Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 13-03-2013 (ATTENTION: FRST version is 23 days old)
Ran by SYSTEM at 05-04-2013 14:02:19
Running from F:\
Windows 7 Professional (X64) OS Language: English(US)
The current controlset is ControlSet001
==================== Registry (Whitelisted) ===================
HKLM\...\Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices [112512 2010-03-13] (Microsoft Corporation)
HKLM-x32\...\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [450560 2013-01-29] (DivX, LLC)
HKLM-x32\...\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [642808 2012-12-19] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [vProt] "C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe" [1151152 2013-02-18] ()
HKLM-x32\...\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW [1263952 2013-02-12] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [252848 2012-07-03] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [946352 2012-12-18] (Adobe Systems Incorporated)
HKU\evans\...\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [3671872 2012-04-17] (DT Soft Ltd)
HKU\evans\...\Run: [HydraVisionDesktopManager] "C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe" [393216 2011-09-23] (AMD)
HKU\Mcx1-DURBIN-PC\...\Winlogon: [Shell] C:\Windows\eHome\McrMgr.exe [343552 2009-07-13] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 209.18.47.61 209.18.47.62 192.168.1.1
==================== Services (Whitelisted) ===================
3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2013-02-07] ()
3 BRSptSvc; "C:\programdata\bitraider\BRSptSvc.exe" [1134872 2013-03-15] (BitRaider, LLC)
2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-02-12] ()
3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [745368 2012-11-26] (Tunngle.net GmbH)
2 vToolbarUpdater14.2.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\14.2.0\ToolbarUpdater.exe [968880 2013-02-18] ()
2 PinnacleUpdateSvc; C:\Program Files (x86)\PowerUp Software\Pinnacle Game Profiler\pinnacle_updater.exe [x]
==================== Drivers (Whitelisted) =====================
1 avgtp; \??\C:\Windows\system32\drivers\avgtpx64.sys [39768 2013-02-18] (AVG Technologies)
1 dtsoftbus01; C:\Windows\System32\Drivers\dtsoftbus01.sys [283200 2012-06-12] (DT Soft Ltd)
3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [8192 2005-03-28] ()
3 tap0901t; C:\Windows\System32\Drivers\tap0901t.sys [31232 2009-09-16] (Tunngle.net)
3 tapoas; C:\Windows\System32\Drivers\tapoas.sys [30720 2011-08-18] (The OpenVPN Project)
3 BRDriver64; \??\C:\programdata\bitraider\BRDriver64.sys [x]
==================== NetSvcs (Whitelisted) ====================
==================== One Month Created Files and Folders ========
2013-04-05 14:02 - 2013-04-05 14:02 - 00000000 ____D C:\FRST
2013-03-19 21:34 - 2013-03-19 21:34 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2013-03-19 21:34 - 2013-03-19 21:34 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2013-03-19 18:30 - 2013-03-19 19:05 - 1033788425 ____A C:\Users\evans\Downloads\The.Americans.2013.S01E06.720p.HDTV.X264-DIMENSION.mkv
2013-03-19 18:30 - 2013-03-19 18:57 - 793342603 ____A C:\Users\evans\Downloads\The.Americans.2013.S01E07.720p.HDTV.X264-DIMENSION.mkv
2013-03-19 09:46 - 2013-03-19 10:33 - 943825062 ____A C:\Users\evans\Downloads\playdu9082734nklef03.mp4
2013-03-19 09:22 - 2013-03-19 09:22 - 00000000 ____D C:\Program Files\Microsoft Synchronization Services
2013-03-19 09:22 - 2013-03-19 09:22 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2013-03-19 09:21 - 2013-03-19 09:21 - 00000000 ____D C:\Windows\PCHEALTH
2013-03-19 09:21 - 2013-03-19 09:21 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition
2013-03-19 09:20 - 2013-03-19 21:36 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-03-19 09:20 - 2013-03-19 09:21 - 00000000 ____D C:\Program Files\Microsoft Office
