Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

unknown issue laptop slow, freezing up


  • Please log in to reply

#1
Mich73

Mich73

    Member

  • Member
  • PipPip
  • 57 posts
I have a Toshiba laptop that is running slow, freezes up. havent found any malware or viruses though. I ran all programs required with problems on some. I ran GMER in safemode but it wont complete the scan or something b/c i dont get any logs to save. I think its freezing up during the process. erunt did a back up on first scan but now when i reboot it gives me an error message.

originally there were 75 processes running and some of the I researched and realized that did not need to be in start up or constantly running. There are others that I think were already stopped and perhaps should be running, b/c some things wont work like ctrl/alt/del to open the task manager.

I will just post the logs that I was able to get.

Malwarebytes' Anti-Malware 1.44
Database version: 3805
Windows 6.0.6000
Internet Explorer 8.0.6001.18882

2/27/2010 10:51:54 PM
mbam-log-2010-02-27 (22-51-54).txt

Scan type: Quick Scan
Objects scanned: 100686
Time elapsed: 7 minute(s), 21 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)


OTL logfile created on: 1/1/2005 1:12:39 AM - Run 2
OTL by OldTimer - Version 3.1.30.3 Folder = C:\Users\Bobbie\Desktop
Windows Vista Home Basic Edition (Version = 6.0.6000) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18882)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

502.00 Mb Total Physical Memory | 193.00 Mb Available Physical Memory | 38.00% Memory free
1.00 Gb Paging File | 1.00 Gb Available in Paging File | 62.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 73.06 Gb Total Space | 38.87 Gb Free Space | 53.19% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: BOBBIE-PC
Current User Name: Bobbie
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 14 Days
Output = Standard
Quick Scan

========== Processes (SafeList) ==========

PRC - [2010/02/11 13:53:42 | 002,756,488 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe
PRC - [2010/02/11 13:53:39 | 000,040,384 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
PRC - [2009/04/13 19:09:35 | 001,006,264 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Defender\MSASCui.exe
PRC - [2009/04/10 22:45:10 | 002,923,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2008/12/12 10:17:38 | 000,238,888 | ---- | M] (Apple Inc.) -- C:\Program Files\Bonjour\mDNSResponder.exe
PRC - [2006/12/20 01:15:44 | 000,428,152 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe
PRC - [2006/11/14 22:33:10 | 000,040,960 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files\Toshiba\ConfigFree\CFSvcs.exe
PRC - [2006/11/09 12:57:52 | 003,784,704 | ---- | M] (Realtek Semiconductor) -- C:\Windows\RtHDVCpl.exe
PRC - [2006/11/02 04:45:53 | 001,137,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wercon.exe
PRC - [2006/10/27 15:50:52 | 000,815,104 | ---- | M] (Synaptics, Inc.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
PRC - [2006/10/27 15:11:02 | 000,192,512 | ---- | M] (Synaptics, Inc.) -- C:\Program Files\Synaptics\SynTP\SynToshiba.exe
PRC - [2006/09/12 10:03:20 | 000,009,216 | ---- | M] (Agere Systems) -- C:\Windows\System32\agrsmsvc.exe
PRC - [2006/08/23 18:39:48 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
PRC - [2006/05/25 20:30:16 | 000,114,688 | ---- | M] (TOSHIBA Corporation) -- C:\Windows\System32\TODDSrv.exe
PRC - [2005/01/07 07:35:05 | 000,549,888 | ---- | M] (OldTimer Tools) -- C:\Users\Bobbie\Desktop\OTL.exe


========== Modules (SafeList) ==========

MOD - [2006/11/02 04:38:57 | 001,648,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll
MOD - [2005/01/07 07:35:05 | 000,549,888 | ---- | M] (OldTimer Tools) -- C:\Users\Bobbie\Desktop\OTL.exe


========== Win32 Services (SafeList) ==========

SRV - [2010/02/11 13:53:39 | 000,040,384 | ---- | M] (ALWIL Software) [On_Demand | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Web Scanner)
SRV - [2010/02/11 13:53:39 | 000,040,384 | ---- | M] (ALWIL Software) [On_Demand | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Mail Scanner)
SRV - [2010/02/11 13:53:39 | 000,040,384 | ---- | M] (ALWIL Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus)
SRV - [2009/06/05 12:39:14 | 000,541,992 | ---- | M] (Apple Inc.) [On_Demand | Stopped] -- C:\Program Files\iPod\bin\iPodService.exe -- (iPod Service)
SRV - [2009/06/05 10:48:14 | 000,144,712 | ---- | M] (Apple Inc.) [Disabled | Stopped] -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe -- (Apple Mobile Device)
SRV - [2009/04/13 19:09:35 | 000,265,912 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2008/12/12 10:17:38 | 000,238,888 | ---- | M] (Apple Inc.) [Auto | Running] -- C:\Program Files\Bonjour\mDNSResponder.exe -- (Bonjour Service)
SRV - [2008/11/04 00:06:28 | 000,441,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE -- (odserv)
SRV - [2007/01/25 19:50:26 | 000,063,096 | ---- | M] () [Disabled | Stopped] -- c:\TOSHIBA\IVP\swupdate\swupdtmr.exe -- (Swupdtmr)
SRV - [2007/01/25 19:47:50 | 000,136,816 | ---- | M] () [On_Demand | Stopped] -- C:\TOSHIBA\IVP\ISM\pinger.exe -- (pinger)
SRV - [2006/12/20 01:15:44 | 000,428,152 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe -- (TosCoSrv)
SRV - [2006/11/14 22:33:10 | 000,040,960 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files\Toshiba\ConfigFree\CFSvcs.exe -- (CFSvcs)
SRV - [2006/10/26 16:03:08 | 000,145,184 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE -- (ose)
SRV - [2006/09/12 10:03:20 | 000,009,216 | ---- | M] (Agere Systems) [Auto | Running] -- C:\Windows\System32\agrsmsvc.exe -- (AgereModemAudio)
SRV - [2006/08/23 18:39:48 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) [Auto | Running] -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe -- (UleadBurningHelper)
SRV - [2006/05/25 20:30:16 | 000,114,688 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Windows\System32\TODDSrv.exe -- (TODDSrv)
SRV - [2005/11/14 03:06:04 | 000,069,632 | ---- | M] (Macrovision Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe -- (IDriverT)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.c...//www.yahoo.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.c...//www.yahoo.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomSearch = http://us.rd.yahoo.c...rch/search.html

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.toshibadirect.com/dpdstart
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.c...//www.yahoo.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local



O1 HOSTS File: ([2006/09/18 16:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll (Sun Microsystems, Inc.)
O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\AvastUI.exe (ALWIL Software)
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics, Inc.)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - Startup: C:\Users\Bobbie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk = C:\Program Files\ERUNT\AUTOBACK.EXE ()
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\npjpi160.dll (Sun Microsystems, Inc.)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.micr...heckControl.cab (Windows Genuine Advantage Validation Tool)
O16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} http://lads.myspace....ploader1006.cab (MySpace Uploader Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.ma...r/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {9C23D886-43CB-43DE-B2DB-112A68D7E10A} http://lads.myspace....ceUploader2.cab (MySpace Uploader Control)
O16 - DPF: {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\Windows\System32\igfxdev.dll (Intel Corporation)
O24 - Desktop WallPaper: C:\Users\Bobbie\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
O24 - Desktop BackupWallPaper: C:\Users\Bobbie\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2005/01/01 05:07:04 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - comfile [open] -- "%1" %*
O35 - exefile [open] -- "%1" %*

NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - C:\Windows\System32\ias [2006/11/02 06:18:47 | 000,000,000 | ---D | M]
NetSvcs: Irmon - C:\Windows\System32\irmon.dll (Microsoft Corporation)
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: Wmi - C:\Windows\System32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found
OTL cannot create restorepoints on Vista OSs!

