Part 2:
[2010/08/20 14:02:22 | 000,575,488 | ---- | C] (OldTimer Tools) -- C:\Users\ItsMarley\Desktop\OTL.exe
[2010/08/20 13:50:48 | 000,446,464 | ---- | C] (OldTimer Tools) -- C:\Users\ItsMarley\Desktop\TFC.exe
[2010/08/20 13:49:51 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\Desktop\ERUNT
[2010/08/20 02:54:35 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\Desktop\Click Me For Client
[2010/08/20 01:44:34 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\.crisisX_474
[2010/08/20 00:03:31 | 000,050,688 | ---- | C] (Atribune.org) -- C:\Users\ItsMarley\Desktop\ATF-Cleaner.exe
[2010/08/19 22:13:33 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Local\Google
[2010/08/19 20:58:07 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Local\Adobe
[2010/08/18 19:33:32 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Roaming\ESET
[2010/08/18 19:33:32 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Local\ESET
[2010/08/18 19:31:50 | 000,000,000 | ---D | C] -- C:\ProgramData\ESET
[2010/08/18 13:09:48 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Roaming\IObit
[2010/08/18 13:09:47 | 000,000,000 | ---D | C] -- C:\Program Files\IObit
[2010/08/18 09:12:35 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Roaming\Opera
[2010/08/18 09:12:35 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Local\Opera
[2010/08/18 09:12:19 | 000,000,000 | ---D | C] -- C:\Program Files\Opera
[2010/08/18 02:41:07 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Roaming\Auslogics
[2010/08/18 02:39:00 | 000,000,000 | ---D | C] -- C:\ProgramData\TEMP
[2010/08/18 02:38:38 | 000,000,000 | ---D | C] -- C:\Program Files\Auslogics
[2010/08/18 01:43:55 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA Corporation
[2010/08/18 01:43:53 | 000,182,888 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcod.dll
[2010/08/18 01:43:52 | 004,241,000 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvwgf2um.dll
[2010/08/18 01:43:51 | 014,064,232 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvoglv32.dll
[2010/08/18 01:43:50 | 000,289,384 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvdecodemft.dll
[2010/08/18 01:43:49 | 009,333,352 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvd3dum.dll
[2010/08/18 01:43:49 | 002,243,176 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuvid.dll
[2010/08/18 01:43:49 | 001,989,224 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuvenc.dll
[2010/08/18 01:43:48 | 011,381,352 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcompiler.dll
[2010/08/18 01:43:48 | 004,001,384 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuda.dll
[2010/08/18 01:43:47 | 001,249,896 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvapi.dll
[2010/08/18 01:43:47 | 000,076,392 | ---- | C] (Khronos Group) -- C:\Windows\System32\OpenCL.dll
[2010/08/18 01:43:46 | 011,515,752 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvlddmkm.sys
[2010/08/18 01:43:46 | 000,010,920 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvBridge.kmd
[2010/08/18 01:42:44 | 000,182,888 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcohda.dll
[2010/08/18 01:42:44 | 000,057,344 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\System32\nvapo32v.dll
[2010/08/18 01:42:43 | 000,066,664 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvhda32v.sys
[2010/08/18 01:42:43 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\nvhdap32.dll
[2010/08/18 01:40:29 | 000,236,136 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcod1922.dll
[2010/08/18 01:38:18 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Roaming\DivX
[2010/08/17 23:19:51 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\Documents\Flawless ClientV2
[2010/08/17 18:10:29 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Local\NVD
[2010/08/17 18:09:46 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Local\SoftGrid Client
[2010/08/17 18:09:40 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Roaming\SoftGrid Client
[2010/08/17 17:24:11 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Roaming\Malwarebytes
[2010/08/17 17:18:54 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Local\PMB Files
[2010/08/17 17:18:22 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Local\Pando_Temp
[2010/08/17 17:18:18 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Local\GamersFirst LIVE!
[2010/08/17 17:18:06 | 000,000,000 | ---D | C] -- C:\Program Files\GamersFirst
[2010/08/17 16:31:14 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Local\Ares
[2010/08/17 14:54:01 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\Pokemon Online
[2010/08/17 14:26:47 | 000,165,456 | ---- | C] (ALWIL Software) -- C:\Windows\System32\drivers\aswSP.sys
[2010/08/17 14:26:47 | 000,017,744 | ---- | C] (ALWIL Software) -- C:\Windows\System32\drivers\aswFsBlk.sys
[2010/08/17 14:26:42 | 000,312,912 | ---- | C] (ALWIL Software) -- C:\Windows\System32\drivers\aswSnx.sys
[2010/08/17 14:26:40 | 000,023,376 | ---- | C] (ALWIL Software) -- C:\Windows\System32\drivers\aswRdr.sys
[2010/08/17 14:26:37 | 000,046,672 | ---- | C] (ALWIL Software) -- C:\Windows\System32\drivers\aswTdi.sys
[2010/08/17 14:26:32 | 000,050,256 | ---- | C] (ALWIL Software) -- C:\Windows\System32\drivers\aswMonFlt.sys
[2010/08/17 14:26:01 | 000,038,848 | ---- | C] (ALWIL Software) -- C:\Windows\avastSS.scr
[2010/08/17 14:26:00 | 000,165,032 | ---- | C] (AVAST Software) -- C:\Windows\System32\aswBoot.exe
[2010/08/17 14:25:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Alwil Software
[2010/08/17 14:25:58 | 000,000,000 | ---D | C] -- C:\Program Files\Alwil Software
[2010/08/17 14:11:25 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\Documents\My Webcam Recordings
[2010/08/17 14:10:19 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Roaming\skypePM
[2010/08/17 14:09:06 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Roaming\Skype
[2010/08/17 03:13:57 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\Tracing
[2010/08/17 03:13:56 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Roaming\MessengerDiscovery 2
[2010/08/17 03:02:51 | 000,000,000 | ---D | C] -- C:\Windows\RegistryBooster 2
[2010/08/17 03:02:51 | 000,000,000 | ---D | C] -- C:\Program Files\RegistryBooster 2
[2010/08/17 03:01:57 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Roaming\WinRAR
[2010/08/17 02:59:52 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Roaming\Uniblue
[2010/08/17 02:59:48 | 000,000,000 | ---D | C] -- C:\Program Files\Uniblue
[2010/08/17 02:54:49 | 000,000,000 | ---D | C] -- C:\Organized
[2010/08/17 02:30:40 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Roaming\Subversion
[2010/08/17 02:29:06 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Roaming\Macromedia
[2010/08/17 02:29:05 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Roaming\Adobe
[2010/08/17 02:25:07 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Local\TSVNCache
[2010/08/17 02:25:01 | 000,000,000 | R--D | C] -- C:\Users\ItsMarley\Searches
[2010/08/17 02:25:01 | 000,000,000 | -H-D | C] -- C:\Users\ItsMarley\Application Data\Microsoft\Internet Explorer\Quick Launch\User Pinned
[2010/08/17 02:24:56 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Roaming\Identities
[2010/08/17 02:24:54 | 000,000,000 | R--D | C] -- C:\Users\ItsMarley\Contacts
[2010/08/17 02:24:50 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Local\VirtualStore
[2010/08/17 02:24:47 | 000,000,000 | --SD | C] -- C:\Users\ItsMarley\AppData\Roaming\Microsoft
[2010/08/17 02:24:47 | 000,000,000 | R--D | C] -- C:\Users\ItsMarley\Videos
[2010/08/17 02:24:47 | 000,000,000 | R--D | C] -- C:\Users\ItsMarley\Saved Games
[2010/08/17 02:24:47 | 000,000,000 | R--D | C] -- C:\Users\ItsMarley\Pictures
[2010/08/17 02:24:47 | 000,000,000 | R--D | C] -- C:\Users\ItsMarley\Music
[2010/08/17 02:24:47 | 000,000,000 | R--D | C] -- C:\Users\ItsMarley\Links
[2010/08/17 02:24:47 | 000,000,000 | R--D | C] -- C:\Users\ItsMarley\Favorites
[2010/08/17 02:24:47 | 000,000,000 | R--D | C] -- C:\Users\ItsMarley\Downloads
[2010/08/17 02:24:47 | 000,000,000 | R--D | C] -- C:\Users\ItsMarley\My Documents
[2010/08/17 02:24:47 | 000,000,000 | R--D | C] -- C:\Users\ItsMarley\Desktop
[2010/08/17 02:24:47 | 000,000,000 | -HSD | C] -- C:\Users\ItsMarley\AppData\Local\Temporary Internet Files
[2010/08/17 02:24:47 | 000,000,000 | -HSD | C] -- C:\Users\ItsMarley\Templates
[2010/08/17 02:24:47 | 000,000,000 | -HSD | C] -- C:\Users\ItsMarley\Start Menu
[2010/08/17 02:24:47 | 000,000,000 | -HSD | C] -- C:\Users\ItsMarley\SendTo
[2010/08/17 02:24:47 | 000,000,000 | -HSD | C] -- C:\Users\ItsMarley\Recent
[2010/08/17 02:24:47 | 000,000,000 | -HSD | C] -- C:\Users\ItsMarley\PrintHood
[2010/08/17 02:24:47 | 000,000,000 | -HSD | C] -- C:\Users\ItsMarley\NetHood
[2010/08/17 02:24:47 | 000,000,000 | -HSD | C] -- C:\Users\ItsMarley\Documents\My Videos
[2010/08/17 02:24:47 | 000,000,000 | -HSD | C] -- C:\Users\ItsMarley\Documents\My Pictures
[2010/08/17 02:24:47 | 000,000,000 | -HSD | C] -- C:\Users\ItsMarley\Documents\My Music
[2010/08/17 02:24:47 | 000,000,000 | -HSD | C] -- C:\Users\ItsMarley\My Documents
[2010/08/17 02:24:47 | 000,000,000 | -HSD | C] -- C:\Users\ItsMarley\Local Settings
[2010/08/17 02:24:47 | 000,000,000 | -HSD | C] -- C:\Users\ItsMarley\AppData\Local\History
[2010/08/17 02:24:47 | 000,000,000 | -HSD | C] -- C:\Users\ItsMarley\Cookies
[2010/08/17 02:24:47 | 000,000,000 | -HSD | C] -- C:\Users\ItsMarley\Application Data
[2010/08/17 02:24:47 | 000,000,000 | -HSD | C] -- C:\Users\ItsMarley\AppData\Local\Application Data
[2010/08/17 02:24:47 | 000,000,000 | -H-D | C] -- C:\Users\ItsMarley\AppData
[2010/08/17 02:24:47 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Local\temp
[2010/08/17 02:24:47 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Local\Microsoft
[2010/08/17 02:24:47 | 000,000,000 | ---D | C] -- C:\Users\ItsMarley\AppData\Roaming\Media Center Programs
[2010/08/16 19:09:17 | 000,000,000 | ---D | C] -- C:\Program Files\ESET
[2010/08/12 18:19:51 | 000,197,632 | ---- | C] (Intel(R) Corporation) -- C:\Windows\System32\ir32_32.dll
[2010/08/12 18:19:51 | 000,082,944 | ---- | C] (Radius Inc.) -- C:\Windows\System32\iccvid.dll
[2010/08/12 18:19:50 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rtutils.dll
[2010/08/12 18:19:44 | 003,955,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntkrnlpa.exe
[2010/08/12 18:19:44 | 003,899,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntoskrnl.exe
[2010/08/12 18:19:36 | 001,638,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
[2010/08/12 18:19:36 | 000,606,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mstime.dll
[2010/08/12 18:19:36 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2010/08/12 18:19:36 | 000,185,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iepeers.dll
[2010/08/12 18:19:36 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
[2010/08/12 18:19:36 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll
[2010/08/12 18:19:36 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
[2010/08/12 18:19:36 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedssync.exe
[2010/08/12 18:19:34 | 002,326,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
[2010/08/12 13:15:48 | 001,062,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSCOMCTL.OCX
[2010/08/12 13:15:48 | 000,108,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSWINSCK.OCX
[2010/08/10 15:55:07 | 000,000,000 | ---D | C] -- C:\Program Files\Metasploit
[2010/08/10 15:38:56 | 000,000,000 | ---D | C] -- C:\Program Files\Conduit
[2010/08/07 23:58:21 | 000,025,216 | ---- | C] (The OpenVPN Project) -- C:\Windows\System32\drivers\tap0901.sys
[2010/08/05 03:40:46 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2010/08/05 03:40:01 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2010/08/05 03:17:27 | 000,212,480 | ---- | C] (SteelWerX) -- C:\Windows\SWXCACLS.exe
[2010/08/02 22:03:41 | 000,161,792 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2010/08/02 22:03:41 | 000,136,704 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2010/08/02 22:03:41 | 000,031,232 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2010/08/02 22:03:32 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2010/07/31 12:43:59 | 000,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2010/07/31 03:36:52 | 000,000,000 | ---D | C] -- C:\Program Files\AxBx
[2010/07/31 03:34:05 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010/07/31 03:33:59 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2010/07/31 03:33:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2010/07/31 03:33:55 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010/07/31 03:21:47 | 000,000,000 | ---D | C] -- C:\$AVG
[2010/07/31 03:16:34 | 000,000,000 | ---D | C] -- C:\Program Files\AVG
[2010/07/31 03:15:59 | 000,000,000 | ---D | C] -- C:\ProgramData\avg9
[2010/07/29 13:31:26 | 000,136,632 | ---- | C] (ESET) -- C:\Windows\System32\drivers\eamonm.sys
[2010/07/29 13:31:26 | 000,134,512 | ---- | C] (ESET) -- C:\Windows\System32\drivers\epfw.sys
[2010/07/29 13:31:26 | 000,115,008 | ---- | C] (ESET) -- C:\Windows\System32\drivers\ehdrv.sys
[2010/07/29 13:31:26 | 000,041,336 | ---- | C] (ESET) -- C:\Windows\System32\drivers\epfwwfp.sys
[2010/07/29 13:31:26 | 000,032,608 | ---- | C] (ESET) -- C:\Windows\System32\drivers\epfwndis.sys
[2010/07/25 00:57:41 | 000,000,000 | ---D | C] -- C:\Program Files\Conquer Online 2.0
========== Files - Modified Within 30 Days ========== [2010/08/22 00:37:23 | 001,310,720 | -HS- | M] () -- C:\Users\ItsMarley\NTUSER.DAT
[2010/08/22 00:19:02 | 000,001,080 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3729820662-3297716803-4006380401-1006UA.job
[2010/08/21 23:18:25 | 000,000,340 | ---- | M] () -- C:\Windows\tasks\RegistryBooster.job
[2010/08/21 23:18:19 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010/08/21 23:17:51 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010/08/21 23:17:45 | 2413,719,552 | -HS- | M] () -- C:\hiberfil.sys
[2010/08/21 21:53:48 | 002,221,493 | -H-- | M] () -- C:\Users\ItsMarley\AppData\Local\IconCache.db
[2010/08/21 05:19:40 | 000,002,421 | ---- | M] () -- C:\Users\ItsMarley\Desktop\Google Chrome.lnk
[2010/08/20 22:29:56 | 000,001,028 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3729820662-3297716803-4006380401-1006Core.job
[2010/08/20 18:54:47 | 000,000,362 | RHS- | M] () -- C:\ProgramData\ntuser.pol
[2010/08/20 15:16:00 | 302,439,451 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2010/08/20 14:02:41 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\ItsMarley\Desktop\OTL.exe
[2010/08/20 13:50:56 | 000,446,464 | ---- | M] (OldTimer Tools) -- C:\Users\ItsMarley\Desktop\TFC.exe
[2010/08/20 00:03:31 | 000,050,688 | ---- | M] (Atribune.org) -- C:\Users\ItsMarley\Desktop\ATF-Cleaner.exe
[2010/08/19 15:56:11 | 000,014,224 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2010/08/19 15:56:11 | 000,014,224 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2010/08/18 19:34:57 | 000,001,075 | ---- | M] () -- C:\Users\ItsMarley\Desktop\ESET SysInspector.lnk
[2010/08/18 19:31:59 | 000,001,060 | ---- | M] () -- C:\Users\ItsMarley\Desktop\ESET SysRescue.lnk
[2010/08/18 19:31:58 | 000,001,957 | ---- | M] () -- C:\Users\ItsMarley\Desktop\ESET Smart Security.lnk
[2010/08/18 13:09:48 | 000,001,014 | ---- | M] () -- C:\Users\Public\Desktop\Switch to Gaming Mode.lnk
[2010/08/18 13:09:48 | 000,001,006 | ---- | M] () -- C:\Users\Public\Desktop\Game Booster.lnk
[2010/08/18 09:12:29 | 000,000,787 | ---- | M] () -- C:\Users\ItsMarley\Application Data\Microsoft\Internet Explorer\Quick Launch\Opera.lnk
[2010/08/18 09:12:29 | 000,000,763 | ---- | M] () -- C:\Users\Public\Desktop\Opera.lnk
[2010/08/18 02:38:45 | 000,001,065 | ---- | M] () -- C:\Users\ItsMarley\Desktop\Auslogics BoostSpeed.lnk
[2010/08/17 18:33:21 | 000,000,476 | -H-- | M] () -- C:\Windows\tasks\Norton Security Scan for Marley.job
[2010/08/17 18:03:41 | 000,001,091 | ---- | M] () -- C:\Users\Public\Desktop\War Rock.lnk
[2010/08/17 17:32:23 | 674,581,496 | ---- | M] () -- C:\Users\ItsMarley\Documents\War_Rock_20100722.exe
[2010/08/17 17:18:09 | 000,001,082 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GamersFirst LIVE!.lnk
[2010/08/17 14:54:09 | 000,000,938 | ---- | M] () -- C:\Users\Public\Desktop\Pokemon Online.lnk
[2010/08/17 14:26:49 | 000,001,969 | ---- | M] () -- C:\Users\Public\Desktop\avast! Pro Antivirus.lnk
[2010/08/17 14:26:32 | 000,002,577 | ---- | M] () -- C:\Windows\System32\config.nt
[2010/08/17 14:08:45 | 000,002,501 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2010/08/17 14:06:39 | 000,001,240 | RHS- | M] () -- C:\Users\ItsMarley\ntuser.pol
[2010/08/17 03:14:05 | 000,524,288 | -HS- | M] () -- C:\Users\ItsMarley\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000002.regtrans-ms
[2010/08/17 03:14:05 | 000,524,288 | -HS- | M] () -- C:\Users\ItsMarley\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000001.regtrans-ms
[2010/08/17 03:14:05 | 000,065,536 | -HS- | M] () -- C:\Users\ItsMarley\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TM.blf
[2010/08/17 03:13:52 | 000,058,728 | ---- | M] () -- C:\Users\ItsMarley\AppData\Local\GDIPFONTCACHEV1.DAT
[2010/08/17 03:02:54 | 000,001,925 | ---- | M] () -- C:\Users\ItsMarley\Desktop\RegistryBooster 2.lnk
[2010/08/17 02:28:44 | 000,001,371 | ---- | M] () -- C:\Users\ItsMarley\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2010/08/17 02:24:47 | 000,000,020 | -HS- | M] () -- C:\Users\ItsMarley\ntuser.ini
[2010/08/16 13:30:51 | 000,269,824 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2010/08/12 00:11:13 | 000,409,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\systemcpl.dll
[2010/08/12 00:11:13 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\slwga.dll
[2010/08/11 00:51:28 | 000,001,430 | ---- | M] () -- C:\Windows\Sandboxie.ini
[2010/08/08 03:32:47 | 000,771,186 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI
[2010/08/08 03:32:47 | 000,656,234 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2010/08/08 03:32:47 | 000,122,710 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2010/08/05 03:33:31 | 000,000,215 | ---- | M] () -- C:\Windows\system.ini
[2010/08/02 22:21:17 | 000,000,027 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts
[2010/08/01 02:05:19 | 000,214,592 | ---- | M] () -- C:\Windows\System32\PnkBstrB.xtr
[2010/08/01 01:36:26 | 000,138,968 | ---- | M] () -- C:\Windows\System32\drivers\PnkBstrK.sys
[2010/07/31 03:34:25 | 000,000,943 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/07/31 02:02:09 | 000,000,064 | ---- | M] () -- C:\Windows\tasks\ID.Conf
[2010/07/29 13:31:26 | 000,136,632 | ---- | M] (ESET) -- C:\Windows\System32\drivers\eamonm.sys
[2010/07/29 13:31:26 | 000,134,512 | ---- | M] (ESET) -- C:\Windows\System32\drivers\epfw.sys
[2010/07/29 13:31:26 | 000,115,008 | ---- | M] (ESET) -- C:\Windows\System32\drivers\ehdrv.sys
[2010/07/29 13:31:26 | 000,041,336 | ---- | M] (ESET) -- C:\Windows\System32\drivers\epfwwfp.sys
[2010/07/29 13:31:26 | 000,032,608 | ---- | M] (ESET) -- C:\Windows\System32\drivers\epfwndis.sys
[2010/07/29 07:30:49 | 000,197,632 | ---- | M] (Intel(R) Corporation) -- C:\Windows\System32\ir32_32.dll
[2010/07/29 07:30:34 | 000,082,944 | ---- | M] (Radius Inc.) -- C:\Windows\System32\iccvid.dll
========== Files Created - No Company Name ========== [2010/08/20 14:49:51 | 302,439,451 | ---- | C] () -- C:\Windows\MEMORY.DMP
[2010/08/20 14:25:23 | 000,293,376 | ---- | C] () -- C:\Users\ItsMarley\Desktop\gmer.exe
[2010/08/19 22:15:13 | 000,002,421 | ---- | C] () -- C:\Users\ItsMarley\Desktop\Google Chrome.lnk
[2010/08/19 22:14:14 | 000,001,080 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3729820662-3297716803-4006380401-1006UA.job
[2010/08/19 22:14:12 | 000,001,028 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3729820662-3297716803-4006380401-1006Core.job
[2010/08/18 19:34:57 | 000,001,075 | ---- | C] () -- C:\Users\ItsMarley\Desktop\ESET SysInspector.lnk
[2010/08/18 19:31:59 | 000,001,060 | ---- | C] () -- C:\Users\ItsMarley\Desktop\ESET SysRescue.lnk
[2010/08/18 19:31:56 | 000,001,957 | ---- | C] () -- C:\Users\ItsMarley\Desktop\ESET Smart Security.lnk
[2010/08/18 13:09:48 | 000,001,014 | ---- | C] () -- C:\Users\Public\Desktop\Switch to Gaming Mode.lnk
[2010/08/18 13:09:48 | 000,001,006 | ---- | C] () -- C:\Users\Public\Desktop\Game Booster.lnk
[2010/08/18 09:12:29 | 000,000,787 | ---- | C] () -- C:\Users\ItsMarley\Application Data\Microsoft\Internet Explorer\Quick Launch\Opera.lnk
[2010/08/18 09:12:29 | 000,000,763 | ---- | C] () -- C:\Users\Public\Desktop\Opera.lnk
[2010/08/18 02:38:45 | 000,001,065 | ---- | C] () -- C:\Users\ItsMarley\Desktop\Auslogics BoostSpeed.lnk
[2010/08/18 01:43:46 | 000,007,133 | ---- | C] () -- C:\Windows\System32\nvinfo.pb
[2010/08/17 18:03:41 | 000,001,091 | ---- | C] () -- C:\Users\Public\Desktop\War Rock.lnk
[2010/08/17 17:19:16 | 674,581,496 | ---- | C] () -- C:\Users\ItsMarley\Documents\War_Rock_20100722.exe
[2010/08/17 17:18:09 | 000,001,082 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GamersFirst LIVE!.lnk
[2010/08/17 14:54:09 | 000,000,938 | ---- | C] () -- C:\Users\Public\Desktop\Pokemon Online.lnk
[2010/08/17 14:26:49 | 000,001,969 | ---- | C] () -- C:\Users\Public\Desktop\avast! Pro Antivirus.lnk
[2010/08/17 14:08:45 | 000,002,501 | ---- | C] () -- C:\Users\Public\Desktop\Skype.lnk
[2010/08/17 03:02:54 | 000,001,925 | ---- | C] () -- C:\Users\ItsMarley\Desktop\RegistryBooster 2.lnk
[2010/08/17 02:59:54 | 000,000,340 | ---- | C] () -- C:\Windows\tasks\RegistryBooster.job
[2010/08/17 02:28:44 | 000,001,371 | ---- | C] () -- C:\Users\ItsMarley\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2010/08/17 02:24:49 | 000,001,240 | RHS- | C] () -- C:\Users\ItsMarley\ntuser.pol
[2010/08/17 02:24:47 | 001,310,720 | -HS- | C] () -- C:\Users\ItsMarley\NTUSER.DAT
[2010/08/17 02:24:47 | 000,524,288 | -HS- | C] () -- C:\Users\ItsMarley\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000002.regtrans-ms
[2010/08/17 02:24:47 | 000,524,288 | -HS- | C] () -- C:\Users\ItsMarley\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000001.regtrans-ms
[2010/08/17 02:24:47 | 000,262,144 | -HS- | C] () -- C:\Users\ItsMarley\ntuser.dat.LOG1
[2010/08/17 02:24:47 | 000,065,536 | -HS- | C] () -- C:\Users\ItsMarley\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TM.blf
[2010/08/17 02:24:47 | 000,000,290 | ---- | C] () -- C:\Users\ItsMarley\Application Data\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk
[2010/08/17 02:24:47 | 000,000,272 | ---- | C] () -- C:\Users\ItsMarley\Application Data\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk
[2010/08/17 02:24:47 | 000,000,020 | -HS- | C] () -- C:\Users\ItsMarley\ntuser.ini
[2010/08/17 02:24:47 | 000,000,000 | -HS- | C] () -- C:\Users\ItsMarley\ntuser.dat.LOG2
[2010/08/10 15:43:30 | 000,001,430 | ---- | C] () -- C:\Windows\Sandboxie.ini
[2010/08/02 22:03:41 | 000,256,512 | ---- | C] () -- C:\Windows\PEV.exe
[2010/08/02 22:03:41 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2010/08/02 22:03:41 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2010/08/02 22:03:41 | 000,077,312 | ---- | C] () -- C:\Windows\MBR.exe
[2010/08/02 22:03:41 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2010/07/31 03:34:25 | 000,000,943 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/07/31 02:02:09 | 000,000,064 | ---- | C] () -- C:\Windows\tasks\ID.Conf
[2010/07/22 21:53:56 | 000,595,456 | ---- | C] () -- C:\Windows\System32\srgc.dll
[2010/07/21 21:30:23 | 000,000,362 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2010/07/09 18:02:50 | 000,043,520 | ---- | C] () -- C:\Windows\System32\CmdLineExt03.dll
[2010/07/09 16:27:23 | 000,197,120 | ---- | C] () -- C:\Windows\patchw32.dll
[2010/07/07 15:30:57 | 000,001,007 | ---- | C] () -- C:\Windows\FOE2.ini
[2010/07/06 01:04:26 | 000,138,968 | ---- | C] () -- C:\Windows\System32\drivers\PnkBstrK.sys
[2010/03/29 20:51:40 | 000,053,299 | ---- | C] () -- C:\Windows\System32\pthreadVC.dll
[2010/03/16 06:53:38 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2009/07/14 00:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll
[2009/07/14 00:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll
========== Custom Scans ========== < %systemroot%\*. /mp /s > < %systemroot%\system32\*.dll /lockedfiles > < %systemroot%\system32\*.exe /lockedfiles >[2010/06/19 07:33:29 | 003,955,080 | ---- | M] (Microsoft Corporation)
Unable to obtain MD5 -- C:\Windows\System32\ntkrnlpa.exe
< %systemroot%\Tasks\*.job /lockedfiles > < %systemroot%\system32\drivers\*.sys /lockedfiles > < %systemroot%\System32\config\*.sav > < %systemroot%\system32\*.sys >[2009/07/13 22:40:41 | 000,009,029 | ---- | M] () -- C:\Windows\System32\ANSI.SYS
[2009/07/14 02:26:21 | 000,249,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\clfs.sys
[2009/07/13 22:40:44 | 000,027,097 | ---- | M] () -- C:\Windows\System32\country.sys
[2009/07/13 22:40:40 | 000,004,768 | ---- | M] () -- C:\Windows\System32\HIMEM.SYS
[2009/07/13 22:40:43 | 000,042,809 | ---- | M] () -- C:\Windows\System32\KEY01.SYS
[2009/07/13 22:40:43 | 000,042,537 | ---- | M] () -- C:\Windows\System32\KEYBOARD.SYS
[2005/01/02 22:43:08 | 000,004,682 | ---- | M] (INCA Internet Co., Ltd.) -- C:\Windows\System32\npptNT2.sys
[2009/07/13 22:40:23 | 000,027,866 | ---- | M] () -- C:\Windows\System32\NTDOS.SYS
[2009/07/13 22:40:31 | 000,029,146 | ---- | M] () -- C:\Windows\System32\NTDOS404.SYS
[2009/07/13 22:40:35 | 000,029,370 | ---- | M] () -- C:\Windows\System32\NTDOS411.SYS
[2009/07/13 22:40:39 | 000,029,274 | ---- | M] () -- C:\Windows\System32\NTDOS412.SYS
[2009/07/13 22:40:27 | 000,029,146 | ---- | M] () -- C:\Windows\System32\NTDOS804.SYS
[2009/07/13 22:40:11 | 000,033,952 | ---- | M] () -- C:\Windows\System32\NTIO.SYS
[2009/07/13 22:40:15 | 000,034,672 | ---- | M] () -- C:\Windows\System32\NTIO404.SYS
[2009/07/13 22:40:17 | 000,035,776 | ---- | M] () -- C:\Windows\System32\NTIO411.SYS
[2009/07/13 22:40:19 | 000,035,536 | ---- | M] () -- C:\Windows\System32\NTIO412.SYS
[2009/07/13 22:40:13 | 000,034,672 | ---- | M] () -- C:\Windows\System32\NTIO804.SYS
[2010/06/19 05:07:18 | 002,326,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
< %systemroot%\system32\drivers\*.dll > < %systemroot%\system32\drivers\*.ini > < %systemroot%\system32\drivers\*.exe > < %SYSTEMDRIVE%\*.* >[2009/06/10 22:42:20 | 000,000,024 | ---- | M] () -- C:\autoexec.bat
[2009/07/14 02:38:58 | 000,383,562 | RHS- | M] () -- C:\bootmgr
[2010/03/16 05:45:14 | 000,008,192 | RHS- | M] () -- C:\BOOTSECT.BAK
[2009/06/10 22:42:20 | 000,000,010 | ---- | M] () -- C:\config.sys
[2009/08/02 15:44:10 | 000,171,136 | RHS- | M] () -- C:\grldr
[2010/08/21 23:17:45 | 2413,719,552 | -HS- | M] () -- C:\hiberfil.sys
[2008/12/13 14:04:03 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2008/11/12 18:29:41 | 000,000,377 | -H-- | M] () -- C:\IPH.PH
[2008/12/13 14:04:03 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2009/10/26 23:14:39 | 000,000,615 | -H-- | M] () -- C:\os604495.bin
[2010/08/21 23:17:49 | 3218,296,832 | -HS- | M] () -- C:\pagefile.sys
[2009/07/17 02:21:25 | 000,000,000 | -H-- | M] () -- C:\ProgramData.LOG1
[2009/07/17 02:21:25 | 000,000,000 | -H-- | M] () -- C:\ProgramData.LOG2
< %PROGRAMFILES%\*. >[2010/05/06 08:35:10 | 000,000,000 | ---D | M] -- C:\Program Files\Adobe
[2010/07/31 11:25:45 | 000,000,000 | ---D | M] -- C:\Program Files\Advanced Access Controller
[2010/08/17 14:25:58 | 000,000,000 | ---D | M] -- C:\Program Files\Alwil Software
[2010/05/06 08:43:21 | 000,000,000 | ---D | M] -- C:\Program Files\Apple Software Update
[2010/05/06 08:43:21 | 000,000,000 | ---D | M] -- C:\Program Files\Ares
[2010/07/09 16:23:17 | 000,000,000 | ---D | M] -- C:\Program Files\Atari
[2010/08/18 02:38:38 | 000,000,000 | ---D | M] -- C:\Program Files\Auslogics
[2010/07/31 11:25:45 | 000,000,000 | ---D | M] -- C:\Program Files\Automated Result Operator
[2010/07/31 03:16:34 | 000,000,000 | ---D | M] -- C:\Program Files\AVG
[2010/07/31 03:36:52 | 000,000,000 | ---D | M] -- C:\Program Files\AxBx
[2010/08/17 02:49:50 | 000,000,000 | ---D | M] -- C:\Program Files\CCleaner
[2010/08/18 01:44:17 | 000,000,000 | ---D | M] -- C:\Program Files\Common Files
[2010/08/10 15:38:56 | 000,000,000 | ---D | M] -- C:\Program Files\Conduit
[2010/08/17 20:00:11 | 000,000,000 | ---D | M] -- C:\Program Files\Conquer Online 2.0
[2010/07/31 11:25:45 | 000,000,000 | ---D | M] -- C:\Program Files\Count Access Advancer
[2010/07/31 11:25:45 | 000,000,000 | ---D | M] -- C:\Program Files\Customized Web Management
[2010/05/21 08:39:13 | 000,000,000 | ---D | M] -- C:\Program Files\DivX
[2010/03/16 22:01:03 | 000,000,000 | ---D | M] -- C:\Program Files\DNA
[2009/07/14 08:50:29 | 000,000,000 | ---D | M] -- C:\Program Files\DVD Maker
[2010/08/17 14:43:30 | 000,000,000 | ---D | M] -- C:\Program Files\DVDVideoSoft
[2010/08/18 19:31:50 | 000,000,000 | ---D | M] -- C:\Program Files\ESET
[2010/08/17 17:34:10 | 000,000,000 | ---D | M] -- C:\Program Files\GamersFirst
[2010/08/19 23:04:11 | 000,000,000 | ---D | M] -- C:\Program Files\Google
[2010/08/10 01:11:15 | 000,000,000 | -H-D | M] -- C:\Program Files\InstallShield Installation Information
[2010/07/31 04:01:27 | 000,000,000 | ---D | M] -- C:\Program Files\Internet Connection Wizard
[2010/07/31 11:25:45 | 000,000,000 | ---D | M] -- C:\Program Files\Internet Content Assistant
[2010/08/12 20:50:32 | 000,000,000 | ---D | M] -- C:\Program Files\Internet Explorer
[2010/08/18 13:09:47 | 000,000,000 | ---D | M] -- C:\Program Files\IObit
[2010/03/28 03:01:49 | 000,000,000 | ---D | M] -- C:\Program Files\IVT Corporation
[2010/05/29 10:24:55 | 000,000,000 | ---D | M] -- C:\Program Files\Java
[2010/07/31 03:34:53 | 000,000,000 | ---D | M] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010/05/06 09:00:47 | 000,000,000 | ---D | M] -- C:\Program Files\McAfee Security Scan
[2010/05/06 08:48:06 | 000,000,000 | ---D | M] -- C:\Program Files\Messenger Plus! Live
[2010/08/10 15:55:07 | 000,000,000 | ---D | M] -- C:\Program Files\Metasploit
[2010/03/16 06:38:15 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft
[2010/04/11 01:35:11 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Analysis Services
[2010/05/20 06:51:17 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Application Virtualization Client
[2010/03/16 22:29:35 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft DirectX SDK (February 2010)
[2009/07/14 08:50:24 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Games
[2010/04/11 01:38:06 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Office
[2010/07/20 05:58:56 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft SDKs
[2010/06/05 05:02:19 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Silverlight
[2010/05/06 09:43:43 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft SQL Server Compact Edition
[2010/03/16 06:39:13 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Sync Framework
[2010/07/20 06:03:52 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Synchronization Services
[2010/07/20 06:03:57 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Visual Studio 9.0
[2010/08/08 03:29:41 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft.NET
[2009/07/14 05:52:30 | 000,000,000 | ---D | M] -- C:\Program Files\MSBuild
[2010/05/08 01:42:11 | 000,000,000 | ---D | M] -- C:\Program Files\Norton Security Scan
[2010/05/08 01:42:09 | 000,000,000 | ---D | M] -- C:\Program Files\NortonInstaller
[2010/08/18 01:43:46 | 000,000,000 | ---D | M] -- C:\Program Files\NVIDIA Corporation
[2010/08/18 09:12:30 | 000,000,000 | ---D | M] -- C:\Program Files\Opera
[2010/05/23 07:24:48 | 000,000,000 | ---D | M] -- C:\Program Files\Pando Networks
[2010/04/26 21:49:44 | 000,000,000 | ---D | M] -- C:\Program Files\PC Connectivity Solution
[2009/07/14 05:52:30 | 000,000,000 | ---D | M] -- C:\Program Files\Reference Assemblies
[2010/08/17 03:02:54 | 000,000,000 | ---D | M] -- C:\Program Files\RegistryBooster 2
[2010/06/14 03:15:41 | 000,000,000 | ---D | M] -- C:\Program Files\Shoddy Battle
[2010/07/31 15:53:27 | 000,000,000 | R--D | M] -- C:\Program Files\Skype
[2010/03/18 01:12:07 | 000,000,000 | ---D | M] -- C:\Program Files\Sun
[2010/05/06 08:43:29 | 000,000,000 | ---D | M] -- C:\Program Files\SystemRequirementsLab
[2010/05/07 10:26:08 | 000,000,000 | ---D | M] -- C:\Program Files\TortoiseSVN
[2010/07/31 12:43:59 | 000,000,000 | ---D | M] -- C:\Program Files\Trend Micro
[2010/08/17 02:59:48 | 000,000,000 | ---D | M] -- C:\Program Files\Uniblue
[2009/07/14 05:53:23 | 000,000,000 | -H-D | M] -- C:\Program Files\Uninstall Information
[2009/07/14 05:56:49 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Defender
[2009/07/14 08:50:04 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Journal
[2010/05/06 09:45:53 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Live
[2010/03/16 06:37:52 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Live SkyDrive
[2010/05/13 11:37:21 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Mail
[2010/05/06 08:43:48 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Media Player
[2009/07/14 05:52:30 | 000,000,000 | ---D | M] -- C:\Program Files\Windows NT
[2009/07/14 05:56:49 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Photo Viewer
[2009/07/14 05:52:32 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Portable Devices
[2009/07/14 05:56:49 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Sidebar
[2010/03/16 07:19:46 | 000,000,000 | ---D | M] -- C:\Program Files\WinRAR
< %appdata%\*.* > < MD5 for: AGP440.SYS >[2008/01/21 03:23:01 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Organized\Windows.old\Windows\System32\drivers\AGP440.sys
[2008/01/21 03:23:01 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Organized\Windows.old\Windows\System32\DriverStore\FileRepository\machine.inf_f750e484\AGP440.sys
[2008/01/21 03:23:01 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Organized\Windows.old\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6001.18000_none_ba12ed3bbeb0d97a\AGP440.sys
[2009/07/14 02:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- C:\Windows\ERDNT\cache\AGP440.sys
[2009/07/14 02:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- C:\Windows\System32\drivers\AGP440.sys
[2009/07/14 02:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_x86_neutral_65848c2d7375a720\AGP440.sys
[2009/07/14 02:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_b9e9435f20046eeb\AGP440.sys
[2006/11/02 10:49:52 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=EF23439CDD587F64C2C1B8825CEAD7D8 -- C:\Organized\Windows.old\Windows\System32\DriverStore\FileRepository\machine.inf_920a2c1f\AGP440.sys
< MD5 for: ATAPI.SYS >[2008/01/21 03:23:00 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Organized\Windows.old\Windows\System32\drivers\atapi.sys
[2008/01/21 03:23:00 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Organized\Windows.old\Windows\System32\DriverStore\FileRepository\mshdc.inf_cc18792d\atapi.sys
[2008/01/21 03:23:00 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Organized\Windows.old\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6001.18000_none_dd38281a2189ce9c\atapi.sys
[2009/07/14 02:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\ERDNT\cache\atapi.sys
[2009/07/14 02:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\System32\drivers\atapi.sys
[2009/07/14 02:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_x86_neutral_f64b9c35a3a5be81\atapi.sys
[2009/07/14 02:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_dd0e7e3d82dd640d\atapi.sys
[2006/11/02 10:49:36 | 000,019,048 | ---- | M] (Microsoft Corporation) MD5=4F4FCB8B6EA06784FB6D475B7EC7300F -- C:\Organized\Windows.old\Windows\System32\DriverStore\FileRepository\mshdc.inf_c6c2e699\atapi.sys
< MD5 for: CNGAUDIT.DLL >[2009/07/14 02:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\ERDNT\cache\cngaudit.dll
[2009/07/14 02:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\System32\cngaudit.dll
[2009/07/14 02:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_e83a414890e8132b\cngaudit.dll
[2006/11/02 10:46:03 | 000,011,776 | ---- | M] (Microsoft Corporation) MD5=7F15B4953378C8B5161D65C26D5FED4D -- C:\Organized\Windows.old\Windows\System32\cngaudit.dll
[2006/11/02 10:46:03 | 000,011,776 | ---- | M] (Microsoft Corporation) MD5=7F15B4953378C8B5161D65C26D5FED4D -- C:\Organized\Windows.old\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.0.6000.16386_none_e62d292932a96ce6\cngaudit.dll
< MD5 for: DISK.SYS >[2009/07/14 02:20:27 | 000,057,424 | ---- | M] (Microsoft Corporation) MD5=565003F326F99802E68CA78F2A68E9FF -- C:\Windows\System32\drivers\disk.sys
[2009/07/14 02:20:27 | 000,057,424 | ---- | M] (Microsoft Corporation) MD5=565003F326F99802E68CA78F2A68E9FF -- C:\Windows\System32\DriverStore\FileRepository\disk.inf_x86_neutral_b431b61a11f8df6c\disk.sys
[2009/07/14 02:20:27 | 000,057,424 | ---- | M] (Microsoft Corporation) MD5=565003F326F99802E68CA78F2A68E9FF -- C:\Windows\winsxs\x86_disk.inf_31bf3856ad364e35_6.1.7600.16385_none_f99cd807d58018cb\disk.sys
[2008/01/21 03:23:20 | 000,055,352 | ---- | M] (Microsoft Corporation) MD5=64109E623ABD6955C8FB110B592E68B7 -- C:\Organized\Windows.old\Windows\System32\drivers\disk.sys
[2008/01/21 03:23:20 | 000,055,352 | ---- | M] (Microsoft Corporation) MD5=64109E623ABD6955C8FB110B592E68B7 -- C:\Organized\Windows.old\Windows\System32\DriverStore\FileRepository\disk.inf_90722180\disk.sys
[2008/01/21 03:23:20 | 000,055,352 | ---- | M] (Microsoft Corporation) MD5=64109E623ABD6955C8FB110B592E68B7 -- C:\Organized\Windows.old\Windows\winsxs\x86_disk.inf_31bf3856ad364e35_6.0.6001.18000_none_f9c681e4742c835a\disk.sys
[2006/11/02 10:49:51 | 000,052,840 | ---- | M] (Microsoft Corporation) MD5=841AF4C4D41D3E3B2F244E976B0F7963 -- C:\Organized\Windows.old\Windows\System32\DriverStore\FileRepository\disk.inf_e0b0b355\disk.sys
< MD5 for: EVENTLOG.DLL >[2007/01/12 21:30:08 | 000,007,216 | ---- | M] () MD5=C2A279A458A06DE2C83D842AA042B5A8 -- C:\Organized\Windows.old\Program Files\CyberLink\PowerDirector\EventLog.dll
< MD5 for: IASTOR.SYS >[2008/04/15 16:54:16 | 000,388,120 | ---- | M] (Intel Corporation) MD5=8D58627FEF3F8767665D9F4DC91CBD97 -- C:\Organized\Windows.old\Program Files\Intel\Intel Matrix Storage Manager\driver64\IaStor.sys
[2008/04/15 16:53:44 | 000,312,344 | ---- | M] (Intel Corporation) MD5=DB0CC620B27A928D968C1A1E9CD9CB87 -- C:\Organized\Windows.old\Program Files\Intel\Intel Matrix Storage Manager\driver\IaStor.sys
[2008/04/15 16:53:44 | 000,312,344 | ---- | M] (Intel Corporation) MD5=DB0CC620B27A928D968C1A1E9CD9CB87 -- C:\Organized\Windows.old\Windows\System32\drivers\iaStor.sys
[2008/04/15 16:53:44 | 000,312,344 | ---- | M] (Intel Corporation) MD5=DB0CC620B27A928D968C1A1E9CD9CB87 -- C:\Organized\Windows.old\Windows\System32\DriverStore\FileRepository\iaahci.inf_77c04a30\iaStor.sys
< MD5 for: IASTORV.SYS >[2008/01/21 03:23:23 | 000,235,064 | ---- | M] (Intel Corporation) MD5=54155EA1B0DF185878E0FC9EC3AC3A14 -- C:\Organized\Windows.old\Windows\System32\drivers\iaStorV.sys
[2008/01/21 03:23:23 | 000,235,064 | ---- | M] (Intel Corporation) MD5=54155EA1B0DF185878E0FC9EC3AC3A14 -- C:\Organized\Windows.old\Windows\System32\DriverStore\FileRepository\iastorv.inf_c9df7691\iaStorV.sys
[2008/01/21 03:23:23 | 000,235,064 | ---- | M] (Intel Corporation) MD5=54155EA1B0DF185878E0FC9EC3AC3A14 -- C:\Organized\Windows.old\Windows\winsxs\x86_iastorv.inf_31bf3856ad364e35_6.0.6001.18000_none_af11527887c7fa8f\iaStorV.sys
[2009/07/14 02:20:36 | 000,332,352 | ---- | M] (Intel Corporation) MD5=934AF4D7C5F457B9F0743F4299B77B67 -- C:\Windows\System32\drivers\iaStorV.sys
[2009/07/14 02:20:36 | 000,332,352 | ---- | M] (Intel Corporation) MD5=934AF4D7C5F457B9F0743F4299B77B67 -- C:\Windows\System32\DriverStore\FileRepository\iastorv.inf_x86_neutral_18cccb83b34e1453\iaStorV.sys
[2009/07/14 02:20:36 | 000,332,352 | ---- | M] (Intel Corporation) MD5=934AF4D7C5F457B9F0743F4299B77B67 -- C:\Windows\winsxs\x86_iastorv.inf_31bf3856ad364e35_6.1.7600.16385_none_aee7a89be91b9000\iaStorV.sys
[2006/11/02 10:51:25 | 000,232,040 | ---- | M] (Intel Corporation) MD5=C957BF4B5D80B46C5017BF0101E6C906 -- C:\Organized\Windows.old\Windows\System32\DriverStore\FileRepository\iastorv.inf_37cdafa4\iaStorV.sys
< MD5 for: NETLOGON.DLL >[2008/01/21 03:24:05 | 000,592,384 | ---- | M] (Microsoft Corporation) MD5=A8EFC0B6E75B789F7FD3BA5025D4E37F -- C:\Organized\Windows.old\Windows\System32\netlogon.dll
[2008/01/21 03:24:05 | 000,592,384 | ---- | M] (Microsoft Corporation) MD5=A8EFC0B6E75B789F7FD3BA5025D4E37F -- C:\Organized\Windows.old\Windows\winsxs\x86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.0.6001.18000_none_fdb7b74337f9e857\netlogon.dll
[2009/07/14 02:16:02 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 -- C:\Windows\ERDNT\cache\netlogon.dll
[2009/07/14 02:16:02 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 -- C:\Windows\System32\netlogon.dll
[2009/07/14 02:16:02 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 -- C:\Windows\winsxs\x86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7600.16385_none_fd8e0d66994d7dc8\netlogon.dll
< MD5 for: NVSTOR.SYS >[2006/11/02 10:50:13 | 000,040,040 | ---- | M] (NVIDIA Corporation) MD5=9E0BA19A28C498A6D323D065DB76DFFC -- C:\Organized\Windows.old\Windows\System32\DriverStore\FileRepository\nvraid.inf_733654ff\nvstor.sys
[2008/01/21 03:23:21 | 000,045,112 | ---- | M] (NVIDIA Corporation) MD5=ABED0C09758D1D97DB0042DBB2688177 -- C:\Organized\Windows.old\Windows\System32\drivers\nvstor.sys
[2008/01/21 03:23:21 | 000,045,112 | ---- | M] (NVIDIA Corporation) MD5=ABED0C09758D1D97DB0042DBB2688177 -- C:\Organized\Windows.old\Windows\System32\DriverStore\FileRepository\nvraid.inf_31c3d71d\nvstor.sys
[2008/01/21 03:23:21 | 000,045,112 | ---- | M] (NVIDIA Corporation) MD5=ABED0C09758D1D97DB0042DBB2688177 -- C:\Organized\Windows.old\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.0.6001.18000_none_39dac327befea467\nvstor.sys
[2009/07/14 02:20:44 | 000,142,416 | ---- | M] (NVIDIA Corporation) MD5=C99F251A5DE63C6F129CF71933ACED0F -- C:\Windows\System32\drivers\nvstor.sys
[2009/07/14 02:20:44 | 000,142,416 | ---- | M] (NVIDIA Corporation) MD5=C99F251A5DE63C6F129CF71933ACED0F -- C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_x86_neutral_5bde3fe2945bce9e\nvstor.sys
[2009/07/14 02:20:44 | 000,142,416 | ---- | M] (NVIDIA Corporation) MD5=C99F251A5DE63C6F129CF71933ACED0F -- C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.1.7600.16385_none_39b1194b205239d8\nvstor.sys
< MD5 for: SCECLI.DLL >[2009/07/14 02:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\ERDNT\cache\scecli.dll
[2009/07/14 02:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\System32\scecli.dll
[2009/07/14 02:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_37e4387f3a6f0483\scecli.dll
[2008/01/21 03:24:50 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=28B84EB538F7E8A0FE8B9299D591E0B9 -- C:\Organized\Windows.old\Windows\System32\scecli.dll
[2008/01/21 03:24:50 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=28B84EB538F7E8A0FE8B9299D591E0B9 -- C:\Organized\Windows.old\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.0.6001.18000_none_380de25bd91b6f12\scecli.dll
< MD5 for: USBSTOR.SYS >[2008/01/21 03:23:24 | 000,055,296 | ---- | M] (Microsoft Corporation) MD5=87BA6B83C5D19B69160968D07D6E2982 -- C:\Organized\Windows.old\Windows\System32\drivers\USBSTOR.SYS
[2008/01/21 03:23:24 | 000,055,296 | ---- | M] (Microsoft Corporation) MD5=87BA6B83C5D19B69160968D07D6E2982 -- C:\Organized\Windows.old\Windows\System32\DriverStore\FileRepository\usbstor.inf_b9f18584\USBSTOR.SYS
[2008/01/21 03:23:24 | 000,055,296 | ---- | M] (Microsoft Corporation) MD5=87BA6B83C5D19B69160968D07D6E2982 -- C:\Organized\Windows.old\Windows\winsxs\x86_usbstor.inf_31bf3856ad364e35_6.0.6001.18000_none_48864eb697d31b43\USBSTOR.SYS
[2009/07/14 00:51:19 | 000,074,752 | ---- | M] (Microsoft Corporation) MD5=D8889D56E0D27E57ED4591837FE71D27 -- C:\Windows\System32\drivers\USBSTOR.SYS
[2009/07/14 00:51:19 | 000,074,752 | ---- | M] (Microsoft Corporation) MD5=D8889D56E0D27E57ED4591837FE71D27 -- C:\Windows\System32\DriverStore\FileRepository\usbstor.inf_x86_neutral_83027f5d5b2468d3\USBSTOR.SYS
[2009/07/14 00:51:19 | 000,074,752 | ---- | M] (Microsoft Corporation) MD5=D8889D56E0D27E57ED4591837FE71D27 -- C:\Windows\winsxs\x86_usbstor.inf_31bf3856ad364e35_6.1.7600.16385_none_485ca4d9f926b0b4\USBSTOR.SYS
[2006/11/02 09:55:05 | 000,054,784 | ---- | M] (Microsoft Corporation) MD5=FDBAABF07244C60B0F4E0A6E71A107C6 -- C:\Organized\Windows.old\Windows\System32\DriverStore\FileRepository\usbstor.inf_bb2778a0\USBSTOR.SYS
< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2010-08-19 14:57:49
========== Alternate Data Streams ========== @Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:07BF512B
< End of report >
............................................................................................