2013-03-19 09:20 - 2013-03-19 09:20 - 00000000 __RHD C:\MSOCache
2013-03-19 09:20 - 2013-03-19 09:20 - 00000000 ____D C:\Users\evans\AppData\Local\Microsoft Help
2013-03-19 09:20 - 2013-03-19 09:20 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2013-03-19 09:11 - 2013-03-19 09:17 - 361279488 ____A C:\Users\evans\Downloads\Microsoft Office 2010 Word x64 64bit.iso
2013-03-19 08:32 - 2013-03-19 09:01 - 00000000 ____D C:\Users\evans\Downloads\Microsoft Word 2010
2013-03-16 13:21 - 2013-03-16 14:08 - 787937931 ____A C:\Users\evans\Downloads\Let.Me.In.2011.720p.BluRay.x264.YIFY.mp4
2013-03-15 21:36 - 2013-03-19 16:16 - 00001923 ____A C:\Users\Public\Desktop\Marvel Heroes Beta.lnk
2013-03-15 18:57 - 2013-03-15 18:57 - 00000000 ____D C:\Program Files (x86)\Secret Identity Studios
2013-03-15 18:55 - 2013-03-15 18:55 - 00000000 ____D C:\Users\Public\Documents\BitRaider
2013-03-15 18:55 - 2013-03-15 18:55 - 00000000 ____D C:\ProgramData\bitraider
2013-03-13 19:53 - 2013-03-13 19:53 - 16486616 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2013-03-13 10:50 - 2013-02-01 23:31 - 17815040 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2013-03-13 10:50 - 2013-02-01 22:58 - 10925568 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2013-03-13 10:50 - 2013-02-01 22:57 - 02312704 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2013-03-13 10:50 - 2013-02-01 22:48 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2013-03-13 10:50 - 2013-02-01 22:47 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2013-03-13 10:50 - 2013-02-01 22:47 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2013-03-13 10:50 - 2013-02-01 22:46 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2013-03-13 10:50 - 2013-02-01 22:43 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2013-03-13 10:50 - 2013-02-01 22:42 - 00816640 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2013-03-13 10:50 - 2013-02-01 22:42 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2013-03-13 10:50 - 2013-02-01 22:41 - 00599040 ____A (Microsoft Corporation) C:\Windows\System32\vbscript.dll
2013-03-13 10:50 - 2013-02-01 22:40 - 00729088 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2013-03-13 10:50 - 2013-02-01 22:39 - 02147840 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2013-03-13 10:50 - 2013-02-01 22:38 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2013-03-13 10:50 - 2013-02-01 22:38 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2013-03-13 10:50 - 2013-02-01 22:34 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2013-03-13 10:50 - 2013-02-01 20:09 - 12321792 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-03-13 10:50 - 2013-02-01 19:42 - 09738240 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-03-13 10:50 - 2013-02-01 19:38 - 01800704 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-03-13 10:50 - 2013-02-01 19:31 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-03-13 10:50 - 2013-02-01 19:30 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2013-03-13 10:50 - 2013-02-01 19:30 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-03-13 10:50 - 2013-02-01 19:29 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2013-03-13 10:50 - 2013-02-01 19:27 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-03-13 10:50 - 2013-02-01 19:26 - 00717824 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-03-13 10:50 - 2013-02-01 19:26 - 00420864 ____A (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2013-03-13 10:50 - 2013-02-01 19:26 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2013-03-13 10:50 - 2013-02-01 19:25 - 00607744 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-03-13 10:50 - 2013-02-01 19:23 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-03-13 10:50 - 2013-02-01 19:23 - 01796096 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-03-13 10:50 - 2013-02-01 19:23 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2013-03-13 10:50 - 2013-02-01 19:20 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-03-13 10:49 - 2013-03-13 10:49 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-03-13 10:49 - 2013-03-13 10:49 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-03-13 05:52 - 2013-03-20 08:35 - 00002948 ____A C:\Windows\PFRO.log
