Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Computer running slow [Closed]


  • This topic is locked This topic is locked

#1
corbek

corbek

    Member

  • Member
  • PipPipPip
  • 112 posts
Hello ladies and gents,

Hoping I could get some help from someone who is a little more knowledgeable about this than I am.

Been having some performance issues with my PC lately. Seems to be starting up pretty slow (could be because of start up programs though), performance during games is choppy and way below what it should be, web browsing seems to be intermittent at times, had some issues with a redirection malware a while back, I think I cleaned it up but may have missed part of it. Overall it seems like it is just running slower than normal. Another thing is that I used to have adblock and I would rarely get ads or popups, however, now I see them every once in a while. Haven't had a chance to reformat, and I really don't have the time to do that during the holidays so I thought I would consult the masters.

For the most part the issues for me seem to be a marked reduction in performance over the last month or so, right around the time I ran into that malware that would redirect my web browsing to sites that were on endless loops. I no longer get redirected, but I am not 100% sure I removed all parts of it (cannot remember the name of the program/file that I removed to stop the redirection, sorry). It also seems like my internet goes down every once in a while, however I am still able to play games I just can't search the web, and in some games I am unable to communicate via text/VOIP at times (my internet speed is sufficient, however connectivity problems may exist since I am using a Power Line Adapter). It's only happened a few times so I am unsure if it is my connection to the internet that is failing in that case, or if it has something to do with this.

I do torrent but not day in and day out, usually use it to test a game out before I buy it, I use AVG for virus protection, no luck there, ran CCleaner yesterday and seemed to help a bit, but still seems a little slow. I also had a BSOD while playing a game a while ago so it could have been hardware failure right there, but it hasn't happened again for a few weeks.

OTL.Txt file is attached if you want it, otherwise it's here too. The little OTL program created two txt documents, an OTL.txt and an Extras.txt, if you need the Extras.txt just let me know, will put the OTL one in the following spoiler.

Spoiler


[Edit: Spoiler fixed]

Attached Files

  • Attached File  OTL.Txt   123.94KB   26 downloads

Edited by corbek, 01 December 2013 - 12:51 PM.

  • 0

Advertisements


#2
godawgs

godawgs

    Teacher

  • Retired Staff
  • 8,228 posts
Hello Aaron, :wave: Welcome to the forums!
:welcome:. My name is godawgs and I will be assisting you with your Virus / Malware issues.
We apologize for the delay in responding to your request for help. Here at GeeksToGo we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.

I will start working on your Malware issues. This may, or may not, solve other issues you have with your machine. The fixes are specific to your problem and should only be used for this issue on this machine!

If you have since resolved the issues you were originally experiencing, or have received help elsewhere, please inform me so that this topic can be closed.
If you have not, please adhere to the guidelines below and then carefully follow all future instructions:

You must reply to posts within four days. If you haven't replied within that time, the topic will be closed! If you need additional time to complete things, just let me know.
If you're not sure, or if something unexpected happens, Do NOT continue! Stop and ask!

This board can notify you when a new reply is added to a topic. Please read this topic to find out how to do that.

Please do not run any tools unless instructed to do so.
  • We ask you to run different tools in a specific order to ensure the malware is completely removed from your machine, and running any additional tools may detect false positives, interfere with our tools, or cause unforeseen damage or system instability. Do as the instructions ask, nothing extra. Do Not run things twice unless instructed.
  • Your security programs may give warnings for some of the tools I will ask you to use. Be assured, any links I give are safe.
  • If I ask a Question just answer it, don't run anything unless directed to.
Please read every post completely before doing anything.
  • Pay special attention to the NOTE: lines, or anything in red. These entries identify an individual issue or important step in the cleanup process.
  • Please make sure you are saving and printing the instructions out prior to each fix, this way you will have them on hand just in case you are unable to access this site. Some of the steps I will be asking you to do may require you to boot into Safe Mode and this process will be much easier for you to perform if the instructions are printed out for you to follow.
  • Please do not use the Attachment feature for any log file. Do a Copy/Paste of the entire contents of the log file and submit it inside your post unless directed otherwise.
Logs from malware diagnostic or removal programs (OTL is one of them) can take some time to analyze.
  • I need you to be patient while I analyze any logs you post. Please remember, I am a volunteer, and I do have a life outside of these forum, (sometimes :lol: )
  • Attention to detail is important! Since I cannot see or directly interact with your computer I am dependent on you to "be my eyes" and provide as much information as you can regarding the current state of your computer.
Lastly, Please be aware that removing Malware is a hazardous undertaking. I will take care not to knowingly suggest courses of action that might damage your computer. However it is impossible for me to foresee all interactions that may happen between the software on your computer and those we'll use to clear you of infection, and I cannot guarantee the safety of your system. Some infections are so severe that we might encounter situations where the only recourse is to re-format and re-install your operating system. Don't worry, this only happens in severe cases, but, sadly, it does happen.
In light of this be prepared to back up your data. Have means of backing up your data available.

IMPORTANT:Change your browser(s) to download any tools to the desktop.
Follow the directions here
For FireFox check the dot beside "Always ask me where to save files."
For Chrome, check the box beside "Ask where to save each file before downloading"
NOTE: IE8 Does not support changing download locations in this manner. You will need to download the tool(s) to the default folder, usually Downloads, then copy them to the desktop.

When OTL runs the first time it creates a file named Extras.txt. It should be in the same directory you ran OTL from. That should be the C:\Users\Aaron\Downloads folder. Please post the contents of that file.

Please do not put your logs in Spoiler tags. Just copy and paste them into your replys,
  • 0

#3
corbek

corbek

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 112 posts
Here is the Extras.txt

Thanks for the help!

OTL Extras logfile created on: 11/30/2013 3:56:20 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Aaron\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.16428)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

7.96 Gb Total Physical Memory | 5.48 Gb Available Physical Memory | 68.78% Memory free
15.92 Gb Paging File | 13.00 Gb Available in Paging File | 81.67% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 931.41 Gb Total Space | 307.82 Gb Free Space | 33.05% Space Free | Partition Type: NTFS
Drive E: | 490.04 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Drive F: | 100.00 Mb Total Space | 61.85 Mb Free Space | 61.85% Space Free | Partition Type: NTFS

Computer Name: AARON-PC | User Name: Aaron | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0B3D08E6-629F-42CA-A3E8-805AE27F11A0}" = lport=7423 | protocol=17 | dir=in | name=netgear usb control center udp port |
"{2FB5D542-445C-4902-B275-5421C5E8FCBA}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | [email protected],-28539 |
"{31F56B24-5CB1-43D5-8853-5C19510CC6CD}" = rport=445 | protocol=6 | dir=out | app=system |
"{4532E8CB-140B-42FA-A8A5-607758D81389}" = lport=138 | protocol=17 | dir=in | app=system |
"{526DD303-2001-4832-B9F0-992C0AB7CB9B}" = rport=427 | protocol=17 | dir=in | svc=hpslpsvc | app=c:\windows\system32\svchost.exe |
"{557CFBF3-F317-4B96-9970-C7C85C2A1C3A}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{6B79BA30-1001-4658-9788-69B3B40D73D3}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{7692A705-802C-4CBF-990D-9401E3C8CBC5}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{7AD3A924-EFC9-42F0-9388-BE4E529CDA29}" = lport=2869 | protocol=6 | dir=in | app=system |
"{8AE2AEAF-1550-4490-AA4B-02108489AE18}" = lport=445 | protocol=6 | dir=in | app=system |
"{8C381F37-0ECA-4B86-B714-469A6A7D8BC7}" = rport=139 | protocol=6 | dir=out | app=system |
"{8C4CD51E-C743-4465-88CD-41BABA5E8875}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{99C63A56-8D5C-49D7-8EAB-D7783D908812}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{A5E51101-380F-4E9D-B06A-DF1203B30F7F}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{ACDB3F0F-5B5C-4D32-9E5B-4583DAFEE0C3}" = lport=139 | protocol=6 | dir=in | app=system |
"{B25D7058-26CE-440B-B284-8804A1F993AB}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{B3284DFC-9131-4CE6-896D-25A3440361EF}" = rport=138 | protocol=17 | dir=out | app=system |
"{BCCF276E-DF35-4681-857D-9CF4639A3E18}" = lport=137 | protocol=17 | dir=in | app=system |
"{CECA3A6B-670D-417A-BE7D-28A5FDD37816}" = rport=137 | protocol=17 | dir=out | app=system |
"{CF140D3E-0DF0-4BCF-B1C9-25B11BE48079}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{E8586AA8-89BD-450C-9565-F764B97A73E5}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{F3EAF56B-8C2F-488B-B298-1486400D4050}" = lport=10243 | protocol=6 | dir=in | app=system |
"{FA7FDDE2-B46A-45F1-8C2E-AA117082B45D}" = rport=10243 | protocol=6 | dir=out | app=system |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{01C0E3AA-FC0F-49D1-BFF7-A73C8CA7F297}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{02EB1263-75B8-45B6-8A84-957B1DAFCC69}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\aliens colonial marines\binaries\win32\acm.exe |
"{047B0CCD-9974-4137-8170-D93A033FF27D}" = protocol=17 | dir=in | app=c:\windows\syswow64\arfc\wrtc.exe |
"{04EA9232-753D-4AA5-9AEF-DC8CD18B2073}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2013\avgnsa.exe |
"{079CFEDE-D220-4095-B6CD-5FD6916D6790}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\chivalrymedievalwarfare\binaries\win32\udk.exe |
"{0A1C7372-AD56-4076-8670-A2C7A6EEE0CD}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\castle story\castle story prototype.exe |
"{0D0509F6-791F-402A-A930-61C9691F1391}" = protocol=6 | dir=in | app=c:\program files\java\jre7\bin\javaw.exe |
"{0DA7BDF7-8A0D-4D47-9B6C-0B81E730836C}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed ii\assassinscreediigame.exe |
"{15AD73D9-934F-4693-9479-1BA4DA615A66}" = protocol=6 | dir=in | app=c:\program files (x86)\diablo iii\diablo iii.exe |
"{15BB3D26-6298-4FF5-9450-5CBDC7CCF34F}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2014\avgdiagex.exe |
"{1617DFCB-73AB-4AE4-86D3-3C1C73959F12}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\garrysmod\hl2.exe |
"{170BBD64-BABF-4752-872E-0760227347E6}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2014\avgmfapx.exe |
"{176A1F61-E7DC-4581-9F37-E0DAE31DD7FD}" = protocol=58 | dir=in | [email protected],-28545 |
"{182BA160-BB4E-4504-993C-D37509967173}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{1A5543F3-06A8-476F-97CB-D0E1A2B0EEC8}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed ii\assassinscreedii.exe |
"{1C6EF304-B280-42DF-B97E-C6472EB29CEE}" = protocol=6 | dir=in | app=c:\windows\system32\dmwu.exe |
"{1CB31BF4-3D8A-4346-8158-72853869EC16}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\hammerwatch\hammerwatch.exe |
"{1F8781C6-C690-4B11-9CEB-737DD249E6AF}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2045\agent.exe |
"{244B909B-17E4-459D-AD74-904931DF6279}" = protocol=17 | dir=in | app=c:\program files (x86)\total war rome ii\rome2.exe |
"{265E4F79-035F-427F-A143-B0858CC033FA}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpiscnapp.exe |
"{29047FC1-CF4A-4D94-8237-F2F1670D2DB5}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\chivalrymedievalwarfare\binaries\win32\udk.exe |
"{2CD5EB1E-AE28-4576-B42A-5CED8529F8F0}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2013\avgmfapx.exe |
"{2F3F7C48-A62E-4DDE-B9A9-A98AA8520CAE}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\nmrih\sdk\bin\hammer.bat |
"{2F75468F-B743-4070-A7B8-3C33C6B0AE4D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\chivalrymedievalwarfare\chivlauncher.exe |
"{32980143-FE11-4B02-BBC9-7F218EF63AC5}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\projectzomboid\projectzomboid64.exe |
"{33843E92-A0AC-4328-8327-DFAE80F5D687}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2013\avgdiagex.exe |
"{36DC880D-3204-4468-A8E9-6C0808E70197}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{3707D630-B8A8-4B3C-B287-2608738ADBF3}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqkygrp.exe |
"{37D0D7E5-6D47-4CCA-97C0-62E8FF2FA326}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\payday 2\payday2_win32_release.exe |
"{3A410906-4EEA-47DA-9724-98E7B8958D9A}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{3AD99543-F5D0-4459-B084-DD20D7221172}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\battlefield 1942\bf1942.exe |
"{3AEB8F29-32F0-4DB8-BDF3-30777C8CB2ED}" = protocol=17 | dir=in | app=c:\users\aaron\downloads\downloader_diablo2_lord_of_destruction_enus.exe |
"{3C0CA253-1E54-420C-B3FC-9F2AA40C521A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\payday 2\payday2_win32_release.exe |
"{3CE0FA5A-CF97-4BF1-9BEC-3B9BE257ED12}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2013\avgemca.exe |
"{40B2CBEE-FB07-4204-A996-8E455AA69033}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{438861E8-36FB-4F7E-9C8C-65E933212421}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2013\avgemca.exe |
"{447D78D7-4C0C-47F7-AA6F-4E9818E620C4}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed ii\uplaybrowser.exe |
"{488442BE-C7E5-49EC-8EA7-5FE50184B1ED}" = protocol=6 | dir=out | app=system |
"{4ADA97ED-7A60-421F-9C1A-6FED773E05AC}" = protocol=17 | dir=in | app=c:\program files (x86)\diablo iii\diablo iii.exe |
"{4D03D098-5C48-4793-8134-91294D5906F6}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\killingfloor\system\killingfloor.exe |
"{4D4EDB49-CEC7-4630-9392-C834DC94BEE4}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{4DD259BE-50AD-4989-9140-03A5CA95ED89}" = protocol=6 | dir=in | app=c:\users\aaron\appdata\roaming\utorrent\utorrent.exe |
"{50C151E2-965E-4A01-BC57-24A6EBC2D799}" = protocol=17 | dir=in | app=c:\users\aaron\downloads\utorrent.exe |
"{53FA2C13-09E0-49BE-A511-498505D3130F}" = dir=out | app=%programfiles% (x86)\square enix\hitman absolution\hma.exe |
"{54301523-40F8-4356-B0F0-AA745BDB24CE}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\baldur's gate enhanced edition\bgee.exe |
"{58777BCA-F370-4474-9894-A6C255B3DE34}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2014\avgnsa.exe |
"{58CFD8CF-0C4C-4333-8FE0-656E377658A3}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\chivalrymedievalwarfare\binaries\win32\udk.exe |
"{59566B86-0014-49BD-8E24-17CA1846D766}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{5A238000-F7E5-4B98-8F0C-060C22051B30}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{5BD7A594-346D-4461-82E5-CCBFBA9AED15}" = protocol=1 | dir=out | [email protected],-28544 |
"{5CB2EE7E-0790-4757-AAB4-54017349E3AC}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.954\agent.exe |
"{5D24AB5A-F1DA-48DC-8977-24507C6956A2}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\guns of icarus online\gunsoficarusonline.exe |
"{5D787AD9-1631-4439-98E9-0D134DCBBAC5}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{5D98B6CC-C953-40B9-AA26-89931509C16B}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2045\agent.exe |
"{5DBD98D8-8D17-4E6D-9073-1DD26634B1EC}" = protocol=17 | dir=in | app=c:\program files (x86)\netgear\usb control center\control center.exe |
"{5FD15EF7-9629-4980-B1BC-7374408ED415}" = protocol=17 | dir=in | app=c:\program files (x86)\winamp\winamp.exe |
"{641B7AF0-31E6-4378-95F4-97D2FECBBDEF}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{6534BE05-17D5-42F9-9672-E377311F445F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{6885962F-C414-46CD-9044-432BC67F8019}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\nmrih\sdk\hl2.exe |
"{6A40D92B-C5F9-4C12-91CD-AB6B4E25861B}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{6B14655E-AC16-4BB7-B667-4CF1EFA7EB05}" = protocol=6 | dir=in | app=c:\users\aaron\downloads\utorrent.exe |
"{6BC5C828-F935-4EFE-9422-48FF76035FA0}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\garrysmod\hl2.exe |
"{70B680FA-F991-4FDF-A2C7-6615591AA58F}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2014\avgemca.exe |
"{71954A44-2A7C-4CA0-82D1-DF0F561C5F9A}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\hammerwatch\editor\hammereditor.exe |
"{72728B0C-DCE5-4100-B5A3-1BB6F6A7CAF5}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{72978F54-A747-4ADB-971C-CDE54DF96D06}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{735D27C8-245E-4A2F-907D-A30BBABD223B}" = protocol=58 | dir=in | app=system |
"{79328CAD-185B-4A51-812A-7762A8C8AAC1}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\hammerwatch\editor\hammereditor.exe |
"{7A10D868-53F1-42AB-9F44-32617C591F01}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{7A34CFF0-8A19-4A68-80C9-2E0D58467F0E}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{7A675302-8469-4547-A220-F579FED0D8A9}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{7B299725-45E9-4596-80E6-E9AC93CC0CBF}" = protocol=17 | dir=in | app=c:\program files\java\jre7\bin\javaw.exe |
"{7BC17585-3D7D-4210-9899-3C4D5AAEFB9D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\aliens colonial marines\binaries\win32\acm.exe |
"{7ECC548C-F11B-4C50-A542-B199606055FF}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\l.a.noire\lanlauncher.exe |
"{80B00E11-88DD-45CB-B10B-74A1CC617D2E}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\state of decay\stateofdecay.exe |
"{82771F15-5F32-4368-8E1F-513EF0DBE05D}" = protocol=6 | dir=in | app=c:\program files (x86)\total war rome ii\rome2.exe |
"{82794073-36E7-42F2-A318-E16364D9370B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\natural selection 2\ns2.exe |
"{828BB171-D380-4353-805E-E77C0367ECFB}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\final fantasy vii\ff7_launcher.exe |
"{83057FDC-81D1-48DD-83F1-3530B41063ED}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2013\avgmfapx.exe |
"{8328A7EA-119B-4770-A28A-46C3D8383E74}" = dir=in | app=%programfiles% (x86)\square enix\hitman absolution\hma.exe |
"{832BF8D6-6AF9-485C-9A74-E153813130D7}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\final fantasy vii\ff7_launcher.exe |
"{835E00BB-FE38-4CCB-8650-E6B92451FA9F}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2380\agent.exe |
"{88743003-891A-40DB-B7BC-058C199C65AE}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\garrysmod\hl2.exe |
"{890DF3E4-9D0D-4834-9A4C-4276D0624BB1}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{8AA091E4-C754-44EF-98B3-44656EB2D926}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\l.a.noire\lanlauncher.exe |
"{8AB78B03-7A7F-413A-99DC-E524246C3DEB}" = protocol=6 | dir=in | app=c:\users\aaron\downloads\downloader_diablo2_enus.exe |
"{8B00DB05-A745-4C6B-AD24-747133EC4ABB}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{8DE25EA9-F567-477C-BA3A-18CB6331FDF0}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\chivalrymedievalwarfare\chivlauncher.exe |
"{904DCC1B-6B39-4A2D-BDDF-A706664C15EB}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2013\avgnsa.exe |
"{946127D3-9660-4AAE-8B3A-AB40DC0FAFB1}" = protocol=58 | dir=out | [email protected],-503 |
"{967A86D4-F82B-45DC-8DA1-1DFFCA29A707}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\natural selection 2\ns2.exe |
"{9D4A12EA-6546-4892-BC2D-411E6D71F830}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{A0D157E0-69C4-4946-B329-2CFB1D134517}" = protocol=6 | dir=in | app=c:\windows\syswow64\arfc\wrtc.exe |
"{A0D20CFE-3111-4B67-8E2B-AD84BB20B23E}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{A14D7137-F001-426E-B3E9-1D18F28AABAB}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2380\agent.exe |
"{A3F4783A-514A-439F-9597-689580097283}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\garrysmod\hl2.exe |
"{A4620EAC-FEFF-4B45-BC8B-21F5FB754E1C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike source\hl2.exe |
"{AAE0EBA2-4537-4FB8-952D-C59BBE20C785}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe |
"{AE9DDCC6-F250-43FB-899E-3BEA9A1D73EB}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\nmrih\sdk\hl2.exe |
"{AF96C1DD-F107-4883-8DEE-BD008D4572FA}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2014\avgnsa.exe |
"{AFCB6BF4-C7AC-48C8-902E-4704A21AA698}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{B0E75898-1D81-4305-92B3-50918B134A53}" = protocol=6 | dir=in | app=c:\windows\syswow64\muzapp.exe |
"{B14E3EDF-ED0C-499F-86A1-2519A42A100C}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.954\agent.exe |
"{B2060E1F-A82B-48EB-AF67-E049B0382CAD}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\chivalrymedievalwarfare\binaries\win32\udk.exe |
"{B49CF1D0-D02D-437F-BAFD-DDC14A142ECB}" = protocol=17 | dir=in | app=c:\program files (x86)\netgear genie\bin\netgeargenie.exe |
"{B513FF1A-910F-4F68-8D02-70623FB72453}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\fallout new vegas\falloutnvlauncher.exe |
"{B6767900-1273-4ECC-9BE3-0FEAE2844985}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed ii\uplaybrowser.exe |
"{B6BEDD42-BFAF-4CDC-BC9D-900A3797D67A}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{B7B13AB4-09A3-47ED-A48F-EAAB4FDB0224}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed ii\assassinscreediigame.exe |
"{B8F99FED-1AC0-4C95-91E8-998205FE5A98}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\guns of icarus online\gunsoficarusonline.exe |
"{BBEA9568-7B33-4DA2-8F58-33B0D96EECD2}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\state of decay\stateofdecay.exe |
"{BC8B6D3D-991D-4F54-BEEE-34166DD91453}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\hammerwatch\hammerwatch.exe |
"{BDFC2E16-8FB8-4547-907B-2E6A84759E2A}" = protocol=6 | dir=in | app=c:\program files (x86)\winamp\winamp.exe |
"{BF3E132F-A583-48D4-A954-E959873CAC53}" = protocol=6 | dir=in | app=c:\users\aaron\downloads\downloader_diablo2_lord_of_destruction_enus.exe |
"{C192C4CB-B949-4205-A790-4A569E0432B9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\baldur's gate enhanced edition\bgee.exe |
"{CB8CDE0B-467E-4425-BF09-E988CAAE8416}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\castle story\castle story prototype.exe |
"{CD642862-0742-4BF0-BEDD-8642E48232DF}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\company of heroes 2\reliccoh2.exe |
"{CF9634B6-2D01-4B5C-93F5-B3031C0F305A}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\battlefield 1942\bf1942.exe |
"{D2FE9530-31FA-4E49-9082-CCF021A3D529}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\fallout new vegas\falloutnvlauncher.exe |
"{D445B383-FCB4-4788-8806-76DC6950DF53}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe |
"{DA649F0C-1356-4528-BB3D-9C59CCB7C326}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike source\hl2.exe |
"{DBF5FC78-367C-4F8B-9C3A-DEB1CB90DACE}" = protocol=17 | dir=in | app=c:\users\aaron\downloads\downloader_diablo2_enus.exe |
"{DC079551-6459-4BC5-87F5-86DF01DE8917}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\impire\impire.exe |
"{DD5D1721-B0E2-47B4-B6BF-1DFC08D0D66F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\killingfloor\system\killingfloor.exe |
"{DECF4A9E-183E-4B68-8D9B-5397C1051C74}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\gnomoria\gnomoria.exe |
"{DF264C9B-09C1-4DA6-A976-B4500BA89C0F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\impire\impire.exe |
"{DFE2FC41-28D2-417A-A9B7-57C10DCA18A0}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\company of heroes 2\reliccoh2.exe |
"{E029A100-6E98-4968-9117-7C9A19AB89A2}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{E1A5B8E8-2C16-4CA4-8034-3306DF978256}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2013\avgdiagex.exe |
"{E1D807FA-1C87-4AD0-B1E1-F742D84E9CC7}" = protocol=1 | dir=in | [email protected],-28543 |
"{E4A69FA5-3AEB-46FF-AC9A-12FBF49279CE}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\gnomoria\gnomoria.exe |
"{E4CA4EF1-13B7-4223-B8EA-B24B0795F4B7}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\assassin's creed ii\assassinscreedii.exe |
"{E6C0DE57-59C2-44D3-9C82-6098E55A9562}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike source\hl2.exe |
"{E6FE90E4-330C-4FCF-AB1A-C98049C9C59D}" = protocol=17 | dir=in | app=c:\windows\syswow64\muzapp.exe |
"{E8E3F3C3-EBF6-4C0D-AE41-D6961CF17450}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{E98419B7-5740-4F6F-B26C-D5172AFB5B43}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{EADAE9C8-2907-404D-927A-B3300F35D6AF}" = protocol=6 | dir=in | app=c:\program files (x86)\netgear\usb control center\control center.exe |
"{EC3A3419-F924-4FEE-9892-B20188F3271B}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2014\avgmfapx.exe |
"{EF436097-42A0-416E-8DBA-556E6E17CBDF}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\nmrih\sdk\bin\hammer.bat |
"{F24F6255-AAE7-411A-B677-92AE2CB2E9E3}" = dir=in | app=c:\users\aaron\appdata\local\temp\7zs1e89\setup\hpznui40.exe |
"{F25C5B0E-42E6-4E8B-A357-1A88B70E71B7}" = protocol=17 | dir=in | app=c:\users\aaron\appdata\roaming\utorrent\utorrent.exe |
"{F325100A-5C41-404D-AE99-11AF18361163}" = protocol=58 | dir=out | [email protected],-28546 |
"{F4CAD237-A1F6-4361-B9AA-D9D1D13EC817}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2014\avgemca.exe |
"{F698485B-7412-4792-B4F6-E4E03C989AC6}" = protocol=17 | dir=in | app=c:\windows\system32\dmwu.exe |
"{F70742ED-F10D-47A4-BFA2-A34E428A32AB}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike source\hl2.exe |
"{F7DEAAF3-750A-4653-A1F6-AF00DAF1FE0C}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpfccopy.exe |
"{F806550F-C422-4887-8824-4C87E34C202E}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{F8404921-AE9E-4A6F-843B-37B3D72DDFAE}" = protocol=6 | dir=in | app=c:\program files (x86)\netgear genie\bin\netgeargenie.exe |
"{F8B02E0F-292F-4707-A9BC-FE15B2A6BFB0}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{FA7975F1-5EA2-4233-9B44-3F6CAFF8D4F6}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\projectzomboid\projectzomboid64.exe |
"{FDAA17E3-C9A3-4B6A-BE72-6287BBA059F6}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2014\avgdiagex.exe |
"TCP Query User{0B8D2479-8700-4D41-A032-18329F58AF49}C:\users\aaron\downloads\downloader_diablo2_lord_of_destruction_enus.exe" = protocol=6 | dir=in | app=c:\users\aaron\downloads\downloader_diablo2_lord_of_destruction_enus.exe |
"TCP Query User{1BB76013-7758-464C-B20E-59B2C7203659}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe |
"TCP Query User{212D8D8E-9820-4367-945B-62C54F6E99C7}C:\program files (x86)\steam\steam.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"TCP Query User{787A5BFD-8E82-489B-986C-B441B2802554}C:\users\aaron\downloads\utorrent.exe" = protocol=6 | dir=in | app=c:\users\aaron\downloads\utorrent.exe |
"TCP Query User{86C42410-E645-41BB-8BA7-26854E98F01E}C:\program files (x86)\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files (x86)\winamp\winamp.exe |
"TCP Query User{9E9050F0-009E-47E6-9F7E-641FDA22AB9E}C:\program files (x86)\total war rome ii\rome2.exe" = protocol=6 | dir=in | app=c:\program files (x86)\total war rome ii\rome2.exe |
"TCP Query User{AEB8288A-DCF6-4562-901E-547871B3C443}C:\program files (x86)\netgear genie\bin\netgeargenie.exe" = protocol=6 | dir=in | app=c:\program files (x86)\netgear genie\bin\netgeargenie.exe |
"TCP Query User{DB07D676-CCE5-423D-9471-CDB633EBE17D}C:\program files\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre7\bin\javaw.exe |
"TCP Query User{FEAED96C-373B-474F-B0B5-37380EDC42FD}C:\users\aaron\downloads\downloader_diablo2_enus.exe" = protocol=6 | dir=in | app=c:\users\aaron\downloads\downloader_diablo2_enus.exe |
"UDP Query User{057130E3-83C3-416D-ACB8-895EF4326B4C}C:\users\aaron\downloads\downloader_diablo2_lord_of_destruction_enus.exe" = protocol=17 | dir=in | app=c:\users\aaron\downloads\downloader_diablo2_lord_of_destruction_enus.exe |
"UDP Query User{0FE229E0-CF67-416F-A900-7C3391E87ACF}C:\program files (x86)\total war rome ii\rome2.exe" = protocol=17 | dir=in | app=c:\program files (x86)\total war rome ii\rome2.exe |
"UDP Query User{116FC3C7-5BD6-4580-A29D-0CEC583DFE53}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe |
"UDP Query User{30699C60-FFDC-4B7F-BBA0-E9C6B7747580}C:\users\aaron\downloads\downloader_diablo2_enus.exe" = protocol=17 | dir=in | app=c:\users\aaron\downloads\downloader_diablo2_enus.exe |
"UDP Query User{54D8D478-3F54-4193-B801-00CA2052C6CE}C:\users\aaron\downloads\utorrent.exe" = protocol=17 | dir=in | app=c:\users\aaron\downloads\utorrent.exe |
"UDP Query User{642A88DE-7621-4F50-B169-3FE2D6D08A9E}C:\program files\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre7\bin\javaw.exe |
"UDP Query User{A413E693-5374-4055-877B-BF17FE172718}C:\program files (x86)\netgear genie\bin\netgeargenie.exe" = protocol=17 | dir=in | app=c:\program files (x86)\netgear genie\bin\netgeargenie.exe |
"UDP Query User{B5708D83-7322-438E-B089-53F42DB1027D}C:\program files (x86)\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files (x86)\winamp\winamp.exe |
"UDP Query User{F61C6959-8CE6-4081-B323-F5EE3BA0D4B4}C:\program files (x86)\steam\steam.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1324D89E-6452-A561-B97E-053C2AE6F7FF}" = AMD Drag and Drop Transcoding
"{14BC6853-A74E-4874-B50D-679889D1544D}" = HP Photosmart D110 All-In-One Driver 14.0 Rel. 7
"{1D005A51-8EA5-42F8-B37B-FD30FEEF0D04}" = AVG 2014
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{21B133D6-5979-47F0-BE1C-F6A6B304693F}" = Visual Studio 2010 x64 Redistributables
"{26A24AE4-039D-4CA4-87B4-2F86417025FF}" = Java 7 Update 25 (64-bit)
"{34883B9C-CDFE-46F0-9C5B-935484C218C3}" = AVG 2014
"{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime
"{55B348BE-A3BE-9AE7-58BD-BE45B9A28F82}" = AMD Media Foundation Decoders
"{5B73E1AA-CA9D-E76A-2F2D-E0EFB41CE087}" = AMD Accelerated Video Transcoding
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8C775E70-A791-4DA8-BCC3-6AB7136F4484}" = Visual Studio 2012 x64 Redistributables
"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
"{AA1675E3-4D03-4808-BDF5-992619544D12}" = Intel® Network Connections 16.4.68.0
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B9609B6D-9532-E0F8-BE41-DFE18BFAEC22}" = AMD AVIVO64 Codecs
"{BE930E38-7BB3-45B6-85B2-5251F374F844}" = 64 Bit HP CIO Components Installer
"{C8807716-1F6F-5C43-3C32-7295A45CF060}" = AMD Catalyst Install Manager
"{CC1FE395-D90F-712C-E013-EBDCC30433B1}" = AMD Fuel
"{CE47BA54-78AC-409F-9151-BDF5BE15A804}" = Network64
"{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones
"{E54A949B-C4AE-28B6-EC97-FCB9E402D338}" = ccc-utility64
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"AVG" = AVG 2014
"CCleaner" = CCleaner
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"PROSetDX" = Intel® Network Connections 16.4.68.0
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"WinRAR archiver" = WinRAR 4.20 (64-bit)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{0F367CA3-3B2F-43F9-A44A-25A8EE69E45D}" = Scan
"{11F2C5EC-35AA-7237-B62B-A4F041859C2A}" = CCC Help Spanish
"{189B9ACF-DBA6-4F52-8726-2E11049FB1F7}" = HydraVision
"{229EDE35-4677-BDE6-70ED-A5A4C711DDC3}" = CCC Help Norwegian
"{2470F2F2-8491-5A0B-B8F5-8B72A8D74597}" = Catalyst Control Center InstallProxy
"{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 45
"{27B56E28-94B2-BDF8-D209-EC8D2FF4838E}" = Catalyst Control Center Graphics Previews Common
"{33D4FA83-02C0-93B3-08ED-5D7378930CFA}" = CCC Help Turkish
"{37D0F3C2-8FFD-134D-FBDF-2D711E169D78}" = AMD VISION Engine Control Center
"{385C8E5A-0B4F-4DCD-BBBD-2A8AE0400A76}" = TP-LINK Wireless Client Utility
"{42BBA4CC-EFB6-4653-A2CC-F305D4B399C3}" = PS_AIO_07_D110_SW_Min
"{42FECCEF-63CD-DF98-D6BC-DDBB27E4A580}" = CCC Help Japanese
"{4528B812-FF2C-4E3A-A9EA-1ECB483BF03A}" = NETGEAR USB Control Center
"{46594DA4-2D0A-B2D4-C0E0-A5CCA3260025}" = CCC Help Hungarian
"{485B8152-C59F-8569-15BC-46BDA2A1E4A9}" = CCC Help Polish
"{490F47E6-585C-531A-1BF8-4DE44ED9AED7}" = CCC Help Russian
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4D15C6C1-74C9-4AA4-8378-CEEDE7E53F39}_is1" = Brytenwalda version 1.40
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.10
"{50F87176-7DB3-4C75-D9DC-25CB4561D0F8}" = CCC Help Danish
"{52E706AA-B4E9-423A-1651-62E61E06DF9A}" = CCC Help Greek
"{5BE7BD06-512B-43bf-AD78-3BD2A5F5F7B3}" = Battlefield 1942™
"{5FB51C12-62AE-0990-E419-C6F62B776E5C}" = CCC Help Portuguese
"{61942EF5-2CD8-47D4-869C-2E9A8BB085F1}" = Asmedia ASM106x SATA Host Controller Driver
"{66B46617-A156-F25B-3CC0-5E46343AEA95}" = CCC Help Thai
"{698BBAD8-B116-495D-B879-0F07A533E57F}" = Samsung Story Album Viewer
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies
"{79BF4901-1EC4-4726-B3C2-A7859706C6E7}" = League of Legends
"{81543139-18AE-703B-D3B1-F6B3A0CB2EAC}" = CCC Help English
"{8570BEE8-0CA3-4977-9AB1-80ED93F0513C}" = Assassin's Creed II
"{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher
"{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}" = NVIDIA PhysX
"{8C3727F2-8E37-49E4-820C-03B1677F53B6}" = Stronghold Crusader
"{8FA20FAC-719F-7CCD-5790-6B59D691C370}" = CCC Help Chinese Traditional
"{940B28E7-320B-5AC8-0A8A-32D6A7B404A1}" = CCC Help Swedish
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}" = Visual Studio 2012 x86 Redistributables
"{99C382AB-CA1D-8577-66D3-AA850DB5FD00}" = CCC Help Korean
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9F1F2AEA-C72A-4DD6-991E-C5506A5625E4}" = OpenOffice.org 3.4.1
"{A68C4D16-8046-5333-CB64-5E622C795785}" = CCC Help Dutch
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-7AD7-1033-7B44-AB0000000001}" = Adobe Reader XI (11.0.05)
"{B7EB794A-5A36-4CB0-90D9-BD0E786972D4}" = LogMeIn Hamachi
"{BBFB2E59-B0DB-42C8-8F4D-CF4E85471667}" = Toolbox
"{BE0B654E-FC60-40AE-F60B-06526508B5FD}" = CCC Help Italian
"{BE0E1491-B2DC-6447-217C-342D8F7100EA}" = CCC Help Czech
"{C5EADF55-3B49-B545-E16F-402B443DDC77}" = CCC Help German
"{CBDFF724-E925-2964-E647-0A83D2F9165C}" = CCC Help French
"{D5341564-7B93-ADAC-E737-C24AA85CC5FF}" = CCC Help Chinese Standard
"{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}" = Microsoft XNA Framework Redistributable 4.0 Refresh
"{E2F0AF23-FE2F-4222-9A43-55E63CC41EF1}" = Catalyst Control Center - Branding
"{E3FB1E5A-1C24-D581-6BC8-6F8AC2D343AD}" = CCC Help Finnish
"{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}" = Asmedia ASM104x USB 3.0 Host Controller Driver
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F0E79BE5-20F5-82F4-6579-2A91AED3F066}" = Catalyst Control Center Localization All
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Alien Horde" = Alien Horde
"AVG SafeGuard toolbar" = AVG SafeGuard toolbar
"DAEMON Tools Lite" = DAEMON Tools Lite
"DealPly" = DealPly (remove only)
"Diablo III" = Diablo III
"DMX5_is1" = DriverMax 7
"GlidewrapZbag" = zeckensack's Glide wrapper (remove only)
"Heroes of Annihilated Empires_is1" = Heroes of Annihilated Empires
"Hitman Absolution_is1" = Hitman Absolution
"Inkscape" = Inkscape 0.48.0
"InstallShield_{698BBAD8-B116-495D-B879-0F07A533E57F}" = Samsung Story Album Viewer
"InstallShield_{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies
"League of Legends 3.0.0" = League of Legends
"LogMeIn Hamachi" = LogMeIn Hamachi
"MFatigue Uninst" = Metal Fatigue Uninstall
"Mount&Blade Warband" = Mount&Blade Warband
"Mozilla Firefox 25.0.1 (x86 en-US)" = Mozilla Firefox 25.0.1 (x86 en-US)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"NBOS Character Sheet Designer_is1" = NBOS Character Sheet Designer 1.01c
"NETGEAR Genie" = NETGEAR Genie
"OpenAL" = OpenAL
"Origin" = Origin
"Rockstar Games Social Club" = Rockstar Games Social Club
"SpeedFan" = SpeedFan (remove only)
"Spelunky HD 1.0" = Spelunky HD 1.0
"Steam App 108600" = Project Zomboid
"Steam App 110800" = L.A. Noire
"Steam App 1250" = Killing Floor
"Steam App 202130" = Impire
"Steam App 209080" = Guns of Icarus Online
"Steam App 218620" = PAYDAY 2
"Steam App 219640" = Chivalry: Medieval Warfare
"Steam App 22380" = Fallout: New Vegas
"Steam App 224260" = No More Room in [bleep]
"Steam App 224500" = Gnomoria
"Steam App 227860" = Castle Story
"Steam App 228280" = Baldur's Gate: Enhanced Edition
"Steam App 231430" = Company of Heroes 2 – OPEN BETA
"Steam App 239070" = Hammerwatch
"Steam App 240" = Counter-Strike: Source
"Steam App 241540" = State of Decay
"Steam App 39140" = FINAL FANTASY VII
"Steam App 4000" = Garry's Mod
"Steam App 4920" = Natural Selection 2
"Steam App 49540" = Aliens: Colonial Marines
"Steam App 550" = Left 4 Dead 2
"Steam App 730" = Counter-Strike: Global Offensive
"VG90YWxXYXJST01FSUk=_is1" = Total War ROME II
"VLC media player" = VLC media player 2.0.8
"Winamp" = Winamp

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Dealply" = Dealply
"MyFreeCodec" = MyFreeCodec
"Search Protection" = Search Protection
"uTorrent" = µTorrent
"Winamp Detect" = Winamp Detector Plug-in

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 11/23/2013 6:06:36 PM | Computer Name = Aaron-PC | Source = Application Error | ID = 1000
Description = Faulting application name: League of Legends.exe, version: 3.14.0.700,
time stamp: 0x528ab927 Faulting module name: MSVCR110.dll, version: 11.0.51106.1,
time stamp: 0x5098858e Exception code: 0xc0000005 Fault offset: 0x0000e33d Faulting
process id: 0xeac Faulting application start time: 0x01cee894e02e427d Faulting application
path: C:\Riot Games\League of Legends\RADS\solutions\lol_game_client_sln\releases\0.0.0.254\deploy\League
of Legends.exe Faulting module path: C:\Riot Games\League of Legends\RADS\solutions\lol_game_client_sln\releases\0.0.0.254\deploy\MSVCR110.dll
Report
Id: 85023e5f-548b-11e3-a506-14dae9ca3057

Error - 11/24/2013 3:25:13 PM | Computer Name = Aaron-PC | Source = WinMgmt | ID = 10
Description =

Error - 11/24/2013 3:28:21 PM | Computer Name = Aaron-PC | Source = Application Hang | ID = 1002
Description = The program firefox.exe version 25.0.1.5064 stopped interacting with
Windows and was closed. To see if more information about the problem is available,
check the problem history in the Action Center control panel. Process ID: 1748 Start
Time: 01cee94aeaaa8d20 Termination Time: 25 Application Path: C:\Program Files (x86)\Mozilla
Firefox\firefox.exe Report Id: 9159d656-553e-11e3-b8d7-14dae9ca3057

Error - 11/25/2013 2:22:21 AM | Computer Name = Aaron-PC | Source = WinMgmt | ID = 10
Description =

Error - 11/25/2013 7:42:58 PM | Computer Name = Aaron-PC | Source = WinMgmt | ID = 10
Description =

Error - 11/27/2013 10:31:30 AM | Computer Name = Aaron-PC | Source = WinMgmt | ID = 10
Description =

Error - 11/28/2013 12:46:56 AM | Computer Name = Aaron-PC | Source = WinMgmt | ID = 10
Description =

Error - 11/28/2013 1:33:41 PM | Computer Name = Aaron-PC | Source = WinMgmt | ID = 10
Description =

Error - 11/29/2013 11:20:35 PM | Computer Name = Aaron-PC | Source = SideBySide | ID = 16842785
Description = Activation context generation failed for "c:\program files (x86)\innovative
solutions\drivermax\DPInst\ia64\dpinst.exe". Dependent Assembly Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="ia64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"
could not be found. Please use sxstrace.exe for detailed diagnosis.

Error - 11/30/2013 3:39:50 PM | Computer Name = Aaron-PC | Source = WinMgmt | ID = 10
Description =

[ System Events ]
Error - 11/27/2013 10:37:47 AM | Computer Name = Aaron-PC | Source = Service Control Manager | ID = 7022
Description = The Windows Update service hung on starting.

Error - 11/28/2013 12:46:11 AM | Computer Name = Aaron-PC | Source = Service Control Manager | ID = 7000
Description = The AODDriver4.2 service failed to start due to the following error:
%%2

Error - 11/28/2013 12:46:20 AM | Computer Name = Aaron-PC | Source = Service Control Manager | ID = 7000
Description = The AODDriver4.2 service failed to start due to the following error:
%%2

Error - 11/28/2013 12:46:20 AM | Computer Name = Aaron-PC | Source = Service Control Manager | ID = 7026
Description = The following boot-start or system-start driver(s) failed to load:
amdkmafd

Error - 11/28/2013 1:32:32 PM | Computer Name = Aaron-PC | Source = Service Control Manager | ID = 7000
Description = The AODDriver4.2 service failed to start due to the following error:
%%2

Error - 11/28/2013 1:32:52 PM | Computer Name = Aaron-PC | Source = Service Control Manager | ID = 7026
Description = The following boot-start or system-start driver(s) failed to load:
amdkmafd

Error - 11/30/2013 4:01:05 AM | Computer Name = Aaron-PC | Source = volsnap | ID = 393252
Description = The shadow copies of volume C: were aborted because the shadow copy
storage could not grow due to a user imposed limit.

Error - 11/30/2013 3:38:23 PM | Computer Name = Aaron-PC | Source = EventLog | ID = 6008
Description = The previous system shutdown at 7:57:40 AM on ?11/?30/?2013 was unexpected.

Error - 11/30/2013 3:38:26 PM | Computer Name = Aaron-PC | Source = Service Control Manager | ID = 7000
Description = The AODDriver4.2 service failed to start due to the following error:
%%2

Error - 11/30/2013 3:38:39 PM | Computer Name = Aaron-PC | Source = Service Control Manager | ID = 7026
Description = The following boot-start or system-start driver(s) failed to load:
amdkmafd


< End of report >
  • 0

#4
godawgs

godawgs

    Teacher

  • Retired Staff
  • 8,228 posts
Hello,

I noticed in your original post that you had run CCleaner.

Registry Cleaning Tools

CCleaner is a good program, but please do not use the registry cleaner in this tool. And for that matter do not use registry cleaners at all:
A registry cleaner will not increase your system's speed or performance, and has the potential to break your registry to the point that your PC is no longer bootable.
We strongly advise that people stay away from any of the registry cleaners out there.
Go HERE to get more information about why registry cleaners aren't needed.


You have the following Peer-to-Peer program(s) installed:

uTorrent

GeeksToGo does not recommend using such programs, but you should read the description of Peer-to-Peer programs below before deciding for yourself.

Description of Peer-to-Peer (P2P) software.
P2P(Peer-to-Peer) may be a great way to get lots of seemingly freeware, but it is a great way to get infected as well. The program(s) may be safe, but there's no way to tell if the file being shared is infected. P2P programs, more often than not, install adware and/or spyware and worse still, some worms spread via P2P networks, infecting you as well.
Once upon a time, P2P file sharing was fairly safe. This is no longer true. P2P programs form a direct conduit inside your computer, their security measures are easily circumvented, and malware writers are increasingly exploiting them to spread their wares on to your computer. If your P2P program is not configured correctly, your computer may also be sharing more files than you realize. There have been cases where people's passwords, address books and other personal, private, and financial details have been exposed to a file sharing network by a badly configured program.

If you need convincing, please read these short reports on the dangers of peer-2-peer programs and file sharing. We advise removing any P2P programs you have now and avoiding this type of software application. Whether you remove them or not is your decision. But if you decide to keep and use Peer-to-Peer programs I can guarantee that you will be coming back to this forum or another malware forum. If you do choose to keep the program(s), please do not use it / them until the computer is clean and I give the all clear.

All programs, folders and files listed below in this color are optional removals, but if you uninstall the program(s) you must delete the folders and files in the corresponding colors. All programs in black are malware or viruses and must be deleted, along with the corresponding folders and files in red


Step-1.

Malicious program uninstalls and Optional Removals


1. Please click the Start Orb Posted Image, click Control Panel. Under the Programs or Programs and Features heading click Uninstall a program
2. In the list of programs installed, locate the following program(s):

Dealply
Search Protection
uTorrent


3. Right click each program and click Uninstall
4. After the programs have been uninstalled, close the Installed Programs window and the Control Panel.
5. Reboot the computer.


Step-2.

Posted Image OTL Fix

Be advised that when the fix commences it will shut down all running processes and you may lose the desktop and icons, they will return on reboot

1. Please copy all of the text in the quote box below (Do Not copy the word Quote. To do this, highlight everything
inside the quote box (except the word Quote) , right click and click Copy.

:COMMANDS
[createrestorepoint]

:OTL
PRC - [2013/09/03 15:17:22 | 000,832,360 | ---- | M] (Spigot, Inc.) -- C:\Users\Aaron\AppData\Roaming\Search Protection\SearchProtection.exe
SRV - [2013/11/29 23:03:39 | 000,148,000 | ---- | M] (DealPly Technologies Ltd) [On_Demand | Stopped] -- C:\Program Files (x86)\DealPlyLive\Update\DealPlyLive.exe -- (dealplylivem)
SRV - [2013/11/29 23:03:39 | 000,148,000 | ---- | M] (DealPly Technologies Ltd) [Auto | Stopped] -- C:\Program Files (x86)\DealPlyLive\Update\DealPlyLive.exe -- (dealplylive)
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://start.sweetpa...F-14DAE9CA3057}
IE - HKLM\..\SearchScopes,DefaultScope = {EEE6C360-6118-11DC-9C72-001320C79847}
IE - HKLM\..\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}: "URL" = http://start.sweetpa...F-14DAE9CA3057}
FF - HKLM\Software\MozillaPlugins\@tools.dpliveupdate.com/DealPlyLive Update;version=3: C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\npGoogleUpdate3.dll (DealPly Technologies Ltd)
FF - HKLM\Software\MozillaPlugins\@tools.dpliveupdate.com/DealPlyLive Update;version=9: C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\npGoogleUpdate3.dll (DealPly Technologies Ltd)
64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{7D4F1959-3F72-49d5-8E59-F02F8AA6815D}: C:\PROGRAM FILES\UPDATER BY SWEETPACKS\FIREFOX
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{7D4F1959-3F72-49d5-8E59-F02F8AA6815D}: C:\Program Files\Updater By SweetPacks\Firefox
[2013/11/29 23:03:36 | 000,000,000 | ---D | M] (DealPly Shopping) -- C:\Users\Aaron\AppData\Roaming\Mozilla\Firefox\Profiles\e5e3k4wa.default-1380723517929\extensions\{e53a26f5-7199-4a5b-86f5-d2e86854b979}
O2 - BHO: (DealPly Shopping) - {9cf699ca-2174-4ed8-bec1-ba82095edce0} - C:\Program Files (x86)\DealPly\DealPlyIE.dll (DealPly)
O4 - HKCU..\Run: [DriverMax_RESTART] File not found
O4 - HKCU..\Run: [SearchProtection] C:\Users\Aaron\AppData\Roaming\Search Protection\SearchProtection.EXE (Spigot, Inc.)
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\viprotocol - No CLSID value found
O33 - MountPoints2\{4adbdf73-d3f5-11e2-8758-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{4adbdf73-d3f5-11e2-8758-806e6f6e6963}\Shell\AutoRun\command - "" = D:\.\Bin\ASSETUP.exe
O33 - MountPoints2\{e62b81b7-e981-11e2-bf3f-14dae9ca3057}\Shell - "" = AutoRun
O33 - MountPoints2\{e62b81b7-e981-11e2-bf3f-14dae9ca3057}\Shell\AutoRun\command - "" = G:\hoae-setup.exe
[2013/11/29 23:03:39 | 000,000,000 | ---D | C] -- C:\Users\Aaron\AppData\Local\DealPlyLive
[2013/11/29 23:03:39 | 000,000,000 | ---D | C] -- C:\ProgramData\DealPlyLive
[2013/11/29 23:03:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DealPlyLive
[2013/11/29 23:03:38 | 000,000,000 | ---D | C] -- C:\Users\Aaron\AppData\Roaming\Dealply
[2013/11/29 23:03:36 | 000,000,000 | ---D | C] -- C:\Users\Aaron\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DealPly
[2013/11/29 23:03:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DealPly
[2013/11/30 15:08:00 | 000,000,904 | ---- | M] () -- C:\Windows\tasks\DealPlyLiveUpdateTaskMachineUA.job
[2013/11/30 15:03:02 | 000,000,290 | ---- | M] () -- C:\Windows\tasks\Dealply.job
[2013/11/30 13:45:36 | 000,000,900 | ---- | M] () -- C:\Windows\tasks\DealPlyLiveUpdateTaskMachineCore.job
[2013/11/29 23:03:38 | 000,000,000 | ---D | M] -- C:\Users\Aaron\AppData\Roaming\Dealply
[2013/08/19 01:48:45 | 000,000,000 | ---D | M] -- C:\Users\Aaron\AppData\Roaming\Search Protection

:FILES
ipconfig /flushdns /c
C:\Users\Aaron\AppData\Roaming\Search Protection\SearchProtection.exe
C:\Users\Aaron\AppData\Roaming\Search Protection
netsh advfirewall reset /c
netsh advfirewall set allprofiles state ON /c

:COMMANDS
[emptytemp]


Warning: This fix is relevant for this system and no other. If you are not this user, DO NOT follow these directions as they could damage the workings of your system.

2. Please re-open Posted Image on your desktop. To do that:
    Vista and 7 users: Right click the icon and click Run as Administrator
3. Place the mouse pointer inside the Posted Image textbox, right click and click Paste. This will put the above script inside the textbox.
4. Click the Posted Image button.
5. Let the program run unhindered.
6. OTL may ask to reboot the machine. Please do so if asked.
7. Click the Posted Image button.
8. A report will open. Copy and Paste that report in your next reply.
9. If the machine reboots, the log will be located at C:\_OTL\MovedFiles\mmddyyyy_hhmmss.log, (where mmddyyyy_hhmmss is the date of the tool run).


Step-3.

Run aswMBR
  • Download aswMBR.exe to your desktop.
  • Right click the aswMBR.exe file and click Run as Administrator. If you get a UAC window, allow the file to run.
  • If it asks you if you want to download the latest virus definitions, click "No"
    Posted Image
  • Be sure the A/V Scan: is set to QuickScan
  • Click the "Scan" button to start the scan
    Posted Image
    Posted Image
  • On completion of the scan click save log. Save it to your desktop and post in your next reply.
    Posted Image
NOTE: When you run aswMBR, if it is shutdown automatically, then it is most likely the infection detecting that aswMBR is running and terminating it. In this situation you should rename the executable (aswMBR.exe) to iexplore.exe and try it again.


Step-4.

AdwCleaner by Xplode

Download AdwCleaner. Click here and then click the Download Now @ BleepingComputer button. Save the file to the desktop.

NOTE: If you are using IE 8 or above you may get a warning that stops the program from downloading. Just click on the warning and allow the download to complete.

Close all open windows and browsers.
  • Right click the AdwCleaner icon Posted Image on the desktop, click Run as administrator and accept the UAC prompt to run AdwCleaner.

    Posted Image
  • Click the Scan button and wait for the scan to finish.
  • After the Scan has finished the window may or may not show what it found and above the progress bar you will see Pending. Please uncheck elements you don't want to remove. Do Not delete anything at this time.
  • Click the Report button to get the log.
  • Copy and Paste it into your next reply. This report is also saved to C:\AdwCleaner\AdwCleaner[R0].txt.
  • Click the X in the upper right corner of the program or click the File menu and click Exit to close the program.
NOTE: If you see AVG Secure Search being targeted for deletion, Here's Why and Here. You can always Reinstall it.


Step-5.

Posted Image OTL Custom Scan

1. Please copy the text in the Quote box below, (Do Not copy the word Quote), and paste it in the Posted Image box in OTL. To do that:
  • Highlight everything inside the quote box, (except the word Quote), right click the mouse and click Copy.

createrestorepoint
netsvcs
baseservices
%SYSTEMDRIVE%\*.exe
/md5start
explorer.exe
winlogon.exe
Userinit.exe
svchost.exe
winsock.*
services.*
/md5stop
dir "%systemdrive%\*" /S /A:L /C


2. Re-open Posted Imageon the desktop. To do that:
    Vista / 7 Users: Right click on the icon and click Run as Administrator)
Make sure all other windows are closed.
  • You will see a console like the one below:

    Posted Image
  • Click the box beside Scan All Users at the top of the console
  • Click the box beside Include 64bit Scans at the top of the console.
  • Make sure the Output box at the top is set to Standard Output.
  • Check the boxes beside LOP Check and Purity Check.
  • Place the mouse pointer inside thePosted Image box, right click and click Paste. This will put the above script inside OTL
  • Click the Posted Image button. Do not change any settings unless otherwise told to do so.
  • Let the scan run uninterrupted.
  • When the scan completes, it will open OTL.Txt. This file is also saved in the same location as OTL (it should be on your desktop).
  • Please copy the contents of this file and paste it into your reply. To do that:
  • On the OTL.txt file Menu Bar click Edit then click Select All. This will highlight the contents of the file. Then click Copy.
  • Right click inside the forum post window then click Paste. This will paste the contents of the OTL.txt file in the in the post window.

Step-6.

Things For Your Next Post:
Please post the logs in the order requested. Do Not attach the logs unless I request it.
1. Let me know if you uninstalled uTorrent as well as the other programs
2. The OTL fixes log
3. The aswMBR log
4. The AdwClear[R0].txt log
5. The new OTL.txt log
  • 0

#5
corbek

corbek

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 112 posts
Posting the Reboot report, aswmbr report,





Reboot Report:
All processes killed
========== COMMANDS ==========
Restore point Set: OTL Restore Point
========== OTL ==========
No active process named SearchProtection.exe was found!
Error: No service named dealplylivem was found to stop!
Service\Driver key dealplylivem not found.
File C:\Program Files (x86)\DealPlyLive\Update\DealPlyLive.exe not found.
Error: No service named dealplylive was found to stop!
Service\Driver key dealplylive not found.
File C:\Program Files (x86)\DealPlyLive\Update\DealPlyLive.exe not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EEE6C360-6118-11DC-9C72-001320C79847}\ not found.
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@tools.dpliveupdate.com/DealPlyLive Update;version=3\ not found.
File C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\npGoogleUpdate3.dll not found.
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@tools.dpliveupdate.com/DealPlyLive Update;version=9\ not found.
File C:\Program Files (x86)\DealPlyLive\Update\1.3.23.0\npGoogleUpdate3.dll not found.
Registry value HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{7D4F1959-3F72-49d5-8E59-F02F8AA6815D} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7D4F1959-3F72-49d5-8E59-F02F8AA6815D}\ not found.
File C:\Program Files\Updater By SweetPacks\Firefox not found.
Folder C:\Users\Aaron\AppData\Roaming\Mozilla\Firefox\Profiles\e5e3k4wa.default-1380723517929\extensions\{e53a26f5-7199-4a5b-86f5-d2e86854b979}\ not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9cf699ca-2174-4ed8-bec1-ba82095edce0}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9cf699ca-2174-4ed8-bec1-ba82095edce0}\ not found.
File C:\Program Files (x86)\DealPly\DealPlyIE.dll not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\DriverMax_RESTART not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\SearchProtection not found.
File C:\Users\Aaron\AppData\Roaming\Search Protection\SearchProtection.EXE not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\skype4com\ not found.
File Protocol\Handler\skype4com - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\viprotocol\ not found.
File Protocol\Handler\viprotocol - No CLSID value found not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{4adbdf73-d3f5-11e2-8758-806e6f6e6963}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4adbdf73-d3f5-11e2-8758-806e6f6e6963}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{4adbdf73-d3f5-11e2-8758-806e6f6e6963}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4adbdf73-d3f5-11e2-8758-806e6f6e6963}\ not found.
File D:\.\Bin\ASSETUP.exe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e62b81b7-e981-11e2-bf3f-14dae9ca3057}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e62b81b7-e981-11e2-bf3f-14dae9ca3057}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e62b81b7-e981-11e2-bf3f-14dae9ca3057}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e62b81b7-e981-11e2-bf3f-14dae9ca3057}\ not found.
File G:\hoae-setup.exe not found.
Folder C:\Users\Aaron\AppData\Local\DealPlyLive\ not found.
Folder C:\ProgramData\DealPlyLive\ not found.
Folder C:\Program Files (x86)\DealPlyLive\ not found.
Folder C:\Users\Aaron\AppData\Roaming\Dealply\ not found.
Folder C:\Users\Aaron\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DealPly\ not found.
Folder C:\Program Files (x86)\DealPly\ not found.
File C:\Windows\tasks\DealPlyLiveUpdateTaskMachineUA.job not found.
File C:\Windows\tasks\Dealply.job not found.
File C:\Windows\tasks\DealPlyLiveUpdateTaskMachineCore.job not found.
Folder C:\Users\Aaron\AppData\Roaming\Dealply\ not found.
Folder C:\Users\Aaron\AppData\Roaming\Search Protection\ not found.
========== FILES ==========
< ipconfig /flushdns /c >
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
C:\Users\Aaron\Desktop\cmd.bat deleted successfully.
C:\Users\Aaron\Desktop\cmd.txt deleted successfully.
File\Folder C:\Users\Aaron\AppData\Roaming\Search Protection\SearchProtection.exe not found.
File\Folder C:\Users\Aaron\AppData\Roaming\Search Protection not found.
< netsh advfirewall reset /c >
Ok.
C:\Users\Aaron\Desktop\cmd.bat deleted successfully.
C:\Users\Aaron\Desktop\cmd.txt deleted successfully.
< netsh advfirewall set allprofiles state ON /c >
Ok.
C:\Users\Aaron\Desktop\cmd.bat deleted successfully.
C:\Users\Aaron\Desktop\cmd.txt deleted successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: Aaron
->Temp folder emptied: 11964256 bytes
->Temporary Internet Files folder emptied: 1132227 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 356671524 bytes
->Flash cache emptied: 1126 bytes

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Public

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 2238387 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 6829379724 bytes

Total Files Cleaned = 6,868.00 mb


OTL by OldTimer - Version 3.2.69.0 log created on 12042013_161907

Files\Folders moved on Reboot...
C:\Users\Aaron\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
File move failed. C:\Windows\temp\avg_secure_search.log scheduled to be moved on reboot.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...









aswmbr report:
aswMBR version 0.9.9.1771 Copyright© 2011 AVAST Software
Run date: 2013-12-04 16:25:44
-----------------------------
16:25:44.551 OS Version: Windows x64 6.1.7601 Service Pack 1
16:25:44.551 Number of processors: 6 586 0xA00
16:25:44.552 ComputerName: AARON-PC UserName: Aaron
16:25:46.971 Initialize success
16:26:25.436 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0
16:26:25.438 Disk 0 Vendor: WDC_WD1001FALS-00E3A0 05.01D05 Size: 953869MB BusType: 11
16:26:25.584 Disk 0 MBR read successfully
16:26:25.585 Disk 0 MBR scan
16:26:25.586 Disk 0 Windows 7 default MBR code
16:26:25.590 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048
16:26:25.598 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 953767 MB offset 206848
16:26:25.617 Disk 0 scanning C:\Windows\system32\drivers
16:26:33.276 Service scanning
16:26:47.610 Modules scanning
16:26:47.614 Disk 0 trace - called modules:
16:26:47.641 ntoskrnl.exe CLASSPNP.SYS disk.sys >>UNKNOWN [0xfffffa8007952860]<<pssync05.sys sfsync04.sys ataport.SYS PCIIDEX.SYS hal.dll asahci64.sys
16:26:47.644 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8007b0b060]
16:26:47.646 3 CLASSPNP.SYS[fffff8800185143f] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0xfffffa8006b29130]
16:26:47.650 \Driver\atapi[0xfffffa8006b190b0] -> IRP_MJ_INTERNAL_DEVICE_CONTROL -> 0xfffffa8007952860
16:26:47.654 Scan finished successfully
16:27:49.436 Disk 0 MBR has been saved successfully to "C:\Users\Aaron\Desktop\MBR.dat"
16:27:49.468 The log file has been saved successfully to "C:\Users\Aaron\Desktop\aswMBR.txt"






AdwCleaner report:
# AdwCleaner v3.014 - Report created 04/12/2013 at 16:31:01
# Updated 01/12/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Aaron - AARON-PC
# Running from : C:\Users\Aaron\Desktop\AdwCleaner.exe
# Option : Scan

***** [ Services ] *****

Service Found : vToolbarUpdater17.1.2

***** [ Files / Folders ] *****

File Found : C:\END
File Found : C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\safeguard-secure-search.xml
File Found : C:\Users\Aaron\AppData\Roaming\Mozilla\Firefox\Profiles\e5e3k4wa.default-1380723517929\user.js
File Found : C:\Windows\System32\Tasks\Dealply
Folder Found C:\Program Files (x86)\AVG SafeGuard toolbar
Folder Found C:\Program Files (x86)\Common Files\AVG Secure Search
Folder Found C:\Program Files (x86)\myfree codec
Folder Found C:\ProgramData\AVG SafeGuard toolbar
Folder Found C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec
Folder Found C:\Searchprotect
Folder Found C:\Users\Aaron\AppData\Local\AVG SafeGuard toolbar
Folder Found C:\Users\Aaron\AppData\LocalLow\AVG SafeGuard toolbar

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\AppDataLow\Software\Show-Password
Key Found : HKCU\Software\AVG SafeGuard toolbar
Key Found : HKCU\Software\DealPlyLive
Key Found : HKCU\Software\IM
Key Found : HKCU\Software\ImInstaller
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec
Key Found : HKCU\Software\Myfree Codec
Key Found : HKCU\Software\WEDLMNGR
Key Found : HKCU\Software\wnlt
Key Found : [x64] HKCU\Software\AVG SafeGuard toolbar
Key Found : [x64] HKCU\Software\DealPlyLive
Key Found : [x64] HKCU\Software\IM
Key Found : [x64] HKCU\Software\ImInstaller
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : [x64] HKCU\Software\Myfree Codec
Key Found : [x64] HKCU\Software\WEDLMNGR
Key Found : [x64] HKCU\Software\wnlt
Key Found : HKLM\Software\AVG SafeGuard toolbar
Key Found : HKLM\Software\AVG Secure Search
Key Found : HKLM\Software\AVG Security Toolbar
Key Found : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
Key Found : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Key Found : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Key Found : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Key Found : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL
Key Found : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.BrowserWndAPI
Key Found : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.BrowserWndAPI.1
Key Found : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.PugiObj
Key Found : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.PugiObj.1
Key Found : HKLM\SOFTWARE\Classes\CLSID\{00000001-4FEF-40D3-B3FA-E0531B897F98}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-770A339C7237}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{64697678-0000-0010-8000-00AA00389B71}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{FD501041-8EBE-11CE-8183-00AA00577DA2}
Key Found : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Found : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Found : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Found : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Found : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Found : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Found : HKLM\SOFTWARE\Classes\S
Key Found : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
Key Found : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{07CAC314-E962-4F78-89AB-DD002F2490EE}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Key Found : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE
Key Found : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1
Key Found : HKLM\Software\DealPlyLive
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dealplylive.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG SafeGuard toolbar
Key Found : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
Key Found : HKLM\Software\Myfree Codec
Key Found : HKLM\Software\Updater By Sweetpacks
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : [x64] HKLM\SOFTWARE\Updater By Sweetpacks
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [vProt]
Value Found : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [[email protected]]
Value Found : [x64] HKLM\SOFTWARE\Mozilla\Firefox\Extensions [{7D4F1959-3F72-49d5-8E59-F02F8AA6815D}]

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16428


-\\ Mozilla Firefox v25.0.1 (en-US)

[ File : C:\Users\Aaron\AppData\Roaming\Mozilla\Firefox\Profiles\e5e3k4wa.default-1380723517929\prefs.js ]


*************************

AdwCleaner[R0].txt - [7890 octets] - [04/12/2013 16:31:01]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [7950 octets] ##########








OTL Report 2:

OTL logfile created on: 12/4/2013 4:35:15 PM - Run 2
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Aaron\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.16428)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

7.96 Gb Total Physical Memory | 5.61 Gb Available Physical Memory | 70.41% Memory free
15.92 Gb Paging File | 13.17 Gb Available in Paging File | 82.71% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 931.41 Gb Total Space | 298.62 Gb Free Space | 32.06% Space Free | Partition Type: NTFS
Drive E: | 2.63 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: CDFS
Drive F: | 100.00 Mb Total Space | 61.85 Mb Free Space | 61.85% Space Free | Partition Type: NTFS

Computer Name: AARON-PC | User Name: Aaron | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2013/12/03 20:51:18 | 001,823,656 | ---- | M] (Valve Corporation) -- C:\Program Files (x86)\Steam\Steam.exe
PRC - [2013/12/03 20:51:18 | 000,569,768 | ---- | M] (Valve Corporation) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe
PRC - [2013/11/30 15:56:07 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Aaron\Desktop\OTL.exe
PRC - [2013/11/29 16:20:48 | 003,806,544 | ---- | M] (LogMeIn Inc.) -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
PRC - [2013/11/19 12:15:46 | 007,360,376 | ---- | M] (Innovative Solutions) -- C:\Program Files (x86)\Innovative Solutions\DriverMax\drivermax.exe
PRC - [2013/11/15 18:13:13 | 000,275,568 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2013/11/12 23:40:50 | 002,420,248 | ---- | M] () -- C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe
PRC - [2013/11/12 23:40:50 | 001,734,680 | ---- | M] (AVG Secure Search) -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.1.2\ToolbarUpdater.exe
PRC - [2013/11/12 23:40:50 | 000,159,768 | ---- | M] () -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.1.2\loggingserver.exe
PRC - [2013/11/11 22:02:14 | 003,478,544 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe
PRC - [2013/11/07 22:03:50 | 004,956,176 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2014\avgui.exe
PRC - [2013/09/24 01:33:08 | 000,348,008 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe
PRC - [2013/08/20 22:53:02 | 000,335,408 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2014\avgcfgex.exe
PRC - [2013/05/23 00:17:00 | 001,106,288 | ---- | M] (Samsung) -- C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
PRC - [2013/05/23 00:16:56 | 000,311,152 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
PRC - [2013/05/23 00:16:52 | 001,561,968 | ---- | M] (Samsung) -- C:\Program Files (x86)\Samsung\Kies\Kies.exe
PRC - [2013/05/11 04:37:26 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2013/04/07 05:42:00 | 000,123,136 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\genie2_tray.exe
PRC - [2013/04/07 05:38:46 | 001,044,224 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\NETGEARGenie.exe
PRC - [2012/09/20 16:57:02 | 004,139,008 | ---- | M] () -- C:\Program Files (x86)\NETGEAR\USB Control Center\Control Center.exe
PRC - [2012/08/13 09:57:02 | 010,376,704 | ---- | M] (OpenOffice.org) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
PRC - [2012/08/13 09:57:02 | 010,368,512 | ---- | M] (OpenOffice.org) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
PRC - [2012/06/28 09:40:52 | 000,074,752 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files (x86)\Winamp\winampa.exe
PRC - [2011/07/28 16:12:10 | 000,393,216 | ---- | M] (AMD) -- C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe
PRC - [2009/03/30 00:32:40 | 000,032,768 | R--- | M] () -- C:\Windows\DAODx.exe


========== Modules (No Company Name) ==========

MOD - [2013/12/03 20:51:20 | 001,135,016 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\chromehtml.dll
MOD - [2013/11/19 12:15:56 | 000,009,088 | ---- | M] () -- C:\Program Files (x86)\Innovative Solutions\DriverMax\sync.dll
MOD - [2013/11/15 18:13:13 | 003,363,952 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2013/11/12 23:40:50 | 002,420,248 | ---- | M] () -- C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe
MOD - [2013/11/12 23:40:50 | 000,519,704 | ---- | M] () -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.1.2\log4cplusU.dll
MOD - [2013/11/12 23:40:50 | 000,142,360 | ---- | M] () -- C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\17.1.2\SiteSafety.dll
MOD - [2013/11/06 15:48:12 | 020,625,832 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\libcef.dll
MOD - [2013/11/06 15:48:10 | 000,691,200 | ---- | M] () -- C:\Program Files (x86)\Steam\SDL2.dll
MOD - [2013/10/12 17:15:40 | 000,771,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Remo#\ea3406b1357f932b76236c4ea85b0747\System.Runtime.Remoting.ni.dll
MOD - [2013/10/10 02:01:37 | 018,022,912 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\e9147e4c70d4e387dc4aea59ce0a219a\PresentationFramework.ni.dll
MOD - [2013/10/10 02:01:28 | 011,527,680 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\99bbd3424207d205e9e680fa712dba04\PresentationCore.ni.dll
MOD - [2013/10/10 02:01:24 | 007,070,720 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\55c245966c0b23a47587c18681457e48\System.Core.ni.dll
MOD - [2013/10/10 02:01:22 | 003,883,008 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\b1ff5e4a64c0bb0a9b039aaefcde5ea7\WindowsBase.ni.dll
MOD - [2013/10/10 02:01:20 | 001,014,784 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\85a501f8b0cb271f1bfab6532523ac3c\System.Configuration.ni.dll
MOD - [2013/09/02 07:25:55 | 000,221,696 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceProce#\d8f4106eee38420ac5eda7d630dc53fc\System.ServiceProcess.ni.dll
MOD - [2013/09/02 07:25:26 | 001,812,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\c8648331484537c338fe2b606a9db8b7\System.Xaml.ni.dll
MOD - [2013/09/02 01:21:20 | 005,628,416 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\b7285e9f3d19a05d5cc2c049e451685d\System.Xml.ni.dll
MOD - [2013/09/02 01:21:12 | 009,100,288 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System\08c630893416f3379c9455870908ad6c\System.ni.dll
MOD - [2013/09/02 01:21:08 | 014,418,432 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\a01e07e47ecdd94ae099e8c4bf650516\mscorlib.ni.dll
MOD - [2013/06/19 00:17:45 | 003,001,168 | -HS- | M] () -- \\?\C:\ProgramData\Microsoft\PlayReady\Cache\S-1-5-21-2378327765-3788761435-258908055-1000\MSPRindiv01.key
MOD - [2013/06/14 17:49:12 | 001,100,800 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\avcodec-53.dll
MOD - [2013/06/14 17:49:12 | 000,192,000 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\avformat-53.dll
MOD - [2013/06/14 17:49:12 | 000,124,416 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\avutil-51.dll
MOD - [2013/06/04 19:22:32 | 000,481,280 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\Genie.dll
MOD - [2013/05/28 00:21:30 | 004,334,592 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Map.dll
MOD - [2013/05/14 20:56:24 | 008,432,128 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Resource.dll
MOD - [2013/05/13 23:18:30 | 000,931,840 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Ui.dll
MOD - [2013/05/09 21:12:10 | 000,229,888 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Airprint.dll
MOD - [2013/04/28 00:25:56 | 001,205,760 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_RouterConfiguration.dll
MOD - [2013/04/07 05:42:00 | 000,123,136 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\genie2_tray.exe
MOD - [2013/04/07 05:38:46 | 001,044,224 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\NETGEARGenie.exe
MOD - [2013/03/27 02:52:32 | 000,500,736 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_NetworkProblem.dll
MOD - [2013/03/27 02:51:52 | 000,714,240 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\InnerPlugin_Update.dll
MOD - [2013/03/27 02:51:40 | 000,641,536 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Statistics.dll
MOD - [2013/03/27 02:51:26 | 001,198,080 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_ParentalControl.dll
MOD - [2013/03/27 02:50:02 | 000,186,368 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\DragonNetTool.dll
MOD - [2013/03/27 02:49:54 | 000,116,224 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\WSetupApiPlugin.dll
MOD - [2013/03/27 02:49:40 | 000,485,376 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\InnerPlugin_WirelessExport.dll
MOD - [2013/03/27 02:49:26 | 000,438,272 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Wireless.dll
MOD - [2013/03/27 02:43:48 | 001,067,520 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\GeniePlugin_Internet.dll
MOD - [2013/03/27 02:42:54 | 000,137,728 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\DiagnosePlugin.dll
MOD - [2013/03/27 02:42:52 | 000,088,064 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\QRCode.dll
MOD - [2013/03/27 02:42:50 | 001,553,920 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\SvtNetworkTool.dll
MOD - [2013/03/26 20:58:14 | 000,074,752 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\NetcardApi.dll
MOD - [2013/03/26 20:58:12 | 000,136,704 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\airprintdll.dll
MOD - [2013/03/26 20:58:08 | 000,139,264 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\DiagnoseDll.dll
MOD - [2013/03/26 20:58:06 | 000,072,192 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\SVTUtils.dll
MOD - [2013/03/26 20:58:06 | 000,066,560 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\WSetupDll.dll
MOD - [2013/02/19 00:46:06 | 009,814,016 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\QtGui4.dll
MOD - [2013/02/19 00:46:06 | 002,537,472 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\QtCore4.dll
MOD - [2013/02/19 00:46:06 | 001,140,224 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\QtNetwork4.dll
MOD - [2013/02/19 00:46:00 | 000,399,360 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\QtXml4.dll
MOD - [2013/02/19 00:46:00 | 000,287,232 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\imageformats\qjpeg4.dll
MOD - [2013/02/19 00:46:00 | 000,083,456 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\imageformats\qico4.dll
MOD - [2013/02/19 00:46:00 | 000,083,456 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\imageformats\qgif4.dll
MOD - [2013/02/19 00:46:00 | 000,043,008 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\libgcc_s_dw2-1.dll
MOD - [2013/02/19 00:46:00 | 000,011,362 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\mingwm10.dll
MOD - [2012/11/29 03:56:00 | 003,332,720 | ---- | M] () -- C:\Program Files (x86)\NETGEAR Genie\bin\drivers\libntgr_api.dll
MOD - [2012/09/20 16:57:02 | 004,139,008 | ---- | M] () -- C:\Program Files (x86)\NETGEAR\USB Control Center\Control Center.exe
MOD - [2012/08/10 15:51:32 | 000,985,088 | ---- | M] () -- C:\Program Files (x86)\OpenOffice.org 3\program\libxml2.dll
MOD - [2009/03/30 00:32:40 | 000,032,768 | R--- | M] () -- C:\Windows\DAODx.exe