========== Files/Folders - Created Within 14 Days ==========

[2010/02/27 22:41:17 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2010/02/27 22:40:48 | 000,000,000 | ---D | C] -- C:\Program Files\ERUNT
[2010/02/27 01:31:31 | 001,028,608 | ---- | C] (J.C. Kessels) -- C:\Windows\System32\MyDefragScreenSaver v4.2.8.exe
[2010/02/27 01:31:31 | 000,432,640 | ---- | C] (J.C. Kessels) -- C:\Windows\System32\MyDefragScreenSaver v4.2.8.scr
[2010/02/27 01:31:29 | 000,000,000 | ---D | C] -- C:\Program Files\MyDefrag v4.2.8
[2010/02/27 01:00:22 | 000,019,024 | ---- | C] (ALWIL Software) -- C:\Windows\System32\drivers\aswFsBlk.sys
[2010/02/27 01:00:18 | 000,162,512 | ---- | C] (ALWIL Software) -- C:\Windows\System32\drivers\aswSP.sys
[2010/02/27 01:00:01 | 000,023,376 | ---- | C] (ALWIL Software) -- C:\Windows\System32\drivers\aswRdr.sys
[2010/02/27 00:59:41 | 000,046,672 | ---- | C] (ALWIL Software) -- C:\Windows\System32\drivers\aswTdi.sys
[2010/02/27 00:59:16 | 000,051,792 | ---- | C] (ALWIL Software) -- C:\Windows\System32\drivers\aswMonFlt.sys
[2010/02/27 00:49:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Office Genuine Advantage
[2010/02/26 23:46:44 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\AppData\Local\Microsoft Help
[2009/12/30 14:34:36 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\AppData\Roaming\WinBatch
[2009/12/30 08:15:58 | 000,000,000 | ---D | C] -- C:\Program Files\Linksys
[2009/12/25 17:05:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Pure Networks
[2009/06/30 17:20:57 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe
[2009/06/16 23:38:10 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\AppData\Roaming\Yahoo!
[2009/06/16 23:37:52 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\AppData\Local\Yahoo
[2009/06/16 23:34:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Yahoo!
[2009/06/09 22:49:05 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\Documents\FrostWire
[2009/06/09 22:48:47 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\AppData\Roaming\FrostWire
[2009/06/09 22:48:04 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2009/06/09 22:10:11 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\AppData\Roaming\Apple Computer
[2009/06/09 22:10:11 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\AppData\Local\Apple Computer
[2009/06/09 22:08:29 | 000,000,000 | ---D | C] -- C:\Windows\System32\DRVSTORE
[2009/06/09 22:07:31 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2009/06/09 22:07:12 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2009/06/09 22:07:12 | 000,000,000 | ---D | C] -- C:\ProgramData\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
[2009/06/09 21:46:30 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour
[2009/06/09 21:44:27 | 000,000,000 | ---D | C] -- C:\Program Files\QuickTime
[2009/06/09 21:44:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple Computer
[2009/06/09 21:42:56 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\AppData\Local\Apple
[2009/06/09 21:42:24 | 000,000,000 | ---D | C] -- C:\Program Files\Apple Software Update
[2009/06/09 21:37:08 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Apple
[2009/06/09 21:37:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple
[2009/05/16 12:24:31 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Blizzard Entertainment
[2009/05/11 13:12:28 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\Documents\Updater5
[2009/05/10 12:31:08 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\AppData\Roaming\Roxio
[2009/04/16 23:16:24 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\AppData\Local\Adobe
[2009/04/10 12:03:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Symantec
[2009/04/08 23:53:36 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\AppData\Local\SupportSoft
[2009/04/08 23:52:54 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SupportSoft
[2009/04/08 22:17:51 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\AppData\Roaming\Macromedia
[2009/04/08 22:17:50 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\AppData\Roaming\Adobe
[2009/04/08 21:45:44 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\AppData\Roaming\Google
[2009/03/31 01:41:39 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\AppData\Roaming\PlayFirst
[2009/03/31 01:41:39 | 000,000,000 | ---D | C] -- C:\ProgramData\PlayFirst
[2009/03/31 01:41:05 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\AppData\Roaming\WildTangent
[2009/03/31 01:21:59 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\AppData\Local\Microsoft Games
[2009/03/31 01:16:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Norton
[2009/03/31 01:05:21 | 000,000,000 | ---D | C] -- C:\ProgramData\NortonInstaller
[2009/03/31 00:59:48 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\AppData\Local\Toshiba
[2009/03/31 00:59:24 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\Documents\My Google Gadgets
[2009/03/31 00:58:53 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\AppData\Local\Google
[2009/03/31 00:58:12 | 000,000,000 | R--D | C] -- C:\Users\Bobbie\Searches
[2009/03/31 00:58:01 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\AppData\Roaming\Identities
[2009/03/31 00:57:59 | 000,000,000 | R--D | C] -- C:\Users\Bobbie\Contacts
[2009/03/31 00:57:56 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\AppData\Local\VirtualStore
[2009/03/31 00:56:58 | 000,000,000 | -HSD | C] -- C:\Users\Bobbie\AppData\Local\Temporary Internet Files
[2009/03/31 00:56:58 | 000,000,000 | -HSD | C] -- C:\Users\Bobbie\Templates
[2009/03/31 00:56:58 | 000,000,000 | -HSD | C] -- C:\Users\Bobbie\Start Menu
[2009/03/31 00:56:58 | 000,000,000 | -HSD | C] -- C:\Users\Bobbie\SendTo
[2009/03/31 00:56:58 | 000,000,000 | -HSD | C] -- C:\Users\Bobbie\Recent
[2009/03/31 00:56:58 | 000,000,000 | -HSD | C] -- C:\Users\Bobbie\PrintHood
[2009/03/31 00:56:58 | 000,000,000 | -HSD | C] -- C:\Users\Bobbie\NetHood
[2009/03/31 00:56:58 | 000,000,000 | -HSD | C] -- C:\Users\Bobbie\Documents\My Videos
[2009/03/31 00:56:58 | 000,000,000 | -HSD | C] -- C:\Users\Bobbie\Documents\My Pictures
[2009/03/31 00:56:58 | 000,000,000 | -HSD | C] -- C:\Users\Bobbie\Documents\My Music
[2009/03/31 00:56:58 | 000,000,000 | -HSD | C] -- C:\Users\Bobbie\My Documents
[2009/03/31 00:56:58 | 000,000,000 | -HSD | C] -- C:\Users\Bobbie\Local Settings
[2009/03/31 00:56:58 | 000,000,000 | -HSD | C] -- C:\Users\Bobbie\AppData\Local\History
[2009/03/31 00:56:58 | 000,000,000 | -HSD | C] -- C:\Users\Bobbie\Cookies
[2009/03/31 00:56:58 | 000,000,000 | -HSD | C] -- C:\Users\Bobbie\Application Data
[2009/03/31 00:56:58 | 000,000,000 | -HSD | C] -- C:\Users\Bobbie\AppData\Local\Application Data
[2009/03/31 00:56:55 | 000,000,000 | --SD | C] -- C:\Users\Bobbie\AppData\Roaming\Microsoft
[2009/03/31 00:56:55 | 000,000,000 | R--D | C] -- C:\Users\Bobbie\Videos
[2009/03/31 00:56:55 | 000,000,000 | R--D | C] -- C:\Users\Bobbie\Saved Games
[2009/03/31 00:56:55 | 000,000,000 | R--D | C] -- C:\Users\Bobbie\Pictures
[2009/03/31 00:56:55 | 000,000,000 | R--D | C] -- C:\Users\Bobbie\Music
[2009/03/31 00:56:55 | 000,000,000 | R--D | C] -- C:\Users\Bobbie\Links
[2009/03/31 00:56:55 | 000,000,000 | R--D | C] -- C:\Users\Bobbie\Favorites
[2009/03/31 00:56:55 | 000,000,000 | R--D | C] -- C:\Users\Bobbie\Downloads
[2009/03/31 00:56:55 | 000,000,000 | R--D | C] -- C:\Users\Bobbie\Documents
[2009/03/31 00:56:55 | 000,000,000 | R--D | C] -- C:\Users\Bobbie\Desktop
[2009/03/31 00:56:55 | 000,000,000 | -H-D | C] -- C:\Users\Bobbie\AppData
[2009/03/31 00:56:55 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\AppData\Local\Temp
[2009/03/31 00:56:55 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\AppData\Local\Microsoft
[2009/03/31 00:45:39 | 000,000,000 | ---D | C] -- C:\Program Files\Synaptics
[2009/03/31 00:42:53 | 000,694,784 | ---- | C] (Atheros Communications, Inc.) -- C:\Windows\System32\drivers\athr.sys
[2009/03/31 00:42:53 | 000,694,784 | ---- | C] (Atheros Communications, Inc.) -- C:\Windows\System32\athr.sys
[2009/03/31 00:42:53 | 000,000,000 | ---D | C] -- C:\Program Files\Atheros
[2009/03/31 00:42:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Atheros
[2009/03/31 00:34:53 | 000,000,000 | ---D | C] -- C:\Windows\System32\Lang
[2009/03/31 00:34:51 | 000,000,000 | ---D | C] -- C:\Intel
[2009/03/31 00:27:09 | 000,000,000 | ---D | C] -- C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}
[2009/03/31 00:27:01 | 000,000,000 | ---D | C] -- C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
[2009/03/31 00:24:37 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER
[2009/03/31 00:24:15 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2009/03/31 00:24:15 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET
[2009/03/31 00:22:36 | 000,000,000 | ---D | C] -- C:\Windows\SHELLNEW
[2009/03/31 00:22:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Help
[2009/03/31 00:21:03 | 000,000,000 | RH-D | C] -- C:\MSOCache
[2009/03/31 00:19:54 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2009/03/31 00:19:27 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Works
[2009/03/31 00:14:30 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2009/03/31 00:10:01 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2007/05/24 16:39:00 | 000,000,000 | ---D | C] -- C:\WORKSSETUP
[2007/05/23 20:28:51 | 000,000,000 | ---D | C] -- C:\Program Files\Toshiba Registration
[2007/05/23 20:28:10 | 000,000,000 | ---D | C] -- C:\Program Files\Toshiba America Information Systems
[2007/05/23 20:25:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Google
[2007/05/23 20:23:33 | 000,000,000 | ---D | C] -- C:\Program Files\Google
[2007/05/23 20:20:34 | 000,000,000 | ---D | C] -- C:\Program Files\TOSHIBA Games
[2007/05/23 20:20:32 | 000,000,000 | ---D | C] -- C:\ProgramData\WildTangent
[2007/05/23 20:17:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Napster
[2007/05/23 20:16:32 | 000,000,000 | ---D | C] -- C:\Program Files\DesktopDialer
[2007/05/23 20:15:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe
[2007/05/23 20:15:37 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2007/05/23 20:13:25 | 000,000,000 | ---D | C] -- C:\ProgramData\YAHOO
[2007/05/23 20:13:22 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SureThing Shared
[2007/05/23 20:13:21 | 000,000,000 | ---D | C] -- C:\Program Files\Yahoo!
[2007/05/23 20:13:09 | 000,000,000 | ---D | C] -- C:\Windows\Downloaded Installations
[2007/05/23 20:11:26 | 000,000,000 | ---D | C] -- C:\Program Files\Java
[2007/05/23 20:11:26 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2007/05/23 20:07:17 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee
[2007/05/23 20:00:15 | 000,000,000 | ---D | C] -- C:\Program Files\InterVideo
[2007/05/23 20:00:04 | 000,000,000 | ---D | C] -- C:\Windows\System32\Macromed
[2007/05/23 19:57:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Ulead Systems
[2007/05/23 19:57:12 | 000,000,000 | ---D | C] -- C:\Program Files\Ulead Systems
[2007/05/23 19:57:12 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Ulead Systems
[2007/05/23 19:56:23 | 000,000,000 | ---D | C] -- C:\Windows\Panther
[2007/05/23 19:56:06 | 000,000,000 | -HSD | C] -- C:\Boot
[2007/05/23 19:55:02 | 000,000,000 | ---D | C] -- C:\DOCS
[2007/05/23 19:53:24 | 000,000,000 | ---D | C] -- C:\Program Files\My Company Name
[2007/05/23 19:50:18 | 000,000,000 | ---D | C] -- C:\TOSHIBA
[2007/05/23 19:49:09 | 000,000,000 | ---D | C] -- C:\Windows\System32\SDA
[2007/05/23 19:42:17 | 000,000,000 | ---D | C] -- C:\ProgramData\XP
[2007/05/23 19:42:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Vista64
[2007/05/23 19:40:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Toshiba
[2007/05/23 19:37:02 | 000,000,000 | ---D | C] -- C:\Program Files\ltmoh
[2007/05/23 19:36:39 | 000,000,000 | ---D | C] -- C:\Windows\Options
[2007/05/23 19:35:51 | 000,000,000 | ---D | C] -- C:\Windows\tiinst
[2007/05/23 19:34:02 | 000,059,392 | ---- | C] (Realtek Corporation) -- C:\Windows\System32\drivers\Rtlh86.sys
[2007/05/23 19:32:31 | 000,000,000 | ---D | C] -- C:\Windows\System32\RTCOM
[2007/05/23 19:31:59 | 003,784,704 | ---- | C] (Realtek Semiconductor) -- C:\Windows\RtHDVCpl.exe
[2007/05/23 19:31:57 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information
[2007/05/23 19:31:57 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek
[2007/05/23 19:31:42 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
[2007/05/23 19:27:23 | 000,000,000 | ---D | C] -- C:\Program Files\Toshiba
[2007/05/23 19:13:31 | 000,000,000 | ---D | C] -- C:\Program Files\MSXML 4.0
[2007/05/23 19:13:27 | 000,000,000 | -HSD | C] -- C:\Windows\Installer
[2007/05/23 19:12:25 | 000,000,000 | ---D | C] -- C:\Windows\Driver Cache
[2007/05/23 19:03:46 | 000,000,000 | ---D | C] -- C:\Windows\Debug
[2007/05/23 19:02:07 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch
[2006/11/02 07:59:44 | 000,000,000 | -HSD | C] -- C:\ProgramData\Templates
[2006/11/02 07:59:44 | 000,000,000 | -HSD | C] -- C:\ProgramData\Start Menu
[2006/11/02 07:59:44 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\My Videos
[2006/11/02 07:59:44 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\My Pictures
[2006/11/02 07:59:44 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\My Music
[2006/11/02 07:59:44 | 000,000,000 | -HSD | C] -- C:\ProgramData\Favorites
[2006/11/02 07:59:44 | 000,000,000 | -HSD | C] -- C:\Documents and Settings
[2006/11/02 07:59:44 | 000,000,000 | -HSD | C] -- C:\ProgramData\Documents
[2006/11/02 07:59:44 | 000,000,000 | -HSD | C] -- C:\ProgramData\Desktop
[2006/11/02 07:59:44 | 000,000,000 | -HSD | C] -- C:\ProgramData\Application Data
[2006/11/02 07:58:18 | 000,000,000 | -H-D | C] -- C:\Program Files\Uninstall Information
[2006/11/02 07:45:10 | 000,000,000 | ---D | C] -- C:\Windows\Setup
[2006/11/02 07:45:07 | 000,000,000 | ---D | C] -- C:\Windows\ServiceProfiles
[2006/11/02 07:45:01 | 000,000,000 | --SD | C] -- C:\Windows\System32\Microsoft
[2006/11/02 07:40:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\winrm
[2006/11/02 07:40:00 | 000,000,000 | ---D | C] -- C:\Windows\WindowsMobile
[2006/11/02 07:40:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\slmgr
[2006/11/02 07:40:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\UMDF\en-US
[2006/11/02 07:40:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\en-US
[2006/11/02 07:40:00 | 000,000,000 | ---D | C] -- C:\Windows\en-US
[2006/11/02 07:40:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\en
[2006/11/02 07:40:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\Branding
[2006/11/02 07:40:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\0409
[2006/11/02 07:39:59 | 000,000,000 | ---D | C] -- C:\Windows\System32\WCN
[2006/11/02 07:39:59 | 000,000,000 | ---D | C] -- C:\Windows\System32\Printing_Admin_Scripts
[2006/11/02 07:39:01 | 000,004,096 | ---- | C] (SCM Microsystems, Inc.) -- C:\Windows\System32\drivers\en-US\pscr.sys.mui
[2006/11/02 07:39:01 | 000,004,096 | ---- | C] (SCM Microsystems) -- C:\Windows\System32\drivers\en-US\SCR111.sys.mui
[2006/11/02 07:39:01 | 000,004,096 | ---- | C] (Gemplus) -- C:\Windows\System32\drivers\en-US\grserial.sys.mui
[2006/11/02 07:39:01 | 000,003,584 | ---- | C] (Gemplus) -- C:\Windows\System32\drivers\en-US\gpr400.sys.mui
[2006/11/02 07:39:01 | 000,003,072 | ---- | C] (SCM Microsystems, Inc.) -- C:\Windows\System32\drivers\en-US\stcusb.sys.mui
[2006/11/02 07:39:01 | 000,003,072 | ---- | C] (OMNIKEY) -- C:\Windows\System32\drivers\en-US\cxbp0wdm.sys.mui
[2006/11/02 07:39:01 | 000,003,072 | ---- | C] (OMNIKEY AG) -- C:\Windows\System32\drivers\en-US\cmbp0wdm.sys.mui
[2006/11/02 07:38:55 | 000,010,240 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\en-US\BrSerId.sys.mui
[2006/11/02 07:38:53 | 000,009,728 | ---- | C] (Agere Systems) -- C:\Windows\System32\drivers\en-US\ltmdmnt.sys.mui
[2006/11/02 07:38:53 | 000,005,632 | ---- | C] (Marvell) -- C:\Windows\System32\drivers\en-US\yk60x86.sys.mui
[2006/11/02 07:38:32 | 000,004,096 | ---- | C] (N-trig Innovative Technologies) -- C:\Windows\System32\drivers\en-US\ntrigdigi.sys.mui
[2006/11/02 07:38:27 | 000,002,560 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\en-US\BrParwdm.sys.mui
[2006/11/02 07:35:51 | 000,000,000 | ---D | C] -- C:\Windows\System32\XPSViewer
[2006/11/02 07:35:51 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Sidebar
[2006/11/02 07:35:51 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Photo Gallery
[2006/11/02 07:35:51 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Player
[2006/11/02 07:35:51 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Defender
[2006/11/02 07:35:51 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Collaboration
[2006/11/02 07:35:51 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Calendar
[2006/11/02 07:35:51 | 000,000,000 | ---D | C] -- C:\Windows\twain_32
[2006/11/02 07:35:51 | 000,000,000 | ---D | C] -- C:\Windows\System32\restore
[2006/11/02 07:35:51 | 000,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies
[2006/11/02 07:35:51 | 000,000,000 | ---D | C] -- C:\Windows\Performance
[2006/11/02 07:35:51 | 000,000,000 | ---D | C] -- C:\Program Files\MSN
[2006/11/02 07:35:51 | 000,000,000 | ---D | C] -- C:\Program Files\MSBuild
[2006/11/02 07:35:51 | 000,000,000 | ---D | C] -- C:\Program Files\Movie Maker
[2006/11/02 07:35:51 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Games
[2006/11/02 07:35:51 | 000,000,000 | ---D | C] -- C:\Windows\DigitalLocker
[2006/11/02 06:18:44 | 000,000,000 | ---D | C] -- C:\Windows\winsxs
[2006/11/02 06:18:44 | 000,000,000 | ---D | C] -- C:\Windows\Web
[2006/11/02 06:18:44 | 000,000,000 | ---D | C] -- C:\Windows\tracing
[2006/11/02 06:18:44 | 000,000,000 | ---D | C] -- C:\Windows\Temp
[2006/11/02 06:18:44 | 000,000,000 | ---D | C] -- C:\Windows\Tasks
[2006/11/02 06:18:44 | 000,000,000 | ---D | C] -- C:\Windows\tapi
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\zh-TW
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\zh-HK
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\zh-CN
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\winevt
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\wfp
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\WDI
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\wbem
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\uk-UA
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\tr-TR
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\th-TH
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\Tasks
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\sysprep
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\sv-SE
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\sr-Latn-CS
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\spool
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\Speech
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\SMI
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\SLUI
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\sl-SI
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\sk-SK
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\setup
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\ru-RU
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\ro-RO
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\RemInst
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\ras
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\pt-PT
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\pt-BR
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\pl-PL
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\oobe
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\nl-NL
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\networklist
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\NDF
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\nb-NO
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\MUI
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\Msdtc
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\migwiz
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\migration
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\manifeststore
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\lv-LV
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\lt-LT
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\LogFiles
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\licensing
[2006/11/02 06:18:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\ko-KR
[2006/11/02 06:18:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\ja-JP
[2006/11/02 06:18:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\it-IT
[2006/11/02 06:18:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\inetsrv
[2006/11/02 06:18:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\IME
[2006/11/02 06:18:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\icsxml
[2006/11/02 06:18:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\ias
[2006/11/02 06:18:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\hu-HU
[2006/11/02 06:18:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\hr-HR
[2006/11/02 06:18:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\he-IL
[2006/11/02 06:18:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\GroupPolicyUsers
[2006/11/02 06:18:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\GroupPolicy
[2006/11/02 06:18:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\fr-FR
[2006/11/02 06:18:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\fi-FI
[2006/11/02 06:18:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\et-EE
[2006/11/02 06:18:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\es-ES
[2006/11/02 06:18:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\en-US
[2006/11/02 06:18:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\el-GR
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\UMDF
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\System32
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\system
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\Speech
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\servicing
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\security
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\schemas
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\SchCache
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\Resources
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\rescache
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\Registration
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\Provisioning
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\PolicyDefinitions
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\etc
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\DriverStore
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\de-DE
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\da-DK
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\cs-CZ
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\config
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\com
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\CodeIntegrity
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\catroot2
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\catroot
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\Boot
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\bg-BG
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\ar-SA
[2006/11/02 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\AdvancedInstallers
[2006/11/02 06:18:35 | 000,000,000 | R-SD | C] -- C:\Windows\Media
[2006/11/02 06:18:35 | 000,000,000 | R--D | C] -- C:\Windows\Offline Web Pages
[2006/11/02 06:18:35 | 000,000,000 | ---D | C] -- C:\Windows\PLA
[2006/11/02 06:18:35 | 000,000,000 | ---D | C] -- C:\Windows\nap
[2006/11/02 06:18:35 | 000,000,000 | ---D | C] -- C:\Windows\MSAgent
[2006/11/02 06:18:35 | 000,000,000 | ---D | C] -- C:\Windows\ModemLogs
[2006/11/02 06:18:35 | 000,000,000 | ---D | C] -- C:\Windows\Microsoft.NET
[2006/11/02 06:18:35 | 000,000,000 | ---D | C] -- C:\Windows\Logs
[2006/11/02 06:18:35 | 000,000,000 | ---D | C] -- C:\Windows\LiveKernelReports
[2006/11/02 06:18:35 | 000,000,000 | ---D | C] -- C:\Windows\L2Schemas
[2006/11/02 06:18:34 | 000,000,000 | --SD | C] -- C:\Windows\Downloaded Program Files
[2006/11/02 06:18:34 | 000,000,000 | R-SD | C] -- C:\Windows\Fonts
[2006/11/02 06:18:34 | 000,000,000 | R-SD | C] -- C:\Windows\assembly
[2006/11/02 06:18:34 | 000,000,000 | ---D | C] -- C:\Windows
[2006/11/02 06:18:34 | 000,000,000 | ---D | C] -- C:\Windows\inf
[2006/11/02 06:18:34 | 000,000,000 | ---D | C] -- C:\Windows\IME
[2006/11/02 06:18:34 | 000,000,000 | ---D | C] -- C:\Windows\Help
[2006/11/02 06:18:34 | 000,000,000 | ---D | C] -- C:\Windows\Globalization
[2006/11/02 06:18:34 | 000,000,000 | ---D | C] -- C:\Windows\Cursors
[2006/11/02 06:18:34 | 000,000,000 | ---D | C] -- C:\Windows\Branding
[2006/11/02 06:18:34 | 000,000,000 | ---D | C] -- C:\Windows\Boot
[2006/11/02 06:18:34 | 000,000,000 | ---D | C] -- C:\Windows\AppPatch
[2006/11/02 06:18:33 | 000,000,000 | --SD | C] -- C:\ProgramData\Microsoft
[2006/11/02 06:18:33 | 000,000,000 | R--D | C] -- C:\Users
[2006/11/02 06:18:33 | 000,000,000 | R--D | C] -- C:\Program Files
[2006/11/02 06:18:33 | 000,000,000 | -H-D | C] -- C:\ProgramData
[2006/11/02 06:18:33 | 000,000,000 | ---D | C] -- C:\Program Files\Windows NT
[2006/11/02 06:18:33 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Mail
[2006/11/02 06:18:33 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\System
[2006/11/02 06:18:33 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SpeechEngines
[2006/11/02 06:18:33 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Services
[2006/11/02 06:18:33 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\microsoft shared
[2006/11/02 06:18:33 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Explorer
[2006/11/02 06:18:33 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files
[2006/11/02 06:17:19 | 000,000,000 | -HSD | C] -- C:\$Recycle.Bin
[2006/11/02 05:32:57 | 000,101,376 | ---- | C] (Infineon Technologies AG) -- C:\Windows\System32\ifxcardm.dll
[2006/11/02 05:32:57 | 000,079,872 | ---- | C] (Axalto, Inc.) -- C:\Windows\System32\axaltocm.dll
[2006/11/02 04:38:56 | 000,013,568 | ---- | C] (Brother Industries, Ltd.) -- C:\Windows\System32\drivers\BrFiltLo.sys
[2006/11/02 04:38:00 | 000,011,904 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\BrUsbSer.sys
[2006/11/02 04:37:31 | 000,012,160 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\BrUsbMdm.sys
[2006/11/02 04:37:24 | 000,005,248 | ---- | C] (Brother Industries, Ltd.) -- C:\Windows\System32\drivers\BrFiltUp.sys
[2006/11/02 04:36:51 | 000,062,336 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\BrSerWdm.sys
[2006/11/02 04:36:34 | 000,017,408 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\brcoinst.dll
[2006/11/02 04:22:06 | 000,071,808 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\BrSerId.sys
[2006/11/02 02:36:50 | 000,020,608 | ---- | C] (N-trig Innovative Technologies) -- C:\Windows\System32\drivers\ntrigdigi.sys
[2006/11/02 02:36:49 | 000,071,272 | ---- | C] (Adaptec, Inc.) -- C:\Windows\System32\drivers\djsvs.sys
[2006/11/02 02:36:48 | 000,235,112 | ---- | C] (ULi Electronics Inc.) -- C:\Windows\System32\drivers\uliahci.sys
[2006/11/02 02:36:48 | 000,112,232 | ---- | C] (VIA Technologies Inc.,Ltd) -- C:\Windows\System32\drivers\vsmraid.sys
[2006/11/02 02:36:48 | 000,071,784 | ---- | C] (Silicon Integrated Systems) -- C:\Windows\System32\drivers\sisraid4.sys
[2006/11/02 02:36:48 | 000,038,504 | ---- | C] (Silicon Integrated Systems Corp.) -- C:\Windows\System32\drivers\sisraid2.sys
[2006/11/02 02:36:45 | 000,035,944 | ---- | C] (Integrated Technology Express, Inc.) -- C:\Windows\System32\drivers\iteatapi.sys
[2006/11/02 02:36:44 | 000,316,520 | ---- | C] (Emulex) -- C:\Windows\System32\drivers\elxstor.sys
[2006/11/02 02:36:44 | 000,067,688 | ---- | C] (Adaptec, Inc.) -- C:\Windows\System32\drivers\arcsas.sys
[2006/11/02 02:36:44 | 000,067,688 | ---- | C] (Adaptec, Inc.) -- C:\Windows\System32\drivers\arc.sys
[2006/11/02 02:36:44 | 000,041,576 | ---- | C] (Intel Corp./ICP vortex GmbH) -- C:\Windows\System32\drivers\iirsp.sys
[2006/11/02 02:36:44 | 000,035,944 | ---- | C] (Integrated Technology Express, Inc.) -- C:\Windows\System32\drivers\iteraid.sys
[2006/11/02 02:36:43 | 000,420,968 | ---- | C] (Adaptec, Inc.) -- C:\Windows\System32\drivers\adp94xx.sys
[2006/11/02 02:36:43 | 000,297,576 | ---- | C] (Adaptec, Inc.) -- C:\Windows\System32\drivers\adpahci.sys
[2006/11/02 02:36:43 | 000,147,048 | ---- | C] (Adaptec, Inc.) -- C:\Windows\System32\drivers\adpu320.sys
[2006/11/02 02:36:43 | 000,098,408 | ---- | C] (Adaptec, Inc.) -- C:\Windows\System32\drivers\adpu160m.sys
[2006/10/27 16:14:22 | 000,179,896 | ---- | C] (Synaptics, Inc.) -- C:\Windows\System32\drivers\SynTP.sys
[2006/10/27 16:11:54 | 000,110,592 | ---- | C] (Synaptics, Inc.) -- C:\Windows\System32\SynTPCo4.dll
[2006/10/27 15:24:34 | 000,143,360 | ---- | C] (Synaptics, Inc.) -- C:\Windows\System32\SynTPAPI.dll
[2006/10/27 15:14:08 | 000,196,608 | ---- | C] (Synaptics, Inc.) -- C:\Windows\System32\SynCtrl.dll
[2006/10/27 15:13:24 | 000,163,840 | ---- | C] (Synaptics, Inc.) -- C:\Windows\System32\SynCOM.dll
[2006/09/12 10:03:20 | 000,009,216 | ---- | C] (Agere Systems) -- C:\Windows\System32\agrsmsvc.exe
[2006/09/12 09:34:46 | 000,013,312 | ---- | C] (Agere Systems) -- C:\Windows\System32\agrscoin.dll
[2006/08/31 08:53:00 | 001,161,152 | ---- | C] (Agere Systems) -- C:\Windows\System32\drivers\AGRSM.sys
[2006/07/28 18:25:26 | 000,032,768 | ---- | C] (COMPAL ELECTRONIC INC.) -- C:\Windows\System32\EBLib.DLL
[2006/07/28 18:25:26 | 000,019,456 | ---- | C] (COMPAL ELECTRONIC INC.) -- C:\Windows\System32\drivers\LPCFilter.sys
[2006/07/14 08:17:18 | 000,024,576 | ---- | C] (COMPAL ELECTRONIC INC.) -- C:\Windows\System32\TSBWLS.dll
[2006/07/06 15:44:00 | 000,168,448 | ---- | C] (Texas Instruments) -- C:\Windows\System32\drivers\tifm21.sys
[2005/01/07 07:34:59 | 000,549,888 | ---- | C] (OldTimer Tools) -- C:\Users\Bobbie\Desktop\OTL.exe
[2005/01/07 04:56:22 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2005/01/01 06:47:25 | 000,153,184 | ---- | C] (ALWIL Software) -- C:\Windows\System32\aswBoot.exe
[2005/01/01 06:47:25 | 000,038,848 | ---- | C] (ALWIL Software) -- C:\Windows\System32\avastSS.scr
[2005/01/01 06:46:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Alwil Software
[2005/01/01 06:46:28 | 000,000,000 | ---D | C] -- C:\Program Files\Alwil Software
[2005/01/01 05:07:04 | 000,086,016 | ---- | C] (MindVision Software) -- C:\Windows\unvise32.exe
[2005/01/01 05:07:01 | 000,069,120 | ---- | C] (Agere Systems) -- C:\Windows\agrsmdel.exe
[2005/01/01 05:07:01 | 000,000,000 | ---D | C] -- C:\ProgramData\TEMP
[2005/01/01 04:54:48 | 001,753,088 | ---- | C] (Exontrol Inc.) -- C:\Windows\System32\ExGrid.dll
[2005/01/01 04:54:45 | 000,614,400 | ---- | C] (Exontrol Inc.) -- C:\Windows\System32\ExButton.dll
[2005/01/01 04:54:43 | 000,602,112 | ---- | C] (Exontrol Inc.) -- C:\Windows\System32\ExMenu.dll
[2005/01/01 04:54:42 | 000,307,200 | ---- | C] (Exontrol Inc.) -- C:\Windows\System32\ExPMenu.dll
[2005/01/01 04:54:40 | 000,516,096 | ---- | C] (Exontrol Inc.) -- C:\Windows\System32\ExTab.dll
[2005/01/01 04:54:37 | 000,356,352 | ---- | C] (eSellerate Inc.) -- C:\Windows\System32\eSellerateEngine.dll
[2005/01/01 04:54:36 | 000,118,784 | ---- | C] (eSellerate Inc.) -- C:\Windows\System32\eWebControl.dll
[2005/01/01 04:54:35 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\eSellerate
[2005/01/01 04:54:03 | 000,000,000 | ---D | C] -- C:\Program Files\AnswersThatWork
[2005/01/01 02:38:42 | 000,000,000 | -HSD | C] -- C:\Users\Bobbie\Desktop\%USERPROFILE%
[2005/01/01 02:06:06 | 000,000,000 | ---D | C] -- C:\Users\Bobbie\AppData\Roaming\Malwarebytes
[2005/01/01 02:04:54 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2005/01/01 02:04:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2005/01/01 02:04:49 | 000,019,160 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2005/01/01 02:04:48 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2005/01/01 01:24:07 | 000,439,808 | ---- | C] (OldTimer Tools) -- C:\Users\Bobbie\Desktop\TFC.exe

========== Files - Modified Within 14 Days ==========

[2010/02/28 07:34:07 | 000,284,915 | ---- | M] () -- C:\Users\Bobbie\Desktop\gmer.zip
[2010/02/28 07:21:22 | 002,861,176 | -H-- | M] () -- C:\Users\Bobbie\AppData\Local\IconCache.db
[2010/02/28 07:17:33 | 000,016,384 | ---- | M] () -- C:\Windows\ocsetup_install_NetFx3.etl
[2010/02/27 22:41:05 | 000,000,924 | ---- | M] () -- C:\Users\Bobbie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk
[2010/02/27 22:40:48 | 000,000,744 | ---- | M] () -- C:\Users\Bobbie\Desktop\NTREGOPT.lnk
[2010/02/27 22:40:48 | 000,000,725 | ---- | M] () -- C:\Users\Bobbie\Desktop\ERUNT.lnk
[2010/02/27 19:47:24 | 000,083,288 | ---- | M] () -- C:\Users\Bobbie\AppData\Local\GDIPFONTCACHEV1.DAT
[2010/02/27 19:46:17 | 000,326,088 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2010/02/27 01:31:42 | 000,000,866 | ---- | M] () -- C:\Users\Public\Desktop\MyDefrag.lnk
[2010/02/27 01:00:30 | 000,001,851 | ---- | M] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2010/02/27 00:59:15 | 000,002,577 | ---- | M] () -- C:\Windows\System32\config.nt
[2010/02/13 12:23:44 | 001,028,608 | ---- | M] (J.C. Kessels) -- C:\Windows\System32\MyDefragScreenSaver v4.2.8.exe
[2010/02/11 13:53:57 | 000,038,848 | ---- | M] (ALWIL Software) -- C:\Windows\System32\avastSS.scr
[2010/02/11 13:53:36 | 000,153,184 | ---- | M] (ALWIL Software) -- C:\Windows\System32\aswBoot.exe
[2010/02/11 13:42:34 | 000,046,672 | ---- | M] (ALWIL Software) -- C:\Windows\System32\drivers\aswTdi.sys
[2010/02/11 13:42:13 | 000,162,512 | ---- | M] (ALWIL Software) -- C:\Windows\System32\drivers\aswSP.sys
[2010/02/11 13:39:01 | 000,023,376 | ---- | M] (ALWIL Software) -- C:\Windows\System32\drivers\aswRdr.sys
[2010/02/11 13:38:45 | 000,051,792 | ---- | M] (ALWIL Software) -- C:\Windows\System32\drivers\aswMonFlt.sys
[2010/02/11 13:38:23 | 000,019,024 | ---- | M] (ALWIL Software) -- C:\Windows\System32\drivers\aswFsBlk.sys
[2010/02/05 12:00:46 | 000,432,640 | ---- | M] (J.C. Kessels) -- C:\Windows\System32\MyDefragScreenSaver v4.2.8.scr
[2010/01/07 16:07:14 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010/01/07 16:07:04 | 000,019,160 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2010/01/01 22:22:22 | 000,057,667 | ---- | M] () -- C:\Windows\System32\ieuinit.inf
[2009/12/30 08:03:16 | 008,673,792 | ---- | M] () -- C:\ProgramData\atscie.msi
[2009/08/16 16:57:36 | 001,048,576 | -HS- | M] () -- C:\Users\Bobbie\NTUSER.DAT{a1cdcb73-7657-11de-9d43-001b3849d444}.TxR.2.regtrans-ms
[2009/08/16 16:57:36 | 001,048,576 | -HS- | M] () -- C:\Users\Bobbie\NTUSER.DAT{a1cdcb73-7657-11de-9d43-001b3849d444}.TxR.1.regtrans-ms
[2009/08/16 16:57:36 | 001,048,576 | -HS- | M] () -- C:\Users\Bobbie\NTUSER.DAT{a1cdcb73-7657-11de-9d43-001b3849d444}.TxR.0.regtrans-ms
[2009/08/16 16:57:36 | 000,065,536 | -HS- | M] () -- C:\Users\Bobbie\NTUSER.DAT{a1cdcb73-7657-11de-9d43-001b3849d444}.TxR.blf
[2009/08/10 20:29:03 | 000,016,384 | ---- | M] () -- C:\Users\Bobbie\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/08/03 15:07:42 | 000,403,816 | ---- | M] () -- C:\Windows\System32\OGACheckControl.dll
[2009/08/03 15:07:42 | 000,230,768 | ---- | M] () -- C:\Windows\System32\OGAEXEC.exe
[2009/07/21 19:37:07 | 000,524,288 | -HS- | M] () -- C:\Users\Bobbie\NTUSER.DAT{a1cdcb74-7657-11de-9d43-001b3849d444}.TMContainer00000000000000000002.regtrans-ms
[2009/07/21 19:37:06 | 000,524,288 | -HS- | M] () -- C:\Users\Bobbie\NTUSER.DAT{a1cdcb74-7657-11de-9d43-001b3849d444}.TMContainer00000000000000000001.regtrans-ms
[2009/07/21 19:37:06 | 000,065,536 | -HS- | M] () -- C:\Users\Bobbie\NTUSER.DAT{a1cdcb74-7657-11de-9d43-001b3849d444}.TM.blf
[2009/07/11 12:25:14 | 001,657,350 | ---- | M] () -- C:\Windows\System32\wlan.tmf
[2009/06/30 17:22:36 | 000,001,898 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader 8.lnk
[2009/06/09 21:45:12 | 000,001,737 | ---- | M] () -- C:\Users\Public\Desktop\QuickTime Player.lnk
[2009/04/16 20:24:16 | 000,000,954 | ---- | M] () -- C:\Users\Bobbie\Desktop\Launch Internet Explorer Browser.lnk
[2009/04/13 19:15:42 | 000,001,820 | ---- | M] () -- C:\Windows\System32\rasctrnm.h
[2009/04/03 14:09:22 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\UMDF\Msft_User_WpdFs_01_00_00.Wdf
[2009/03/31 01:09:33 | 000,524,288 | -HS- | M] () -- C:\Users\Bobbie\NTUSER.DAT{d8932e6d-6a6f-11db-b6ab-a038f15a5785}.TMContainer00000000000000000002.regtrans-ms
[2009/03/31 01:09:33 | 000,524,288 | -HS- | M] () -- C:\Users\Bobbie\NTUSER.DAT{d8932e6d-6a6f-11db-b6ab-a038f15a5785}.TMContainer00000000000000000001.regtrans-ms
[2009/03/31 01:09:33 | 000,065,536 | -HS- | M] () -- C:\Users\Bobbie\NTUSER.DAT{d8932e6d-6a6f-11db-b6ab-a038f15a5785}.TM.blf
[2009/03/31 00:56:58 | 000,000,020 | -HS- | M] () -- C:\Users\Bobbie\ntuser.ini
[2009/03/31 00:45:54 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_SynTP_01000.Wdf
[2009/03/31 00:41:14 | 000,014,604 | ---- | M] () -- C:\Windows\System32\results.xml
[2009/03/31 00:27:09 | 000,002,163 | ---- | M] () -- C:\Users\Public\Desktop\Microsoft Office - 60 Day Trial.lnk
[2007/06/08 13:53:54 | 001,753,088 | ---- | M] (Exontrol Inc.) -- C:\Windows\System32\ExGrid.dll
[2007/06/05 10:20:06 | 000,602,112 | ---- | M] (Exontrol Inc.) -- C:\Windows\System32\ExMenu.dll
[2007/06/05 10:19:44 | 000,516,096 | ---- | M] (Exontrol Inc.) -- C:\Windows\System32\ExTab.dll
[2007/05/23 20:22:26 | 000,002,171 | ---- | M] () -- C:\Users\Public\Desktop\Play Games.lnk
[2007/05/23 20:14:19 | 000,262,144 | ---- | M] () -- C:\ProgramData\ntuser.dat
[2007/05/23 20:14:11 | 000,524,288 | -HS- | M] () -- C:\ProgramData\ntuser.dat{232a556b-098b-11dc-b28e-0016d42a468b}.TMContainer00000000000000000002.regtrans-ms
[2007/05/23 20:14:11 | 000,524,288 | -HS- | M] () -- C:\ProgramData\ntuser.dat{232a556b-098b-11dc-b28e-0016d42a468b}.TMContainer00000000000000000001.regtrans-ms
[2007/05/23 20:14:11 | 000,065,536 | -HS- | M] () -- C:\ProgramData\ntuser.dat{232a556b-098b-11dc-b28e-0016d42a468b}.TM.blf
[2007/05/23 20:14:09 | 000,524,288 | -HS- | M] () -- C:\ProgramData\ntuser.dat{232a555b-098b-11dc-b28e-0016d42a468b}.TMContainer00000000000000000002.regtrans-ms
[2007/05/23 20:14:09 | 000,524,288 | -HS- | M] () -- C:\ProgramData\ntuser.dat{232a555b-098b-11dc-b28e-0016d42a468b}.TMContainer00000000000000000001.regtrans-ms
[2007/05/23 20:14:09 | 000,065,536 | -HS- | M] () -- C:\ProgramData\ntuser.dat{232a555b-098b-11dc-b28e-0016d42a468b}.TM.blf
[2007/05/23 19:56:28 | 000,000,002 | ---- | M] () -- C:\Windows\System32\drivers\1179_Toshiba_Satellite A130-A135_26244.MRK
[2007/05/23 19:50:18 | 000,001,447 | ---- | M] () -- C:\Users\Public\Desktop\Software Upgrades.lnk
[2007/05/23 19:06:18 | 000,041,176 | ---- | M] () -- C:\Windows\System32\license.rtf
[2007/04/11 18:52:22 | 000,001,593 | ---- | M] () -- C:\Users\Public\Desktop\CNN.lnk
[2007/04/03 16:51:56 | 000,614,400 | ---- | M] (Exontrol Inc.) -- C:\Windows\System32\ExButton.dll
[2007/04/03 16:51:24 | 000,307,200 | ---- | M] (Exontrol Inc.) -- C:\Windows\System32\ExPMenu.dll
[2007/03/03 05:20:38 | 000,027,864 | ---- | M] () -- C:\Windows\System32\athrext.cat
[2007/02/28 20:04:58 | 000,694,784 | ---- | M] (Atheros Communications, Inc.) -- C:\Windows\System32\drivers\athr.sys
[2007/02/28 20:04:58 | 000,694,784 | ---- | M] (Atheros Communications, Inc.) -- C:\Windows\System32\athr.sys
[2007/02/28 20:04:06 | 000,063,717 | ---- | M] () -- C:\Windows\System32\netathr.inf
[2006/11/29 11:24:58 | 000,021,696 | ---- | M] () -- C:\Windows\System32\iglhxs32.vp
[2006/11/29 00:12:18 | 000,204,800 | ---- | M] () -- C:\Windows\System32\igfxCoIn_v1132.dll
[2006/11/28 22:17:12 | 000,061,440 | ---- | M] () -- C:\Windows\System32\igfxTMM.dll
[2006/11/28 22:14:48 | 000,053,248 | ---- | M] () -- C:\Windows\System32\oemdspif.dll
[2006/11/28 22:12:28 | 000,077,824 | ---- | M] () -- C:\Windows\System32\hccutils.dll
[2006/11/24 09:48:44 | 000,036,864 | ---- | M] () -- C:\Windows\System32\HWS_Ctrl.dll
[2006/11/23 17:46:56 | 000,001,808 | ---- | M] () -- C:\Windows\System32\subst.inf
[2006/11/22 17:26:52 | 000,000,176 | ---- | M] () -- C:\Windows\System32\drivers\RTHDAEQ1.dat
[2006/11/22 17:26:48 | 000,000,176 | ---- | M] () -- C:\Windows\System32\drivers\RTHDAEQ0.dat
[2006/11/21 12:53:04 | 000,001,742 | ---- | M] () -- C:\Users\Public\Desktop\eBay - The World's Online Marketplace.lnk
[2006/11/16 20:11:15 | 000,006,894 | ---- | M] () -- C:\Windows\System32\OEMLOGO.BMP
[2006/11/09 12:57:52 | 003,784,704 | ---- | M] (Realtek Semiconductor) -- C:\Windows\RtHDVCpl.exe
[2006/11/04 11:35:50 | 000,059,392 | ---- | M] (Realtek Corporation) -- C:\Windows\System32\drivers\Rtlh86.sys
[2006/11/02 08:08:31 | 000,049,152 | ---- | M] () -- C:\Windows\System32\umstartup.etl
[2006/11/02 07:54:16 | 000,033,792 | ---- | M] () -- C:\Windows\System32\umstartup000.etl
[2006/11/02 07:53:22 | 000,001,741 | ---- | M] () -- C:\Windows\System32\migwiz.lnk
[2006/11/02 07:39:01 | 000,004,096 | ---- | M] (SCM Microsystems, Inc.) -- C:\Windows\System32\drivers\en-US\pscr.sys.mui
[2006/11/02 07:39:01 | 000,004,096 | ---- | M] (SCM Microsystems) -- C:\Windows\System32\drivers\en-US\SCR111.sys.mui
[2006/11/02 07:39:01 | 000,004,096 | ---- | M] (Gemplus) -- C:\Windows\System32\drivers\en-US\grserial.sys.mui
[2006/11/02 07:39:01 | 000,003,584 | ---- | M] (Gemplus) -- C:\Windows\System32\drivers\en-US\gpr400.sys.mui
[2006/11/02 07:39:01 | 000,003,072 | ---- | M] (SCM Microsystems, Inc.) -- C:\Windows\System32\drivers\en-US\stcusb.sys.mui
[2006/11/02 07:39:01 | 000,003,072 | ---- | M] (OMNIKEY) -- C:\Windows\System32\drivers\en-US\cxbp0wdm.sys.mui
[2006/11/02 07:39:01 | 000,003,072 | ---- | M] (OMNIKEY AG) -- C:\Windows\System32\drivers\en-US\cmbp0wdm.sys.mui
[2006/11/02 07:38:55 | 000,010,240 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\en-US\BrSerId.sys.mui
[2006/11/02 07:38:53 | 000,009,728 | ---- | M] (Agere Systems) -- C:\Windows\System32\drivers\en-US\ltmdmnt.sys.mui
[2006/11/02 07:38:53 | 000,005,632 | ---- | M] (Marvell) -- C:\Windows\System32\drivers\en-US\yk60x86.sys.mui
[2006/11/02 07:38:32 | 000,004,096 | ---- | M] (N-trig Innovative Technologies) -- C:\Windows\System32\drivers\en-US\ntrigdigi.sys.mui
[2006/11/02 07:38:27 | 000,002,560 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\en-US\BrParwdm.sys.mui
[2006/11/02 07:34:54 | 000,316,640 | ---- | M] () -- C:\Windows\WMSysPr9.prx
[2006/11/02 07:34:06 | 000,093,702 | ---- | M] () -- C:\Windows\System32\SubRange.uce
[2006/11/02 07:34:06 | 000,060,458 | ---- | M] () -- C:\Windows\System32\ideograf.uce
[2006/11/02 07:34:06 | 000,024,006 | ---- | M] () -- C:\Windows\System32\gb2312.uce
[2006/11/02 07:34:06 | 000,022,984 | ---- | M] () -- C:\Windows\System32\bopomofo.uce
[2006/11/02 07:34:06 | 000,016,740 | ---- | M] () -- C:\Windows\System32\ShiftJIS.uce
[2006/11/02 07:34:06 | 000,012,876 | ---- | M] () -- C:\Windows\System32\korean.uce
[2006/11/02 07:34:06 | 000,008,484 | ---- | M] () -- C:\Windows\System32\kanji_2.uce
[2006/11/02 07:34:06 | 000,006,948 | ---- | M] () -- C:\Windows\System32\kanji_1.uce
[2006/11/02 07:33:46 | 000,144,909 | ---- | M] () -- C:\Windows\System32\fsmgmt.msc
[2006/11/02 07:33:45 | 000,014,827 | ---- | M] () -- C:\Windows\System32\gatherWirelessInfo.vbs
[2006/11/02 07:33:45 | 000,000,933 | ---- | M] () -- C:\Windows\System32\gatherWirelessInfo.xslt
[2006/11/02 04:53:57 | 000,438,840 | RHS- | M] () -- C:\bootmgr
[2006/11/02 04:51:38 | 000,420,968 | ---- | M] (Adaptec, Inc.) -- C:\Windows\System32\drivers\adp94xx.sys
[2006/11/02 04:51:34 | 000,316,520 | ---- | M] (Emulex) -- C:\Windows\System32\drivers\elxstor.sys
[2006/11/02 04:51:32 | 000,297,576 | ---- | M] (Adaptec, Inc.) -- C:\Windows\System32\drivers\adpahci.sys
[2006/11/02 04:51:25 | 000,235,112 | ---- | M] (ULi Electronics Inc.) -- C:\Windows\System32\drivers\uliahci.sys
[2006/11/02 04:51:00 | 000,147,048 | ---- | M] (Adaptec, Inc.) -- C:\Windows\System32\drivers\adpu320.sys
[2006/11/02 04:50:41 | 000,112,232 | ---- | M] (VIA Technologies Inc.,Ltd) -- C:\Windows\System32\drivers\vsmraid.sys
[2006/11/02 04:50:35 | 000,098,408 | ---- | M] (Adaptec, Inc.) -- C:\Windows\System32\drivers\adpu160m.sys
[2006/11/02 04:50:17 | 000,041,576 | ---- | M] (Intel Corp./ICP vortex GmbH) -- C:\Windows\System32\drivers\iirsp.sys
[2006/11/02 04:50:16 | 000,071,784 | ---- | M] (Silicon Integrated Systems) -- C:\Windows\System32\drivers\sisraid4.sys
[2006/11/02 04:50:11 | 000,071,272 | ---- | M] (Adaptec, Inc.) -- C:\Windows\System32\drivers\djsvs.sys
[2006/11/02 04:50:10 | 000,067,688 | ---- | M] (Adaptec, Inc.) -- C:\Windows\System32\drivers\arcsas.sys
[2006/11/02 04:50:10 | 000,038,504 | ---- | M] (Silicon Integrated Systems Corp.) -- C:\Windows\System32\drivers\sisraid2.sys
[2006/11/02 04:50:09 | 000,067,688 | ---- | M] (Adaptec, Inc.) -- C:\Windows\System32\drivers\arc.sys
[2006/11/02 04:50:09 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.) -- C:\Windows\System32\drivers\iteraid.sys
[2006/11/02 04:50:07 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.) -- C:\Windows\System32\drivers\iteatapi.sys
[2006/11/02 04:46:09 | 000,364,544 | ---- | M] () -- C:\Windows\System32\msjetoledb40.dll
[2006/11/02 04:46:05 | 000,101,376 | ---- | M] (Infineon Technologies AG) -- C:\Windows\System32\ifxcardm.dll
[2006/11/02 04:46:02 | 000,079,872 | ---- | M] (Axalto, Inc.) -- C:\Windows\System32\axaltocm.dll
[2006/11/02 04:46:02 | 000,017,408 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\System32\brcoinst.dll
[2006/11/02 04:20:21 | 000,287,440 | ---- | M] () -- C:\Windows\System32\perfi009.dat
[2006/11/02 04:20:19 | 000,030,674 | ---- | M] () -- C:\Windows\System32\perfd009.dat
[2006/11/02 03:58:10 | 000,115,173 | ---- | M] () -- C:\Windows\System32\WFP.TMF
[2006/11/02 03:56:05 | 000,246,828 | ---- | M] () -- C:\Windows\System32\dot3.tmf
[2006/11/02 03:55:33 | 000,223,526 | ---- | M] () -- C:\Windows\System32\onex.tmf
[2006/11/02 03:25:24 | 000,071,808 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\BrSerId.sys
[2006/11/02 03:24:47 | 000,011,904 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\BrUsbSer.sys
[2006/11/02 03:24:46 | 000,005,248 | ---- | M] (Brother Industries, Ltd.) -- C:\Windows\System32\drivers\BrFiltUp.sys
[2006/11/02 03:24:45 | 000,013,568 | ---- | M] (Brother Industries, Ltd.) -- C:\Windows\System32\drivers\BrFiltLo.sys
[2006/11/02 03:24:44 | 000,062,336 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\BrSerWdm.sys
[2006/11/02 03:24:44 | 000,012,160 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\BrUsbMdm.sys
[2006/11/02 03:20:17 | 000,004,453 | ---- | M] () -- C:\Windows\System32\odbcconf.rsp
[2006/11/02 02:46:49 | 000,043,131 | ---- | M] () -- C:\Windows\mib.bin
[2006/11/02 02:36:50 | 000,020,608 | ---- | M] (N-trig Innovative Technologies) -- C:\Windows\System32\drivers\ntrigdigi.sys
[2006/11/02 02:10:37 | 000,053,536 | ---- | M] () -- C:\Windows\System32\dosx.exe
[2006/11/02 02:10:02 | 000,000,718 | ---- | M] () -- C:\Windows\System32\mscdexnt.exe
[2006/11/02 02:10:00 | 000,002,842 | ---- | M] () -- C:\Windows\System32\redir.exe
[2006/11/02 02:09:59 | 000,019,694 | ---- | M] () -- C:\Windows\System32\GRAPHICS.COM
[2006/11/02 02:09:59 | 000,000,882 | ---- | M] () -- C:\Windows\System32\share.exe
[2006/11/02 02:09:59 | 000,000,882 | ---- | M] () -- C:\Windows\System32\fastopen.exe
[2006/11/02 02:09:57 | 000,014,710 | ---- | M] () -- C:\Windows\System32\KB16.COM
[2006/11/02 02:09:56 | 000,007,052 | ---- | M] () -- C:\Windows\System32\nlsfunc.exe
[2006/11/02 02:09:55 | 000,039,274 | ---- | M] () -- C:\Windows\System32\mem.exe
[2006/11/02 02:09:55 | 000,001,131 | ---- | M] () -- C:\Windows\System32\LOADFIX.COM
[2006/11/02 02:09:53 | 000,011,753 | ---- | M] () -- C:\Windows\System32\setver.exe
[2006/11/02 02:09:52 | 000,020,634 | ---- | M] () -- C:\Windows\System32\debug.exe
[2006/11/02 02:09:51 | 000,008,424 | ---- | M] () -- C:\Windows\System32\exe2bin.exe
[2006/11/02 02:09:50 | 000,012,642 | ---- | M] () -- C:\Windows\System32\edlin.exe
[2006/11/02 02:09:49 | 000,050,648 | ---- | M] () -- C:\Windows\System32\COMMAND.COM
[2006/11/02 02:09:49 | 000,012,498 | ---- | M] () -- C:\Windows\System32\append.exe
[2006/11/02 02:09:45 | 000,027,097 | ---- | M] () -- C:\Windows\System32\country.sys
[2006/11/02 02:09:44 | 000,042,809 | ---- | M] () -- C:\Windows\System32\KEY01.SYS
[2006/11/02 02:09:44 | 000,042,537 | ---- | M] () -- C:\Windows\System32\KEYBOARD.SYS
[2006/11/02 02:09:42 | 000,009,029 | ---- | M] () -- C:\Windows\System32\ANSI.SYS
[2006/11/02 02:09:41 | 000,004,768 | ---- | M] () -- C:\Windows\System32\HIMEM.SYS
[2006/11/02 02:09:40 | 000,029,274 | ---- | M] () -- C:\Windows\System32\NTDOS412.SYS
[2006/11/02 02:09:38 | 000,029,370 | ---- | M] () -- C:\Windows\System32\NTDOS411.SYS
[2006/11/02 02:09:35 | 000,029,146 | ---- | M] () -- C:\Windows\System32\NTDOS404.SYS
[2006/11/02 02:09:31 | 000,029,146 | ---- | M] () -- C:\Windows\System32\NTDOS804.SYS
[2006/11/02 02:09:29 | 000,027,866 | ---- | M] () -- C:\Windows\System32\NTDOS.SYS
[2006/11/02 02:09:26 | 000,035,536 | ---- | M] () -- C:\Windows\System32\NTIO412.SYS
[2006/11/02 02:09:24 | 000,035,776 | ---- | M] () -- C:\Windows\System32\NTIO411.SYS
[2006/11/02 02:09:23 | 000,034,672 | ---- | M] () -- C:\Windows\System32\NTIO404.SYS
[2006/11/02 02:09:22 | 000,034,672 | ---- | M] () -- C:\Windows\System32\NTIO804.SYS
[2006/11/02 02:09:20 | 000,033,952 | ---- | M] () -- C:\Windows\System32\NTIO.SYS
[2006/11/02 02:08:47 | 000,000,610 | ---- | M] () -- C:\Windows\System32\WdsUnattendTemplate.xml
[2006/11/02 01:29:53 | 000,018,271 | ---- | M] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2006/11/02 01:29:52 | 000,099,999 | ---- | M] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2006/11/02 01:24:22 | 003,661,664 | ---- | M] () -- C:\Windows\System32\locale.nls
[2006/10/27 16:14:22 | 000,179,896 | ---- | M] (Synaptics, Inc.) -- C:\Windows\System32\drivers\SynTP.sys
[2006/10/27 16:11:54 | 000,110,592 | ---- | M] (Synaptics, Inc.) -- C:\Windows\System32\SynTPCo4.dll
[2006/10/27 15:24:34 | 000,143,360 | ---- | M] (Synaptics, Inc.) -- C:\Windows\System32\SynTPAPI.dll
[2006/10/27 15:14:08 | 000,196,608 | ---- | M] (Synaptics, Inc.) -- C:\Windows\System32\SynCtrl.dll
[2006/10/27 15:13:24 | 000,163,840 | ---- | M] (Synaptics, Inc.) -- C:\Windows\System32\SynCOM.dll
[2006/10/19 18:50:32 | 000,010,150 | ---- | M] () -- C:\Windows\System32\tosmreg.ini
[2006/10/18 21:10:57 | 000,002,096 | ---- | M] () -- C:\Windows\System32\iglhxo32.vp
[2006/10/18 21:10:57 | 000,002,096 | ---- | M] () -- C:\Windows\System32\iglhxc32.vp
[2006/10/18 21:10:54 | 000,177,772 | ---- | M] () -- C:\Windows\System32\systemsf.ebd
[2006/10/09 21:08:40 | 000,028,303 | ---- | M] () -- C:\Windows\System32\RacUR.xml
[2006/10/03 20:45:36 | 000,061,618 | ---- | M] () -- C:\Windows\System32\slmgr.vbs
[2006/09/28 20:31:24 | 000,655,842 | ---- | M] () -- C:\Windows\System32\iglhxa32.cpa
[2006/09/28 20:31:24 | 000,000,929 | ---- | M] () -- C:\Windows\System32\iglhxa32.vp
[2006/09/19 06:47:12 | 000,055,858 | ---- | M] () -- C:\Windows\System32\tcpmon.ini
[2006/09/18 16:49:00 | 000,001,041 | ---- | M] () -- C:\Windows\System32\tcpbidi.xml
[2006/09/18 16:48:59 | 000,003,577 | ---- | M] () -- C:\Windows\System32\sysprtj.sep
[2006/09/18 16:48:59 | 000,003,214 | ---- | M] () -- C:\Windows\System32\sysprint.sep
[2006/09/18 16:48:59 | 000,000,051 | ---- | M] () -- C:\Windows\System32\pscript.sep
[2006/09/18 16:48:58 | 000,000,114 | ---- | M] () -- C:\Windows\System32\pcl.sep
[2006/09/18 16:47:31 | 000,066,384 | ---- | M] () -- C:\Windows\System32\normnfkc.nls
[2006/09/18 16:47:31 | 000,060,294 | ---- | M] () -- C:\Windows\System32\normnfkd.nls
[2006/09/18 16:47:31 | 000,059,342 | ---- | M] () -- C:\Windows\System32\normidna.nls
[2006/09/18 16:47:31 | 000,045,794 | ---- | M] () -- C:\Windows\System32\normnfc.nls
[2006/09/18 16:47:31 | 000,039,284 | ---- | M] () -- C:\Windows\System32\normnfd.nls
[2006/09/18 16:47:29 | 000,008,838 | ---- | M] () -- C:\Windows\System32\l_intl.nls
[2006/09/18 16:47:28 | 000,180,770 | ---- | M] () -- C:\Windows\System32\C_20932.NLS
[2006/09/18 16:47:28 | 000,177,698 | ---- | M] () -- C:\Windows\System32\C_20949.NLS
[2006/09/18 16:47:28 | 000,173,602 | ---- | M] () -- C:\Windows\System32\C_20936.NLS
[2006/09/18 16:47:27 | 000,195,618 | ---- | M] () -- C:\Windows\System32\C_10002.NLS
[2006/09/18 16:47:27 | 000,177,698 | ---- | M] () -- C:\Windows\System32\C_10003.NLS
[2006/09/18 16:47:27 | 000,173,602 | ---- | M] () -- C:\Windows\System32\C_10008.NLS
[2006/09/18 16:47:27 | 000,162,850 | ---- | M] () -- C:\Windows\System32\C_10001.NLS
[2006/09/18 16:47:27 | 000,066,594 | ---- | M] () -- C:\Windows\System32\C_869.NLS
[2006/09/18 16:47:27 | 000,066,594 | ---- | M] () -- C:\Windows\System32\C_866.NLS
[2006/09/18 16:47:27 | 000,066,594 | ---- | M] () -- C:\Windows\System32\C_865.NLS
[2006/09/18 16:47:27 | 000,066,594 | ---- | M] () -- C:\Windows\System32\C_864.NLS
[2006/09/18 16:47:27 | 000,066,594 | ---- | M] () -- C:\Windows\System32\C_863.NLS
[2006/09/18 16:47:27 | 000,066,594 | ---- | M] () -- C:\Windows\System32\C_862.NLS
[2006/09/18 16:47:27 | 000,066,594 | ---- | M] () -- C:\Windows\System32\C_861.NLS
[2006/09/18 16:47:27 | 000,066,594 | ---- | M] () -- C:\Windows\System32\C_860.NLS
[2006/09/18 16:47:27 | 000,066,594 | ---- | M] () -- C:\Windows\System32\C_858.NLS
[2006/09/18 16:47:27 | 000,066,594 | ---- | M] () -- C:\Windows\System32\C_857.NLS
[2006/09/18 16:47:27 | 000,066,594 | ---- | M] () -- C:\Windows\System32\C_855.NLS
[2006/09/18 16:47:27 | 000,066,594 | ---- | M] () -- C:\Windows\System32\C_852.NLS
[2006/09/18 16:47:27 | 000,066,594 | ---- | M] () -- C:\Windows\System32\C_850.NLS
[2006/09/18 16:47:27 | 000,066,594 | ---- | M] () -- C:\Windows\System32\C_775.NLS
[2006/09/18 16:47:27 | 000,066,594 | ---- | M] () -- C:\Windows\System32\C_737.NLS
[2006/09/18 16:47:27 | 000,066,594 | ---- | M] () -- C:\Windows\System32\C_437.NLS
[2006/09/18 16:47:27 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_28605.NLS
[2006/09/18 16:47:27 | 000,066,082 | ---- | M] () -- C:\Windows\System32\c_28603.nls
[2006/09/18 16:47:27 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_28599.NLS
[2006/09/18 16:47:27 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_28598.NLS
[2006/09/18 16:47:27 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_28597.NLS
[2006/09/18 16:47:27 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_28596.NLS
[2006/09/18 16:47:27 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_28595.NLS
[2006/09/18 16:47:27 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_28594.NLS
[2006/09/18 16:47:27 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_28593.NLS
[2006/09/18 16:47:27 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_28592.NLS
[2006/09/18 16:47:27 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_28591.NLS
[2006/09/18 16:47:27 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_20269.NLS
[2006/09/18 16:47:27 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_10082.NLS
[2006/09/18 16:47:27 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_10081.NLS
[2006/09/18 16:47:27 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_10079.NLS
[2006/09/18 16:47:27 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_10029.NLS
[2006/09/18 16:47:27 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_10021.NLS
[2006/09/18 16:47:27 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_10017.NLS
[2006/09/18 16:47:27 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_10010.NLS
[2006/09/18 16:47:27 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_10007.NLS
[2006/09/18 16:47:27 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_10006.NLS
[2006/09/18 16:47:27 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_10005.NLS
[2006/09/18 16:47:27 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_10004.NLS
[2006/09/18 16:47:27 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_10000.NLS
[2006/09/18 16:47:26 | 000,196,642 | ---- | M] () -- C:\Windows\System32\C_950.NLS
[2006/09/18 16:47:26 | 000,196,642 | ---- | M] () -- C:\Windows\System32\C_949.NLS
[2006/09/18 16:47:26 | 000,189,986 | ---- | M] () -- C:\Windows\System32\C_1361.NLS
[2006/09/18 16:47:26 | 000,187,938 | ---- | M] () -- C:\Windows\System32\C_20005.NLS
[2006/09/18 16:47:26 | 000,186,402 | ---- | M] () -- C:\Windows\System32\C_20001.NLS
[2006/09/18 16:47:26 | 000,185,378 | ---- | M] () -- C:\Windows\System32\C_20003.NLS
[2006/09/18 16:47:26 | 000,180,258 | ---- | M] () -- C:\Windows\System32\C_20004.NLS
[2006/09/18 16:47:26 | 000,180,258 | ---- | M] () -- C:\Windows\System32\C_20000.NLS
[2006/09/18 16:47:26 | 000,173,602 | ---- | M] () -- C:\Windows\System32\C_20002.NLS
[2006/09/18 16:47:26 | 000,139,810 | ---- | M] () -- C:\Windows\System32\C_20261.NLS
[2006/09/18 16:47:26 | 000,066,594 | ---- | M] () -- C:\Windows\System32\C_720.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_875.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_870.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_708.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_500.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_21866.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_21027.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_21025.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_20924.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_20905.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_20880.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_20871.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_20866.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_20838.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_20833.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_20424.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_20423.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_20420.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_20297.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_20290.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_20285.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_20284.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_20280.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_20278.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_20277.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_20273.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_20127.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_20108.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_20107.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_20106.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_20105.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_1149.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_1148.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_1147.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_1146.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_1145.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_1144.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_1143.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_1142.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_1141.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_1140.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_1047.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_1026.NLS
[2006/09/18 16:47:26 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_037.NLS
[2006/09/18 16:47:25 | 000,196,642 | ---- | M] () -- C:\Windows\System32\C_936.NLS
[2006/09/18 16:47:25 | 000,162,850 | ---- | M] () -- C:\Windows\System32\C_932.NLS
[2006/09/18 16:47:25 | 000,066,594 | ---- | M] () -- C:\Windows\System32\C_874.NLS
[2006/09/18 16:47:25 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_1258.NLS
[2006/09/18 16:47:25 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_1257.NLS
[2006/09/18 16:47:25 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_1256.NLS
[2006/09/18 16:47:25 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_1255.NLS
[2006/09/18 16:47:25 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_1254.NLS
[2006/09/18 16:47:25 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_1253.NLS
[2006/09/18 16:47:25 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_1252.NLS
[2006/09/18 16:47:25 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_1251.NLS
[2006/09/18 16:47:25 | 000,066,082 | ---- | M] () -- C:\Windows\System32\C_1250.NLS
[2006/09/18 16:46:07 | 000,000,125 | ---- | M] () -- C:\Windows\System32\RacUREx.xml
[2006/09/18 16:45:54 | 000,145,640 | ---- | M] () -- C:\Windows\System32\devmgmt.msc
[2006/09/18 16:44:13 | 000,144,862 | ---- | M] () -- C:\Windows\System32\tpm.msc
[2006/09/18 16:43:59 | 000,028,420 | ---- | M] () -- C:\Windows\System32\bios1.rom
[2006/09/18 16:43:59 | 000,018,832 | ---- | M] () -- C:\Windows\System32\v7vga.rom
[2006/09/18 16:43:59 | 000,008,191 | ---- | M] () -- C:\Windows\System32\bios4.rom
[2006/09/18 16:43:58 | 000,000,707 | ---- | M] () -- C:\Windows\_default.pif
[2006/09/18 16:43:44 | 000,021,232 | ---- | M] () -- C:\Windows\System32\graphics.pro
[2006/09/18 16:43:40 | 000,069,886 | ---- | M] () -- C:\Windows\System32\edit.com
[2006/09/18 16:43:40 | 000,010,790 | ---- | M] () -- C:\Windows\System32\EDIT.HLP
[2006/09/18 16:43:37 | 000,013,312 | ---- | M] () -- C:\Windows\System32\win87em.dll
[2006/09/18 16:43:36 | 000,001,688 | ---- | M] () -- C:\Windows\System32\autoexec.nt
[2006/09/18 16:43:30 | 000,000,843 | ---- | M] () -- C:\Windows\System32\onlinesetup.cmd
[2006/09/18 16:43:14 | 000,000,003 | ---- | M] () -- C:\Windows\System32\drivers\MsftWdf_Kernel_01005_Inbox_Critical.Wdf
[2006/09/18 16:43:11 | 000,002,650 | ---- | M] () -- C:\Windows\System32\xwizard.dtd
[2006/09/18 16:41:30 | 000,017,244 | ---- | M] () -- C:\Windows\System32\drivers\etc\services
[2006/09/18 16:41:30 | 000,003,683 | ---- | M] () -- C:\Windows\System32\drivers\etc\lmhosts.sam
[2006/09/18 16:41:30 | 000,001,358 | ---- | M] () -- C:\Windows\System32\drivers\etc\protocol
[2006/09/18 16:41:30 | 000,000,761 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts
[2006/09/18 16:41:30 | 000,000,407 | ---- | M] () -- C:\Windows\System32\drivers\etc\networks
[2006/09/18 16:40:16 | 000,149,389 | ---- | M] () -- C:\Windows\System32\winrm.vbs
[2006/09/18 16:40:16 | 000,002,178 | ---- | M] () -- C:\Windows\System32\WsmTxt.xsl
[2006/09/18 16:40:16 | 000,001,559 | ---- | M] () -- C:\Windows\System32\WsmPty.xsl
[2006/09/18 16:40:16 | 000,000,035 | ---- | M] () -- C:\Windows\System32\winrm.cmd
[2006/09/18 16:39:30 | 000,215,943 | ---- | M] () -- C:\Windows\System32\dssec.dat
[2006/09/18 16:39:21 | 000,062,599 | ---- | M] () -- C:\Windows\System32\WmiMgmt.msc
[2006/09/18 16:38:24 | 000,211,938 | ---- | M] () -- C:\Windows\System32\lcphrase.tbl
[2006/09/18 16:38:24 | 000,024,114 | ---- | M] () -- C:\Windows\System32\lcptr.tbl
[2006/09/18 16:37:50 | 000,145,059 | ---- | M] () -- C:\Windows\System32\taskschd.msc
[2006/09/18 16:37:43 | 000,145,127 | ---- | M] () -- C:\Windows\System32\eventvwr.msc
[2006/09/18 16:37:26 | 000,000,741 | ---- | M] () -- C:\Windows\System32\NOISE.DAT
[2006/09/18 16:37:25 | 000,017,952 | ---- | M] () -- C:\Windows\System32\EventViewer_EventDetails.xsl
[2006/09/18 16:37:18 | 000,063,070 | ---- | M] () -- C:\Windows\System32\certmgr.msc
[2006/09/18 16:37:11 | 000,145,454 | ---- | M] () -- C:\Windows\System32\perfmon.msc
[2006/09/18 16:37:10 | 000,013,750 | ---- | M] () -- C:\Windows\System32\pacerprf.ini
[2006/09/18 16:37:10 | 000,003,010 | ---- | M] () -- C:\Windows\System32\pacercnt.h
[2006/09/18 16:37:01 | 000,002,060 | ---- | M] () -- C:\Windows\System32\noise.jpn
[2006/09/18 16:35:28 | 000,000,697 | ---- | M] () -- C:\Windows\System32\NOISE.THA
[2006/09/18 16:35:26 | 000,431,232 | ---- | M] () -- C:\Windows\System32\korwbrkr.lex
[2006/09/18 16:35:26 | 000,001,486 | ---- | M] () -- C:\Windows\System32\noise.kor
[2006/09/18 16:35:22 | 000,001,696 | ---- | M] () -- C:\Windows\System32\NOISE.CHT
[2006/09/18 16:35:04 | 000,001,696 | ---- | M] () -- C:\Windows\System32\NOISE.CHS
[2006/09/18 16:35:02 | 000,062,753 | ---- | M] () -- C:\Windows\System32\WF.msc
[2006/09/18 16:34:14 | 000,127,213 | ---- | M] () -- C:\Windows\System32\ega.cpi
[2006/09/18 16:34:01 | 000,047,679 | ---- | M] () -- C:\Windows\System32\diskmgmt.msc
[2006/09/18 16:33:53 | 000,063,412 | ---- | M] () -- C:\Windows\System32\NAPCLCFG.MSC
[2006/09/18 16:33:33 | 000,144,998 | ---- | M] () -- C:\Windows\System32\lusrmgr.msc
[2006/09/18 16:33:22 | 000,673,088 | ---- | M] () -- C:\Windows\System32\mlang.dat
[2006/09/18 16:32:09 | 001,228,100 | ---- | M] () -- C:\Windows\System32\8point1.wav
[2006/09/18 16:31:55 | 000,107,620 | ---- | M] () -- C:\Windows\System32\acwizard.ico
[2006/09/18 16:29:40 | 000,092,745 | ---- | M] () -- C:\Windows\System32\services.msc
[2006/09/18 16:29:38 | 000,113,256 | ---- | M] () -- C:\Windows\System32\compmgmt.msc
[2006/09/18 16:29:37 | 000,041,587 | ---- | M] () -- C:\Windows\System32\azman.msc
[2006/09/18 16:29:11 | 000,011,802 | ---- | M] () -- C:\Windows\System32\gatherWiredInfo.vbs
[2006/09/18 16:29:11 | 000,000,743 | ---- | M] () -- C:\Windows\System32\gatherWiredInfo.xslt
[2006/09/18 16:28:51 | 000,002,233 | ---- | M] () -- C:\Windows\System32\12520850.cpx
[2006/09/18 16:28:51 | 000,002,151 | ---- | M] () -- C:\Windows\System32\12520437.cpx
[2006/09/18 16:28:31 | 000,000,565 | ---- | M] () -- C:\Windows\System32\NdfEventView.xml
[2006/09/18 16:28:28 | 000,124,118 | ---- | M] () -- C:\Windows\System32\comexp.msc
[2006/09/18 16:26:46 | 003,440,660 | ---- | M] () -- C:\Windows\System32\drivers\gm.dls
[2006/09/18 16:26:37 | 000,001,988 | ---- | M] () -- C:\Windows\System32\ticrf.rat
[2006/09/18 16:26:32 | 000,008,798 | ---- | M] () -- C:\Windows\System32\icrav03.rat
[2006/09/12 10:03:20 | 000,009,216 | ---- | M] (Agere Systems) -- C:\Windows\System32\agrsmsvc.exe
[2006/09/12 09:34:46 | 000,013,312 | ---- | M] (Agere Systems) -- C:\Windows\System32\agrscoin.dll
[2006/08/31 08:53:00 | 001,161,152 | ---- | M] (Agere Systems) -- C:\Windows\System32\drivers\AGRSM.sys
[2006/08/01 17:02:32 | 000,049,152 | ---- | M] () -- C:\Windows\System32\ChCfg.exe
[2006/07/28 18:25:26 | 000,032,768 | ---- | M] (COMPAL ELECTRONIC INC.) -- C:\Windows\System32\EBLib.DLL
[2006/07/28 18:25:26 | 000,019,456 | ---- | M] (COMPAL ELECTRONIC INC.) -- C:\Windows\System32\drivers\LPCFilter.sys
[2006/07/14 08:17:18 | 000,024,576 | ---- | M] (COMPAL ELECTRONIC INC.) -- C:\Windows\System32\TSBWLS.dll
[2006/07/06 15:44:00 | 000,168,448 | ---- | M] (Texas Instruments) -- C:\Windows\System32\drivers\tifm21.sys
[2006/03/09 12:58:00 | 001,060,424 | ---- | M] () -- C:\Windows\System32\WdfCoInstaller01000.dll
[2006/01/23 12:29:54 | 000,121,232 | ---- | M] () -- C:\Windows\System32\IScrNBR.bmp
[2006/01/23 12:29:44 | 000,121,232 | ---- | M] () -- C:\Windows\System32\IScrNB.bmp
[2005/11/23 16:55:42 | 000,024,576 | ---- | M] () -- C:\Windows\System32\SPCtl.dll
[2005/10/11 14:40:52 | 000,356,352 | ---- | M] (eSellerate Inc.) -- C:\Windows\System32\eSellerateEngine.dll
[2005/10/04 08:11:22 | 000,118,784 | ---- | M] (eSellerate Inc.) -- C:\Windows\System32\eWebControl.dll
[2005/01/07 07:35:05 | 000,549,888 | ---- | M] (OldTimer Tools) -- C:\Users\Bobbie\Desktop\OTL.exe
[2005/01/07 04:56:27 | 000,001,681 | ---- | M] () -- C:\Users\Bobbie\Desktop\CCleaner.lnk
[2005/01/01 05:14:41 | 000,716,948 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI
[2005/01/01 05:14:41 | 000,618,648 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2005/01/01 05:14:41 | 000,104,024 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2005/01/01 05:07:06 | 000,524,288 | -HS- | M] () -- C:\ntuser.dat{640ba569-5858-11de-8db9-001b3849d444}.TMContainer00000000000000000002.regtrans-ms
[2005/01/01 05:07:06 | 000,524,288 | -HS- | M] () -- C:\ntuser.dat{640ba569-5858-11de-8db9-001b3849d444}.TMContainer00000000000000000001.regtrans-ms
[2005/01/01 05:07:06 | 000,065,536 | -HS- | M] () -- C:\ntuser.dat{640ba569-5858-11de-8db9-001b3849d444}.TM.blf
[2005/01/01 05:07:04 | 000,262,144 | ---- | M] () -- C:\ntuser.dat
[2005/01/01 05:07:04 | 000,008,192 | R-S- | M] () -- C:\BOOTSECT.BAK
[2005/01/01 05:07:04 | 000,000,749 | RH-- | M] () -- C:\Windows\WindowsShell.Manifest
[2005/01/01 05:07:04 | 000,000,219 | ---- | M] () -- C:\Windows\system.ini
[2005/01/01 05:07:04 | 000,000,144 | ---- | M] () -- C:\Windows\win.ini
[2005/01/01 05:07:04 | 000,000,024 | ---- | M] () -- C:\autoexec.bat
[2005/01/01 05:07:04 | 000,000,010 | ---- | M] () -- C:\config.sys
[2005/01/01 05:07:02 | 000,008,286 | ---- | M] () -- C:\Windows\HomeBasic.xml
[2005/01/01 05:07:02 | 000,008,192 | ---- | M] () -- C:\Windows\ocsetup_cbs_install_NetFx3.perf
[2005/01/01 05:07:02 | 000,008,192 | ---- | M] () -- C:\Windows\ocsetup_cbs_install_NetFx3.dpx
[2005/01/01 05:07:02 | 000,002,838 | ---- | M] () -- C:\Windows\machine.ver
[2005/01/01 05:07:02 | 000,001,405 | ---- | M] () -- C:\Windows\msdfmap.ini
[2005/01/01 05:07:02 | 000,000,000 | ---- | M] () -- C:\Windows\NDSTray.INI
[2005/01/01 05:07:01 | 000,069,120 | ---- | M] (Agere Systems) -- C:\Windows\agrsmdel.exe
[2005/01/01 05:07:01 | 000,000,370 | ---- | M] () -- C:\Windows\ForceHCResetOnResume.zip
[2005/01/01 05:07:01 | 000,000,368 | ---- | M] () -- C:\Windows\ForceHCResetOnResume.reg
[2005/01/01 04:55:44 | 000,001,007 | ---- | M] () -- C:\Users\Bobbie\Desktop\The Ultimate Troubleshooter.lnk
[2005/01/01 02:05:47 | 000,000,829 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2005/01/01 01:24:12 | 000,439,808 | ---- | M] (OldTimer Tools) -- C:\Users\Bobbie\Desktop\TFC.exe
[2005/01/01 01:12:42 | 001,572,864 | -HS- | M] () -- C:\Users\Bobbie\NTUSER.DAT
[2005/01/01 00:48:58 | 000,003,584 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2005/01/01 00:48:58 | 000,003,584 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2005/01/01 00:48:42 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2005/01/01 00:48:29 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2005/01/01 00:48:26 | 526,508,032 | -HS- | M] () -- C:\hiberfil.sys

========== Files Created - No Company Name ==========

[2010/02/28 07:33:17 | 000,284,915 | ---- | C] () -- C:\Users\Bobbie\Desktop\gmer.zip
[2010/02/27 22:41:05 | 000,000,924 | ---- | C] () -- C:\Users\Bobbie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk
[2010/02/27 22:40:48 | 000,000,744 | ---- | C] () -- C:\Users\Bobbie\Desktop\NTREGOPT.lnk
[2010/02/27 22:40:48 | 000,000,725 | ---- | C] () -- C:\Users\Bobbie\Desktop\ERUNT.lnk
[2010/02/27 20:15:04 | 000,057,667 | ---- | C] () -- C:\Windows\System32\ieuinit.inf
[2010/02/27 01:31:42 | 000,000,866 | ---- | C] () -- C:\Users\Public\Desktop\MyDefrag.lnk
[2010/02/27 01:00:30 | 000,001,851 | ---- | C] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2009/12/25 17:12:51 | 008,673,792 | ---- | C] () -- C:\ProgramData\atscie.msi
[2009/08/16 16:57:36 | 001,048,576 | -HS- | C] () -- C:\Users\Bobbie\NTUSER.DAT{a1cdcb73-7657-11de-9d43-001b3849d444}.TxR.2.regtrans-ms
[2009/08/16 16:57:36 | 001,048,576 | -HS- | C] () -- C:\Users\Bobbie\NTUSER.DAT{a1cdcb73-7657-11de-9d43-001b3849d444}.TxR.1.regtrans-ms
[2009/08/16 16:57:36 | 001,048,576 | -HS- | C] () -- C:\Users\Bobbie\NTUSER.DAT{a1cdcb73-7657-11de-9d43-001b3849d444}.TxR.0.regtrans-ms
[2009/08/16 16:57:36 | 000,065,536 | -HS- | C] () -- C:\Users\Bobbie\NTUSER.DAT{a1cdcb73-7657-11de-9d43-001b3849d444}.TxR.blf
[2009/08/03 15:07:42 | 000,403,816 | ---- | C] () -- C:\Windows\System32\OGACheckControl.dll
[2009/08/03 15:07:42 | 000,230,768 | ---- | C] () -- C:\Windows\System32\OGAEXEC.exe
[2009/07/21 19:37:07 | 000,524,288 | -HS- | C] () -- C:\Users\Bobbie\NTUSER.DAT{a1cdcb74-7657-11de-9d43-001b3849d444}.TMContainer00000000000000000002.regtrans-ms
[2009/07/21 19:37:06 | 000,524,288 | -HS- | C] () -- C:\Users\Bobbie\NTUSER.DAT{a1cdcb74-7657-11de-9d43-001b3849d444}.TMContainer00000000000000000001.regtrans-ms
[2009/07/21 19:37:06 | 000,065,536 | -HS- | C] () -- C:\Users\Bobbie\NTUSER.DAT{a1cdcb74-7657-11de-9d43-001b3849d444}.TM.blf
[2009/06/30 17:22:36 | 000,001,898 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Reader 8.lnk
[2009/06/09 21:45:12 | 000,001,737 | ---- | C] () -- C:\Users\Public\Desktop\QuickTime Player.lnk
[2009/04/13 19:15:42 | 000,001,820 | ---- | C] () -- C:\Windows\System32\rasctrnm.h
[2009/04/09 00:45:34 | 000,000,954 | ---- | C] () -- C:\Users\Bobbie\Desktop\Launch Internet Explorer Browser.lnk
[2009/04/03 14:10:02 | 000,016,384 | ---- | C] () -- C:\Users\Bobbie\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/04/03 14:09:22 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\UMDF\Msft_User_WpdFs_01_00_00.Wdf
[2009/03/31 00:56:58 | 000,000,020 | -HS- | C] () -- C:\Users\Bobbie\ntuser.ini
[2009/03/31 00:56:56 | 000,524,288 | -HS- | C] () -- C:\Users\Bobbie\NTUSER.DAT{d8932e6d-6a6f-11db-b6ab-a038f15a5785}.TMContainer00000000000000000002.regtrans-ms
[2009/03/31 00:56:56 | 000,524,288 | -HS- | C] () -- C:\Users\Bobbie\NTUSER.DAT{d8932e6d-6a6f-11db-b6ab-a038f15a5785}.TMContainer00000000000000000001.regtrans-ms
[2009/03/31 00:56:56 | 000,065,536 | -HS- | C] () -- C:\Users\Bobbie\NTUSER.DAT{d8932e6d-6a6f-11db-b6ab-a038f15a5785}.TM.blf
[2009/03/31 00:56:54 | 001,572,864 | -HS- | C] () -- C:\Users\Bobbie\NTUSER.DAT
[2009/03/31 00:45:54 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_SynTP_01000.Wdf
[2009/03/31 00:42:53 | 000,063,717 | ---- | C] () -- C:\Windows\System32\netathr.inf
[2009/03/31 00:42:53 | 000,027,864 | ---- | C] () -- C:\Windows\System32\athrext.cat
[2009/03/31 00:41:14 | 000,014,604 | ---- | C] () -- C:\Windows\System32\results.xml
[2009/03/31 00:34:53 | 000,121,232 | ---- | C] () -- C:\Windows\System32\IScrNBR.bmp
[2009/03/31 00:34:53 | 000,121,232 | ---- | C] () -- C:\Windows\System32\IScrNB.bmp
[2009/03/31 00:27:09 | 000,002,163 | ---- | C] () -- C:\Users\Public\Desktop\Microsoft Office - 60 Day Trial.lnk
[2007/05/23 20:22:19 | 000,002,171 | ---- | C] () -- C:\Users\Public\Desktop\Play Games.lnk
[2007/05/23 20:19:49 | 000,001,742 | ---- | C] () -- C:\Users\Public\Desktop\eBay - The World's Online Marketplace.lnk
[2007/05/23 20:19:49 | 000,001,593 | ---- | C] () -- C:\Users\Public\Desktop\CNN.lnk
[2007/05/23 20:14:11 | 000,524,288 | -HS- | C] () -- C:\ProgramData\ntuser.dat{232a556b-098b-11dc-b28e-0016d42a468b}.TMContainer00000000000000000002.regtrans-ms
[2007/05/23 20:14:10 | 000,524,288 | -HS- | C] () -- C:\ProgramData\ntuser.dat{232a556b-098b-11dc-b28e-0016d42a468b}.TMContainer00000000000000000001.regtrans-ms
[2007/05/23 20:14:10 | 000,065,536 | -HS- | C] () -- C:\ProgramData\ntuser.dat{232a556b-098b-11dc-b28e-0016d42a468b}.TM.blf
[2007/05/23 20:14:09 | 000,524,288 | -HS- | C] () -- C:\ProgramData\ntuser.dat{232a555b-098b-11dc-b28e-0016d42a468b}.TMContainer00000000000000000002.regtrans-ms
[2007/05/23 20:14:09 | 000,524,288 | -HS- | C] () -- C:\ProgramData\ntuser.dat{232a555b-098b-11dc-b28e-0016d42a468b}.TMContainer00000000000000000001.regtrans-ms
[2007/05/23 20:14:09 | 000,065,536 | -HS- | C] () -- C:\ProgramData\ntuser.dat{232a555b-098b-11dc-b28e-0016d42a468b}.TM.blf
[2007/05/23 20:14:08 | 000,262,144 | ---- | C] () -- C:\ProgramData\ntuser.dat
[2007/05/23 20:14:08 | 000,005,120 | -H-- | C] () -- C:\ProgramData\ntuser.dat.LOG1
[2007/05/23 20:14:08 | 000,000,000 | -H-- | C] () -- C:\ProgramData\ntuser.dat.LOG2
[2007/05/23 20:08:03 | 000,001,808 | ---- | C] () -- C:\Windows\System32\subst.inf
[2007/05/23 20:00:18 | 000,204,800 | ---- | C] () -- C:\Windows\System32\IVIresizeW7.dll
[2007/05/23 20:00:18 | 000,200,704 | ---- | C] () -- C:\Windows\System32\IVIresizeA6.dll
[2007/05/23 20:00:18 | 000,192,512 | ---- | C] () -- C:\Windows\System32\IVIresizeP6.dll
[2007/05/23 20:00:18 | 000,192,512 | ---- | C] () -- C:\Windows\System32\IVIresizeM6.dll
[2007/05/23 20:00:18 | 000,188,416 | ---- | C] () -- C:\Windows\System32\IVIresizePX.dll
[2007/05/23 20:00:18 | 000,020,480 | ---- | C] () -- C:\Windows\System32\IVIresize.dll
[2007/05/23 19:56:28 | 000,000,002 | ---- | C] () -- C:\Windows\System32\drivers\1179_Toshiba_Satellite A130-A135_26244.MRK
[2007/05/23 19:56:24 | 000,006,894 | ---- | C] () -- C:\Windows\System32\OEMLOGO.BMP
[2007/05/23 19:56:07 | 000,438,840 | RHS- | C] () -- C:\bootmgr
[2007/05/23 19:50:18 | 000,001,447 | ---- | C] () -- C:\Users\Public\Desktop\Software Upgrades.lnk
[2007/05/23 19:37:03 | 000,128,113 | ---- | C] () -- C:\Windows\System32\csellang.ini
[2007/05/23 19:37:03 | 000,045,056 | ---- | C] () -- C:\Windows\System32\csellang.dll
[2007/05/23 19:37:03 | 000,010,150 | ---- | C] () -- C:\Windows\System32\tosmreg.ini
[2007/05/23 19:37:03 | 000,007,671 | ---- | C] () -- C:\Windows\System32\cseltbl.ini
[2007/05/23 19:32:46 | 000,049,152 | ---- | C] () -- C:\Windows\System32\ChCfg.exe
[2007/05/23 19:32:46 | 000,000,176 | ---- | C] () -- C:\Windows\System32\drivers\RTHDAEQ1.dat
[2007/05/23 19:32:46 | 000,000,176 | ---- | C] () -- C:\Windows\System32\drivers\RTHDAEQ0.dat
[2006/11/29 11:24:58 | 000,021,696 | ---- | C] () -- C:\Windows\System32\iglhxs32.vp
[2006/11/29 00:12:18 | 000,204,800 | ---- | C] () -- C:\Windows\System32\igfxCoIn_v1132.dll
[2006/11/28 22:14:48 | 000,053,248 | ---- | C] () -- C:\Windows\System32\oemdspif.dll
[2006/11/28 22:12:28 | 000,077,824 | ---- | C] () -- C:\Windows\System32\hccutils.dll
[2006/11/24 09:48:44 | 000,036,864 | ---- | C] () -- C:\Windows\System32\HWS_Ctrl.dll
[2006/11/02 07:53:49 | 000,041,176 | ---- | C] () -- C:\Windows\System32\license.rtf
[2006/11/02 07:53:22 | 000,001,741 | ---- | C] () -- C:\Windows\System32\migwiz.lnk
[2006/11/02 07:45:09 | 000,003,584 | -H-- | C] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2006/11/02 07:45:09 | 000,003,584 | -H-- | C] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2006/11/02 07:44:56 | 000,049,152 | ---- | C] () -- C:\Windows\System32\umstartup.etl
[2006/11/02 07:44:56 | 000,033,792 | ---- | C] () -- C:\Windows\System32\umstartup000.etl
[2006/11/02 07:44:53 | 000,326,088 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2006/11/02 07:34:54 | 000,316,640 | ---- | C] () -- C:\Windows\WMSysPr9.prx
[2006/11/02 07:34:06 | 000,093,702 | ---- | C] () -- C:\Windows\System32\SubRange.uce
[2006/11/02 07:34:06 | 000,060,458 | ---- | C] () -- C:\Windows\System32\ideograf.uce
[2006/11/02 07:34:06 | 000,024,006 | ---- | C] () -- C:\Windows\System32\gb2312.uce
[2006/11/02 07:34:06 | 000,022,984 | ---- | C] () -- C:\Windows\System32\bopomofo.uce
[2006/11/02 07:34:06 | 000,016,740 | ---- | C] () -- C:\Windows\System32\ShiftJIS.uce
[2006/11/02 07:34:06 | 000,012,876 | ---- | C] () -- C:\Windows\System32\korean.uce
[2006/11/02 07:34:06 | 000,008,484 | ---- | C] () -- C:\Windows\System32\kanji_2.uce
[2006/11/02 07:34:06 | 000,006,948 | ---- | C] () -- C:\Windows\System32\kanji_1.uce
[2006/11/02 07:33:46 | 000,144,909 | ---- | C] () -- C:\Windows\System32\fsmgmt.msc
[2006/11/02 07:33:45 | 000,014,827 | ---- | C] () -- C:\Windows\System32\gatherWirelessInfo.vbs
[2006/11/02 07:33:45 | 000,000,933 | ---- | C] () -- C:\Windows\System32\gatherWirelessInfo.xslt
[2006/11/02 05:33:01 | 000,618,648 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2006/11/02 05:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2006/11/02 05:33:01 | 000,104,024 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2006/11/02 05:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2006/11/02 05:25:21 | 000,655,842 | ---- | C] () -- C:\Windows\System32\iglhxa32.cpa
[2006/11/02 05:25:21 | 000,061,440 | ---- | C] () -- C:\Windows\System32\igfxTMM.dll
[2006/11/02 05:25:21 | 000,002,096 | ---- | C] () -- C:\Windows\System32\iglhxo32.vp
[2006/11/02 05:25:21 | 000,002,096 | ---- | C] () -- C:\Windows\System32\iglhxc32.vp
[2006/11/02 05:25:21 | 000,000,929 | ---- | C] () -- C:\Windows\System32\iglhxa32.vp
[2006/11/02 05:23:50 | 000,017,244 | ---- | C] () -- C:\Windows\System32\drivers\etc\services
[2006/11/02 05:23:50 | 000,001,358 | ---- | C] () -- C:\Windows\System32\drivers\etc\protocol
[2006/11/02 05:23:50 | 000,000,761 | ---- | C] () -- C:\Windows\System32\drivers\etc\hosts
[2006/11/02 05:23:50 | 000,000,407 | ---- | C] () -- C:\Windows\System32\drivers\etc\networks
[2006/11/02 05:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2006/11/02 05:23:09 | 000,002,577 | ---- | C] () -- C:\Windows\System32\config.nt
[2006/11/02 05:23:09 | 000,001,688 | ---- | C] () -- C:\Windows\System32\autoexec.nt
[2006/11/02 03:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2006/11/02 03:58:10 | 000,115,173 | ---- | C] () -- C:\Windows\System32\WFP.TMF
[2006/11/02 03:56:06 | 000,246,828 | ---- | C] () -- C:\Windows\System32\dot3.tmf
[2006/11/02 03:56:06 | 000,011,802 | ---- | C] () -- C:\Windows\System32\gatherWiredInfo.vbs
[2006/11/02 03:56:06 | 000,000,743 | ---- | C] () -- C:\Windows\System32\gatherWiredInfo.xslt
[2006/11/02 03:55:34 | 000,223,526 | ---- | C] () -- C:\Windows\System32\onex.tmf
[2006/11/02 03:54:34 | 000,000,003 | ---- | C] () -- C:\Windows\System32\drivers\MsftWdf_Kernel_01005_Inbox_Critical.Wdf
[2006/11/02 03:37:37 | 000,177,772 | ---- | C] () -- C:\Windows\System32\systemsf.ebd
[2006/11/02 03:25:14 | 000,003,577 | ---- | C] () -- C:\Windows\System32\sysprtj.sep
[2006/11/02 03:25:14 | 000,003,214 | ---- | C] () -- C:\Windows\System32\sysprint.sep
[2006/11/02 03:25:14 | 000,000,114 | ---- | C] () -- C:\Windows\System32\pcl.sep
[2006/11/02 03:25:14 | 000,000,051 | ---- | C] () -- C:\Windows\System32\pscript.sep
[2006/11/02 03:23:43 | 000,001,041 | ---- | C] () -- C:\Windows\System32\tcpbidi.xml
[2006/11/02 03:20:18 | 000,004,453 | ---- | C] () -- C:\Windows\System32\odbcconf.rsp
[2006/11/02 03:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2006/11/02 03:11:31 | 000,002,233 | ---- | C] () -- C:\Windows\System32\12520850.cpx
[2006/11/02 03:11:31 | 000,002,151 | ---- | C] () -- C:\Windows\System32\12520437.cpx
[2006/11/02 03:11:00 | 000,002,060 | ---- | C] () -- C:\Windows\System32\noise.jpn
[2006/11/02 03:10:55 | 000,431,232 | ---- | C] () -- C:\Windows\System32\korwbrkr.lex
[2006/11/02 03:10:55 | 000,001,486 | ---- | C] () -- C:\Windows\System32\noise.kor
[2006/11/02 03:10:48 | 000,000,697 | ---- | C] () -- C:\Windows\System32\NOISE.THA
[2006/11/02 02:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006/11/02 02:40:29 | 000,003,010 | ---- | C] () -- C:\Windows\System32\pacercnt.h
[2006/11/02 02:39:48 | 000,063,412 | ---- | C] () -- C:\Windows\System32\NAPCLCFG.MSC
[2006/11/02 02:38:51 | 000,062,753 | ---- | C] () -- C:\Windows\System32\WF.msc
[2006/11/02 02:31:17 | 000,047,679 | ---- | C] () -- C:\Windows\System32\diskmgmt.msc
[2006/11/02 02:30:32 | 000,124,118 | ---- | C] () -- C:\Windows\System32\comexp.msc
[2006/11/02 02:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
[2006/11/02 02:24:20 | 000,144,998 | ---- | C] () -- C:\Windows\System32\lusrmgr.msc
[2006/11/02 02:22:43 | 000,099,999 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2006/11/02 02:22:43 | 000,018,271 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2006/11/02 02:20:55 | 000,061,618 | ---- | C] () -- C:\Windows\System32\slmgr.vbs
[2006/11/02 02:17:14 | 000,063,070 | ---- | C] () -- C:\Windows\System32\certmgr.msc
[2006/11/02 02:16:33 | 000,149,389 | ---- | C] () -- C:\Windows\System32\winrm.vbs
[2006/11/02 02:16:33 | 000,002,178 | ---- | C] () -- C:\Windows\System32\WsmTxt.xsl
[2006/11/02 02:16:33 | 000,001,559 | ---- | C] () -- C:\Windows\System32\WsmPty.xsl
[2006/11/02 02:16:33 | 000,000,035 | ---- | C] () -- C:\Windows\System32\winrm.cmd
[2006/11/02 02:15:44 | 000,145,127 | ---- | C] () -- C:\Windows\System32\eventvwr.msc
[2006/11/02 02:15:44 | 000,017,952 | ---- | C] () -- C:\Windows\System32\EventViewer_EventDetails.xsl
[2006/11/02 02:15:43 | 000,145,059 | ---- | C] () -- C:\Windows\System32\taskschd.msc
[2006/11/02 02:15:35 | 000,062,599 | ---- | C] () -- C:\Windows\System32\WmiMgmt.msc
[2006/11/02 02:13:33 | 000,092,745 | ---- | C] () -- C:\Windows\System32\services.msc
[2006/11/02 02:13:32 | 000,113,256 | ---- | C] () -- C:\Windows\System32\compmgmt.msc
[2006/11/02 02:13:32 | 000,041,587 | ---- | C] () -- C:\Windows\System32\azman.msc
[2006/11/02 02:11:39 | 000,107,620 | ---- | C] () -- C:\Windows\System32\acwizard.ico
[2006/11/02 02:11:29 | 000,211,938 | ---- | C] () -- C:\Windows\System32\lcphrase.tbl
[2006/11/02 02:11:29 | 000,024,114 | ---- | C] () -- C:\Windows\System32\lcptr.tbl
[2006/11/02 02:10:37 | 000,053,536 | ---- | C] () -- C:\Windows\System32\dosx.exe
[2006/11/02 02:10:02 | 000,000,718 | ---- | C] () -- C:\Windows\System32\mscdexnt.exe
[2006/11/02 02:10:00 | 000,002,842 | ---- | C] () -- C:\Windows\System32\redir.exe
[2006/11/02 02:09:59 | 000,069,886 | ---- | C] () -- C:\Windows\System32\edit.com
[2006/11/02 02:09:59 | 000,021,232 | ---- | C] () -- C:\Windows\System32\graphics.pro
[2006/11/02 02:09:59 | 000,019,694 | ---- | C] () -- C:\Windows\System32\GRAPHICS.COM
[2006/11/02 02:09:59 | 000,010,790 | ---- | C] () -- C:\Windows\System32\EDIT.HLP
[2006/11/02 02:09:59 | 000,000,882 | ---- | C] () -- C:\Windows\System32\share.exe
[2006/11/02 02:09:59 | 000,000,882 | ---- | C] () -- C:\Windows\System32\fastopen.exe
[2006/11/02 02:09:57 | 000,014,710 | ---- | C] () -- C:\Windows\System32\KB16.COM
[2006/11/02 02:09:56 | 000,007,052 | ---- | C] () -- C:\Windows\System32\nlsfunc.exe
[2006/11/02 02:09:55 | 000,039,274 | ---- | C] () -- C:\Windows\System32\mem.exe
[2006/11/02 02:09:55 | 000,001,131 | ---- | C] () -- C:\Windows\System32\LOADFIX.COM
[2006/11/02 02:09:53 | 000,011,753 | ---- | C] () -- C:\Windows\System32\setver.exe
[2006/11/02 02:09:52 | 000,020,634 | ---- | C] () -- C:\Windows\System32\debug.exe
[2006/11/02 02:09:51 | 000,008,424 | ---- | C] () -- C:\Windows\System32\exe2bin.exe
[2006/11/02 02:09:50 | 000,012,642 | ---- | C] () -- C:\Windows\System32\edlin.exe
[2006/11/02 02:09:49 | 000,050,648 | ---- | C] () -- C:\Windows\System32\COMMAND.COM
[2006/11/02 02:09:49 | 000,012,498 | ---- | C] () -- C:\Windows\System32\append.exe
[2006/11/02 02:08:47 | 000,000,610 | ---- | C] () -- C:\Windows\System32\WdsUnattendTemplate.xml
[2006/11/02 02:04:09 | 000,000,707 | ---- | C] () -- C:\Windows\_default.pif
[2006/11/02 02:04:04 | 000,028,420 | ---- | C] () -- C:\Windows\System32\bios1.rom
[2006/11/02 02:04:04 | 000,018,832 | ---- | C] () -- C:\Windows\System32\v7vga.rom
[2006/11/02 02:04:04 | 000,008,191 | ---- | C] () -- C:\Windows\System32\bios4.rom
[2006/11/02 02:03:35 | 000,145,454 | ---- | C] () -- C:\Windows\System32\perfmon.msc
[2006/11/02 01:59:36 | 000,145,640 | ---- | C] () -- C:\Windows\System32\devmgmt.msc
[2006/11/02 01:58:59 | 000,066,384 | ---- | C] () -- C:\Windows\System32\normnfkc.nls
[2006/11/02 01:58:59 | 000,060,294 | ---- | C] () -- C:\Windows\System32\normnfkd.nls
[2006/11/02 01:58:59 | 000,059,342 | ---- | C] () -- C:\Windows\System32\normidna.nls
[2006/11/02 01:58:59 | 000,045,794 | ---- | C] () -- C:\Windows\System32\normnfc.nls
[2006/11/02 01:58:59 | 000,039,284 | ---- | C] () -- C:\Windows\System32\normnfd.nls
[2006/11/02 01:58:58 | 003,661,664 | ---- | C] () -- C:\Windows\System32\locale.nls
[2006/11/02 01:55:07 | 000,144,862 | ---- | C] () -- C:\Windows\System32\tpm.msc
[2006/11/02 01:47:32 | 000,001,696 | ---- | C] () -- C:\Windows\System32\NOISE.CHT
[2006/11/02 01:47:32 | 000,001,696 | ---- | C] () -- C:\Windows\System32\NOISE.CHS
[2006/11/02 01:43:31 | 001,228,100 | ---- | C] () -- C:\Windows\System32\8point1.wav
[2006/11/02 01:43:30 | 003,440,660 | ---- | C] () -- C:\Windows\System32\drivers\gm.dls
[2006/11/02 01:38:42 | 000,003,683 | ---- | C] () -- C:\Windows\System32\drivers\etc\lmhosts.sam
[2006/11/02 01:38:17 | 000,000,565 | ---- | C] () -- C:\Windows\System32\NdfEventView.xml
[2006/11/02 01:38:03 | 000,002,650 | ---- | C] () -- C:\Windows\System32\xwizard.dtd
[2006/11/02 01:32:53 | 000,008,798 | ---- | C] () -- C:\Windows\System32\icrav03.rat
[2006/11/02 01:32:53 | 000,001,988 | ---- | C] () -- C:\Windows\System32\ticrf.rat
[2006/11/02 01:27:30 | 000,127,213 | ---- | C] () -- C:\Windows\System32\ega.cpi
[2006/11/02 01:26:11 | 000,028,303 | ---- | C] () -- C:\Windows\System32\RacUR.xml
[2006/11/02 01:26:11 | 000,000,125 | ---- | C] () -- C:\Windows\System32\RacUREx.xml
[2006/11/02 01:25:37 | 000,000,843 | ---- | C] () -- C:\Windows\System32\onlinesetup.cmd
[2006/11/02 01:25:02 | 000,195,618 | ---- | C] () -- C:\Windows\System32\C_10002.NLS
[2006/11/02 01:25:02 | 000,177,698 | ---- | C] () -- C:\Windows\System32\C_10003.NLS
[2006/11/02 01:25:02 | 000,173,602 | ---- | C] () -- C:\Windows\System32\C_10008.NLS
[2006/11/02 01:25:02 | 000,162,850 | ---- | C] () -- C:\Windows\System32\C_10001.NLS
[2006/11/02 01:25:02 | 000,066,594 | ---- | C] () -- C:\Windows\System32\C_869.NLS
[2006/11/02 01:25:02 | 000,066,594 | ---- | C] () -- C:\Windows\System32\C_866.NLS
[2006/11/02 01:25:02 | 000,066,594 | ---- | C] () -- C:\Windows\System32\C_865.NLS
[2006/11/02 01:25:02 | 000,066,594 | ---- | C] () -- C:\Windows\System32\C_864.NLS
[2006/11/02 01:25:02 | 000,066,594 | ---- | C] () -- C:\Windows\System32\C_863.NLS
[2006/11/02 01:25:02 | 000,066,594 | ---- | C] () -- C:\Windows\System32\C_862.NLS
[2006/11/02 01:25:02 | 000,066,594 | ---- | C] () -- C:\Windows\System32\C_861.NLS
[2006/11/02 01:25:02 | 000,066,594 | ---- | C] () -- C:\Windows\System32\C_860.NLS
[2006/11/02 01:25:02 | 000,066,594 | ---- | C] () -- C:\Windows\System32\C_858.NLS
[2006/11/02 01:25:02 | 000,066,594 | ---- | C] () -- C:\Windows\System32\C_857.NLS
[2006/11/02 01:25:02 | 000,066,594 | ---- | C] () -- C:\Windows\System32\C_855.NLS
[2006/11/02 01:25:02 | 000,066,594 | ---- | C] () -- C:\Windows\System32\C_852.NLS
[2006/11/02 01:25:02 | 000,066,594 | ---- | C] () -- C:\Windows\System32\C_850.NLS
[2006/11/02 01:25:02 | 000,066,594 | ---- | C] () -- C:\Windows\System32\C_775.NLS
[2006/11/02 01:25:02 | 000,066,594 | ---- | C] () -- C:\Windows\System32\C_737.NLS
[2006/11/02 01:25:02 | 000,066,594 | ---- | C] () -- C:\Windows\System32\C_437.NLS
[2006/11/02 01:25:02 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_28605.NLS
[2006/11/02 01:25:02 | 000,066,082 | ---- | C] () -- C:\Windows\System32\c_28603.nls
[2006/11/02 01:25:02 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_28599.NLS
[2006/11/02 01:25:02 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_28598.NLS
[2006/11/02 01:25:02 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_28597.NLS
[2006/11/02 01:25:02 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_10082.NLS
[2006/11/02 01:25:02 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_10081.NLS
[2006/11/02 01:25:02 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_10079.NLS
[2006/11/02 01:25:02 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_10029.NLS
[2006/11/02 01:25:02 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_10021.NLS
[2006/11/02 01:25:02 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_10017.NLS
[2006/11/02 01:25:02 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_10010.NLS
[2006/11/02 01:25:02 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_10007.NLS
[2006/11/02 01:25:02 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_10006.NLS
[2006/11/02 01:25:02 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_10005.NLS
[2006/11/02 01:25:02 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_10004.NLS
[2006/11/02 01:25:02 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_10000.NLS
[2006/11/02 01:25:01 | 000,189,986 | ---- | C] () -- C:\Windows\System32\C_1361.NLS
[2006/11/02 01:25:01 | 000,187,938 | ---- | C] () -- C:\Windows\System32\C_20005.NLS
[2006/11/02 01:25:01 | 000,186,402 | ---- | C] () -- C:\Windows\System32\C_20001.NLS
[2006/11/02 01:25:01 | 000,185,378 | ---- | C] () -- C:\Windows\System32\C_20003.NLS
[2006/11/02 01:25:01 | 000,180,770 | ---- | C] () -- C:\Windows\System32\C_20932.NLS
[2006/11/02 01:25:01 | 000,180,258 | ---- | C] () -- C:\Windows\System32\C_20004.NLS
[2006/11/02 01:25:01 | 000,180,258 | ---- | C] () -- C:\Windows\System32\C_20000.NLS
[2006/11/02 01:25:01 | 000,177,698 | ---- | C] () -- C:\Windows\System32\C_20949.NLS
[2006/11/02 01:25:01 | 000,173,602 | ---- | C] () -- C:\Windows\System32\C_20936.NLS
[2006/11/02 01:25:01 | 000,173,602 | ---- | C] () -- C:\Windows\System32\C_20002.NLS
[2006/11/02 01:25:01 | 000,139,810 | ---- | C] () -- C:\Windows\System32\C_20261.NLS
[2006/11/02 01:25:01 | 000,066,594 | ---- | C] () -- C:\Windows\System32\C_720.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_875.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_870.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_708.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_500.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_28596.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_28595.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_28594.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_28593.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_28592.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_28591.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_21866.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_21027.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_21025.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_20924.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_20905.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_20880.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_20871.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_20866.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_20838.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_20833.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_20424.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_20423.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_20420.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_20297.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_20290.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_20285.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_20284.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_20280.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_20278.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_20277.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_20273.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_20269.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_20127.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_20108.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_20107.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_20106.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_20105.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_1149.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_1148.NLS
[2006/11/02 01:25:01 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_1147.NLS
[2006/11/02 01:25:01 | 000,008,838 | ---- | C] () -- C:\Windows\System32\l_intl.nls
[2006/11/02 01:25:00 | 000,196,642 | ---- | C] () -- C:\Windows\System32\C_950.NLS
[2006/11/02 01:25:00 | 000,196,642 | ---- | C] () -- C:\Windows\System32\C_949.NLS
[2006/11/02 01:25:00 | 000,196,642 | ---- | C] () -- C:\Windows\System32\C_936.NLS
[2006/11/02 01:25:00 | 000,162,850 | ---- | C] () -- C:\Windows\System32\C_932.NLS
[2006/11/02 01:25:00 | 000,066,594 | ---- | C] () -- C:\Windows\System32\C_874.NLS
[2006/11/02 01:25:00 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_1258.NLS
[2006/11/02 01:25:00 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_1257.NLS
[2006/11/02 01:25:00 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_1256.NLS
[2006/11/02 01:25:00 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_1255.NLS
[2006/11/02 01:25:00 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_1254.NLS
[2006/11/02 01:25:00 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_1253.NLS
[2006/11/02 01:25:00 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_1252.NLS
[2006/11/02 01:25:00 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_1251.NLS
[2006/11/02 01:25:00 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_1250.NLS
[2006/11/02 01:25:00 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_1146.NLS
[2006/11/02 01:25:00 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_1145.NLS
[2006/11/02 01:25:00 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_1144.NLS
[2006/11/02 01:25:00 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_1143.NLS
[2006/11/02 01:25:00 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_1142.NLS
[2006/11/02 01:25:00 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_1141.NLS
[2006/11/02 01:25:00 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_1140.NLS
[2006/11/02 01:25:00 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_1047.NLS
[2006/11/02 01:25:00 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_1026.NLS
[2006/11/02 01:25:00 | 000,066,082 | ---- | C] () -- C:\Windows\System32\C_037.NLS
[2006/03/09 12:58:00 | 001,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll
[2005/11/23 16:55:42 | 000,024,576 | ---- | C] () -- C:\Windows\System32\SPCtl.dll
[2005/01/07 04:56:27 | 000,001,681 | ---- | C] () -- C:\Users\Bobbie\Desktop\CCleaner.lnk
[2005/01/07 04:44:15 | 001,657,350 | ---- | C] () -- C:\Windows\System32\wlan.tmf
[2005/01/01 05:07:06 | 000,524,288 | -HS- | C] () -- C:\ntuser.dat{640ba569-5858-11de-8db9-001b3849d444}.TMContainer00000000000000000002.regtrans-ms
[2005/01/01 05:07:06 | 000,524,288 | -HS- | C] () -- C:\ntuser.dat{640ba569-5858-11de-8db9-001b3849d444}.TMContainer00000000000000000001.regtrans-ms
[2005/01/01 05:07:06 | 000,065,536 | -HS- | C] () -- C:\ntuser.dat{640ba569-5858-11de-8db9-001b3849d444}.TM.blf
[2005/01/01 05:07:04 | 000,262,144 | ---- | C] () -- C:\ntuser.dat
[2005/01/01 05:07:04 | 000,008,192 | R-S- | C] () -- C:\BOOTSECT.BAK
[2005/01/01 05:07:04 | 000,000,749 | RH-- | C] () -- C:\Windows\WindowsShell.Manifest
[2005/01/01 05:07:04 | 000,000,024 | ---- | C] () -- C:\autoexec.bat
[2005/01/01 05:07:04 | 000,000,010 | ---- | C] () -- C:\config.sys
[2005/01/01 05:07:02 | 000,016,384 | ---- | C] () -- C:\Windows\ocsetup_install_NetFx3.etl
[2005/01/01 05:07:02 | 000,008,286 | ---- | C] () -- C:\Windows\HomeBasic.xml
[2005/01/01 05:07:02 | 000,008,192 | ---- | C] () -- C:\Windows\ocsetup_cbs_install_NetFx3.perf
[2005/01/01 05:07:02 | 000,008,192 | ---- | C] () -- C:\Windows\ocsetup_cbs_install_NetFx3.dpx
[2005/01/01 05:07:02 | 000,002,838 | ---- | C] () -- C:\Windows\machine.ver
[2005/01/01 05:07:02 | 000,000,000 | ---- | C] () -- C:\Windows\NDSTray.INI
[2005/01/01 05:07:01 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2005/01/01 05:07:01 | 000,000,370 | ---- | C] () -- C:\Windows\ForceHCResetOnResume.zip
[2005/01/01 05:07:01 | 000,000,368 | ---- | C] () -- C:\Windows\ForceHCResetOnResume.reg
[2005/01/01 04:55:44 | 000,001,007 | ---- | C] () -- C:\Users\Bobbie\Desktop\The Ultimate Troubleshooter.lnk
[2005/01/01 02:05:47 | 000,000,829 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2005/01/01 00:48:26 | 526,508,032 | -HS- | C] () -- C:\hiberfil.sys

========== LOP Check ==========

[2009/08/16 22:18:01 | 000,000,000 | ---D | M] -- C:\Users\Bobbie\AppData\Roaming\FrostWire
[2009/03/31 01:41:39 | 000,000,000 | ---D | M] -- C:\Users\Bobbie\AppData\Roaming\PlayFirst
[2009/03/31 01:41:05 | 000,000,000 | ---D | M] -- C:\Users\Bobbie\AppData\Roaming\WildTangent
[2009/12/30 14:34:36 | 000,000,000 | ---D | M] -- C:\Users\Bobbie\AppData\Roaming\WinBatch
[2010/02/28 07:22:26 | 000,032,530 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========



========== Custom Scans ==========


< %SYSTEMDRIVE%\*.exe >


< MD5 for: AGP440.SYS >
[2008/01/19 02:42:25 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\SoftwareDistribution\Download\848c23cf13d83b3e0a6f1da97f3af588\x86_machine.inf_31bf3856ad364e35_6.0.6001.18000_none_ba12ed3bbeb0d97a\AGP440.sys
[2006/11/02 04:49:52 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=EF23439CDD587F64C2C1B8825CEAD7D8 -- C:\Windows\System32\drivers\AGP440.sys
[2006/11/02 04:49:52 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=EF23439CDD587F64C2C1B8825CEAD7D8 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_920a2c1f\AGP440.sys

< MD5 for: ATAPI.SYS >
[2008/01/19 02:41:30 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Windows\SoftwareDistribution\Download\848c23cf13d83b3e0a6f1da97f3af588\x86_mshdc.inf_31bf3856ad364e35_6.0.6001.18000_none_dd38281a2189ce9c\atapi.sys
[2006/11/02 04:49:36 | 000,019,048 | ---- | M] (Microsoft Corporation) MD5=4F4FCB8B6EA06784FB6D475B7EC7300F -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_c6c2e699\atapi.sys
[2009/04/10 22:46:17 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=B35CFCEF838382AB6490B321C87EDF17 -- C:\Windows\System32\drivers\atapi.sys
[2009/04/10 22:46:17 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=B35CFCEF838382AB6490B321C87EDF17 -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_7de13c21\atapi.sys
[2009/04/10 22:46:17 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=B35CFCEF838382AB6490B321C87EDF17 -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6000.16632_none_db337a442479c42c\atapi.sys
[2009/04/10 22:46:16 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=E03E8C99D15D0381E02743C36AFC7C6F -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6000.20757_none_dbac78a93da31a8b\atapi.sys

< MD5 for: CNGAUDIT.DLL >
[2006/11/02 04:46:03 | 000,011,776 | ---- | M] (Microsoft Corporation) MD5=7F15B4953378C8B5161D65C26D5FED4D -- C:\Windows\System32\cngaudit.dll
[2006/11/02 04:46:03 | 000,011,776 | ---- | M] (Microsoft Corporation) MD5=7F15B4953378C8B5161D65C26D5FED4D -- C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.0.6000.16386_none_e62d292932a96ce6\cngaudit.dll

< MD5 for: IASTORV.SYS >
[2008/01/19 02:42:51 | 000,235,064 | ---- | M] (Intel Corporation) MD5=54155EA1B0DF185878E0FC9EC3AC3A14 -- C:\Windows\SoftwareDistribution\Download\848c23cf13d83b3e0a6f1da97f3af588\x86_iastorv.inf_31bf3856ad364e35_6.0.6001.18000_none_af11527887c7fa8f\iaStorV.sys
[2006/11/02 04:51:25 | 000,232,040 | ---- | M] (Intel Corporation) MD5=C957BF4B5D80B46C5017BF0101E6C906 -- C:\Windows\System32\drivers\iaStorV.sys
[2006/11/02 04:51:25 | 000,232,040 | ---- | M] (Intel Corporation) MD5=C957BF4B5D80B46C5017BF0101E6C906 -- C:\Windows\System32\DriverStore\FileRepository\iastorv.inf_37cdafa4\iaStorV.sys

< MD5 for: KR10N.SYS >
[2006/11/09 16:31:46 | 000,211,072 | ---- | M] (TOSHIBA CORPORATION) MD5=6A4ADB9186DD0E114E623DAF57E42B31 -- C:\Windows\System32\drivers\KR10N.sys
[2006/11/09 16:31:46 | 000,211,072 | R--- | M] (TOSHIBA CORPORATION) MD5=6A4ADB9186DD0E114E623DAF57E42B31 -- C:\Windows\System32\DriverStore\FileRepository\kr10.inf_c681c175\KR10N.sys
[2005/09/27 18:57:38 | 000,207,104 | ---- | M] (TOSHIBA CORPORATION) MD5=A1963360E74931222A67356C8AD48378 -- C:\Windows\System32\DriverStore\FileRepository\kr10n.inf_f8c77270\KR10N.sys

< MD5 for: NETLOGON.DLL >
[2006/11/02 04:46:11 | 000,559,616 | ---- | M] (Microsoft Corporation) MD5=889A2C9F2AACCD8F64EF50AC0B3D553B -- C:\Windows\System32\netlogon.dll
[2006/11/02 04:46:11 | 000,559,616 | ---- | M] (Microsoft Corporation) MD5=889A2C9F2AACCD8F64EF50AC0B3D553B -- C:\Windows\winsxs\x86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.0.6000.16386_none_fb80f5473b0ed783\netlogon.dll
[2008/01/19 02:35:36 | 000,592,384 | ---- | M] (Microsoft Corporation) MD5=A8EFC0B6E75B789F7FD3BA5025D4E37F -- C:\Windows\SoftwareDistribution\Download\848c23cf13d83b3e0a6f1da97f3af588\x86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.0.6001.18000_none_fdb7b74337f9e857\netlogon.dll

< MD5 for: NVSTOR.SYS >
[2006/11/02 04:50:13 | 000,040,040 | ---- | M] (NVIDIA Corporation) MD5=9E0BA19A28C498A6D323D065DB76DFFC -- C:\Windows\System32\drivers\nvstor.sys
[2006/11/02 04:50:13 | 000,040,040 | ---- | M] (NVIDIA Corporation) MD5=9E0BA19A28C498A6D323D065DB76DFFC -- C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_733654ff\nvstor.sys
[2008/01/19 02:42:09 | 000,045,112 | ---- | M] (NVIDIA Corporation) MD5=ABED0C09758D1D97DB0042DBB2688177 -- C:\Windows\SoftwareDistribution\Download\848c23cf13d83b3e0a6f1da97f3af588\x86_nvraid.inf_31bf3856ad364e35_6.0.6001.18000_none_39dac327befea467\nvstor.sys

< MD5 for: SCECLI.DLL >
[2008/01/19 02:36:19 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=28B84EB538F7E8A0FE8B9299D591E0B9 -- C:\Windows\SoftwareDistribution\Download\848c23cf13d83b3e0a6f1da97f3af588\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.0.6001.18000_none_380de25bd91b6f12\scecli.dll
[2006/11/02 04:46:12 | 000,176,640 | ---- | M] (Microsoft Corporation) MD5=80E2839D05CA5970A86D7BE2A08BFF61 -- C:\Windows\System32\scecli.dll
[2006/11/02 04:46:12 | 000,176,640 | ---- | M] (Microsoft Corporation) MD5=80E2839D05CA5970A86D7BE2A08BFF61 -- C:\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.0.6000.16386_none_35d7205fdc305e3e\scecli.dll

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >
[2006/11/02 04:47:18 | 000,228,968 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\System32\rsaenh.dll
[2009/04/10 12:24:46 | 000,223,232 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\System32\SLC.dll

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >
[2007/05/23 19:55:52 | 006,045,696 | ---- | M] () -- C:\Windows\System32\config\COMPONENTS.SAV
[2007/05/23 19:55:50 | 000,098,304 | ---- | M] () -- C:\Windows\System32\config\DEFAULT.SAV
[2007/05/23 19:55:53 | 000,020,480 | ---- | M] () -- C:\Windows\System32\config\SECURITY.SAV
[2007/05/23 19:56:03 | 014,671,872 | ---- | M] () -- C:\Windows\System32\config\SOFTWARE.SAV
[2007/05/23 19:56:06 | 005,906,432 | ---- | M] () -- C:\Windows\System32\config\SYSTEM.SAV

========== Alternate Data Streams ==========

@Alternate Data Stream - 195 bytes -> C:\ProgramData\TEMP:D2F2F703
< End of report >
  • 0

Advertisements







Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP