Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

possible malware infections google wil not return any search results


  • Please log in to reply

#1
lone_wolf1911

lone_wolf1911

    New Member

  • Member
  • Pip
  • 8 posts
hi,
not a novice with pc's i can build them, but this is doing my nutt in.... and its on 2 laptops
1 is mine a dell 1525 business edition, and other is a dell 1545

we have a fibre connection with 40mb D/L speed, but i can not get google on any platform to return search results, i.e using chrome, ieplorer, firefox>>>

this stated last night, dont know why or how i'm pretty good at not going on digey sites, normally my missus is too,
we use fully paid version of bullguard which is supposed to have anti malware and i also have paid copy of spybot...

when ever i do a search on goodle it comes back with 0 results, i can search for anything even google itself...
when i search all i get is a page saying About 14,130,000,000 results (0.29 seconds) with normal ads on the side but no search results,

something i have noticed is that is user spercific as in if i log on to guest account i can use google as normal... weird.... but its effecting both laptops, i have checked host file now and all seems ok, run spy bot and nothing detected,

i ran hijackthis, and found some winsock entries, which i seem to have been able to remove, (did notice hosts file was blocked....) and i think there is a host there that shouldn't be, looked under misc tab in highjackthis... host manager and found... uner the 127 host, ::1 local host.... dont think it should be there?

i am presently running OTL with these options netsvcs
%SYSTEMDRIVE%\*.exe
/md5start
explorer.exe
winlogon.exe
/md5stop
%systemroot%\*. /mp /s
CREATERESTOREPOINT

here is hijackthis log...

as soon as OTL has finished i will post log,(finished logs at bottom) tried to run TFC got half way and then crashed. but rebooted and run fine and finished....

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:58:08, on 14/09/2011
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\igfxsrvc.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Windows\System32\WLTRAY.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Windows\System32\atwtusb.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Windows\System32\spool\drivers\w32x86\3\E_FATIFCE.EXE
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Common Files\Teleca Shared\CapabilityManager.exe
C:\Program Files\Common Files\Teleca Shared\logger.exe
C:\Program Files\Common Files\Teleca Shared\Generic.exe
C:\Program Files\HTC\HTC Sync\ClientInitiatedStarter\ClientInitiatedStarter.exe
C:\Program Files\HTC\HTC Sync\Mobile Phone Monitor\epmworker.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\HTC\HTC Sync\Mobile Phone Monitor\DbgOut.exe
C:\Program Files\HTC\HTC Sync\Mobile Phone Monitor\HTCVBTServer.exe
C:\Program Files\HTC\HTC Sync\Mobile Phone Monitor\FsynSrvStarter.exe
C:\Users\Dell 1525\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Dell 1525\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Dell 1525\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Dell 1525\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\taskmgr.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft....k/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft....k/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: BullGuard Safe Browsing - {FC872B94-35E3-4B94-B028-184A2A1C7CCE} - C:\Program Files\BullGuard Ltd\BullGuard\Antiphishing\IE\BGAntiphishingIEBHO.dll
O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\Windows\system32\WLTRAY.exe
O4 - HKLM\..\Run: [BullGuard] "C:\Program Files\BullGuard Ltd\BullGuard\BullGuard.exe" -boot
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [atwtusb] atwtusb.exe beta
O4 - HKLM\..\Run: [Mobile Connectivity Suite] "C:\Program Files\HTC\HTC Sync\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [EPSON SX410 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIFCE.EXE /FU "C:\Users\DELL15~1\AppData\Local\Temp\E_S2D81.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [Google Update] "C:\Users\Dell 1525\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O9 - Extra button: Report to BullGuard - {27FD17FB-CF63-486b-B2BE-8D8781CBEA01} - C:\Program Files\BullGuard Ltd\BullGuard\Antiphishing\IE\BGAntiphishingIE.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted IP range: http://192.168.0.1
O15 - ESC Trusted IP range: http://192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{0192A80C-FEA1-4CE3-BC98-B5391BFE3847}: NameServer = 192.168.0.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{0192A80C-FEA1-4CE3-BC98-B5391BFE3847}: NameServer = 192.168.0.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{0192A80C-FEA1-4CE3-BC98-B5391BFE3847}: NameServer = 192.168.0.1
O18 - Protocol: bglink - {FC872B94-35E3-4B94-B028-184A2A1C7CCE} - C:\Program Files\BullGuard Ltd\BullGuard\Antiphishing\IE\BGAntiphishingIEBHO.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: c:\PROGRA~1\BULLGU~1\BULLGU~1\BgAgent.dll BgGamingMonitor.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: BgRaSvc - BullGuard Ltd. - C:\Program Files\BullGuard Ltd\BullGuard\Support\BgRaSvc.exe
O23 - Service: BullGuard behavioural detection service (BsBhvScan) - BullGuard Ltd. - C:\Program Files\BullGuard Ltd\BullGuard\BullGuardBhvScanner.exe
O23 - Service: BullGuard scanning service (BsScanner) - BullGuard Ltd. - C:\Program Files\BullGuard Ltd\BullGuard\BullGuardScanner.exe
O23 - Service: BullGuard update service (BsUpdate) - BullGuard Ltd. - C:\Program Files\BullGuard Ltd\BullGuard\BullGuardUpdate.exe
O23 - Service: EPSON V5 Service4(01) (EPSON_EB_RPCV4_01) - SEIKO EPSON CORPORATION - C:\ProgramData\EPSON\EPW!3 SSRP\E_S40ST7.EXE
O23 - Service: EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) - SEIKO EPSON CORPORATION - C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE
O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\Windows\System32\WLTRYSVC.EXE

--
End of file - 7469 bytes

Edited by lone_wolf1911, 09 January 2014 - 08:01 AM.

  • 0

Advertisements


#2
lone_wolf1911

lone_wolf1911

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts

hi,
not a novice with pc's i can build them, but this is doing my nutt in.... and its on 2 laptops
1 is mine a dell 1525 business edition, and other is a dell 1545

we have a fibre connection with 40mb D/L speed, but i can not get google on any platform to return search results, i.e using chrome, ieplorer, firefox>>>

this stated last night, dont know why or how i'm pretty good at not going on digey sites, normally my missus is too,
we use fully paid version of bullguard which is supposed to have anti malware and i also have paid copy of spybot...

when ever i do a search on goodle it comes back with 0 results, i can search for anything even google itself...
when i search all i get is a page saying About 14,130,000,000 results (0.29 seconds) with normal ads on the side but no search results,

i ran hijackthis, and found some winsock entries, which i seem to have been able to remove, (did notice hosts folder was blocked....)

i am presently running OTL with these options netsvcs
%SYSTEMDRIVE%\*.exe
/md5start
explorer.exe
winlogon.exe
/md5stop
%systemroot%\*. /mp /s
CREATERESTOREPOINT

here is hijackthis log...

as soon as OTL has finished i will post log........... now complete,

thanks for any and all help..

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:58:08, on 14/09/2011
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\igfxsrvc.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Windows\System32\WLTRAY.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Windows\System32\atwtusb.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Windows\System32\spool\drivers\w32x86\3\E_FATIFCE.EXE
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Common Files\Teleca Shared\CapabilityManager.exe
C:\Program Files\Common Files\Teleca Shared\logger.exe
C:\Program Files\Common Files\Teleca Shared\Generic.exe
C:\Program Files\HTC\HTC Sync\ClientInitiatedStarter\ClientInitiatedStarter.exe
C:\Program Files\HTC\HTC Sync\Mobile Phone Monitor\epmworker.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\HTC\HTC Sync\Mobile Phone Monitor\DbgOut.exe
C:\Program Files\HTC\HTC Sync\Mobile Phone Monitor\HTCVBTServer.exe
C:\Program Files\HTC\HTC Sync\Mobile Phone Monitor\FsynSrvStarter.exe
C:\Users\Dell 1525\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Dell 1525\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Dell 1525\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Dell 1525\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\taskmgr.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft....k/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft....k/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: BullGuard Safe Browsing - {FC872B94-35E3-4B94-B028-184A2A1C7CCE} - C:\Program Files\BullGuard Ltd\BullGuard\Antiphishing\IE\BGAntiphishingIEBHO.dll
O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\Windows\system32\WLTRAY.exe
O4 - HKLM\..\Run: [BullGuard] "C:\Program Files\BullGuard Ltd\BullGuard\BullGuard.exe" -boot
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [atwtusb] atwtusb.exe beta
O4 - HKLM\..\Run: [Mobile Connectivity Suite] "C:\Program Files\HTC\HTC Sync\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [EPSON SX410 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIFCE.EXE /FU "C:\Users\DELL15~1\AppData\Local\Temp\E_S2D81.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [Google Update] "C:\Users\Dell 1525\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O9 - Extra button: Report to BullGuard - {27FD17FB-CF63-486b-B2BE-8D8781CBEA01} - C:\Program Files\BullGuard Ltd\BullGuard\Antiphishing\IE\BGAntiphishingIE.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bglsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted IP range: http://192.168.0.1
O15 - ESC Trusted IP range: http://192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{0192A80C-FEA1-4CE3-BC98-B5391BFE3847}: NameServer = 192.168.0.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{0192A80C-FEA1-4CE3-BC98-B5391BFE3847}: NameServer = 192.168.0.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{0192A80C-FEA1-4CE3-BC98-B5391BFE3847}: NameServer = 192.168.0.1
O18 - Protocol: bglink - {FC872B94-35E3-4B94-B028-184A2A1C7CCE} - C:\Program Files\BullGuard Ltd\BullGuard\Antiphishing\IE\BGAntiphishingIEBHO.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: c:\PROGRA~1\BULLGU~1\BULLGU~1\BgAgent.dll BgGamingMonitor.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: BgRaSvc - BullGuard Ltd. - C:\Program Files\BullGuard Ltd\BullGuard\Support\BgRaSvc.exe
O23 - Service: BullGuard behavioural detection service (BsBhvScan) - BullGuard Ltd. - C:\Program Files\BullGuard Ltd\BullGuard\BullGuardBhvScanner.exe
O23 - Service: BullGuard scanning service (BsScanner) - BullGuard Ltd. - C:\Program Files\BullGuard Ltd\BullGuard\BullGuardScanner.exe
O23 - Service: BullGuard update service (BsUpdate) - BullGuard Ltd. - C:\Program Files\BullGuard Ltd\BullGuard\BullGuardUpdate.exe
O23 - Service: EPSON V5 Service4(01) (EPSON_EB_RPCV4_01) - SEIKO EPSON CORPORATION - C:\ProgramData\EPSON\EPW!3 SSRP\E_S40ST7.EXE
O23 - Service: EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) - SEIKO EPSON CORPORATION - C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE
O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\Windows\System32\WLTRYSVC.EXE

--
End of file - 7469 bytes

Attached Files


Edited by lone_wolf1911, 09 January 2014 - 04:25 AM.