========== Services (SafeList) ==========

SRV:64bit: - [2013/11/27 09:48:09 | 000,111,616 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:64bit: - [2013/11/07 08:20:02 | 000,239,616 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2013/05/26 23:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2013/03/28 21:30:42 | 000,361,984 | ---- | M] (Advanced Micro Devices, Inc.) [Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe -- (AMD FUEL Service)
SRV:64bit: - [2011/05/23 15:47:54 | 000,171,688 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Windows\SysNative\IPROSetMonitor.exe -- (Intel®
SRV:64bit: - [2006/07/05 07:04:06 | 000,601,208 | ---- | M] (Protection Technology (StarForce)) [Auto | Stopped] -- C:\Windows\SysNative\sfrem01.exe -- (sfrem01)
SRV:64bit: - [2006/05/11 10:49:51 | 000,606,328 | ---- | M] (Protection Technology) [Auto | Stopped] -- C:\Windows\SysNative\psrem02.exe -- (psrem02)
SRV - [2013/12/03 20:51:18 | 000,569,768 | ---- | M] (Valve Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2013/11/29 16:20:42 | 002,210,640 | ---- | M] (LogMeIn Inc.) [Auto | Running] -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc)
SRV - [2013/11/16 02:21:49 | 000,257,416 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013/11/15 18:13:13 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013/11/12 23:40:50 | 001,734,680 | ---- | M] (AVG Secure Search) [Auto | Running] -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.1.2\ToolbarUpdater.exe -- (vToolbarUpdater17.1.2)
SRV - [2013/11/11 22:02:14 | 003,478,544 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe -- (AVGIDSAgent)
SRV - [2013/10/11 11:51:18 | 000,377,104 | ---- | M] (LogMeIn, Inc.) [Auto | Running] -- C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe -- (LMIGuardianSvc)
SRV - [2013/09/24 01:33:08 | 000,348,008 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe -- (avgwd)
SRV - [2013/09/05 09:34:30 | 000,171,680 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013/05/11 04:37:26 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2013/04/07 05:39:20 | 000,232,192 | ---- | M] (NETGEAR) [Auto | Running] -- C:\Program Files (x86)\NETGEAR Genie\bin\NETGEARGenieDaemon64.exe -- (NETGEARGenieDaemon)
SRV - [2010/03/18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/11/18 02:51:42 | 001,043,072 | ---- | M] (Hewlett-Packard Co.) [Auto | Running] -- C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL -- (HPSLPSVC)
SRV - [2009/06/10 15:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2013/11/12 23:40:50 | 000,046,368 | ---- | M] (AVG Technologies) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgtpx64.sys -- (avgtp)
DRV:64bit: - [2013/11/10 15:04:22 | 000,283,064 | ---- | M] (Disc Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:64bit: - [2013/11/07 09:24:40 | 013,200,896 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2013/11/07 07:49:54 | 000,624,128 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2013/11/05 21:55:48 | 000,150,808 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\avgdiska.sys -- (Avgdiska)
DRV:64bit: - [2013/11/04 21:52:42 | 000,240,920 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\avgidsdrivera.sys -- (AVGIDSDriver)
DRV:64bit: - [2013/10/31 23:00:18 | 000,212,280 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\avgldx64.sys -- (Avgldx64)
DRV:64bit: - [2013/10/31 22:49:46 | 000,294,712 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgloga.sys -- (Avgloga)
DRV:64bit: - [2013/10/24 22:25:58 | 000,194,872 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgidsha.sys -- (AVGIDSHA)
DRV:64bit: - [2013/10/01 00:52:08 | 000,123,704 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgmfx64.sys -- (Avgmfx64)
DRV:64bit: - [2013/09/24 16:53:50 | 000,094,208 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2013/09/10 00:43:02 | 000,031,544 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgrkx64.sys -- (Avgrkx64)
DRV:64bit: - [2013/08/20 06:02:12 | 000,103,576 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudbus.sys -- (dg_ssudbus)
DRV:64bit: - [2013/08/01 15:07:06 | 000,251,192 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgtdia.sys -- (Avgtdia)
DRV:64bit: - [2013/07/30 09:54:54 | 000,035,344 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\npf.sys -- (NPF)
DRV:64bit: - [2013/06/04 08:15:00 | 000,203,672 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudmdm.sys -- (ssudmdm)
DRV:64bit: - [2013/03/27 16:10:36 | 000,495,376 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\e1q62x64.sys -- (e1qexpress)
DRV:64bit: - [2012/09/23 05:17:24 | 000,021,160 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdkmafd.sys -- (amdkmafd)
DRV:64bit: - [2012/08/13 14:05:58 | 000,183,584 | ---- | M] (Windows ® Codename Longhorn DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NetgearUDSTcpBus.sys -- (NetgearUDSTcpBus)
DRV:64bit: - [2012/08/13 14:03:32 | 000,107,296 | ---- | M] (Windows ® Codename Longhorn DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NetgearUDSMBus.sys -- (NetgearUDSMBus)
DRV:64bit: - [2012/08/02 15:50:48 | 000,031,024 | ---- | M] (Windows ® Win 7 DDK provider) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\LPCFilter.sys -- (LPCFilter)
DRV:64bit: - [2012/06/19 06:31:18 | 000,079,800 | ---- | M] (Protection Technology (StarForce)) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sfsync04.sys -- (sfsync04)
DRV:64bit: - [2012/04/09 09:13:58 | 000,057,472 | ---- | M] (Advanced Micro Devices) [Kernel | Auto | Stopped] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys -- (AODDriver4.2)
DRV:64bit: - [2012/04/09 09:13:58 | 000,057,472 | ---- | M] (Advanced Micro Devices) [Kernel | Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys -- (AODDriver4.01)
DRV:64bit: - [2012/03/01 00:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011/08/31 12:55:52 | 002,736,640 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:64bit: - [2011/03/23 14:41:28 | 000,036,448 | ---- | M] (Asmedia Technology) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\asahci64.sys -- (asahci64)
DRV:64bit: - [2011/03/11 00:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/11 00:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011/03/03 23:46:20 | 000,078,976 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amd_sata.sys -- (amd_sata)
DRV:64bit: - [2011/03/03 23:46:20 | 000,038,528 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amd_xata.sys -- (amd_xata)
DRV:64bit: - [2011/02/24 09:30:50 | 000,389,608 | ---- | M] (ASMedia Technology Inc) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\asmtxhci.sys -- (asmtxhci)
DRV:64bit: - [2011/02/24 09:30:50 | 000,126,952 | ---- | M] (ASMedia Technology Inc) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\asmthub3.sys -- (asmthub3)
DRV:64bit: - [2010/12/15 22:06:46 | 000,047,232 | R--- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbfilter.sys -- (usbfilter)
DRV:64bit: - [2010/11/20 21:24:33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010/11/20 21:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/11/20 21:23:47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2010/02/18 08:18:24 | 000,046,136 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdiox64.sys -- (amdiox64)
DRV:64bit: - [2009/08/13 21:10:18 | 000,073,984 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xusb21.sys -- (xusb21)
DRV:64bit: - [2009/07/13 19:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 19:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 19:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/07/13 18:35:32 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\serscan.sys -- (StillCam)
DRV:64bit: - [2009/07/13 18:01:09 | 000,679,936 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xnacc.sys -- (xnacc)
DRV:64bit: - [2009/06/10 14:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 14:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 14:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 14:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/03/18 17:35:42 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV:64bit: - [2009/02/03 09:40:13 | 000,077,432 | ---- | M] (Protection Technology (StarForce)) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sfdrv01a.sys -- (sfdrv01a)
DRV:64bit: - [2006/11/03 02:25:33 | 000,080,768 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\pssync05.sys -- (pssync05)
DRV:64bit: - [2006/09/11 06:03:37 | 000,074,616 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\psdrv02.sys -- (psdrv02)
DRV:64bit: - [2006/06/14 08:58:10 | 000,014,192 | ---- | M] (Protection Technology (StarForce)) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sfhlp02.sys -- (sfhlp02)
DRV - [2013/05/22 05:34:26 | 000,037,344 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\FsUsbExDisk.Sys -- (FsUsbExDisk)
DRV - [2012/06/15 13:04:00 | 000,092,160 | ---- | M] (Windows ® Codename Longhorn DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\drivers\NetgearUDSMBus.sys -- (NetgearUDSMBus)
DRV - [2012/06/15 13:02:58 | 000,153,600 | ---- | M] (Windows ® Codename Longhorn DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\drivers\NetgearUDSTcpBus.sys -- (NetgearUDSTcpBus)
DRV - [2009/07/13 19:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-2378327765-3788761435-258908055-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = Preserve
IE - HKU\S-1-5-21-2378327765-3788761435-258908055-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
IE - HKU\S-1-5-21-2378327765-3788761435-258908055-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
IE - HKU\S-1-5-21-2378327765-3788761435-258908055-1000\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-2378327765-3788761435-258908055-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...Box&FORM=IE10SR
IE - HKU\S-1-5-21-2378327765-3788761435-258908055-1000\..\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}: "URL" = http://mysearch.avg....sa&d=2013-11-06 18:51:13&v=17.0.1.12&pid=safeguard&sg=0&sap=dsp&q={searchTerms}
IE - HKU\S-1-5-21-2378327765-3788761435-258908055-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.startup.homepage: "https://www.google.com/"
FF - prefs.js..extensions.enabledAddons: %7Be53a26f5-7199-4a5b-86f5-d2e86854b979%7D:2.0
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:25.0.1


FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_152.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.25.2: C:\Windows\system32\npDeployJava1.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_152.dll ()
FF - HKLM\Software\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin: C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\17.1.2\\npsitesafety.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.45.2: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.8: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKCU\Software\MozillaPlugins\ubisoft.com/uplaypc: C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll ()

64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{7D4F1959-3F72-49d5-8E59-F02F8AA6815D}: C:\PROGRAM FILES\UPDATER BY SWEETPACKS\FIREFOX
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\ProgramData\AVG SafeGuard toolbar\FireFoxExt\17.1.2.1 [2013/11/14 19:52:02 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 25.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 25.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/11/15 18:13:12 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 25.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 25.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/11/15 18:13:12 | 000,000,000 | ---D | M]

[2013/06/13 20:19:32 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Aaron\AppData\Roaming\Mozilla\Extensions
[2013/12/03 17:08:00 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Aaron\AppData\Roaming\Mozilla\Firefox\Profiles\e5e3k4wa.default-1380723517929\extensions
[2013/11/15 18:13:11 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2013/11/15 18:13:13 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2012/06/28 09:42:00 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll

O1 HOSTS File: ([2009/06/10 15:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2:64bit: - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (AVG SafeGuard toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\17.1.2.1\AVG SafeGuard toolbar_toolbar.dll (AVG Secure Search)
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3 - HKLM\..\Toolbar: (AVG SafeGuard toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\17.1.2.1\AVG SafeGuard toolbar_toolbar.dll (AVG Secure Search)
O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [AVG_UI] C:\Program Files (x86)\AVG\AVG2014\avgui.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe (Samsung Electronics Co., Ltd.)
O4 - HKLM..\Run: [LogMeIn Hamachi Ui] C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn Inc.)
O4 - HKLM..\Run: [NETGEAR USB Control Center] C:\Program Files (x86)\NETGEAR\USB Control Center\Control Center.exe ()
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [vProt] C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe ()
O4 - HKLM..\Run: [WinampAgent] C:\Program Files (x86)\Winamp\winampa.exe (Nullsoft, Inc.)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2378327765-3788761435-258908055-1000..\Run: [] C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe (Samsung)
O4 - HKU\S-1-5-21-2378327765-3788761435-258908055-1000..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (Disc Soft Ltd)
O4 - HKU\S-1-5-21-2378327765-3788761435-258908055-1000..\Run: [DriverMax] C:\Program Files (x86)\Innovative Solutions\DriverMax\drivermax.exe (Innovative Solutions)
O4 - HKU\S-1-5-21-2378327765-3788761435-258908055-1000..\Run: [HydraVisionDesktopManager] C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe (AMD)
O4 - HKU\S-1-5-21-2378327765-3788761435-258908055-1000..\Run: [KiesAirMessage] C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup File not found
O4 - HKU\S-1-5-21-2378327765-3788761435-258908055-1000..\Run: [KiesPDLR] C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe (Samsung)
O4 - HKU\S-1-5-21-2378327765-3788761435-258908055-1000..\Run: [KiesPreload] C:\Program Files (x86)\Samsung\Kies\Kies.exe (Samsung)
O4 - HKU\S-1-5-21-2378327765-3788761435-258908055-1000..\Run: [NETGEARGenie] C:\Program Files (x86)\NETGEAR Genie\bin\NETGEARGenie.exe ()
O4 - HKU\S-1-5-21-2378327765-3788761435-258908055-1000..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe File not found
O4 - HKU\S-1-5-21-2378327765-3788761435-258908055-1000..\Run: [Steam] C:\Program Files (x86)\Steam\steam.exe (Valve Corporation)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - Startup: C:\Users\Aaron\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk = C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O8:64bit: - Extra context menu item: Open Client to monitor &1 - C:\Windows\web\AOpenClient.htm File not found
O8:64bit: - Extra context menu item: Open Client to monitor &2 - C:\Windows\web\AOpenClient.htm File not found
O8 - Extra context menu item: Open Client to monitor &1 - C:\Windows\web\AOpenClient.htm File not found
O8 - Extra context menu item: Open Client to monitor &2 - C:\Windows\web\AOpenClient.htm File not found
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E0D9378F-6185-4751-903C-070176C7A515}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{EE4B5E26-95F3-431C-8FCC-04D95E394829}: DhcpNameServer = 192.168.1.1
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2013/11/15 18:11:44 | 000,000,043 | R--- | M] () - E:\autorun.inf -- [ CDFS ]
O33 - MountPoints2\{b9d6bbf2-4a33-11e3-985e-14dae9ca3057}\Shell - "" = AutoRun
O33 - MountPoints2\{b9d6bbf2-4a33-11e3-985e-14dae9ca3057}\Shell\AutoRun\command - "" = E:\setup.exe -- [2013/11/15 18:12:11 | 000,772,044 | R--- | M] ( )
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point


========== Files/Folders - Created Within 30 Days ==========

[2013/12/04 16:30:56 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2013/12/04 16:25:36 | 004,745,728 | ---- | C] (AVAST Software) -- C:\Users\Aaron\Desktop\aswmbr.exe
[2013/12/03 23:56:54 | 000,000,000 | ---D | C] -- C:\Users\Aaron\Documents\Baldur's Gate II - Enhanced Edition
[2013/12/03 23:46:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Baldur's Gate II Enhanced Edition
[2013/12/03 17:15:45 | 000,000,000 | ---D | C] -- C:\_OTL
[2013/12/03 17:11:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
[2013/12/03 17:11:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\LogMeIn Hamachi
[2013/12/01 20:08:00 | 000,000,000 | ---D | C] -- C:\Users\Aaron\Desktop\Arena Island
[2013/11/30 15:56:06 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Aaron\Desktop\OTL.exe
[2013/11/30 13:57:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Oracle
[2013/11/30 13:56:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2013/11/30 13:56:13 | 000,264,616 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaws.exe
[2013/11/30 13:56:09 | 000,175,016 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe
[2013/11/30 13:56:09 | 000,174,504 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe
[2013/11/30 13:56:09 | 000,096,168 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
[2013/11/30 13:55:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
[2013/11/28 12:21:49 | 000,000,000 | ---D | C] -- C:\Users\Aaron\AppData\Local\Castle Story Prototype
[2013/11/27 09:50:25 | 000,028,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IEUDINIT.EXE
[2013/11/27 09:48:14 | 000,940,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2013/11/27 09:48:14 | 000,194,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\elshyph.dll
[2013/11/27 09:48:12 | 000,645,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jsIntl.dll
[2013/11/27 09:48:12 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\elshyph.dll
[2013/11/27 09:48:12 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2013/11/27 09:48:11 | 001,926,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2013/11/27 09:48:11 | 001,051,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2013/11/27 09:48:11 | 000,703,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2013/11/27 09:48:11 | 000,616,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dat
[2013/11/27 09:48:11 | 000,440,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2013/11/27 09:48:11 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2013/11/27 09:48:11 | 000,233,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2013/11/27 09:48:11 | 000,164,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2013/11/27 09:48:11 | 000,151,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iexpress.exe
[2013/11/27 09:48:11 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wextract.exe
[2013/11/27 09:48:11 | 000,083,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
[2013/11/27 09:48:11 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2013/11/27 09:48:11 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\icardie.dll
[2013/11/27 09:48:11 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tdc.ocx
[2013/11/27 09:48:11 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2013/11/27 09:48:11 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
[2013/11/27 09:48:11 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2013/11/27 09:48:11 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
[2013/11/27 09:48:10 | 005,765,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2013/11/27 09:48:10 | 000,942,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jsIntl.dll
[2013/11/27 09:48:10 | 000,708,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
[2013/11/27 09:48:10 | 000,610,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2013/11/27 09:48:10 | 000,574,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2013/11/27 09:48:10 | 000,553,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
[2013/11/27 09:48:10 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msls31.dll
[2013/11/27 09:48:10 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2013/11/27 09:48:10 | 000,131,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IEAdvpack.dll
[2013/11/27 09:48:10 | 000,127,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2013/11/27 09:48:10 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2013/11/27 09:48:10 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2013/11/27 09:48:10 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IEAdvpack.dll
[2013/11/27 09:48:10 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesysprep.dll
[2013/11/27 09:48:10 | 000,090,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SetIEInstalledDate.exe
[2013/11/27 09:48:10 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2013/11/27 09:48:10 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2013/11/27 09:48:10 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tdc.ocx
[2013/11/27 09:48:10 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SetIEInstalledDate.exe
[2013/11/27 09:48:10 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
[2013/11/27 09:48:10 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pngfilt.dll
[2013/11/27 09:48:10 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
[2013/11/27 09:48:10 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmler.dll
[2013/11/27 09:48:10 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmler.dll
[2013/11/27 09:48:10 | 000,040,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
[2013/11/27 09:48:10 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe
[2013/11/27 09:48:10 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2013/11/27 09:48:09 | 001,993,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2013/11/27 09:48:09 | 001,228,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2013/11/27 09:48:09 | 000,817,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2013/11/27 09:48:09 | 000,774,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2013/11/27 09:48:09 | 000,626,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2013/11/27 09:48:09 | 000,616,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dat
[2013/11/27 09:48:09 | 000,548,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2013/11/27 09:48:09 | 000,453,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2013/11/27 09:48:09 | 000,413,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
[2013/11/27 09:48:09 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2013/11/27 09:48:09 | 000,235,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2013/11/27 09:48:09 | 000,218,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2013/11/27 09:48:09 | 000,167,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iexpress.exe
[2013/11/27 09:48:09 | 000,147,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\occache.dll
[2013/11/27 09:48:09 | 000,143,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wextract.exe
[2013/11/27 09:48:09 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2013/11/27 09:48:09 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll
[2013/11/27 09:48:09 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
[2013/11/27 09:48:09 | 000,101,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inseng.dll
[2013/11/27 09:48:09 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2013/11/27 09:48:09 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
[2013/11/27 09:48:09 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\icardie.dll
[2013/11/27 09:48:09 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2013/11/27 09:48:09 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pngfilt.dll
[2013/11/27 09:48:09 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
[2013/11/27 09:48:09 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imgutil.dll
[2013/11/27 09:48:09 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2013/11/27 09:48:09 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll
[2013/11/27 09:48:09 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshta.exe
[2013/11/27 09:48:09 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
[2013/11/27 08:39:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
[2013/11/17 11:55:41 | 000,000,000 | ---D | C] -- C:\Users\Aaron\Zomboid
[2013/11/15 18:13:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2013/11/14 02:08:51 | 000,110,080 | ---- | C] (TODO: <Company name>) -- C:\Windows\SysNative\DelayAPO.dll
[2013/11/14 02:08:51 | 000,094,208 | ---- | C] (Advanced Micro Devices) -- C:\Windows\SysNative\drivers\AtihdW76.sys
[2013/11/14 02:06:29 | 000,129,536 | ---- | C] (AMD) -- C:\Windows\SysNative\coinst_13.25.18.dll
[2013/11/14 02:06:29 | 000,100,352 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\OpenVideo64.dll
[2013/11/14 02:06:29 | 000,086,528 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\OVDecode64.dll
[2013/11/14 02:06:29 | 000,083,968 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\OpenVideo.dll
[2013/11/14 02:06:29 | 000,073,728 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\OVDecode.dll
[2013/11/14 02:06:21 | 022,156,288 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysWow64\atioglxx.dll
[2013/11/14 02:06:21 | 000,190,976 | ---- | C] (AMD) -- C:\Windows\SysNative\atitmm64.dll
[2013/11/14 02:06:19 | 026,350,592 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atio6axx.dll
[2013/11/14 02:06:18 | 000,624,128 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\drivers\atikmpag.sys
[2013/11/14 02:06:18 | 000,078,432 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atimpc64.dll
[2013/11/14 02:06:18 | 000,078,432 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\amdpcom64.dll
[2013/11/14 02:06:18 | 000,071,704 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atimpc32.dll
[2013/11/14 02:06:18 | 000,071,704 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\amdpcom32.dll
[2013/11/14 02:06:18 | 000,031,232 | ---- | C] (AMD) -- C:\Windows\SysNative\atimuixx.dll
[2013/11/14 02:06:17 | 013,200,896 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\drivers\atikmdag.sys
[2013/11/14 02:06:16 | 000,100,352 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atig6txx.dll
[2013/11/14 02:06:16 | 000,096,768 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atigktxx.dll
[2013/11/14 02:06:16 | 000,074,752 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atig6pxx.dll
[2013/11/14 02:06:16 | 000,069,632 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiglpxx.dll
[2013/11/14 02:06:16 | 000,069,632 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiglpxx.dll
[2013/11/14 02:06:13 | 015,716,352 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticaldd64.dll
[2013/11/14 02:06:13 | 000,062,464 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticalrt64.dll
[2013/11/14 02:06:13 | 000,052,224 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticalrt.dll
[2013/11/14 02:06:11 | 014,302,208 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticaldd.dll
[2013/11/14 02:06:10 | 000,368,640 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atiapfxx.exe
[2013/11/14 02:06:10 | 000,055,808 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticalcl64.dll
[2013/11/14 02:06:10 | 000,049,152 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticalcl.dll
[2013/11/14 02:06:09 | 000,825,856 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysWow64\atiadlxy.dll
[2013/11/14 02:06:09 | 000,063,488 | ---- | C] (Khronos Group) -- C:\Windows\SysNative\OpenCL.dll
[2013/11/14 02:06:09 | 000,043,520 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\drivers\ati2erec.dll
[2013/11/14 02:06:07 | 000,057,344 | ---- | C] (Khronos Group) -- C:\Windows\SysWow64\OpenCL.dll
[2013/11/14 02:06:05 | 029,363,712 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\amdocl64.dll
[2013/11/14 02:05:59 | 024,846,848 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\amdocl.dll
[2013/11/14 02:04:32 | 000,021,160 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\drivers\amdkmafd.sys
[2013/11/13 19:08:31 | 001,474,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll
[2013/11/13 19:07:34 | 001,930,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\authui.dll
[2013/11/13 19:07:33 | 001,796,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\authui.dll
[2013/11/13 19:07:33 | 000,190,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SmartcardCredentialProvider.dll
[2013/11/13 19:07:32 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\credui.dll
[2013/11/13 19:07:32 | 000,152,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SmartcardCredentialProvider.dll
[2013/11/13 19:07:10 | 001,447,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2013/11/13 19:07:10 | 000,307,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
[2013/11/13 19:07:10 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
[2013/11/13 19:07:10 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
[2013/11/13 19:07:10 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2013/11/13 19:07:01 | 000,404,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gdi32.dll
[2013/11/13 19:06:51 | 000,830,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nshwfp.dll
[2013/11/13 19:06:51 | 000,656,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nshwfp.dll
[2013/11/13 19:06:51 | 000,324,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FWPUCLNT.DLL
[2013/11/13 19:06:51 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\FWPUCLNT.DLL
[2013/11/10 20:07:00 | 000,000,000 | ---D | C] -- C:\Users\Aaron\Documents\Square Enix
[2013/11/10 15:04:22 | 000,283,064 | ---- | C] (Disc Soft Ltd) -- C:\Windows\SysNative\drivers\dtsoftbus01.sys
[2013/11/10 15:04:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DAEMON Tools Lite
[2013/11/05 21:55:48 | 000,150,808 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgdiska.sys
[2013/11/04 21:52:42 | 000,240,920 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgidsdrivera.sys

========== Files - Modified Within 30 Days ==========

[2013/12/04 16:37:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013/12/04 16:30:14 | 000,021,888 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013/12/04 16:30:14 | 000,021,888 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013/12/04 16:29:26 | 001,110,034 | ---- | M] () -- C:\Users\Aaron\Desktop\AdwCleaner.exe
[2013/12/04 16:27:49 | 000,000,512 | ---- | M] () -- C:\Users\Aaron\Desktop\MBR.dat
[2013/12/04 16:25:39 | 004,745,728 | ---- | M] (AVAST Software) -- C:\Users\Aaron\Desktop\aswmbr.exe
[2013/12/04 16:22:07 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013/12/04 16:22:00 | 2116,243,455 | -HS- | M] () -- C:\hiberfil.sys
[2013/11/30 15:56:07 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Aaron\Desktop\OTL.exe
[2013/11/27 09:48:14 | 000,940,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2013/11/27 09:48:14 | 000,194,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\elshyph.dll
[2013/11/27 09:48:12 | 000,645,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jsIntl.dll
[2013/11/27 09:48:12 | 000,235,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\elshyph.dll
[2013/11/27 09:48:12 | 000,071,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2013/11/27 09:48:11 | 001,926,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2013/11/27 09:48:11 | 001,051,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2013/11/27 09:48:11 | 000,703,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2013/11/27 09:48:11 | 000,616,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dat
[2013/11/27 09:48:11 | 000,440,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2013/11/27 09:48:11 | 000,337,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2013/11/27 09:48:11 | 000,233,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2013/11/27 09:48:11 | 000,164,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2013/11/27 09:48:11 | 000,151,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iexpress.exe
[2013/11/27 09:48:11 | 000,139,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wextract.exe
[2013/11/27 09:48:11 | 000,083,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
[2013/11/27 09:48:11 | 000,069,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2013/11/27 09:48:11 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\icardie.dll
[2013/11/27 09:48:11 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\tdc.ocx
[2013/11/27 09:48:11 | 000,061,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2013/11/27 09:48:11 | 000,034,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
[2013/11/27 09:48:11 | 000,032,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2013/11/27 09:48:11 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
[2013/11/27 09:48:11 | 000,016,284 | ---- | M] () -- C:\Windows\SysWow64\ieuinit.inf
[2013/11/27 09:48:10 | 005,765,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2013/11/27 09:48:10 | 000,942,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jsIntl.dll
[2013/11/27 09:48:10 | 000,708,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
[2013/11/27 09:48:10 | 000,610,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2013/11/27 09:48:10 | 000,574,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2013/11/27 09:48:10 | 000,553,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
[2013/11/27 09:48:10 | 000,247,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msls31.dll
[2013/11/27 09:48:10 | 000,195,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2013/11/27 09:48:10 | 000,131,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\IEAdvpack.dll
[2013/11/27 09:48:10 | 000,127,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2013/11/27 09:48:10 | 000,116,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2013/11/27 09:48:10 | 000,112,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2013/11/27 09:48:10 | 000,111,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\IEAdvpack.dll
[2013/11/27 09:48:10 | 000,105,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iesysprep.dll
[2013/11/27 09:48:10 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\SetIEInstalledDate.exe
[2013/11/27 09:48:10 | 000,086,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2013/11/27 09:48:10 | 000,086,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2013/11/27 09:48:10 | 000,077,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\tdc.ocx
[2013/11/27 09:48:10 | 000,074,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\SetIEInstalledDate.exe
[2013/11/27 09:48:10 | 000,061,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
[2013/11/27 09:48:10 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\pngfilt.dll
[2013/11/27 09:48:10 | 000,051,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
[2013/11/27 09:48:10 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmler.dll
[2013/11/27 09:48:10 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmler.dll
[2013/11/27 09:48:10 | 000,040,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
[2013/11/27 09:48:10 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe
[2013/11/27 09:48:10 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2013/11/27 09:48:09 | 001,993,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2013/11/27 09:48:09 | 001,228,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2013/11/27 09:48:09 | 000,817,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2013/11/27 09:48:09 | 000,774,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2013/11/27 09:48:09 | 000,626,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2013/11/27 09:48:09 | 000,616,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dat
[2013/11/27 09:48:09 | 000,548,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2013/11/27 09:48:09 | 000,453,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2013/11/27 09:48:09 | 000,413,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
[2013/11/27 09:48:09 | 000,296,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2013/11/27 09:48:09 | 000,235,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2013/11/27 09:48:09 | 000,218,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2013/11/27 09:48:09 | 000,167,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iexpress.exe
[2013/11/27 09:48:09 | 000,147,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\occache.dll
[2013/11/27 09:48:09 | 000,143,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wextract.exe
[2013/11/27 09:48:09 | 000,139,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2013/11/27 09:48:09 | 000,135,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll
[2013/11/27 09:48:09 | 000,111,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
[2013/11/27 09:48:09 | 000,101,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\inseng.dll
[2013/11/27 09:48:09 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2013/11/27 09:48:09 | 000,083,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
[2013/11/27 09:48:09 | 000,081,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\icardie.dll
[2013/11/27 09:48:09 | 000,066,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2013/11/27 09:48:09 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\pngfilt.dll
[2013/11/27 09:48:09 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
[2013/11/27 09:48:09 | 000,048,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\imgutil.dll
[2013/11/27 09:48:09 | 000,033,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2013/11/27 09:48:09 | 000,030,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll
[2013/11/27 09:48:09 | 000,016,284 | ---- | M] () -- C:\Windows\SysNative\ieuinit.inf
[2013/11/27 09:48:09 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshta.exe
[2013/11/27 09:48:09 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
[2013/11/22 01:12:42 | 000,779,266 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013/11/22 01:12:42 | 000,660,280 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013/11/22 01:12:42 | 000,121,208 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013/11/16 02:21:49 | 000,692,616 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2013/11/16 02:21:49 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2013/11/12 23:41:16 | 000,003,745 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefoxsafeguard-secure-search.xml
[2013/11/12 23:40:50 | 000,046,368 | ---- | M] (AVG Technologies) -- C:\Windows\SysNative\drivers\avgtpx64.sys
[2013/11/10 15:04:22 | 000,283,064 | ---- | M] (Disc Soft Ltd) -- C:\Windows\SysNative\drivers\dtsoftbus01.sys
[2013/11/09 14:19:40 | 000,000,851 | ---- | M] () -- C:\Users\Aaron\Desktop\µTorrent.lnk
[2013/11/09 14:19:40 | 000,000,831 | ---- | M] () -- C:\Users\Aaron\Application Data\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk
[2013/11/07 09:39:42 | 000,078,432 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atimpc64.dll
[2013/11/07 09:39:42 | 000,078,432 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\amdpcom64.dll
[2013/11/07 09:39:42 | 000,071,704 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atimpc32.dll
[2013/11/07 09:39:42 | 000,071,704 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\amdpcom32.dll
[2013/11/07 09:39:36 | 000,143,304 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiuxp64.dll
[2013/11/07 09:39:34 | 000,126,336 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiuxpag.dll
[2013/11/07 09:39:34 | 000,115,512 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiu9p64.dll
[2013/11/07 09:39:32 | 000,098,496 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiu9pag.dll
[2013/11/07 09:39:30 | 001,318,552 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\aticfx64.dll
[2013/11/07 09:39:28 | 001,100,216 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\aticfx32.dll
[2013/11/07 09:39:24 | 009,764,088 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atidxx64.dll
[2013/11/07 09:39:20 | 008,412,680 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atidxx32.dll
[2013/11/07 09:39:14 | 008,287,008 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiumdva.dll
[2013/11/07 09:39:10 | 006,630,232 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiumdag.dll
[2013/11/07 09:39:04 | 008,927,704 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiumd6a.dll
[2013/11/07 09:39:00 | 007,751,920 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiumd64.dll
[2013/11/07 09:24:40 | 013,200,896 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\drivers\atikmdag.sys
[2013/11/07 09:11:10 | 000,230,912 | ---- | M] () -- C:\Windows\SysNative\clinfo.exe
[2013/11/07 09:10:54 | 000,100,352 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\OpenVideo64.dll
[2013/11/07 09:10:46 | 000,083,968 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\OpenVideo.dll
[2013/11/07 09:10:40 | 000,086,528 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\OVDecode64.dll
[2013/11/07 09:10:36 | 000,073,728 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\OVDecode.dll
[2013/11/07 09:10:16 | 029,363,712 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\amdocl64.dll
[2013/11/07 09:07:38 | 024,846,848 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\amdocl.dll
[2013/11/07 09:05:28 | 000,063,488 | ---- | M] (Khronos Group) -- C:\Windows\SysNative\OpenCL.dll
[2013/11/07 09:05:24 | 000,057,344 | ---- | M] (Khronos Group) -- C:\Windows\SysWow64\OpenCL.dll
[2013/11/07 09:02:44 | 000,129,536 | ---- | M] (AMD) -- C:\Windows\SysNative\coinst_13.25.18.dll
[2013/11/07 08:44:16 | 026,350,592 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atio6axx.dll
[2013/11/07 08:41:06 | 000,547,152 | ---- | M] () -- C:\Windows\SysWow64\atiapfxx.blb
[2013/11/07 08:41:06 | 000,547,152 | ---- | M] () -- C:\Windows\SysNative\atiapfxx.blb
[2013/11/07 08:40:44 | 000,368,640 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atiapfxx.exe
[2013/11/07 08:40:36 | 000,062,464 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticalrt64.dll
[2013/11/07 08:40:34 | 000,052,224 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticalrt.dll
[2013/11/07 08:40:26 | 000,055,808 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticalcl64.dll
[2013/11/07 08:40:24 | 000,049,152 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticalcl.dll
[2013/11/07 08:40:10 | 015,716,352 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticaldd64.dll
[2013/11/07 08:37:00 | 014,302,208 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticaldd.dll
[2013/11/07 08:26:20 | 022,156,288 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysWow64\atioglxx.dll
[2013/11/07 08:21:10 | 000,442,368 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atidemgy.dll
[2013/11/07 08:21:00 | 000,031,232 | ---- | M] (AMD) -- C:\Windows\SysNative\atimuixx.dll
[2013/11/07 08:20:52 | 000,585,216 | ---- | M] (AMD) -- C:\Windows\SysNative\atieclxx.exe
[2013/11/07 08:20:02 | 000,239,616 | ---- | M] (AMD) -- C:\Windows\SysNative\atiesrxx.exe
[2013/11/07 08:18:34 | 000,190,976 | ---- | M] (AMD) -- C:\Windows\SysNative\atitmm64.dll
[2013/11/07 08:09:36 | 003,399,312 | ---- | M] () -- C:\Windows\SysNative\atiumd6a.cap
[2013/11/07 07:58:40 | 003,433,360 | ---- | M] () -- C:\Windows\SysWow64\atiumdva.cap
[2013/11/07 07:50:48 | 001,145,344 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atiadlxx.dll
[2013/11/07 07:50:36 | 000,825,856 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysWow64\atiadlxy.dll
[2013/11/07 07:50:20 | 000,074,752 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atig6pxx.dll
[2013/11/07 07:50:16 | 000,069,632 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiglpxx.dll
[2013/11/07 07:50:16 | 000,069,632 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiglpxx.dll
[2013/11/07 07:50:12 | 000,100,352 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atig6txx.dll
[2013/11/07 07:50:04 | 000,096,768 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atigktxx.dll
[2013/11/07 07:49:54 | 000,624,128 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\drivers\atikmpag.sys
[2013/11/07 07:46:26 | 000,043,520 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\drivers\ati2erec.dll
[2013/11/05 21:55:48 | 000,150,808 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgdiska.sys
[2013/11/04 21:52:42 | 000,240,920 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgidsdrivera.sys

========== Files Created - No Company Name ==========

[2013/12/04 16:29:26 | 001,110,034 | ---- | C] () -- C:\Users\Aaron\Desktop\AdwCleaner.exe
[2013/12/04 16:27:49 | 000,000,512 | ---- | C] () -- C:\Users\Aaron\Desktop\MBR.dat
[2013/11/27 09:48:11 | 000,016,284 | ---- | C] () -- C:\Windows\SysWow64\ieuinit.inf
[2013/11/27 09:48:09 | 000,016,284 | ---- | C] () -- C:\Windows\SysNative\ieuinit.inf
[2013/11/14 02:06:29 | 000,230,912 | ---- | C] () -- C:\Windows\SysNative\clinfo.exe
[2013/11/14 02:06:28 | 000,234,036 | ---- | C] () -- C:\Windows\SysNative\ativvaxy_cik.dat
[2013/11/14 02:06:28 | 000,233,776 | ---- | C] () -- C:\Windows\SysNative\ativvaxy_cik_nd.dat
[2013/11/14 02:06:28 | 000,083,552 | ---- | C] () -- C:\Windows\SysNative\ativce02.dat
[2013/11/14 02:06:26 | 003,433,360 | ---- | C] () -- C:\Windows\SysWow64\atiumdva.cap
[2013/11/14 02:06:24 | 003,399,312 | ---- | C] () -- C:\Windows\SysNative\atiumd6a.cap
[2013/11/14 02:06:20 | 000,047,887 | ---- | C] () -- C:\Windows\atiogl.xml
[2013/11/14 02:06:16 | 000,717,907 | ---- | C] () -- C:\Windows\SysNative\atiicdxx.dat
[2013/11/14 02:06:10 | 000,547,152 | ---- | C] () -- C:\Windows\SysWow64\atiapfxx.blb
[2013/11/14 02:06:10 | 000,547,152 | ---- | C] () -- C:\Windows\SysNative\atiapfxx.blb
[2013/11/09 14:19:40 | 000,000,851 | ---- | C] () -- C:\Users\Aaron\Desktop\µTorrent.lnk
[2013/09/01 17:53:45 | 000,772,990 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2013/07/22 15:44:21 | 000,003,245 | ---- | C] () -- C:\Users\Aaron\AppData\Roaming\glide_wrapper.zbag.ini
[2013/07/04 19:01:53 | 000,110,592 | ---- | C] () -- C:\Windows\SysWow64\FsUsbExDevice.Dll
[2013/07/04 19:01:53 | 000,037,344 | ---- | C] () -- C:\Windows\SysWow64\FsUsbExDisk.Sys
[2013/07/03 17:26:58 | 000,173,079 | ---- | C] () -- C:\Windows\hpoins46.dat
[2013/07/03 17:26:58 | 000,000,601 | ---- | C] () -- C:\Windows\hpomdl46.dat
[2013/06/13 20:28:03 | 000,003,745 | ---- | C] () -- C:\Program Files (x86)\Mozilla Firefoxsafeguard-secure-search.xml
[2013/06/13 20:00:56 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
[2013/06/13 20:00:55 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
[2013/06/13 20:00:52 | 000,003,917 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2013/06/13 20:00:41 | 000,798,734 | ---- | C] () -- C:\Windows\SysWow64\amdocl_ld32.exe
[2013/06/13 20:00:40 | 000,995,342 | ---- | C] () -- C:\Windows\SysWow64\amdocl_as32.exe
[2013/06/13 16:00:40 | 000,045,507 | ---- | C] () -- C:\Windows\Ascd_log.ini
[2013/06/13 15:59:53 | 000,001,769 | ---- | C] () -- C:\Windows\Language_trs.ini
[2013/06/13 15:59:47 | 000,035,015 | ---- | C] () -- C:\Windows\Ascd_tmp.ini
[2013/06/13 15:55:49 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2012/11/27 00:18:46 | 000,038,912 | ---- | C] () -- C:\Windows\SysWow64\kdbsdk32.dll
[2012/05/23 17:49:34 | 000,030,568 | ---- | C] () -- C:\Windows\MusiccityDownload.exe
[2012/05/23 17:49:32 | 000,974,848 | ---- | C] () -- C:\Windows\SysWow64\cis-2.4.dll
[2012/05/23 17:49:32 | 000,081,920 | ---- | C] () -- C:\Windows\SysWow64\issacapi_bs-2.3.dll
[2012/05/23 17:49:32 | 000,065,536 | ---- | C] () -- C:\Windows\SysWow64\issacapi_pe-2.3.dll
[2012/05/23 17:49:32 | 000,057,344 | ---- | C] () -- C:\Windows\SysWow64\issacapi_se-2.3.dll

========== ZeroAccess Check ==========

[2009/07/13 22:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013/07/25 20:24:57 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/07/25 19:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 19:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 21:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 19:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2013/09/05 18:11:39 | 000,000,000 | ---D | M] -- C:\Users\Aaron\AppData\Roaming\.minecraft
[2013/10/25 10:07:04 | 000,000,000 | ---D | M] -- C:\Users\Aaron\AppData\Roaming\AVG2014
[2013/12/03 23:46:25 | 000,000,000 | ---D | M] -- C:\Users\Aaron\AppData\Roaming\DAEMON Tools Lite
[2013/06/13 16:12:36 | 000,000,000 | ---D | M] -- C:\Users\Aaron\AppData\Roaming\DAEMON Tools Pro
[2013/11/28 11:50:25 | 000,000,000 | ---D | M] -- C:\Users\Aaron\AppData\Roaming\inkscape
[2013/06/16 14:24:38 | 000,000,000 | ---D | M] -- C:\Users\Aaron\AppData\Roaming\LolClient
[2013/08/08 20:22:32 | 000,000,000 | ---D | M] -- C:\Users\Aaron\AppData\Roaming\Mount&Blade Warband
[2013/11/29 23:22:07 | 000,000,000 | ---D | M] -- C:\Users\Aaron\AppData\Roaming\Natural Selection 2
[2013/08/30 21:05:25 | 000,000,000 | ---D | M] -- C:\Users\Aaron\AppData\Roaming\NBOS
[2013/07/27 15:37:08 | 000,000,000 | ---D | M] -- C:\Users\Aaron\AppData\Roaming\OpenOffice.org
[2013/07/12 23:06:58 | 000,000,000 | ---D | M] -- C:\Users\Aaron\AppData\Roaming\Origin
[2013/06/13 21:49:26 | 000,000,000 | ---D | M] -- C:\Users\Aaron\AppData\Roaming\Riot Games
[2013/10/03 15:03:37 | 000,000,000 | ---D | M] -- C:\Users\Aaron\AppData\Roaming\Samsung
[2013/09/08 06:04:12 | 000,000,000 | ---D | M] -- C:\Users\Aaron\AppData\Roaming\The Creative Assembly
[2013/11/28 11:50:25 | 000,000,000 | ---D | M] -- C:\Users\Aaron\AppData\Roaming\TS3Client
[2013/06/13 16:40:23 | 000,000,000 | ---D | M] -- C:\Users\Aaron\AppData\Roaming\TuneUp Software
[2013/09/14 00:42:53 | 000,000,000 | ---D | M] -- C:\Users\Aaron\AppData\Roaming\Ubisoft
[2013/12/04 01:08:07 | 000,000,000 | ---D | M] -- C:\Users\Aaron\AppData\Roaming\uTorrent
[2013/07/08 11:37:22 | 000,000,000 | ---D | M] -- C:\Users\Default\AppData\Roaming\TuneUp Software
[2013/07/08 11:37:22 | 000,000,000 | ---D | M] -- C:\Users\Default User\AppData\Roaming\TuneUp Software

========== Purity Check ==========



========== Custom Scans ==========

========== Base Services ==========
SRV:64bit: - [2009/07/13 19:40:01 | 000,072,192 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\aelupsvc.dll -- (AeLookupSvc)
SRV:64bit: - [2013/02/26 23:47:10 | 000,070,144 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\appinfo.dll -- (Appinfo)
SRV:64bit: - [2009/07/13 19:38:55 | 000,079,360 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\alg.exe -- (ALG)
SRV:64bit: - [2010/11/20 21:23:51 | 000,849,920 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\qmgr.dll -- (BITS)
SRV:64bit: - [2010/11/20 21:24:00 | 000,705,024 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\BFE.DLL -- (BFE)
SRV:64bit: - [2013/09/24 19:03:24 | 000,030,720 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\lsass.exe -- (KeyIso)
SRV:64bit: - [2009/07/13 19:40:50 | 000,402,944 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\es.dll -- (EventSystem)
SRV - [2009/07/13 19:15:19 | 000,271,360 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\es.dll -- (EventSystem)
SRV:64bit: - [2012/07/04 16:13:27 | 000,136,704 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\browser.dll -- (Browser)
SRV:64bit: - [2013/07/08 23:46:20 | 000,184,320 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\cryptsvc.dll -- (CryptSvc)
SRV - [2013/07/08 22:46:31 | 000,140,288 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\cryptsvc.dll -- (CryptSvc)
SRV:64bit: - [2010/11/20 21:24:01 | 000,512,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (DcomLaunch)
SRV:64bit: - [2010/11/20 21:24:00 | 000,317,952 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dhcpcore.dll -- (Dhcp)
SRV - [2010/11/20 21:24:09 | 000,254,464 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\dhcpcore.dll -- (Dhcp)
SRV:64bit: - [2011/03/03 00:24:16 | 000,183,296 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dnsrslvr.dll -- (Dnscache)
SRV:64bit: - [2009/07/13 19:40:35 | 000,111,104 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\eapsvc.dll -- (EapHost)
SRV:64bit: - [2009/07/13 19:41:00 | 000,038,912 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\hidserv.dll -- (hidserv)
SRV - [2009/07/13 19:15:24 | 000,049,152 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\hidserv.dll -- (hidserv)
SRV:64bit: - [2009/07/13 19:41:10 | 000,359,424 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\ipnathlp.dll -- (SharedAccess)
SRV:64bit: - [2010/11/20 21:23:48 | 000,501,248 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IPSECSVC.DLL -- (PolicyAgent)
No service found with a name of MsMpSvc
No service found with a name of NisSrv
SRV:64bit: - [2009/07/13 19:41:54 | 000,524,288 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\swprv.dll -- (swprv)
SRV:64bit: - [2009/07/13 19:41:26 | 000,067,584 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\mmcss.dll -- (MMCSS)
SRV:64bit: - [2009/07/13 19:41:52 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netman.dll -- (Netman)
SRV:64bit: - [2009/07/13 19:41:52 | 000,459,776 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofm.dll -- (netprofm)
SRV - [2009/07/13 19:16:03 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\netprofm.dll -- (netprofm)
SRV:64bit: - [2012/10/03 11:44:21 | 000,303,104 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\nlasvc.dll -- (NlaSvc)
SRV:64bit: - [2009/07/13 19:41:53 | 000,025,600 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\nsisvc.dll -- (nsi)
SRV:64bit: - [2011/05/24 05:42:55 | 000,404,480 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\umpnpmgr.dll -- (PlugPlay)
SRV:64bit: - [2012/02/11 00:36:02 | 000,559,104 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\spoolsv.exe -- (Spooler)
SRV:64bit: - [2013/09/24 19:03:24 | 000,030,720 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\lsass.exe -- (ProtectedStorage)
No service found with a name of EMDMgmt
SRV:64bit: - [2009/07/13 19:41:53 | 000,099,328 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasauto.dll -- (RasAuto)
SRV:64bit: - [2010/11/20 21:24:17 | 000,344,064 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasmans.dll -- (RasMan)
SRV:64bit: - [2010/11/20 21:24:01 | 000,512,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (RpcSs)
SRV:64bit: - [2010/11/20 21:24:16 | 000,030,720 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\seclogon.dll -- (seclogon)
SRV:64bit: - [2013/09/24 19:03:24 | 000,030,720 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsass.exe -- (SamSs)
SRV:64bit: - [2009/07/13 19:41:58 | 000,097,280 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wscsvc.dll -- (wscsvc)
SRV:64bit: - [2010/11/20 21:23:48 | 000,236,032 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\srvsvc.dll -- (LanmanServer)
SRV:64bit: - [2010/11/20 21:23:55 | 000,370,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\shsvcs.dll -- (ShellHWDetection)
SRV - [2010/11/20 21:24:03 | 000,328,192 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\shsvcs.dll -- (ShellHWDetection)
No service found with a name of slsvc
SRV:64bit: - [2010/11/20 21:24:16 | 001,110,016 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\schedsvc.dll -- (Schedule)
SRV:64bit: - [2010/11/20 21:24:32 | 000,316,928 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\tapisrv.dll -- (TapiSrv)
SRV - [2010/11/20 21:24:00 | 000,242,176 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\tapisrv.dll -- (TapiSrv)
SRV:64bit: - [2009/07/13 19:41:55 | 000,044,544 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\themeservice.dll -- (Themes)
SRV:64bit: - [2012/04/30 23:40:20 | 000,209,920 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\profsvc.dll -- (ProfSvc)
SRV:64bit: - [2010/11/20 21:23:55 | 001,600,512 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\VSSVC.exe -- (VSS)
SRV:64bit: - [2010/11/20 21:24:32 | 000,679,424 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\audiosrv.dll -- (AudioSrv)
SRV:64bit: - [2010/11/20 21:24:32 | 000,679,424 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\audiosrv.dll -- (AudioEndpointBuilder)
SRV:64bit: - [2010/11/20 21:25:06 | 000,170,496 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\sdrsvc.dll -- (SDRSVC)
SRV:64bit: - [2013/05/26 23:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2010/11/20 21:23:55 | 001,646,080 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wevtsvc.dll -- (eventlog)
SRV:64bit: - [2010/11/20 21:24:28 | 000,828,416 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\MPSSVC.dll -- (MpsSvc)
SRV:64bit: - [2010/11/20 21:24:48 | 000,580,096 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wiaservc.dll -- (stisvc)
SRV:64bit: - [2010/11/20 21:24:15 | 000,128,000 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\msiexec.exe -- (msiserver)
SRV - [2010/11/20 21:24:28 | 000,073,216 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWow64\msiexec.exe -- (msiserver)
SRV:64bit: - [2009/07/13 19:41:56 | 000,242,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wbem\WMIsvc.dll -- (Winmgmt)
SRV:64bit: - [2012/06/02 16:19:43 | 002,428,952 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wuaueng.dll -- (wuauserv)
SRV:64bit: - [2010/11/20 21:24:09 | 000,252,416 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\dot3svc.dll -- (dot3svc)
SRV:64bit: - [2009/07/13 19:41:56 | 000,886,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wlansvc.dll -- (Wlansvc)
SRV:64bit: - [2010/11/20 21:24:32 | 000,118,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wkssvc.dll -- (LanmanWorkstation)

< %SYSTEMDRIVE%\*.exe >
[2007/11/07 07:03:18 | 000,562,688 | ---- | M] (Microsoft Corporation) -- C:\install.exe

< MD5 for: EXPLORER.EXE >
[2011/02/25 23:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows.old\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe
[2011/02/25 23:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe
[2011/02/25 00:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows.old\Windows\explorer.exe
[2011/02/25 00:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows.old\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe
[2011/02/25 00:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\explorer.exe
[2011/02/25 00:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe
[2011/02/26 00:14:34 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=3B69712041F3D63605529BD66DC00C48 -- C:\Windows.old\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe
[2011/02/26 00:14:34 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=3B69712041F3D63605529BD66DC00C48 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe
[2010/11/20 21:24:25 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows.old\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2010/11/20 21:24:25 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2011/02/24 23:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows.old\Windows\SysWOW64\explorer.exe
[2011/02/24 23:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows.old\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe
[2011/02/24 23:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\SysWOW64\explorer.exe
[2011/02/24 23:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe
[2010/11/20 21:24:11 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows.old\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe
[2010/11/20 21:24:11 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe

< MD5 for: SERVICES >
[2009/06/10 15:00:26 | 000,017,463 | ---- | M] () MD5=D9E1A01B480D961B7CF0509D597A92D6 -- C:\Windows.old\Windows\System32\drivers\etc\services
[2009/06/10 15:00:26 | 000,017,463 | ---- | M] () MD5=D9E1A01B480D961B7CF0509D597A92D6 -- C:\Windows.old\Windows\winsxs\amd64_microsoft-windows-w..nfrastructure-other_31bf3856ad364e35_6.1.7600.16385_none_6079f415110c0210\services
[2009/06/10 15:00:26 | 000,017,463 | ---- | M] () MD5=D9E1A01B480D961B7CF0509D597A92D6 -- C:\Windows\winsxs\amd64_microsoft-windows-w..nfrastructure-other_31bf3856ad364e35_6.1.7600.16385_none_6079f415110c0210\services

< MD5 for: SERVICES.CFG >
[2013/05/10 01:57:30 | 000,558,879 | ---- | M] () MD5=3679F8D3253DC110D1D8F2AE115EE00C -- C:\Windows.old\Program Files (x86)\Adobe\Reader 10.0\Reader\Services\Services.cfg
[2012/09/23 19:43:36 | 000,603,848 | R--- | M] () MD5=81B120EAEE296F0E54F66C16C5A21367 -- C:\Windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744BA0000000010\11.0.0\services.cfg
[2013/09/05 08:04:00 | 000,559,090 | ---- | M] () MD5=8ADD48E413D05BF2E7AEC00173DDFABC -- C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Services\Services.cfg
[2011/06/06 11:55:30 | 000,584,045 | R--- | M] () MD5=B82DD53FA8C260DDD7FDC42182DB816E -- C:\Windows.old\Windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\services.cfg

< MD5 for: SERVICES.EXE >
[2009/07/13 19:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows.old\Windows\System32\services.exe
[2009/07/13 19:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows.old\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe
[2009/07/13 19:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\SysNative\services.exe
[2009/07/13 19:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe

< MD5 for: SERVICES.EXE.MUI >
[2011/04/12 02:17:17 | 000,017,408 | ---- | M] (Microsoft Corporation) MD5=6507BF0DC2D1F5F32493C288EAA59277 -- C:\Windows.old\Windows\System32\en-US\services.exe.mui
[2011/04/12 02:17:17 | 000,017,408 | ---- | M] (Microsoft Corporation) MD5=6507BF0DC2D1F5F32493C288EAA59277 -- C:\Windows.old\Windows\winsxs\amd64_microsoft-windows-s..ontroller.resources_31bf3856ad364e35_6.1.7600.16385_en-us_c5f238be3fa63468\services.exe.mui
[2011/04/12 02:17:17 | 000,017,408 | ---- | M] (Microsoft Corporation) MD5=6507BF0DC2D1F5F32493C288EAA59277 -- C:\Windows\SysNative\en-US\services.exe.mui
[2011/04/12 02:17:17 | 000,017,408 | ---- | M] (Microsoft Corporation) MD5=6507BF0DC2D1F5F32493C288EAA59277 -- C:\Windows\winsxs\amd64_microsoft-windows-s..ontroller.resources_31bf3856ad364e35_6.1.7600.16385_en-us_c5f238be3fa63468\services.exe.mui

< MD5 for: SERVICES.LNK >
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Documents and Settings\All Users\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Documents and Settings\All Users\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Documents and Settings\All Users\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Documents and Settings\All Users\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\ProgramData\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\ProgramData\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\ProgramData\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\ProgramData\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\ProgramData\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Users\All Users\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Users\All Users\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Users\All Users\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Users\All Users\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Users\All Users\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/13 22:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\Windows.old\Users\All Users\Start Menu\Programs\Administrative Tools\services.lnk

< MD5 for: SERVICES.MOF >
[2009/06/10 14:44:06 | 000,002,866 | ---- | M] () MD5=26A11C895A7F0B6D32105EBE127D8500 -- C:\Windows.old\Windows\System32\wbem\services.mof
[2009/06/10 14:44:06 | 000,002,866 | ---- | M] () MD5=26A11C895A7F0B6D32105EBE127D8500 -- C:\Windows.old\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.mof
[2009/06/10 14:44:06 | 000,002,866 | ---- | M] () MD5=26A11C895A7F0B6D32105EBE127D8500 -- C:\Windows\SysNative\wbem\services.mof
[2009/06/10 14:44:06 | 000,002,866 | ---- | M] () MD5=26A11C895A7F0B6D32105EBE127D8500 -- C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.mof

< MD5 for: SERVICES.MSC >
[2011/04/12 02:17:16 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows.old\Windows\System32\en-US\services.msc
[2009/06/10 14:38:36 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows.old\Windows\System32\services.msc
[2011/04/12 02:17:18 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows.old\Windows\SysWOW64\en-US\services.msc
[2009/06/10 15:21:09 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows.old\Windows\SysWOW64\services.msc
[2011/04/12 02:17:16 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows.old\Windows\winsxs\amd64_microsoft-windows-s..cessnapin.resources_31bf3856ad364e35_6.1.7600.16385_en-us_003408aa160fce5b\services.msc
[2009/06/10 14:38:36 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows.old\Windows\winsxs\amd64_microsoft-windows-servicessnapin_31bf3856ad364e35_6.1.7600.16385_none_2b58d44b5f6beb8a\services.msc
[2011/04/12 02:17:18 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-s..cessnapin.resources_31bf3856ad364e35_6.1.7600.16385_en-us_a4156d265db25d25\services.msc
[2009/06/10 15:21:09 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-servicessnapin_31bf3856ad364e35_6.1.7600.16385_none_cf3a38c7a70e7a54\services.msc
[2011/04/12 02:17:16 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\SysNative\en-US\services.msc
[2009/06/10 14:38:36 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\SysNative\services.msc
[2011/04/12 02:17:18 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\SysWOW64\en-US\services.msc
[2009/06/10 15:21:09 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\SysWOW64\services.msc
[2011/04/12 02:17:16 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\winsxs\amd64_microsoft-windows-s..cessnapin.resources_31bf3856ad364e35_6.1.7600.16385_en-us_003408aa160fce5b\services.msc
[2009/06/10 14:38:36 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\winsxs\amd64_microsoft-windows-servicessnapin_31bf3856ad364e35_6.1.7600.16385_none_2b58d44b5f6beb8a\services.msc
[2011/04/12 02:17:18 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\winsxs\x86_microsoft-windows-s..cessnapin.resources_31bf3856ad364e35_6.1.7600.16385_en-us_a4156d265db25d25\services.msc
[2009/06/10 15:21:09 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\winsxs\x86_microsoft-windows-servicessnapin_31bf3856ad364e35_6.1.7600.16385_none_cf3a38c7a70e7a54\services.msc

< MD5 for: SERVICES.PTXML >
[2009/07/13 14:16:17 | 000,001,061 | ---- | M] () MD5=640D7DD61B1CFA6C96F80F68F78CDFA7 -- C:\Windows.old\Windows\System32\wdi\perftrack\Services.ptxml
[2009/07/13 14:16:17 | 000,001,061 | ---- | M] () MD5=640D7DD61B1CFA6C96F80F68F78CDFA7 -- C:\Windows.old\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\Services.ptxml
[2009/07/13 14:16:17 | 000,001,061 | ---- | M] () MD5=640D7DD61B1CFA6C96F80F68F78CDFA7 -- C:\Windows\SysNative\wdi\perftrack\Services.ptxml
[2009/07/13 14:16:17 | 000,001,061 | ---- | M] () MD5=640D7DD61B1CFA6C96F80F68F78CDFA7 -- C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\Services.ptxml

< MD5 for: SERVICES.RDB >
[2012/08/13 09:51:02 | 000,178,348 | ---- | M] () MD5=039C8CFBD74EE07F38CD9E4C7D95C5C6 -- C:\Program Files (x86)\OpenOffice.org 3\Basis\program\services.rdb
[2012/08/13 09:51:02 | 000,000,453 | ---- | M] () MD5=3D2ADA15FEF5B5FF468243161543D610 -- C:\Program Files (x86)\OpenOffice.org 3\program\services.rdb
[2011/01/17 17:52:22 | 000,237,568 | ---- | M] () MD5=507957679AE4579C15D57FA741EA6FFA -- C:\Windows.old\Program Files (x86)\OpenOffice.org 3\URE\misc\services.rdb
[2012/08/10 14:12:16 | 000,008,060 | ---- | M] () MD5=7CA7D7150EC46321162F932ADCF5F35B -- C:\Program Files (x86)\OpenOffice.org 3\URE\misc\services.rdb
[2011/01/17 17:51:48 | 005,539,328 | ---- | M] () MD5=F2B666905F7FDAA80C86A101A7DE62F9 -- C:\Windows.old\Program Files (x86)\OpenOffice.org 3\Basis\program\services.rdb

< MD5 for: SVCHOST.EXE >
[2009/07/13 19:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows.old\Windows\SysWOW64\svchost.exe
[2009/07/13 19:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2009/07/13 19:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009/07/13 19:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2009/07/13 19:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows.old\Windows\System32\svchost.exe
[2009/07/13 19:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows.old\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe
[2009/07/13 19:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\SysNative\svchost.exe
[2009/07/13 19:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe

< MD5 for: USERINIT.EXE >
[2010/11/20 21:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows.old\Windows\SysWOW64\userinit.exe
[2010/11/20 21:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2010/11/20 21:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe
[2010/11/20 21:23:55 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2010/11/20 21:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows.old\Windows\System32\userinit.exe
[2010/11/20 21:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows.old\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe
[2010/11/20 21:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\SysNative\userinit.exe
[2010/11/20 21:24:28 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe

< MD5 for: WINLOGON.EXE >
[2010/11/20 21:24:29 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows.old\Windows\System32\winlogon.exe
[2010/11/20 21:24:29 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows.old\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2010/11/20 21:24:29 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\SysNative\winlogon.exe
[2010/11/20 21:24:29 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe

< dir "%systemdrive%\*" /S /A:L /C >
Volume in drive C has no label.
Volume Serial Number is A009-8766
Directory of C:\
07/13/2009 11:08 PM <JUNCTION> Documents and Settings [C:\Users]
0 File(s) 0 bytes
Directory of C:\ProgramData
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Users
07/13/2009 11:08 PM <SYMLINKD> All Users [C:\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Default User [C:\Users\Default]
0 File(s) 0 bytes
Directory of C:\Users\Aaron
06/12/2013 11:21 PM <JUNCTION> Application Data [C:\Users\Aaron\AppData\Roaming]
06/12/2013 11:21 PM <JUNCTION> Cookies [C:\Users\Aaron\AppData\Roaming\Microsoft\Windows\Cookies]
06/12/2013 11:21 PM <JUNCTION> Local Settings [C:\Users\Aaron\AppData\Local]
06/12/2013 11:21 PM <JUNCTION> My Documents [C:\Users\Aaron\Documents]
06/12/2013 11:21 PM <JUNCTION> NetHood [C:\Users\Aaron\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
06/12/2013 11:21 PM <JUNCTION> PrintHood [C:\Users\Aaron\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
06/12/2013 11:21 PM <JUNCTION> Recent [C:\Users\Aaron\AppData\Roaming\Microsoft\Windows\Recent]
06/12/2013 11:21 PM <JUNCTION> SendTo [C:\Users\Aaron\AppData\Roaming\Microsoft\Windows\SendTo]
06/12/2013 11:21 PM <JUNCTION> Start Menu [C:\Users\Aaron\AppData\Roaming\Microsoft\Windows\Start Menu]
06/12/2013 11:21 PM <JUNCTION> Templates [C:\Users\Aaron\AppData\Roaming\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Users\Aaron\AppData\Local
06/12/2013 11:21 PM <JUNCTION> Application Data [C:\Users\Aaron\AppData\Local]
06/12/2013 11:21 PM <JUNCTION> History [C:\Users\Aaron\AppData\Local\Microsoft\Windows\History]
06/12/2013 11:21 PM <JUNCTION> Temporary Internet Files [C:\Users\Aaron\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Users\Aaron\Documents
06/12/2013 11:21 PM <JUNCTION> My Music [C:\Users\Aaron\Music]
06/12/2013 11:21 PM <JUNCTION> My Pictures [C:\Users\Aaron\Pictures]
06/12/2013 11:21 PM <JUNCTION> My Videos [C:\Users\Aaron\Videos]
0 File(s) 0 bytes
Directory of C:\Users\All Users
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Users\Default
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Users\Default\AppData\Roaming]
07/13/2009 11:08 PM <JUNCTION> Cookies [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Cookies]
07/13/2009 11:08 PM <JUNCTION> Local Settings [C:\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> My Documents [C:\Users\Default\Documents]
07/13/2009 11:08 PM <JUNCTION> NetHood [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
07/13/2009 11:08 PM <JUNCTION> PrintHood [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
07/13/2009 11:08 PM <JUNCTION> Recent [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Recent]
07/13/2009 11:08 PM <JUNCTION> SendTo [C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Users\Default\AppData\Local
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Users\Default\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Users\Default\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Users\Default\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Users\Default\Videos]
0 File(s) 0 bytes
Directory of C:\Users\Public\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows\System32\config\systemprofile
07/31/2013 05:46 PM <JUNCTION> Application Data [C:\Windows\system32\config\systemprofile\AppData\Roaming]
07/31/2013 05:46 PM <JUNCTION> Cookies [C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies]
07/31/2013 05:46 PM <JUNCTION> Local Settings [C:\Windows\system32\config\systemprofile\AppData\Local]
07/31/2013 05:46 PM <JUNCTION> My Documents [C:\Windows\system32\config\systemprofile\Documents]
07/31/2013 05:46 PM <JUNCTION> NetHood [C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
07/31/2013 05:46 PM <JUNCTION> PrintHood [C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
07/31/2013 05:46 PM <JUNCTION> Recent [C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Recent]
07/31/2013 05:46 PM <JUNCTION> SendTo [C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\SendTo]
07/31/2013 05:46 PM <JUNCTION> Start Menu [C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Start Menu]
07/31/2013 05:46 PM <JUNCTION> Templates [C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows\System32\config\systemprofile\AppData\Local
07/31/2013 05:46 PM <JUNCTION> Application Data [C:\Windows\system32\config\systemprofile\AppData\Local]
07/31/2013 05:46 PM <JUNCTION> History [C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History]
07/31/2013 05:46 PM <JUNCTION> Temporary Internet Files [C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows\System32\config\systemprofile\Documents
07/31/2013 05:46 PM <JUNCTION> My Music [C:\Windows\system32\config\systemprofile\Music]
07/31/2013 05:46 PM <JUNCTION> My Pictures [C:\Windows\system32\config\systemprofile\Pictures]
07/31/2013 05:46 PM <JUNCTION> My Videos [C:\Windows\system32\config\systemprofile\Videos]
0 File(s) 0 bytes
Directory of C:\Windows\SysWOW64\config\systemprofile
07/31/2013 05:46 PM <JUNCTION> Application Data [C:\Windows\system32\config\systemprofile\AppData\Roaming]
07/31/2013 05:46 PM <JUNCTION> Cookies [C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies]
07/31/2013 05:46 PM <JUNCTION> Local Settings [C:\Windows\system32\config\systemprofile\AppData\Local]
07/31/2013 05:46 PM <JUNCTION> My Documents [C:\Windows\system32\config\systemprofile\Documents]
07/31/2013 05:46 PM <JUNCTION> NetHood [C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
07/31/2013 05:46 PM <JUNCTION> PrintHood [C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
07/31/2013 05:46 PM <JUNCTION> Recent [C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Recent]
07/31/2013 05:46 PM <JUNCTION> SendTo [C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\SendTo]
07/31/2013 05:46 PM <JUNCTION> Start Menu [C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Start Menu]
07/31/2013 05:46 PM <JUNCTION> Templates [C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows\SysWOW64\config\systemprofile\AppData\Local
07/31/2013 05:46 PM <JUNCTION> Application Data [C:\Windows\system32\config\systemprofile\AppData\Local]
07/31/2013 05:46 PM <JUNCTION> History [C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History]
07/31/2013 05:46 PM <JUNCTION> Temporary Internet Files [C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows\SysWOW64\config\systemprofile\Documents
07/31/2013 05:46 PM <JUNCTION> My Music [C:\Windows\system32\config\systemprofile\Music]
07/31/2013 05:46 PM <JUNCTION> My Pictures [C:\Windows\system32\config\systemprofile\Pictures]
07/31/2013 05:46 PM <JUNCTION> My Videos [C:\Windows\system32\config\systemprofile\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old
07/13/2009 11:08 PM <JUNCTION> Documents and Settings [C:\Windows.old\Users]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings
07/13/2009 11:08 PM <SYMLINKD> All Users [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Default User [C:\Windows.old\Users\Default]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Roaming]
09/23/2011 05:19 PM <JUNCTION> Cookies [C:\Windows.old\Users\Aaron Johnson\AppData\Roaming\Microsoft\Windows\Cookies]
09/23/2011 05:19 PM <JUNCTION> Local Settings [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> My Documents [C:\Windows.old\Users\Aaron Johnson\Documents]
09/23/2011 05:19 PM <JUNCTION> NetHood [C:\Windows.old\Users\Aaron Johnson\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
09/23/2011 05:19 PM <JUNCTION> PrintHood [C:\Windows.old\Users\Aaron Johnson\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
09/23/2011 05:19 PM <JUNCTION> Recent [C:\Windows.old\Users\Aaron Johnson\AppData\Roaming\Microsoft\Windows\Recent]
09/23/2011 05:19 PM <JUNCTION> SendTo [C:\Windows.old\Users\Aaron Johnson\AppData\Roaming\Microsoft\Windows\SendTo]
09/23/2011 05:19 PM <JUNCTION> Start Menu [C:\Windows.old\Users\Aaron Johnson\AppData\Roaming\Microsoft\Windows\Start Menu]
09/23/2011 05:19 PM <JUNCTION> Templates [C:\Windows.old\Users\Aaron Johnson\AppData\Roaming\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson\AppData\Local
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson\AppData\Local\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson\AppData\Local\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson\AppData\Local\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson\AppData\Local\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [.]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [.]
09/23/2011 05:19 PM <JUNCTION> History [.]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [.]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson\Documents
09/23/2011 05:19 PM <JUNCTION> My Music [C:\Windows.old\Users\Aaron Johnson\Music]
09/23/2011 05:19 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Aaron Johnson\Pictures]
09/23/2011 05:19 PM <JUNCTION> My Videos [C:\Windows.old\Users\Aaron Johnson\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson\Local Settings
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson\Local Settings\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson\Local Settings\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson\Local Settings\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson\Local Settings\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [.]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [.]
09/23/2011 05:19 PM <JUNCTION> History [.]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [.]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Aaron Johnson\My Documents
09/23/2011 05:19 PM <JUNCTION> My Music [C:\Windows.old\Users\Aaron Johnson\Music]
09/23/2011 05:19 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Aaron Johnson\Pictures]
09/23/2011 05:19 PM <JUNCTION> My Videos [C:\Windows.old\Users\Aaron Johnson\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\All Users
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\All Users\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\All Users\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\All Users\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\All Users\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Roaming]
07/13/2009 11:08 PM <JUNCTION> Cookies [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\Cookies]
07/13/2009 11:08 PM <JUNCTION> Local Settings [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> My Documents [C:\Windows.old\Users\Default\Documents]
07/13/2009 11:08 PM <JUNCTION> NetHood [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
07/13/2009 11:08 PM <JUNCTION> PrintHood [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
07/13/2009 11:08 PM <JUNCTION> Recent [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\Recent]
07/13/2009 11:08 PM <JUNCTION> SendTo [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default\AppData\Local
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default\AppData\Local\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default\AppData\Local\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default\AppData\Local\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [.]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [.]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Default\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Default\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Default\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default\Local Settings
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default\Local Settings\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default\Local Settings\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default\Local Settings\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default\Local Settings\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [.]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [.]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default\My Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Default\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Default\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Default\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Roaming]
07/13/2009 11:08 PM <JUNCTION> Cookies [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\Cookies]
07/13/2009 11:08 PM <JUNCTION> Local Settings [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> My Documents [C:\Windows.old\Users\Default\Documents]
07/13/2009 11:08 PM <JUNCTION> NetHood [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
07/13/2009 11:08 PM <JUNCTION> PrintHood [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
07/13/2009 11:08 PM <JUNCTION> Recent [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\Recent]
07/13/2009 11:08 PM <JUNCTION> SendTo [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User\AppData\Local
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User\AppData\Local\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User\AppData\Local\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User\AppData\Local\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [.]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [.]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Default\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Default\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Default\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User\Local Settings
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User\Local Settings\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User\Local Settings\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User\Local Settings\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [.]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [.]
07/13/2009 11:08 PM <JUNCTION> History [.]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [.]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Default User\My Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Default\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Default\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Default\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Documents and Settings\Public\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\ProgramData
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\ProgramData\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\ProgramData\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\ProgramData\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\ProgramData\Application Data\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\ProgramData\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\ProgramData\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\ProgramData\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users
07/13/2009 11:08 PM <SYMLINKD> All Users [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Default User [C:\Windows.old\Users\Default]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Roaming]
09/23/2011 05:19 PM <JUNCTION> Cookies [C:\Windows.old\Users\Aaron Johnson\AppData\Roaming\Microsoft\Windows\Cookies]
09/23/2011 05:19 PM <JUNCTION> Local Settings [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> My Documents [C:\Windows.old\Users\Aaron Johnson\Documents]
09/23/2011 05:19 PM <JUNCTION> NetHood [C:\Windows.old\Users\Aaron Johnson\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
09/23/2011 05:19 PM <JUNCTION> PrintHood [C:\Windows.old\Users\Aaron Johnson\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
09/23/2011 05:19 PM <JUNCTION> Recent [C:\Windows.old\Users\Aaron Johnson\AppData\Roaming\Microsoft\Windows\Recent]
09/23/2011 05:19 PM <JUNCTION> SendTo [C:\Windows.old\Users\Aaron Johnson\AppData\Roaming\Microsoft\Windows\SendTo]
09/23/2011 05:19 PM <JUNCTION> Start Menu [C:\Windows.old\Users\Aaron Johnson\AppData\Roaming\Microsoft\Windows\Start Menu]
09/23/2011 05:19 PM <JUNCTION> Templates [C:\Windows.old\Users\Aaron Johnson\AppData\Roaming\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\AppData\Local
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\AppData\Local\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\AppData\Local\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\AppData\Local\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\AppData\Local\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [.]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [.]
09/23/2011 05:19 PM <JUNCTION> History [.]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [.]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\Documents
09/23/2011 05:19 PM <JUNCTION> My Music [C:\Windows.old\Users\Aaron Johnson\Music]
09/23/2011 05:19 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Aaron Johnson\Pictures]
09/23/2011 05:19 PM <JUNCTION> My Videos [C:\Windows.old\Users\Aaron Johnson\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\Local Settings
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\Local Settings\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\Local Settings\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\Local Settings\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\Local Settings\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [C:\Windows.old\Users\Aaron Johnson\AppData\Local]
09/23/2011 05:19 PM <JUNCTION> History [C:\Windows.old\Users\Aaron Johnson\AppData\Local\Microsoft\Windows\History]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [.]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
09/23/2011 05:19 PM <JUNCTION> Application Data [.]
09/23/2011 05:19 PM <JUNCTION> History [.]
09/23/2011 05:19 PM <JUNCTION> Temporary Internet Files [.]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Aaron Johnson\My Documents
09/23/2011 05:19 PM <JUNCTION> My Music [C:\Windows.old\Users\Aaron Johnson\Music]
09/23/2011 05:19 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Aaron Johnson\Pictures]
09/23/2011 05:19 PM <JUNCTION> My Videos [C:\Windows.old\Users\Aaron Johnson\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\All Users
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\All Users\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\All Users\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\ProgramData]
07/13/2009 11:08 PM <JUNCTION> Desktop [C:\Windows.old\Users\Public\Desktop]
07/13/2009 11:08 PM <JUNCTION> Documents [C:\Windows.old\Users\Public\Documents]
07/13/2009 11:08 PM <JUNCTION> Favorites [C:\Windows.old\Users\Public\Favorites]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\ProgramData\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\All Users\Application Data\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\All Users\Application Data\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\All Users\Application Data\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\All Users\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Roaming]
07/13/2009 11:08 PM <JUNCTION> Cookies [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\Cookies]
07/13/2009 11:08 PM <JUNCTION> Local Settings [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> My Documents [C:\Windows.old\Users\Default\Documents]
07/13/2009 11:08 PM <JUNCTION> NetHood [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
07/13/2009 11:08 PM <JUNCTION> PrintHood [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
07/13/2009 11:08 PM <JUNCTION> Recent [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\Recent]
07/13/2009 11:08 PM <JUNCTION> SendTo [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\AppData\Local
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\AppData\Local\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\AppData\Local\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\AppData\Local\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [.]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [.]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Default\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Default\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Default\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\Local Settings
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\Local Settings\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\Local Settings\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\Local Settings\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [.]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [.]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default\My Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Default\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Default\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Default\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Roaming]
07/13/2009 11:08 PM <JUNCTION> Cookies [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\Cookies]
07/13/2009 11:08 PM <JUNCTION> Local Settings [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> My Documents [C:\Windows.old\Users\Default\Documents]
07/13/2009 11:08 PM <JUNCTION> NetHood [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
07/13/2009 11:08 PM <JUNCTION> PrintHood [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
07/13/2009 11:08 PM <JUNCTION> Recent [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\Recent]
07/13/2009 11:08 PM <JUNCTION> SendTo [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo]
07/13/2009 11:08 PM <JUNCTION> Start Menu [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu]
07/13/2009 11:08 PM <JUNCTION> Templates [C:\Windows.old\Users\Default\AppData\Roaming\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\AppData\Local
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\AppData\Local\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\AppData\Local\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\AppData\Local\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [.]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [.]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Default\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Default\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Default\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\Local Settings
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\Local Settings\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\Local Settings\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\Local Settings\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [C:\Windows.old\Users\Default\AppData\Local]
07/13/2009 11:08 PM <JUNCTION> History [C:\Windows.old\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [.]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
07/13/2009 11:08 PM <JUNCTION> Application Data [.]
07/13/2009 11:08 PM <JUNCTION> History [.]
07/13/2009 11:08 PM <JUNCTION> Temporary Internet Files [.]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Default User\My Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Default\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Default\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Default\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Users\Public\Documents
07/13/2009 11:08 PM <JUNCTION> My Music [C:\Windows.old\Users\Public\Music]
07/13/2009 11:08 PM <JUNCTION> My Pictures [C:\Windows.old\Users\Public\Pictures]
07/13/2009 11:08 PM <JUNCTION> My Videos [C:\Windows.old\Users\Public\Videos]
0 File(s) 0 bytes
Directory of C:\Windows.old\Windows\SysWOW64\config\systemprofile
09/24/2011 01:27 AM <JUNCTION> Application Data [C:\Windows.old\Windows\system32\config\systemprofile\AppData\Roaming]
09/24/2011 01:27 AM <JUNCTION> Cookies [C:\Windows.old\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies]
09/24/2011 01:27 AM <JUNCTION> Local Settings [C:\Windows.old\Windows\system32\config\systemprofile\AppData\Local]
09/24/2011 01:27 AM <JUNCTION> My Documents [C:\Windows.old\Windows\system32\config\systemprofile\Documents]
09/24/2011 01:27 AM <JUNCTION> NetHood [C:\Windows.old\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
09/24/2011 01:27 AM <JUNCTION> PrintHood [C:\Windows.old\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
09/24/2011 01:27 AM <JUNCTION> Recent [C:\Windows.old\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Recent]
09/24/2011 01:27 AM <JUNCTION> SendTo [C:\Windows.old\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\SendTo]
09/24/2011 01:27 AM <JUNCTION> Start Menu [C:\Windows.old\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Start Menu]
09/24/2011 01:27 AM <JUNCTION> Templates [C:\Windows.old\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Templates]
0 File(s) 0 bytes
Directory of C:\Windows.old\Windows\SysWOW64\config\systemprofile\AppData\Local
09/24/2011 01:27 AM <JUNCTION> Application Data [C:\Windows.old\Windows\system32\config\systemprofile\AppData\Local]
09/24/2011 01:27 AM <JUNCTION> History [C:\Windows.old\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History]
09/24/2011 01:27 AM <JUNCTION> Temporary Internet Files [C:\Windows.old\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files]
0 File(s) 0 bytes
Directory of C:\Windows.old\Windows\SysWOW64\config\systemprofile\Documents
09/24/2011 01:27 AM <JUNCTION> My Music [C:\Windows.old\Windows\system32\config\systemprofile\Music]
09/24/2011 01:27 AM <JUNCTION> My Pictures [C:\Windows.old\Windows\system32\config\systemprofile\Pictures]
09/24/2011 01:27 AM <JUNCTION> My Videos [C:\Windows.old\Windows\system32\config\systemprofile\Videos]
0 File(s) 0 bytes
Total Files Listed:
0 File(s) 0 bytes
988 Dir(s) 320,310,743,040 bytes free

< End of report >
  • 0

#6
godawgs

godawgs

    Teacher

  • Retired Staff
  • 8,228 posts
Did you uninstall the three programs listed?
  • 0

#7
godawgs

godawgs

    Teacher

  • Retired Staff
  • 8,228 posts
Due to lack of feedback, this topic has been closed.

If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP