 2012-04-30 15:32 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{2FEEE62A-78AF-4546-B0C0-16D9AE495017} 2012-04-30 15:25 - 2012-04-30 15:25 - 0789150 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_16_25_37.dmp 2012-04-30 15:25 - 2012-04-30 15:25 - 0786950 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_16_25_19.dmp 2012-04-30 15:25 - 2012-04-30 15:25 - 0783489 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_16_25_44.dmp 2012-04-30 14:29 - 2012-04-30 14:29 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{C2CF7053-C654-42C5-B309-866771921306} 2012-04-30 14:29 - 2012-04-30 14:29 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{79B31A9F-FCD1-472C-A50D-7A3904E78E2B} 2012-04-30 13:12 - 2012-04-30 13:11 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D3F65FE2-0574-47C8-8C19-FB662CF90ED6} 2012-04-30 13:11 - 2012-04-30 13:11 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{9EDF099C-70C3-4236-B234-870275134302} 2012-04-30 13:09 - 2012-04-30 13:09 - 0801382 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_14_09_20.dmp 2012-04-30 13:09 - 2012-04-30 13:09 - 0789164 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_14_09_12.dmp 2012-04-30 13:08 - 2012-04-30 13:08 - 0782357 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_14_08_56.dmp 2012-04-30 04:13 - 2012-04-30 04:13 - 0070449 ___AH C:\Users\pcwt5\Downloads\PR (1).jpg 2012-04-30 04:12 - 2012-04-30 04:12 - 0070449 ___AH C:\Users\pcwt5\Downloads\PR.jpg 2012-04-30 04:03 - 2012-04-30 04:02 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{2FBE040E-C82D-4463-ACD4-D9124F0D8E1E} 2012-04-30 04:02 - 2012-04-30 04:02 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{4CD64D5C-8771-458B-BCCF-D175B872D2EE} 2012-04-30 03:59 - 2012-04-30 03:59 - 0786827 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_04_59_42.dmp 2012-04-30 03:59 - 2012-04-30 03:59 - 0785659 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_04_59_03.dmp 2012-04-30 03:59 - 2012-04-30 03:59 - 0779775 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_04_59_34.dmp 2012-04-30 01:44 - 2012-04-30 01:43 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{CC418A48-DD5A-486B-A7F4-CE0D2B83E4E8} 2012-04-30 01:43 - 2012-04-30 01:43 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D6AEC580-1A07-4B3A-BCE8-DD7E41DE6790} 2012-04-30 01:40 - 2012-04-30 01:40 - 0785753 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_02_40_32.dmp 2012-04-30 01:40 - 2012-04-30 01:40 - 0781843 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_02_40_04.dmp 2012-04-30 01:40 - 2012-04-30 01:40 - 0778123 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_02_40_24.dmp 2012-04-30 01:28 - 2012-04-30 01:28 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{5FC3AE8E-E727-4BB0-921A-DEEF8FFE49AB} 2012-04-30 01:28 - 2012-04-30 01:28 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{576A53C0-CCD3-4BD2-A9C9-5B858017D6F8} 2012-04-30 01:24 - 2012-04-30 01:24 - 0791463 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_02_24_11.dmp 2012-04-30 01:24 - 2012-04-30 01:24 - 0786782 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_02_24_02.dmp 2012-04-30 01:23 - 2012-04-30 01:23 - 0785503 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_30_02_23_38.dmp 2012-04-29 19:26 - 2012-04-29 19:26 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{553F0817-2044-4627-9F0D-B308963417A9} 2012-04-29 19:25 - 2012-04-29 19:25 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{CF5C11B9-00A8-4DF1-9A2B-9C6093128BAD} 2012-04-29 19:23 - 2012-04-29 19:23 - 0786359 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_29_20_23_06.dmp 2012-04-29 19:22 - 2012-04-29 19:22 - 0789031 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_29_20_22_57.dmp 2012-04-29 19:22 - 2012-04-29 19:22 - 0779132 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_29_20_22_35.dmp 2012-04-29 19:22 - 2009-07-14 05:08 - 0032620 ____A C:\Windows\Tasks\SCHEDLGU.TXT 2012-04-29 16:42 - 2012-04-29 16:42 - 2880026 ___AH C:\Users\pcwt5\Downloads\20120428_121349 (3).jpg 2012-04-29 16:19 - 2012-04-29 16:19 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{558FE5DB-7EB1-4562-A264-12AB3C6BE863} 2012-04-29 16:19 - 2012-04-29 16:18 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{57F5021F-AB92-49D3-BD9C-2B24A4315BCF} 2012-04-29 15:32 - 2012-04-29 15:32 - 0790950 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_29_16_32_41.dmp 2012-04-29 15:32 - 2012-04-29 15:32 - 0787774 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_29_16_32_32.dmp 2012-04-29 15:32 - 2012-04-29 15:32 - 0781462 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_29_16_32_06.dmp 2012-04-28 17:30 - 2012-04-28 17:27 - 0081159 ___AH C:\Users\pcwt5\Downloads\20120111_152838 (1).jpg 2012-04-28 17:24 - 2012-04-28 17:24 - 0168556 ___AH C:\Users\pcwt5\Downloads\Original Sony Battery.jpg 2012-04-28 17:21 - 2012-04-28 17:20 - 2880026 ___AH C:\Users\pcwt5\Downloads\20120428_121349 (2).jpg 2012-04-28 17:20 - 2012-04-28 17:19 - 2880026 ___AH C:\Users\pcwt5\Downloads\20120428_121349 (1).jpg 2012-04-28 17:19 - 2012-04-28 17:19 - 2880026 ___AH C:\Users\pcwt5\Downloads\20120428_121349.jpg 2012-04-28 17:16 - 2012-04-28 17:16 - 1989298 ___AH C:\Users\pcwt5\Downloads\20120111_152838.jpg 2012-04-28 16:27 - 2012-04-28 16:27 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{B282FABB-52D9-4910-B8E2-9DFB3B0A3107} 2012-04-28 16:27 - 2012-04-28 16:27 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A47945CB-A781-4E5D-8B7D-C4BA3C9A749A} 2012-04-28 16:25 - 2012-04-28 16:25 - 0789785 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_17_25_14.dmp 2012-04-28 16:25 - 2012-04-28 16:25 - 0785246 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_17_25_23.dmp 2012-04-28 16:24 - 2012-04-28 16:24 - 0785477 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_17_24_54.dmp 2012-04-28 16:06 - 2012-04-28 16:06 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{531B8A56-6C79-4811-AC81-94A7B9D88AFE} 2012-04-28 16:06 - 2012-04-28 16:06 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{1B382B8F-87EA-4636-BC81-CBD65E17A27D} 2012-04-28 16:04 - 2012-04-28 16:04 - 0784190 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_17_04_18.dmp 2012-04-28 16:04 - 2012-04-28 16:04 - 0779038 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_17_04_09.dmp 2012-04-28 16:03 - 2012-04-28 16:03 - 0789905 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_17_03_49.dmp 2012-04-28 15:36 - 2012-04-28 15:35 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{2F80ECB8-52B9-4301-A1E4-6C4D9B6D586D} 2012-04-28 15:35 - 2012-04-28 15:35 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{9F9FEF7D-0527-45C4-AC87-6AEEE7184FC5} 2012-04-28 15:32 - 2012-04-28 15:32 - 0793127 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_16_32_48.dmp 2012-04-28 15:32 - 2012-04-28 15:32 - 0782515 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_16_32_31.dmp 2012-04-28 15:32 - 2012-04-28 15:32 - 0781605 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_16_32_58.dmp 2012-04-28 15:30 - 2012-04-28 15:30 - 0797299 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_16_30_18.dmp 2012-04-28 15:30 - 2012-04-28 15:30 - 0789534 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_16_30_26.dmp 2012-04-28 15:29 - 2011-12-28 04:35 - 0000000 ____D C:\Users\Guest\AppData\Roaming\Adobe 2012-04-28 15:28 - 2012-04-28 15:28 - 0785402 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_16_28_30.dmp 2012-04-28 15:28 - 2011-12-28 04:35 - 0000000 ____D C:\Users\Guest\AppData\Local\Adobe 2012-04-28 07:22 - 2010-05-28 18:09 - 0000000 ___HD C:\Users\pcwt5\AppData\Roaming\Azureus 2012-04-28 07:14 - 2011-05-22 23:43 - 0000000 ___HD C:\Users\All Users\regid.1986-12.com.adobe 2012-04-28 07:14 - 2011-05-22 23:43 - 0000000 ___HD C:\ProgramData\regid.1986-12.com.adobe 2012-04-28 07:12 - 2010-04-11 03:18 - 0000000 ____D C:\Program Files (x86)\Adobe 2012-04-28 07:12 - 2009-12-22 11:01 - 0000000 ___HD C:\Users\pcwt5\AppData\Roaming\Adobe 2012-04-28 07:10 - 2009-12-03 01:32 - 0000000 ___HD C:\Users\All Users\Adobe 2012-04-28 07:10 - 2009-12-03 01:32 - 0000000 ___HD C:\ProgramData\Adobe 2012-04-28 07:02 - 2010-05-28 18:10 - 0000000 ___HD C:\Users\pcwt5\Documents\Vuze Downloads 2012-04-28 04:56 - 2010-05-28 18:08 - 0000000 ____D C:\Program Files (x86)\Vuze 2012-04-28 03:38 - 2012-04-28 03:37 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E6872542-D5F7-47CE-BD23-36F9DCF97098} 2012-04-28 03:37 - 2012-04-28 03:37 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{108705A9-1A2B-48C7-8C74-AAABD8AC6BD9} 2012-04-28 03:33 - 2012-04-28 03:33 - 0795425 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_04_33_50.dmp 2012-04-28 03:33 - 2012-04-28 03:33 - 0792123 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_04_33_41.dmp 2012-04-28 03:33 - 2012-04-28 03:33 - 0784934 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_28_04_33_27.dmp 2012-04-27 17:59 - 2012-04-27 17:59 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{FB38EC1A-6AB6-4353-B878-388C7ADE7B96} 2012-04-27 17:59 - 2012-04-27 17:59 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{1F3721B6-A781-472F-83C7-9D27CBB578F9} 2012-04-27 17:57 - 2012-04-27 17:57 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{C5188DF6-F7BA-4E8B-8821-A60698DA82CB} 2012-04-27 17:57 - 2012-04-27 17:57 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{B426DF39-4D50-4388-BE99-03CF16ED7379} 2012-04-27 17:39 - 2012-04-27 17:39 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{3E7DAE22-3ED5-4B4E-AF3E-EB59A4DFF1BC} 2012-04-27 17:39 - 2012-04-27 17:39 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{2D581EFE-4700-4CAA-9158-676BD12A40AB} 2012-04-27 15:33 - 2012-04-27 15:33 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D4BAF2C8-0F63-4CF9-97D4-1876CC0AED1E} 2012-04-27 15:33 - 2012-04-27 15:33 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{41F2DFE5-C6A2-421C-9EB2-3BDF470232C5} 2012-04-27 15:30 - 2012-04-27 15:30 - 0787218 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_16_30_27.dmp 2012-04-27 15:30 - 2012-04-27 15:30 - 0785538 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_16_30_53.dmp 2012-04-27 15:30 - 2012-04-27 15:30 - 0779102 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_16_30_45.dmp 2012-04-27 15:21 - 2012-04-27 15:21 - 0790918 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_16_21_45.dmp 2012-04-27 15:21 - 2012-04-27 15:21 - 0785328 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_16_21_24.dmp 2012-04-27 15:21 - 2012-04-27 15:21 - 0777732 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_16_21_53.dmp 2012-04-27 13:54 - 2012-04-27 13:54 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A8FEA25A-B4C5-4029-BA6D-14B2BA8B80F9} 2012-04-27 13:54 - 2012-04-27 13:53 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{5B1EEF44-10B1-4D58-AE44-908835AA8397} 2012-04-27 13:05 - 2012-04-27 13:04 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{CD6A5E9D-A60B-4FF1-ACD4-A961812B18B6} 2012-04-27 13:04 - 2012-04-27 13:04 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{8ED8CBAA-63EE-423E-B9A1-5526E88DE3A4} 2012-04-27 13:02 - 2012-04-27 13:02 - 0787169 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_14_02_33.dmp 2012-04-27 13:02 - 2012-04-27 13:02 - 0783207 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_14_02_22.dmp 2012-04-27 13:02 - 2012-04-27 13:02 - 0779859 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_14_02_03.dmp 2012-04-27 05:51 - 2012-04-27 05:51 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{95DFD585-DA13-428F-B394-2688CBAA8F88} 2012-04-27 05:51 - 2012-04-27 05:51 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{51E57184-713E-4E71-A8A2-1BA267E61EBD} 2012-04-27 05:46 - 2012-04-27 05:46 - 0792164 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_06_46_43.dmp 2012-04-27 05:46 - 2012-04-27 05:46 - 0790641 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_06_46_29.dmp 2012-04-27 05:46 - 2012-04-27 05:46 - 0789770 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_06_46_51.dmp 2012-04-27 03:16 - 2012-04-27 03:16 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{5DFEB043-46D2-4D8D-9863-77F088DA354A} 2012-04-27 03:16 - 2012-04-27 03:15 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D4FAEB01-F5EC-48DC-B88B-D0B90E307E26} 2012-04-27 03:13 - 2012-04-27 03:13 - 0795327 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_04_13_37.dmp 2012-04-27 03:13 - 2012-04-27 03:13 - 0792593 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_04_13_23.dmp 2012-04-27 03:13 - 2012-04-27 03:13 - 0789476 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_27_04_13_47.dmp 2012-04-27 03:13 - 2009-12-22 10:54 - 0000000 ___HD C:\users\pcwt5 2012-04-27 00:08 - 2009-12-22 10:54 - 0000000 ___HD C:\Users\pcwt5\AppData\LocalLow 2012-04-26 23:52 - 2012-04-26 23:52 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{DFE1E5DF-D3A5-4447-8C60-F843DF81158C} 2012-04-26 23:52 - 2012-04-26 23:52 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{55DA07C6-E1F0-4E99-8DCC-132FB5D09D4A} 2012-04-26 21:58 - 2012-04-26 21:57 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{424DACEE-60F0-4829-B2C9-840C98C7738C} 2012-04-26 21:57 - 2012-04-26 21:57 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{C1C7A6EC-701E-41CC-88A1-162ACB714D1E} 2012-04-26 21:54 - 2012-04-26 21:54 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{7505BF48-DE75-4B24-A3D1-8C66AE470666} 2012-04-26 21:54 - 2012-04-26 21:54 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{04D8B1B1-16C2-4C26-BB7D-E457CA34D198} 2012-04-26 21:52 - 2012-04-26 21:52 - 0787727 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_26_22_52_25.dmp 2012-04-26 21:52 - 2012-04-26 21:52 - 0787204 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_26_22_52_16.dmp 2012-04-26 21:51 - 2012-04-26 21:51 - 0785994 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_26_22_51_59.dmp 2012-04-26 15:25 - 2012-04-26 15:25 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{CA922E3E-9C56-4BFD-B052-034CAB5CA1CE} 2012-04-26 15:25 - 2012-04-26 15:25 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{46A188E6-A9CD-4819-A40B-588063915CE9} 2012-04-26 13:01 - 2012-04-26 13:00 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{0A9DAF1E-4D2B-4AFE-BB38-015559D64F2E} 2012-04-26 13:00 - 2012-04-26 13:00 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{DCFAB97E-8821-465F-BB25-0E5C25000104} 2012-04-26 12:58 - 2012-04-26 12:58 - 0791752 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_26_13_58_14.dmp 2012-04-26 12:58 - 2012-04-26 12:58 - 0789490 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_26_13_58_05.dmp 2012-04-26 12:57 - 2012-04-26 12:57 - 0781966 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_26_13_57_48.dmp 2012-04-26 01:30 - 2012-04-26 01:29 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{8A7C4930-DF62-4A1E-BE63-18DA113D706E} 2012-04-26 01:29 - 2012-04-26 01:29 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{B207130E-BE6F-4F84-99EC-D00D0D36EAD2} 2012-04-26 00:48 - 2012-04-26 00:48 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A4EA1576-8793-4475-A05B-C42EB59C6489} 2012-04-26 00:48 - 2012-04-26 00:48 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{20612B03-EF2B-4E63-A563-1E1CFFCBDE4A} 2012-04-26 00:08 - 2009-12-22 10:55 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\VirtualStore 2012-04-26 00:07 - 2012-04-26 00:07 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{859EAD84-BF9A-443F-8086-6AD1B44038D4} 2012-04-26 00:06 - 2012-04-26 00:06 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{811A91E9-233A-4944-B2E8-103A75AF0BB7} 2012-04-26 00:04 - 2012-04-26 00:04 - 0782730 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_26_01_04_01.dmp 2012-04-26 00:03 - 2012-04-26 00:03 - 0811648 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_26_01_03_33.dmp 2012-04-26 00:03 - 2012-04-26 00:03 - 0789468 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_26_01_03_53.dmp 2012-04-25 15:38 - 2012-04-25 15:38 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D1CA7815-275C-4288-8C42-5DAD0D8A3F3D} 2012-04-25 15:16 - 2012-04-25 15:16 - 0004996 ___AH C:\Users\pcwt5\Downloads\Wind Tool - Vessel Version_2.xls.crdownload 2012-04-25 15:15 - 2012-04-25 15:15 - 0007922 ___AH C:\Users\pcwt5\Downloads\convert.zip.crdownload 2012-04-25 13:22 - 2012-04-25 13:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{B4B205DC-3D03-4B8F-BBDA-66795296BF89} 2012-04-25 13:22 - 2012-04-25 13:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{33D6AC9C-7D95-4B5B-95C5-5BBE9475A908} 2012-04-25 13:12 - 2012-04-25 13:12 - 0795818 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_25_14_12_14.dmp 2012-04-25 13:12 - 2012-04-25 13:12 - 0785146 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_25_14_12_21.dmp 2012-04-25 13:11 - 2012-04-25 13:11 - 0794921 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_25_14_11_58.dmp 2012-04-24 23:59 - 2012-04-24 23:58 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D097A033-CFCB-4251-8AEE-22FAF638C6F2} 2012-04-24 23:58 - 2012-04-24 23:56 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E83F3566-3329-492C-9ED5-A2516B66BE04} 2012-04-24 23:54 - 2012-04-24 23:54 - 0794217 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_25_00_54_13.dmp 2012-04-24 23:54 - 2012-04-24 23:54 - 0782380 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_25_00_54_20.dmp 2012-04-24 23:53 - 2012-04-24 23:53 - 0781083 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_25_00_53_54.dmp 2012-04-24 13:48 - 2012-04-24 13:48 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{4D5E7009-355F-4DC5-9B62-34906DC4B5E2} 2012-04-24 13:48 - 2012-04-24 13:48 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{32B105ED-CE6C-4BF2-AD4D-09A76BFEC0B6} 2012-04-24 13:48 - 2011-01-02 18:16 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\Windows Live 2012-04-24 13:43 - 2012-04-24 13:43 - 0800330 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_24_14_43_53.dmp 2012-04-24 13:43 - 2012-04-24 13:43 - 0789013 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_24_14_43_44.dmp 2012-04-24 13:43 - 2009-07-14 03:20 - 0000000 ____D C:\Windows\System32\config\TxR 2012-04-24 13:42 - 2012-04-24 13:42 - 0792872 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_24_14_42_51.dmp 2012-04-24 13:40 - 2012-02-23 22:09 - 0000000 ___HD C:\Users\pcwt5\Documents\Audible 2012-04-24 13:40 - 2012-02-09 16:02 - 0000000 ___HD C:\Users\pcwt5\Downloads\Autoruns 2012-04-24 13:40 - 2012-02-09 00:09 - 0000000 ___HD C:\Users\pcwt5\template fresh from zip 2012-04-24 13:40 - 2012-01-26 20:42 - 0000000 ___HD C:\Users\pcwt5\Downloads\js 2012-04-24 13:40 - 2012-01-24 00:32 - 0000000 ___HD C:\Users\pcwt5\Flash Template 2012-04-24 13:40 - 2011-12-28 04:34 - 0000000 ____D C:\users\Guest 2012-04-24 13:40 - 2011-11-22 15:25 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\Samsung 2012-04-24 13:40 - 2011-11-01 22:16 - 0000000 ___HD C:\Users\Public\Documents\backups 2012-04-24 13:40 - 2011-10-17 23:59 - 0000000 ____D C:\Windows\en 2012-04-24 13:40 - 2011-10-11 13:36 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\Vivox 2012-04-24 13:40 - 2011-09-20 16:46 - 0000000 ___HD C:\Users\pcwt5\New San Agustin Website 2012-04-24 13:40 - 2011-09-14 02:21 - 0000000 ___HD C:\Users\Public\Downloads\Norton 2012-04-24 13:40 - 2011-07-02 00:04 - 0000000 ___HD C:\Users\pcwt5\Downloads\html-contact-form-captcha 2012-04-24 13:40 - 2011-07-01 04:05 - 0000000 ___HD C:\Users\pcwt5\Downloads\PHPContactForm 2012-04-24 13:40 - 2011-06-17 02:30 - 0000000 ___HD C:\Users\pcwt5\Downloads\DiskScrubber 2012-04-24 13:40 - 2011-05-22 19:23 - 0000000 ___HD C:\Users\pcwt5\Downloads\[ www.TorrentDay.com ] - Doctor_Who_2005.6x04.The_Doctors_Wife.HDTV_XviD-FoV 2012-04-24 13:40 - 2011-05-08 19:19 - 0000000 ___HD C:\Users\Public\Downloads\Doctor who s06e03 2012-04-24 13:40 - 2011-04-12 04:35 - 0000000 ___HD C:\Users\pcwt5\Downloads\winzip80 2012-04-24 13:40 - 2011-04-08 03:18 - 0000000 ___HD C:\Users\pcwt5\AppData\Roaming\dvdcss 2012-04-24 13:40 - 2011-03-25 17:30 - 0000000 ___HD C:\Users\pcwt5\AppData\Roaming\AVG10 2012-04-24 13:40 - 2011-03-07 02:24 - 0000000 ___HD C:\Users\pcwt5\GSMS-content 2012-04-24 13:40 - 2011-02-18 00:48 - 0000000 ___HD C:\Users\pcwt5\AppData\Roaming\Iceni 2012-04-24 13:40 - 2011-02-05 22:53 - 0000000 ___HD C:\VueScan 2012-04-24 13:40 - 2011-02-05 22:24 - 0000000 ___HD C:\Users\pcwt5\Downloads\S3317enx 2012-04-24 13:40 - 2011-01-19 04:41 - 0000000 ___HD C:\Users\pcwt5\Documents\Unnamed Site 2 2012-04-24 13:40 - 2011-01-09 04:52 - 0000000 ___HD C:\Users\Public\Downloads\wall street subs 2012-04-24 13:40 - 2010-12-31 20:55 - 0000000 ___HD C:\Users\pcwt5\Documents\FFOutput 2012-04-24 13:40 - 2010-12-31 19:17 - 0000000 ___HD C:\Users\pcwt5\AppData\Roaming\vlc 2012-04-24 13:40 - 2010-12-31 02:42 - 0000000 ___HD C:\Users\Public\Downloads\VirtualDub-1.9.11 2012-04-24 13:40 - 2010-12-31 02:39 - 0000000 ___HD C:\Users\pcwt5\VobSub 2012-04-24 13:40 - 2010-12-31 02:32 - 0000000 ___HD C:\Users\Public\Downloads\VobSub_2-23 2012-04-24 13:40 - 2010-12-31 00:06 - 0000000 ___HD C:\Users\Public\Downloads\ffdshow-rev3562_20100907 2012-04-24 13:40 - 2010-12-30 17:48 - 0000000 ___HD C:\Users\Public\Downloads\Inception.DVDRiP.XviD-ARROW 2012-04-24 13:40 - 2010-12-29 06:21 - 0000000 ___HD C:\Users\Public\Downloads\SE30Setup 2012-04-24 13:40 - 2010-12-26 04:35 - 0000000 ___HD C:\Users\Public\Downloads\3ivx_MPEG-4_502_trial_win 2012-04-24 13:40 - 2010-12-25 22:53 - 0000000 ___HD C:\users\Mcx1-PCWT5-VAIO 2012-04-24 13:40 - 2010-11-25 03:35 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\Unity 2012-04-24 13:40 - 2010-09-09 04:11 - 0000000 ___SD C:\Users\pcwt5\Documents\My Data Sources 2012-04-24 13:40 - 2010-08-31 16:31 - 0000000 ___HD C:\Users\pcwt5\Documents\My Received Files 2012-04-24 13:40 - 2010-08-19 02:49 - 0000000 ___HD C:\Users\pcwt5\Downloads\PeerBlock_r162__x64_Release_(Vista) 2012-04-24 13:40 - 2010-06-11 16:58 - 0000000 ___HD C:\Users\pcwt5\Downloads\Photoshop CS4 2012-04-24 13:40 - 2010-04-17 05:33 - 0000000 ___HD C:\Users\pcwt5\Downloads\Pazera_Free_MP4_to_AVI_Converter 2012-04-24 13:40 - 2010-01-10 15:28 - 0000000 ___HD C:\Users\pcwt5\AppData\Roaming\ArcSoft 2012-04-24 13:40 - 2009-12-22 10:56 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\Sony_Corporation 2012-04-24 13:40 - 2009-12-22 10:54 - 0000000 ___HD C:\Users\pcwt5\AppData\Roaming\Sony Corporation 2012-04-24 13:39 - 2012-02-23 22:09 - 0000000 ___HD C:\Program Files (x86)\Audible 2012-04-24 13:39 - 2012-02-05 08:29 - 0000000 ___HD C:\MGtools 2012-04-24 13:39 - 2012-02-05 06:08 - 0000000 ___HD C:\ComboFix 2012-04-24 13:39 - 2012-02-05 04:59 - 0000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2012-04-24 13:39 - 2011-09-25 02:02 - 0000000 ___HD C:\Users\pcwt5\.swt 2012-04-24 13:39 - 2011-08-28 02:12 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\Conduit 2012-04-24 13:39 - 2011-07-13 20:30 - 0000000 ____D C:\Program Files\Soluto 2012-04-24 13:39 - 2011-04-12 18:17 - 0000000 ___HD C:\Users\pcwt5\Apartments in Queretaro 2012-04-24 13:39 - 2011-03-07 02:28 - 0000000 ___HD C:\Smsltd 2012-04-24 13:39 - 2011-03-07 00:01 - 0000000 ___HD C:\Users\All Users\EPSON 2012-04-24 13:39 - 2011-03-07 00:01 - 0000000 ___HD C:\ProgramData\EPSON 2012-04-24 13:39 - 2011-02-16 06:12 - 0000000 ____D C:\Program Files\Windows Live 2012-04-24 13:39 - 2011-02-07 08:04 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\Downloaded Installations 2012-04-24 13:39 - 2011-02-06 20:45 - 0000000 ___HD C:\Users\All Users\Norton 2012-04-24 13:39 - 2011-02-06 20:45 - 0000000 ___HD C:\ProgramData\Norton 2012-04-24 13:39 - 2011-01-01 23:40 - 0000000 ___HD C:\Program Files (x86)\PixiePack Codec Pack 2012-04-24 13:39 - 2011-01-01 23:38 - 0000000 ___HD C:\Users\All Users\RapidSolution 2012-04-24 13:39 - 2011-01-01 23:38 - 0000000 ___HD C:\ProgramData\RapidSolution 2012-04-24 13:39 - 2010-12-26 04:18 - 0000000 ___HD C:\New folder 2012-04-24 13:39 - 2010-12-25 22:54 - 0000000 ___HD C:\Users\Mcx1-PCWT5-VAIO\AppData\Roaming\Sony Corporation 2012-04-24 13:39 - 2010-12-25 21:02 - 0000000 ___HD C:\Expat Shield 2012-04-24 13:39 - 2010-09-08 17:08 - 0000000 ___HD C:\Program Files (x86)\Simpo PDF Creator Lite 2012-04-24 13:39 - 2010-06-12 00:41 - 0000000 ___HD C:\Users\All Users\FLEXnet 2012-04-24 13:39 - 2010-06-12 00:41 - 0000000 ___HD C:\ProgramData\FLEXnet 2012-04-24 13:39 - 2010-04-26 15:45 - 0000000 ___HD C:\Users\All Users\WebEx 2012-04-24 13:39 - 2010-04-26 15:45 - 0000000 ___HD C:\ProgramData\WebEx 2012-04-24 13:39 - 2010-04-16 15:44 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\Microsoft Help 2012-04-24 13:39 - 2010-04-06 04:36 - 0000000 ___HD C:\Users\All Users\Real 2012-04-24 13:39 - 2010-04-06 04:36 - 0000000 ___HD C:\ProgramData\Real 2012-04-24 13:39 - 2009-12-03 02:08 - 0000000 ____D C:\Program Files (x86)\Windows Live 2012-04-24 13:39 - 2009-12-03 01:36 - 0000000 ___HD C:\Users\All Users\Google 2012-04-24 13:39 - 2009-12-03 01:36 - 0000000 ___HD C:\ProgramData\Google 2012-04-24 13:39 - 2009-12-03 01:35 - 0000000 ___HD C:\SPLASH.SYS 2012-04-24 13:39 - 2009-08-17 23:14 - 0000000 ___HD C:\Users\All Users\Sony Corporation 2012-04-24 13:39 - 2009-08-17 23:14 - 0000000 ___HD C:\ProgramData\Sony Corporation 2012-04-24 13:38 - 2012-04-24 06:46 - 0000000 ____D C:\Program Files (x86)\GridinSoft Trojan Killer 2012-04-24 13:38 - 2012-02-05 00:56 - 0000000 ___HD C:\__antimalware 2012-04-24 13:38 - 2011-01-12 00:50 - 0000000 ___HD C:\111 2012-04-24 13:34 - 2009-07-14 03:20 - 0000000 ____D C:\Windows\registration 2012-04-24 13:33 - 2012-01-26 18:11 - 0000000 ___HD C:\Users\pcwt5\template7 2012-04-24 13:33 - 2012-01-24 00:33 - 0000000 ___HD C:\Users\pcwt5\template7 that works 2012-04-24 13:33 - 2011-01-01 23:34 - 0000000 ___HD C:\Users\Public\Downloads\Tunebite 2012-04-24 13:33 - 2009-07-14 03:20 - 0000000 __RHD C:\users\Public 2012-04-24 13:32 - 2011-07-28 21:37 - 0000000 ___HD C:\Users\pcwt5\Mark Stockwell Osteopathy - Copy 2012-04-24 13:32 - 2011-07-27 22:00 - 0000000 ___HD C:\Users\pcwt5\Mark Stockwell Osteopathy 2012-04-24 13:32 - 2011-02-05 22:24 - 0000000 ___HD C:\Users\pcwt5\Downloads\S14l_en 2012-04-24 13:32 - 2010-05-15 00:34 - 0000000 ___HD C:\Users\pcwt5\Downloads\Removable Disk 2012-04-24 13:31 - 2011-02-05 22:39 - 0000000 ___HD C:\Users\pcwt5\Downloads\lide20lide30n670un676un1240uvst7031a_xpen 2012-04-24 13:27 - 2010-06-26 06:21 - 0000000 ___HD C:\Users\pcwt5\Documents\Downloaded Installations 2012-04-24 13:26 - 2012-02-05 05:00 - 0000000 ___HD C:\Users\pcwt5\AppData\Roaming\Malwarebytes 2012-04-24 13:26 - 2012-02-05 01:30 - 0000000 ___HD C:\Users\pcwt5\AppData\Roaming\SUPERAntiSpyware.com 2012-04-24 13:26 - 2011-11-22 15:24 - 0000000 ___HD C:\Users\pcwt5\AppData\Roaming\Samsung 2012-04-24 13:26 - 2011-09-20 22:41 - 0000000 ___HD C:\Users\pcwt5\Desktop\Adobe CS3 2012-04-24 13:26 - 2011-04-14 18:17 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\Trusteer 2012-04-24 13:26 - 2011-01-01 23:34 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\RapidSolution 2012-04-24 13:26 - 2010-12-26 05:13 - 0000000 ___HD C:\Users\pcwt5\AppData\Roaming\BBCiPlayerDesktop.61DB7A798358575D6A969CCD73DDBBD723A6DA9D.1 2012-04-24 13:26 - 2010-06-25 23:34 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\Xenocode 2012-04-24 13:26 - 2010-05-12 13:30 - 0000000 ___HD C:\Users\pcwt5\AppData\Roaming\Trusteer 2012-04-24 13:26 - 2010-04-06 04:36 - 0000000 ___HD C:\Users\pcwt5\AppData\Roaming\Real 2012-04-24 13:26 - 2010-03-27 08:18 - 0000000 ___HD C:\Users\pcwt5\AppData\Roaming\Macromedia 2012-04-24 13:22 - 2012-03-22 00:32 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\Babylon 2012-04-24 13:22 - 2012-01-26 19:59 - 0000000 ___HD C:\Users\pcwt5\__Flash Template 2012-04-24 13:22 - 2011-02-18 00:49 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\Iceni 2012-04-24 13:22 - 2011-02-07 08:32 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\Bluebeam Software 2012-04-24 13:22 - 2010-04-16 16:07 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\Apps\2.0 2012-04-24 13:22 - 2010-03-27 04:44 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\Microsoft Games 2012-04-24 13:22 - 2009-12-22 17:19 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\Google 2012-04-24 13:21 - 2012-02-05 06:06 - 0000000 ___HD C:\Qoobox 2012-04-24 13:21 - 2012-01-26 17:50 - 0000000 ___HD C:\template7 2012-04-24 13:21 - 2012-01-26 14:53 - 0000000 ___HD C:\template 2012-04-24 13:21 - 2011-06-14 21:00 - 0000000 ___HD C:\Users\Kev\AppData\LocalLow 2012-04-24 13:21 - 2011-06-14 21:00 - 0000000 ___HD C:\users\Kev 2012-04-24 13:21 - 2010-12-30 23:17 - 0000000 ___HD C:\Users\All Users\TVersity 2012-04-24 13:21 - 2010-12-30 23:17 - 0000000 ___HD C:\ProgramData\TVersity 2012-04-24 13:21 - 2010-12-25 22:53 - 0000000 ___HD C:\Users\Mcx1-PCWT5-VAIO\AppData\Roaming\Trusteer 2012-04-24 13:21 - 2010-12-25 22:53 - 0000000 ___HD C:\Users\Mcx1-PCWT5-VAIO\AppData\Roaming\Macromedia 2012-04-24 13:21 - 2009-12-03 01:58 - 0000000 ___HD C:\Users\All Users\Uninstall 2012-04-24 13:21 - 2009-12-03 01:58 - 0000000 ___HD C:\ProgramData\Uninstall 2012-04-24 13:20 - 2012-02-05 04:59 - 0000000 ___HD C:\Users\All Users\Malwarebytes 2012-04-24 13:20 - 2012-02-05 04:59 - 0000000 ___HD C:\ProgramData\Malwarebytes 2012-04-24 13:20 - 2011-12-28 02:35 - 0000000 ___HD C:\Users\All Users\Apple Computer 2012-04-24 13:20 - 2011-12-28 02:35 - 0000000 ___HD C:\ProgramData\Apple Computer 2012-04-24 13:20 - 2011-12-28 02:31 - 0000000 ___HD C:\Users\All Users\Apple 2012-04-24 13:20 - 2011-12-28 02:31 - 0000000 ___HD C:\ProgramData\Apple 2012-04-24 13:20 - 2011-05-17 18:40 - 0000000 ___HD C:\Users\All Users\Skype Extras 2012-04-24 13:20 - 2011-05-17 18:40 - 0000000 ___HD C:\ProgramData\Skype Extras 2012-04-24 13:20 - 2011-03-08 13:59 - 0000000 ___HD C:\Users\All Users\Soluto 2012-04-24 13:20 - 2011-03-08 13:59 - 0000000 ___HD C:\ProgramData\Soluto 2012-04-24 13:20 - 2011-02-18 00:48 - 0000000 ___HD C:\Users\All Users\Aspell 2012-04-24 13:20 - 2011-02-18 00:48 - 0000000 ___HD C:\ProgramData\Aspell 2012-04-24 13:20 - 2011-02-07 08:05 - 0000000 ___HD C:\Users\All Users\Bluebeam Software 2012-04-24 13:20 - 2011-02-07 08:05 - 0000000 ___HD C:\ProgramData\Bluebeam Software 2012-04-24 13:20 - 2010-11-12 23:20 - 0000000 ___HD C:\Users\All Users\Lavasoft 2012-04-24 13:20 - 2010-11-12 23:20 - 0000000 ___HD C:\ProgramData\Lavasoft 2012-04-24 13:20 - 2010-10-29 13:01 - 0000000 ___HD C:\Users\All Users\MFAData 2012-04-24 13:20 - 2010-10-29 13:01 - 0000000 ___HD C:\ProgramData\MFAData 2012-04-24 13:20 - 2010-05-12 13:26 - 0000000 ___HD C:\Users\All Users\Trusteer 2012-04-24 13:20 - 2010-05-12 13:26 - 0000000 ___HD C:\ProgramData\Trusteer 2012-04-24 13:20 - 2010-01-10 15:28 - 0000000 ___HD C:\Users\All Users\ArcSoft 2012-04-24 13:20 - 2010-01-10 15:28 - 0000000 ___HD C:\ProgramData\ArcSoft 2012-04-24 13:20 - 2009-12-03 01:58 - 0000000 ___HD C:\Users\All Users\Skype 2012-04-24 13:20 - 2009-12-03 01:58 - 0000000 ___HD C:\ProgramData\Skype 2012-04-24 13:20 - 2009-12-03 01:57 - 0000000 ___HD C:\Users\All Users\Symantec 2012-04-24 13:20 - 2009-12-03 01:57 - 0000000 ___HD C:\ProgramData\Symantec 2012-04-24 13:20 - 2009-12-03 01:38 - 0000000 ___HD C:\Users\All Users\McAfee 2012-04-24 13:20 - 2009-12-03 01:38 - 0000000 ___HD C:\ProgramData\McAfee 2012-04-24 13:19 - 2011-09-04 04:30 - 0000000 ___HD C:\Prey 2012-04-24 13:19 - 2010-09-21 17:43 - 0000000 ___HD C:\Output 2012-04-24 13:18 - 2012-02-05 07:53 - 0000000 ___HD C:\$RECYCLE.BIN 2012-04-24 13:18 - 2011-03-07 02:30 - 0000000 ___HD C:\Common 2012-04-24 13:18 - 2010-05-28 16:09 - 0000000 ___HD C:\_Java 2012-04-24 13:18 - 2010-05-28 14:10 - 0000000 ___HD C:\JBilling 2012-04-24 06:27 - 2012-04-24 06:27 - 0000256 ___AH C:\Users\All Users\iK09Ukc2QUuHdc 2012-04-24 06:27 - 2012-04-24 06:27 - 0000256 ___AH C:\ProgramData\iK09Ukc2QUuHdc 2012-04-24 06:27 - 2012-04-24 06:27 - 0000176 ___AH C:\Users\All Users\-iK09Ukc2QUuHdcr 2012-04-24 06:27 - 2012-04-24 06:27 - 0000176 ___AH C:\ProgramData\-iK09Ukc2QUuHdcr 2012-04-24 06:27 - 2012-04-24 06:27 - 0000000 ___AH C:\Users\All Users\-iK09Ukc2QUuHdc 2012-04-24 06:27 - 2012-04-24 06:27 - 0000000 ___AH C:\ProgramData\-iK09Ukc2QUuHdc 2012-04-24 06:18 - 2012-04-24 06:18 - 0000256 ___AH C:\Users\All Users\xNrcacGalCqvsv 2012-04-24 06:18 - 2012-04-24 06:18 - 0000256 ___AH C:\ProgramData\xNrcacGalCqvsv 2012-04-24 06:18 - 2012-04-24 06:18 - 0000176 ___AH C:\Users\All Users\-xNrcacGalCqvsvr 2012-04-24 06:18 - 2012-04-24 06:18 - 0000176 ___AH C:\ProgramData\-xNrcacGalCqvsvr 2012-04-24 06:18 - 2012-04-24 06:18 - 0000000 ___AH C:\Users\All Users\-xNrcacGalCqvsv 2012-04-24 06:18 - 2012-04-24 06:18 - 0000000 ___AH C:\ProgramData\-xNrcacGalCqvsv 2012-04-24 03:24 - 2012-04-24 03:24 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{97F48C24-A033-46DC-9CD8-ADCC8147FF21} 2012-04-24 03:24 - 2012-04-24 03:24 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{43AE9C61-05DE-4C91-853E-302F29661CCA} 2012-04-24 03:24 - 2012-04-24 03:23 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{C219EA38-300B-49BB-8F6F-9EC74DAB2307} 2012-04-24 03:23 - 2012-04-24 03:23 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{52996862-9F5F-4364-8E7A-2B9AF6018770} 2012-04-23 15:23 - 2012-04-23 15:23 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{69164B96-39E7-4A76-80E2-026A0B147615} 2012-04-23 15:23 - 2012-04-23 15:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D6077CBC-A654-41DA-994E-592FD328ED83} 2012-04-23 03:22 - 2012-04-23 03:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{89D02B0C-C3DD-486B-A895-D2945C76DED4} 2012-04-23 03:22 - 2012-04-23 03:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{735FDAC4-2A2C-43EE-BA84-7A7399097F23} 2012-04-23 03:22 - 2012-04-23 03:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{288B7964-2EFA-43AF-93CA-28D15B4C3392} 2012-04-23 03:22 - 2012-04-23 03:21 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{29FF4DF6-8736-4AE0-AD15-062A7F1A748E} 2012-04-22 15:21 - 2012-04-22 15:21 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{C56441E2-8276-4920-85FB-0D31FD66FBD7} 2012-04-22 15:21 - 2012-04-22 15:21 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{722040FF-6460-45D1-8E32-7894DF0D9CCD} 2012-04-21 16:29 - 2012-04-21 16:28 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{199DE0D8-5874-43F0-8F47-76CBE3BACD1E} 2012-04-21 16:28 - 2012-04-21 16:28 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{5442258D-A63F-4949-8E15-DA761F238855} 2012-04-21 01:18 - 2012-04-21 01:18 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A4934BAF-31E7-4B74-B910-8AD120F4EC23} 2012-04-21 01:18 - 2012-04-21 01:18 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A1F149BD-6A28-4455-8460-7D1187E091F4} 2012-04-20 13:17 - 2012-04-20 13:17 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{4EA12E26-5A23-4697-A9EB-879467545178} 2012-04-20 13:17 - 2012-04-20 13:16 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{560730B6-ED93-48C1-ACE3-3594F6D781BD} 2012-04-20 07:57 - 2011-05-10 07:07 - 0002641 ___AH C:\Users\pcwt5\.xmlcopyeditor 2012-04-19 22:29 - 2012-04-19 22:29 - 0021901 ___AH C:\Users\pcwt5\Downloads\apm495.zip 2012-04-19 22:25 - 2012-04-19 22:25 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{BF1DE36E-7F1C-45D1-839B-63F88C58528A} 2012-04-19 22:25 - 2012-04-19 22:24 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{91295554-F56C-4BE5-91FA-6C404F8567E2} 2012-04-19 22:12 - 2009-12-03 01:33 - 0041949 ____A C:\Windows\DirectX.log 2012-04-19 22:02 - 2012-04-19 22:02 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{BF156C13-8B85-4654-A790-6F4D5A5C13C7} 2012-04-19 22:02 - 2012-04-19 22:02 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{44C99892-68F9-4F98-83B7-D0B80B3F3FE1} 2012-04-19 21:57 - 2012-04-19 21:57 - 0784965 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_19_22_57_32.dmp 2012-04-19 21:57 - 2012-04-19 21:57 - 0780438 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_19_22_57_00.dmp 2012-04-19 21:57 - 2012-04-19 21:57 - 0778389 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_19_22_57_24.dmp 2012-04-19 21:38 - 2012-04-19 21:38 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D43A8419-CABA-4A29-A1BC-CA0E948AD6ED} 2012-04-19 21:38 - 2012-04-19 21:38 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{0CB1BC80-E6B3-46D1-9779-C0996C454200} 2012-04-19 21:36 - 2012-04-19 21:36 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{18FF0A2E-8C82-42A7-BE9E-70AE7A2E5A04} 2012-04-19 21:36 - 2012-04-19 21:36 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{08F5D69C-7901-4EA1-98F6-430B2A2A0090} 2012-04-19 16:29 - 2012-04-19 16:29 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{22374D4D-7C80-4349-A0B0-810A102FBAA4} 2012-04-19 16:29 - 2012-04-19 16:28 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{8DC38F73-3245-4E8C-8520-8EA3D8E01718} 2012-04-19 16:05 - 2012-04-19 16:05 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{CE54D447-7509-4B67-B89D-02B40C894469} 2012-04-19 16:05 - 2012-04-19 16:05 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{57DE47CF-F98C-410A-ADE5-621D3CCF8804} 2012-04-19 13:52 - 2012-04-19 13:52 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{70D9BC37-A4C0-4621-81EA-BE7152FC10BA} 2012-04-19 13:52 - 2012-04-19 13:52 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{1F8F429B-0543-4311-944D-FC66DFFC77CA} 2012-04-19 13:28 - 2012-04-19 13:28 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{61C5B988-DA83-4CFF-9CF7-E85D312B28C1} 2012-04-19 13:27 - 2012-04-19 13:27 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{BDAE4FCC-714F-4B4C-A51F-E76F39F072C2} 2012-04-19 13:24 - 2012-04-19 13:23 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{03C8D5CD-2DCF-4CD6-9B0E-337EC43B7D4B} 2012-04-19 13:23 - 2012-04-19 13:23 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D9C5E915-63DA-4DFF-BCD0-B801B13F1323} 2012-04-19 13:22 - 2012-04-19 13:22 - 0796352 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_19_14_22_35.dmp 2012-04-19 13:22 - 2012-04-19 13:22 - 0790945 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_19_14_22_49.dmp 2012-04-19 13:20 - 2012-04-19 13:20 - 0784984 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_19_14_20_26.dmp 2012-04-19 02:45 - 2012-04-19 02:45 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E2678831-FABB-4C75-A42E-7102B09F3A98} 2012-04-19 02:45 - 2012-04-19 02:44 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{82BBDDD2-A80A-4DD3-9255-AA985EEB91B6} 2012-04-19 02:44 - 2012-04-19 02:44 - 0790586 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_19_03_44_02.dmp 2012-04-19 02:43 - 2012-04-19 02:43 - 0784060 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_19_03_43_47.dmp 2012-04-19 02:42 - 2012-04-19 02:42 - 0786154 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_19_03_42_09.dmp 2012-04-19 00:55 - 2012-04-19 00:55 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{DA57205D-14AF-4E5A-8696-15769F382670} 2012-04-19 00:55 - 2012-04-19 00:55 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A53C9D78-AF14-4259-9481-FE19169F680A} 2012-04-18 23:19 - 2012-04-18 23:19 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{FA0BE2EC-3860-4287-9113-6F7A1E2785A5} 2012-04-18 23:19 - 2012-04-18 23:19 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{1580ED82-76E1-4691-9FF8-0BDDDA1B5E38} 2012-04-18 22:40 - 2010-05-15 00:37 - 0000000 ___HD C:\Users\All Users\Roxio 2012-04-18 22:40 - 2010-05-15 00:37 - 0000000 ___HD C:\ProgramData\Roxio 2012-04-18 22:26 - 2012-04-18 22:26 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{1B0B7B5F-8DDB-485F-8E1C-5FFE30CDCE10} 2012-04-18 22:26 - 2012-04-18 22:25 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{434C05BB-2966-4200-9BE4-7A2EB7C036FA} 2012-04-18 22:23 - 2012-04-18 22:23 - 0790901 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_18_23_23_33.dmp 2012-04-18 22:23 - 2012-04-18 22:23 - 0785757 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_18_23_23_09.dmp 2012-04-18 22:23 - 2012-04-18 22:23 - 0781542 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_18_23_23_42.dmp 2012-04-18 19:15 - 2012-04-18 19:11 - 11142912 ___AH C:\Users\pcwt5\Downloads\Adele_-_Someone_Like_You.pdf 2012-04-18 13:45 - 2012-04-18 13:45 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{87391CD7-E608-4341-BD74-FC3F999C0638} 2012-04-18 13:20 - 2012-04-18 13:20 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{B1C53AB1-B108-4FFB-8701-E86449390611} 2012-04-18 13:20 - 2012-04-18 13:19 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A67D1F11-FE4B-4F67-9F70-666689508F63} 2012-04-18 13:16 - 2012-04-18 13:14 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{210A9212-1CB2-404E-95EB-A560BAA7E532} 2012-04-18 13:14 - 2012-04-18 13:14 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{58C575D5-4FC9-4DDA-BD09-3555E8BBE601} 2012-04-18 13:11 - 2012-04-18 13:11 - 0795388 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_18_14_11_43.dmp 2012-04-18 13:11 - 2012-04-18 13:11 - 0786984 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_18_14_11_35.dmp 2012-04-18 13:11 - 2012-04-18 13:11 - 0783674 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_18_14_11_13.dmp 2012-04-18 05:31 - 2012-04-18 05:31 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{AD848781-E807-4088-9396-E91826AAD135} 2012-04-18 05:31 - 2012-04-18 05:31 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{8C07C826-F6A0-485D-AFF7-1DF31D64F785} 2012-04-18 04:15 - 2012-04-18 04:15 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{B2EFE5D9-FBB7-4843-8964-0FAB9F2822EE} 2012-04-18 04:14 - 2012-04-18 04:14 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{C4398CE3-91B5-42FA-8050-FAB92BE703C5} 2012-04-18 04:10 - 2012-04-18 04:10 - 0791872 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_18_05_10_28.dmp 2012-04-18 04:10 - 2012-04-18 04:10 - 0788883 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_18_05_10_20.dmp 2012-04-18 04:10 - 2012-04-18 04:10 - 0783495 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_18_05_10_06.dmp 2012-04-18 03:26 - 2012-04-18 03:26 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{C45CA3AA-5444-4611-AA4E-21287E16D560} 2012-04-18 03:26 - 2012-04-18 03:26 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{58B8A91A-DC0F-4FCF-9DAD-EB2B7AC1D5F5} 2012-04-17 23:54 - 2012-04-17 23:54 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{F4A00506-46BF-43AC-8B61-71EDEDEBDAD2} 2012-04-17 23:54 - 2012-04-17 23:54 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{F02C6E1F-1F2A-465D-B7E7-03190852C68F} 2012-04-17 23:50 - 2012-04-17 23:50 - 0785677 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_18_00_50_51.dmp 2012-04-17 23:50 - 2012-04-17 23:50 - 0784649 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_18_00_50_43.dmp 2012-04-17 23:50 - 2012-04-17 23:50 - 0781193 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_18_00_50_26.dmp 2012-04-17 14:49 - 2012-04-17 14:49 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{3F96A602-47B6-4B85-BFBF-54550569C44C} 2012-04-17 14:49 - 2012-04-17 14:48 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{7EEA07A1-22C7-4BAE-926B-21AAFA611CFE} 2012-04-17 13:18 - 2012-04-17 13:18 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E18B719F-10C4-472B-9EFB-032FA7A63EFC} 2012-04-17 13:18 - 2012-04-17 13:18 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{2DACD392-0E0F-4446-9FE2-96CDABD918EF} 2012-04-17 13:15 - 2012-04-17 13:15 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A32B6CDD-863D-40EE-95CB-33F06DEA0D44} 2012-04-17 13:15 - 2012-04-17 13:14 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{F176C6E3-46CE-46A0-B510-7010FDD1DE4D} 2012-04-17 13:11 - 2012-04-17 13:11 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{F3A19CE7-9943-44CF-832A-1FFCCC18FC72} 2012-04-17 13:10 - 2012-04-17 13:10 - 0787995 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_17_14_10_00.dmp 2012-04-17 13:10 - 2012-04-17 13:10 - 0786175 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_17_14_10_31.dmp 2012-04-17 13:10 - 2012-04-17 13:10 - 0785602 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_17_14_10_20.dmp 2012-04-17 05:50 - 2012-04-17 05:49 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E8001B5E-8B40-4597-9340-307654384186} 2012-04-17 05:49 - 2012-04-17 05:49 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{ABE57913-591E-46DF-AE23-7918AE6E8E39} 2012-04-16 14:03 - 2012-04-16 14:03 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{1489A46E-E4A1-427A-92D0-021AAA7D907A} 2012-04-16 14:02 - 2012-04-16 14:02 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{45365696-A885-4A1D-8B86-829555F8F299} 2012-04-16 13:17 - 2012-04-16 13:17 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{94DFC8FC-ED4D-4BC1-BCC8-1EF65E016879} 2012-04-16 13:16 - 2012-04-16 13:16 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{F0F60063-0DBF-4E48-B92E-348A294104CB} 2012-04-16 13:14 - 2012-04-16 13:14 - 0789595 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_16_14_14_30.dmp 2012-04-16 13:14 - 2012-04-16 13:14 - 0787549 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_16_14_14_11.dmp 2012-04-16 13:14 - 2012-04-16 13:14 - 0783185 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_16_14_14_40.dmp 2012-04-16 03:23 - 2012-04-16 03:23 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D4B70738-FE3E-4827-A789-AE711623858B} 2012-04-16 02:11 - 2012-04-16 02:10 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{2CB0EE03-B12D-4BCB-9196-805CF535872F} 2012-04-16 02:10 - 2012-04-16 02:10 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{491945EF-E879-40B7-8EE8-AA17301D70F5} 2012-04-15 15:23 - 2012-04-15 15:23 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{2748E8F8-0D87-4266-88FF-5921A7D0990A} 2012-04-15 15:22 - 2012-04-15 15:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{68CEE430-B38E-405B-8AC4-55A1C7B0C317} 2012-04-15 15:18 - 2012-04-15 15:17 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{AF10622C-DBA9-48A2-B281-0572241D7946} 2012-04-15 15:17 - 2012-04-15 15:17 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{5FF3E234-1531-4C6B-87EB-983894087982} 2012-04-15 15:15 - 2012-04-15 15:14 - 0779291 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_15_16_14_58.dmp 2012-04-15 15:14 - 2012-04-15 15:14 - 0785973 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_15_16_14_47.dmp 2012-04-15 15:14 - 2012-04-15 15:14 - 0782209 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_15_16_14_30.dmp 2012-04-15 06:50 - 2012-04-15 06:50 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E0D0AA84-6462-4F1B-A8D0-5574DFCF3007} 2012-04-15 06:50 - 2012-04-15 06:49 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{1E0D43D8-1EC0-4E4F-9F63-3CEB28890198} 2012-04-15 03:49 - 2012-04-15 03:49 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{9A484E71-F550-451B-A73B-E86739E27EBD} 2012-04-15 03:49 - 2012-04-15 03:49 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{67E0F8EA-7860-4AA6-8937-FE1DB5FCC905} 2012-04-15 03:46 - 2012-04-15 03:46 - 0790764 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_15_04_46_08.dmp 2012-04-15 03:46 - 2012-04-15 03:46 - 0783479 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_15_04_46_17.dmp 2012-04-15 03:45 - 2012-04-15 03:45 - 0778715 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_15_04_45_47.dmp 2012-04-14 17:42 - 2012-04-14 17:41 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{CB7FE5B6-6AD3-4E38-B371-6894CE3B287D} 2012-04-14 17:41 - 2012-04-14 17:41 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{ABEBD130-82C7-4C49-A985-F3E48C1C6183} 2012-04-14 17:40 - 2012-04-14 17:40 - 0785641 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_14_18_40_24.dmp 2012-04-14 17:40 - 2012-04-14 17:40 - 0780846 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_14_18_40_35.dmp 2012-04-14 17:38 - 2012-04-14 17:38 - 0790272 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_14_18_38_41.dmp 2012-04-14 16:09 - 2012-04-14 16:09 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{0FC923E6-D953-44D5-B39F-9FFDADC407A5} 2012-04-14 16:09 - 2012-04-14 16:09 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{0B556D15-FD19-438D-8B94-6E6D61B41BCA} 2012-04-14 14:52 - 2012-04-14 14:52 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{72A92459-7926-4922-BF6B-4463F8F80DC0} 2012-04-14 14:52 - 2012-04-14 14:52 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{5D47B65F-2F72-4B05-8D4D-48E8FD528978} 2012-04-14 14:25 - 2012-04-14 14:23 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{313F7EDF-4DF2-42A2-B895-0DA5AEDD31CC} 2012-04-14 14:23 - 2012-04-14 14:23 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{313D4C30-E78E-407A-920D-BBD688050117} 2012-04-14 14:19 - 2012-04-14 14:19 - 0787562 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_14_15_19_53.dmp 2012-04-14 14:19 - 2012-04-14 14:19 - 0787277 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_14_15_19_44.dmp 2012-04-14 14:19 - 2012-04-14 14:19 - 0784531 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_14_15_19_20.dmp 2012-04-14 05:22 - 2012-04-14 05:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{BF521969-D467-4031-A912-F52C09F8BDB3} 2012-04-14 05:22 - 2012-04-14 05:21 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{9840A383-5F1E-438D-9077-305671440D13} 2012-04-13 23:06 - 2012-04-13 23:06 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{81C5D2F1-0148-44C4-A76E-7C06AC1E192A} 2012-04-13 23:06 - 2012-04-13 23:05 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{9606C1EB-455B-4263-8ACE-2469480A4E09} 2012-04-13 17:41 - 2012-04-13 17:41 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{653DD3B9-D5AD-4AE9-9636-7C8FF0016088} 2012-04-13 17:41 - 2012-04-13 17:41 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{0067F58B-BB7D-4921-8415-A956CA5B91C2} 2012-04-13 17:36 - 2012-04-13 17:36 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{F3965CFE-5CCE-438F-B5DF-B1439CF3E79B} 2012-04-13 17:36 - 2012-04-13 17:36 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A847926F-8746-4F4D-8509-DF3D811FD8C0} 2012-04-13 17:31 - 2012-04-13 17:31 - 0791681 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_13_18_31_00.dmp 2012-04-13 17:31 - 2012-04-13 17:31 - 0790237 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_13_18_31_08.dmp 2012-04-13 17:30 - 2012-04-13 17:30 - 0778717 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_13_18_30_39.dmp 2012-04-13 13:36 - 2012-04-13 13:35 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E4DF7679-72FF-4292-8A85-FEF50CE70334} 2012-04-13 13:34 - 2012-04-13 13:34 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{828CCF63-AD4B-49B0-B936-BA2B43234980} 2012-04-13 13:31 - 2012-04-13 13:31 - 0792463 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_13_14_31_13.dmp 2012-04-13 13:31 - 2012-04-13 13:31 - 0784531 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_13_14_31_21.dmp 2012-04-13 13:30 - 2012-04-13 13:30 - 0790106 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_13_14_30_54.dmp 2012-04-13 02:55 - 2012-04-13 02:55 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A4AB0C19-B51B-426E-83BB-08D24A444C79} 2012-04-13 02:30 - 2012-04-13 02:30 - 0785607 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_13_03_30_05.dmp 2012-04-13 02:29 - 2012-04-13 02:29 - 0791112 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_13_03_29_57.dmp 2012-04-13 02:29 - 2012-04-13 02:29 - 0783487 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_13_03_29_39.dmp 2012-04-12 22:51 - 2011-04-08 16:07 - 0000000 ___HD C:\Users\pcwt5\Documents\_BUY FLAT 2012-04-12 20:20 - 2012-04-12 20:20 - 0779458 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_21_20_07.dmp 2012-04-12 20:19 - 2012-04-12 20:19 - 0782612 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_21_19_57.dmp 2012-04-12 20:19 - 2012-04-12 20:19 - 0781808 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_21_19_42.dmp 2012-04-12 19:36 - 2012-04-12 19:36 - 0786966 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_20_36_26.dmp 2012-04-12 19:36 - 2012-04-12 19:36 - 0785453 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_20_36_36.dmp 2012-04-12 19:35 - 2012-04-12 19:35 - 0780589 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_20_35_14.dmp 2012-04-12 19:27 - 2009-07-14 05:13 - 0732510 ____A C:\Windows\System32\PerfStringBackup.INI 2012-04-12 19:25 - 2012-04-12 19:25 - 0000000 ____D C:\53d69b7d3999c7df3d785d5d 2012-04-12 19:25 - 2009-12-03 01:50 - 0000000 ____D C:\Users\All Users\Microsoft Help 2012-04-12 19:25 - 2009-12-03 01:50 - 0000000 ____D C:\ProgramData\Microsoft Help 2012-04-12 19:17 - 2010-05-25 14:42 - 57249312 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe 2012-04-12 18:23 - 2009-07-14 03:20 - 0000000 ____D C:\Windows\System32\NDF 2012-04-12 14:54 - 2012-04-12 14:54 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{9BED58FD-B02C-4C85-8924-70F1E62D2FCD} 2012-04-12 14:08 - 2012-04-12 14:08 - 0792474 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_15_08_21.dmp 2012-04-12 14:08 - 2012-04-12 14:08 - 0784566 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_15_08_13.dmp 2012-04-12 14:08 - 2012-04-09 22:37 - 0000000 __ASH C:\Windows\System32\dds_trash_log.cmd 2012-04-12 14:07 - 2012-04-12 14:07 - 0788513 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_15_07_57.dmp 2012-04-12 07:39 - 2012-04-12 07:39 - 3422506 ___AH C:\Users\pcwt5\Downloads\20120406_123023.jpg 2012-04-12 03:45 - 2012-04-12 03:45 - 0796109 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_04_45_01.dmp 2012-04-12 03:45 - 2012-04-12 03:45 - 0779361 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_04_45_16.dmp 2012-04-12 03:44 - 2012-04-12 03:44 - 0785387 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_04_44_10.dmp 2012-04-12 03:34 - 2012-04-12 03:34 - 0784170 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_04_34_50.dmp 2012-04-12 03:34 - 2012-04-12 03:34 - 0781696 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_04_34_22.dmp 2012-04-12 03:34 - 2012-04-12 03:34 - 0778844 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_04_34_41.dmp 2012-04-12 02:54 - 2012-04-12 02:53 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{0A0DBCC2-1F4A-4CC9-B8A7-91036D32088E} 2012-04-12 02:48 - 2012-04-12 02:48 - 0791094 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_03_48_19.dmp 2012-04-12 02:48 - 2012-04-12 02:48 - 0786174 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_03_48_10.dmp 2012-04-12 02:47 - 2012-04-12 02:47 - 0786894 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_03_47_53.dmp 2012-04-11 23:40 - 2012-04-11 23:40 - 0791475 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_00_40_15.dmp 2012-04-11 23:40 - 2012-04-11 23:40 - 0783811 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_00_40_01.dmp 2012-04-11 23:38 - 2012-04-11 23:38 - 0788472 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_12_00_38_37.dmp 2012-04-11 21:54 - 2012-04-11 21:54 - 0000000 ___HD C:\Users\pcwt5\AppData\Roaming\Ihyl 2012-04-11 14:26 - 2012-04-11 14:26 - 0365824 ____A C:\Windows\SysWOW64\jnjvffgk.dat 2012-04-11 14:26 - 2012-04-11 14:26 - 0154368 ____A C:\Windows\SysWOW64\hcvhdhoj.dat 2012-04-11 14:26 - 2012-04-11 14:26 - 0136960 ____A C:\Windows\SysWOW64\itrevakl.dat 2012-04-11 14:26 - 2012-04-11 14:26 - 0058112 ____A C:\Windows\SysWOW64\nlwpporx.dat 2012-04-11 14:26 - 2012-04-11 14:26 - 0055040 ____A C:\Windows\SysWOW64\aylzcsni.dat 2012-04-11 14:26 - 2012-04-11 14:26 - 0041216 ____A C:\Windows\SysWOW64\ussqpxhp.dat 2012-04-11 14:26 - 2012-04-11 14:26 - 0036608 ____A C:\Windows\SysWOW64\yffknixm.dat 2012-04-11 14:26 - 2012-04-11 14:26 - 0034048 ____A C:\Windows\SysWOW64\ifoaxtlp.dat 2012-04-11 14:00 - 2012-04-11 14:00 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{90E20183-D7B9-4275-967C-40903175EBC7} 2012-04-11 13:54 - 2012-04-11 13:54 - 0000000 ___HD C:\Users\All Users\windows-updater 2012-04-11 13:54 - 2012-04-11 13:54 - 0000000 ___HD C:\ProgramData\windows-updater 2012-04-11 13:43 - 2012-04-11 13:43 - 0790464 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_11_14_43_24.dmp 2012-04-11 13:43 - 2012-04-11 13:43 - 0786434 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_11_14_43_13.dmp 2012-04-11 13:42 - 2012-04-11 13:42 - 0789746 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_11_14_42_55.dmp 2012-04-11 01:59 - 2012-04-11 01:59 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{CEA53D8F-D31B-4B37-A5BE-6E93364126A7} 2012-04-11 01:57 - 2012-04-11 01:57 - 0790605 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_11_02_57_44.dmp 2012-04-11 01:57 - 2012-04-11 01:57 - 0787417 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_11_02_57_27.dmp 2012-04-11 01:57 - 2012-04-11 01:57 - 0785523 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_11_02_57_56.dmp 2012-04-10 13:15 - 2012-04-10 13:14 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E7BD7768-28D8-4205-ADB3-1FBC269072A2} 2012-04-10 13:12 - 2012-04-10 13:12 - 0793712 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_10_14_12_27.dmp 2012-04-10 13:12 - 2012-04-10 13:12 - 0787851 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_10_14_12_44.dmp 2012-04-10 13:12 - 2012-04-10 13:12 - 0780642 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_10_14_12_52.dmp 2012-04-10 07:53 - 2010-04-04 17:03 - 0196608 ____A C:\Windows\System32\Ikeext.etl 2012-04-09 22:36 - 2012-04-09 22:36 - 0000000 ____D C:\Windows\system64 2012-04-09 22:10 - 2012-04-09 22:10 - 0800009 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_09_23_10_22.dmp 2012-04-09 22:10 - 2012-04-09 22:10 - 0786582 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_09_23_10_31.dmp 2012-04-09 22:10 - 2012-02-05 17:55 - 0000437 ____A C:\Windows\System32\Drivers\etc\hosts.ics 2012-04-09 22:09 - 2012-04-09 22:09 - 0799121 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_09_23_09_55.dmp 2012-04-09 21:56 - 2012-04-09 21:56 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{01DD07FF-A88C-4A6C-81D8-1FE1CC4A21A3} 2012-04-09 21:53 - 2012-04-09 21:53 - 0792488 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_09_22_53_45.dmp 2012-04-09 21:53 - 2012-04-09 21:53 - 0787627 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_09_22_53_23.dmp 2012-04-09 21:53 - 2012-04-09 21:53 - 0785514 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_09_22_53_52.dmp 2012-04-09 04:36 - 2012-04-09 04:35 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{CCC4CAEB-E454-49EB-A9D8-FC7F99F080EE} 2012-04-09 02:37 - 2012-04-09 02:37 - 0789330 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_09_03_37_29.dmp 2012-04-09 02:37 - 2012-04-09 02:37 - 0788739 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_09_03_37_20.dmp 2012-04-09 02:37 - 2012-04-09 02:37 - 0782053 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_09_03_37_03.dmp 2012-04-08 17:42 - 2012-04-08 17:42 - 0057344 ___AH C:\Users\pcwt5\Downloads\Amended Checklist-PreTransferofBunkers Final version.doc 2012-04-08 16:35 - 2012-04-08 16:35 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{0CA70EB3-809F-41A8-8B31-75A13DC848CD} 2012-04-08 16:06 - 2012-04-08 16:06 - 0780079 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_08_17_06_34.dmp 2012-04-08 16:06 - 2012-04-08 16:06 - 0776152 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_08_17_06_26.dmp 2012-04-08 16:05 - 2012-04-08 16:05 - 0782915 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_08_17_05_59.dmp 2012-04-08 04:35 - 2012-04-08 04:34 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{28AD863C-A57E-4225-BD13-8A98E22F16D5} 2012-04-08 01:33 - 2012-02-15 05:54 - 0065600 ____A (microOLAP Technologies LTD) C:\Windows\System32\Drivers\pssdklbf.sys 2012-04-08 01:33 - 2012-02-15 05:54 - 0053312 ____A (microOLAP Technologies LTD) C:\Windows\System32\Drivers\pssdk42.sys 2012-04-08 01:32 - 2012-04-08 01:32 - 0791776 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_08_02_32_46.dmp 2012-04-08 01:32 - 2012-04-08 01:32 - 0791288 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_08_02_32_37.dmp 2012-04-08 01:32 - 2012-04-08 01:32 - 0790229 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_08_02_32_05.dmp 2012-04-07 16:34 - 2012-04-07 16:34 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{C0E83092-E37B-4227-A187-DAD3BE5D9EF6} 2012-04-07 16:31 - 2012-04-07 16:31 - 0789654 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_07_17_31_36.dmp 2012-04-07 16:31 - 2012-04-07 16:31 - 0787146 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_07_17_31_29.dmp 2012-04-07 16:30 - 2012-04-07 16:30 - 0785691 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_07_17_30_57.dmp 2012-04-06 16:53 - 2012-04-06 16:53 - 0793267 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_06_17_53_18.dmp 2012-04-06 16:53 - 2012-04-06 16:53 - 0783181 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_06_17_53_05.dmp 2012-04-06 16:50 - 2012-04-06 16:50 - 0783872 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_06_17_50_14.dmp 2012-04-06 16:43 - 2012-04-06 16:42 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{19AEB20F-4347-473A-B425-B2E5B4D98F9E} 2012-04-06 16:38 - 2011-12-28 04:35 - 0118520 ____A C:\Users\Guest\AppData\Local\GDIPFONTCACHEV1.DAT 2012-04-06 16:37 - 2012-04-06 16:37 - 0789635 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_06_17_37_41.dmp 2012-04-06 16:37 - 2012-04-06 16:37 - 0783909 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_06_17_37_15.dmp 2012-04-06 16:37 - 2012-04-06 16:37 - 0783846 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_06_17_37_52.dmp 2012-04-06 01:27 - 2012-04-06 01:26 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{093BDA9C-C8FB-47C5-806D-7BEB71014A51} 2012-04-05 21:38 - 2012-04-05 21:38 - 0792218 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_05_22_38_21.dmp 2012-04-05 21:38 - 2012-04-05 21:38 - 0789098 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_05_22_38_31.dmp 2012-04-05 21:37 - 2012-04-05 21:37 - 0783618 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_05_22_37_47.dmp 2012-04-05 20:18 - 2012-04-05 20:18 - 0786108 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_05_21_18_54.dmp 2012-04-05 20:18 - 2012-04-05 20:18 - 0784381 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_05_21_18_45.dmp 2012-04-05 20:18 - 2012-04-05 20:18 - 0780420 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_05_21_18_08.dmp 2012-04-05 15:17 - 2012-04-05 15:17 - 0798131 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_05_16_17_26.dmp 2012-04-05 15:17 - 2012-04-05 15:17 - 0791312 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_05_16_17_37.dmp 2012-04-05 15:16 - 2012-04-05 15:16 - 0785818 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_05_16_16_53.dmp 2012-04-05 13:26 - 2012-04-05 13:26 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{73B000D6-5370-4ACA-871C-E32BB1DF2703} 2012-04-05 13:24 - 2012-04-05 13:23 - 0784445 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_05_14_23_59.dmp 2012-04-05 13:23 - 2012-04-05 13:23 - 0784493 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_05_14_23_21.dmp 2012-04-05 13:23 - 2012-04-05 13:23 - 0780690 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_05_14_23_50.dmp 2012-04-05 01:18 - 2012-04-05 01:18 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{5E7A9E4E-AF46-4EB8-AA06-FCB7ED24D494} 2012-04-04 22:44 - 2012-04-04 22:44 - 0787053 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_04_23_44_30.dmp 2012-04-04 22:44 - 2012-04-04 22:44 - 0781551 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_04_23_44_22.dmp 2012-04-04 22:41 - 2012-04-04 22:41 - 0781643 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_04_23_41_25.dmp 2012-04-04 14:17 - 2012-04-04 14:17 - 0001698 ___AH C:\Users\pcwt5\Desktop\all_SUPPORT_APRIL_2012.xls - Shortcut.lnk 2012-04-04 13:17 - 2012-04-04 13:17 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{B11E0CBB-AEBC-4FF7-8086-0CA251AC1D5D} 2012-04-04 13:10 - 2012-04-04 13:10 - 0797646 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_04_14_10_36.dmp 2012-04-04 13:10 - 2012-04-04 13:10 - 0791504 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_04_14_10_45.dmp 2012-04-04 13:10 - 2012-04-04 13:10 - 0783941 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_04_14_10_04.dmp 2012-04-04 01:17 - 2012-04-04 01:17 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{9603F108-A9B3-4FCA-8569-7785F4D9C15E} 2012-04-03 13:17 - 2012-04-03 13:16 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{9655596E-E0C3-4EFA-8B70-BF26A1D69DF0} 2012-04-03 13:10 - 2012-04-03 13:10 - 0786613 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_03_14_10_19.dmp 2012-04-03 13:10 - 2012-04-03 13:10 - 0785906 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_03_14_10_29.dmp 2012-04-03 13:09 - 2012-04-03 13:09 - 0782875 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_03_14_09_49.dmp 2012-04-03 02:54 - 2012-04-03 02:54 - 0793440 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_03_03_54_23.dmp 2012-04-03 02:54 - 2012-04-03 02:54 - 0785633 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_03_03_54_31.dmp 2012-04-03 02:53 - 2012-04-03 02:53 - 0789532 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_03_03_53_54.dmp 2012-04-03 01:16 - 2012-04-03 01:16 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A9B8E981-B797-4F6B-8A93-55856244098A} 2012-04-02 21:30 - 2012-04-02 21:30 - 0779682 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_02_22_30_04.dmp 2012-04-02 21:29 - 2012-04-02 21:29 - 0789552 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_02_22_29_11.dmp 2012-04-02 21:29 - 2012-04-02 21:29 - 0783333 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_02_22_29_56.dmp 2012-04-02 21:29 - 2012-04-02 21:29 - 0275904 ____A C:\Windows\Minidump\040212-26956-01.dmp 2012-04-02 21:29 - 2010-04-07 02:31 - 0000000 ____D C:\Windows\Minidump 2012-04-02 21:28 - 2010-04-07 02:31 - 592086757 ____A C:\Windows\MEMORY.DMP 2012-04-02 13:16 - 2012-04-02 13:15 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{F64760A1-DABE-4FBA-8442-C186772D9EDD} 2012-04-02 13:12 - 2012-04-02 13:12 - 0790591 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_02_14_12_16.dmp 2012-04-02 13:12 - 2012-04-02 13:12 - 0789829 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_02_14_12_26.dmp 2012-04-02 13:11 - 2012-04-02 13:11 - 0786231 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_02_14_11_45.dmp 2012-04-02 04:40 - 2012-04-02 04:40 - 0788060 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_02_05_40_04.dmp 2012-04-02 04:39 - 2012-04-02 04:39 - 0787769 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_02_05_39_54.dmp 2012-04-02 04:39 - 2012-04-02 04:39 - 0778429 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_02_05_39_27.dmp 2012-04-02 01:14 - 2012-04-02 01:14 - 0791610 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_02_02_14_22.dmp 2012-04-02 01:14 - 2012-04-02 01:14 - 0788218 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_02_02_14_35.dmp 2012-04-02 01:13 - 2012-04-02 01:13 - 0800328 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_02_02_13_54.dmp 2012-04-01 22:38 - 2012-04-01 22:38 - 0779874 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_01_23_38_04.dmp 2012-04-01 22:37 - 2012-04-01 22:37 - 0782720 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_01_23_37_54.dmp 2012-04-01 22:35 - 2012-04-01 22:35 - 0783298 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_01_23_35_34.dmp 2012-04-01 20:31 - 2012-04-01 20:31 - 0784641 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_01_21_31_09.dmp 2012-04-01 20:30 - 2012-04-01 20:30 - 0791482 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_01_21_30_58.dmp 2012-04-01 20:30 - 2012-04-01 20:30 - 0780556 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_01_21_30_33.dmp 2012-04-01 19:14 - 2012-04-01 19:14 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{ED4B3C7F-FEE9-451F-8C2D-0E93DFEC2673} 2012-04-01 19:12 - 2012-04-01 19:12 - 0789135 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_01_20_12_09.dmp 2012-04-01 19:12 - 2012-04-01 19:12 - 0786586 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_01_20_12_21.dmp 2012-04-01 19:11 - 2012-04-01 19:11 - 0787250 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_01_20_11_42.dmp 2012-04-01 05:08 - 2012-04-01 05:08 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{126DA58F-8CF0-4639-9C1C-4CBFF54CF949} 2012-04-01 05:06 - 2012-04-01 05:06 - 0786648 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_01_06_06_27.dmp 2012-04-01 05:06 - 2012-04-01 05:06 - 0782545 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_01_06_06_39.dmp 2012-04-01 05:05 - 2012-04-01 05:05 - 0777737 ____A C:\Windows\SysWOW64\(null)AAWService__2012_04_01_06_05_55.dmp 2012-03-30 22:15 - 2012-03-30 22:15 - 0790249 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_30_23_15_44.dmp 2012-03-30 22:15 - 2012-03-30 22:15 - 0789207 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_30_23_15_04.dmp 2012-03-30 22:15 - 2012-03-30 22:15 - 0785845 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_30_23_15_35.dmp 2012-03-30 18:28 - 2012-03-30 18:28 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{48FF573C-2F3B-44C5-AAEE-BB3DC5B12C94} 2012-03-30 14:11 - 2012-03-30 14:11 - 0787531 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_30_15_11_05.dmp 2012-03-30 14:10 - 2012-03-30 14:10 - 0793455 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_30_15_10_57.dmp 2012-03-30 14:10 - 2012-03-30 14:10 - 0784175 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_30_15_10_21.dmp 2012-03-30 06:28 - 2012-03-29 18:27 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{2A094898-4B5B-4728-BAB8-E00E0E074CBC} 2012-03-29 14:08 - 2012-03-29 14:08 - 0788155 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_29_15_08_08.dmp 2012-03-29 14:08 - 2012-03-29 14:07 - 0788504 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_29_15_07_58.dmp 2012-03-29 14:07 - 2012-03-29 14:07 - 0780857 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_29_15_07_35.dmp 2012-03-29 06:27 - 2012-03-29 06:27 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{89FA422D-D61C-4FAD-8ABB-D74940C3E928} 2012-03-29 06:27 - 2012-03-29 06:27 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{7229035C-C44D-437D-83AF-381BE62D6E6C} 2012-03-29 02:10 - 2009-07-14 02:34 - 0000813 ____A C:\Windows\win.ini 2012-03-28 18:26 - 2012-03-28 18:26 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E2DA806B-FAD0-4AEC-B0D5-8BE7B50EA5A8} 2012-03-28 18:26 - 2012-03-28 18:26 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A8F003A8-F7B9-4E23-A74D-F0B8583F2D89} 2012-03-28 18:26 - 2012-03-28 18:26 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{4B7F35BA-05F8-4D28-9EB8-D490D9D9D54E} 2012-03-28 18:26 - 2012-03-28 18:26 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{298079E3-D3CB-4EBA-BE4E-9E93A6E4532E} 2012-03-28 14:04 - 2012-03-28 14:04 - 0793276 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_28_15_04_38.dmp 2012-03-28 14:04 - 2012-03-28 14:04 - 0788369 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_28_15_04_03.dmp 2012-03-28 14:04 - 2012-03-28 14:04 - 0781982 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_28_15_04_50.dmp 2012-03-28 06:25 - 2012-03-28 06:25 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{F33422C1-DD1F-4A51-AAA5-88D827975AA2} 2012-03-28 06:25 - 2012-03-28 06:25 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{0B9934DA-70EB-4BEE-9942-355974B6CE74} 2012-03-28 01:53 - 2012-03-28 01:53 - 0788527 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_28_02_53_03.dmp 2012-03-28 01:53 - 2012-03-28 01:53 - 0780978 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_28_02_53_14.dmp 2012-03-28 01:52 - 2012-03-28 01:52 - 0783347 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_28_02_52_27.dmp 2012-03-27 22:17 - 2012-03-27 22:17 - 0793658 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_27_23_17_16.dmp 2012-03-27 22:17 - 2012-03-27 22:17 - 0792612 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_27_23_17_05.dmp 2012-03-27 22:16 - 2012-03-27 22:16 - 0804228 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_27_23_16_30.dmp 2012-03-27 21:58 - 2012-03-27 21:58 - 0783740 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_27_22_58_00.dmp 2012-03-27 21:57 - 2012-03-27 21:57 - 0782764 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_27_22_57_52.dmp 2012-03-27 21:57 - 2012-03-27 21:57 - 0779613 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_27_22_57_21.dmp 2012-03-27 19:38 - 2012-03-27 19:38 - 0801663 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_27_20_38_39.dmp 2012-03-27 19:38 - 2012-03-27 19:38 - 0787764 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_27_20_38_30.dmp 2012-03-27 19:38 - 2012-03-27 19:38 - 0782358 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_27_20_38_06.dmp 2012-03-27 18:25 - 2012-03-27 18:24 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{DD6EBFA2-0094-46DA-8FC5-D2B33DEF8F72} 2012-03-27 18:24 - 2012-03-27 18:24 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{689873F9-1CA7-4904-8DB0-C90D4CC50B73} 2012-03-27 18:24 - 2012-03-27 18:24 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{3AF82852-E121-4D6A-847E-BD6FE07FE561} 2012-03-27 18:24 - 2012-03-27 18:24 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{05A45294-D09A-4E50-A83A-76CEC1529B10} 2012-03-27 14:34 - 2012-03-27 14:34 - 0793553 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_27_15_34_03.dmp 2012-03-27 14:33 - 2012-03-27 14:33 - 0795823 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_27_15_33_27.dmp 2012-03-27 14:33 - 2012-03-27 14:33 - 0790969 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_27_15_33_52.dmp 2012-03-27 06:23 - 2012-03-27 06:23 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E645CBEB-D2E8-4290-8883-1913DD476098} 2012-03-27 06:23 - 2012-03-27 06:23 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{6C41E80F-153F-47D9-969D-1512FFCCA778} 2012-03-27 06:23 - 2012-03-27 06:23 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{3394245B-5523-4A83-AAD8-BAD5B7228179} 2012-03-27 06:23 - 2012-03-27 06:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{8D95B68D-2CD3-4CED-84B2-7F42ED0E819C} 2012-03-27 02:19 - 2012-03-27 02:19 - 0791242 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_27_03_19_21.dmp 2012-03-27 02:19 - 2012-03-27 02:19 - 0787793 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_27_03_19_12.dmp 2012-03-27 02:18 - 2012-03-27 02:18 - 0791111 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_27_03_18_48.dmp 2012-03-26 23:10 - 2012-03-26 23:10 - 0788098 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_27_00_10_47.dmp 2012-03-26 23:10 - 2012-03-26 23:10 - 0787362 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_27_00_10_12.dmp 2012-03-26 23:10 - 2012-03-26 23:10 - 0778783 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_27_00_10_57.dmp 2012-03-26 18:22 - 2012-03-26 18:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A6E63F62-40A7-4853-A9DF-4DD7DF1F1B97} 2012-03-26 18:22 - 2012-03-26 18:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{884D1D4E-57AB-4E75-BBE8-C38B8DD105D9} 2012-03-26 18:22 - 2012-03-26 18:21 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{6BAC9B0B-DF45-4301-9695-C2BD25FD6F47} 2012-03-26 18:21 - 2012-03-26 18:21 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{83FC1642-E09F-4354-AFAF-F88EACAE538A} 2012-03-26 15:14 - 2012-03-26 15:14 - 0793311 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_26_16_14_35.dmp 2012-03-26 15:14 - 2012-03-26 15:14 - 0788564 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_26_16_14_43.dmp 2012-03-26 15:14 - 2012-03-26 15:14 - 0787711 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_26_16_14_10.dmp 2012-03-26 06:20 - 2012-03-26 06:20 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D4572E9D-826B-4C66-A290-B80A2AF079EE} 2012-03-26 06:20 - 2012-03-26 06:19 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{EABE04C2-35FE-43A6-8497-D734D72A0BCA} 2012-03-26 06:17 - 2012-03-26 06:17 - 0785284 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_26_07_17_07.dmp 2012-03-26 06:17 - 2012-03-26 06:17 - 0785003 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_26_07_17_53.dmp 2012-03-26 06:17 - 2012-03-26 06:17 - 0781544 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_26_07_17_42.dmp 2012-03-25 17:29 - 2012-03-25 17:29 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{71CAFFE8-3CCC-406C-A90E-ABEDFE22D83A} 2012-03-25 17:29 - 2012-03-25 17:29 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{058771D1-4FED-45C3-898C-856C5D1FDBE0} 2012-03-25 17:26 - 2012-03-25 17:26 - 0789263 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_25_18_26_23.dmp 2012-03-25 17:26 - 2012-03-25 17:26 - 0786472 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_25_18_26_30.dmp 2012-03-25 17:25 - 2012-03-25 17:25 - 0782543 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_25_18_25_59.dmp 2012-03-25 05:44 - 2012-03-25 05:44 - 0026093 ___AH C:\Users\pcwt5\Desktop\Index.php 2012-03-25 04:27 - 2012-03-25 04:27 - 0782703 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_25_05_27_24.dmp 2012-03-25 04:27 - 2012-03-25 04:27 - 0780186 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_25_05_27_32.dmp 2012-03-25 04:26 - 2012-03-25 04:26 - 0778163 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_25_05_26_09.dmp 2012-03-25 04:26 - 2012-03-25 04:25 - 0275904 ____A C:\Windows\Minidump\032512-27003-01.dmp 2012-03-25 04:17 - 2012-03-25 04:16 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{781EA2A0-FFDD-44FD-91E1-F83E6B22B899} 2012-03-25 04:16 - 2012-03-25 04:16 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{4D64C9C6-1970-4AD7-BCB1-1F6FAC18C7F2} 2012-03-25 04:03 - 2012-03-22 00:26 - 0001307 ___AH C:\Users\pcwt5\Desktop\Google Chrome.lnk 2012-03-25 00:35 - 2012-03-25 00:35 - 0783881 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_25_00_35_25.dmp 2012-03-25 00:35 - 2012-03-25 00:35 - 0780196 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_25_00_35_35.dmp 2012-03-25 00:33 - 2012-03-25 00:33 - 0786102 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_25_00_33_07.dmp 2012-03-24 16:15 - 2012-03-24 16:15 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{AAF44EEB-16D1-48CE-8DB4-E99C667C5AEC} 2012-03-24 16:15 - 2012-03-24 16:15 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{2C875102-3CDD-4A4A-B726-E546FB9DF123} 2012-03-24 16:12 - 2012-03-24 16:12 - 0784629 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_24_16_12_27.dmp 2012-03-24 16:12 - 2012-03-24 16:12 - 0781118 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_24_16_12_43.dmp 2012-03-24 16:11 - 2012-03-24 16:11 - 0782919 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_24_16_11_31.dmp 2012-03-23 21:55 - 2012-03-23 16:08 - 0000254 ___AH C:\Users\pcwt5\Desktop\datadroid review txt.txt 2012-03-23 15:25 - 2012-03-23 15:24 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{CFE72C73-1A73-4C14-BD61-E736E59F20BD} 2012-03-23 15:24 - 2012-03-23 15:24 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{0A7DD057-21FE-4D9F-879C-95AEC7C3FC13} 2012-03-23 14:08 - 2012-03-23 14:08 - 0783239 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_23_14_08_20.dmp 2012-03-23 14:08 - 2012-03-23 14:08 - 0777122 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_23_14_08_12.dmp 2012-03-23 14:05 - 2012-03-23 14:05 - 0782426 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_23_14_05_07.dmp 2012-03-23 04:41 - 2012-03-23 04:41 - 0000000 ____D C:\Program Files\Common Files\WebM Project 2012-03-23 03:24 - 2012-03-23 03:24 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{B784044B-C165-45BE-8603-2A1B62D545B4} 2012-03-23 03:24 - 2012-03-23 03:24 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{944812B6-3A16-47DD-AD20-7D1194F7CCB1} 2012-03-23 03:24 - 2012-03-23 03:23 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{B95E37BB-3008-46A5-9950-99EF63FE873B} 2012-03-23 03:23 - 2012-03-23 03:23 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{3C4141C4-87EC-45C0-B693-5C1964EAEF55} 2012-03-22 22:14 - 2012-03-22 22:14 - 0804059 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_22_22_14_05.dmp 2012-03-22 22:13 - 2012-03-22 22:13 - 0781620 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_22_22_13_54.dmp 2012-03-22 22:10 - 2012-03-22 22:10 - 0793421 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_22_22_10_23.dmp 2012-03-22 15:23 - 2012-03-22 15:23 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{DBBCB992-76D7-43A8-B4EC-4B0037154BD6} 2012-03-22 15:23 - 2012-03-22 15:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D5A9DFF3-0733-47C1-904C-15449F5EF1FD} 2012-03-22 14:11 - 2012-03-22 14:11 - 0785280 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_22_14_11_17.dmp 2012-03-22 14:11 - 2012-03-22 14:11 - 0781464 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_22_14_11_39.dmp 2012-03-22 14:08 - 2012-03-22 14:08 - 0787023 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_22_14_08_38.dmp 2012-03-22 14:07 - 2012-03-22 00:25 - 0000000 ____D C:\Program Files (x86)\v9Soft 2012-03-22 04:59 - 2012-03-22 00:32 - 0000000 ___HD C:\Users\pcwt5\AppData\Roaming\PerformerSoft 2012-03-22 04:58 - 2012-03-22 00:25 - 0001070 ____A C:\Users\pcwt5\Desktop\Internet Explorer.lnk 2012-03-22 03:22 - 2012-03-22 03:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E2A784E7-CC9D-4C15-B5B0-F95D8B2CA91D} 2012-03-22 03:22 - 2012-03-22 03:21 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{544C6713-1339-47C2-90E5-188E8B4EA67A} 2012-03-22 03:21 - 2012-03-22 03:21 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{FB4913B8-A3E2-4810-8BFF-AC84A1D010EE} 2012-03-22 03:21 - 2012-03-22 03:21 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{BD99B9C2-38C6-4EF1-B757-ECA5A4887B79} 2012-03-22 02:23 - 2012-03-22 02:23 - 0788168 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_22_02_23_27.dmp 2012-03-22 02:23 - 2012-03-22 02:23 - 0783841 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_22_02_23_37.dmp 2012-03-22 02:22 - 2012-03-22 02:22 - 0788686 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_22_02_22_49.dmp 2012-03-22 01:12 - 2012-03-22 01:12 - 0790221 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_22_01_12_36.dmp 2012-03-22 01:12 - 2012-03-22 01:12 - 0785547 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_22_01_12_25.dmp 2012-03-22 01:11 - 2012-03-22 01:11 - 0793216 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_22_01_11_51.dmp 2012-03-22 00:56 - 2012-03-22 00:56 - 0796477 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_22_00_56_26.dmp 2012-03-22 00:56 - 2012-03-22 00:56 - 0794013 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_22_00_56_36.dmp 2012-03-22 00:55 - 2012-03-22 00:55 - 0789277 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_22_00_55_50.dmp 2012-03-22 00:36 - 2009-12-22 10:54 - 0118520 ___AH C:\Users\pcwt5\AppData\Local\GDIPFONTCACHEV1.DAT 2012-03-22 00:35 - 2012-03-22 00:35 - 0000240 ___AH C:\Users\pcwt5\Desktop\Age of Empires II Age of Kings.lnk 2012-03-22 00:34 - 2012-03-22 00:25 - 0002232 ___AH C:\Users\pcwt5\Desktop\Microsoft Age of Empires II Trial.lnk 2012-03-22 00:34 - 2012-03-22 00:25 - 0002232 ___AH C:\Users\Mcx1-PCWT5-VAIO\Desktop\Microsoft Age of Empires II Trial.lnk 2012-03-22 00:34 - 2012-03-22 00:25 - 0002232 ____A C:\Users\Guest\Desktop\Microsoft Age of Empires II Trial.lnk 2012-03-22 00:32 - 2012-03-22 00:32 - 0790520 ____A C:\Windows\SysWOW64\protector.dll 2012-03-22 00:32 - 2012-03-22 00:32 - 0001491 ____A C:\user.js 2012-03-22 00:32 - 2012-03-22 00:32 - 0000000 ___HD C:\Users\pcwt5\AppData\Roaming\Babylon 2012-03-22 00:32 - 2012-03-22 00:32 - 0000000 ___HD C:\Users\All Users\bProtector 2012-03-22 00:32 - 2012-03-22 00:32 - 0000000 ___HD C:\Users\All Users\Babylon 2012-03-22 00:32 - 2012-03-22 00:32 - 0000000 ___HD C:\ProgramData\bProtector 2012-03-22 00:32 - 2012-03-22 00:32 - 0000000 ___HD C:\ProgramData\Babylon 2012-03-22 00:32 - 2012-03-22 00:32 - 0000000 ____D C:\Windows\SysWOW64\Extensions 2012-03-22 00:32 - 2012-03-22 00:26 - 49083656 ___AH (Microsoft Corp.) C:\Users\pcwt5\Desktop\AoE2demo[1].exe 2012-03-22 00:32 - 2012-03-22 00:26 - 1519032 ___AH (ELEX) C:\Users\pcwt5\Desktop\v9sof[1].exe 2012-03-22 00:25 - 2012-03-22 00:25 - 0000000 ____D C:\Program Files (x86)\Microsoft Games 2012-03-22 00:25 - 2012-03-22 00:19 - 49083656 ___AH (Microsoft Corp.) C:\Users\pcwt5\Desktop\AoE2demo.exe 2012-03-22 00:25 - 2012-03-22 00:19 - 1519032 ___AH (ELEX) C:\Users\pcwt5\Desktop\v9sof.exe 2012-03-21 23:01 - 2012-03-21 23:01 - 0787047 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_21_23_01_01.dmp 2012-03-21 23:01 - 2012-03-21 23:01 - 0782422 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_21_23_01_45.dmp 2012-03-21 23:01 - 2012-03-21 23:01 - 0780600 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_21_23_01_56.dmp 2012-03-21 15:21 - 2012-03-21 15:20 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{31EAD668-4076-4D30-A90B-8FC8C4297C0F} 2012-03-21 15:20 - 2012-03-21 15:20 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{EED78B3B-D496-4C97-87D3-F9584BCCE551} 2012-03-21 15:20 - 2012-03-21 15:20 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{4F22416D-52E3-4DA2-B7C3-DFCC000A444F} 2012-03-21 15:20 - 2012-03-21 15:20 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{0D2E4E3D-81DD-4131-8E46-5BFD4C94BE58} 2012-03-21 13:17 - 2012-03-21 13:17 - 0788868 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_21_13_17_06.dmp 2012-03-21 13:16 - 2012-03-21 13:16 - 0794375 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_21_13_16_54.dmp 2012-03-21 13:16 - 2012-03-21 13:16 - 0791854 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_21_13_16_20.dmp 2012-03-21 06:30 - 2012-03-21 06:30 - 0795702 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_21_06_30_43.dmp 2012-03-21 06:30 - 2012-03-21 06:30 - 0785822 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_21_06_30_12.dmp 2012-03-21 06:30 - 2012-03-21 06:30 - 0778028 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_21_06_30_53.dmp 2012-03-21 03:19 - 2012-03-21 03:19 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{76890C1F-68C5-4265-9769-132AF67519B6} 2012-03-21 03:19 - 2012-03-21 03:19 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{687026A9-57AB-4C3D-8212-386F4655D4AB} 2012-03-20 22:53 - 2012-03-20 22:53 - 0812160 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_20_22_53_28.dmp 2012-03-20 22:53 - 2012-03-20 22:53 - 0796160 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_20_22_53_38.dmp 2012-03-20 22:52 - 2012-03-20 22:52 - 0785401 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_20_22_52_59.dmp 2012-03-20 15:19 - 2012-03-20 15:18 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{B88583A9-BF91-4736-A19F-47A2E4E268D8} 2012-03-20 15:18 - 2012-03-20 15:18 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{F7FF89A6-522D-4EE1-A76A-E4D76EA5FA57} 2012-03-20 14:05 - 2012-03-20 14:05 - 0784488 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_20_14_05_15.dmp 2012-03-20 14:05 - 2012-03-20 14:05 - 0784300 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_20_14_05_25.dmp 2012-03-20 14:02 - 2012-03-20 14:02 - 0785349 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_20_14_02_52.dmp 2012-03-20 03:17 - 2012-03-20 03:17 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A6A42C28-F43E-4611-8ABD-1F2DE5699BC0} 2012-03-20 03:17 - 2012-03-20 03:16 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{5F2E708D-545E-4CDB-A1CC-035A032D6840} 2012-03-20 03:13 - 2012-03-20 03:13 - 0792823 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_20_03_13_03.dmp 2012-03-20 03:13 - 2012-03-20 03:13 - 0791406 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_20_03_13_13.dmp 2012-03-20 03:12 - 2012-03-20 03:12 - 0791806 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_20_03_12_39.dmp 2012-03-19 18:39 - 2011-03-07 02:26 - 0000000 ___HD C:\Users\pcwt5\readme_files 2012-03-19 14:26 - 2012-03-19 14:26 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{C343F332-C0BE-4434-BA55-5AA58FE1CEED} 2012-03-19 14:26 - 2012-03-19 14:26 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{20C2842B-723E-4F42-84BE-838D42B11B5F} 2012-03-19 14:22 - 2012-03-19 14:22 - 0793572 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_19_14_22_06.dmp 2012-03-19 14:21 - 2012-03-19 14:21 - 0793422 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_19_14_21_28.dmp 2012-03-19 14:21 - 2012-03-19 14:21 - 0787569 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_19_14_21_56.dmp 2012-03-19 04:56 - 2012-03-19 04:56 - 0794719 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_19_04_56_20.dmp 2012-03-19 04:56 - 2012-03-19 04:56 - 0777968 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_19_04_56_46.dmp 2012-03-19 04:56 - 2012-03-19 04:56 - 0777380 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_19_04_56_55.dmp 2012-03-19 02:29 - 2012-03-19 02:29 - 0785337 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_19_02_29_19.dmp 2012-03-19 02:29 - 2012-03-19 02:29 - 0779298 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_19_02_29_08.dmp 2012-03-19 02:28 - 2012-03-19 02:28 - 0780321 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_19_02_28_39.dmp 2012-03-18 20:38 - 2012-03-18 20:38 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{40A54E10-3757-4BD7-92D3-8643F2461877} 2012-03-18 20:38 - 2012-03-18 20:37 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{4BACEB77-2727-4952-A15B-5F7B4A954E29} 2012-03-18 20:34 - 2012-03-18 20:34 - 0787255 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_18_20_34_18.dmp 2012-03-18 20:34 - 2012-03-18 20:34 - 0784298 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_18_20_34_27.dmp 2012-03-18 20:33 - 2012-03-18 20:33 - 0783364 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_18_20_33_56.dmp 2012-03-18 05:23 - 2012-03-18 05:23 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{9A27AFDD-4F15-4DBD-97BE-3A254B45E029} 2012-03-18 05:23 - 2012-03-18 05:23 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{0B1B3244-D833-49B7-B952-DEF60234DC9F} 2012-03-18 03:20 - 2012-03-18 03:20 - 0794668 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_18_03_20_01.dmp 2012-03-18 03:20 - 2012-03-18 03:20 - 0782966 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_18_03_20_13.dmp 2012-03-18 03:19 - 2012-03-18 03:19 - 0790217 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_18_03_19_35.dmp 2012-03-17 18:50 - 2012-03-17 18:50 - 0789353 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_17_18_50_43.dmp 2012-03-17 18:50 - 2012-03-17 18:50 - 0776168 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_17_18_50_36.dmp 2012-03-17 18:48 - 2012-03-17 18:48 - 0787772 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_17_18_48_14.dmp 2012-03-17 17:22 - 2012-03-17 17:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{BA566514-5B01-41FE-A5A6-D421A27F944D} 2012-03-17 17:22 - 2012-03-17 17:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{036AC698-3235-4971-84E1-9CA22266F3C5} 2012-03-17 17:14 - 2012-03-17 17:14 - 0804919 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_17_17_14_41.dmp 2012-03-17 17:14 - 2012-03-17 17:14 - 0791597 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_17_17_14_52.dmp 2012-03-17 17:14 - 2012-03-17 17:14 - 0787901 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_17_17_14_19.dmp 2012-03-17 03:53 - 2012-03-17 03:52 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{1978094E-DD56-4408-9EB4-B6A07FB7F994} 2012-03-17 03:52 - 2012-03-17 03:52 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{B8DCD544-F0B8-4449-8276-BE8CC4AAA72A} 2012-03-17 03:50 - 2012-03-17 03:50 - 0785578 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_17_03_50_04.dmp 2012-03-17 03:49 - 2012-03-17 03:49 - 0801690 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_17_03_49_52.dmp 2012-03-17 03:49 - 2012-03-17 03:49 - 0788950 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_17_03_49_28.dmp 2012-03-16 14:28 - 2012-03-16 14:28 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{50D4EBC4-245F-483C-9527-6440214A6775} 2012-03-16 14:28 - 2012-03-16 14:28 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{306C1AC0-EACE-44BA-A7A9-59780BBF47ED} 2012-03-16 13:51 - 2012-03-16 13:51 - 0791114 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_16_13_51_48.dmp 2012-03-16 13:51 - 2012-03-16 13:51 - 0788028 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_16_13_51_58.dmp 2012-03-16 13:51 - 2012-03-16 13:51 - 0787130 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_16_13_51_18.dmp 2012-03-16 02:27 - 2012-03-16 02:27 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{8FA3859E-12A4-43FB-B4C7-BF3755B5F641} 2012-03-16 02:27 - 2012-03-16 02:27 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{04D44BE6-FCBA-4B43-BAAD-D1815B8C08A5} 2012-03-15 23:06 - 2012-03-15 23:06 - 0794956 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_15_23_06_19.dmp 2012-03-15 23:06 - 2012-03-15 23:06 - 0789651 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_15_23_06_09.dmp 2012-03-15 23:05 - 2012-03-15 23:05 - 0794159 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_15_23_05_40.dmp 2012-03-15 14:26 - 2012-03-15 14:26 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{F16CB9F1-8117-4999-89EC-B73E7D94506C} 2012-03-15 14:26 - 2012-03-15 14:26 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{AE21521C-C143-4E4C-B283-99CD71EA6451} 2012-03-15 14:26 - 2012-03-15 14:26 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{4C6CF202-1A54-4EB0-97C7-7BDA96827886} 2012-03-15 14:26 - 2012-03-15 14:26 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{2FF10FC6-4D47-4412-B684-08FF7E0F3055} 2012-03-15 14:17 - 2012-03-15 14:17 - 0778474 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_15_14_17_24.dmp 2012-03-15 14:17 - 2012-03-15 14:17 - 0774273 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_15_14_17_11.dmp 2012-03-15 14:16 - 2012-03-15 14:16 - 0780614 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_15_14_16_44.dmp 2012-03-15 02:45 - 2012-03-15 02:45 - 0800739 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_15_02_45_39.dmp 2012-03-15 02:45 - 2012-03-15 02:45 - 0796749 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_15_02_45_03.dmp 2012-03-15 02:45 - 2012-03-15 02:45 - 0790632 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_15_02_45_51.dmp 2012-03-15 02:25 - 2012-03-15 02:25 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{EF817BA4-1D3A-41B4-B593-947CC6B27E85} 2012-03-15 02:25 - 2012-03-15 02:25 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{1E49382F-99C4-400D-9F67-6D21186A0685} 2012-03-15 01:20 - 2012-03-15 01:20 - 0790615 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_15_01_20_04.dmp 2012-03-15 01:19 - 2012-03-15 01:19 - 0790525 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_15_01_19_23.dmp 2012-03-15 01:19 - 2012-03-15 01:19 - 0781391 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_15_01_19_51.dmp 2012-03-15 01:01 - 2012-03-15 01:01 - 0785762 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_15_01_01_00.dmp 2012-03-15 01:00 - 2012-03-15 01:00 - 0791194 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_15_01_00_47.dmp 2012-03-15 01:00 - 2012-03-15 01:00 - 0783706 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_15_01_00_13.dmp 2012-03-15 00:26 - 2012-03-15 00:26 - 0790676 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_15_00_26_10.dmp 2012-03-15 00:26 - 2012-03-15 00:25 - 0793151 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_15_00_25_59.dmp 2012-03-15 00:25 - 2012-03-15 00:25 - 0781732 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_15_00_25_27.dmp 2012-03-14 22:46 - 2012-03-14 22:46 - 0795115 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_14_22_46_22.dmp 2012-03-14 22:46 - 2012-03-14 22:46 - 0787178 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_14_22_46_32.dmp 2012-03-14 22:45 - 2012-03-14 22:45 - 0788407 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_14_22_45_00.dmp 2012-03-14 16:27 - 2012-03-14 16:27 - 0799134 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_14_16_27_24.dmp 2012-03-14 16:27 - 2012-03-14 16:27 - 0785238 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_14_16_27_13.dmp 2012-03-14 16:26 - 2012-03-14 16:26 - 0780399 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_14_16_26_23.dmp 2012-03-14 14:22 - 2012-03-14 14:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{5388F87E-7EB4-47A8-9674-016BE56B8740} 2012-03-14 14:22 - 2012-03-14 14:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{5084EB41-E9A1-40B9-87CD-CBD2F2717903} 2012-03-14 14:18 - 2012-03-14 14:18 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{B57ED705-9BF0-415E-B4E1-E01817AC0EAD} 2012-03-14 14:16 - 2012-03-14 14:16 - 0787201 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_14_14_16_15.dmp 2012-03-14 14:16 - 2012-03-14 14:16 - 0779970 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_14_14_16_07.dmp 2012-03-14 14:15 - 2012-03-14 14:15 - 0788116 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_14_14_15_35.dmp 2012-03-14 03:02 - 2012-03-14 03:02 - 0781537 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_14_03_02_36.dmp 2012-03-14 03:02 - 2012-03-14 03:02 - 0775482 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_14_03_02_44.dmp 2012-03-14 03:02 - 2012-03-14 03:01 - 0786137 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_14_03_01_59.dmp 2012-03-13 21:10 - 2012-03-13 21:10 - 0784796 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_21_10_12.dmp 2012-03-13 21:10 - 2012-03-13 21:09 - 0776845 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_21_09_57.dmp 2012-03-13 21:08 - 2012-03-13 21:08 - 0785740 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_21_08_11.dmp 2012-03-13 20:25 - 2012-03-13 20:25 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A51D0C18-C6B4-4FFD-86BD-16C771D91823} 2012-03-13 20:25 - 2012-03-13 20:25 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A0D01E74-0C41-4C99-86B9-965B1A6BDFCF} 2012-03-13 20:25 - 2012-03-13 20:25 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{61A0975B-B0AA-404D-B94E-69FD87C33F03} 2012-03-13 20:25 - 2012-03-13 20:24 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A2D99BA3-023D-42B5-ADB9-030632660CB1} 2012-03-13 19:02 - 2012-03-13 19:02 - 0774017 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_19_02_05.dmp 2012-03-13 19:01 - 2012-03-13 19:01 - 0784108 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_19_01_15.dmp 2012-03-13 19:01 - 2012-03-13 19:01 - 0781291 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_19_01_57.dmp 2012-03-13 18:01 - 2012-03-13 18:01 - 0797292 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_18_01_37.dmp 2012-03-13 18:01 - 2012-03-13 18:01 - 0779191 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_18_01_50.dmp 2012-03-13 17:59 - 2012-03-13 17:59 - 0785614 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_17_59_19.dmp 2012-03-13 14:59 - 2012-03-13 14:59 - 0796995 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_14_59_14.dmp 2012-03-13 14:59 - 2012-03-13 14:59 - 0792971 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_14_59_23.dmp 2012-03-13 14:58 - 2012-03-13 14:58 - 0782477 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_14_58_47.dmp 2012-03-13 14:25 - 2012-03-13 14:25 - 0799079 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_14_25_25.dmp 2012-03-13 14:25 - 2012-03-13 14:25 - 0787335 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_14_25_35.dmp 2012-03-13 14:24 - 2012-03-13 14:24 - 0780766 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_14_24_56.dmp 2012-03-13 14:17 - 2012-03-13 14:17 - 0782641 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_14_17_19.dmp 2012-03-13 14:17 - 2012-03-13 14:17 - 0782019 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_14_17_27.dmp 2012-03-13 14:16 - 2012-03-13 14:16 - 0793854 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_14_16_47.dmp 2012-03-13 14:08 - 2012-03-13 14:08 - 0783734 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_14_08_16.dmp 2012-03-13 14:08 - 2012-03-13 14:08 - 0780848 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_14_08_40.dmp 2012-03-13 14:08 - 2012-03-13 14:08 - 0775189 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_14_08_50.dmp 2012-03-13 08:23 - 2012-03-13 08:23 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E52B4DA9-BDC4-42C8-81B4-7F7C3BE64961} 2012-03-13 08:23 - 2012-03-13 08:22 - 0793201 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_08_22_58.dmp 2012-03-13 08:22 - 2012-03-13 08:22 - 0781395 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_08_22_49.dmp 2012-03-13 08:22 - 2012-03-13 08:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{9093870E-B6D8-40A7-A423-8770B3235D19} 2012-03-13 08:19 - 2012-03-13 08:19 - 0790175 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_08_19_52.dmp 2012-03-13 01:43 - 2012-03-13 01:43 - 2972975 ___AH C:\Users\pcwt5\Downloads\Ross Lynch Austin Moon - A BILLION HITS - Full song with lyrics on screen.mp3 2012-03-13 01:40 - 2012-03-13 01:39 - 3412250 ___AH C:\Users\pcwt5\Downloads\Breaking benjamin - Blow Me Away - Only The Strongest Will Survive - HIGH QUALITY.mp3 2012-03-13 01:26 - 2012-03-13 01:26 - 0333008 ___AH C:\Users\pcwt5\Downloads\Austin Ally - A Love Like Song.mp3 2012-03-13 01:21 - 2012-03-13 01:21 - 1260178 ___AH C:\Users\pcwt5\Downloads\Austin Ally - Season 1 Episode 3 - Not A Love Song.mp3 2012-03-13 00:57 - 2012-03-13 00:57 - 0785329 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_00_57_36.dmp 2012-03-13 00:57 - 2012-03-13 00:57 - 0781618 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_00_57_23.dmp 2012-03-13 00:52 - 2012-03-13 00:52 - 0788798 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_00_52_22.dmp 2012-03-13 00:44 - 2012-03-13 00:44 - 0790459 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_13_00_44_11.dmp 2012-03-12 18:18 - 2012-03-12 18:18 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{8D6B082E-6E78-49E3-8829-16337175F014} 2012-03-12 18:18 - 2012-03-12 18:18 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{8C616E21-B51D-4395-B53B-1D181764BCF2} 2012-03-12 18:18 - 2012-03-12 18:18 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{456B16EA-22DE-4573-8675-1589D20BC3A8} 2012-03-12 18:18 - 2012-03-12 18:17 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A02362DC-792C-45AA-95B9-73BBE2EE1742} 2012-03-12 16:21 - 2012-03-12 16:21 - 0121233 ___AH C:\Users\pcwt5\Documents\bow to bow.pdf 2012-03-12 13:56 - 2012-03-12 13:56 - 0781513 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_12_13_56_00.dmp 2012-03-12 13:55 - 2012-03-12 13:55 - 0793481 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_12_13_55_32.dmp 2012-03-12 13:55 - 2012-03-12 13:55 - 0785869 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_12_13_55_51.dmp 2012-03-12 06:17 - 2012-03-12 06:17 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{F1DB2DE6-83AC-44CD-BDAE-A0A42B5D3371} 2012-03-12 06:17 - 2012-03-12 06:17 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{EE4452B1-B15A-4484-87E5-54A20FABB50E} 2012-03-12 01:31 - 2012-03-12 01:31 - 0791152 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_12_01_31_33.dmp 2012-03-12 01:31 - 2012-03-12 01:31 - 0789497 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_12_01_31_21.dmp 2012-03-12 01:30 - 2012-03-12 01:30 - 0790520 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_12_01_30_59.dmp 2012-03-11 22:46 - 2012-03-11 22:46 - 0791758 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_11_22_46_31.dmp 2012-03-11 22:46 - 2012-03-11 22:46 - 0791611 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_11_22_46_42.dmp 2012-03-11 22:46 - 2012-03-11 22:46 - 0789448 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_11_22_46_08.dmp 2012-03-11 20:54 - 2012-03-10 22:44 - 0289153 ___AH C:\Users\pcwt5\Documents\RegalosParaNavidad.docx 2012-03-11 18:16 - 2012-03-11 18:16 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{C6AFD4AD-BC5C-44FA-9BF6-265078AEEF2D} 2012-03-11 18:16 - 2012-03-11 18:16 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{4DB46977-83AF-4CC2-A9E9-CE5FD3B5006E} 2012-03-11 17:16 - 2012-03-11 17:16 - 0793659 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_11_17_16_04.dmp 2012-03-11 17:16 - 2012-03-11 17:16 - 0787167 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_11_17_16_12.dmp 2012-03-11 17:15 - 2012-03-11 17:15 - 0795538 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_11_17_15_37.dmp 2012-03-11 16:52 - 2012-03-11 16:52 - 0782120 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_11_16_52_29.dmp 2012-03-11 16:52 - 2012-03-11 16:52 - 0779546 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_11_16_52_38.dmp 2012-03-11 16:51 - 2012-03-11 16:51 - 0793744 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_11_16_51_50.dmp 2012-03-11 13:48 - 2011-02-22 22:44 - 0063760 ____A (Trusteer Ltd.) C:\Windows\System32\Drivers\RapportKE64.sys 2012-03-11 06:16 - 2012-03-11 06:15 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A2416B07-8803-4AA8-99E0-2568E3AA2680} 2012-03-11 06:15 - 2012-03-11 06:15 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{23F482D6-C291-4863-B4B9-8959D6E74B86} 2012-03-10 20:22 - 2012-03-10 20:22 - 0012002 ___AH C:\Users\pcwt5\Documents\British Airways Executive Club.doc.docx 2012-03-10 19:12 - 2012-03-10 19:12 - 0783899 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_10_19_12_05.dmp 2012-03-10 19:11 - 2012-03-10 19:11 - 0789127 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_10_19_11_53.dmp 2012-03-10 19:08 - 2012-03-10 19:08 - 0787593 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_10_19_08_41.dmp 2012-03-10 19:06 - 2012-03-10 19:06 - 0788329 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_10_19_06_51.dmp 2012-03-10 18:14 - 2012-03-10 18:14 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{BD2FE7D0-938C-4068-A4BC-77629DE97C46} 2012-03-10 18:14 - 2012-03-10 18:13 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{B45C8564-52CF-44F0-9571-1C4A8FA5ECE8} 2012-03-10 18:13 - 2012-03-10 18:13 - 0796062 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_10_18_13_00.dmp 2012-03-10 18:13 - 2012-03-10 18:13 - 0785493 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_10_18_13_19.dmp 2012-03-10 18:11 - 2012-03-10 18:11 - 0788554 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_10_18_11_40.dmp 2012-03-10 03:30 - 2012-03-10 03:30 - 0794362 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_10_03_30_00.dmp 2012-03-10 03:30 - 2012-03-10 03:30 - 0791659 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_10_03_30_11.dmp 2012-03-10 03:29 - 2012-03-10 03:29 - 0802361 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_10_03_29_39.dmp 2012-03-10 01:25 - 2012-03-10 01:25 - 0793644 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_10_01_25_14.dmp 2012-03-10 01:25 - 2012-03-10 01:25 - 0790725 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_10_01_25_24.dmp 2012-03-10 01:24 - 2012-03-10 01:24 - 0789898 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_10_01_24_42.dmp 2012-03-09 17:22 - 2012-03-09 17:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A0B55382-302F-4B5E-90E2-AFB7ADCD6666} 2012-03-09 17:22 - 2012-03-09 17:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{89AF3CAB-0720-4BD2-8625-1442E2BAE6B1} 2012-03-09 14:05 - 2012-03-09 14:05 - 0790913 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_09_14_05_16.dmp 2012-03-09 14:05 - 2012-03-09 14:05 - 0787936 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_09_14_05_23.dmp 2012-03-09 14:04 - 2012-03-09 14:04 - 0787389 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_09_14_04_45.dmp 2012-03-09 05:21 - 2012-03-09 05:21 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{8BB1FC9B-5C8D-4909-923D-4A40693477DE} 2012-03-09 05:21 - 2012-03-09 05:21 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{23F4A931-91F7-4071-B36E-9BDB3F4ED234} 2012-03-09 02:44 - 2012-03-09 02:44 - 0800660 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_09_02_44_18.dmp 2012-03-09 02:44 - 2012-03-09 02:44 - 0794191 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_09_02_44_09.dmp 2012-03-09 02:43 - 2012-03-09 02:43 - 0782473 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_09_02_43_39.dmp 2012-03-08 22:23 - 2012-03-08 22:23 - 0783605 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_08_22_23_05.dmp 2012-03-08 22:22 - 2012-03-08 22:22 - 0788353 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_08_22_22_18.dmp 2012-03-08 22:22 - 2012-03-08 22:22 - 0784766 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_08_22_22_55.dmp 2012-03-08 22:11 - 2012-03-08 22:11 - 0791572 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_08_22_11_42.dmp 2012-03-08 22:11 - 2012-03-08 22:11 - 0788720 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_08_22_11_51.dmp 2012-03-08 22:11 - 2012-03-08 22:11 - 0788195 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_08_22_11_13.dmp 2012-03-08 17:21 - 2012-03-08 17:20 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{B65F4DB9-32E6-480C-B54C-63A0C1F55930} 2012-03-08 17:20 - 2012-03-08 17:20 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{2B8E1AEA-C0F1-4A91-9B6B-1EDB53EAEFCA} 2012-03-08 14:01 - 2012-03-08 14:01 - 0783864 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_08_14_01_00.dmp 2012-03-08 14:00 - 2012-03-08 14:00 - 0786032 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_08_14_00_23.dmp 2012-03-08 14:00 - 2012-03-08 14:00 - 0780079 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_08_14_00_49.dmp 2012-03-08 05:20 - 2012-03-08 05:20 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{6897FDCF-EAC1-4C0D-8BA9-F207D340E799} 2012-03-08 05:20 - 2012-03-08 05:19 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{F5B7DEE8-450B-4532-9504-5C8238F53E28} 2012-03-08 01:29 - 2012-03-08 01:29 - 0398139 ___AH C:\Users\pcwt5\Documents\Charter Checklist ver2.pdf 2012-03-08 01:14 - 2012-03-08 01:14 - 0077083 ___AH C:\Users\pcwt5\Documents\Charter Checklist ver2.docx 2012-03-07 23:20 - 2012-03-07 23:20 - 0123392 ___AH C:\Users\pcwt5\Documents\rachel anorexia homework.doc 2012-03-07 17:19 - 2012-03-07 17:19 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{76A3C13F-25DE-4442-9DBA-D11AA98CDAB4} 2012-03-07 17:19 - 2012-03-07 17:19 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{01BA3DF1-370A-4604-B596-E5CC58B44D7C} 2012-03-07 17:19 - 2012-03-07 17:18 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E06BC368-243C-4352-AE79-6B7A78CDB456} 2012-03-07 17:18 - 2012-03-07 17:18 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D1422150-C6A0-43E6-9C5A-881020C70E66} 2012-03-07 14:28 - 2009-12-03 01:59 - 0000000 ___RD C:\Program Files (x86)\Skype 2012-03-07 14:01 - 2012-03-07 14:01 - 0785514 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_07_14_01_51.dmp 2012-03-07 14:01 - 2012-03-07 14:01 - 0778452 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_07_14_01_29.dmp 2012-03-07 13:58 - 2012-03-07 13:58 - 0793168 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_07_13_58_32.dmp 2012-03-07 05:17 - 2012-03-07 05:17 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E79B9B16-5A28-4190-9D03-BD1DCBADFC47} 2012-03-07 05:17 - 2012-03-07 05:17 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{1AB6FC86-5BC9-43A3-98AE-BDF05CC2A2B0} 2012-03-07 05:17 - 2012-03-06 17:16 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{527EFEE8-1926-42A3-8654-77BAA1152DAB} 2012-03-07 00:02 - 2012-03-07 00:02 - 0076923 ___AH C:\Users\pcwt5\Documents\competence_matrix_2012.pdf 2012-03-06 17:17 - 2012-03-06 17:17 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{04D90FCF-3F62-4D9B-A66E-BF27130E6AD2} 2012-03-06 17:17 - 2012-03-06 17:16 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{DA6DAF8B-04C9-4647-8D54-29A3F3C9EB2F} 2012-03-06 17:16 - 2012-03-06 17:16 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{3960A1B5-9866-4054-A867-15EC99A9CBC5} 2012-03-06 13:49 - 2012-03-06 13:49 - 0801718 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_06_13_49_36.dmp 2012-03-06 13:49 - 2012-03-06 13:49 - 0794124 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_06_13_49_46.dmp 2012-03-06 13:49 - 2012-03-06 13:49 - 0788311 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_06_13_49_04.dmp 2012-03-06 06:43 - 2012-04-12 19:23 - 5504880 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe 2012-03-06 05:59 - 2012-04-12 19:23 - 3958128 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2012-03-06 05:59 - 2012-04-12 19:23 - 3902320 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2012-03-06 05:46 - 2012-03-06 05:46 - 0786259 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_06_05_46_00.dmp 2012-03-06 05:45 - 2012-03-06 05:45 - 0787778 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_06_05_45_52.dmp 2012-03-06 05:45 - 2012-03-06 05:45 - 0785413 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_06_05_45_32.dmp 2012-03-06 05:16 - 2012-03-06 05:15 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{AF6D8C2B-707C-42D5-8C45-88A67FBBA77C} 2012-03-06 05:15 - 2012-03-06 05:15 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{0CBB9410-288A-4C46-842A-20020BC332E2} 2012-03-06 02:29 - 2012-03-06 02:29 - 0000000 ___HD C:\__feb 2012 support 2012-03-05 20:33 - 2012-03-05 20:33 - 0795859 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_05_20_33_15.dmp 2012-03-05 20:33 - 2012-03-05 20:33 - 0774047 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_05_20_33_23.dmp 2012-03-05 20:32 - 2012-03-05 20:32 - 0783447 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_05_20_32_47.dmp 2012-03-05 17:15 - 2012-03-05 17:15 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{FD27BC25-30EF-43CB-8B88-921FF87003EF} 2012-03-05 17:15 - 2012-03-05 17:14 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{765B131E-386F-4DE1-9B2A-0C99BD2EC1B2} 2012-03-05 17:14 - 2012-03-05 17:14 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{BBAD280A-8939-4986-85EC-1FB986805CE5} 2012-03-05 17:14 - 2012-03-05 17:14 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A8191424-0738-48CB-8A58-D3A2B1281C70} 2012-03-05 15:40 - 2012-03-05 15:40 - 0026028 ___AH C:\Users\pcwt5\Documents\SOP Copies of the ORB.docx 2012-03-05 13:57 - 2012-03-05 13:57 - 0787027 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_05_13_57_40.dmp 2012-03-05 13:57 - 2012-03-05 13:57 - 0780369 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_05_13_57_53.dmp 2012-03-05 13:57 - 2012-03-05 13:57 - 0779796 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_05_13_57_07.dmp 2012-03-05 05:13 - 2012-03-05 05:13 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{8B260AD9-0DD2-49EC-A6C7-99E0AAD6E98F} 2012-03-05 05:13 - 2012-03-05 05:13 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{246F4C50-1948-49ED-85DD-FC16DA122097} 2012-03-05 04:12 - 2012-03-05 04:12 - 0779250 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_05_04_12_05.dmp 2012-03-05 04:11 - 2012-03-05 04:11 - 0792380 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_05_04_11_56.dmp 2012-03-05 04:11 - 2012-03-05 04:11 - 0785558 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_05_04_11_31.dmp 2012-03-04 17:13 - 2012-03-04 17:13 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E080FD0C-E9F6-4291-A27F-B0ED548D13C8} 2012-03-04 17:13 - 2012-03-04 17:12 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{FBB510B9-0F01-4A01-B25A-6CE4FEA6D6BB} 2012-03-04 15:57 - 2012-03-04 15:57 - 0788630 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_04_15_57_01.dmp 2012-03-04 15:56 - 2012-03-04 15:56 - 0780623 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_04_15_56_49.dmp 2012-03-04 15:54 - 2012-03-04 15:54 - 0788328 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_04_15_54_12.dmp 2012-03-04 05:12 - 2012-03-04 05:12 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A240FBE0-0C20-48F7-AAAE-9F9D985FF57A} 2012-03-04 05:12 - 2012-03-04 05:12 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{3FE81EA6-F1B2-4FA0-B738-5D805BD2BFD2} 2012-03-04 04:54 - 2012-03-04 04:54 - 0788613 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_04_04_54_10.dmp 2012-03-04 04:54 - 2012-03-04 04:54 - 0788244 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_04_04_54_01.dmp 2012-03-04 04:53 - 2012-03-04 04:53 - 0787122 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_04_04_53_31.dmp 2012-03-03 16:54 - 2012-03-03 16:54 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{BD29422D-1500-4425-8DD5-FC0A47E27C83} 2012-03-03 16:53 - 2012-03-03 16:53 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{2B4FC17F-67A3-477B-809B-56A79888A1DC} 2012-03-03 16:52 - 2012-03-03 16:52 - 0792818 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_03_16_52_02.dmp 2012-03-03 16:51 - 2012-03-03 16:51 - 0795153 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_03_16_51_54.dmp 2012-03-03 16:51 - 2012-03-03 16:51 - 0786097 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_03_16_51_24.dmp 2012-03-02 13:59 - 2012-03-02 13:59 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{AAC34CBF-12DA-4E00-AF13-943654FF18C2} 2012-03-02 13:58 - 2012-03-02 13:58 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{CABB2DB3-4903-4C1D-8AAD-1F3D87097132} 2012-03-02 13:58 - 2011-09-25 02:08 - 0000000 ____D C:\Program Files (x86)\Raptr 2012-03-02 13:55 - 2012-03-02 13:55 - 0802219 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_02_13_55_21.dmp 2012-03-02 13:55 - 2012-03-02 13:55 - 0780448 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_02_13_55_32.dmp 2012-03-02 13:54 - 2012-03-02 13:54 - 0796093 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_02_13_54_55.dmp 2012-03-02 01:57 - 2012-03-02 01:57 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{994B4FAE-3599-44ED-B30D-B495FB0C90A6} 2012-03-02 01:57 - 2012-03-02 01:57 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{59B1FCC7-6321-4D7E-87E6-DACC61D5F2A6} 2012-03-02 01:57 - 2012-03-02 01:57 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{441D784E-02CD-423A-BD8E-4635354B6818} 2012-03-02 01:57 - 2012-03-02 01:56 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{B77CAC68-CB22-446C-9309-CC1293A394AC} 2012-03-01 15:27 - 2012-03-01 15:27 - 0017837 ___AH C:\Users\pcwt5\Desktop\hs_err_pid6424.log 2012-03-01 13:56 - 2012-03-01 13:55 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{F560E75C-5195-4583-A0B2-1339B6EC373A} 2012-03-01 13:55 - 2012-03-01 13:55 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{BF5E9157-0BCE-434B-B9DF-F5564E790067} 2012-03-01 13:52 - 2012-03-01 13:52 - 0791433 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_01_13_52_23.dmp 2012-03-01 13:52 - 2012-03-01 13:52 - 0787749 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_01_13_52_31.dmp 2012-03-01 13:51 - 2012-03-01 13:51 - 0784376 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_01_13_51_54.dmp 2012-03-01 06:54 - 2012-04-12 19:16 - 0022896 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\fs_rec.sys 2012-03-01 06:45 - 2012-04-12 19:16 - 0220672 ____A (Microsoft Corporation) C:\Windows\System32\wintrust.dll 2012-03-01 06:40 - 2012-04-12 19:16 - 0080896 ____A (Microsoft Corporation) C:\Windows\System32\imagehlp.dll 2012-03-01 06:35 - 2012-04-12 19:16 - 0005120 ____A (Microsoft Corporation) C:\Windows\System32\wmi.dll 2012-03-01 05:49 - 2012-04-12 19:16 - 0172544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2012-03-01 05:45 - 2012-04-12 19:16 - 0158720 ____A (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2012-03-01 05:40 - 2012-04-12 19:16 - 0005120 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll 2012-03-01 02:35 - 2012-03-01 02:35 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{2B1477A6-3C8B-43A7-8D1A-A103EC239EB5} 2012-03-01 02:35 - 2012-03-01 02:34 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{038DE048-3962-4EA9-874E-EB8BDBC4E356} 2012-03-01 02:29 - 2012-03-01 02:29 - 0809011 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_01_02_29_23.dmp 2012-03-01 02:29 - 2012-03-01 02:29 - 0803261 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_01_02_29_31.dmp 2012-03-01 02:29 - 2012-03-01 02:29 - 0783923 ____A C:\Windows\SysWOW64\(null)AAWService__2012_03_01_02_29_02.dmp 2012-02-28 14:15 - 2012-02-28 14:15 - 0787795 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_28_14_15_16.dmp 2012-02-28 14:15 - 2012-02-28 14:15 - 0787352 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_28_14_15_25.dmp 2012-02-28 14:14 - 2012-02-28 14:14 - 0788130 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_28_14_14_49.dmp 2012-02-28 07:34 - 2012-04-12 19:51 - 17790976 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2012-02-28 07:02 - 2012-04-12 19:51 - 10888704 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2012-02-28 06:56 - 2012-04-12 19:51 - 2311168 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2012-02-28 06:50 - 2012-04-12 19:51 - 1345536 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2012-02-28 06:49 - 2012-04-12 19:51 - 1390080 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll 2012-02-28 06:48 - 2012-04-12 19:51 - 1493504 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl 2012-02-28 06:48 - 2012-04-12 19:51 - 0237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll 2012-02-28 06:47 - 2012-04-12 19:51 - 0085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll 2012-02-28 06:45 - 2012-04-12 19:51 - 0818688 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll 2012-02-28 06:43 - 2012-04-12 19:51 - 2144256 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2012-02-28 06:43 - 2012-04-12 19:51 - 0096256 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll 2012-02-28 06:42 - 2012-04-12 19:51 - 2382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2012-02-28 06:39 - 2012-04-12 19:51 - 0248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2012-02-28 02:05 - 2012-02-28 02:05 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{269AFCE2-982F-4026-B4F5-D8477F518263} 2012-02-28 02:05 - 2012-02-28 02:04 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{CD8BE4CE-0C69-4EE6-AD38-1B7189FF6E25} 2012-02-28 01:52 - 2012-04-12 19:51 - 12281856 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2012-02-28 01:27 - 2012-04-12 19:51 - 9705984 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2012-02-28 01:18 - 2012-04-12 19:51 - 1799168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2012-02-28 01:12 - 2012-04-12 19:51 - 1103360 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2012-02-28 01:11 - 2012-04-12 19:51 - 1427456 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2012-02-28 01:11 - 2012-04-12 19:51 - 1127424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2012-02-28 01:09 - 2012-04-12 19:51 - 0231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2012-02-28 01:08 - 2012-04-12 19:51 - 0065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2012-02-28 01:06 - 2012-04-12 19:51 - 0716800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2012-02-28 01:04 - 2012-04-12 19:51 - 1792000 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2012-02-28 01:03 - 2012-04-12 19:51 - 2382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2012-02-28 01:03 - 2012-04-12 19:51 - 0072704 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2012-02-28 00:59 - 2012-04-12 19:51 - 0176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2012-02-27 21:31 - 2012-02-27 21:31 - 0790845 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_27_21_31_18.dmp 2012-02-27 21:31 - 2012-02-27 21:31 - 0786468 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_27_21_31_08.dmp 2012-02-27 21:30 - 2012-02-27 21:30 - 0796425 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_27_21_30_46.dmp 2012-02-27 14:03 - 2012-02-27 14:03 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{0964E6F5-A18A-4291-AE46-7063B312DE7D} 2012-02-27 14:03 - 2012-02-27 14:02 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{B995FFC4-58B8-40BA-B07F-2F41F9DE90B0} 2012-02-27 14:00 - 2012-02-27 14:00 - 0793814 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_27_14_00_15.dmp 2012-02-27 14:00 - 2012-02-27 14:00 - 0791213 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_27_14_00_25.dmp 2012-02-27 13:59 - 2012-02-27 13:59 - 0788028 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_27_13_59_48.dmp 2012-02-27 06:05 - 2012-02-27 06:05 - 0776833 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_27_06_05_06.dmp 2012-02-27 06:04 - 2012-02-27 06:04 - 0780872 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_27_06_04_58.dmp 2012-02-27 06:03 - 2012-02-27 06:03 - 0787174 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_27_06_03_44.dmp 2012-02-27 06:03 - 2012-02-27 06:03 - 0275904 ____A C:\Windows\Minidump\022712-25740-01.dmp 2012-02-26 20:35 - 2012-02-26 20:35 - 0807484 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_26_20_35_40.dmp 2012-02-26 20:35 - 2012-02-26 20:35 - 0794698 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_26_20_35_49.dmp 2012-02-26 20:35 - 2012-02-26 20:35 - 0789294 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_26_20_35_11.dmp 2012-02-26 19:01 - 2012-02-26 19:01 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{35605C25-5831-408E-A3B3-D025D90D7879} 2012-02-26 19:01 - 2012-02-26 19:01 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{1E7F3BDD-8961-4635-B136-E26FEF4D2BD0} 2012-02-26 18:59 - 2012-02-26 18:59 - 0798761 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_26_18_59_02.dmp 2012-02-26 18:59 - 2012-02-26 18:59 - 0792910 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_26_18_59_13.dmp 2012-02-26 18:58 - 2012-02-26 18:58 - 0790805 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_26_18_58_38.dmp 2012-02-26 17:49 - 2012-02-26 17:49 - 0000000 ____D C:\Users\Guest\AppData\Local\Microsoft Games 2012-02-26 15:21 - 2011-12-28 04:34 - 0000000 ____D C:\Users\Guest\AppData\LocalLow 2012-02-26 15:04 - 2012-02-26 15:04 - 0790560 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_26_15_04_31.dmp 2012-02-26 15:04 - 2012-02-26 15:04 - 0781056 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_26_15_04_23.dmp 2012-02-26 15:01 - 2012-02-26 15:01 - 0782704 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_26_15_01_16.dmp 2012-02-26 06:57 - 2012-02-26 06:57 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E9EE5E09-77EE-4B96-808E-42E9E29AADB2} 2012-02-26 06:57 - 2012-02-26 06:57 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{BDA92E64-FD22-48BE-B796-A89F9C6EC0E4} 2012-02-26 06:57 - 2012-02-26 06:57 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{491B3DD9-DD36-4FEC-A162-294F54D5D5DE} 2012-02-26 06:57 - 2012-02-26 06:56 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{3C7F0D59-FEFB-494B-9F46-7D4271EF870F} 2012-02-26 04:44 - 2012-02-26 04:44 - 0783520 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_26_04_44_09.dmp 2012-02-26 04:44 - 2012-02-26 04:44 - 0779822 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_26_04_44_00.dmp 2012-02-26 04:43 - 2012-02-26 04:43 - 0787887 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_26_04_43_22.dmp 2012-02-25 18:55 - 2012-02-25 18:55 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{C486D903-30BF-45F4-9FE5-AD5AE35C8B32} 2012-02-25 18:55 - 2012-02-25 18:54 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{96E25493-B711-4D2F-BECB-30CB5E5312E3} 2012-02-25 18:52 - 2012-02-25 18:52 - 0794199 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_25_18_52_28.dmp 2012-02-25 18:52 - 2012-02-25 18:52 - 0785984 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_25_18_52_37.dmp 2012-02-25 18:51 - 2012-02-25 18:51 - 0786230 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_25_18_51_56.dmp 2012-02-25 08:36 - 2012-02-25 08:36 - 0793439 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_25_08_36_15.dmp 2012-02-25 08:36 - 2012-02-25 08:36 - 0789983 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_25_08_36_06.dmp 2012-02-25 08:34 - 2012-02-25 08:34 - 0795149 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_25_08_34_49.dmp 2012-02-25 04:05 - 2012-02-25 04:05 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{B54B8D91-4283-49E6-965A-08854B4CBF54} 2012-02-25 04:04 - 2012-02-25 04:04 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D68A8212-93BC-4383-BFEC-2E407527AC08} 2012-02-25 04:02 - 2012-02-25 04:02 - 0792244 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_25_04_02_14.dmp 2012-02-25 04:02 - 2012-02-25 04:02 - 0791115 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_25_04_02_24.dmp 2012-02-25 04:01 - 2012-02-25 04:01 - 0787635 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_25_04_01_46.dmp 2012-02-24 14:18 - 2012-02-24 14:17 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D1D5F0E9-277C-490F-93B0-D33DD768FA49} 2012-02-24 14:17 - 2012-02-24 14:17 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A9ABE4D1-679F-4FFB-88C1-E717467032A5} 2012-02-24 13:56 - 2012-02-24 13:56 - 0798996 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_24_13_56_10.dmp 2012-02-24 13:56 - 2012-02-24 13:56 - 0798323 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_24_13_56_00.dmp 2012-02-24 13:55 - 2012-02-24 13:55 - 0782259 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_24_13_55_35.dmp 2012-02-24 02:16 - 2012-02-24 02:16 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{DC326310-3C52-485E-A335-EB77FCBCAE19} 2012-02-24 02:16 - 2012-02-24 02:15 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{F039B3C4-C58A-4D52-9E21-BB2303729D12} 2012-02-24 02:13 - 2012-02-24 02:13 - 0789914 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_24_02_13_38.dmp 2012-02-24 02:13 - 2012-02-24 02:13 - 0785825 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_24_02_13_13.dmp 2012-02-24 02:13 - 2012-02-24 02:13 - 0785594 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_24_02_13_48.dmp 2012-02-24 00:30 - 2012-02-24 00:30 - 0000000 ____D C:\Users\Guest\AppData\Local\blekkotb 2012-02-24 00:30 - 2011-12-28 04:35 - 0000174 ___SH C:\Users\Guest\Start Menu\Programs\Startup\desktop.ini 2012-02-24 00:30 - 2011-12-28 04:35 - 0000174 ___SH C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini 2012-02-24 00:29 - 2012-02-24 00:29 - 0775230 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_24_00_29_07.dmp 2012-02-24 00:28 - 2012-02-24 00:28 - 0786353 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_24_00_28_58.dmp 2012-02-24 00:28 - 2012-02-24 00:28 - 0782467 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_24_00_28_23.dmp 2012-02-23 22:14 - 2012-02-23 22:14 - 0001965 ___AH C:\Users\pcwt5\Desktop\Audible Manager.lnk 2012-02-23 22:14 - 2012-02-23 22:14 - 0001965 ___AH C:\Users\Mcx1-PCWT5-VAIO\Desktop\Audible Manager.lnk 2012-02-23 22:14 - 2012-02-23 22:14 - 0001965 ____A C:\Users\Guest\Desktop\Audible Manager.lnk 2012-02-23 22:12 - 2012-02-23 22:12 - 0255352 ____A (Audible, Inc.) C:\Windows\SysWOW64\awrdscdc.ax 2012-02-23 22:09 - 2012-02-23 22:09 - 0000000 ___HD C:\Users\Public\Documents\Audible 2012-02-23 21:19 - 2012-02-23 21:19 - 1525176 ___AH (Audible Inc.) C:\Users\pcwt5\Downloads\ActiveSetupN.exe 2012-02-23 19:18 - 2012-03-22 00:26 - 0551936 ____A (FOF_SILENT 2012-02-23 19:18 - 2012-03-22 00:26 - 0428032 ____A (Beijing Elex Technology Co., Ltd) C:\Windows\SysWOW64\v9loader.dll 2012-02-23 14:12 - 2012-02-23 14:12 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{5C1D5259-5360-4CC3-B9DF-21AB37A2E144} 2012-02-23 14:12 - 2012-02-23 14:12 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{4488D9CE-E75A-4C24-A173-AAAAC675E16A} 2012-02-23 14:09 - 2012-02-23 14:09 - 0786500 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_23_14_09_08.dmp 2012-02-23 14:09 - 2012-02-23 14:09 - 0780083 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_23_14_09_17.dmp 2012-02-23 14:08 - 2012-02-23 14:08 - 0783810 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_23_14_08_45.dmp 2012-02-22 22:17 - 2012-02-22 22:02 - 50921781 ___AH C:\Users\pcwt5\Documents\mss-is.rar 2012-02-22 14:02 - 2012-02-22 14:01 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{CD5643A7-395D-418C-ADE5-1B1A2A3E6081} 2012-02-22 14:01 - 2012-02-22 14:01 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D5FA7AA9-CCE5-4EC2-8D86-54677A6BB377} 2012-02-22 13:18 - 2012-02-22 13:18 - 0804557 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_22_13_18_25.dmp 2012-02-22 13:18 - 2012-02-22 13:18 - 0791960 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_22_13_18_17.dmp 2012-02-22 13:17 - 2012-02-22 13:17 - 0784919 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_22_13_17_53.dmp 2012-02-22 02:28 - 2012-02-22 02:27 - 0000000 ___HD C:\mss-neptune 2012-02-22 02:01 - 2012-02-22 02:01 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{DCA37F0E-EA17-4064-9744-9D56F06E10DE} 2012-02-22 02:01 - 2012-02-22 02:00 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{FEE55892-8016-453E-9C71-415BC90FFE58} 2012-02-21 23:00 - 2012-02-21 23:00 - 0803534 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_21_23_00_25.dmp 2012-02-21 23:00 - 2012-02-21 23:00 - 0783160 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_21_23_00_16.dmp 2012-02-21 22:59 - 2012-02-21 22:59 - 0789404 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_21_22_59_52.dmp 2012-02-21 18:06 - 2012-02-21 18:06 - 0001061 ___AH C:\Users\pcwt5\Start Menu\Programs\Startup\iope0.5701344455882161.exe.lnk 2012-02-21 18:06 - 2012-02-21 18:06 - 0001061 ___AH C:\Users\pcwt5\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\iope0.5701344455882161.exe.lnk 2012-02-21 13:59 - 2012-02-21 13:59 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{6C37E189-CF4E-4CFD-AC1C-17918F17F25E} 2012-02-21 13:58 - 2012-02-21 13:58 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{41399FEF-B68B-4F9F-A871-62C095E4DB8B} 2012-02-21 13:55 - 2012-02-21 13:55 - 0795530 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_21_13_55_32.dmp 2012-02-21 13:55 - 2012-02-21 13:55 - 0790087 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_21_13_55_21.dmp 2012-02-21 13:54 - 2012-02-21 13:54 - 0784767 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_21_13_54_37.dmp 2012-02-21 01:14 - 2012-02-21 01:14 - 0793545 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_21_01_14_30.dmp 2012-02-21 01:14 - 2012-02-21 01:14 - 0790214 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_21_01_14_40.dmp 2012-02-21 01:14 - 2012-02-21 01:14 - 0785358 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_21_01_14_06.dmp 2012-02-20 17:10 - 2012-02-20 17:10 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{49F15107-A2D9-48B8-8495-E1FCE56A10B9} 2012-02-20 17:10 - 2012-02-20 17:09 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{41D9F132-A6AE-4FDE-935D-C268991E8BAB} 2012-02-20 14:42 - 2012-02-20 14:42 - 0797239 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_20_14_42_02.dmp 2012-02-20 14:41 - 2012-02-20 14:41 - 0795478 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_20_14_41_55.dmp 2012-02-20 14:41 - 2012-02-20 14:41 - 0787094 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_20_14_41_36.dmp 2012-02-20 05:09 - 2012-02-20 05:09 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{5BDB2CB2-A7D2-4621-976F-E588B3C7F61B} 2012-02-20 05:09 - 2012-02-20 05:08 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{8DB52CA7-E3B0-4780-B408-582E21C04A19} 2012-02-20 01:43 - 2012-02-20 01:43 - 0780551 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_20_01_43_13.dmp 2012-02-20 01:43 - 2012-02-20 01:43 - 0778540 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_20_01_43_05.dmp 2012-02-20 01:42 - 2012-02-20 01:42 - 0781540 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_20_01_42_45.dmp 2012-02-19 22:28 - 2012-02-19 22:28 - 0787643 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_19_22_28_28.dmp 2012-02-19 22:28 - 2012-02-19 22:28 - 0786216 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_19_22_28_35.dmp 2012-02-19 22:27 - 2012-02-19 22:27 - 0785306 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_19_22_27_43.dmp 2012-02-19 17:08 - 2012-02-19 17:08 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D54B8697-22BB-408E-A0B6-9506D85682D5} 2012-02-19 17:08 - 2012-02-19 17:07 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{698B0939-EA7F-4CD4-869A-F8F178E17B69} 2012-02-19 15:28 - 2012-02-19 15:28 - 0785003 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_19_15_28_07.dmp 2012-02-19 15:28 - 2012-02-19 15:28 - 0781467 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_19_15_28_15.dmp 2012-02-19 15:27 - 2012-02-19 15:27 - 0786104 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_19_15_27_38.dmp 2012-02-19 05:49 - 2012-02-19 03:13 - 3332420 ___AH C:\Users\pcwt5\Downloads\Without You - Glee HD Full Studio (1).mp3 2012-02-19 05:07 - 2012-02-19 05:07 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{9C739CB5-5FC4-4BFB-AF2B-BFEF7C02A8B2} 2012-02-19 05:07 - 2012-02-19 05:07 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{3629D7EE-4E03-46C5-BA71-9A1D4DEDE953} 2012-02-19 04:36 - 2012-02-19 04:36 - 0786585 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_19_04_36_02.dmp 2012-02-19 04:36 - 2012-02-19 04:36 - 0781420 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_19_04_36_11.dmp 2012-02-19 04:35 - 2012-02-19 04:35 - 0789079 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_19_04_35_05.dmp 2012-02-19 02:53 - 2012-02-19 02:53 - 2512384 ___AH C:\Users\pcwt5\Downloads\Glee - Hit Me With Your Best Shot - One Way Or Another New Directions and TroubleTones.mp3 2012-02-19 02:46 - 2012-02-19 02:45 - 3360005 ___AH C:\Users\pcwt5\Downloads\GLEE-Smooth criminal with lyrics (2).mp3 2012-02-19 02:39 - 2012-02-19 02:39 - 3360005 ___AH C:\Users\pcwt5\Downloads\GLEE-Smooth criminal with lyrics.mp3 2012-02-19 02:39 - 2012-02-19 02:39 - 3360005 ___AH C:\Users\pcwt5\Downloads\GLEE-Smooth criminal with lyrics (1).mp3 2012-02-18 17:06 - 2012-02-18 17:05 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{49DF7517-ADF4-4861-B160-9F46ED0DF86B} 2012-02-18 17:05 - 2012-02-18 17:05 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{7B406667-4349-41E5-8055-596210298370} 2012-02-18 17:03 - 2012-02-18 17:03 - 0790049 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_18_17_03_44.dmp 2012-02-18 17:03 - 2012-02-18 17:03 - 0784620 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_18_17_03_53.dmp 2012-02-18 17:01 - 2012-02-18 17:01 - 0798676 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_18_17_01_58.dmp 2012-02-17 18:13 - 2012-02-17 18:13 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{6CD4889D-97ED-40CD-9950-A30F90CB26DE} 2012-02-17 18:13 - 2012-02-17 18:13 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{5BF6FE89-989E-40C0-804B-41E21B66DD9A} 2012-02-17 14:04 - 2012-02-17 14:04 - 0791761 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_17_14_04_24.dmp 2012-02-17 14:04 - 2012-02-17 14:04 - 0783786 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_17_14_04_06.dmp 2012-02-17 14:01 - 2012-02-17 14:01 - 0787356 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_17_14_01_53.dmp 2012-02-17 06:12 - 2012-02-17 06:12 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{DDDF3481-813B-4FE0-B482-3E315D9D8546} 2012-02-17 06:12 - 2012-02-17 06:12 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D6485650-FFB5-4F78-97B7-73140DB2D90F} 2012-02-17 04:04 - 2009-12-22 10:55 - 0000174 ___SH C:\Users\pcwt5\Start Menu\Programs\Startup\desktop.ini 2012-02-17 04:04 - 2009-12-22 10:55 - 0000174 ___SH C:\Users\pcwt5\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini 2012-02-17 03:40 - 2012-02-17 03:40 - 0805575 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_17_03_40_09.dmp 2012-02-17 03:39 - 2012-02-17 03:39 - 0797009 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_17_03_39_58.dmp 2012-02-17 03:39 - 2012-02-17 03:39 - 0780748 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_17_03_39_35.dmp 2012-02-17 03:38 - 2010-05-26 13:05 - 0000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2012-02-16 18:12 - 2012-02-16 18:12 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{386BC3A1-98DB-4BB7-B220-23309BAC248B} 2012-02-16 18:12 - 2012-02-16 18:11 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{DD1802D3-C114-4E70-9D3F-1DB54D0F55EF} 2012-02-16 18:11 - 2012-02-16 18:11 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{8C88C477-359D-4523-A67F-F9F95469C639} 2012-02-16 18:11 - 2012-02-16 18:11 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{0C040517-29C5-4B20-83F6-FF9FF76CBF3F} 2012-02-16 16:18 - 2010-12-25 21:02 - 0000000 ____D C:\Program Files (x86)\Expat Shield 2012-02-16 14:24 - 2012-02-16 14:24 - 0793709 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_16_14_24_13.dmp 2012-02-16 14:24 - 2012-02-16 14:24 - 0782752 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_16_14_24_24.dmp 2012-02-16 14:23 - 2012-02-16 14:23 - 0791982 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_16_14_23_01.dmp 2012-02-16 06:40 - 2012-02-16 06:40 - 0021462 ___AH C:\Users\pcwt5\Downloads\iForm 104 HSE Inspection, Iform.docx 2012-02-16 06:11 - 2012-02-16 06:11 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{2A9C035A-DA24-43FC-8C78-16BA3E59FD37} 2012-02-16 06:11 - 2012-02-16 06:10 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D5A273A2-51BD-4152-9398-064805DB38DC} 2012-02-16 05:39 - 2012-02-16 05:39 - 0784865 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_16_05_39_00.dmp 2012-02-16 05:39 - 2012-02-16 05:39 - 0779206 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_16_05_39_08.dmp 2012-02-16 05:38 - 2012-02-16 05:38 - 0785112 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_16_05_38_30.dmp 2012-02-15 21:19 - 2012-02-15 21:19 - 0804140 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_15_21_19_18.dmp 2012-02-15 21:19 - 2012-02-15 21:19 - 0789075 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_15_21_19_09.dmp 2012-02-15 21:18 - 2012-02-15 21:18 - 0787804 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_15_21_18_29.dmp 2012-02-15 18:10 - 2012-02-15 18:10 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{97FE417A-7BAD-4DBD-BEB8-A7CE334E2800} 2012-02-15 18:10 - 2012-02-15 18:10 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{3C1BF536-7960-472A-8888-6A964B991C49} 2012-02-15 13:57 - 2012-02-15 13:57 - 0790476 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_15_13_57_20.dmp 2012-02-15 13:57 - 2012-02-15 13:57 - 0788180 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_15_13_57_13.dmp 2012-02-15 13:56 - 2012-02-15 13:56 - 0785237 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_15_13_56_53.dmp 2012-02-15 06:27 - 2012-03-14 19:26 - 1031680 ____A (Microsoft Corporation) C:\Windows\System32\rdpcore.dll 2012-02-15 06:09 - 2012-02-15 06:09 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E2B859C4-9F7F-4BBE-B257-973F67954E9C} 2012-02-15 06:09 - 2012-02-15 06:09 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{94FDAE6C-374D-4311-837D-9B25BC2EFB0E} 2012-02-15 05:52 - 2012-02-15 05:52 - 0000000 ____D C:\Program Files (x86)\thinkbroadband.com 2012-02-15 05:51 - 2012-02-15 05:50 - 6198336 ___AH (thinkbroadband.com ) C:\Users\pcwt5\Downloads\tbbMeterSetup.exe 2012-02-15 05:44 - 2012-03-14 19:26 - 0826368 ____A (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll 2012-02-15 04:47 - 2012-03-14 19:26 - 0204800 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\rdpwd.sys 2012-02-15 04:46 - 2012-03-14 19:26 - 0023552 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tdtcp.sys 2012-02-15 00:32 - 2012-02-15 00:32 - 0797290 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_15_00_32_27.dmp 2012-02-15 00:32 - 2012-02-15 00:32 - 0793459 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_15_00_32_36.dmp 2012-02-15 00:32 - 2012-02-15 00:32 - 0788484 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_15_00_32_11.dmp 2012-02-14 14:16 - 2012-02-14 14:16 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A0794622-13D5-46E0-8E78-6B1EF5F43E6C} 2012-02-14 14:16 - 2012-02-14 14:15 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{61A0DF0C-608B-4E8B-821E-021934C364BA} 2012-02-14 14:14 - 2012-02-14 14:14 - 0794472 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_14_14_14_25.dmp 2012-02-14 14:14 - 2012-02-14 14:14 - 0789455 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_14_14_14_42.dmp 2012-02-14 14:14 - 2012-02-14 14:14 - 0785250 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_14_14_14_51.dmp 2012-02-14 08:21 - 2010-09-25 05:55 - 0000000 ___HD C:\Users\pcwt5\GracesLocalWebsite 2012-02-14 02:08 - 2010-10-05 21:07 - 0000000 ____D C:\Program Files (x86)\MSECache 2012-02-14 02:07 - 2012-02-14 01:49 - 38808920 ___AH (Microsoft Corporation) C:\Users\pcwt5\Downloads\FileFormatConverters.exe 2012-02-14 02:06 - 2012-02-14 02:06 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{5744CA49-ADF5-447C-9BA5-D0D544AF0D85} 2012-02-14 02:06 - 2012-02-14 02:06 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{471DEADB-CE14-4462-88E1-15C7EC737AB5} 2012-02-14 00:56 - 2012-02-14 00:56 - 0797062 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_14_00_56_47.dmp 2012-02-14 00:56 - 2012-02-14 00:56 - 0788248 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_14_00_56_13.dmp 2012-02-14 00:56 - 2012-02-14 00:56 - 0783621 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_14_00_56_36.dmp 2012-02-13 16:49 - 2009-07-14 05:32 - 0000000 ____D C:\Windows\Downloaded Program Files 2012-02-13 14:05 - 2012-02-13 14:05 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{96CD4B1E-D45C-4908-80BC-6BAD32A3A23B} 2012-02-13 14:05 - 2012-02-13 14:05 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{2CD415B0-A00B-4B65-B7AD-4CF408960A4D} 2012-02-13 13:56 - 2012-02-13 13:56 - 0800608 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_13_13_56_41.dmp 2012-02-13 13:56 - 2012-02-13 13:56 - 0793134 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_13_13_56_32.dmp 2012-02-13 13:56 - 2012-02-13 13:56 - 0784839 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_13_13_56_17.dmp 2012-02-13 00:05 - 2012-02-13 00:05 - 0789752 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_13_00_05_16.dmp 2012-02-13 00:05 - 2012-02-13 00:05 - 0774867 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_13_00_05_27.dmp 2012-02-13 00:04 - 2012-02-13 00:04 - 0780110 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_13_00_04_55.dmp 2012-02-12 19:26 - 2012-02-12 19:26 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{AA08E20D-3E7F-486B-A765-197723952995} 2012-02-12 19:26 - 2012-02-12 19:26 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{139043F0-2483-41D4-8BD6-3F2624A188DB} 2012-02-12 18:08 - 2012-02-12 18:08 - 0793386 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_12_18_08_23.dmp 2012-02-12 18:08 - 2012-02-12 18:08 - 0783820 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_12_18_08_10.dmp 2012-02-12 18:05 - 2012-02-12 18:05 - 0788058 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_12_18_05_46.dmp 2012-02-12 07:26 - 2012-02-12 07:25 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{20EF393E-12E4-4572-B5CB-21BF51071171} 2012-02-12 07:25 - 2012-02-12 07:25 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{FC6FF583-9FC7-4E95-8441-394038979155} 2012-02-12 02:36 - 2012-02-12 02:36 - 0792249 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_12_02_36_43.dmp 2012-02-12 02:36 - 2012-02-12 02:36 - 0787531 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_12_02_36_50.dmp 2012-02-12 02:32 - 2012-02-12 02:32 - 0780477 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_12_02_32_02.dmp 2012-02-11 19:25 - 2012-02-11 19:25 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{B0B924F4-D457-48B3-AFA3-A2800D5EBBAC} 2012-02-11 19:25 - 2012-02-11 19:25 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{82484CCA-77E2-422D-8CD2-A74753B82A5C} 2012-02-11 18:55 - 2012-02-11 18:55 - 0798376 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_11_18_55_27.dmp 2012-02-11 18:55 - 2012-02-11 18:55 - 0793902 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_11_18_55_44.dmp 2012-02-11 18:55 - 2012-02-11 18:55 - 0781072 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_11_18_55_59.dmp 2012-02-11 16:23 - 2012-02-11 16:23 - 0793195 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_11_16_23_20.dmp 2012-02-11 16:23 - 2012-02-11 16:23 - 0785954 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_11_16_23_28.dmp 2012-02-11 16:23 - 2012-02-11 16:23 - 0784379 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_11_16_23_03.dmp 2012-02-11 07:24 - 2012-02-11 07:24 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{E175D840-28C7-4558-B0F7-62D6844EF53F} 2012-02-11 07:24 - 2012-02-11 07:23 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{29FE6740-623A-4552-9A03-047D508219DF} 2012-02-11 03:25 - 2009-07-14 03:20 - 0000000 ____D C:\Windows\rescache 2012-02-11 01:54 - 2012-02-11 01:54 - 0789437 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_11_01_54_12.dmp 2012-02-11 01:54 - 2012-02-11 01:54 - 0784218 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_11_01_54_36.dmp 2012-02-11 01:54 - 2012-02-11 01:54 - 0780170 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_11_01_54_44.dmp 2012-02-11 01:14 - 2012-02-11 01:14 - 0014811 ___AH C:\Users\pcwt5\Downloads\ID 15521 (2).docx 2012-02-11 01:14 - 2012-02-11 01:14 - 0014811 ___AH C:\Users\pcwt5\Downloads\ID 15521 (1).docx 2012-02-11 01:14 - 2012-02-11 01:14 - 0000162 ___AH C:\Users\pcwt5\Downloads\~$ 15521.docx 2012-02-11 01:14 - 2012-02-11 01:13 - 0014811 ___AH C:\Users\pcwt5\Downloads\ID 15521.docx 2012-02-11 00:24 - 2012-02-11 00:24 - 0789748 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_11_00_24_04.dmp 2012-02-11 00:23 - 2012-02-11 00:23 - 0809879 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_11_00_23_56.dmp 2012-02-11 00:23 - 2012-02-11 00:23 - 0792198 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_11_00_23_37.dmp 2012-02-11 00:21 - 2009-07-14 03:20 - 0000000 ____D C:\Windows\PolicyDefinitions 2012-02-11 00:02 - 2012-02-10 23:51 - 0008974 ____A C:\Windows\IE9_main.log 2012-02-11 00:01 - 2009-12-22 10:55 - 0000000 ___HD C:\Windows\msdownld.tmp 2012-02-11 00:00 - 2012-02-11 00:00 - 3695416 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2012-02-11 00:00 - 2012-02-11 00:00 - 3695416 ____A (Microsoft Corporation) C:\Windows\System32\ieapfltr.dat 2012-02-11 00:00 - 2012-02-11 00:00 - 0697344 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0603648 ____A (Microsoft Corporation) C:\Windows\System32\vbscript.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0580608 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0534528 ____A (Microsoft Corporation) C:\Windows\System32\ieapfltr.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0452608 ____A (Microsoft Corporation) C:\Windows\System32\dxtmsft.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0448512 ____A (Microsoft Corporation) C:\Windows\System32\html.iec 2012-02-11 00:00 - 2012-02-11 00:00 - 0434176 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0420864 ____A (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0403248 ____A (Microsoft Corporation) C:\Windows\System32\iedkcs32.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0367104 ____A (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2012-02-11 00:00 - 2012-02-11 00:00 - 0353792 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0353584 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0282112 ____A (Microsoft Corporation) C:\Windows\System32\dxtrans.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0267776 ____A (Microsoft Corporation) C:\Windows\System32\ieaksie.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0249344 ____A (Microsoft Corporation) C:\Windows\System32\webcheck.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0227840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieaksie.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0223232 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0222208 ____A (Microsoft Corporation) C:\Windows\System32\msls31.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0203776 ____A (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0197120 ____A (Microsoft Corporation) C:\Windows\System32\msrating.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe 2012-02-11 00:00 - 2012-02-11 00:00 - 0165888 ____A (Microsoft Corporation) C:\Windows\System32\iexpress.exe 2012-02-11 00:00 - 2012-02-11 00:00 - 0163840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieakui.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0163840 ____A (Microsoft Corporation) C:\Windows\System32\ieakui.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0162304 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0161792 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0160256 ____A (Microsoft Corporation) C:\Windows\System32\wextract.exe 2012-02-11 00:00 - 2012-02-11 00:00 - 0160256 ____A (Microsoft Corporation) C:\Windows\System32\ieakeng.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0152064 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2012-02-11 00:00 - 2012-02-11 00:00 - 0150528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2012-02-11 00:00 - 2012-02-11 00:00 - 0149504 ____A (Microsoft Corporation) C:\Windows\System32\occache.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0145920 ____A (Microsoft Corporation) C:\Windows\System32\iepeers.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2012-02-11 00:00 - 2012-02-11 00:00 - 0135168 ____A (Microsoft Corporation) C:\Windows\System32\IEAdvpack.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0130560 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieakeng.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0123392 ____A (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0118784 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0114176 ____A (Microsoft Corporation) C:\Windows\System32\admparse.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0111616 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0110592 ____A (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0103936 ____A (Microsoft Corporation) C:\Windows\System32\inseng.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0101888 ____A (Microsoft Corporation) C:\Windows\SysWOW64\admparse.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0091648 ____A (Microsoft Corporation) C:\Windows\System32\SetIEInstalledDate.exe 2012-02-11 00:00 - 2012-02-11 00:00 - 0089088 ____A (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe 2012-02-11 00:00 - 2012-02-11 00:00 - 0089088 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe 2012-02-11 00:00 - 2012-02-11 00:00 - 0086528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0085504 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0082432 ____A (Microsoft Corporation) C:\Windows\System32\icardie.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0078848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0076800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2012-02-11 00:00 - 2012-02-11 00:00 - 0076800 ____A (Microsoft Corporation) C:\Windows\System32\tdc.ocx 2012-02-11 00:00 - 2012-02-11 00:00 - 0074752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2012-02-11 00:00 - 2012-02-11 00:00 - 0074752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0074240 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ie4uinit.exe 2012-02-11 00:00 - 2012-02-11 00:00 - 0072822 ____A C:\Windows\SysWOW64\ieuinit.inf 2012-02-11 00:00 - 2012-02-11 00:00 - 0072822 ____A C:\Windows\System32\ieuinit.inf 2012-02-11 00:00 - 2012-02-11 00:00 - 0066048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0065024 ____A (Microsoft Corporation) C:\Windows\System32\pngfilt.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0063488 ____A (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2012-02-11 00:00 - 2012-02-11 00:00 - 0055296 ____A (Microsoft Corporation) C:\Windows\System32\msfeedsbs.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0054272 ____A (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0049664 ____A (Microsoft Corporation) C:\Windows\System32\imgutil.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0048640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0048640 ____A (Microsoft Corporation) C:\Windows\System32\mshtmler.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0041472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0035840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0031744 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0030720 ____A (Microsoft Corporation) C:\Windows\System32\licmgr10.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0023552 ____A (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2012-02-11 00:00 - 2012-02-11 00:00 - 0012288 ____A (Microsoft Corporation) C:\Windows\System32\mshta.exe 2012-02-11 00:00 - 2012-02-11 00:00 - 0011776 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2012-02-11 00:00 - 2012-02-11 00:00 - 0010752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2012-02-11 00:00 - 2012-02-11 00:00 - 0010752 ____A (Microsoft Corporation) C:\Windows\System32\msfeedssync.exe 2012-02-10 23:51 - 2012-02-10 23:48 - 36426056 ___AH (Microsoft Corporation) C:\Users\pcwt5\Downloads\BOIE9_ENGB_WIN764.exe 2012-02-10 19:23 - 2012-02-10 19:23 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{F66032D9-115A-4F38-A5E4-006E2699F412} 2012-02-10 19:23 - 2012-02-10 19:23 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{C7660362-E750-4EFD-8756-F0193368EF03} 2012-02-10 19:23 - 2012-02-10 19:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{AD2F8067-CFFB-4FDC-B9FE-0DD036749394} 2012-02-10 19:22 - 2012-02-10 19:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{CF67E779-5145-4BFB-8AB4-6A94DAA931CB} 2012-02-10 13:45 - 2012-02-10 13:45 - 0799989 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_10_13_45_50.dmp 2012-02-10 13:45 - 2012-02-10 13:45 - 0797272 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_10_13_45_34.dmp 2012-02-10 13:45 - 2012-02-10 13:45 - 0791979 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_10_13_45_59.dmp 2012-02-10 07:22 - 2012-02-10 07:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{D10E3B2B-7731-4CA7-AE0C-AF50A57591B2} 2012-02-10 07:22 - 2012-02-10 07:22 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{5AE80FF2-651A-4155-AD28-73A5082C9CCF} 2012-02-10 06:18 - 2012-03-14 19:39 - 1541120 ____A (Microsoft Corporation) C:\Windows\System32\DWrite.dll 2012-02-10 06:17 - 2012-03-14 19:39 - 1837568 ____A (Microsoft Corporation) C:\Windows\System32\d3d10warp.dll 2012-02-10 06:17 - 2012-03-14 19:39 - 0902656 ____A (Microsoft Corporation) C:\Windows\System32\d2d1.dll 2012-02-10 06:17 - 2012-03-14 19:39 - 0320512 ____A (Microsoft Corporation) C:\Windows\System32\d3d10_1core.dll 2012-02-10 06:17 - 2012-03-14 19:39 - 0197120 ____A (Microsoft Corporation) C:\Windows\System32\d3d10_1.dll 2012-02-10 05:41 - 2012-03-14 19:39 - 1170944 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2012-02-10 05:41 - 2012-03-14 19:39 - 1074176 ____A (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2012-02-10 05:41 - 2012-03-14 19:39 - 0739840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2012-02-10 05:41 - 2012-03-14 19:39 - 0218624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll 2012-02-10 05:41 - 2012-03-14 19:39 - 0161792 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll 2012-02-09 19:21 - 2012-02-09 19:21 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{A9C0B300-B25D-4083-8983-D4CFDEF56BCD} 2012-02-09 19:21 - 2012-02-09 19:21 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{1AE7800D-6948-4B70-B9B7-C07BF46BE00F} 2012-02-09 19:21 - 2012-02-09 19:21 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{03F8B649-09F0-466A-AC12-1B706884DFB1} 2012-02-09 19:21 - 2012-02-09 19:20 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{4E41C25C-8FC4-4FD0-8ECD-6485FBB55830} 2012-02-09 16:05 - 2012-02-09 16:05 - 0003224 ___AH C:\Users\Public\Documents\regcontexthandlers.reg 2012-02-09 16:01 - 2012-02-09 16:00 - 0534659 ___AH C:\Users\pcwt5\Downloads\Autoruns.zip 2012-02-09 15:36 - 2012-02-09 15:35 - 0180775 ___AH C:\Users\pcwt5\Downloads\Checklist.apk 2012-02-09 13:56 - 2012-02-09 13:56 - 0800503 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_09_13_56_08.dmp 2012-02-09 13:56 - 2012-02-09 13:56 - 0791212 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_09_13_56_16.dmp 2012-02-09 13:55 - 2012-02-09 13:55 - 0807905 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_09_13_55_49.dmp 2012-02-09 07:20 - 2012-02-09 07:19 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{560B8683-1A48-435D-B2CD-6A5FD88536FF} 2012-02-09 07:19 - 2012-02-09 07:19 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{905C0A5D-6D06-47FC-926B-8452FDAF532F} 2012-02-09 07:18 - 2012-02-09 07:18 - 0789044 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_09_07_18_08.dmp 2012-02-09 07:17 - 2012-02-09 07:17 - 0792804 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_09_07_17_17.dmp 2012-02-09 07:17 - 2012-02-09 07:17 - 0788895 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_09_07_17_58.dmp 2012-02-08 18:05 - 2012-02-08 18:05 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{EF942659-1141-4C7D-B655-A4A9688B7199} 2012-02-08 18:05 - 2012-02-08 18:05 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{28619E07-10DA-4FB8-BAC3-5B4BBD0E5337} 2012-02-08 13:59 - 2012-02-08 13:59 - 0801765 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_08_13_59_15.dmp 2012-02-08 13:59 - 2012-02-08 13:59 - 0793871 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_08_13_59_41.dmp 2012-02-08 13:59 - 2012-02-08 13:59 - 0792142 ____A C:\Windows\SysWOW64\(null)AAWService__2012_02_08_13_59_34.dmp 2012-02-08 06:04 - 2012-02-08 06:04 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{632FDF08-C925-4F01-BB77-8AAA7CA57F53} 2012-02-08 06:04 - 2012-02-08 06:04 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{5F2C3F06-1FE5-4DD6-BDEE-FE5B8F9B9A7A} 2012-02-08 06:04 - 2012-02-08 06:04 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{4498E02D-9249-4A81-B623-F9A642A6E5D8} 2012-02-08 06:04 - 2012-02-08 06:03 - 0000000 ___HD C:\Users\pcwt5\AppData\Local\{3F67C657-5DBE-4131-9B36-9B4E184F4E17} ========================= Known DLLs (Whitelisted) ============ ========================= Bamital & volsnap Check ============ C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe [2009-07-13 23:50] - [2009-07-14 01:39] - 0030208 ____A (Microsoft Corporation) 6F8F1376A13114CC10C0E69274F5A4DE C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit ========================= Memory info ====================== Percentage of memory in use: 16% Total physical RAM: 3935.02 MB Available physical RAM: 3292.52 MB Total Pagefile: 3933.17 MB Available Pagefile: 3288.81 MB Total Virtual: 8192 MB Available Virtual: 8191.91 MB ======================= Partitions ========================= 1 Drive c: () (Fixed) (Total:288.66 GB) (Free:130.49 GB) NTFS 2 Drive e: (Recovery) (Fixed) (Total:9.33 GB) (Free:0.82 GB) NTFS ==>[System with boot components (obtained from reading drive)] 3 Drive f: (Repair disc Windows 7 64-bit) (CDROM) (Total:0.15 GB) (Free:0 GB) UDF 4 Drive g: (KINGSTON) (Removable) (Total:3.73 GB) (Free:3.56 GB) FAT32 5 Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS 6 Drive y: (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[System with boot components (obtained from reading drive)] Disk ### Status Size Free Dyn Gpt -------- ------------- ------- ------- --- --- Disk 0 Online 298 GB 0 B Disk 1 Online 3824 MB 0 B Partitions of Disk 0: =============== Partition ### Type Size Offset ------------- ---------------- ------- ------- Partition 1 Recovery 9 GB 1024 KB Partition 2 Primary 100 MB 9 GB Partition 3 Primary 288 GB 9 GB Partition 4 Primary 1016 KB 298 GB ====================================================================================================== Disk: 0 Partition 1 Type : 27 Hidden: Yes Active: Yes Volume ### Ltr Label Fs Type Size Status Info ---------- --- ----------- ----- ---------- ------- --------- -------- * Volume 3 E Recovery NTFS Partition 9 GB Healthy Hidden ====================================================================================================== Disk: 0 Partition 2 Type : 07 Hidden: No Active: No Volume ### Ltr Label Fs Type Size Status Info ---------- --- ----------- ----- ---------- ------- --------- -------- * Volume 1 Y System Rese NTFS Partition 100 MB Healthy ====================================================================================================== Disk: 0 Partition 3 Type : 07 Hidden: No Active: No Volume ### Ltr Label Fs Type Size Status Info ---------- --- ----------- ----- ---------- ------- --------- -------- * Volume 2 C NTFS Partition 288 GB Healthy ====================================================================================================== Disk: 0 Partition 4 Type : 17 (Suspicious Type) Hidden: Yes Active: No There is no volume associated with this partition. ====================================================================================================== Partitions of Disk 1: =============== Partition ### Type Size Offset ------------- ---------------- ------- ------- Partition 1 Primary 3823 MB 31 KB ====================================================================================================== Disk: 1 Partition 1 Type : 0B Hidden: No Active: Yes Volume ### Ltr Label Fs Type Size Status Info ---------- --- ----------- ----- ---------- ------- --------- -------- * Volume 4 G KINGSTON FAT32 Removable 3823 MB Healthy ====================================================================================================== ========================================================== Last Boot: 2012-04-29 16:02 ======================= End Of Log ==========================