  • 0

#3
lone_wolf1911

lone_wolf1911

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts
.OTL logfile created on: 09/01/2014 09:17:21 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Dell 1525\Downloads
Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.16476)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

2.99 Gb Total Physical Memory | 1.86 Gb Available Physical Memory | 62.05% Memory free
5.98 Gb Paging File | 4.23 Gb Available in Paging File | 70.76% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 232.79 Gb Total Space | 125.09 Gb Free Space | 53.74% Space Free | Partition Type: NTFS
Drive D: | 100.00 Mb Total Space | 57.14 Mb Free Space | 57.14% Space Free | Partition Type: NTFS

Computer Name: DELL1525-PC | User Name: Dell 1525 | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2014/01/09 09:11:22 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Dell 1525\Downloads\OTL.exe
PRC - [2014/01/03 00:46:10 | 030,714,328 | ---- | M] (Dropbox, Inc.) -- C:\Users\Dell 1525\AppData\Roaming\Dropbox\bin\Dropbox.exe
PRC - [2013/10/18 19:44:27 | 000,857,936 | ---- | M] (BullGuard Ltd.) -- C:\Program Files\BullGuard Ltd\BullGuard\BullGuard.exe
PRC - [2013/10/18 19:40:16 | 000,291,152 | ---- | M] (BullGuard Ltd.) -- C:\Program Files\BullGuard Ltd\BullGuard\BullGuardUpdate.exe
PRC - [2013/10/14 09:12:10 | 000,211,792 | ---- | M] (BullGuard Ltd.) -- C:\Program Files\BullGuard Ltd\BullGuard\BullGuardScanner.exe
PRC - [2013/10/14 09:12:09 | 000,376,144 | ---- | M] (BullGuard Ltd.) -- C:\Program Files\BullGuard Ltd\BullGuard\BullGuardBhvScanner.exe
PRC - [2013/08/02 00:52:57 | 000,271,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe
PRC - [2013/06/05 00:01:52 | 004,489,472 | ---- | M] (Akamai Technologies, Inc.) -- C:\Users\Dell 1525\AppData\Local\Akamai\netsession_win.exe
PRC - [2013/05/10 07:57:22 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2013/01/18 16:10:18 | 000,577,536 | ---- | M] (Research In Motion Limited) -- C:\Program Files\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe
PRC - [2013/01/17 15:08:26 | 000,267,792 | ---- | M] (Research In Motion Limited) -- C:\Program Files\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe
PRC - [2012/12/07 16:26:56 | 000,167,424 | ---- | M] () -- C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
PRC - [2012/11/23 02:48:41 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
PRC - [2012/11/01 17:56:20 | 001,263,512 | ---- | M] () -- C:\Program Files\DivX\DivX Update\DivXUpdate.exe
PRC - [2012/05/29 09:06:00 | 000,655,360 | ---- | M] () -- C:\Program Files\HTC\HTC Sync 3.0\htcUPCTLoader.exe
PRC - [2011/02/25 05:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2010/04/05 15:46:08 | 000,288,040 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\Apoint.exe
PRC - [2010/03/23 12:22:26 | 000,049,152 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\ApntEx.exe
PRC - [2010/02/17 14:34:40 | 000,054,568 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\ApMsgFwd.exe
PRC - [2009/01/31 21:43:30 | 000,049,250 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\hidfind.exe
PRC - [2007/12/17 22:00:00 | 000,143,872 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\ProgramData\EPSON\EPW!3 SSRP\E_S40ST7.EXE
PRC - [2007/01/11 22:02:00 | 000,113,664 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE


========== Modules (No Company Name) ==========

MOD - [2014/01/03 00:45:04 | 003,558,400 | ---- | M] () -- C:\Users\Dell 1525\AppData\Roaming\Dropbox\bin\wxmsw28uh_vc.dll
MOD - [2013/12/04 02:48:04 | 000,399,312 | ---- | M] () -- C:\Users\Dell 1525\AppData\Local\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll
MOD - [2013/12/04 02:48:03 | 013,586,896 | ---- | M] () -- C:\Users\Dell 1525\AppData\Local\Google\Chrome\Application\31.0.1650.63\PepperFlash\pepflashplayer.dll
MOD - [2013/12/04 02:48:02 | 004,055,504 | ---- | M] () -- C:\Users\Dell 1525\AppData\Local\Google\Chrome\Application\31.0.1650.63\pdf.dll
MOD - [2013/12/04 02:47:11 | 000,702,416 | ---- | M] () -- C:\Users\Dell 1525\AppData\Local\Google\Chrome\Application\31.0.1650.63\libglesv2.dll
MOD - [2013/12/04 02:47:11 | 000,099,792 | ---- | M] () -- C:\Users\Dell 1525\AppData\Local\Google\Chrome\Application\31.0.1650.63\libegl.dll
MOD - [2013/12/04 02:47:08 | 001,619,408 | ---- | M] () -- C:\Users\Dell 1525\AppData\Local\Google\Chrome\Application\31.0.1650.63\ffmpegsumo.dll
MOD - [2013/10/18 23:55:02 | 025,100,288 | ---- | M] () -- C:\Users\Dell 1525\AppData\Roaming\Dropbox\bin\libcef.dll
MOD - [2013/10/18 19:59:25 | 000,978,432 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\29f3ae8d313e62b4daed1107ccd29f9f\System.Configuration.ni.dll
MOD - [2013/10/14 09:12:11 | 000,481,616 | ---- | M] () -- C:\Program Files\BullGuard Ltd\BullGuard\SQLite.dll
MOD - [2013/10/14 09:12:11 | 000,072,528 | ---- | M] () -- C:\Program Files\BullGuard Ltd\BullGuard\res\en\BpBackupRes.dll
MOD - [2013/10/14 09:12:06 | 000,015,184 | ---- | M] () -- C:\Program Files\BullGuard Ltd\BullGuard\res\en\BpInspectorRes.dll
MOD - [2013/10/14 09:11:56 | 000,028,496 | ---- | M] () -- C:\Program Files\BullGuard Ltd\BullGuard\res\en\BpMainRes.dll
MOD - [2013/09/29 12:23:33 | 000,073,568 | ---- | M] () -- C:\Program Files\BullGuard Ltd\BullGuard\zlib1.dll
MOD - [2013/09/29 12:23:28 | 000,557,408 | ---- | M] () -- C:\Program Files\BullGuard Ltd\BullGuard\LibXml2.dll
MOD - [2013/09/13 13:28:04 | 011,914,752 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\6ebbfafc5521934f7e1c154937a2788b\System.Web.ni.dll
MOD - [2013/09/13 13:27:47 | 000,771,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\d473c19e69818875b9c739cad8f386a5\System.Runtime.Remoting.ni.dll
MOD - [2013/08/22 18:30:37 | 006,611,456 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data\764054efc88f51b54c8d7e44df26b671\System.Data.ni.dll
MOD - [2013/08/22 18:29:31 | 005,464,064 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\09db78d6068543df01862a023aca785a\System.Xml.ni.dll
MOD - [2013/08/22 18:29:21 | 007,989,760 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\5d22a30e587e2cac106b81fb351e7c08\System.ni.dll
MOD - [2013/07/10 06:35:12 | 011,499,520 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\9a6c1b7af18b4d5a91dc7f8d6617522f\mscorlib.ni.dll
MOD - [2012/11/01 17:57:10 | 000,100,248 | ---- | M] () -- C:\Program Files\DivX\DivX Update\DivXUpdateCheck.dll
MOD - [2012/11/01 17:56:20 | 001,263,512 | ---- | M] () -- C:\Program Files\DivX\DivX Update\DivXUpdate.exe
MOD - [2012/05/29 09:06:00 | 001,515,520 | ---- | M] () -- C:\Program Files\HTC\HTC Sync 3.0\Maps\R66Api.dll
MOD - [2012/05/29 09:06:00 | 000,655,360 | ---- | M] () -- C:\Program Files\HTC\HTC Sync 3.0\htcUPCTLoader.exe
MOD - [2012/05/29 09:06:00 | 000,559,244 | ---- | M] () -- C:\Program Files\HTC\HTC Sync 3.0\sqlite3.7.dll
MOD - [2012/05/29 09:06:00 | 000,516,599 | ---- | M] () -- C:\Program Files\HTC\HTC Sync 3.0\sqlite3.dll
MOD - [2012/05/29 09:06:00 | 000,393,216 | ---- | M] () -- C:\Program Files\HTC\HTC Sync 3.0\htcDetect.dll
MOD - [2012/05/29 09:06:00 | 000,172,032 | ---- | M] () -- C:\Program Files\HTC\HTC Sync 3.0\htcDetectLegend.dll
MOD - [2012/05/29 09:06:00 | 000,151,552 | ---- | M] () -- C:\Program Files\HTC\HTC Sync 3.0\htcDisk.dll
MOD - [2012/05/29 09:06:00 | 000,104,448 | ---- | M] () -- C:\Program Files\HTC\HTC Sync 3.0\OutputLog.dll
MOD - [2012/05/29 09:06:00 | 000,094,208 | ---- | M] () -- C:\Program Files\HTC\HTC Sync 3.0\fdHttpd.dll
MOD - [2010/11/05 01:58:05 | 002,927,616 | ---- | M] () -- C:\Windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
MOD - [2007/12/08 13:34:10 | 000,054,784 | ---- | M] () -- C:\Windows\System32\bcmwlrmt.dll


========== Services (SafeList) ==========

SRV - File not found [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe -- (WPFFontCache_v0400)
SRV - [2013/12/17 11:24:56 | 000,567,632 | ---- | M] (BullGuard Ltd.) [Auto | Running] -- C:\Program Files\BullGuard Ltd\BullGuard\BsBackup.dll -- (BsBackup)
SRV - [2013/12/17 11:24:56 | 000,497,488 | ---- | M] (BullGuard Ltd.) [Auto | Running] -- c:\Program Files\BullGuard Ltd\BullGuard\BsMailProxy\BsMailProxy.dll -- (BsMailProxy)
SRV - [2013/11/26 08:29:52 | 000,108,032 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV - [2013/10/18 19:44:45 | 000,308,048 | ---- | M] (BullGuard Ltd.) [Auto | Running] -- c:\Program Files\BullGuard Ltd\BullGuard\BsFileScan.dll -- (BsFileScan)
SRV - [2013/10/18 19:44:13 | 000,484,176 | ---- | M] (BullGuard Ltd.) [Auto | Running] -- c:\Program Files\BullGuard Ltd\BullGuard\BsFire.dll -- (BsFire)
SRV - [2013/10/18 19:40:16 | 000,291,152 | ---- | M] (BullGuard Ltd.) [Auto | Running] -- C:\Program Files\BullGuard Ltd\BullGuard\BullGuardUpdate.exe -- (BsUpdate)
SRV - [2013/10/14 09:12:10 | 000,211,792 | ---- | M] (BullGuard Ltd.) [Auto | Running] -- C:\Program Files\BullGuard Ltd\BullGuard\BullGuardScanner.exe -- (BsScanner)
SRV - [2013/10/14 09:12:09 | 000,376,144 | ---- | M] (BullGuard Ltd.) [Auto | Running] -- C:\Program Files\BullGuard Ltd\BullGuard\BullGuardBhvScanner.exe -- (BsBhvScan)
SRV - [2013/10/14 09:11:46 | 000,261,968 | ---- | M] (BullGuard Ltd.) [Auto | Running] -- C:\Program Files\BullGuard Ltd\BullGuard\BsMain.dll -- (BsMain)
SRV - [2013/07/04 17:06:35 | 000,117,144 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013/05/27 04:57:27 | 000,680,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2013/05/10 07:57:22 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2013/01/18 16:10:18 | 000,577,536 | ---- | M] (Research In Motion Limited) [On_Demand | Running] -- C:\Program Files\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe -- (Blackberry Device Manager)
SRV - [2012/12/07 16:26:56 | 000,167,424 | ---- | M] () [Auto | Running] -- C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe -- (PassThru Service)
SRV - [2012/06/08 09:02:31 | 001,343,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc)
SRV - [2009/07/14 01:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc)
SRV - [2007/12/17 22:00:00 | 000,143,872 | ---- | M] (SEIKO EPSON CORPORATION) [Auto | Running] -- C:\ProgramData\EPSON\EPW!3 SSRP\E_S40ST7.EXE -- (EPSON_EB_RPCV4_01)
SRV - [2007/01/11 22:02:00 | 000,113,664 | ---- | M] (SEIKO EPSON CORPORATION) [Auto | Running] -- C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE -- (EPSON_PM_RPCV4_01)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | System | Stopped] -- C:\Program Files\Spybot -- (SDHookDriver)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\drivers\BCM42RLY.sys -- (BCM42RLY)
DRV - [2013/09/29 12:23:34 | 000,033,888 | R--- | M] (Agnitum Ltd.) [Kernel | System | Running] -- C:\Windows\System32\drivers\afw.sys -- (AFW)
DRV - [2013/09/29 12:23:34 | 000,027,760 | ---- | M] (BullGuard Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\BdNet.sys -- (BdNet)
DRV - [2013/09/29 12:23:33 | 000,064,624 | ---- | M] (BullGuard Ltd.) [File_System | System | Running] -- C:\Windows\System32\drivers\BdSpy.sys -- (BdSpy)
DRV - [2013/09/29 12:23:31 | 000,343,456 | ---- | M] (BitDefender S.R.L.) [File_System | On_Demand | Running] -- C:\Windows\System32\drivers\Trufos.sys -- (Trufos)
DRV - [2013/09/29 12:23:31 | 000,337,504 | R--- | M] (Agnitum Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\afwcore.sys -- (afwcore)
DRV - [2012/12/07 17:27:50 | 000,023,040 | ---- | M] (Windows ® Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\htcnprot.sys -- (htcnprot)
DRV - [2012/10/05 10:49:00 | 000,014,416 | ---- | M] (OpenLibSys.org) [Kernel | Auto | Running] -- C:\Users\Dell 1525\AppData\Local\Microsoft\Windows Sidebar\Gadgets\IntelCoreSeries25.gadget\WinRing0.sys -- (WinRing0_1_2_0)
DRV - [2012/03/20 11:36:13 | 000,020,040 | ---- | M] (NovaShield, Inc.) [Kernel | System | Running] -- C:\Windows\System32\drivers\NSNetmon.sys -- (NovaShieldTDIDriver)
DRV - [2012/03/20 11:36:08 | 000,216,136 | ---- | M] (NovaShield, Inc.) [File_System | System | Running] -- C:\Windows\System32\drivers\NSKernel.sys -- (NovaShieldFilterDriver)
DRV - [2010/11/20 10:24:41 | 000,052,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV - [2010/11/20 09:59:44 | 000,035,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb)
DRV - [2010/11/09 14:35:30 | 000,021,992 | ---- | M] (CPUID) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\cpuz135_x32.sys -- (cpuz135)
DRV - [2010/07/15 07:44:20 | 000,014,216 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\epmntdrv.sys -- (epmntdrv)
DRV - [2010/07/15 07:44:20 | 000,008,456 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\EuGdiDrv.sys -- (EuGdiDrv)
DRV - [2010/06/25 13:19:18 | 000,044,400 | ---- | M] (Fuzhou Rockchip Electronics Co,Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\RK281X.sys -- (RK281X)
DRV - [2010/04/15 12:36:40 | 000,252,536 | ---- | M] (Alps Electric Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Apfiltr.sys -- (ApfiltrService)
DRV - [2009/10/27 03:01:06 | 000,105,984 | ---- | M] (QUALCOMM Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\HtcVComV32.sys -- (HtcVCom32)
DRV - [2009/10/26 14:54:24 | 000,025,088 | ---- | M] (HTC, Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ANDROIDUSB.sys -- (HTCAND32)
DRV - [2009/07/13 23:52:10 | 000,014,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\vwifimp.sys -- (vwifimp)
DRV - [2009/07/13 22:02:53 | 000,311,296 | ---- | M] (Marvell) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\yk62x86.sys -- (yukonw7)
DRV - [2009/07/10 05:44:52 | 000,122,880 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\IntcHdmi.sys -- (IntcHdmiAddService)
DRV - [2008/11/05 22:20:24 | 000,048,128 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimmptsk.sys -- (rimmptsk)
DRV - [2008/10/11 14:56:00 | 000,045,056 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimsptsk.sys -- (rimsptsk)
DRV - [2008/07/29 14:41:36 | 000,038,400 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rixdptsk.sys -- (rismxdp)
DRV - [2008/05/06 15:06:00 | 000,011,520 | ---- | M] (Western Digital Technologies) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\wdcsam.sys -- (WDC_SAM)
DRV - [2007/05/26 11:39:24 | 000,024,304 | ---- | M] (PCTEL Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\PCTINDIS5.sys -- (PCTINDIS5)
DRV - [2004/01/12 15:20:00 | 000,009,600 | ---- | M] (Cygnal Integrated Products) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\CygF32x.sys -- (CYGF32X)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\..\URLSearchHook: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - No CLSID value found
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-1856872868-2035258614-136298297-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/
IE - HKU\S-1-5-21-1856872868-2035258614-136298297-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\S-1-5-21-1856872868-2035258614-136298297-1000\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-1856872868-2035258614-136298297-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...Box&FORM=IE11SR
IE - HKU\S-1-5-21-1856872868-2035258614-136298297-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1856872868-2035258614-136298297-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>
IE - HKU\S-1-5-21-1856872868-2035258614-136298297-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = localhost:8080

========== FireFox ==========

FF - prefs.js..extensions.enabledAddons: leethax%40leethax.net:2013.06.11
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:22.0
FF - user.js - File not found

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32_11_7_700_202.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@garmin.com/GpsControl: C:\Program Files\Garmin GPS Plugin\npGarmin.dll (GARMIN Corp.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.45.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll File not found
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll File not found
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll File not found
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@RIM.com/WebSLLauncher,version=1.0: C:\Program Files\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll ()
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: C:\Users\Dell 1525\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll File not found
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Dell 1525\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Dell 1525\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\amazon.com/AmazonMP3DownloaderPlugin: C:\Program Files\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin101721.dll (Amazon.com, Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2012/11/17 19:26:01 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 22.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 22.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 22.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 22.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Thunderbird\Extensions\\{0E810812-F4BB-4309-942A-755587587A5E}: C:\Program Files\BullGuard Ltd\BullGuard\Spamfilter\TbSpamfilter [2013/10/14 09:58:56 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Thunderbird\Extensions\\{380AE6CB-09B9-4373-B360-D01C2462A6E7}: C:\Program Files\BullGuard Ltd\BullGuard\backup\thunderbirdbkplugin [2013/10/14 09:58:56 | 000,000,000 | ---D | M]

[2013/06/02 11:02:44 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Dell 1525\AppData\Roaming\mozilla\Extensions
[2013/06/15 16:18:12 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Dell 1525\AppData\Roaming\mozilla\Firefox\Profiles\n592431z.default\extensions
[2013/06/15 16:18:12 | 000,021,637 | ---- | M] () (No name found) -- C:\Users\Dell 1525\AppData\Roaming\mozilla\firefox\profiles\n592431z.default\extensions\[email protected]
[2013/07/04 17:06:27 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions
[2013/07/04 17:06:40 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter},
CHR - homepage: http://www.google.co.uk/
CHR - plugin: Widevine Content Decryption Module (Enabled) = C:\Users\Dell 1525\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.1.376\_platform_specific\win_x86\widevinecdmadapter.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Dell 1525\AppData\Local\Google\Chrome\Application\31.0.1650.63\PepperFlash\pepflashplayer.dll
CHR - plugin: Chrome Remote Desktop Viewer (Disabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\Dell 1525\AppData\Local\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Disabled) = C:\Users\Dell 1525\AppData\Local\Google\Chrome\Application\31.0.1650.63\pdf.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
CHR - plugin: AmazonMP3DownloaderPlugin (Enabled) = C:\Program Files\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin101721.dll
CHR - plugin: RIM Handheld Application Loader (Enabled) = C:\Program Files\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll
CHR - plugin: DivX VOD Helper Plug-in (Enabled) = C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll
CHR - plugin: DivX Plus Web Player (Enabled) = C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
CHR - plugin: Garmin Communicator Plug-In (Disabled) = C:\Program Files\Garmin GPS Plugin\npGarmin.dll
CHR - plugin: Java Deployment Toolkit 7.0.450.18 (Enabled) = C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll
CHR - plugin: Java™ Platform SE 7 U45 (Enabled) = C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
CHR - plugin: Google Update (Enabled) = C:\Users\Dell 1525\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\system32\Macromed\Flash\NPSWF32_11_7_700_202.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - Extension: WGT Golf Game = C:\Users\Dell 1525\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpedbpkelbhcbkdaglillalioeeekbpb\45.0.0_0\
CHR - Extension: Google Wallet = C:\Users\Dell 1525\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\
CHR - Extension: Better Pop Up Blocker = C:\Users\Dell 1525\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmpeeekfhbmikbdhlpjbfmnpgcbeggic\2.1.6_0\
CHR - Extension: DivX Plus Web Player HTML5 \u003Cvideo\u003E = C:\Users\Dell 1525\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\
CHR - Extension: Gmail = C:\Users\Dell 1525\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2013/09/03 16:19:52 | 000,000,833 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
O2 - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Easy Photo Print) - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3 - HKLM\..\Toolbar: (Easy Photo Print) - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
O4 - HKLM..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe (Alps Electric Co., Ltd.)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [BullGuard] c:\program files\bullguard ltd\bullguard\BullGuard.exe (BullGuard Ltd.)
O4 - HKLM..\Run: [BullGuardUpdate2] c:\Program Files\BullGuard Ltd\BullGuard\BullGuardUpdate2.exe (BullGuard Ltd.)
O4 - HKLM..\Run: [DivXMediaServer] C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe ()
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [HTC Sync Loader] C:\Program Files\HTC\HTC Sync 3.0\htcUPCTLoader.exe ()
O4 - HKLM..\Run: [RIMBBLaunchAgent.exe] C:\Program Files\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe (Research In Motion Limited)
O4 - HKU\S-1-5-21-1856872868-2035258614-136298297-1000..\Run: [Akamai NetSession Interface] C:\Users\Dell 1525\AppData\Local\Akamai\netsession_win.exe (Akamai Technologies, Inc.)
O4 - HKU\S-1-5-21-1856872868-2035258614-136298297-1000..\Run: [Facebook Update] "C:\Users\Dell 1525\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver File not found
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
O4 - Startup: C:\Users\Dell 1525\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\Dell 1525\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1856872868-2035258614-136298297-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1856872868-2035258614-136298297-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\S-1-5-21-1856872868-2035258614-136298297-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra Button: Report to BullGuard - {27FD17FB-CF63-486b-B2BE-8D8781CBEA01} - C:\Program Files\BullGuard Ltd\BullGuard\Antiphishing\IE\BgAntiphishingIE.dll (BullGuard Ltd.)
O13 - gopher Prefix: missing
O15 - HKU\S-1-5-21-1856872868-2035258614-136298297-1000\..Trusted Ranges: Range1979 ([http] in Trusted sites)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{0192A80C-FEA1-4CE3-BC98-B5391BFE3847}: NameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{F1C3BFC7-997F-4257-AFF8-B00E7200F3D6}: DhcpNameServer = 192.168.0.1
O20 - AppInit_DLLs: (c:\PROGRA~1\BULLGU~1\BULLGU~1\BgAgent.dll) - c:\Program Files\BullGuard Ltd\BullGuard\BgAgent.dll (BullGuard Ltd.)
O20 - AppInit_DLLs: (BgGamingMonitor.dll) - C:\Windows\System32\BgGamingMonitor.dll (BullGuard Ltd.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O24 - Desktop WallPaper:
O24 - Desktop BackupWallPaper:
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/06/10 21:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{32fa387c-650a-11e3-8225-001dd9e82075}\Shell - "" = AutoRun
O33 - MountPoints2\{32fa387c-650a-11e3-8225-001dd9e82075}\Shell\AutoRun\command - "" = G:\HTC_Sync_Manager_PC.exe
O33 - MountPoints2\{39a90c94-566b-11e3-aa7e-001dd9e82075}\Shell - "" = AutoRun
O33 - MountPoints2\{39a90c94-566b-11e3-aa7e-001dd9e82075}\Shell\AutoRun\command - "" = F:\HTC_Sync_Manager_PC.exe
O33 - MountPoints2\F\Shell - "" = AutoRun
O33 - MountPoints2\F\Shell\AutoRun\command - "" = F:\HTC_Sync_Manager_PC.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - C:\Windows\System32\ias.dll (Microsoft Corporation)
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