2013-03-12 09:16 - 2012-04-28 15:24 - 00000000 ____D C:\Users\evans\Downloads\Adobe Photoshop CS6 Extended
2013-03-12 08:39 - 2013-03-20 08:35 - 00300752 ____A C:\Windows\System32\FNTCACHE.DAT
2013-03-12 08:25 - 2013-03-20 08:35 - 00001344 ____A C:\Windows\setupact.log
2013-03-12 08:25 - 2013-03-19 10:41 - 00064320 ____A C:\Users\evans\AppData\Local\GDIPFONTCACHEV1.DAT
2013-03-12 08:25 - 2013-03-12 08:25 - 00000000 ____A C:\Windows\setuperr.log
2013-03-10 11:50 - 2013-03-10 12:05 - 1396346733 ____A C:\Users\evans\Downloads\Adobe Photoshop CS6 Extended.exe
2013-03-09 06:40 - 2013-03-14 18:53 - 00000000 ____D C:\Users\evans\AppData\Local\Arma 3 Alpha
2013-03-09 06:40 - 2013-03-09 08:09 - 00000000 ____D C:\Users\evans\Documents\Arma 3 Alpha
2013-03-08 19:11 - 2013-03-09 08:16 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
==================== One Month Modified Files and Folders =======
2013-03-22 16:25 - 2011-09-21 15:12 - 00000000 ____D C:\Program Files (x86)\Origin
2013-03-20 09:20 - 2012-03-03 00:35 - 01907707 ____A C:\Windows\WindowsUpdate.log
2013-03-20 08:53 - 2012-10-05 11:10 - 00000830 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-03-20 08:43 - 2009-07-13 20:45 - 00013808 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-03-20 08:43 - 2009-07-13 20:45 - 00013808 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-03-20 08:40 - 2009-07-13 21:13 - 00779266 ____A C:\Windows\System32\PerfStringBackup.INI
2013-03-20 08:35 - 2013-03-13 05:52 - 00002948 ____A C:\Windows\PFRO.log
2013-03-20 08:35 - 2013-03-12 08:39 - 00300752 ____A C:\Windows\System32\FNTCACHE.DAT
2013-03-20 08:35 - 2013-03-12 08:25 - 00001344 ____A C:\Windows\setupact.log
2013-03-20 08:35 - 2009-07-13 21:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2013-03-19 21:36 - 2013-03-19 09:20 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-03-19 21:34 - 2013-03-19 21:34 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2013-03-19 21:34 - 2013-03-19 21:34 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2013-03-19 21:31 - 2011-10-19 18:06 - 00000000 ____D C:\Users\evans\AppData\Roaming\vlc
2013-03-19 19:05 - 2013-03-19 18:30 - 1033788425 ____A C:\Users\evans\Downloads\The.Americans.2013.S01E06.720p.HDTV.X264-DIMENSION.mkv
2013-03-19 18:57 - 2013-03-19 18:30 - 793342603 ____A C:\Users\evans\Downloads\The.Americans.2013.S01E07.720p.HDTV.X264-DIMENSION.mkv
2013-03-19 16:44 - 2012-07-16 17:01 - 00000000 ____D C:\Users\evans\AppData\Roaming\Awesomium
2013-03-19 16:16 - 2013-03-15 21:36 - 00001923 ____A C:\Users\Public\Desktop\Marvel Heroes Beta.lnk
2013-03-19 10:41 - 2013-03-12 08:25 - 00064320 ____A C:\Users\evans\AppData\Local\GDIPFONTCACHEV1.DAT
2013-03-19 10:33 - 2013-03-19 09:46 - 943825062 ____A C:\Users\evans\Downloads\playdu9082734nklef03.mp4
2013-03-19 10:06 - 2011-08-31 23:35 - 00000000 ____D C:\Users\evans\AppData\Roaming\BitTorrent
2013-03-19 09:22 - 2013-03-19 09:22 - 00000000 ____D C:\Program Files\Microsoft Synchronization Services
2013-03-19 09:22 - 2013-03-19 09:22 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2013-03-19 09:22 - 2009-07-13 19:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2013-03-19 09:21 - 2013-03-19 09:21 - 00000000 ____D C:\Windows\PCHEALTH
2013-03-19 09:21 - 2013-03-19 09:21 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition
2013-03-19 09:21 - 2013-03-19 09:20 - 00000000 ____D C:\Program Files\Microsoft Office
2013-03-19 09:20 - 2013-03-19 09:20 - 00000000 __RHD C:\MSOCache
2013-03-19 09:20 - 2013-03-19 09:20 - 00000000 ____D C:\Users\evans\AppData\Local\Microsoft Help
2013-03-19 09:20 - 2013-03-19 09:20 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2013-03-19 09:19 - 2011-09-01 10:32 - 00000000 ____D C:\Users\evans\AppData\Roaming\DAEMON Tools Lite
2013-03-19 09:17 - 2013-03-19 09:11 - 361279488 ____A C:\Users\evans\Downloads\Microsoft Office 2010 Word x64 64bit.iso
2013-03-19 09:01 - 2013-03-19 08:32 - 00000000 ____D C:\Users\evans\Downloads\Microsoft Word 2010
2013-03-18 20:55 - 2011-09-04 13:27 - 00281288 ____A C:\Windows\SysWOW64\PnkBstrB.xtr
2013-03-18 20:55 - 2011-09-04 13:27 - 00281288 ____A C:\Windows\SysWOW64\PnkBstrB.exe
2013-03-18 19:21 - 2012-04-14 18:24 - 00000000 ____D C:\Program Files (x86)\The Elder Scrolls V Skyrim
2013-03-18 19:21 - 2011-11-10 21:59 - 00000000 ____D C:\Users\evans\AppData\Local\Skyrim
2013-03-18 19:14 - 2011-12-18 14:20 - 00000000 ____D C:\Program Files\Nexus Mod Manager
2013-03-18 19:11 - 2011-12-18 14:20 - 00000000 ____D C:\Users\evans\Documents\Nexus Mod Manager
2013-03-18 17:05 - 2012-03-04 00:21 - 00000000 ____D C:\Users\evans\AppData\Roaming\Skype
2013-03-16 14:12 - 2011-08-31 23:14 - 00000000 ____D C:\users\evans
2013-03-16 14:08 - 2013-03-16 13:21 - 787937931 ____A C:\Users\evans\Downloads\Let.Me.In.2011.720p.BluRay.x264.YIFY.mp4
2013-03-16 11:30 - 2009-07-13 21:08 - 00032646 ____A C:\Windows\Tasks\SCHEDLGU.TXT
2013-03-16 10:22 - 2012-05-14 20:37 - 00000000 ____D C:\Program Files (x86)\Diablo III
2013-03-16 09:49 - 2011-09-04 13:27 - 00281288 ____A C:\Windows\SysWOW64\PnkBstrB.ex0
2013-03-15 21:01 - 2012-08-19 19:39 - 00000000 ____D C:\Users\evans\AppData\Roaming\TS3Client
2013-03-15 18:57 - 2013-03-15 18:57 - 00000000 ____D C:\Program Files (x86)\Secret Identity Studios
2013-03-15 18:57 - 2012-12-25 09:20 - 00000000 ____D C:\Users\evans\AppData\Local\ArmA 2 OA
2013-03-15 18:55 - 2013-03-15 18:55 - 00000000 ____D C:\Users\Public\Documents\BitRaider
2013-03-15 18:55 - 2013-03-15 18:55 - 00000000 ____D C:\ProgramData\bitraider
2013-03-15 12:36 - 2013-02-23 21:40 - 00000000 ____D C:\Users\evans\AppData\Local\Arma2NET
2013-03-15 12:26 - 2011-11-26 01:34 - 00000000 ____D C:\Users\evans\AppData\Local\Downloaded Installations
2013-03-14 18:53 - 2013-03-09 06:40 - 00000000 ____D C:\Users\evans\AppData\Local\Arma 3 Alpha
2013-03-13 19:53 - 2013-03-13 19:53 - 16486616 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2013-03-13 19:53 - 2012-04-24 18:27 - 00693976 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-03-13 19:53 - 2011-08-31 23:41 - 00073432 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-03-13 10:51 - 2011-09-14 13:50 - 72013344 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
2013-03-13 10:49 - 2013-03-13 10:49 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-03-13 10:49 - 2013-03-13 10:49 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-03-13 05:52 - 2012-10-03 13:47 - 00000000 ____D C:\Program Files (x86)\Battlelog Web Plugins
2013-03-12 19:29 - 2011-09-07 13:23 - 00000000 ____D C:\Users\evans\AppData\Local\SKIDROW
2013-03-12 08:25 - 2013-03-12 08:25 - 00000000 ____A C:\Windows\setuperr.log
2013-03-12 07:48 - 2012-03-22 10:57 - 00000000 ____D C:\Users\evans\Downloads\Beachbody Insanity
2013-03-11 15:10 - 2011-11-18 17:07 - 00182784 __ASH C:\Users\evans\Downloads\Thumbs.db
2013-03-10 12:05 - 2013-03-10 11:50 - 1396346733 ____A C:\Users\evans\Downloads\Adobe Photoshop CS6 Extended.exe
2013-03-09 14:55 - 2012-04-26 06:27 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-03-09 08:16 - 2013-03-08 19:11 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-03-09 08:09 - 2013-03-09 06:40 - 00000000 ____D C:\Users\evans\Documents\Arma 3 Alpha
2013-03-06 16:40 - 2011-11-19 13:09 - 00000000 ____D C:\Users\evans\AppData\Roaming\Tunngle
2013-03-06 16:39 - 2011-11-19 13:09 - 00000000 ____D C:\ProgramData\Tunngle
2013-03-06 16:37 - 2013-03-05 09:38 - 00000000 ____D C:\Program Files (x86)\Crysis 3
2013-03-06 16:11 - 2013-03-05 09:32 - 00004049 ____A C:\Users\evans\Documents\TombRaider.log
==================== Known DLLs (Whitelisted) =================
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
==================== EXE ASSOCIATION =====================
HKLM\...\.exe: exefile => OK
HKLM\...\exefile\DefaultIcon: %1 => OK
HKLM\...\exefile\open\command: "%1" %* => OK
==================== Restore Points =========================
==================== Memory info ===========================
Percentage of memory in use: 8%
Total physical RAM: 16282.99 MB
Available physical RAM: 14826.54 MB
Total Pagefile: 16281.14 MB
Available Pagefile: 14915.54 MB
Total Virtual: 8192 MB
Available Virtual: 8191.89 MB
==================== Partitions =============================
1 Drive c: () (Fixed) (Total:465.75 GB) (Free:187.28 GB) NTFS ==>[System with boot components (obtained from reading drive)]
2 Drive e: () (Fixed) (Total:931.41 GB) (Free:624.1 GB) NTFS
3 Drive f: () (Removable) (Total:1.95 GB) (Free:1.95 GB) FAT32
4 Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS
5 Drive y: (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Disk ### Status Size Free Dyn Gpt
-------- ------------- ------- ------- --- ---
Disk 0 Online 931 GB 0 B
Disk 1 Online 465 GB 9 MB
Disk 2 Online 2004 MB 0 B
Partitions of Disk 0:
===============
Disk ID: D5376BA7
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 100 MB 1024 KB
Partition 2 Primary 931 GB 101 MB
==================================================================================
Disk: 0
Partition 1
Type : 07
Hidden: No
Active: Yes
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 0 Y System Rese NTFS Partition 100 MB Healthy
=========================================================
Disk: 0
Partition 2
Type : 07
Hidden: No
Active: No
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 1 E NTFS Partition 931 GB Healthy
=========================================================
Partitions of Disk 1:
===============
Disk ID: 7FB37FB3
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 465 GB 31 KB
==================================================================================
Disk: 1
Partition 1
Type : 07
Hidden: No
Active: Yes
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 2 C NTFS Partition 465 GB Healthy
=========================================================
Partitions of Disk 2:
===============
Disk ID: 00000001
Partition ### Type Size Offset
------------- ---------------- ------- -------
* Partition 1 Primary 2004 MB 0 B
==================================================================================
Disk: 2
There is no partition selected.
There is no partition selected.
Please select a partition and try again.
=========================================================
============================== MBR Partition Table ==================
==============================
Partitions of Disk 0:
===============
Disk ID: D5376BA7
Partition 1:
=========
Hex: 8020210007DF130C0008000000200300
Active: YES
Type: 07 (NTFS)
Size: 100 MB
Partition 2:
=========
Hex: 00DF140C07FEFFFF0028030000386D74
Active: NO
Type: 07 (NTFS)
Size: 931 GB
==============================
Partitions of Disk 1:
===============
Disk ID: 7FB37FB3
Partition 1:
=========
Hex: 8001010007FEFFFF3F000000410D383A
Active: YES
Type: 07 (NTFS)
Size: 466 GB
==============================
Partitions of Disk 2:
===============
Disk ID: 73696D20
Partition 1:
=========
Hex: 6E67FF0D0A4469736B206572726F72FF
Active: NO
Type: 0A
Size: -4750121984 byte
Partition 2:
=========
Hex: 0D0A507265737320616E79206B657920
Active: NO
Type: 65
Size: 260 GB
Partition 3:
=========
Hex: 746F20726573746172740D0A00000000
Active: NO
Type: 65
Size: 0 byte
Partition 4:
=========
Hex: 0000000000000000000000ACC1CE0000
Active: NO
Type: 00
Size: 26 MB
Last Boot: 2013-03-15 11:08
==================== End Of Log =============================