My computer has started giving problems, first noticed that when files were delete on drive C, they reappeared again after rebooting.
My Windows explorer sometimes freezes, and sometimes reloads.
All of my restore points have disappeared
As requested I have run OTL
Here is the log
OTL logfile created on: 07/03/2014 11:30:05 - Run 3
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Hightorque UK\Downloads
Windows Vista Business Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.19499)
Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
2.97 Gb Total Physical Memory | 0.95 Gb Available Physical Memory | 32.20% Memory free
6.13 Gb Paging File | 3.25 Gb Available in Paging File | 52.92% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 288.01 Gb Total Space | 98.51 Gb Free Space | 34.20% Space Free | Partition Type: NTFS
Drive D: | 10.00 Gb Total Space | 3.45 Gb Free Space | 34.55% Space Free | Partition Type: NTFS
Drive F: | 298.09 Gb Total Space | 159.85 Gb Free Space | 53.62% Space Free | Partition Type: NTFS
Drive G: | 111.79 Gb Total Space | 79.39 Gb Free Space | 71.02% Space Free | Partition Type: NTFS
Drive H: | 931.28 Gb Total Space | 832.78 Gb Free Space | 89.42% Space Free | Partition Type: FAT32
Computer Name: HIGHTORQUEUK-PC | User Name: Hightorque UK | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2014/03/07 11:29:39 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Hightorque UK\Downloads\OTL.exe
PRC - [2014/02/05 15:30:14 | 000,475,648 | ---- | M] () -- C:\Users\Hightorque UK\AppData\Local\GCC\Controller.exe
PRC - [2013/12/18 18:42:34 | 001,513,848 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Adobe\Reader 10.0\Reader\AcroRd32.exe
PRC - [2013/12/18 18:42:32 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2013/12/04 02:48:06 | 000,863,184 | ---- | M] (Google Inc.) -- C:\Users\Hightorque UK\AppData\Local\GCC\Chrome-bin\chrome.exe
PRC - [2013/11/25 08:14:16 | 001,517,224 | ---- | M] (SPEEDbit) -- C:\Program Files\SpeedBit Video Accelerator\VideoAccelerator.exe
PRC - [2013/11/25 08:14:16 | 000,298,152 | ---- | M] (SPEEDbit) -- C:\Program Files\SpeedBit Video Accelerator\VideoAcceleratorService.exe
PRC - [2013/11/02 20:47:12 | 003,001,344 | ---- | M] (1Million Ltd) -- C:\Program Files\TSMV4\TheStakingMachine.exe
PRC - [2013/10/25 02:34:06 | 001,444,120 | ---- | M] (Trusteer Ltd.) -- C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe
PRC - [2013/10/23 15:01:10 | 000,280,288 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\NisSrv.exe
PRC - [2013/10/23 15:01:10 | 000,022,208 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\MsMpEng.exe
PRC - [2013/10/23 14:55:28 | 000,948,440 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\msseces.exe
PRC - [2013/10/18 07:47:14 | 003,795,160 | ---- | M] (Speedbit Ltd.) -- C:\Programs\DAP\DAP.exe
PRC - [2013/09/07 17:20:56 | 000,071,224 | ---- | M] (AOL Inc.) -- C:\Program Files\AOL Desktop 9.7c\waol.exe
PRC - [2013/09/07 17:20:48 | 000,045,624 | ---- | M] (AOL Inc.) -- C:\Program Files\AOL Desktop 9.7c\shellmon.exe
PRC - [2013/09/07 03:53:15 | 002,368,568 | ---- | M] (AOL Inc.) -- C:\Program Files\AOL Desktop 9.7c\AOLBrowser\aolbrowser.exe
PRC - [2013/08/27 15:57:34 | 000,093,072 | ---- | M] (TomTom) -- C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
PRC - [2013/08/27 15:57:32 | 000,248,208 | ---- | M] (TomTom) -- C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe
PRC - [2013/07/13 07:19:54 | 000,030,096 | ---- | M] (VER_COMPANY_NAME) -- C:\Program Files\ReadingFanatic_6x\bar\8.bin\6xbrmon.exe
PRC - [2013/05/21 04:44:22 | 000,144,368 | R--- | M] (Symantec Corporation) -- C:\Program Files\Norton Internet Security\Engine\20.4.0.40\ccsvchst.exe
PRC - [2013/04/04 14:50:32 | 000,701,512 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2013/04/04 14:50:32 | 000,532,040 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2013/04/04 14:50:32 | 000,418,376 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
PRC - [2012/09/02 11:21:22 | 001,890,744 | ---- | M] (Bandoo Media, inc) -- C:\Program Files\Searchqu Toolbar\Datamngr\datamngrUI.exe
PRC - [2012/08/28 15:53:14 | 000,036,744 | ---- | M] (AOL Inc.) -- C:\Program Files\Common Files\aol\TopSpeed\3.0\aoltpsd3.exe
PRC - [2012/06/12 08:00:22 | 003,157,504 | ---- | M] (Gruss Software Ltd) -- C:\Program Files\Betting Assistant\Betting Assistant.exe
PRC - [2012/01/13 15:22:10 | 001,493,288 | ---- | M] (Nero AG) -- C:\Program Files\Nero\Nero 11\Nero BackItUp\NBAgent.exe
PRC - [2011/11/25 15:32:36 | 000,687,400 | ---- | M] (Nero AG) -- C:\Program Files\Nero\Update\NASvc.exe
PRC - [2011/11/02 02:00:44 | 000,090,448 | ---- | M] (Research In Motion Limited) -- C:\Program Files\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe
PRC - [2011/03/16 15:18:28 | 000,152,576 | ---- | M] (CrashPlan) -- C:\Program Files\CrashPlan\CrashPlanService.exe
PRC - [2011/03/16 15:17:57 | 000,217,088 | ---- | M] (Code 42 Software, Inc.) -- C:\Program Files\CrashPlan\CrashPlanTray.exe
PRC - [2010/03/08 07:27:49 | 000,041,800 | ---- | M] (AOL Inc.) -- C:\Program Files\Common Files\aol\1255507870\ee\aolsoftware.exe
PRC - [2009/04/11 06:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2009/02/11 15:38:40 | 000,354,840 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
PRC - [2009/02/11 15:38:38 | 000,186,904 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
PRC - [2008/08/19 06:19:40 | 006,265,376 | ---- | M] (Realtek Semiconductor) -- C:\Windows\RtHDVCpl.exe
PRC - [2008/08/19 06:19:38 | 000,081,920 | ---- | M] (Andrea Electronics Corporation) -- C:\Windows\System32\AERTSrv.exe
PRC - [2008/08/15 16:53:36 | 000,099,568 | ---- | M] () -- C:\Windows\System32\spool\drivers\w32x86\3\dldtserv.exe
PRC - [2008/02/25 10:38:12 | 000,595,184 | ---- | M] ( ) -- C:\Windows\System32\dldtcoms.exe
PRC - [2006/10/23 12:50:35 | 000,046,640 | R--- | M] (AOL LLC) -- C:\Program Files\Common Files\aol\acs\AOLacsd.exe
PRC - [2006/07/17 16:45:26 | 000,040,960 | ---- | M] () -- C:\Program Files\Royal Mail\SmartStamp\BINARY\STRAY.EXE
PRC - [2005/06/02 16:03:08 | 001,957,888 | ---- | M] (Ahead Software AG) -- C:\Program Files\Ahead\Nero BackItUp\NBJ.exe
========== Modules (No Company Name) ==========
MOD - [2014/03/07 11:23:20 | 000,070,144 | ---- | M] () -- C:\Users\Hightorque UK\AppData\Local\Temp\GC\Profiles\{57F3A5C7-415B-469F-8CBF-0FFE362115C1}\Default\Extensions\jmiibbdogibcphdfkkmlimfffneaecbc\2.4_0\plugin\mutechrome.dll
MOD - [2014/02/21 15:41:01 | 016,265,096 | ---- | M] () -- C:\Windows\System32\Macromed\Flash\NPSWF32_12_0_0_70.dll
MOD - [2014/02/14 07:41:24 | 001,711,616 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\c9044e65851c7afcb53597157c76446f\Microsoft.VisualBasic.ni.dll
MOD - [2014/02/14 07:39:50 | 002,346,496 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\032ab8e56366d48dc3f04b6eb7bc8c9f\System.Runtime.Serialization.ni.dll
MOD - [2014/02/14 07:39:46 | 000,256,000 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\SMDiagnostics\a8726347d3e5269f6d4fcb972341898c\SMDiagnostics.ni.dll
MOD - [2014/02/14 07:39:45 | 017,403,904 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel\1120b79bc6e03a4c84832103d1f05b67\System.ServiceModel.ni.dll
MOD - [2014/02/14 07:38:44 | 001,840,640 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.Services\890433199e7e462f76600e3aa64e435e\System.Web.Services.ni.dll
MOD - [2014/02/14 07:38:41 | 000,771,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\e3ab5ab0fbb86c36425e6902e54a547b\System.Runtime.Remoting.ni.dll
MOD - [2014/02/14 07:38:32 | 011,909,120 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\2183861863b3c98036f0d75f303d2a65\System.Web.ni.dll
MOD - [2014/02/14 07:37:49 | 000,978,944 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\d17ceca243fabda73eefb21d9bd072df\System.Configuration.ni.dll
MOD - [2014/02/14 07:37:25 | 000,025,600 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\Accessibility\02c0c31b20715dbd4f0777bf47b4bf46\Accessibility.ni.dll
MOD - [2014/02/14 06:59:40 | 005,462,016 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\f87e71868aedbc6c4e8fe7160d17c4ab\System.Xml.ni.dll
MOD - [2014/02/14 06:58:56 | 012,434,432 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\d2b605fc7deda872727d1ed37710420e\System.Windows.Forms.ni.dll
MOD - [2014/02/14 06:58:38 | 001,593,344 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\8e6265a54260bddfc05951e764f5bc48\System.Drawing.ni.dll
MOD - [2014/02/14 06:58:05 | 006,622,208 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data\2abd059b5e13d704f38c2179c01fff3a\System.Data.ni.dll
MOD - [2014/02/13 22:47:33 | 007,977,984 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\957628d9dd7b3bf370a56dca7835a997\System.ni.dll
MOD - [2014/02/13 22:47:11 | 011,497,984 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\694a37a84dee2cd2609a1dfab27c0433\mscorlib.ni.dll
MOD - [2014/02/05 15:30:14 | 000,475,648 | ---- | M] () -- C:\Users\Hightorque UK\AppData\Local\GCC\Controller.exe
MOD - [2014/01/21 12:53:00 | 000,076,800 | ---- | M] () -- C:\Program Files\NCH Software\Meo\meodll.dll
MOD - [2014/01/17 06:56:24 | 000,010,752 | ---- | M] () -- C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\zsharenet.dll
MOD - [2014/01/17 06:56:22 | 000,012,800 | ---- | M] () -- C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\XSevenTo.dll
MOD - [2014/01/17 06:56:15 | 000,012,800 | ---- | M] () -- C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\SpdFileCom.dll
MOD - [2014/01/17 06:56:07 | 000,010,240 | ---- | M] () -- C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\MegaUploadCom.dll
MOD - [2014/01/17 06:56:03 | 000,011,776 | ---- | M] () -- C:\ProgramData\SpeedBit\DAP\Plugins\189AE673-13C1-4133-A470-8C4DDD1ACB8C\1.0.1.3_0\fivegiganet.dll
MOD - [2013/12/18 18:42:34 | 000,305,520 | ---- | M] () -- C:\Program Files\Adobe\Reader 10.0\Reader\sqlite.dll
MOD - [2013/12/04 02:48:04 | 000,399,312 | ---- | M] () -- C:\Users\Hightorque UK\AppData\Local\GCC\Chrome-bin\31.0.1650.63\ppgooglenaclpluginchrome.dll
MOD - [2013/12/04 02:48:03 | 013,586,896 | ---- | M] () -- C:\Users\Hightorque UK\AppData\Local\GCC\Chrome-bin\31.0.1650.63\PepperFlash\pepflashplayer.dll
MOD - [2013/12/04 02:48:02 | 004,055,504 | ---- | M] () -- C:\Users\Hightorque UK\AppData\Local\GCC\Chrome-bin\31.0.1650.63\pdf.dll
MOD - [2013/12/04 02:47:08 | 001,619,408 | ---- | M] () -- C:\Users\Hightorque UK\AppData\Local\GCC\Chrome-bin\31.0.1650.63\ffmpegsumo.dll
MOD - [2013/10/21 07:44:45 | 000,009,216 | ---- | M] () -- C:\ProgramData\SpeedBit\DAP\Plugins\AddonsCondition.dll
MOD - [2013/09/07 17:20:57 | 000,048,640 | ---- | M] () -- C:\Program Files\AOL Desktop 9.7c\zlib.dll
MOD - [2013/09/07 17:19:37 | 021,117,440 | ---- | M] () -- C:\Program Files\AOL Desktop 9.7c\libcef.dll
MOD - [2013/09/07 17:19:35 | 000,648,704 | ---- | M] () -- C:\Program Files\AOL Desktop 9.7c\libGLESv2.dll
MOD - [2013/09/07 17:19:35 | 000,122,880 | ---- | M] () -- C:\Program Files\AOL Desktop 9.7c\libEGL.dll
MOD - [2013/09/07 17:19:22 | 000,094,208 | ---- | M] () -- C:\Program Files\AOL Desktop 9.7c\components\Tier2Svc.dll
MOD - [2013/09/07 17:19:22 | 000,060,928 | ---- | M] () -- C:\Program Files\AOL Desktop 9.7c\components\DataSvcs.dll
MOD - [2013/08/13 12:15:50 | 000,206,336 | ---- | M] () -- C:\Users\Hightorque UK\AppData\Local\Temp\GC\Profiles\{57F3A5C7-415B-469F-8CBF-0FFE362115C1}\Default\Extensions\jmiibbdogibcphdfkkmlimfffneaecbc\2.4_0\plugin\convenience.dll
MOD - [2012/11/09 05:02:18 | 001,752,576 | ---- | M] () -- C:\Program Files\File Shredder\fsshell.dll
MOD - [2012/05/30 14:51:08 | 000,699,280 | R--- | M] () -- C:\Program Files\Norton Internet Security\Engine\20.4.0.40\wincfi39.dll
MOD - [2011/11/25 08:15:36 | 000,057,344 | ---- | M] () -- C:\Program Files\Royal Mail\SmartStamp\BINARY\SDSLOG.DLL
MOD - [2009/03/30 04:42:17 | 002,933,760 | ---- | M] () -- C:\Windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
MOD - [2007/08/11 23:20:46 | 000,307,200 | ---- | M] () -- C:\Program Files\TSMV4\ZedGraph.dll
MOD - [2006/07/17 16:56:52 | 000,077,824 | ---- | M] () -- C:\Program Files\Royal Mail\SmartStamp\BINARY\SDSEVENT.DLL
MOD - [2006/07/17 16:56:32 | 000,024,576 | ---- | M] () -- C:\Program Files\Royal Mail\SmartStamp\BINARY\SDSERROR.DLL
MOD - [2006/07/17 16:45:26 | 000,040,960 | ---- | M] () -- C:\Program Files\Royal Mail\SmartStamp\BINARY\STRAY.EXE
MOD - [2006/07/17 16:44:04 | 000,053,248 | ---- | M] () -- C:\Program Files\Royal Mail\SmartStamp\BINARY\SDSREG.DLL
MOD - [2006/07/17 16:40:50 | 000,016,384 | ---- | M] () -- C:\Program Files\Royal Mail\SmartStamp\BINARY\SMSG.DLL
========== Services (SafeList) ==========
SRV - [2014/02/21 15:41:18 | 000,257,928 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013/12/18 18:42:32 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2013/11/25 08:14:16 | 000,298,152 | ---- | M] (SPEEDbit) [Auto | Running] -- C:\Program Files\SpeedBit Video Accelerator\VideoAcceleratorService.exe -- (VideoAcceleratorService)
SRV - [2013/10/25 02:34:06 | 001,444,120 | ---- | M] (Trusteer Ltd.) [Auto | Running] -- C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe -- (RapportMgmtService)
SRV - [2013/10/23 15:01:10 | 000,280,288 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV - [2013/10/23 15:01:10 | 000,022,208 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV - [2013/09/05 09:34:30 | 000,171,680 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013/08/27 15:57:34 | 000,093,072 | ---- | M] (TomTom) [Auto | Running] -- C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe -- (TomTomHOMEService)
SRV - [2013/05/21 04:44:22 | 000,144,368 | R--- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe -- (NIS)
SRV - [2013/04/04 14:50:32 | 000,701,512 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2013/04/04 14:50:32 | 000,418,376 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2011/11/25 15:32:36 | 000,687,400 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files\Nero\Update\NASvc.exe -- (NAUpdate)
SRV - [2011/03/16 15:18:28 | 000,152,576 | ---- | M] (CrashPlan) [Auto | Running] -- C:\Program Files\CrashPlan\CrashPlanService.exe -- (CrashPlanService)
SRV - [2010/01/18 13:21:47 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2009/02/11 15:38:40 | 000,354,840 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe -- (IAANTMON)
SRV - [2008/08/19 06:19:38 | 000,081,920 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Windows\System32\AERTSrv.exe -- (AERTFilters)
SRV - [2008/08/15 16:53:36 | 000,099,568 | ---- | M] () [Auto | Running] -- C:\Windows\System32\spool\DRIVERS\W32X86\3\\dldtserv.exe -- (dldtCATSCustConnectService)
SRV - [2008/02/25 10:38:12 | 000,595,184 | ---- | M] ( ) [Auto | Running] -- C:\Windows\System32\dldtcoms.exe -- (dldt_device)
SRV - [2008/01/21 02:23:59 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2006/10/23 12:50:35 | 000,046,640 | R--- | M] (AOL LLC) [Auto | Running] -- C:\Program Files\Common Files\aol\acs\AOLacsd.exe -- (AOL ACS)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\vmnetadapter.sys -- (VMnetAdapter)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\nwlnkfwd.sys -- (NwlnkFwd)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\nwlnkflt.sys -- (NwlnkFlt)
DRV - File not found [Kernel | System | Stopped] -- system32\drivers\netfilter.sys -- (netfilter)
DRV - File not found [Kernel | System | Stopped] -- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{238FC398-6E30-4CB8-A19C-9256D94FF15F}\MpKsl6938a72b.sys -- (MpKsl6938a72b)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\mbamswissarmy.sys -- (MBAMSwissArmy)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ipinip.sys -- (IpInIp)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Users\HIGHTO~1\AppData\Local\Temp\catchme.sys -- (catchme)
DRV - [2014/03/06 01:53:05 | 000,395,992 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.1.22\Definitions\IPSDefs\20140306.005\IDSvix86.sys -- (IDSVix86)
DRV - [2014/02/09 23:49:42 | 001,612,376 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.1.22\Definitions\VirusDefs\20140306.034\NAVEX15.SYS -- (NAVEX15)
DRV - [2014/02/09 23:49:42 | 000,108,120 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv)
DRV - [2014/02/09 23:49:42 | 000,093,272 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.1.22\Definitions\VirusDefs\20140306.034\NAVENG.SYS -- (NAVENG)
DRV - [2013/12/18 00:32:11 | 001,098,968 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.1.22\Definitions\BASHDefs\20140214.001\BHDrvx86.sys -- (BHDrvx86)
DRV - [2013/12/13 06:33:17 | 000,340,432 | ---- | M] () [Kernel | System | Running] -- C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus32_59849.sys -- (RapportCerberus_59849)
DRV - [2013/11/21 03:21:13 | 000,376,920 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys -- (eeCtrl)
DRV - [2013/10/25 02:34:18 | 000,230,448 | ---- | M] (Trusteer Ltd.) [Kernel | System | Running] -- C:\Program Files\Trusteer\Rapport\bin\RapportPG.sys -- (RapportPG)
DRV - [2013/10/25 02:34:18 | 000,157,264 | ---- | M] (Trusteer Ltd.) [Kernel | System | Running] -- C:\Program Files\Trusteer\Rapport\bin\RapportEI.sys -- (RapportEI)
DRV - [2013/10/25 02:34:18 | 000,108,816 | ---- | M] (Trusteer Ltd.) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\RapportKELL.sys -- (RapportKELL)
DRV - [2013/09/27 09:53:06 | 000,104,768 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\NisDrvWFP.sys -- (NisDrv)
DRV - [2013/06/18 05:32:43 | 000,142,496 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\SYMEVENT.SYS -- (SymEvent)
DRV - [2013/05/23 05:25:28 | 000,934,488 | ---- | M] (Symantec Corporation) [File_System | Boot | Running] -- C:\Windows\System32\drivers\NIS\1404000.028\symefa.sys -- (SymEFA)
DRV - [2013/05/21 05:02:00 | 000,367,704 | ---- | M] (Symantec Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\NIS\1404000.028\symds.sys -- (SymDS)
DRV - [2013/05/16 05:02:14 | 000,603,224 | ---- | M] (Symantec Corporation) [File_System | System | Running] -- C:\Windows\System32\drivers\NIS\1404000.028\srtsp.sys -- (SRTSP)
DRV - [2013/04/25 00:43:56 | 000,352,344 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\NIS\1404000.028\symtdiv.sys -- (SYMTDIv)
DRV - [2013/04/16 02:41:14 | 000,134,744 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\NIS\1404000.028\ccsetx86.sys -- (ccSet_NIS)
DRV - [2013/04/04 14:50:32 | 000,022,856 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\System32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2013/03/05 01:39:19 | 000,175,264 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\NIS\1404000.028\ironx86.sys -- (SymIRON)
DRV - [2013/03/05 01:21:35 | 000,032,344 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\NIS\1404000.028\srtspx.sys -- (SRTSPX)
DRV - [2011/12/01 10:40:16 | 000,056,496 | ---- | M] (Nero AG) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\NBVol.sys -- (NBVol)
DRV - [2011/12/01 10:40:16 | 000,012,464 | ---- | M] (Nero AG) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\NBVolUp.sys -- (NBVolUp)
DRV - [2009/12/31 15:56:38 | 000,177,748 | ---- | M] (Divio Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\pcam.sys -- (DCamUSBNW802)
DRV - [2009/11/16 03:13:14 | 000,216,576 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Rtlh86.sys -- (RTL8169)
DRV - [2009/10/21 06:38:35 | 000,229,224 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\VMM.sys -- (vmm)
DRV - [2009/03/18 16:35:40 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\hamachi.sys -- (hamachi)
DRV - [2008/08/26 17:55:14 | 000,112,128 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\IntcHdmi.sys -- (IntcHdmiAddService)
DRV - [2008/08/19 07:03:28 | 000,079,960 | ---- | M] (JMicron Technology Corp.) [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\jraid.sys -- (JRAID)
DRV - [2008/08/19 07:02:56 | 000,027,648 | ---- | M] (Windows ® Codename Longhorn DDK provider) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\RtNdPt60.sys -- (RtNdPt60)
DRV - [2008/02/05 00:50:44 | 000,059,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\VMNetSrv.sys -- (VPCNetS2)
DRV - [2008/01/21 02:23:50 | 000,220,672 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\e1e6032.sys -- (e1express)
DRV - [2006/11/29 22:24:57 | 000,033,588 | ---- | M] (America Online, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\wanatw4.sys -- (wanatw)
DRV - [2006/11/02 07:36:43 | 002,028,032 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\atikmdag.sys -- (R300)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
IE - HKLM\..\URLSearchHook: {4a6e1b85-1193-4a2a-aab8-7417f275f18a} - C:\Program Files\AOL Broadband Toolbar\aolbbtb.dll (AOL LLC.)
IE - HKLM\..\SearchScopes,DefaultScope = {443789B7-F39C-4b5c-9287-DA72D38F4FE6}
IE - HKLM\..\SearchScopes\{09BF01E0-CFE9-4104-B0BB-B5724D999A05}: "URL" = http://www.google.co...g}&sourceid=ie7
IE - HKLM\..\SearchScopes\{443789B7-F39C-4b5c-9287-DA72D38F4FE6}: "URL" = http://slirsredirect...mrud=19-03-2013
IE - HKLM\..\SearchScopes\{7F4EFF06-7032-458e-AE16-1C1D8255C28A}: "URL" = http://go.speedbit.c...q={searchTerms}
IE - HKLM\..\SearchScopes\{86789896-718A-4BDD-93BC-10B967B0B5FC}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}: "URL" = http://dts.search-re...q={searchTerms}
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://search.conduit.com/?ctid=CT [Binary data over 200 bytes]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.outfox.tv/?referid=
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-gb
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 70 8A F6 F7 95 A3 CC 01 [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\..\URLSearchHook: {421fb3de-4b9f-48e5-abf1-f96f8aaca70a} - No CLSID value found
IE - HKCU\..\SearchScopes,DefaultScope = {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
IE - HKCU\..\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}: "URL" = http://search.condui...rchTerms}&SSPV=
IE - HKCU\..\SearchScopes\{09BF01E0-CFE9-4104-B0BB-B5724D999A05}: "URL" = http://www.google.co...&rlz=1I7GGIE_en
IE - HKCU\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" = http://websearch.ask...91-11255921A2F7
IE - HKCU\..\SearchScopes\{1F096B29-E9DA-4D64-8D63-936BE7762CC5}: "URL" = http://search.babylo....19&affID=17160
IE - HKCU\..\SearchScopes\{443789B7-F39C-4b5c-9287-DA72D38F4FE6}: "URL" = http://slirsredirect...mrud=19-03-2013
IE - HKCU\..\SearchScopes\{7382B45C-D8A1-4143-8EE6-B25852BFA719}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE - HKCU\..\SearchScopes\{7F4EFF06-7032-458e-AE16-1C1D8255C28A}: "URL" = http://go.speedbit.c...q={searchTerms}
IE - HKCU\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}: "URL" = http://dts.search-re...q={searchTerms}
IE - HKCU\..\SearchScopes\{AFBCB7E0-F91A-4951-9F31-58FEE57A25C4}: "URL" = http://uk.ask.com/we...l&geo=GB&ver=18
IE - HKCU\..\SearchScopes\FFF9366C2DEB4E6B8AE77F135949B1E9: "URL" = http://search.speedb...q={searchTerms}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <-loopback>
========== FireFox ==========
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_70.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0: C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll File not found
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.17.2: C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Nero.com/KM: C:\PROGRA~1\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG)
FF - HKLM\Software\MozillaPlugins\@ReadingFanatic_6x.com/Plugin: C:\Program Files\ReadingFanatic_6x\bar\8.bin\NP6xStub.dll (MindSpark)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=12.0.1.609: c:\program files\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=12.0.1.609: c:\program files\real\realplayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=12.0.1.609: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=12.0.1.609: c:\program files\real\realplayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKLM\Software\MozillaPlugins\@RIM.com/WebSLLauncher,version=1.0: C:\Program Files\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll ()
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@viewpoint.com/VMP: C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll ()
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2011/01/02 09:20:30 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.1.22\coFFPlgn\ [2014/03/07 08:40:06 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]_6x.com: C:\Program Files\ReadingFanatic_6x\bar\8.bin [2014/03/04 20:56:31 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.2.1.22\IPSFF [2013/10/09 18:56:40 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Programs\DAP\daplinkchecker [2013/10/18 07:50:50 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{F17C1572-C9EC-4e5c-A542-D05CBB5C5A08}: C:\Programs\DAP\DAPFireFox [2013/10/18 07:50:48 | 000,000,000 | ---D | M]
[2010/07/23 10:19:13 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Hightorque UK\AppData\Roaming\Mozilla\Extensions
[2010/07/23 10:19:13 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Hightorque UK\AppData\Roaming\Mozilla\Extensions\[email protected]
[2011/05/23 09:00:10 | 000,002,423 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\babylon.xml
========== Chrome ==========
CHR - default_search_provider: Conduit Search (Enabled)
CHR - default_search_provider: search_url = http://search.condui...rchTerms}&SSPV=
CHR - default_search_provider: suggest_url = http://suggest.searc...x={searchTerms},
CHR - homepage: http://search.condui...&UM=4&UP=&SSPV=
CHR - plugin: Error reading preferences file
CHR - Extension: Google Docs = C:\Users\Hightorque UK\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\
CHR - Extension: Google Drive = C:\Users\Hightorque UK\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: YouTube = C:\Users\Hightorque UK\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: DAP Link Checker = C:\Users\Hightorque UK\AppData\Local\Google\Chrome\User Data\Default\Extensions\bodfdknjhecmadheclfjkhhiofeagdbh\1.0.1.2_1\
CHR - Extension: Google Search = C:\Users\Hightorque UK\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: SpeedBit Video Downloader = C:\Users\Hightorque UK\AppData\Local\Google\Chrome\User Data\Default\Extensions\djcpfkccckpeeghiklnhienllljccglb\2.1.1_1\
CHR - Extension: Download Accelerator Plus (DAP) = C:\Users\Hightorque UK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffdcfjdljhbehggjdkdioajnknjcpbjb\2.0.10_1\
CHR - Extension: RealPlayer HTML5Video Downloader Extension = C:\Users\Hightorque UK\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk\1.3_0\
CHR - Extension: SpeedBit Search Predict = C:\Users\Hightorque UK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ledcpigomgblcmofccnacobhmcdkpiea\2.0.3_1\
CHR - Extension: Norton Identity Protection = C:\Users\Hightorque UK\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2013.4.7.3_1\
CHR - Extension: Google Wallet = C:\Users\Hightorque UK\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_1\
CHR - Extension: Gmail = C:\Users\Hightorque UK\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\
O1 HOSTS File: ([2011/09/01 12:17:10 | 000,000,027 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Search Assistant BHO) - {2d948797-8fe3-4508-9b6f-4bf349a9ea34} - C:\Program Files\ReadingFanatic_6x\bar\8.bin\6xSrcAs.dll (MindSpark)
O2 - BHO: (SaveSense) - {2e32cfe5-df92-4ae5-b0be-609ed0df74a6} - C:\Program Files\SaveSense\SaveSenseIE.dll (SaveSense)
O2 - BHO: (CescrtHlpr Object) - {2EECD738-5844-4a99-B4B6-146BF802613B} - C:\Program Files\BabylonToolbar\BabylonToolbar\1.4.19.19\bh\BabylonToolbar.dll (Babylon BHO)
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (SearchPredictObj Class) - {389943B0-C3A2-4E69-82CB-8596A84CB3DC} - C:\Program Files\SearchPredict\SearchPredict.dll (Speedbit Ltd.)
O2 - BHO: (AOL Toolbar Loader) - {3ef64538-8b54-4573-b48f-4d34b0238ab2} - C:\Program Files\AOL Toolbar\aoltb.dll (AOL Inc.)
O2 - BHO: (Norton Identity Protection) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\coieplg.dll (Symantec Corporation)
O2 - BHO: (Norton Vulnerability Protection) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\ips\ipsbho.dll (Symantec Corporation)
O2 - BHO: (AOL Broadband Toolbar Loader) - {776a9d06-e178-4aa0-aee4-b4de3a64ad28} - C:\Program Files\AOL Broadband Toolbar\aolbbtb.dll (AOL LLC.)
O2 - BHO: (SBCONVERT Class) - {92A9ACF4-9333-43AE-9698-DB283326F87F} - C:\Programs\SpeedBit Video Downloader\Toolbar\tbcore3.dll ()
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll (Google Inc.)
O2 - BHO: (SpeedBit Link Verification Helper) - {D5974A72-C81C-4DC3-BE77-A8A7BBC8864E} - C:\Programs\DAP\LinkVerifier.dll (Speedbit Ltd.)
O2 - BHO: (Toolbar BHO) - {f149b372-5830-4d88-b8f6-2853d12c1af5} - C:\Program Files\ReadingFanatic_6x\bar\8.bin\6xbar.dll (MindSpark)
O2 - BHO: (Download Accelerator Plus Integration) - {FF6C3CF0-4B15-11D1-ABED-709549C10000} - C:\Programs\DAP\dapieloader.dll (SpeedBit Ltd.)
O2 - BHO: (GrabberObj Class) - {FF7C3CF0-4B15-11D1-ABED-709549C10000} - C:\Programs\SpeedBit Video Downloader\Toolbar\Grabber.dll (SPEEDbit)
O3 - HKLM\..\Toolbar: (SpeedBit Video Downloader) - {0329E7D6-6F54-462D-93F6-F5C3118BADF2} - C:\Programs\SpeedBit Video Downloader\Toolbar\tbcore3.dll ()
O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\coieplg.dll (Symantec Corporation)
O3 - HKLM\..\Toolbar: (ReadingFanatic) - {b36151d1-7770-4480-87e4-f89fb54e173d} - C:\Program Files\ReadingFanatic_6x\bar\8.bin\6xbar.dll (MindSpark)
O3 - HKLM\..\Toolbar: (AOL Toolbar) - {ba00b7b1-0351-477a-b948-23e3ee5a73d4} - C:\Program Files\AOL Toolbar\aoltb.dll (AOL Inc.)
O3 - HKLM\..\Toolbar: (AOL Broadband Toolbar) - {e6ed7f95-e571-4f81-8757-5eb11252703d} - C:\Program Files\AOL Broadband Toolbar\aolbbtb.dll (AOL LLC.)
O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\20.4.0.40\coieplg.dll (Symantec Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (AOL Broadband Toolbar) - {E6ED7F95-E571-4F81-8757-5EB11252703D} - C:\Program Files\AOL Broadband Toolbar\aolbbtb.dll (AOL LLC.)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [BrowserSafeguard] "C:\Program Files\Browsersafeguard\BrowserSafeguard.exe" File not found
O4 - HKLM..\Run: [DATAMNGR] C:\Program Files\Searchqu Toolbar\Datamngr\datamngrUI.exe (Bandoo Media, inc)
O4 - HKLM..\Run: [HostManager] C:\Program Files\Common Files\aol\1255507870\ee\aolsoftware.exe (AOL Inc.)
O4 - HKLM..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Intel Corporation)
O4 - HKLM..\Run: [mobilegeni daemon] C:\Program Files\Mobogenie\DaemonProcess.exe File not found
O4 - HKLM..\Run: [MSC] C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4 - HKLM..\Run: [NBAgent] C:\Program Files\Nero\Nero 11\Nero BackItUp\NBAgent.exe (Nero AG)
O4 - HKLM..\Run: [OLP-Tray] C:\Program Files\Royal Mail\SmartStamp\BINARY\STRAY.EXE ()
O4 - HKLM..\Run: [ReadingFanatic Search Scope Monitor] C:\Program Files\ReadingFanatic_6x\bar\8.bin\6xSrchMn.exe (MindSpark)
O4 - HKLM..\Run: [ReadingFanatic_6x Browser Plugin Loader] C:\Program Files\ReadingFanatic_6x\bar\8.bin\6xbrmon.exe (VER_COMPANY_NAME)
O4 - HKLM..\Run: [Registry Helper] "C:\Program Files\Registry Helper\RegistryHelper.Exe" /boot File not found
O4 - HKLM..\Run: [RIMBBLaunchAgent.exe] C:\Program Files\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe (Research In Motion Limited)
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKCU..\Run: [DAP10] C:\Programs\DAP\DAP.EXE (Speedbit Ltd.)
O4 - HKCU..\Run: [DownloadAccelerator] C:\Programs\DAP\DAP.EXE (Speedbit Ltd.)
O4 - HKCU..\Run: [NBJ] C:\Program Files\Ahead\Nero BackItUp\NBJ.exe (Ahead Software AG)
O4 - HKCU..\Run: [OutfoxTV] C:\Program Files\OutfoxTV\OutfoxTV\DesktopContainer.exe File not found
O4 - HKCU..\Run: [SpeedBitVideoAccelerator] C:\Program Files\SpeedBit Video Accelerator\VideoAccelerator.exe (SPEEDbit)
O4 - HKCU..\Run: [TomTomHOME.exe] C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe (TomTom)
O4 - Startup: C:\Users\Hightorque UK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk = File not found
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 95
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLinkedConnections = 1
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: &Clean Traces - C:\Programs\DAP\Privacy Package\dapcleanerie.htm ()
O8 - Extra context menu item: &Download with &DAP - C:\Programs\DAP\dapextie.htm ()
O8 - Extra context menu item: &Verify with DAP - C:\Programs\DAP\dapverify.htm ()
O8 - Extra context menu item: Download &all with DAP - C:\Programs\DAP\dapextie2.htm ()
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O15 - HKCU\..Trusted Domains: aol.com ([objects] * is out of zone range - 5)
O15 - HKCU\..Trusted Domains: pornbb.org ([www] http in Trusted sites)
O15 - HKCU\..Trusted Domains: rapidgator.net ([www] * in Trusted sites)
O15 - HKCU\..Trusted Domains: rapidgator.net ([www] http in Trusted sites)
O16 - DPF: {49312E18-AA92-4CC2-BB97-55DEA7BCADD6} https://support.dell...r/SysProExe.CAB (WMI Class)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.m...ash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{625F0475-6EA3-4FEA-B9C8-224019DDD165}: DhcpNameServer = 192.168.0.1
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - AppInit_DLLs: (C:\PROGRA~1\SEARCH~2\Datamngr\datamngr.dll) - C:\Program Files\Searchqu Toolbar\Datamngr\datamngr.dll (Bandoo Media, inc)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O24 - Desktop BackupWallPaper: C:\Windows\Web\Wallpaper\img24.jpg
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 21:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKCU\...com [@ = ComFile] -- Reg Error: Key error. File not found
O37 - HKCU\...exe [@ = exefile] -- Reg Error: Key error. File not found
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
========== Files/Folders - Created Within 30 Days ==========
[2014/03/06 13:34:51 | 000,000,000 | ---D | C] -- C:\eBooks
[2014/03/06 13:32:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF to ePUB Mobi Converter
[2014/03/06 13:32:14 | 000,000,000 | ---D | C] -- C:\Program Files\PDF to ePUB Mobi Converter
[2014/03/04 17:34:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2014/03/04 17:33:44 | 000,022,856 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2014/03/04 08:09:36 | 000,000,000 | ---D | C] -- C:\Users\Hightorque UK\AppData\Local\BrowserSafeguard
[2014/03/03 11:19:45 | 000,000,000 | ---D | C] -- C:\Users\Hightorque UK\Documents\damaged_parcel
[2014/03/01 06:54:44 | 000,000,000 | -HSD | C] -- C:\found.001
[2014/02/25 13:34:48 | 000,000,000 | ---D | C] -- C:\Users\Hightorque UK\AppData\Roaming\Roxio Log Files
[2014/02/24 18:41:54 | 000,000,000 | ---D | C] -- C:\ProgramData\SafeSoft
[2014/02/24 18:40:57 | 000,000,000 | ---D | C] -- C:\ProgramData\InstallMate
[2014/02/22 11:59:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2014/02/22 07:30:27 | 000,000,000 | ---D | C] -- C:\Windows\System32\Plugins
[2014/02/21 15:18:49 | 000,000,000 | ---D | C] -- C:\Program Files\SavingsBull
[2014/02/21 15:05:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Registry Helper
[2014/02/19 08:36:02 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Software Update Utility
[2014/02/19 08:30:29 | 000,000,000 | ---D | C] -- C:\Program Files\AOL Desktop 9.7c
[2014/02/18 10:16:39 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Security Client
[2014/02/18 10:09:20 | 000,221,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\netio.sys
[2014/02/17 14:05:01 | 000,000,000 | ---D | C] -- C:\Users\Hightorque UK\Documents\My Kindle Content
[2014/02/17 10:15:21 | 000,000,000 | ---D | C] -- C:\Users\Hightorque UK\Documents\TSM4
[2014/02/17 10:13:13 | 000,000,000 | ---D | C] -- C:\Users\Hightorque UK\Documents\TSM
[2014/02/16 12:45:23 | 000,000,000 | ---D | C] -- C:\Users\Hightorque UK\.android
[2014/02/16 12:45:12 | 000,000,000 | ---D | C] -- C:\Users\Hightorque UK\AppData\Local\cache
[2014/02/16 12:44:39 | 000,000,000 | ---D | C] -- C:\Users\Hightorque UK\AppData\Roaming\newnext.me
[2014/02/16 12:44:17 | 000,000,000 | ---D | C] -- C:\Users\Hightorque UK\AppData\Local\genienext
[2014/02/16 12:44:11 | 000,000,000 | ---D | C] -- C:\Users\Hightorque UK\Documents\Mobogenie
[2014/02/16 12:44:11 | 000,000,000 | ---D | C] -- C:\Users\Hightorque UK\AppData\Local\Mobogenie
[2014/02/16 12:41:36 | 000,000,000 | ---D | C] -- C:\Users\Hightorque UK\AppData\Local\GCC
[2014/02/15 20:53:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPUB to MOBI
[2014/02/15 20:53:11 | 000,000,000 | ---D | C] -- C:\Program Files\EPUB to MOBI
[2014/02/13 06:57:10 | 000,000,000 | ---D | C] -- C:\Windows\System32\SearchProtect
[2014/02/12 01:05:30 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\corpol.dll
[2014/02/12 01:05:29 | 000,630,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
[2014/02/12 01:05:28 | 001,469,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl
[2014/02/12 01:05:28 | 000,387,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2014/02/12 01:05:28 | 000,174,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ie4uinit.exe
[2014/02/12 01:05:27 | 000,611,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mstime.dll
[2014/02/12 01:05:27 | 000,385,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\html.iec
[2014/02/12 01:05:26 | 000,184,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iepeers.dll
[2014/02/12 01:05:26 | 000,164,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
[2014/02/12 01:05:26 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe
[2014/02/12 01:05:25 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesysprep.dll
[2014/02/12 01:05:25 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\url.dll
[2014/02/12 01:05:24 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesetup.dll
[2014/02/12 01:05:24 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iernonce.dll
[2014/02/12 01:05:23 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll
[2014/02/12 01:05:23 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\licmgr10.dll
[2014/02/12 01:05:23 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
[2014/02/12 01:05:23 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedssync.exe
[2014/02/12 01:05:22 | 001,638,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
[2014/02/11 10:48:19 | 000,000,000 | ---D | C] -- C:\Users\Hightorque UK\Documents\epub
[2014/02/11 10:40:35 | 000,000,000 | ---D | C] -- C:\Users\Hightorque UK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FBReader for Windows
[2014/02/11 10:40:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FBReader for Windows
[2014/02/10 13:31:04 | 000,000,000 | ---D | C] -- C:\Users\Hightorque UK\AppData\Local\ERW
[2014/02/07 13:37:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\InstallConverter
[2014/02/07 13:37:35 | 000,000,000 | ---D | C] -- C:\Program Files\InstallConverter
[2014/02/07 13:12:37 | 000,000,000 | ---D | C] -- C:\ProgramData\REGSERVO
[2014/02/07 13:12:19 | 000,000,000 | ---D | C] -- C:\Users\Hightorque UK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\REGSERVO
[2014/02/07 08:26:11 | 000,000,000 | ---D | C] -- C:\Users\Hightorque UK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SaveSense
[2014/02/07 08:26:11 | 000,000,000 | ---D | C] -- C:\Program Files\SaveSense
[2014/02/07 08:25:57 | 000,000,000 | ---D | C] -- C:\Users\Hightorque UK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup
[2014/02/07 08:23:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\File Shredder
[2014/02/07 08:23:47 | 000,000,000 | ---D | C] -- C:\Program Files\SearchProtect
[2014/02/07 08:23:46 | 000,000,000 | ---D | C] -- C:\Users\Hightorque UK\AppData\Local\SearchProtect
[2014/02/06 12:45:37 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Synchronization Services
[2014/02/06 09:13:10 | 000,000,000 | ---D | C] -- C:\Users\Hightorque UK\Documents\IV140122HDE-1
[2013/12/07 01:02:43 | 017,968,344 | ---- | C] (Steganos Software GmbH) -- C:\Users\Hightorque UK\safe2012int_nero.exe
[2013/09/24 12:53:24 | 020,158,824 | ---- | C] (Microsoft Corporation) -- C:\Users\Hightorque UK\BOIE9_ENUS_BO0085_VIS.EXE
[2012/09/03 12:15:12 | 053,588,376 | ---- | C] (TuneUp Software) -- C:\Users\Hightorque UK\TuneUpUtilities2012-multilingual.exe
[2012/09/03 12:10:50 | 436,342,856 | ---- | C] (Nero AG) -- C:\Users\Hightorque UK\Nero-11.2.00600.exe
[2011/03/03 09:38:21 | 014,117,728 | ---- | C] (IObit ) -- C:\Users\Hightorque UK\is360setup.exe
[34 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ]
[34 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ]
[1 C:\Users\Hightorque UK\*.tmp files -> C:\Users\Hightorque UK\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2014/03/07 11:44:34 | 000,000,434 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{95D5E3F6-1BC2-48DA-87DA-387FB7EB0FB8}.job
[2014/03/07 11:42:00 | 000,000,422 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{1187167D-694A-4D97-9748-C1A6B331311F}.job
[2014/03/07 11:38:01 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014/03/07 11:19:00 | 000,000,886 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/03/07 10:38:06 | 000,003,744 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2014/03/07 10:38:06 | 000,003,744 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2014/03/07 09:39:23 | 000,000,897 | ---- | M] () -- C:\Users\Hightorque UK\Desktop\PDFToePUB.exe - Shortcut.lnk
[2014/03/07 09:10:14 | 000,070,664 | ---- | M] () -- C:\Users\Hightorque UK\Documents\Inv141667.pdf
[2014/03/07 08:59:50 | 000,002,435 | ---- | M] () -- C:\Users\Hightorque UK\Desktop\Betting Assistant.lnk
[2014/03/07 08:39:27 | 000,000,882 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014/03/07 08:38:20 | 000,000,276 | ---- | M] () -- C:\Windows\tasks\RtlNICDiagVistaStart.job
[2014/03/07 08:37:46 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014/03/07 08:37:43 | 3184,513,024 | -HS- | M] () -- C:\hiberfil.sys
[2014/03/06 18:00:39 | 000,000,458 | ---- | M] () -- C:\Windows\tasks\ParetoLogic Registration.job
[2014/03/06 13:32:21 | 000,000,897 | ---- | M] () -- C:\Users\Public\Desktop\PDF to ePUB Mobi Converter.lnk
[2014/03/06 12:13:43 | 000,000,680 | ---- | M] () -- C:\Users\Hightorque UK\AppData\Local\d3d9caps.dat
[2014/03/06 10:25:56 | 000,002,376 | ---- | M] () -- C:\{8A42E215-40D1-4A15-8564-513DD3F032EF}
[2014/03/05 11:52:53 | 000,649,822 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2014/03/05 11:52:53 | 000,125,862 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2014/03/04 17:34:16 | 000,000,868 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2014/03/04 12:00:04 | 000,000,516 | ---- | M] () -- C:\Windows\tasks\One-Click Tweak.job
[2014/03/04 11:04:12 | 000,000,524 | ---- | M] () -- C:\Users\Hightorque UK\Desktop\New - Shortcut.lnk
[2014/03/04 09:57:24 | 000,001,933 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2014/03/03 11:19:45 | 006,754,680 | ---- | M] () -- C:\Users\Hightorque UK\Documents\damaged_parcel.zip
[2014/03/03 07:43:34 | 000,002,984 | ---- | M] () -- C:\{4A7544F2-4542-4BFD-8159-068C617AEBB8}
[2014/03/02 22:11:40 | 000,003,952 | ---- | M] () -- C:\{3086D3D3-3700-4E11-91E3-E4131AF239F5}
[2014/03/02 22:01:50 | 000,002,984 | ---- | M] () -- C:\{F32BA2B3-A7FB-424E-BA4D-3B8641A1771A}
[2014/03/02 18:02:27 | 000,002,984 | ---- | M] () -- C:\{D754B03C-BD40-4878-92DA-A155AABCDC35}
[2014/03/02 13:25:58 | 000,002,984 | ---- | M] () -- C:\{2B3DCCC6-885F-4E53-BD82-4C07F5C807C9}
[2014/03/01 09:09:49 | 000,002,984 | ---- | M] () -- C:\{1D5781DF-F56C-44AF-BDDD-3B958B21BB9C}
[2014/03/01 07:08:20 | 000,003,952 | ---- | M] () -- C:\{D3C590DB-9404-407C-BC99-8B87351FA244}
[2014/02/28 21:54:10 | 000,002,984 | ---- | M] () -- C:\{A5B7B5CA-85E8-4A71-BB68-01C5201B46A6}
[2014/02/28 21:19:24 | 000,002,984 | ---- | M] () -- C:\{34C1BFBE-A9C4-4E27-8C59-0CEE5EB40565}
[2014/02/28 21:06:31 | 000,002,984 | ---- | M] () -- C:\{F5D5C4E9-A0BE-4278-ACAE-EDD6BF79E041}
[2014/02/28 20:36:21 | 000,002,984 | ---- | M] () -- C:\{3D4E496F-C120-4F25-8A36-00F6C33BC563}
[2014/02/28 20:06:51 | 000,003,952 | ---- | M] () -- C:\{4B706913-A159-4059-860F-A2486B56428C}
[2014/02/28 20:05:46 | 000,002,984 | ---- | M] () -- C:\{64C815E0-036C-4122-BBF5-97232ABADA48}
[2014/02/28 19:48:01 | 000,002,984 | ---- | M] () -- C:\{FB80A745-DEB5-4248-975F-6F216ED1E394}
[2014/02/28 19:25:00 | 000,002,984 | ---- | M] () -- C:\{D2B230C0-759D-47E5-A4D0-18E847DB87AE}
[2014/02/28 19:09:55 | 000,002,984 | ---- | M] () -- C:\{CD977727-CD6E-44E3-B2AE-B83EECA29EC4}
[2014/02/28 18:49:47 | 000,002,984 | ---- | M] () -- C:\{9D8C464B-441B-497A-B7BE-B78E8519209E}
[2014/02/28 18:47:34 | 000,003,952 | ---- | M] () -- C:\{45D8E0AC-190C-4EE8-9854-5BF896A2AA8D}
[2014/02/28 18:44:17 | 000,002,984 | ---- | M] () -- C:\{B1AB1A9E-667C-4CE9-B6EB-118C662F5091}
[2014/02/28 17:47:52 | 000,002,984 | ---- | M] () -- C:\{EF9E9E63-3B18-4958-9A39-42CC24B312D2}
[2014/02/28 14:18:02 | 000,000,876 | ---- | M] () -- C:\Users\Hightorque UK\Desktop\Norton Installation Files.lnk
[2014/02/28 14:04:22 | 000,002,984 | ---- | M] () -- C:\{A9B59980-5B98-43AA-870A-AFE9F8385110}
[2014/02/28 13:57:36 | 000,002,984 | ---- | M] () -- C:\{E2A409F6-CBC0-4C52-8C7B-4F7C509E24E2}
[2014/02/28 13:45:42 | 000,002,984 | ---- | M] () -- C:\{5BCA3627-81EA-4542-8DE3-4BF243F0C252}
[2014/02/28 13:35:44 | 000,002,984 | ---- | M] () -- C:\{FE58315F-3BA8-4383-B949-74C65ED9CCF7}
[2014/02/28 13:02:50 | 000,002,984 | ---- | M] () -- C:\{DE2AEC18-4C80-49C7-B574-8E4B945F568F}
[2014/02/28 10:59:27 | 000,002,984 | ---- | M] () -- C:\{315D5B01-4904-4229-BF03-CAA7EEF51DC3}
[2014/02/28 10:08:45 | 000,002,984 | ---- | M] () -- C:\{AD998A23-2EEE-40A6-AAD4-638C32DA7DA6}
[2014/02/28 07:46:56 | 000,003,200 | ---- | M] () -- C:\{C3BFC792-D46C-4ED9-8DDF-1C5B8B732A5C}
[2014/02/27 21:50:56 | 000,002,984 | ---- | M] () -- C:\{5E1E9CC8-96A3-44A6-B053-A28C55000E50}
[2014/02/27 21:29:08 | 000,003,952 | ---- | M] () -- C:\{ECC84D31-CFF9-4791-ADA1-C132E58AE5C4}
[2014/02/27 21:26:36 | 000,002,984 | ---- | M] () -- C:\{0461240B-AB99-44AC-A68C-6478283504AD}
[2014/02/27 21:16:55 | 000,002,984 | ---- | M] () -- C:\{8F49ABC6-3F9F-4A6A-AFC5-33A2C412F6AE}
[2014/02/27 19:46:58 | 000,002,984 | ---- | M] () -- C:\{CEE388EF-9EA1-4F08-BDFC-E909684729AE}
[2014/02/27 15:57:01 | 000,002,984 | ---- | M] () -- C:\{5275EC81-BBDD-462E-8AB0-A3DA5A9F9EF8}
[2014/02/27 11:23:30 | 000,002,984 | ---- | M] () -- C:\{47A4E221-B673-49FE-961A-89011B904F2E}
[2014/02/27 09:46:49 | 000,002,984 | ---- | M] () -- C:\{3C10B6E3-4896-4F61-B79B-19A62AA41839}
[2014/02/27 09:26:11 | 000,002,984 | ---- | M] () -- C:\{065EB298-B535-403C-8846-4AC80B43C351}
[2014/02/27 07:40:36 | 000,003,360 | ---- | M] () -- C:\{E6A9E7E2-5BF8-4DA6-89C9-56AEB2A155A4}
[2014/02/26 20:37:11 | 000,002,984 | ---- | M] () -- C:\{245E48B1-8753-48A6-A508-0861AAEB6216}
[2014/02/26 20:30:21 | 000,000,296 | ---- | M] () -- C:\{279E8AD2-029F-4E4C-9756-93D0F2731DDB}
[2014/02/26 19:37:11 | 000,002,984 | ---- | M] () -- C:\{4B2FEDC2-42FB-4C4E-87D0-56C8D187D9C2}
[2014/02/26 19:24:07 | 000,002,984 | ---- | M] () -- C:\{60612E34-C1ED-4560-88EC-218FE2CE8896}
[2014/02/26 19:04:41 | 000,002,984 | ---- | M] () -- C:\{EC4436E7-E676-4A6E-B780-3BEE405E6CD5}
[2014/02/26 17:19:27 | 000,002,984 | ---- | M] () -- C:\{45DC781C-1368-4A2E-A4E2-7805D5F33FF6}
[2014/02/26 16:17:20 | 000,003,952 | ---- | M] () -- C:\{7CDFA68F-52ED-4710-9EE3-0AA124F05DC2}
[2014/02/26 16:15:35 | 000,002,984 | ---- | M] () -- C:\{A0AE74EB-122F-4062-8F14-85371030174A}
[2014/02/26 12:12:07 | 000,547,670 | ---- | M] () -- C:\Users\Hightorque UK\Documents\Bank Statement.jpg
[2014/02/26 09:37:38 | 000,002,984 | ---- | M] () -- C:\{90DA461F-8545-48CE-ACC4-B071D246EC42}
[2014/02/26 09:18:58 | 000,002,984 | ---- | M] () -- C:\{C0B4D154-C5CB-443B-B38D-DBFC6D6B9589}
[2014/02/25 18:21:35 | 000,014,380 | ---- | M] () -- C:\Users\Hightorque UK\Documents\35193.pdf
[2014/02/25 14:54:32 | 000,002,984 | ---- | M] () -- C:\{AABA3250-1C74-46A3-80F9-2F5ED7ABE04D}
[2014/02/25 13:53:36 | 000,002,984 | ---- | M] () -- C:\{8945B4B3-FD18-4550-B4C3-7F425507C986}
[2014/02/25 13:53:30 | 000,000,472 | ---- | M] () -- C:\{BF3CB1D3-A291-4151-BB96-814A243043B7}
[2014/02/25 13:38:18 | 000,000,181 | ---- | M] () -- C:\Windows\WININIT.INI
[2014/02/25 13:07:43 | 000,002,984 | ---- | M] () -- C:\{913A18F1-1AB5-4EC7-8BC4-49B77FDF35C0}
[2014/02/24 14:40:39 | 000,002,984 | ---- | M] () -- C:\{9C4D5B9A-868D-46BF-9E8D-79ACC58ACFB5}
[2014/02/24 14:40:37 | 000,042,232 | ---- | M] () -- C:\{FC63D6A3-CB07-4182-BA3A-0484924B5CFA}
[2014/02/24 14:15:59 | 000,002,984 | ---- | M] () -- C:\{509D1C94-C804-470F-8F5C-29F67EDDA29D}
[2014/02/24 11:49:05 | 000,002,984 | ---- | M] () -- C:\{59443B53-19E1-427C-8190-634EBE170715}
[2014/02/23 08:29:04 | 000,001,957 | ---- | M] () -- C:\Users\Hightorque UK\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2014/02/22 22:59:45 | 000,002,872 | ---- | M] () -- C:\{2EF6201B-6697-47FA-9507-BEC61A1B731A}
[2014/02/22 21:48:54 | 000,003,952 | ---- | M] () -- C:\{62A2FFE0-37EE-4220-B62B-7D90123C2515}
[2014/02/22 21:47:22 | 000,002,984 | ---- | M] () -- C:\{E972C357-456D-495D-AEC1-2F5C6DA42442}
[2014/02/22 16:17:54 | 000,002,984 | ---- | M] () -- C:\{DECEEE24-2334-4525-A344-EDA59ABF1229}
[2014/02/21 15:41:06 | 000,692,616 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe
[2014/02/21 15:41:06 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl
[2014/02/21 08:17:50 | 000,031,640 | ---- | M] () -- C:\{E3E31B88-0ED7-45E4-98D5-3F4A8D6319D5}
[2014/02/19 20:37:56 | 000,002,984 | ---- | M] () -- C:\{5DBF9735-5F9D-4436-8FC0-52AC01569252}
[2014/02/19 13:14:23 | 000,059,059 | ---- | M] () -- C:\Users\Hightorque UK\Documents\inv141597.html
[2014/02/19 08:37:21 | 000,000,909 | ---- | M] () -- C:\Users\Hightorque UK\Application Data\Microsoft\Internet Explorer\Quick Launch\AOL Desktop 9.7.lnk
[2014/02/19 08:37:18 | 000,000,805 | ---- | M] () -- C:\Users\Public\Desktop\AOL Desktop 9.7.lnk
[2014/02/19 07:06:47 | 000,000,426 | ---- | M] () -- C:\AVScanner.ini
[2014/02/19 00:20:57 | 000,018,432 | ---- | M] () -- C:\Users\Hightorque UK\Documents\[email protected]_com.eml
[2014/02/18 11:10:58 | 000,003,000 | ---- | M] () -- C:\{9929DD5A-4C8D-4122-8670-27C3627F11D6}
[2014/02/18 10:40:24 | 000,002,198 | ---- | M] () -- C:\Windows\epplauncher.mif
[2014/02/18 09:38:45 | 000,070,404 | ---- | M] () -- C:\Users\Hightorque UK\Documents\inv141599.pdf
[2014/02/17 20:10:08 | 000,002,984 | ---- | M] () -- C:\{368EFE50-B418-49BA-B186-C68A3DEA5E73}
[2014/02/17 18:18:15 | 000,003,952 | ---- | M] () -- C:\{D477ACDF-CC73-4136-8A33-486C4405B225}
[2014/02/17 18:16:43 | 000,002,984 | ---- | M] () -- C:\{0B487C60-D006-41FA-BCC1-AFF91DEBFF87}
[2014/02/17 13:57:04 | 000,003,952 | ---- | M] () -- C:\{C30423BE-5AA0-4689-A1DF-A08987033324}
[2014/02/17 13:26:34 | 000,002,984 | ---- | M] () -- C:\{D978A037-257B-4354-AA80-4E09C6F40FC8}
[2014/02/16 15:52:56 | 000,002,984 | ---- | M] () -- C:\{52CB0EFF-978B-4B3E-B45F-F32AE0DFD79F}
[2014/02/16 15:07:22 | 000,002,984 | ---- | M] () -- C:\{D3D4BC62-C1A7-4DE0-A7D0-A8B8C18CB26A}
[2014/02/16 13:20:24 | 000,002,984 | ---- | M] () -- C:\{9AA6C66F-7690-4B61-9755-6DF9D55C0F1A}
[2014/02/16 09:09:33 | 000,000,804 | ---- | M] () -- C:\Users\Hightorque UK\Desktop\epubtomobi.exe - Shortcut.lnk
[2014/02/11 10:40:36 | 000,001,632 | ---- | M] () -- C:\Users\Hightorque UK\Desktop\FBReader.lnk
[2014/02/11 10:35:28 | 000,070,716 | ---- | M] () -- C:\Users\Hightorque UK\Documents\inv141411.pdf
[2014/02/10 12:45:51 | 000,216,576 | ---- | M] () -- C:\Users\Hightorque UK\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2014/02/10 08:22:30 | 000,000,686 | ---- | M] () -- C:\Users\Hightorque UK\Desktop\Downloads - Shortcut.lnk
[2014/02/07 13:45:07 | 000,003,280 | ---- | M] () -- C:\{180F9711-547D-42C7-B4F7-8662231EAD41}
[2014/02/07 13:37:37 | 000,001,711 | ---- | M] () -- C:\Users\Public\Desktop\InstallConverter.lnk
[2014/02/07 13:29:02 | 000,003,568 | ---- | M] () -- C:\{AEAEFD14-4F40-42A9-B174-BF61E14A6591}
[2014/02/07 13:22:32 | 000,455,286 | ---- | M] () -- C:\Users\Hightorque UK\Documents\The Story of O.html
[2014/02/07 13:12:20 | 000,000,766 | ---- | M] () -- C:\Users\Hightorque UK\Desktop\REGSERVO.lnk
[2014/02/07 10:25:55 | 000,028,840 | ---- | M] () -- C:\Users\Hightorque UK\Documents\Auftrag_CC-15262.pdf
[2014/02/07 08:27:28 | 000,001,716 | ---- | M] () -- C:\Users\Hightorque UK\Desktop\Sync Folder.lnk
[2014/02/07 08:25:58 | 000,000,856 | ---- | M] () -- C:\Users\Hightorque UK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk
[2014/02/07 08:25:58 | 000,000,846 | ---- | M] () -- C:\Users\Hightorque UK\Desktop\MyPC Backup.lnk
[2014/02/07 08:23:55 | 000,000,801 | ---- | M] () -- C:\Users\Hightorque UK\Desktop\File Shredder.lnk
[2014/02/07 07:06:18 | 000,000,905 | ---- | M] () -- C:\Users\Hightorque UK\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2014/02/06 12:54:59 | 000,282,624 | ---- | M] () -- C:\Users\Hightorque UK\AppData\Roaming\SettingsDB.sdf
[2014/02/06 09:13:09 | 000,453,642 | ---- | M] () -- C:\Users\Hightorque UK\Documents\IV140122HDE-1.zip
[34 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ]
[34 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ]
[1 C:\Users\Hightorque UK\*.tmp files -> C:\Users\Hightorque UK\*.tmp -> ]
========== Files Created - No Company Name ==========
[2014/03/07 09:39:23 | 000,000,897 | ---- | C] () -- C:\Users\Hightorque UK\Desktop\PDFToePUB.exe - Shortcut.lnk
[2014/03/07 09:10:12 | 000,070,664 | ---- | C] () -- C:\Users\Hightorque UK\Documents\Inv141667.pdf
[2014/03/06 13:32:20 | 000,000,897 | ---- | C] () -- C:\Users\Public\Desktop\PDF to ePUB Mobi Converter.lnk
[2014/03/06 10:25:54 | 000,002,376 | ---- | C] () -- C:\{8A42E215-40D1-4A15-8564-513DD3F032EF}
[2014/03/04 17:34:15 | 000,000,868 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2014/03/04 11:04:26 | 000,000,524 | ---- | C] () -- C:\Users\Hightorque UK\Desktop\New - Shortcut.lnk
[2014/03/04 08:06:54 | 000,000,426 | ---- | C] () -- C:\AVScanner.ini
[2014/03/03 11:18:52 | 006,754,680 | ---- | C] () -- C:\Users\Hightorque UK\Documents\damaged_parcel.zip
[2014/03/03 07:43:34 | 000,002,984 | ---- | C] () -- C:\{4A7544F2-4542-4BFD-8159-068C617AEBB8}
[2014/03/02 22:11:40 | 000,003,952 | ---- | C] () -- C:\{3086D3D3-3700-4E11-91E3-E4131AF239F5}
[2014/03/02 22:01:48 | 000,002,984 | ---- | C] () -- C:\{F32BA2B3-A7FB-424E-BA4D-3B8641A1771A}
[2014/03/02 18:02:27 | 000,002,984 | ---- | C] () -- C:\{D754B03C-BD40-4878-92DA-A155AABCDC35}
[2014/03/02 13:25:58 | 000,002,984 | ---- | C] () -- C:\{2B3DCCC6-885F-4E53-BD82-4C07F5C807C9}
[2014/03/01 09:09:49 | 000,002,984 | ---- | C] () -- C:\{1D5781DF-F56C-44AF-BDDD-3B958B21BB9C}
[2014/03/01 07:08:20 | 000,003,952 | ---- | C] () -- C:\{D3C590DB-9404-407C-BC99-8B87351FA244}
[2014/02/28 21:54:10 | 000,002,984 | ---- | C] () -- C:\{A5B7B5CA-85E8-4A71-BB68-01C5201B46A6}
[2014/02/28 21:19:22 | 000,002,984 | ---- | C] () -- C:\{34C1BFBE-A9C4-4E27-8C59-0CEE5EB40565}
[2014/02/28 21:06:31 | 000,002,984 | ---- | C] () -- C:\{F5D5C4E9-A0BE-4278-ACAE-EDD6BF79E041}
[2014/02/28 20:36:21 | 000,002,984 | ---- | C] () -- C:\{3D4E496F-C120-4F25-8A36-00F6C33BC563}
[2014/02/28 20:06:50 | 000,003,952 | ---- | C] () -- C:\{4B706913-A159-4059-860F-A2486B56428C}
[2014/02/28 20:05:46 | 000,002,984 | ---- | C] () -- C:\{64C815E0-036C-4122-BBF5-97232ABADA48}
[2014/02/28 19:48:01 | 000,002,984 | ---- | C] () -- C:\{FB80A745-DEB5-4248-975F-6F216ED1E394}
[2014/02/28 19:24:59 | 000,002,984 | ---- | C] () -- C:\{D2B230C0-759D-47E5-A4D0-18E847DB87AE}
[2014/02/28 19:09:54 | 000,002,984 | ---- | C] () -- C:\{CD977727-CD6E-44E3-B2AE-B83EECA29EC4}
[2014/02/28 18:49:46 | 000,002,984 | ---- | C] () -- C:\{9D8C464B-441B-497A-B7BE-B78E8519209E}
[2014/02/28 18:47:33 | 000,003,952 | ---- | C] () -- C:\{45D8E0AC-190C-4EE8-9854-5BF896A2AA8D}
[2014/02/28 18:44:17 | 000,002,984 | ---- | C] () -- C:\{B1AB1A9E-667C-4CE9-B6EB-118C662F5091}
[2014/02/28 17:47:52 | 000,002,984 | ---- | C] () -- C:\{EF9E9E63-3B18-4958-9A39-42CC24B312D2}
[2014/02/28 14:04:22 | 000,002,984 | ---- | C] () -- C:\{A9B59980-5B98-43AA-870A-AFE9F8385110}
[2014/02/28 13:57:36 | 000,002,984 | ---- | C] () -- C:\{E2A409F6-CBC0-4C52-8C7B-4F7C509E24E2}
[2014/02/28 13:45:42 | 000,002,984 | ---- | C] () -- C:\{5BCA3627-81EA-4542-8DE3-4BF243F0C252}
[2014/02/28 13:35:44 | 000,002,984 | ---- | C] () -- C:\{FE58315F-3BA8-4383-B949-74C65ED9CCF7}
[2014/02/28 13:02:50 | 000,002,984 | ---- | C] () -- C:\{DE2AEC18-4C80-49C7-B574-8E4B945F568F}
[2014/02/28 10:59:27 | 000,002,984 | ---- | C] () -- C:\{315D5B01-4904-4229-BF03-CAA7EEF51DC3}
[2014/02/28 10:08:45 | 000,002,984 | ---- | C] () -- C:\{AD998A23-2EEE-40A6-AAD4-638C32DA7DA6}
[2014/02/28 07:46:54 | 000,003,200 | ---- | C] () -- C:\{C3BFC792-D46C-4ED9-8DDF-1C5B8B732A5C}
[2014/02/27 21:50:56 | 000,002,984 | ---- | C] () -- C:\{5E1E9CC8-96A3-44A6-B053-A28C55000E50}
[2014/02/27 21:29:08 | 000,003,952 | ---- | C] () -- C:\{ECC84D31-CFF9-4791-ADA1-C132E58AE5C4}
[2014/02/27 21:26:36 | 000,002,984 | ---- | C] () -- C:\{0461240B-AB99-44AC-A68C-6478283504AD}
[2014/02/27 21:16:55 | 000,002,984 | ---- | C] () -- C:\{8F49ABC6-3F9F-4A6A-AFC5-33A2C412F6AE}
[2014/02/27 19:46:58 | 000,002,984 | ---- | C] () -- C:\{CEE388EF-9EA1-4F08-BDFC-E909684729AE}
[2014/02/27 15:57:01 | 000,002,984 | ---- | C] () -- C:\{5275EC81-BBDD-462E-8AB0-A3DA5A9F9EF8}
[2014/02/27 11:23:30 | 000,002,984 | ---- | C] () -- C:\{47A4E221-B673-49FE-961A-89011B904F2E}
[2014/02/27 09:46:49 | 000,002,984 | ---- | C] () -- C:\{3C10B6E3-4896-4F61-B79B-19A62AA41839}
[2014/02/27 09:26:11 | 000,002,984 | ---- | C] () -- C:\{065EB298-B535-403C-8846-4AC80B43C351}
[2014/02/27 07:40:36 | 000,003,360 | ---- | C] () -- C:\{E6A9E7E2-5BF8-4DA6-89C9-56AEB2A155A4}
[2014/02/26 20:37:11 | 000,002,984 | ---- | C] () -- C:\{245E48B1-8753-48A6-A508-0861AAEB6216}
[2014/02/26 20:30:21 | 000,000,296 | ---- | C] () -- C:\{279E8AD2-029F-4E4C-9756-93D0F2731DDB}
[2014/02/26 19:37:10 | 000,002,984 | ---- | C] () -- C:\{4B2FEDC2-42FB-4C4E-87D0-56C8D187D9C2}
[2014/02/26 19:24:07 | 000,002,984 | ---- | C] () -- C:\{60612E34-C1ED-4560-88EC-218FE2CE8896}
[2014/02/26 19:04:41 | 000,002,984 | ---- | C] () -- C:\{EC4436E7-E676-4A6E-B780-3BEE405E6CD5}
[2014/02/26 17:19:26 | 000,002,984 | ---- | C] () -- C:\{45DC781C-1368-4A2E-A4E2-7805D5F33FF6}
[2014/02/26 16:17:20 | 000,003,952 | ---- | C] () -- C:\{7CDFA68F-52ED-4710-9EE3-0AA124F05DC2}
[2014/02/26 16:15:35 | 000,002,984 | ---- | C] () -- C:\{A0AE74EB-122F-4062-8F14-85371030174A}
[2014/02/26 12:12:01 | 000,547,670 | ---- | C] () -- C:\Users\Hightorque UK\Documents\Bank Statement.jpg
[2014/02/26 09:37:38 | 000,002,984 | ---- | C] () -- C:\{90DA461F-8545-48CE-ACC4-B071D246EC42}
[2014/02/26 09:18:58 | 000,002,984 | ---- | C] () -- C:\{C0B4D154-C5CB-443B-B38D-DBFC6D6B9589}
[2014/02/25 18:21:33 | 000,014,380 | ---- | C] () -- C:\Users\Hightorque UK\Documents\35193.pdf
[2014/02/25 14:54:32 | 000,002,984 | ---- | C] () -- C:\{AABA3250-1C74-46A3-80F9-2F5ED7ABE04D}
[2014/02/25 13:53:32 | 000,002,984 | ---- | C] () -- C:\{8945B4B3-FD18-4550-B4C3-7F425507C986}
[2014/02/25 13:53:30 | 000,000,472 | ---- | C] () -- C:\{BF3CB1D3-A291-4151-BB96-814A243043B7}
[2014/02/25 13:38:16 | 000,000,181 | ---- | C] () -- C:\Windows\WININIT.INI
[2014/02/25 13:07:43 | 000,002,984 | ---- | C] () -- C:\{913A18F1-1AB5-4EC7-8BC4-49B77FDF35C0}
[2014/02/24 14:40:37 | 000,042,232 | ---- | C] () -- C:\{FC63D6A3-CB07-4182-BA3A-0484924B5CFA}
[2014/02/24 14:40:37 | 000,002,984 | ---- | C] () -- C:\{9C4D5B9A-868D-46BF-9E8D-79ACC58ACFB5}
[2014/02/24 14:15:59 | 000,002,984 | ---- | C] () -- C:\{509D1C94-C804-470F-8F5C-29F67EDDA29D}
[2014/02/24 11:49:05 | 000,002,984 | ---- | C] () -- C:\{59443B53-19E1-427C-8190-634EBE170715}
[2014/02/22 22:59:44 | 000,002,872 | ---- | C] () -- C:\{2EF6201B-6697-47FA-9507-BEC61A1B731A}
[2014/02/22 21:48:53 | 000,003,952 | ---- | C] () -- C:\{62A2FFE0-37EE-4220-B62B-7D90123C2515}
[2014/02/22 21:47:21 | 000,002,984 | ---- | C] () -- C:\{E972C357-456D-495D-AEC1-2F5C6DA42442}
[2014/02/22 16:17:54 | 000,002,984 | ---- | C] () -- C:\{DECEEE24-2334-4525-A344-EDA59ABF1229}
[2014/02/22 11:59:12 | 000,001,957 | ---- | C] () -- C:\Users\Hightorque UK\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2014/02/22 11:59:12 | 000,001,933 | ---- | C] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2014/02/21 08:17:50 | 000,031,640 | ---- | C] () -- C:\{E3E31B88-0ED7-45E4-98D5-3F4A8D6319D5}
[2014/02/19 20:37:55 | 000,002,984 | ---- | C] () -- C:\{5DBF9735-5F9D-4436-8FC0-52AC01569252}
[2014/02/19 13:14:23 | 000,059,059 | ---- | C] () -- C:\Users\Hightorque UK\Documents\inv141597.html
[2014/02/18 11:10:58 | 000,003,000 | ---- | C] () -- C:\{9929DD5A-4C8D-4122-8670-27C3627F11D6}
[2014/02/18 10:17:26 | 000,001,788 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
[2014/02/18 10:11:09 | 000,002,198 | ---- | C] () -- C:\Windows\epplauncher.mif
[2014/02/18 09:38:43 | 000,070,404 | ---- | C] () -- C:\Users\Hightorque UK\Documents\inv141599.pdf
[2014/02/17 20:10:08 | 000,002,984 | ---- | C] () -- C:\{368EFE50-B418-49BA-B186-C68A3DEA5E73}
[2014/02/17 18:18:14 | 000,003,952 | ---- | C] () -- C:\{D477ACDF-CC73-4136-8A33-486C4405B225}
[2014/02/17 18:16:43 | 000,002,984 | ---- | C] () -- C:\{0B487C60-D006-41FA-BCC1-AFF91DEBFF87}
[2014/02/17 13:57:03 | 000,003,952 | ---- | C] () -- C:\{C30423BE-5AA0-4689-A1DF-A08987033324}
[2014/02/17 13:26:33 | 000,002,984 | ---- | C] () -- C:\{D978A037-257B-4354-AA80-4E09C6F40FC8}
[2014/02/16 15:52:56 | 000,002,984 | ---- | C] () -- C:\{52CB0EFF-978B-4B3E-B45F-F32AE0DFD79F}
[2014/02/16 15:07:22 | 000,002,984 | ---- | C] () -- C:\{D3D4BC62-C1A7-4DE0-A7D0-A8B8C18CB26A}
[2014/02/16 13:20:24 | 000,002,984 | ---- | C] () -- C:\{9AA6C66F-7690-4B61-9755-6DF9D55C0F1A}
[2014/02/16 09:09:33 | 000,000,804 | ---- | C] () -- C:\Users\Hightorque UK\Desktop\epubtomobi.exe - Shortcut.lnk
[2014/02/11 10:40:36 | 000,001,632 | ---- | C] () -- C:\Users\Hightorque UK\Desktop\FBReader.lnk
[2014/02/11 10:35:25 | 000,070,716 | ---- | C] () -- C:\Users\Hightorque UK\Documents\inv141411.pdf
[2014/02/10 08:22:30 | 000,000,686 | ---- | C] () -- C:\Users\Hightorque UK\Desktop\Downloads - Shortcut.lnk
[2014/02/07 13:45:07 | 000,003,280 | ---- | C] () -- C:\{180F9711-547D-42C7-B4F7-8662231EAD41}
[2014/02/07 13:37:37 | 000,001,711 | ---- | C] () -- C:\Users\Public\Desktop\InstallConverter.lnk
[2014/02/07 13:29:00 | 000,003,568 | ---- | C] () -- C:\{AEAEFD14-4F40-42A9-B174-BF61E14A6591}
[2014/02/07 13:22:24 | 000,455,286 | ---- | C] () -- C:\Users\Hightorque UK\Documents\The Story of O.html
[2014/02/07 13:12:20 | 000,000,766 | ---- | C] () -- C:\Users\Hightorque UK\Desktop\REGSERVO.lnk
[2014/02/07 10:25:54 | 000,028,840 | ---- | C] () -- C:\Users\Hightorque UK\Documents\Auftrag_CC-15262.pdf
[2014/02/07 08:27:26 | 000,001,716 | ---- | C] () -- C:\Users\Hightorque UK\Desktop\Sync Folder.lnk
[2014/02/07 08:25:58 | 000,000,856 | ---- | C] () -- C:\Users\Hightorque UK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk
[2014/02/07 08:25:58 | 000,000,846 | ---- | C] () -- C:\Users\Hightorque UK\Desktop\MyPC Backup.lnk
[2014/02/07 08:23:55 | 000,000,801 | ---- | C] () -- C:\Users\Hightorque UK\Desktop\File Shredder.lnk
[2014/02/06 09:13:04 | 000,453,642 | ---- | C] () -- C:\Users\Hightorque UK\Documents\IV140122HDE-1.zip
[2013/08/11 19:07:17 | 000,224,041 | ---- | C] () -- C:\Users\Hightorque UK\Northampton_Milton_Keynes_Leighton_Buzzard_London.pdf
[2013/08/05 08:34:37 | 030,914,760 | ---- | C] () -- C:\Users\Hightorque UK\TomTomHOME2winlatest_1.exe
[2013/08/05 08:33:37 | 030,914,760 | ---- | C] () -- C:\Users\Hightorque UK\TomTomHOME2winlatest.exe
[2013/04/30 13:32:14 | 000,282,624 | ---- | C] () -- C:\Users\Hightorque UK\AppData\Roaming\SettingsDB.sdf
[2012/11/22 08:19:20 | 000,013,399 | ---- | C] () -- C:\Users\Hightorque UK\248.pdf
[2012/11/19 16:19:07 | 000,013,535 | ---- | C] () -- C:\Users\Hightorque UK\247.pdf
[2012/11/19 09:15:24 | 000,013,456 | ---- | C] () -- C:\Users\Hightorque UK\246.pdf
[2012/11/19 08:05:09 | 000,013,446 | ---- | C] () -- C:\Users\Hightorque UK\245.pdf
[2012/11/11 19:29:13 | 000,013,438 | ---- | C] () -- C:\Users\Hightorque UK\243.pdf
[2012/11/05 20:36:21 | 000,013,412 | ---- | C] () -- C:\Users\Hightorque UK\242.pdf
[2012/10/27 08:53:01 | 000,013,419 | ---- | C] () -- C:\Users\Hightorque UK\241.pdf
[2012/10/24 08:08:34 | 000,013,434 | ---- | C] () -- C:\Users\Hightorque UK\240.pdf
[2012/10/20 06:53:25 | 000,000,000 | ---- | C] () -- C:\Users\Hightorque UK\AppData\Roaming\.NANotifyHere
[2012/10/05 15:42:42 | 000,013,395 | ---- | C] () -- C:\Users\Hightorque UK\237.pdf
[2012/10/05 15:42:26 | 000,013,393 | ---- | C] () -- C:\Users\Hightorque UK\236.pdf
[2012/09/29 06:53:56 | 000,013,400 | ---- | C] () -- C:\Users\Hightorque UK\235.pdf
[2012/09/20 14:40:24 | 000,013,497 | ---- | C] () -- C:\Users\Hightorque UK\234.pdf
[2012/09/18 07:37:21 | 000,013,549 | ---- | C] () -- C:\Users\Hightorque UK\233.pdf
[2012/09/15 18:48:01 | 000,013,382 | ---- | C] () -- C:\Users\Hightorque UK\232.pdf
[2012/09/05 09:49:38 | 000,013,481 | ---- | C] () -- C:\Users\Hightorque UK\231.pdf
[2012/09/04 12:20:38 | 000,005,102 | ---- | C] () -- C:\Users\Hightorque UK\page.pdf
[2012/09/03 12:16:39 | 000,060,285 | ---- | C] () -- C:\Users\Hightorque UK\RE-1201012735.pdf
[2012/03/16 11:02:58 | 000,014,412 | ---- | C] () -- C:\Users\Hightorque UK\Invoice R Gorry.pdf
[2012/02/10 09:30:35 | 000,000,000 | ---- | C] () -- C:\Users\Hightorque UK\chkdsk
[2011/09/01 15:29:54 | 009,395,499 | ---- | C] () -- C:\Users\Hightorque UK\smartstampsetup3.0.0.8XP.zip
[2010/08/25 09:54:17 | 000,000,780 | ---- | C] () -- C:\Users\Hightorque UK\.recently-used.xbel
[2010/06/18 14:40:14 | 000,000,340 | ---- | C] () -- C:\Users\Hightorque UK\AppData\Roaming\wklnhst.dat
[2009/12/09 11:43:57 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2009/10/24 08:39:59 | 000,178,688 | ---- | C] () -- C:\Program Files\hjsplit.exe
[2009/10/23 08:02:50 | 000,000,081 | ---- | C] () -- C:\Users\Hightorque UK\CTX.DAT
[2009/10/22 15:21:53 | 008,801,704 | ---- | C] () -- C:\Program Files\FLV PlayerATBSetup.exe
[2009/10/14 09:24:51 | 000,000,680 | ---- | C] () -- C:\Users\Hightorque UK\AppData\Local\d3d9caps.dat
[2009/10/13 13:50:47 | 000,216,576 | ---- | C] () -- C:\Users\Hightorque UK\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/10/13 11:05:29 | 000,000,008 | ---- | C] () -- C:\Users\Hightorque UK\AppData\Roaming\usb.dat.bin
========== ZeroAccess Check ==========
[2006/11/02 12:54:18 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2012/06/08 17:47:00 | 011,586,048 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2009/04/11 06:28:19 | 000,614,912 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2009/04/11 06:28:25 | 000,347,648 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
========== Alternate Data Streams ==========
@Alternate Data Stream - 929 bytes -> C:\Users\Hightorque UK\Documents\[email protected]_com.eml:OECustomProperty
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:56E2E879
@Alternate Data Stream - 117 bytes -> C:\ProgramData\TEMP:D74B6CF5
@Alternate Data Stream - 117 bytes -> C:\ProgramData\TEMP:2B11E0DF
@Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:010ADD2C
@Alternate Data Stream - 108 bytes -> C:\ProgramData\TEMP:553CA6CA
< End of report >