========== Files/Folders - Created Within 30 Days ==========

[2014/01/09 08:59:18 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000057a3
[2014/01/09 08:58:21 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000037ee
[2014/01/09 08:57:41 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001fd7
[2014/01/09 08:57:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005df0
[2014/01/09 08:57:32 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006a9b
[2014/01/09 00:33:14 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004b00
[2014/01/09 00:33:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003b9a
[2014/01/09 00:33:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002b20
[2014/01/09 00:32:50 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000076fd
[2014/01/09 00:32:46 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001fb4
[2014/01/08 18:21:53 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000608c
[2014/01/08 18:21:51 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003f98
[2014/01/08 18:21:48 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007db1
[2014/01/08 18:21:45 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005cbd
[2014/01/08 18:21:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000079e2
[2014/01/08 18:21:37 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002781
[2014/01/08 18:21:30 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000342c
[2014/01/08 18:21:09 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000b9b
[2014/01/08 18:21:06 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005a2e
[2014/01/08 18:21:04 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000028c0
[2014/01/08 13:33:17 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006f7e
[2014/01/08 13:33:15 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004e8a
[2014/01/08 13:33:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001d1d
[2014/01/08 13:32:57 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000025f9
[2014/01/08 13:07:41 | 000,000,000 | ---D | C] -- C:\Users\Dell 1525\AppData\Local\{4BA2EA19-D794-40A6-BF97-573C895E44E9}
[2014/01/08 12:32:21 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002386
[2014/01/08 12:32:18 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007218
[2014/01/08 12:32:16 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005125
[2014/01/08 12:32:14 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003031
[2014/01/08 12:32:13 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001fb7
[2014/01/08 12:32:11 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007ec3
[2014/01/08 12:32:09 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004d56
[2014/01/08 12:32:06 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002c62
[2014/01/08 12:32:04 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006a7b
[2014/01/08 12:31:59 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000390d
[2014/01/08 12:31:57 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000181a
[2014/01/08 12:31:54 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005632
[2014/01/08 12:31:50 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000144b
[2014/01/08 12:31:47 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000062dd
[2014/01/08 12:31:44 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000020f6
[2014/01/08 12:31:39 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003e1b
[2014/01/08 12:31:34 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007c34
[2014/01/08 12:31:30 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001959
[2014/01/08 12:31:24 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002604
[2014/01/08 12:31:16 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000641d
[2014/01/08 12:31:13 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002235
[2014/01/08 12:31:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000011bb
[2014/01/08 12:31:08 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000604e
[2014/01/08 12:31:06 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003f5a
[2014/01/08 12:31:04 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001e67
[2014/01/08 12:31:01 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007d73
[2014/01/08 12:30:59 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004c05
[2014/01/08 08:45:17 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004f92
[2014/01/08 08:45:15 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002e9e
[2014/01/08 08:45:13 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000daa
[2014/01/08 08:45:11 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006cb7
[2014/01/08 08:44:57 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000060d
[2014/01/08 08:44:55 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006519
[2014/01/08 08:44:53 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004425
[2014/01/08 08:44:50 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000012b8
[2014/01/07 20:12:50 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005ad7
[2014/01/07 20:12:48 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001031
[2014/01/07 18:34:53 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000063ad
[2014/01/07 18:34:50 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000015de
[2014/01/07 18:34:48 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000021c6
[2014/01/07 18:34:46 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000605b
[2014/01/07 18:34:44 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005fde
[2014/01/07 18:34:41 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007d78
[2014/01/07 18:34:39 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000d7d
[2014/01/07 18:34:37 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006c8a
[2014/01/07 18:34:35 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004b96
[2014/01/07 18:34:33 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002aa2
[2014/01/07 18:34:31 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000009af
[2014/01/07 18:34:30 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000068bb
[2014/01/07 18:34:28 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000047c7
[2014/01/07 18:34:26 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000026d4
[2014/01/07 18:34:24 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000005e0
[2014/01/07 18:34:22 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007566
[2014/01/07 18:34:20 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005472
[2014/01/07 18:34:18 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000337f
[2014/01/07 18:34:16 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000128b
[2014/01/07 18:34:14 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007197
[2014/01/07 18:34:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000402a
[2014/01/07 18:34:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001f36
[2014/01/07 18:33:55 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000388d
[2014/01/07 18:33:53 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000071f
[2014/01/07 18:33:51 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000662b
[2014/01/07 18:33:48 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004538
[2014/01/07 18:33:46 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001051
[2014/01/07 18:33:44 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000072d6
[2014/01/07 18:33:40 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000030ef
[2014/01/07 10:19:40 | 000,000,000 | ---D | C] -- C:\Users\Dell 1525\AppData\Local\{F221F2B3-23F5-439A-8EA5-DD8EB001A17B}
[2014/01/07 09:57:33 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001e99
[2014/01/07 09:57:30 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007da6
[2014/01/07 09:57:21 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000058e3
[2014/01/07 09:57:18 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002776
[2014/01/07 09:57:13 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005515
[2014/01/07 09:57:09 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000723a
[2014/01/07 09:56:50 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000017ae
[2014/01/07 09:56:46 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000066cd
[2014/01/07 09:56:38 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000146c
[2014/01/07 09:56:33 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000066e1
[2014/01/07 09:49:16 | 000,000,000 | -HSD | C] -- C:\found.001
[2014/01/06 13:44:11 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004784
[2014/01/06 13:44:05 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000064a9
[2014/01/06 13:44:03 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000333c
[2014/01/06 13:43:59 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000060db
[2014/01/06 13:43:55 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002f6d
[2014/01/06 13:43:51 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006d86
[2014/01/06 13:43:48 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004c92
[2014/01/06 13:43:46 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002b9e
[2014/01/06 13:43:44 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000aab
[2014/01/06 13:43:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000069b7
[2014/01/06 13:43:40 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000048c3
[2014/01/06 13:43:38 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000027d0
[2014/01/06 13:43:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000065e8
[2014/01/06 13:43:32 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001387
[2014/01/06 13:43:27 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004126
[2014/01/06 13:43:21 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000fb9
[2014/01/06 13:43:19 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000822
[2014/01/06 13:43:15 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000bea
[2014/01/06 13:43:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004a03
[2014/01/06 13:43:07 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001895
[2014/01/06 13:43:04 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006727
[2014/01/06 13:43:01 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000035ba
[2014/01/06 13:42:58 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000073d3
[2014/01/06 13:42:54 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000052df
[2014/01/06 12:21:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000442e
[2014/01/06 12:21:40 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000012c1
[2014/01/06 12:21:32 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000ef2
[2014/01/06 12:21:29 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005d85
[2014/01/06 12:21:14 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006661
[2014/01/06 12:21:11 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000247a
[2014/01/06 12:21:07 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000017b9
[2014/01/05 23:10:40 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000027ff
[2014/01/05 23:10:26 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004156
[2014/01/05 23:10:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007f6e
[2014/01/05 14:15:07 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001b37
[2014/01/05 14:15:05 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000069c9
[2014/01/05 14:15:01 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000027e2
[2014/01/05 14:14:33 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006081
[2014/01/05 14:14:27 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000585f
[2014/01/05 01:35:49 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000092f
[2014/01/05 01:35:47 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001eb6
[2014/01/05 01:35:31 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003faa
[2014/01/05 01:35:25 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007dc3
[2014/01/04 19:12:04 | 000,000,000 | ---D | C] -- C:\Users\Dell 1525\AppData\Local\{3C34D949-4EB5-45E1-A1DC-D28C959DF7A3}
[2014/01/04 19:11:29 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000059f6
[2014/01/04 19:11:26 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000039d0
[2014/01/04 19:11:08 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007ff7
[2014/01/04 19:11:05 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002e42
[2014/01/04 11:47:47 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000c74
[2014/01/04 11:47:45 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006b81
[2014/01/04 11:47:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003a13
[2014/01/04 10:39:27 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001cb3
[2014/01/04 10:39:24 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007bc0
[2014/01/04 10:39:22 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004a52
[2014/01/04 10:39:19 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000295f
[2014/01/04 10:39:05 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000042b5
[2014/01/04 10:39:03 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001147
[2014/01/04 01:16:44 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000038a4
[2014/01/04 01:16:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000017b0
[2014/01/04 01:16:25 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007f99
[2014/01/04 01:16:22 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004e2c
[2014/01/04 01:16:19 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007bca
[2014/01/04 01:16:15 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000039e3
[2014/01/03 18:27:55 | 000,000,000 | ---D | C] -- C:\Users\Dell 1525\AppData\Local\{47889FBB-911D-4A8D-977D-D65C11B0D3BF}
[2014/01/03 17:56:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004f60
[2014/01/03 17:55:58 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002e6c
[2014/01/03 16:55:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000005f7
[2014/01/03 16:55:41 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000757d
[2014/01/03 16:55:28 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001f4e
[2014/01/03 16:55:27 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000ed4
[2014/01/03 16:55:25 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006de0
[2014/01/03 14:55:01 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006f58
[2014/01/03 14:54:59 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005ede
[2014/01/03 14:54:58 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004e64
[2014/01/03 14:54:45 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007834
[2014/01/03 14:54:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005741
[2014/01/03 14:54:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000364d
[2014/01/03 12:54:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001aa0
[2014/01/03 12:54:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004470
[2014/01/03 12:54:08 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000033f6
[2014/01/03 12:54:06 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001302
[2014/01/03 12:54:05 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000720f
[2014/01/03 10:53:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000024f4
[2014/01/03 10:53:29 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004ec4
[2014/01/03 10:53:28 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002dd0
[2014/01/03 10:53:26 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001d56
[2014/01/03 07:53:06 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003fde
[2014/01/03 07:52:54 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007a28
[2014/01/03 07:52:53 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005934
[2014/01/03 06:52:39 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000051b3
[2014/01/03 06:52:27 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007b83
[2014/01/03 06:52:25 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006b09
[2014/01/03 05:52:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004174
[2014/01/03 05:51:49 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005b25
[2014/01/03 05:51:48 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000581c
[2014/01/03 03:51:25 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007a88
[2014/01/03 03:51:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002458
[2014/01/03 03:51:11 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000013de
[2014/01/03 02:50:51 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000088e
[2014/01/03 02:50:38 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000042d8
[2014/01/03 02:50:37 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000021e5
[2014/01/03 01:19:31 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005882
[2014/01/03 01:19:27 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000169a
[2014/01/03 01:19:25 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000652d
[2014/01/03 01:19:22 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004439
[2014/01/03 01:19:05 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003c9c
[2014/01/03 01:19:03 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000b2e
[2014/01/02 19:13:02 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002778
[2014/01/02 19:13:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000016fe
[2014/01/02 19:12:47 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003055
[2014/01/02 19:12:45 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000f61
[2014/01/02 18:12:02 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001999
[2014/01/02 18:11:59 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000682b
[2014/01/02 18:11:57 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004738
[2014/01/02 18:11:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006d39
[2014/01/02 18:11:34 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004c45
[2014/01/02 14:26:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000008dc
[2014/01/02 14:26:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000067e9
[2014/01/02 14:25:56 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000070c5
[2014/01/02 14:25:53 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004fd2
[2014/01/02 12:45:59 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007aab
[2014/01/02 12:45:56 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000059b8
[2014/01/02 12:45:41 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006294
[2014/01/02 12:45:39 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003127
[2014/01/01 23:37:49 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000000d2
[2014/01/01 23:37:46 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004f64
[2014/01/01 23:37:44 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002e71
[2014/01/01 23:37:31 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005841
[2014/01/01 23:37:28 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000165a
[2014/01/01 15:57:49 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003163
[2014/01/01 15:57:47 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001070
[2014/01/01 15:57:33 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000029c6
[2014/01/01 15:57:31 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000008d2
[2014/01/01 14:56:57 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002753
[2014/01/01 14:56:54 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000075e5
[2014/01/01 13:56:05 | 000,000,000 | ---D | C] -- C:\Users\Dell 1525\AppData\Local\{186E6C4E-435D-4C3D-BAD8-FC04B8DF0C01}
[2014/01/01 13:53:30 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000237d
[2014/01/01 13:53:28 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000028a
[2014/01/01 13:53:26 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000511c
[2014/01/01 13:53:17 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001be0
[2014/01/01 13:53:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007aec
[2014/01/01 13:52:58 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000003c9
[2014/01/01 13:52:53 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003168
[2013/12/31 17:55:19 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004d05
[2013/12/31 17:55:18 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003c8b
[2013/12/31 17:55:15 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006a2a
[2013/12/31 17:55:11 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004937
[2013/12/31 17:55:09 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002843
[2013/12/31 17:54:54 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000311f
[2013/12/31 17:54:51 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007fb2
[2013/12/31 01:20:08 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005b46
[2013/12/31 01:19:50 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000432f
[2013/12/31 01:19:49 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000223b
[2013/12/31 01:19:46 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000070ce
[2013/12/31 00:19:25 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000657e
[2013/12/31 00:19:24 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005504
[2013/12/31 00:19:22 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002397
[2013/12/31 00:19:19 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000002a3
[2013/12/31 00:19:17 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005136
[2013/12/31 00:19:02 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006a8c
[2013/12/31 00:19:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004998
[2013/12/30 16:51:03 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000267d
[2013/12/30 16:51:01 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000614d
[2013/12/30 16:50:59 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000050d4
[2013/12/30 16:50:57 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001f66
[2013/12/30 14:16:15 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003de5
[2013/12/30 14:16:13 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001cf2
[2013/12/30 14:16:11 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007bfe
[2013/12/30 14:15:58 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000025ce
[2013/12/30 14:15:56 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000004da
[2013/12/30 14:15:54 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000063e7
[2013/12/30 13:37:27 | 000,000,000 | ---D | C] -- C:\Users\Dell 1525\AppData\Local\{05DBF3DD-E4DA-4F90-B123-CC5130548A9A}
[2013/12/30 12:59:14 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000056aa
[2013/12/30 12:59:13 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004630
[2013/12/30 12:59:11 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000253c
[2013/12/30 12:59:09 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000448
[2013/12/30 12:58:55 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001d9f
[2013/12/30 12:58:53 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005bb7
[2013/12/30 12:58:49 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002a4a
[2013/12/29 23:51:21 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000646e
[2013/12/29 23:51:19 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003300
[2013/12/29 23:51:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000a6f
[2013/12/29 23:50:57 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005901
[2013/12/29 20:50:30 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000077ba
[2013/12/29 20:50:27 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000056c7
[2013/12/29 20:50:24 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002559
[2013/12/29 18:16:55 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000661d
[2013/12/29 18:16:52 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000013bb
[2013/12/29 18:16:46 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005e7f
[2013/12/29 18:16:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000056e2
[2013/12/29 18:16:20 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002574
[2013/12/29 12:10:58 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000444e
[2013/12/29 12:10:55 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000235a
[2013/12/29 12:10:53 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000267
[2013/12/29 12:10:35 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000038e2
[2013/12/29 12:10:31 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006681
[2013/12/29 00:32:28 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001b63
[2013/12/29 00:32:27 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007a70
[2013/12/29 00:32:07 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004165
[2013/12/29 00:32:06 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002071
[2013/12/29 00:32:03 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007f7e
[2013/12/28 19:28:39 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005757
[2013/12/28 19:28:37 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003663
[2013/12/28 19:28:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006034
[2013/12/28 19:28:21 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003f40
[2013/12/28 18:28:03 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000655e
[2013/12/28 18:27:47 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004d46
[2013/12/28 18:27:44 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002c53
[2013/12/28 14:10:50 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000013ff
[2013/12/28 14:10:48 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000730b
[2013/12/28 14:10:35 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001cdb
[2013/12/28 14:10:32 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006b6d
[2013/12/28 11:38:26 | 000,000,000 | ---D | C] -- C:\Users\Dell 1525\AppData\Local\{E0DABEDA-D842-4495-BCFE-CE1DE2AD783D}
[2013/12/28 11:31:19 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000018f3
[2013/12/28 11:31:18 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000879
[2013/12/28 11:31:16 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006786
[2013/12/28 11:31:14 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004692
[2013/12/28 11:30:59 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003ef5
[2013/12/28 11:30:54 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007d0d
[2013/12/28 02:16:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007d6f
[2013/12/28 02:16:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005c7b
[2013/12/28 02:16:08 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003b88
[2013/12/28 02:16:06 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001a94
[2013/12/28 02:15:49 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000027d
[2013/12/28 02:15:46 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006189
[2013/12/27 18:53:33 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002d70
[2013/12/27 18:53:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005371
[2013/12/27 18:53:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000042f7
[2013/12/27 18:53:08 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000118a
[2013/12/27 15:20:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004f09
[2013/12/27 15:20:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001fbd
[2013/12/27 15:20:08 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007ec9
[2013/12/27 15:20:05 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004d5c
[2013/12/27 15:20:03 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002c68
[2013/12/27 15:20:01 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000b74
[2013/12/27 15:19:57 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005a07
[2013/12/27 15:19:55 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003913
[2013/12/27 15:19:53 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000007a6
[2013/12/27 15:19:50 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000066b2
[2013/12/27 15:19:48 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003545
[2013/12/27 15:19:45 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005875
[2013/12/27 15:19:41 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000526a
[2013/12/27 15:19:38 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000020fc
[2013/12/27 15:19:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000046fd
[2013/12/27 15:19:15 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004fda
[2013/12/27 15:19:01 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000655
[2013/12/27 15:18:40 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003cd1
[2013/12/27 15:18:21 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000b63
[2013/12/27 15:18:17 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000059f5
[2013/12/27 15:18:14 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002888
[2013/12/27 15:18:11 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000066a1
[2013/12/27 15:18:06 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000024b9
[2013/12/26 19:16:39 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004173
[2013/12/26 19:16:38 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002080
[2013/12/26 19:16:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007f8c
[2013/12/26 19:16:33 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004e1e
[2013/12/26 19:16:29 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001cb1
[2013/12/25 10:20:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002bd4
[2013/12/25 10:20:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007a67
[2013/12/24 15:28:44 | 000,000,000 | ---D | C] -- C:\Users\Dell 1525\AppData\Local\{D38A4DD7-01DB-4694-874C-8B1ECDC8CA62}
[2013/12/24 15:27:53 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006c4c
[2013/12/24 15:27:35 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007529
[2013/12/24 15:27:34 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000064af
[2013/12/24 15:27:32 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000043bb
[2013/12/24 10:32:35 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004d59
[2013/12/24 10:32:22 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007729
[2013/12/24 10:32:20 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005636
[2013/12/24 10:32:18 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003542
[2013/12/24 09:31:13 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005502
[2013/12/24 09:31:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004488
[2013/12/24 09:31:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002394
[2013/12/24 09:31:08 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000002a0
[2013/12/24 09:31:05 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005133
[2013/12/24 09:31:02 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001fc5
[2013/12/24 09:31:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007cf9
[2013/12/24 09:30:59 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006e58
[2013/12/24 09:30:57 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004d64
[2013/12/24 09:30:54 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001bf7
[2013/12/24 09:30:52 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007b03
[2013/12/24 09:30:49 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004996
[2013/12/24 09:30:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000045c7
[2013/12/24 09:30:39 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000024d3
[2013/12/24 09:30:38 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001459
[2013/12/24 09:30:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007366
[2013/12/24 09:30:33 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000041f8
[2013/12/24 09:30:32 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000317e
[2013/12/24 09:30:29 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007e44
[2013/12/24 09:30:16 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001967
[2013/12/24 09:30:13 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007873
[2013/12/24 09:30:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004706
[2013/12/22 17:24:15 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003962
[2013/12/22 17:24:13 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000028e8
[2013/12/22 17:24:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000007f4
[2013/12/22 17:23:58 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000031c4
[2013/12/22 17:23:57 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000010d1
[2013/12/22 17:23:54 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006fdd
[2013/12/22 12:31:09 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000067d4
[2013/12/22 12:31:07 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000046e0
[2013/12/22 12:31:05 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000004f9
[2013/12/22 12:31:01 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000538b
[2013/12/22 12:30:58 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000221e
[2013/12/22 12:30:41 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001a80
[2013/12/22 12:30:39 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000798d
[2013/12/22 01:30:48 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007fd2
[2013/12/22 01:30:34 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000008ae
[2013/12/22 01:30:32 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000067bb
[2013/12/21 23:32:27 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006bd3
[2013/12/21 23:32:25 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005b59
[2013/12/21 23:32:24 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003a66
[2013/12/21 23:32:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006436
[2013/12/21 23:32:09 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000224f
[2013/12/21 19:24:57 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001fea
[2013/12/21 19:24:54 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006e7d
[2013/12/21 19:24:34 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003572
[2013/12/21 19:24:32 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000738b
[2013/12/21 19:24:27 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000212f
[2013/12/21 03:07:48 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006198
[2013/12/21 03:07:46 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000040a4
[2013/12/21 03:07:44 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001fb0
[2013/12/21 03:07:31 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004981
[2013/12/21 03:07:29 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000288d
[2013/12/21 03:07:27 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000799
[2013/12/21 03:07:25 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000771f
[2013/12/20 20:30:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000136f
[2013/12/20 20:30:34 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000002f5
[2013/12/20 20:30:33 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006201
[2013/12/20 20:30:32 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005187
[2013/12/20 20:30:30 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003094
[2013/12/20 20:30:29 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000201a
[2013/12/20 20:30:21 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002cc5
[2013/12/20 20:30:20 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000bd1
[2013/12/20 20:30:19 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002b35
[2013/12/20 20:30:17 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005074
[2013/12/20 20:30:16 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000049ea
[2013/12/20 20:30:14 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000028f6
[2013/12/20 20:30:11 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000803
[2013/12/20 20:30:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005695
[2013/12/20 20:30:08 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000461b
[2013/12/20 20:30:06 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002528
[2013/12/20 20:30:05 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002feb
[2013/12/20 20:30:03 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000073ba
[2013/12/20 20:30:02 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006340
[2013/12/20 20:30:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007a68
[2013/12/20 20:29:59 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000031d3
[2013/12/20 20:29:58 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002159
[2013/12/20 20:29:56 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000065
[2013/12/20 20:29:55 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006fec
[2013/12/20 20:29:40 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000078c8
[2013/12/20 20:29:38 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000057d4
[2013/12/20 20:29:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000036e1
[2013/12/20 17:37:05 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000089d
[2013/12/20 17:37:03 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000067aa
[2013/12/20 17:37:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000032f4
[2013/12/20 17:36:57 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000004cf
[2013/12/20 15:15:58 | 000,000,000 | ---D | C] -- C:\Users\Dell 1525\AppData\Local\{FE79E65E-57A7-4E33-AFE6-E12C7727765A}
[2013/12/20 14:39:51 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003424
[2013/12/20 14:39:50 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001331
[2013/12/20 14:39:49 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000075d4
[2013/12/20 14:39:47 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000723d
[2013/12/20 14:39:33 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007b19
[2013/12/20 14:39:31 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005a26
[2013/12/20 14:39:29 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000049ac
[2013/12/20 10:59:04 | 000,000,000 | ---D | C] -- C:\Users\Dell 1525\AppData\Local\{6F3A760E-5284-4E02-9F64-02A6B51A7145}
[2013/12/20 06:48:29 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006fa8
[2013/12/20 06:48:27 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005f2e
[2013/12/20 06:48:26 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003e3a
[2013/12/20 06:48:24 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002dc0
[2013/12/20 06:48:11 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005791
[2013/12/20 06:48:09 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002623
[2013/12/20 00:24:14 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002349
[2013/12/20 00:24:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000021fd
[2013/12/20 00:24:11 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000071dc
[2013/12/20 00:24:09 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000050e8
[2013/12/20 00:24:08 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006c7b
[2013/12/20 00:24:06 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000011b9
[2013/12/20 00:24:04 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000036f8
[2013/12/20 00:24:02 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006e0d
[2013/12/20 00:24:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003ca0
[2013/12/20 00:23:58 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001bac
[2013/12/20 00:23:56 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007ab8
[2013/12/20 00:23:55 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000059c5
[2013/12/20 00:23:53 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000494b
[2013/12/20 00:23:51 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000690f
[2013/12/20 00:23:49 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000763
[2013/12/20 00:23:47 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000076ea
[2013/12/20 00:23:45 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000457c
[2013/12/20 00:23:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002488
[2013/12/20 00:23:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000140f
[2013/12/20 00:23:40 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000731b
[2013/12/20 00:23:39 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000062a1
[2013/12/20 00:23:37 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000041ad
[2013/12/20 00:23:30 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003ddf
[2013/12/20 00:23:27 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001ceb
[2013/12/20 00:23:26 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000c71
[2013/12/20 00:23:24 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006b7d
[2013/12/20 00:23:22 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004a8a
[2013/12/20 00:23:20 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002996
[2013/12/20 00:23:19 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000008a2
[2013/12/20 00:23:17 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000067af
[2013/12/20 00:23:15 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000046bb
[2013/12/20 00:23:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000025c7
[2013/12/20 00:22:55 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005c43
[2013/12/20 00:22:50 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001a5b
[2013/12/20 00:22:46 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007968
[2013/12/20 00:22:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002707
[2013/12/19 17:25:08 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000022d0
[2013/12/19 17:25:04 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000060e9
[2013/12/19 17:25:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002bad
[2013/12/19 17:24:49 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000027de
[2013/12/19 17:24:41 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004503
[2013/12/19 17:24:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002cec
[2013/12/19 17:24:17 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000035c8
[2013/12/19 17:24:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000969
[2013/12/18 18:06:50 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003504
[2013/12/18 18:06:46 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007f81
[2013/12/18 18:06:44 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005887
[2013/12/18 18:06:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003793
[2013/12/18 18:06:41 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000016a0
[2013/12/18 18:06:39 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000075ac
[2013/12/18 18:06:21 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001bae
[2013/12/18 18:06:16 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000059c6
[2013/12/18 18:06:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000038d3
[2013/12/18 11:52:51 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000733b
[2013/12/18 11:52:49 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000062c1
[2013/12/18 11:52:47 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000041cd
[2013/12/18 11:52:45 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000020da
[2013/12/18 11:52:44 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001060
[2013/12/18 11:52:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006f6c
[2013/12/18 11:52:40 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004e79
[2013/12/18 11:52:39 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003dff
[2013/12/18 11:52:37 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001d0b
[2013/12/18 11:52:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000c91
[2013/12/18 11:52:34 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006b9e
[2013/12/18 11:52:18 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006400
[2013/12/18 11:52:16 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000430c
[2013/12/18 11:52:15 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003293
[2013/12/18 11:52:13 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000119f
[2013/12/18 11:52:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000125
[2013/12/18 11:52:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006031
[2013/12/18 11:52:08 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003f3e
[2013/12/18 11:52:06 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001e4a
[2013/12/18 11:52:04 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007d56
[2013/12/18 11:52:02 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004be9
[2013/12/18 11:51:59 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002af5
[2013/12/18 11:51:58 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000a02
[2013/12/18 09:26:03 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000023ca
[2013/12/18 09:26:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004d9a
[2013/12/18 09:25:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003583
[2013/12/18 09:25:30 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006322
[2013/12/17 23:03:59 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000010f9
[2013/12/17 23:03:58 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000007f
[2013/12/17 23:03:57 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007006
[2013/12/17 23:03:57 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005c3c
[2013/12/17 23:03:45 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002a4f
[2013/12/17 23:03:44 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000019d6
[2013/12/17 23:03:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000060f2
[2013/12/17 23:03:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000095c
[2013/12/17 23:03:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000078e2
[2013/12/17 23:03:41 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006868
[2013/12/17 23:03:40 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000058d0
[2013/12/17 23:03:40 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000057ee
[2013/12/17 23:03:39 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004774
[2013/12/17 23:03:38 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000036fb
[2013/12/17 23:03:37 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002681
[2013/12/17 23:03:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000234d
[2013/12/17 23:03:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001607
[2013/12/17 23:03:35 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000058d
[2013/12/17 23:03:34 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007513
[2013/12/17 23:03:34 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000488c
[2013/12/17 23:03:33 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006499
[2013/12/17 23:03:32 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005420
[2013/12/17 23:03:31 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000043a6
[2013/12/17 23:03:30 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000332c
[2013/12/17 20:41:25 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000009f1
[2013/12/17 20:41:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000068fd
[2013/12/17 20:41:22 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000480a
[2013/12/17 20:41:20 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002716
[2013/12/17 19:40:55 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006a59
[2013/12/17 19:40:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001429
[2013/12/17 19:40:41 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000099a
[2013/12/17 19:40:40 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005c39
[2013/12/17 17:39:59 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006d0f
[2013/12/17 17:39:58 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004c1c
[2013/12/17 17:39:55 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000022ab
[2013/12/17 17:39:54 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000047e9
[2013/12/17 16:39:22 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005a22
[2013/12/17 16:39:20 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000392f
[2013/12/17 16:39:07 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000062ff
[2013/12/17 16:39:05 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003191
[2013/12/17 16:39:03 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000109e
[2013/12/17 16:05:11 | 000,000,000 | ---D | C] -- C:\Users\Dell 1525\Desktop\tv probs
[2013/12/17 14:38:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000553c
[2013/12/17 14:38:09 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003448
[2013/12/17 14:37:56 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006e92
[2013/12/17 14:37:54 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004d9e
[2013/12/17 14:37:52 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001c31
[2013/12/17 14:37:50 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000bb7
[2013/12/17 14:04:55 | 000,000,000 | ---D | C] -- C:\Users\Dell 1525\AppData\Local\{23832431-D6A4-4B73-8780-9500F4DA3CF4}
[2013/12/17 13:37:22 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007c99
[2013/12/17 13:37:20 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006c1f
[2013/12/17 13:37:06 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000074fb
[2013/12/17 13:37:03 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005408
[2013/12/17 12:36:15 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007b64
[2013/12/17 12:36:14 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006aea
[2013/12/17 12:36:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005a71
[2013/12/17 11:25:21 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000032d2
[2013/12/17 11:25:19 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002259
[2013/12/17 11:25:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000058d4
[2013/12/17 11:24:58 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000485a
[2013/12/17 11:24:56 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002766
[2013/12/17 10:24:37 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003d0a
[2013/12/17 10:24:25 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000066da
[2013/12/17 10:24:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005661
[2013/12/17 09:24:09 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003e66
[2013/12/17 09:23:57 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006836
[2013/12/17 09:23:55 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004742
[2013/12/17 08:23:35 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000211c
[2013/12/17 08:23:33 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003bf2
[2013/12/17 08:23:21 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000025d2
[2013/12/17 08:23:19 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004b11
[2013/12/17 07:23:02 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007b66
[2013/12/17 07:23:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006aed
[2013/12/17 07:22:48 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002c94
[2013/12/17 07:22:46 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000443
[2013/12/17 05:22:11 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000060f8
[2013/12/17 05:22:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004005
[2013/12/17 05:22:08 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002f8b
[2013/12/17 04:21:52 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006622
[2013/12/17 04:21:51 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000055a8
[2013/12/17 04:21:38 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000ff2
[2013/12/17 04:21:37 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006eff
[2013/12/17 03:21:20 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002596
[2013/12/17 03:21:07 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005fe0
[2013/12/17 03:21:06 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003eed
[2013/12/17 02:20:49 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007584
[2013/12/17 02:20:47 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005491
[2013/12/17 02:20:35 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000eda
[2013/12/17 02:20:33 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007e61
[2013/12/17 02:20:32 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005d6d
[2013/12/17 01:20:16 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000247e
[2013/12/17 01:20:14 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000038b
[2013/12/17 01:20:01 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002d5b
[2013/12/17 01:19:59 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001ce1
[2013/12/17 01:19:57 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007bed
[2013/12/17 00:19:27 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005c55
[2013/12/17 00:19:26 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004bdb
[2013/12/17 00:19:24 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002ae8
[2013/12/17 00:19:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000054b8
[2013/12/17 00:19:11 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000443e
[2013/12/17 00:19:09 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000234a
[2013/12/16 22:18:34 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000000
[2013/12/16 22:18:32 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006f86
[2013/12/16 22:18:30 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004e92
[2013/12/16 22:18:18 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007862
[2013/12/16 22:18:16 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000576e
[2013/12/16 21:17:49 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006944
[2013/12/16 21:17:47 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004850
[2013/12/16 21:17:45 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000037d6
[2013/12/16 21:17:44 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000016e3
[2013/12/16 20:17:17 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003932
[2013/12/16 20:17:16 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000028b8
[2013/12/16 20:17:03 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005288
[2013/12/16 20:17:01 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003194
[2013/12/16 18:16:27 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000e4a
[2013/12/16 18:16:14 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004893
[2013/12/16 18:16:13 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000381a
[2013/12/16 18:16:06 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000344b
[2013/12/16 18:16:04 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001357
[2013/12/16 17:15:48 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006ae3
[2013/12/16 17:15:47 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000049ef
[2013/12/16 17:15:45 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003975
[2013/12/16 17:15:32 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000052cb
[2013/12/16 17:15:30 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000031d8
[2013/12/16 15:15:11 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000162a
[2013/12/16 15:15:09 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007537
[2013/12/16 15:14:57 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002f81
[2013/12/16 15:14:54 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000e8d
[2013/12/16 14:14:26 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007f6f
[2013/12/16 14:14:25 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006ef5
[2013/12/16 14:14:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005e7b
[2013/12/16 14:14:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004e01
[2013/12/16 14:14:21 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003d87
[2013/12/16 14:14:20 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002d0d
[2013/12/16 14:14:19 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000c1a
[2013/12/16 14:14:18 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007ba0
[2013/12/16 14:14:17 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006b26
[2013/12/16 14:14:15 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005aac
[2013/12/16 14:14:13 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000039b8
[2013/12/16 14:14:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000018c5
[2013/12/16 14:13:59 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000530f
[2013/12/16 14:13:58 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004295
[2013/12/16 14:13:57 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000321b
[2013/12/16 14:13:56 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001127
[2013/12/16 14:13:54 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007034
[2013/12/16 14:13:52 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004f40
[2013/12/16 12:13:20 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005d63
[2013/12/16 12:13:08 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000017ad
[2013/12/16 12:13:06 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000076b9
[2013/12/16 12:13:03 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000055c6
[2013/12/16 10:33:44 | 000,000,000 | ---D | C] -- C:\Users\Dell 1525\AppData\Local\{2983952B-A77D-4A74-8AEC-654C38E048B6}
[2013/12/16 10:12:21 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002eac
[2013/12/16 10:12:20 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000db9
[2013/12/16 10:12:17 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006cc5
[2013/12/16 09:12:01 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004450
[2013/12/16 09:11:49 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006e20
[2013/12/16 09:11:47 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004d2d
[2013/12/16 08:11:32 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000024b8
[2013/12/16 08:11:31 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000143e
[2013/12/16 08:11:18 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004e88
[2013/12/16 08:11:17 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002d94
[2013/12/16 07:11:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003270
[2013/12/16 07:10:58 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000053b2
[2013/12/16 07:10:46 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007d82
[2013/12/16 07:10:44 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005c8e
[2013/12/16 06:10:28 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000341a
[2013/12/16 06:10:27 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000023a0
[2013/12/16 06:10:15 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004d70
[2013/12/16 06:10:13 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002c7c
[2013/12/16 04:09:56 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000031c3
[2013/12/16 04:09:54 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002149
[2013/12/16 04:09:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004b19
[2013/12/16 04:09:40 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002a25
[2013/12/16 02:09:14 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001b23
[2013/12/16 02:09:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000aa9
[2013/12/16 02:09:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000347a
[2013/12/16 02:08:58 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001386
[2013/12/16 01:08:29 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000467
[2013/12/16 01:08:07 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000019ef
[2013/12/16 01:08:05 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000078fb
[2013/12/16 00:07:24 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002427
[2013/12/16 00:07:22 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000333
[2013/12/16 00:07:20 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000623f
[2013/12/15 23:06:53 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007415
[2013/12/15 23:06:40 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002e5f
[2013/12/15 23:06:38 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000d6b
[2013/12/15 22:06:21 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003389
[2013/12/15 22:06:08 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005d59
[2013/12/15 22:06:06 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003c65
[2013/12/15 20:05:26 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000046b9
[2013/12/15 20:05:24 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000025c6
[2013/12/15 20:05:22 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000004d2
[2013/12/15 19:04:50 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000054c0
[2013/12/15 19:04:38 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002c2c
[2013/12/15 19:04:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006e16
[2013/12/15 17:03:51 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000158f
[2013/12/15 17:03:38 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003f5f
[2013/12/15 17:03:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002ee6
[2013/12/15 16:03:19 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001e9e
[2013/12/15 16:03:17 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003410
[2013/12/15 16:03:16 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002396
[2013/12/15 16:03:03 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004d66
[2013/12/15 16:03:01 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003cec
[2013/12/15 15:02:35 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005f3b
[2013/12/15 15:02:34 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003e48
[2013/12/15 15:02:32 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001d54
[2013/12/15 14:02:17 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000074df
[2013/12/15 14:02:02 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007dbc
[2013/12/15 14:02:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006d42
[2013/12/15 13:01:33 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006e9d
[2013/12/15 13:01:32 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005e23
[2013/12/15 13:01:31 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004da9
[2013/12/15 13:01:18 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000007f3
[2013/12/15 13:01:16 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006700
[2013/12/15 13:01:15 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005686
[2013/12/15 13:01:14 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003592
[2013/12/15 12:00:37 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000122b
[2013/12/15 12:00:35 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007138
[2013/12/15 12:00:32 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002f50
[2013/12/15 12:00:28 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006d69
[2013/12/15 12:00:24 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002b82
[2013/12/15 12:00:20 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001b08
[2013/12/15 12:00:19 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007a14
[2013/12/15 12:00:18 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000699a
[2013/12/15 12:00:16 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005920
[2013/12/15 12:00:15 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000382d
[2013/12/15 12:00:13 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000027b3
[2013/12/15 12:00:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000006bf
[2013/12/15 11:59:59 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000308f
[2013/12/15 11:59:58 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002016
[2013/12/15 11:59:56 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007f22
[2013/12/15 09:59:13 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000478f
[2013/12/15 09:59:11 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000269b
[2013/12/15 09:59:08 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000752d
[2013/12/15 09:47:56 | 000,000,000 | ---D | C] -- C:\Users\Dell 1525\AppData\Roaming\mIRC
[2013/12/15 09:47:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\mIRC
[2013/12/15 09:47:55 | 000,000,000 | ---D | C] -- C:\Program Files\mIRC
[2013/12/15 09:46:15 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2013/12/15 09:45:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
[2013/12/15 09:45:31 | 000,000,000 | ---D | C] -- C:\Program Files\Java
[2013/12/15 09:34:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HydraIRC
[2013/12/15 09:30:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Oracle
[2013/12/15 09:28:11 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee
[2013/12/15 09:24:31 | 000,000,000 | ---D | C] -- C:\Users\Dell 1525\AppData\Local\{47B538EC-D4C6-4A8B-8BCE-CC0E8D974030}
[2013/12/15 07:58:49 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007a74
[2013/12/15 07:58:37 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002444
[2013/12/15 07:58:35 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000013ca
[2013/12/15 06:58:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000570d
[2013/12/15 06:58:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004693
[2013/12/15 06:58:09 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000259f
[2013/12/15 05:57:55 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001e1e
[2013/12/15 05:57:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000047ee
[2013/12/15 05:57:41 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003775
[2013/12/15 04:57:17 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006a3d
[2013/12/15 04:57:15 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000059c4
[2013/12/15 04:57:14 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000038d0
[2013/12/15 03:56:47 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004aa5
[2013/12/15 03:56:46 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003a2b
[2013/12/15 03:56:44 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001938
[2013/12/15 02:56:29 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000070c3
[2013/12/15 02:56:16 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001a93
[2013/12/15 02:56:14 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000799f
[2013/12/15 01:55:35 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005638
[2013/12/15 01:55:33 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000024cb
[2013/12/15 01:55:31 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000003d7
[2013/12/15 00:55:05 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000015ac
[2013/12/15 00:55:03 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000074b9
[2013/12/15 00:55:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000434b
[2013/12/14 23:54:44 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001ad7
[2013/12/14 23:54:31 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005520
[2013/12/14 23:54:29 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000342d
[2013/12/14 22:54:04 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000567c
[2013/12/14 22:53:51 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000004c
[2013/12/14 22:53:49 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006fd2
[2013/12/14 21:48:24 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000053d4
[2013/12/14 21:48:20 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000011ed
[2013/12/14 21:48:19 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000070f9
[2013/12/14 21:48:18 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000607f
[2013/12/14 21:48:16 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005006
[2013/12/14 21:48:15 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003f8c
[2013/12/14 21:48:14 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002f12
[2013/12/14 21:48:13 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001e98
[2013/12/14 21:48:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000e1e
[2013/12/14 21:48:11 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007da4
[2013/12/14 21:48:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005cb1
[2013/12/14 21:48:09 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004c37
[2013/12/14 21:48:08 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003bbd
[2013/12/14 21:47:47 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007238
[2013/12/14 21:47:46 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000061bf
[2013/12/14 20:47:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004ed1
[2013/12/14 20:47:09 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003e58
[2013/12/14 20:47:07 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001d64
[2013/12/14 20:47:05 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007c70
[2013/12/14 20:47:03 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005b7d
[2013/12/14 20:46:50 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000054d
[2013/12/14 20:46:48 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006459
[2013/12/14 19:46:21 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000006a8
[2013/12/14 19:46:20 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003081
[2013/12/14 19:46:19 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000320
[2013/12/14 19:46:18 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000044c1
[2013/12/14 17:45:57 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000189a
[2013/12/14 17:45:45 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000052e4
[2013/12/14 17:45:44 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000031f0
[2013/12/14 17:45:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002176
[2013/12/14 17:45:41 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000082
[2013/12/14 17:45:40 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007009
[2013/12/14 17:45:39 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005f8f
[2013/12/14 17:45:37 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004f15
[2013/12/14 17:45:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002e21
[2013/12/14 17:45:35 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001da7
[2013/12/14 17:45:33 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000d2e
[2013/12/14 16:45:11 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007164
[2013/12/14 16:45:09 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005070
[2013/12/14 16:45:08 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003ff6
[2013/12/14 16:44:55 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000069c7
[2013/12/14 16:44:54 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000048d3
[2013/12/14 15:25:23 | 000,000,000 | ---D | C] -- C:\Users\Dell 1525\AppData\Local\{7A5CF085-296E-449D-B9C1-192BBA3A1CB4}
[2013/12/14 14:44:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006770
[2013/12/14 14:44:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001140
[2013/12/14 14:44:08 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000704c
[2013/12/14 14:44:06 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000239d
[2013/12/14 14:44:04 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002e65
[2013/12/14 13:43:44 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001d86
[2013/12/14 13:43:32 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006dd9
[2013/12/14 13:43:30 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004ce5
[2013/12/14 12:42:53 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004a72
[2013/12/14 12:42:52 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000297e
[2013/12/14 12:42:50 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001904
[2013/12/14 12:42:49 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007811
[2013/12/14 10:42:19 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002727
[2013/12/14 10:42:18 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000016ad
[2013/12/14 10:42:16 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000075ba
[2013/12/14 10:42:14 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004a31
[2013/12/14 10:42:13 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000444c
[2013/12/14 10:42:11 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006f6f
[2013/12/14 10:42:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000014ae
[2013/12/14 10:42:09 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000265
[2013/12/14 10:42:07 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000039ed
[2013/12/14 08:41:40 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000526f
[2013/12/14 08:41:39 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000317b
[2013/12/14 08:41:37 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002101
[2013/12/14 08:41:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000000e
[2013/12/14 07:41:05 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004ffc
[2013/12/14 07:41:03 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002f08
[2013/12/14 07:41:01 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000e14
[2013/12/14 06:40:33 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000f70
[2013/12/14 06:40:32 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007ef6
[2013/12/14 06:40:30 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005e02
[2013/12/14 06:40:18 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000184c
[2013/12/14 05:40:04 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000051
[2013/12/14 05:39:51 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003a9b
[2013/12/14 05:39:49 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000024e7
[2013/12/14 04:39:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001226
[2013/12/14 04:39:24 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003bf7
[2013/12/14 04:39:22 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003bec
[2013/12/14 03:39:06 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006214
[2013/12/14 03:38:53 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001c5e
[2013/12/14 03:38:51 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007b6b
[2013/12/14 02:38:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000427c
[2013/12/14 02:38:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007cc6
[2013/12/14 02:38:22 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005bd2
[2013/12/14 02:38:20 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004b58
[2013/12/14 01:37:53 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004cb4
[2013/12/14 01:37:52 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003c3a
[2013/12/14 01:37:50 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001b46
[2013/12/14 01:37:37 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004516
[2013/12/14 01:37:35 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002423
[2013/12/13 23:37:04 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000042bf
[2013/12/13 23:37:02 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003246
[2013/12/13 23:37:01 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001152
[2013/12/13 23:37:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000000d8
[2013/12/13 23:36:59 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000705e
[2013/12/13 23:36:46 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002aa8
[2013/12/13 23:36:44 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000009b5
[2013/12/13 23:36:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000068c1
[2013/12/13 23:36:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005847
[2013/12/13 23:36:40 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003753
[2013/12/13 23:36:39 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000026da
[2013/12/13 22:36:26 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001f58
[2013/12/13 22:36:25 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000edf
[2013/12/13 22:36:24 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007e65
[2013/12/13 22:36:22 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006deb
[2013/12/13 22:36:21 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004cf7
[2013/12/13 22:36:20 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003c7d
[2013/12/13 22:36:19 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002c04
[2013/12/13 21:36:07 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000034fc
[2013/12/13 21:36:05 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002483
[2013/12/13 20:35:54 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002d7b
[2013/12/13 20:35:52 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000c88
[2013/12/13 19:35:38 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000507
[2013/12/13 19:35:26 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002ed7
[2013/12/13 19:35:24 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000de3
[2013/12/13 18:35:08 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000054f4
[2013/12/13 18:35:05 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002387
[2013/12/13 18:34:52 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004d57
[2013/12/13 17:34:21 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001d45
[2013/12/13 17:34:19 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007c51
[2013/12/13 17:34:02 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000643a
[2013/12/13 17:34:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004346
[2013/12/13 17:33:57 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000011d9
[2013/12/13 17:33:56 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000070e5
[2013/12/13 17:33:53 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004ff2
[2013/12/13 15:33:18 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002ca7
[2013/12/13 15:33:16 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007b39
[2013/12/13 15:33:14 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006abf
[2013/12/13 15:33:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000049cc
[2013/12/13 15:33:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005385
[2013/12/13 15:18:47 | 000,000,000 | ---D | C] -- C:\Users\Dell 1525\AppData\Local\{6144560D-180F-4C04-AF34-A8B11D8D1301}
[2013/12/13 12:32:28 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000506e
[2013/12/13 12:32:25 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001f00
[2013/12/13 11:31:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004a2c
[2013/12/13 11:31:41 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002938
[2013/12/13 11:31:40 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000077ca
[2013/12/13 11:31:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006751
[2013/12/13 11:31:34 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000465d
[2013/12/13 11:31:33 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002569
[2013/12/13 11:31:31 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000073fc
[2013/12/13 11:31:14 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007cd8
[2013/12/13 11:31:12 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005be5
[2013/12/12 21:27:41 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000048e
[2013/12/12 21:27:39 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000639b
[2013/12/12 21:27:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000042a7
[2013/12/12 21:27:35 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000021b3
[2013/12/12 20:27:20 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000793f
[2013/12/12 20:27:19 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000068c5
[2013/12/12 20:27:18 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000584b
[2013/12/12 20:27:16 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003757
[2013/12/12 20:27:13 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000a9d
[2013/12/12 17:26:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000003af
[2013/12/12 17:26:41 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007335
[2013/12/12 17:26:40 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005242
[2013/12/12 17:26:37 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000314e
[2013/12/12 15:26:15 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000053b9
[2013/12/12 15:26:14 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000433f
[2013/12/12 15:26:13 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000032c6
[2013/12/12 15:26:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005c96
[2013/12/12 15:25:58 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003ba2
[2013/12/12 15:25:57 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002b28
[2013/12/12 15:25:55 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001aae
[2013/12/12 15:25:54 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000a34
[2013/12/12 15:25:52 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006941
[2013/12/12 15:25:50 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000484d
[2013/12/12 13:25:30 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000bac
[2013/12/12 13:25:28 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007b32
[2013/12/12 13:25:27 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005a3f
[2013/12/12 13:25:25 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000394b
[2013/12/12 13:25:13 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007395
[2013/12/12 13:25:11 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000631b
[2013/12/12 13:25:09 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000031ae
[2013/12/12 11:24:47 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006493
[2013/12/12 11:24:44 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003325
[2013/12/12 11:24:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001232
[2013/12/12 11:24:19 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000173f
[2013/12/12 09:23:46 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000046f
[2013/12/12 09:23:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005301
[2013/12/12 09:23:40 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002194
[2013/12/12 09:23:37 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003eb9
[2013/12/12 08:22:54 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000ad8
[2013/12/12 08:22:51 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000596a
[2013/12/12 08:22:49 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003877
[2013/12/12 07:13:57 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000397b
[2013/12/12 07:13:54 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000080d
[2013/12/12 07:13:40 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002164
[2013/12/12 07:13:37 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006ff6
[2013/12/12 05:13:02 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000281b
[2013/12/12 05:13:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004cab
[2013/12/12 05:12:59 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001ff8
[2013/12/12 05:12:57 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001b3e
[2013/12/12 05:12:45 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000450e
[2013/12/12 05:12:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000241a
[2013/12/12 01:12:11 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002ea7
[2013/12/12 00:11:40 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001f89
[2013/12/12 00:11:37 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006e1b
[2013/12/12 00:11:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000771
[2013/12/12 00:11:21 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000667e
[2013/12/12 00:11:19 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000458a
[2013/12/12 00:11:17 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002496
[2013/12/11 21:10:46 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000011e2
[2013/12/11 21:10:38 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001e8d
[2013/12/11 21:10:37 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007d99
[2013/12/11 21:10:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006d20
[2013/12/11 21:10:34 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004c2c
[2013/12/11 21:10:22 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000676
[2013/12/11 21:10:20 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006582
[2013/12/11 21:10:18 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000448e
[2013/12/11 21:10:16 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003415
[2013/12/11 18:09:46 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000031da
[2013/12/11 18:09:45 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002160
[2013/12/11 16:08:59 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000385f
[2013/12/11 16:08:57 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000176c
[2013/12/11 16:08:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000413c
[2013/12/11 16:08:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000030c2
[2013/12/11 16:08:41 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000fce
[2013/12/11 13:08:09 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007d1a
[2013/12/11 13:08:08 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006ca0
[2013/12/11 13:08:06 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004bac
[2013/12/11 13:07:54 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000757c
[2013/12/11 13:07:52 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00006503
[2013/12/11 11:07:02 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004a94
[2013/12/11 11:07:01 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003a1b
[2013/12/11 11:06:49 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007465
[2013/12/11 11:06:48 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000063eb
[2013/12/11 09:05:52 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005628
[2013/12/11 09:05:50 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000045ae
[2013/12/11 09:05:49 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000024ba
[2013/12/11 09:05:47 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000003c6
[2013/12/11 09:05:46 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000734d
[2013/12/11 09:05:44 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005259
[2013/12/11 09:05:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003165
[2013/12/11 09:05:41 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000020eb
[2013/12/11 09:05:39 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001072
[2013/12/11 09:05:27 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00003a42
[2013/12/10 21:59:52 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00000c55
[2013/12/10 20:59:38 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000745a
[2013/12/10 19:59:24 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005c60
[2013/12/10 19:59:11 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000016aa
[2013/12/10 19:59:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000075b6
[2013/12/10 18:58:55 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004d41
[2013/12/10 18:58:53 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002c4d
[2013/12/10 18:58:51 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001bd4
[2013/12/10 18:58:38 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000045a4
[2013/12/10 17:58:24 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001d2f
[2013/12/10 17:58:22 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007c3b
[2013/12/10 17:58:20 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005b48
[2013/12/10 16:58:05 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000032d3
[2013/12/10 16:58:03 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000011df
[2013/12/10 14:57:21 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005a4c
[2013/12/10 14:57:17 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000028de
[2013/12/10 14:57:14 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000066f7
[2013/12/10 14:57:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00001496
[2013/12/10 09:43:54 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp0000041e
[2013/12/10 09:43:50 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004237
[2013/12/10 09:43:47 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00004ee2
[2013/12/10 09:43:40 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002dee
[2013/12/10 09:43:38 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002348
[2013/12/10 09:43:37 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00007c81
[2013/12/10 09:43:34 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00005b8d
[2013/12/10 09:43:33 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002a20
[2013/12/10 09:43:31 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000019a6
[2013/12/10 09:43:18 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp000032fc
[2013/12/10 09:43:15 | 000,000,000 | ---D | C] -- C:\Windows\System32\tmp00002282
[2013/05/08 08:00:40 | 002,174,976 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Program Files\Common Files\atimpenc.dll
[1 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2014/01/09 09:02:33 | 000,012,112 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014/01/09 09:02:33 | 000,012,112 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014/01/09 08:56:03 | 000,000,544 | ---- | M] () -- C:\Windows\System32\F39D4DE6-98B8-4E05-91BD-549E8A8248BD
[2014/01/09 08:53:44 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014/01/09 08:53:33 | 2408,087,552 | -HS- | M] () -- C:\hiberfil.sys
[2014/01/09 00:45:34 | 000,000,924 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1856872868-2035258614-136298297-1000UA.job
[2014/01/09 00:45:00 | 000,000,944 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1856872868-2035258614-136298297-1000UA.job
[2014/01/09 00:45:00 | 000,000,922 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1856872868-2035258614-136298297-1000Core.job
[2014/01/08 13:21:01 | 000,039,099 | ---- | M] () -- C:\Users\Dell 1525\Desktop\$_12.JPG
[2014/01/08 12:45:00 | 000,000,872 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1856872868-2035258614-136298297-1000Core.job
[2014/01/07 09:51:23 | 281,156,470 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2014/01/07 09:50:54 | 000,003,432 | ---- | M] () -- C:\bootsqm.dat
[2014/01/03 12:34:33 | 000,001,056 | ---- | M] () -- C:\Users\Dell 1525\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
[2014/01/03 01:53:11 | 000,628,460 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2014/01/03 01:53:11 | 000,110,612 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2013/12/12 07:23:15 | 000,309,464 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[1 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2014/01/09 08:56:03 | 000,000,544 | ---- | C] () -- C:\Windows\System32\F39D4DE6-98B8-4E05-91BD-549E8A8248BD
[2014/01/08 13:20:59 | 000,039,099 | ---- | C] () -- C:\Users\Dell 1525\Desktop\$_12.JPG
[2014/01/07 09:50:54 | 000,003,432 | ---- | C] () -- C:\bootsqm.dat
[2013/10/03 10:10:16 | 000,000,079 | ---- | C] () -- C:\Windows\wininit.ini
[2013/04/24 13:33:15 | 000,000,606 | ---- | C] () -- C:\Users\Dell 1525\AppData\Local\CastleLinkProps.dat
[2012/07/20 10:34:31 | 000,000,551 | ---- | C] () -- C:\Users\Dell 1525\AppData\Roaming\AutoGK.ini
[2012/06/16 19:25:29 | 000,004,608 | ---- | C] () -- C:\Users\Dell 1525\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012/06/07 17:25:38 | 000,140,288 | ---- | C] () -- C:\Windows\System32\igfxtvcx.dll
[2012/06/07 17:02:18 | 000,021,316 | ---- | C] () -- C:\Windows\System32\emptyregdb.dat
[2012/03/08 15:01:23 | 000,000,196 | ---- | C] () -- C:\Windows\ulead32.ini
[2010/08/07 12:40:31 | 000,852,480 | -HS- | C] () -- C:\Users\Dell 1525\ehthumbs_vista.db

========== ZeroAccess Check ==========

[2009/07/14 04:42:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/07/26 01:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 12:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2009/07/14 01:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

========== LOP Check ==========


========== Purity Check ==========



========== Custom Scans ==========

< %SYSTEMDRIVE%\*.exe >

< MD5 for: CHROME.EXE >
[2013/12/04 02:48:06 | 000,863,184 | ---- | M] (Google Inc.) MD5=376A9B411BF8B77D5BF84B24D0C7DACD -- C:\Users\Dell 1525\AppData\Local\Google\Chrome\Application\chrome.exe

< MD5 for: EXPLORER.EXE >
[2011/02/26 05:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_54149f9ef14031fc\explorer.exe
[2009/07/14 01:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_518afd35db100430\explorer.exe
[2011/02/26 05:51:13 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=255CF508D7CFB10E0794D6AC93280BD8 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_525b5180f3f95373\explorer.exe
[2009/10/31 05:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_51a66d6ddafc2ed1\explorer.exe
[2011/02/26 05:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=2AF58D15EDC06EC6FDACCE1F19482BBF -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_51a3a583dafd0cef\explorer.exe
[2010/11/20 12:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_53bc10fdd7fe87ca\explorer.exe
[2011/02/25 05:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\explorer.exe
[2011/02/25 05:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_5389023fd8245f84\explorer.exe
[2009/08/03 05:49:47 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_526619d4f3f142e6\explorer.exe
[2009/08/03 05:35:50 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_51e07e31dad00878\explorer.exe
[2009/10/31 06:00:51 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_52283b2af41f3691\explorer.exe
[2009/04/11 06:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) MD5=D07D4C3038F3578FFCE1C0237F2A1253 -- C:\Windows\ERDNT\cache\explorer.exe

< MD5 for: WINLOGON.EXE >
[2009/10/28 06:17:59 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=37CDB7E72EB66BA85A87CBE37E7F03FD -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_6fc699643622d177\winlogon.exe
[2009/10/28 05:52:08 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=3BABE6767C78FBF5FB8435FEED187F30 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_703394514f56f7c2\winlogon.exe
[2010/11/20 12:17:54 | 000,286,720 | ---- | M] (Microsoft Corporation) MD5=6D13E1406F50C66E2A95D97F22C47560 -- C:\Windows\System32\winlogon.exe
[2010/11/20 12:17:54 | 000,286,720 | ---- | M] (Microsoft Corporation) MD5=6D13E1406F50C66E2A95D97F22C47560 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_71ca6b0233339500\winlogon.exe
[2009/04/11 06:28:13 | 000,314,368 | ---- | M] (Microsoft Corporation) MD5=898E7C06A350D4A1A64A9EA264D55452 -- C:\Windows\ERDNT\cache\winlogon.exe
[2009/07/14 01:14:45 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=8EC6A4AB12B8F3759E21F8E3A388F2CF -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_6f99573a36451166\winlogon.exe

< %systemroot%\*. /mp /s >

< End of report >

Edited by Essexboy, 09 January 2014 - 08:39 AM.

  • 0

#4
lone_wolf1911

lone_wolf1911

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts
here is uninstall log from hijackthis just in case

Attached Files


Edited by lone_wolf1911, 09 January 2014 - 07:59 AM.

  • 0

#5
lone_wolf1911

lone_wolf1911

    New Member

  • Topic Starter
  • Member
  • Pip
  • 8 posts
here is a screen shot if the problem i'm getting,
i have Uninstalled and reinstalled chrome to see if that sorted issue but with no luck, it also seems to be effecting IEexplorer, but fire fox is NOT, this is sooo weird

Attached Thumbnails

  • Screenshot 2014-01-09 13.55.49.png

  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP