========== Files/Folders - Created Within 30 Days ==========
[2010/09/04 06:28:56 | 000,574,976 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Owner.Owner\Desktop\OTL.com
[2010/09/04 06:09:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Owner.Owner\Desktop\JavaRa[1]
[2010/09/04 05:47:11 | 000,153,376 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe
[2010/09/04 05:47:10 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe
[2010/09/04 05:47:10 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe
[2010/09/03 22:58:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Owner.Owner\My Documents\Large Docs Archives my pubs mss Raffel mss etc
[2010/09/02 14:05:58 | 000,000,000 | ---D | C] -- C:\WINDOWS\SxsCaPendDel
[2010/09/01 13:40:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\pss
[2010/09/01 13:35:27 | 000,000,000 | -HSD | C] -- C:\WINDOWS\CSC
[2010/09/01 13:25:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Owner.Owner\Application Data\Malwarebytes
[2010/09/01 13:24:51 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010/09/01 13:24:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2010/09/01 13:24:49 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2010/09/01 13:24:49 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010/08/31 00:06:25 | 000,069,936 | ---- | C] (Sunbelt Software) -- C:\WINDOWS\System32\drivers\sbapifs.sys
[2010/08/31 00:06:25 | 000,013,360 | ---- | C] (Sunbelt Software) -- C:\WINDOWS\System32\drivers\sbaphd.sys
[2010/08/30 03:18:02 | 000,000,000 | ---D | C] -- C:\Program Files\Browser Mouse
[2010/08/30 02:57:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Owner.Owner\My Documents\HardwareHelper
[2010/08/29 21:09:12 | 000,000,000 | ---D | C] -- C:\Program Files\BellSouthWCC
[2010/08/29 19:24:47 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\{52AC600B-5800-407E-99FF-83CD0669760B}
[2010/08/28 20:26:34 | 000,000,000 | ---D | C] -- C:\Program Files\Sapro Systems WinCalendar
[2010/08/28 15:20:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Owner.Owner\Desktop\downloaded from eecu on 082810
[2010/08/21 21:42:40 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\CanonIJEGV
[2010/08/21 20:42:24 | 001,310,720 | ---- | C] (CANON INC.) -- C:\WINDOWS\System32\CNC560C.dll
[2010/08/21 20:42:24 | 000,303,104 | ---- | C] (CANON INC.) -- C:\WINDOWS\System32\CNC560L.dll
[2010/08/21 20:42:24 | 000,110,592 | ---- | C] (CANON INC.) -- C:\WINDOWS\System32\CNC560I.dll
[2010/08/21 20:42:24 | 000,106,496 | ---- | C] (CANON INC.) -- C:\WINDOWS\System32\CNC560U.dll
[2010/08/21 20:42:24 | 000,015,872 | ---- | C] (CANON INC.) -- C:\WINDOWS\System32\CNHMCA.dll
[2010/08/21 20:40:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Owner.Owner\Application Data\Canon Easy-WebPrint EX
[2010/08/21 20:38:00 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\CANON
[2010/08/21 20:34:02 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\CanonBJ
[2010/08/21 20:33:48 | 000,272,384 | ---- | C] (CANON INC.) -- C:\WINDOWS\System32\CNMLMA0.DLL
[2010/08/21 20:33:45 | 000,000,000 | -H-D | C] -- C:\WINDOWS\System32\CanonIJ Uninstaller Information
[2010/08/21 20:33:28 | 000,178,176 | ---- | C] (CANON INC.) -- C:\WINDOWS\System32\CNMIUA0.DLL
[2010/08/21 20:33:16 | 000,000,000 | -H-D | C] -- C:\Program Files\CanonBJ
[2010/08/21 20:33:03 | 000,137,216 | ---- | C] (CANON INC.) -- C:\WINDOWS\System32\CNMNPUI.DLL
[2010/08/21 20:33:03 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\STRING
[2010/08/21 20:33:02 | 000,353,792 | ---- | C] (CANON INC.) -- C:\WINDOWS\System32\CNMNPPM.DLL
[2010/08/21 20:33:01 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CHM
[2010/08/21 20:19:08 | 000,000,000 | ---D | C] -- C:\Program Files\Canon
[2010/08/21 18:27:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Owner.Owner\Application Data\Motive
[2010/08/21 18:19:06 | 000,000,000 | ---D | C] -- C:\Program Files\ATT-SST
[2010/08/21 18:14:32 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Motive
[2010/08/21 18:14:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Motive
[2010/08/20 00:00:30 | 000,064,288 | ---- | C] (Lavasoft AB) -- C:\WINDOWS\System32\drivers\Lbd.sys
[2010/08/20 00:00:26 | 000,095,024 | ---- | C] (Sunbelt Software) -- C:\WINDOWS\System32\drivers\SBREDrv.sys
[2010/08/19 23:45:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Owner.Owner\Local Settings\Application Data\Sunbelt Software
[2010/08/19 23:43:27 | 000,000,000 | ---D | C] -- C:\Program Files\Lavasoft
[2010/08/19 23:43:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Lavasoft
[2010/08/16 21:14:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Owner.Owner\My Documents\Adobe Scripts
[2010/08/15 14:13:29 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Owner.Owner\Recent
[2010/08/14 21:59:16 | 002,288,616 | ---- | C] (ParetoLogic Inc.) -- C:\Documents and Settings\Owner.Owner\Desktop\ParetoLogic FileCure.exe
[2010/08/13 19:15:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Owner.Owner\Desktop\Audacity program and manual
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2010/09/04 06:30:02 | 000,000,472 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Daily 4).job
[2010/09/04 06:30:02 | 000,000,472 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Daily 3).job
[2010/09/04 06:30:02 | 000,000,472 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Daily 2).job
[2010/09/04 06:30:02 | 000,000,472 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Daily 1).job
[2010/09/04 06:30:02 | 000,000,466 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Scan (Weekly scan).job
[2010/09/04 06:30:02 | 000,000,462 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Scan (Daily Scan).job
[2010/09/04 06:28:59 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Owner.Owner\Desktop\OTL.com
[2010/09/04 06:25:57 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010/09/04 04:05:41 | 000,002,533 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\Application Data\Microsoft\Internet Explorer\Quick Launch\Microsoft Office Word 2007.lnk
[2010/09/03 12:16:29 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010/09/03 12:16:09 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010/09/03 06:45:39 | 008,650,752 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\NTUSER.DAT
[2010/09/03 06:45:39 | 000,000,178 | -HS- | M] () -- C:\Documents and Settings\Owner.Owner\ntuser.ini
[2010/09/03 06:45:24 | 006,291,456 | -H-- | M] () -- C:\Documents and Settings\Owner.Owner\Local Settings\Application Data\IconCache.db
[2010/09/03 06:44:35 | 000,000,115 | ---- | M] () -- C:\WINDOWS\System32\_WKERNEL.SYL
[2010/09/03 02:53:55 | 000,000,036 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\Local Settings\Application Data\housecall.guid.cache
[2010/09/02 20:41:19 | 000,012,836 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\Desktop\Points FA 10.docx
[2010/09/02 20:34:52 | 002,614,725 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\Desktop\ad_aware_manual.pdf
[2010/09/02 14:24:17 | 000,015,880 | ---- | M] () -- C:\WINDOWS\System32\lsdelete.exe
[2010/09/02 04:51:24 | 000,012,598 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\My Documents\post on movie called two thirty-seven.docx
[2010/09/02 04:51:24 | 000,000,162 | -H-- | M] () -- C:\Documents and Settings\Owner.Owner\My Documents\~$st on movie called two thirty-seven.docx
[2010/09/01 14:40:36 | 000,000,795 | ---- | M] () -- C:\WINDOWS\win.ini
[2010/09/01 14:40:36 | 000,000,282 | ---- | M] () -- C:\WINDOWS\system.ini
[2010/09/01 14:40:36 | 000,000,209 | -HS- | M] () -- C:\boot.ini
[2010/09/01 13:30:16 | 000,004,530 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\Desktop\csv-26018433-133004-2028.pdf
[2010/09/01 01:04:12 | 000,022,491 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\My Documents\Good movies.docx
[2010/08/31 12:39:07 | 000,000,124 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\Desktop\Shortcut to Control Panel.lnk
[2010/08/30 20:57:22 | 000,100,614 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\Desktop\CFP Jo of Hi Ed.pdf
[2010/08/30 13:49:54 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\UMDF\Msft_User_WpdMtpDr_01_00_00.Wdf
[2010/08/29 19:36:11 | 000,064,288 | ---- | M] (Lavasoft AB) -- C:\WINDOWS\System32\drivers\Lbd.sys
[2010/08/29 19:24:45 | 000,000,885 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\Application Data\Microsoft\Internet Explorer\Quick Launch\Ad-Aware.lnk
[2010/08/29 19:24:45 | 000,000,867 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Ad-Aware.lnk
[2010/08/28 21:19:03 | 000,455,701 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\Desktop\eBookAgreement-6053448.pdf
[2010/08/28 21:18:46 | 000,273,592 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\Desktop\IRSw9.pdf
[2010/08/28 21:18:32 | 000,424,066 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\Desktop\USPODAgreement-6053448.pdf
[2010/08/28 20:35:44 | 000,002,515 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\Desktop\Microsoft Office Word 2007.lnk
[2010/08/28 20:26:36 | 000,001,722 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\Desktop\WinCalendar.lnk
[2010/08/27 14:22:42 | 000,246,429 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\Desktop\Public Affairs Intensive Experiences[1].pdf
[2010/08/25 10:41:10 | 000,001,729 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Adobe Reader 9.lnk
[2010/08/23 21:06:14 | 000,055,161 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\Desktop\Bb each new semester Steps to complete.docx
[2010/08/22 20:52:19 | 000,011,895 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\My Documents\mlb.docx
[2010/08/21 20:48:53 | 000,010,864 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\My Documents\Canon Printer Setup Results stats.docx
[2010/08/21 20:42:51 | 000,001,662 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Canon IJ Network Tool.lnk
[2010/08/21 20:40:15 | 000,001,685 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Canon MP560 series User Registration.LNK
[2010/08/21 20:37:47 | 000,001,680 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Canon Solution Menu.lnk
[2010/08/21 20:37:32 | 000,001,734 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Canon Easy-PhotoPrint EX.lnk
[2010/08/21 20:35:46 | 000,001,736 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Canon MP Navigator EX 3.0.lnk
[2010/08/21 20:35:06 | 000,001,652 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Canon My Printer.lnk
[2010/08/21 20:34:46 | 000,001,967 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Canon MP560 series On-screen Manual.lnk
[2010/08/21 19:17:14 | 000,014,201 | -H-- | M] () -- C:\Documents and Settings\Owner.Owner\My Documents\ATandT shady oaks internet info.docx
[2010/08/21 18:21:14 | 000,001,767 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\AT&T Self Support Tool.lnk
[2010/08/20 10:56:45 | 000,001,917 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2010/08/20 02:50:53 | 000,012,522 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\My Documents\Fall 2010 MWF class calendar.docx
[2010/08/20 00:00:26 | 000,095,024 | ---- | M] (Sunbelt Software) -- C:\WINDOWS\System32\drivers\SBREDrv.sys
[2010/08/19 04:42:44 | 000,070,845 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\Desktop\Fall_2010_Final_Examination_Period.pdf
[2010/08/18 14:34:11 | 000,025,589 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\My Documents\second Nathan blog.docx
[2010/08/18 13:09:33 | 000,028,170 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\My Documents\Salt tips for cleaning health and beauty etc.docx
[2010/08/16 13:10:48 | 000,001,486 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\Application Data\Microsoft\Internet Explorer\Quick Launch\Calculator.lnk
[2010/08/14 21:59:33 | 002,288,616 | ---- | M] (ParetoLogic Inc.) -- C:\Documents and Settings\Owner.Owner\Desktop\ParetoLogic FileCure.exe
[2010/08/14 00:19:53 | 000,014,217 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\My Documents\msg to friends re Nathans book.docx
[2010/08/13 22:28:40 | 000,000,061 | ---- | M] () -- C:\WINDOWS\TaxACT09.ini
[2010/08/13 01:26:21 | 000,011,926 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\My Documents\Spring 2011 schedule.docx
[2010/08/13 01:25:30 | 000,000,162 | -H-- | M] () -- C:\Documents and Settings\Owner.Owner\My Documents\~$ring 2011 schedule.docx
[2010/08/12 23:22:59 | 000,022,746 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\My Documents\printers.docx
[2010/08/12 19:19:17 | 000,531,380 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\Desktop\Public Affairs Week 2010 flyer Women Leading in a Global Society[1].pdf
[2010/08/11 01:48:12 | 000,000,857 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\Desktop\Shortcut to Photoshop.lnk
[2010/08/11 00:04:25 | 002,070,808 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010/08/10 23:57:57 | 000,506,068 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010/08/10 23:57:57 | 000,444,596 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010/08/10 23:57:57 | 000,072,306 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010/08/10 23:17:51 | 000,000,221 | ---- | M] () -- C:\WINDOWS\HP_RedboxHprblog_HPSU.ini
[2010/08/09 05:21:51 | 000,012,536 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\My Documents\Kahlil Gibran Winter.docx
[2010/08/07 21:11:05 | 000,374,014 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\My Documents\photo of dr nathan and his puppy.docx
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2010/09/04 06:29:56 | 000,000,472 | ---- | C] () -- C:\WINDOWS\tasks\Ad-Aware Update (Daily 4).job
[2010/09/04 06:29:56 | 000,000,472 | ---- | C] () -- C:\WINDOWS\tasks\Ad-Aware Update (Daily 3).job
[2010/09/04 06:29:56 | 000,000,472 | ---- | C] () -- C:\WINDOWS\tasks\Ad-Aware Update (Daily 2).job
[2010/09/04 06:29:56 | 000,000,472 | ---- | C] () -- C:\WINDOWS\tasks\Ad-Aware Update (Daily 1).job
[2010/09/04 06:29:56 | 000,000,466 | ---- | C] () -- C:\WINDOWS\tasks\Ad-Aware Scan (Weekly scan).job
[2010/09/04 06:29:55 | 000,000,462 | ---- | C] () -- C:\WINDOWS\tasks\Ad-Aware Scan (Daily Scan).job
[2010/09/03 02:53:55 | 000,000,036 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\Local Settings\Application Data\housecall.guid.cache
[2010/09/02 15:27:41 | 002,614,725 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\Desktop\ad_aware_manual.pdf
[2010/09/02 04:51:24 | 000,000,162 | -H-- | C] () -- C:\Documents and Settings\Owner.Owner\My Documents\~$st on movie called two thirty-seven.docx
[2010/09/02 04:51:21 | 000,012,598 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\My Documents\post on movie called two thirty-seven.docx
[2010/09/01 13:30:15 | 000,004,530 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\Desktop\csv-26018433-133004-2028.pdf
[2010/08/31 12:39:07 | 000,000,124 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\Desktop\Shortcut to Control Panel.lnk
[2010/08/30 20:57:22 | 000,100,614 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\Desktop\CFP Jo of Hi Ed.pdf
[2010/08/29 19:24:45 | 000,000,885 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\Application Data\Microsoft\Internet Explorer\Quick Launch\Ad-Aware.lnk
[2010/08/29 19:24:45 | 000,000,867 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Ad-Aware.lnk
[2010/08/29 18:07:15 | 000,015,880 | ---- | C] () -- C:\WINDOWS\System32\lsdelete.exe
[2010/08/28 21:18:54 | 000,455,701 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\Desktop\eBookAgreement-6053448.pdf
[2010/08/28 21:18:41 | 000,273,592 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\Desktop\IRSw9.pdf
[2010/08/28 21:18:25 | 000,424,066 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\Desktop\USPODAgreement-6053448.pdf
[2010/08/28 20:26:36 | 000,001,722 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\Desktop\WinCalendar.lnk
[2010/08/27 14:22:42 | 000,246,429 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\Desktop\Public Affairs Intensive Experiences[1].pdf
[2010/08/26 17:00:55 | 000,012,836 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\Desktop\Points FA 10.docx
[2010/08/23 02:53:04 | 000,055,161 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\Desktop\Bb each new semester Steps to complete.docx
[2010/08/22 20:52:16 | 000,011,895 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\My Documents\mlb.docx
[2010/08/21 20:48:53 | 000,010,864 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\My Documents\Canon Printer Setup Results stats.docx
[2010/08/21 20:42:51 | 000,001,662 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Canon IJ Network Tool.lnk
[2010/08/21 20:42:24 | 000,012,800 | ---- | C] () -- C:\WINDOWS\System32\CNC173ED.TBL
[2010/08/21 20:40:15 | 000,001,685 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Canon MP560 series User Registration.LNK
[2010/08/21 20:37:47 | 000,001,680 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Canon Solution Menu.lnk
[2010/08/21 20:37:32 | 000,001,734 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Canon Easy-PhotoPrint EX.lnk
[2010/08/21 20:35:46 | 000,001,736 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Canon MP Navigator EX 3.0.lnk
[2010/08/21 20:35:06 | 000,001,652 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Canon My Printer.lnk
[2010/08/21 20:34:46 | 000,001,967 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Canon MP560 series On-screen Manual.lnk
[2010/08/21 18:32:48 | 000,014,201 | -H-- | C] () -- C:\Documents and Settings\Owner.Owner\My Documents\ATandT shady oaks internet info.docx
[2010/08/21 18:21:14 | 000,001,767 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\AT&T Self Support Tool.lnk
[2010/08/19 04:42:44 | 000,070,845 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\Desktop\Fall_2010_Final_Examination_Period.pdf
[2010/08/18 23:21:54 | 000,012,522 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\My Documents\Fall 2010 MWF class calendar.docx
[2010/08/18 12:52:25 | 000,028,170 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\My Documents\Salt tips for cleaning health and beauty etc.docx
[2010/08/17 12:12:53 | 000,002,533 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\Application Data\Microsoft\Internet Explorer\Quick Launch\Microsoft Office Word 2007.lnk
[2010/08/16 17:03:51 | 000,025,589 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\My Documents\second Nathan blog.docx
[2010/08/16 13:10:48 | 000,001,486 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\Application Data\Microsoft\Internet Explorer\Quick Launch\Calculator.lnk
[2010/08/13 01:25:30 | 000,000,162 | -H-- | C] () -- C:\Documents and Settings\Owner.Owner\My Documents\~$ring 2011 schedule.docx
[2010/08/12 23:22:58 | 000,022,746 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\My Documents\printers.docx
[2010/08/12 19:19:16 | 000,531,380 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\Desktop\Public Affairs Week 2010 flyer Women Leading in a Global Society[1].pdf
[2010/08/12 04:24:07 | 000,014,217 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\My Documents\msg to friends re Nathans book.docx
[2010/08/10 23:17:51 | 000,082,111 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\Application Data\Update_HP_RedboxHprblog_HPSU.log
[2010/08/10 23:17:51 | 000,000,221 | ---- | C] () -- C:\WINDOWS\HP_RedboxHprblog_HPSU.ini
[2010/08/09 05:21:51 | 000,012,536 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\My Documents\Kahlil Gibran Winter.docx
[2010/08/07 21:11:04 | 000,374,014 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\My Documents\photo of dr nathan and his puppy.docx
[2010/08/05 14:53:00 | 000,011,926 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\My Documents\Spring 2011 schedule.docx
[2010/07/28 04:16:38 | 000,003,840 | ---- | C] () -- C:\WINDOWS\System32\drivers\BANTExt.sys
[2010/07/09 23:01:48 | 000,020,536 | ---- | C] () -- C:\Program Files\Ophcrack LiveCD 2.docx
[2010/06/03 22:29:26 | 000,000,002 | ---- | C] () -- C:\WINDOWS\msoffice.ini
[2010/05/07 15:04:01 | 000,000,729 | ---- | C] () -- C:\Program Files\readme.txt
[2010/04/13 14:29:13 | 000,000,061 | ---- | C] () -- C:\WINDOWS\TaxACT09.ini
[2009/10/10 19:07:14 | 000,000,134 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\Local Settings\Application Data\fusioncache.dat
[2009/09/30 20:30:02 | 000,007,168 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/09/15 21:06:00 | 000,000,128 | ---- | C] () -- C:\WINDOWS\TaxACT06.ini
[2009/09/05 16:54:34 | 000,000,075 | ---- | C] () -- C:\WINDOWS\TaxACT08.ini
[2009/08/04 17:09:56 | 000,150,016 | ---- | C] () -- C:\WINDOWS\CRLASP95.DLL
[2009/08/04 17:07:46 | 000,022,480 | ---- | C] () -- C:\WINDOWS\System32\PFMAPI16.DLL
[2009/08/04 17:07:46 | 000,020,992 | ---- | C] () -- C:\WINDOWS\System32\PFMAPI32.DLL
[2009/07/27 22:30:58 | 000,000,133 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\Microsoft.SqlServer.Compact.351.32.bc
[2009/07/07 23:18:41 | 000,005,320 | ---- | C] () -- C:\Documents and Settings\Owner.Owner\Application Data\wklnhst.dat
[2009/07/05 21:01:05 | 000,010,560 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\hpzinstall.log
[2009/07/05 21:00:33 | 000,372,736 | ---- | C] () -- C:\WINDOWS\System32\hpzidi01.dll
[2009/07/05 21:00:33 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\hpzids01.dll
[2009/07/02 15:36:42 | 000,023,552 | ---- | C] () -- C:\WINDOWS\System32\jesterss.dll
[2009/07/02 15:24:19 | 000,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2006/06/21 04:48:15 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2006/06/17 04:24:58 | 000,001,280 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
[2006/06/17 04:24:57 | 000,000,519 | ---- | C] () -- C:\WINDOWS\System32\emver.ini
[2005/08/05 23:01:54 | 000,235,008 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2001/11/30 17:13:46 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\px.ini
[2001/08/31 15:33:58 | 000,425,984 | ---- | C] () -- C:\WINDOWS\System32\VxDMDcDlg.dll
========== Custom Scans ==========
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
[2008/04/14 05:41:52 | 001,267,200 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\WINDOWS\system32\comsvcs.dll
[2009/01/14 15:29:26 | 000,049,480 | ---- | M] (Symantec Corporation) Unable to obtain MD5 -- C:\WINDOWS\system32\FwsVpn.dll
[2009/01/14 15:29:26 | 000,107,848 | ---- | M] (Symantec Corporation) Unable to obtain MD5 -- C:\WINDOWS\system32\SymVPN.dll
[2009/01/14 15:29:26 | 000,357,704 | ---- | M] (Symantec Corporation) Unable to obtain MD5 -- C:\WINDOWS\system32\sysfer.dll
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< %systemroot%\system32\*.exe /lockedfiles >
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< %systemroot%\Tasks\*.job /lockedfiles >
< %systemroot%\system32\drivers\*.sys /lockedfiles >
[2009/01/14 15:29:22 | 000,092,488 | ---- | M] (Symantec Corporation) Unable to obtain MD5 -- C:\WINDOWS\system32\drivers\SysPlant.sys
[2009/01/14 15:29:22 | 000,049,536 | ---- | M] (Symantec Corporation) Unable to obtain MD5 -- C:\WINDOWS\system32\drivers\Teefer2.sys
[2009/01/14 15:29:26 | 000,042,312 | ---- | M] (Symantec Corporation) Unable to obtain MD5 -- C:\WINDOWS\system32\drivers\WPSDRVnt.sys
[2010/06/02 19:59:06 | 000,161,920 | ---- | M] (Symantec Corporation) Unable to obtain MD5 -- C:\WINDOWS\system32\drivers\WpsHelper.sys
< %systemroot%\System32\config\*.sav >
[2006/06/16 21:30:11 | 000,094,208 | ---- | M] () -- C:\WINDOWS\system32\config\default.sav
[2006/06/16 21:30:11 | 000,659,456 | ---- | M] () -- C:\WINDOWS\system32\config\software.sav
[2006/06/16 21:30:11 | 000,897,024 | ---- | M] () -- C:\WINDOWS\system32\config\system.sav
< %systemroot%\system32\*.sys >
[2004/08/10 14:00:00 | 000,009,029 | ---- | M] () -- C:\WINDOWS\system32\ansi.sys
[2004/08/10 14:00:00 | 000,027,097 | ---- | M] () -- C:\WINDOWS\system32\country.sys
[2004/08/10 14:00:00 | 000,004,768 | ---- | M] () -- C:\WINDOWS\system32\himem.sys
[2004/08/10 14:00:00 | 000,042,809 | ---- | M] () -- C:\WINDOWS\system32\key01.sys
[2004/08/10 14:00:00 | 000,042,537 | ---- | M] () -- C:\WINDOWS\system32\keyboard.sys
[2004/08/10 14:00:00 | 000,027,866 | ---- | M] () -- C:\WINDOWS\system32\ntdos.sys
[2004/08/10 14:00:00 | 000,029,146 | ---- | M] () -- C:\WINDOWS\system32\ntdos404.sys
[2004/08/10 14:00:00 | 000,029,370 | ---- | M] () -- C:\WINDOWS\system32\ntdos411.sys
[2004/08/10 14:00:00 | 000,029,274 | ---- | M] () -- C:\WINDOWS\system32\ntdos412.sys
[2004/08/10 14:00:00 | 000,029,146 | ---- | M] () -- C:\WINDOWS\system32\ntdos804.sys
[2004/08/10 14:00:00 | 000,033,840 | ---- | M] () -- C:\WINDOWS\system32\ntio.sys
[2004/08/10 14:00:00 | 000,034,560 | ---- | M] () -- C:\WINDOWS\system32\ntio404.sys
[2004/08/10 14:00:00 | 000,035,648 | ---- | M] () -- C:\WINDOWS\system32\ntio411.sys
[2004/08/10 14:00:00 | 000,035,424 | ---- | M] () -- C:\WINDOWS\system32\ntio412.sys
[2004/08/10 14:00:00 | 000,034,560 | ---- | M] () -- C:\WINDOWS\system32\ntio804.sys
[2008/04/14 00:15:00 | 000,017,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\watchdog.sys
[2010/06/23 08:44:04 | 001,851,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\win32k.sys
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< %systemroot%\system32\drivers\*.dll >
[2008/04/14 05:41:50 | 000,004,255 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\adv01nt5.dll
[2008/04/14 05:41:50 | 000,003,967 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\adv02nt5.dll
[2008/04/14 05:41:50 | 000,003,615 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\adv05nt5.dll
[2008/04/14 05:41:50 | 000,003,647 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\adv07nt5.dll
[2008/04/14 05:41:50 | 000,003,135 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\adv08nt5.dll
[2008/04/14 05:41:50 | 000,003,711 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\adv09nt5.dll
[2008/04/14 05:41:50 | 000,003,775 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\adv11nt5.dll
[2008/04/14 05:41:52 | 000,021,183 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\atv01nt5.dll
[2008/04/14 05:41:52 | 000,011,359 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\atv02nt5.dll
[2008/04/14 05:41:52 | 000,025,471 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\atv04nt5.dll
[2008/04/14 05:41:52 | 000,014,143 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\atv06nt5.dll
[2008/04/14 05:41:52 | 000,017,279 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\atv10nt5.dll
[2008/04/14 05:41:52 | 000,015,423 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\ch7xxnt5.dll
[2008/04/14 05:41:56 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\drivers\hidserv.dll
[2008/04/14 05:42:06 | 000,003,901 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\siint5.dll
[2008/04/14 05:42:10 | 000,011,325 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\system32\drivers\vchnt5.dll
< %systemroot%\system32\drivers\*.ini >
< %systemroot%\system32\drivers\*.exe >
< %SYSTEMDRIVE%\*.* >
[2010/09/03 12:15:46 | 000,003,844 | ---- | M] () -- C:\aaw7boot.log
[2006/06/17 04:41:16 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2010/09/01 14:40:36 | 000,000,209 | -HS- | M] () -- C:\boot.ini
[2006/06/17 04:41:16 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2006/06/17 04:41:16 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010/09/04 06:14:27 | 000,008,511 | ---- | M] () -- C:\JavaRa.log
[2006/06/17 04:41:16 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2004/08/10 14:00:00 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM
[2009/07/02 18:03:41 | 000,250,048 | RHS- | M] () -- C:\ntldr
[2010/09/03 12:15:56 | 1598,029,824 | -HS- | M] () -- C:\pagefile.sys
[2010/07/06 20:26:17 | 000,231,888 | ---- | M] (Adobe Systems, Inc.) -- C:\uninstall_flash_player.exe
[2009/07/02 15:17:21 | 000,000,002 | RHS- | M] () -- C:\USER
< %PROGRAMFILES%\*. >
[2009/09/15 21:05:56 | 000,000,000 | ---D | M] -- C:\Program Files\2nd Story Software
[2010/08/09 02:13:42 | 000,000,000 | ---D | M] -- C:\Program Files\Adobe
[2009/11/03 17:34:46 | 000,000,000 | ---D | M] -- C:\Program Files\Apple Software Update
[2010/08/21 18:27:06 | 000,000,000 | ---D | M] -- C:\Program Files\ATT-SST
[2010/06/25 02:08:56 | 000,000,000 | ---D | M] -- C:\Program Files\Audacity
[2010/07/28 04:16:38 | 000,000,000 | ---D | M] -- C:\Program Files\Belarc
[2010/08/29 21:10:30 | 000,000,000 | ---D | M] -- C:\Program Files\BellSouthWCC
[2010/06/05 12:05:21 | 000,000,000 | ---D | M] -- C:\Program Files\Bonjour
[2010/08/30 03:18:02 | 000,000,000 | ---D | M] -- C:\Program Files\Browser Mouse
[2010/08/21 21:40:35 | 000,000,000 | ---D | M] -- C:\Program Files\Canon
[2010/08/21 20:33:16 | 000,000,000 | -H-D | M] -- C:\Program Files\CanonBJ
[2009/12/14 02:48:03 | 000,000,000 | ---D | M] -- C:\Program Files\Cisco
[2010/08/21 20:38:00 | 000,000,000 | ---D | M] -- C:\Program Files\Common Files
[2006/06/17 04:37:05 | 000,000,000 | ---D | M] -- C:\Program Files\ComPlus Applications
[2009/07/02 15:23:10 | 000,000,000 | ---D | M] -- C:\Program Files\CyberLink
[2010/07/02 02:01:59 | 000,000,000 | ---D | M] -- C:\Program Files\DIFX
[2009/07/02 15:26:49 | 000,000,000 | ---D | M] -- C:\Program Files\Gateway Games
[2009/07/03 22:35:37 | 000,000,000 | ---D | M] -- C:\Program Files\Google
[2009/07/02 15:36:42 | 000,000,000 | ---D | M] -- C:\Program Files\gtw_logo
[2010/06/21 00:01:38 | 000,000,000 | ---D | M] -- C:\Program Files\Hewlett-Packard
[2010/06/21 00:01:42 | 000,000,000 | ---D | M] -- C:\Program Files\HP
[2010/04/10 13:32:12 | 000,000,000 | ---D | M] -- C:\Program Files\HP RecordNow
[2009/07/02 15:31:45 | 000,000,000 | -H-D | M] -- C:\Program Files\InstallShield Installation Information
[2009/07/02 15:39:12 | 000,000,000 | ---D | M] -- C:\Program Files\Intel
[2010/03/19 22:11:05 | 000,000,000 | ---D | M] -- C:\Program Files\Internet Chess Club
[2010/08/11 00:02:21 | 000,000,000 | ---D | M] -- C:\Program Files\Internet Explorer
[2010/06/05 12:12:52 | 000,000,000 | ---D | M] -- C:\Program Files\iPod
[2010/06/05 12:13:33 | 000,000,000 | ---D | M] -- C:\Program Files\iTunes
[2010/09/04 06:10:15 | 000,000,000 | ---D | M] -- C:\Program Files\Java
[2009/12/18 19:24:48 | 000,000,000 | ---D | M] -- C:\Program Files\JRE
[2010/06/26 03:30:15 | 000,000,000 | ---D | M] -- C:\Program Files\Lame for Audacity
[2010/09/02 14:04:16 | 000,000,000 | ---D | M] -- C:\Program Files\Lavasoft
[2010/09/01 13:25:01 | 000,000,000 | ---D | M] -- C:\Program Files\Malwarebytes' Anti-Malware
[2009/07/02 15:38:35 | 000,000,000 | ---D | M] -- C:\Program Files\McAfee
[2009/07/03 16:12:57 | 000,000,000 | ---D | M] -- C:\Program Files\Messenger
[2009/07/02 15:27:33 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Digital Image 2006
[2006/06/17 04:41:40 | 000,000,000 | ---D | M] -- C:\Program Files\microsoft frontpage
[2009/07/05 00:25:06 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft IntelliPoint
[2009/09/06 18:35:33 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Money 2006
[2009/07/08 22:42:04 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Office
[2009/07/08 22:42:00 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Visual Studio
[2009/07/08 22:36:53 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Visual Studio 8
[2009/11/21 21:46:11 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Works
[2009/07/08 22:41:18 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft.NET
[2009/07/02 15:32:32 | 000,000,000 | ---D | M] -- C:\Program Files\Motorola
[2010/08/10 23:41:18 | 000,000,000 | ---D | M] -- C:\Program Files\Movie Maker
[2010/09/01 14:31:07 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox
[2009/07/08 22:42:17 | 000,000,000 | ---D | M] -- C:\Program Files\MSBuild
[2009/07/08 23:22:30 | 000,000,000 | ---D | M] -- C:\Program Files\MSECache
[2006/06/17 04:35:33 | 000,000,000 | ---D | M] -- C:\Program Files\MSN
[2009/07/02 15:30:18 | 000,000,000 | ---D | M] -- C:\Program Files\MSN Encarta Plus
[2006/06/17 04:35:49 | 000,000,000 | ---D | M] -- C:\Program Files\MSN Gaming Zone
[2009/07/03 16:06:22 | 000,000,000 | ---D | M] -- C:\Program Files\MSXML 4.0
[2009/07/02 15:29:09 | 000,000,000 | ---D | M] -- C:\Program Files\Napster
[2009/07/02 18:05:13 | 000,000,000 | ---D | M] -- C:\Program Files\NetMeeting
[2010/06/20 02:37:29 | 000,000,000 | ---D | M] -- C:\Program Files\New Folder
[2010/06/01 13:55:22 | 000,000,000 | ---D | M] -- C:\Program Files\Nitro PDF
[2009/07/05 04:39:05 | 000,000,000 | ---D | M] -- C:\Program Files\Office03
[2006/06/17 04:36:43 | 000,000,000 | ---D | M] -- C:\Program Files\Online Services
[2009/12/18 19:24:46 | 000,000,000 | ---D | M] -- C:\Program Files\OpenOffice.org 3
[2010/05/12 03:02:00 | 000,000,000 | ---D | M] -- C:\Program Files\Outlook Express
[2010/08/14 23:50:29 | 000,000,000 | ---D | M] -- C:\Program Files\PDFZilla
[2010/07/02 14:58:49 | 000,000,000 | ---D | M] -- C:\Program Files\PocketRAR
[2010/06/05 12:09:59 | 000,000,000 | ---D | M] -- C:\Program Files\QuickTime
[2009/07/02 15:29:46 | 000,000,000 | ---D | M] -- C:\Program Files\Real
[2009/07/03 22:53:25 | 000,000,000 | ---D | M] -- C:\Program Files\Reference Assemblies
[2010/08/28 20:26:37 | 000,000,000 | ---D | M] -- C:\Program Files\Sapro Systems WinCalendar
[2009/07/02 15:31:45 | 000,000,000 | ---D | M] -- C:\Program Files\SigmaTel
[2010/07/02 02:01:44 | 000,000,000 | ---D | M] -- C:\Program Files\Sony
[2009/07/05 00:42:27 | 000,000,000 | ---D | M] -- C:\Program Files\Symantec
[2009/07/02 15:24:33 | 000,000,000 | ---D | M] -- C:\Program Files\Synaptics
[2006/06/17 04:46:08 | 000,000,000 | -H-D | M] -- C:\Program Files\Uninstall Information
[2009/07/27 22:30:43 | 000,000,000 | ---D | M] -- C:\Program Files\USPS
[2009/07/02 15:29:38 | 000,000,000 | ---D | M] -- C:\Program Files\Viewpoint
[2009/07/02 15:25:36 | 000,000,000 | ---D | M] -- C:\Program Files\WildTangent
[2009/07/03 22:30:44 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Media Connect 2
[2009/07/03 22:30:44 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Media Player
[2009/07/02 18:05:10 | 000,000,000 | ---D | M] -- C:\Program Files\Windows NT
[2006/06/17 04:36:24 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Plus
[2006/06/17 04:39:10 | 000,000,000 | -H-D | M] -- C:\Program Files\WindowsUpdate
[2010/07/02 15:02:51 | 000,000,000 | ---D | M] -- C:\Program Files\WinRAR
[2010/06/10 02:24:05 | 000,000,000 | ---D | M] -- C:\Program Files\WinUtilities
[2006/06/17 04:41:40 | 000,000,000 | ---D | M] -- C:\Program Files\xerox
< %appdata%\*.* >
[2006/06/16 21:31:24 | 000,000,062 | -HS- | M] () -- C:\Documents and Settings\Owner.Owner\Application Data\desktop.ini
[2010/08/10 23:18:06 | 000,082,111 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\Application Data\Update_HP_RedboxHprblog_HPSU.log
[2010/07/12 22:12:21 | 000,005,320 | ---- | M] () -- C:\Documents and Settings\Owner.Owner\Application Data\wklnhst.dat
< MD5 for: AGP440.SYS >
[2004/08/10 14:00:00 | 016,971,599 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:AGP440.sys
[2008/04/14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[2004/08/10 14:00:00 | 016,971,599 | ---- | M] () .cab file -- C:\WINDOWS\I386\sp2.cab:AGP440.sys
[2008/04/14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:AGP440.sys
[2008/04/14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008/04/14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys
[2004/08/04 08:07:42 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=2C428FA0C3E3A01ED93C9B2A27D8D4BB -- C:\WINDOWS\$NtServicePackUninstall$\agp440.sys
< MD5 for: ATAPI.SYS >
[2004/08/10 14:00:00 | 016,971,599 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2008/04/14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2004/08/10 14:00:00 | 016,971,599 | ---- | M] () .cab file -- C:\WINDOWS\I386\sp2.cab:atapi.sys
[2008/04/14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008/04/14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008/04/14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2004/08/04 00:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
[2004/08/04 07:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0005\DriverFiles\i386\atapi.sys
< MD5 for: DISK.SYS >
[2004/08/10 14:00:00 | 016,971,599 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:disk.sys
[2008/04/14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:disk.sys
[2004/08/10 14:00:00 | 016,971,599 | ---- | M] () .cab file -- C:\WINDOWS\I386\sp2.cab:disk.sys
[2008/04/14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:disk.sys
[2004/08/10 14:00:00 | 000,036,352 | ---- | M] (Microsoft Corporation) MD5=00CA44E4534865F8A3B64F7C0984BFF0 -- C:\WINDOWS\$NtServicePackUninstall$\disk.sys
[2008/04/14 00:10:48 | 000,036,352 | ---- | M] (Microsoft Corporation) MD5=044452051F3E02E7963599FC8F4F3E25 -- C:\WINDOWS\ServicePackFiles\i386\disk.sys
[2008/04/14 00:10:48 | 000,036,352 | ---- | M] (Microsoft Corporation) MD5=044452051F3E02E7963599FC8F4F3E25 -- C:\WINDOWS\system32\drivers\disk.sys
< MD5 for: EVENTLOG.DLL >
[2008/04/14 05:41:54 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008/04/14 05:41:54 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:\WINDOWS\system32\eventlog.dll
[2004/08/10 14:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=82B24CB70E5944E6E34662205A2A5B78 -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll
< MD5 for: IASTOR.SYS >
[2005/10/12 14:07:12 | 000,874,240 | ---- | M] (Intel Corporation) MD5=309C4D86D989FB1FCF64BD30DC81C51B -- C:\Program Files\Intel\Intel Matrix Storage Manager\Driver\iaStor.sys
[2005/10/12 08:07:12 | 000,874,240 | ---- | M] (Intel Corporation) MD5=309C4D86D989FB1FCF64BD30DC81C51B -- C:\WINDOWS\I386\DRV\SCS\iastor.sys
[2005/10/12 14:07:12 | 000,874,240 | ---- | M] (Intel Corporation) MD5=309C4D86D989FB1FCF64BD30DC81C51B -- C:\WINDOWS\system32\drivers\iaStor.sys
[2005/10/12 08:07:12 | 000,874,240 | ---- | M] (Intel Corporation) MD5=309C4D86D989FB1FCF64BD30DC81C51B -- C:\WINDOWS\system32\ReinstallBackups\0011\DriverFiles\iaStor.sys
[2005/10/12 14:08:52 | 000,508,416 | ---- | M] (Intel Corporation) MD5=7C2D98D430DD91570DB63E819B9BC7E0 -- C:\Program Files\Intel\Intel Matrix Storage Manager\Driver64\IaStor.sys
< MD5 for: NETLOGON.DLL >
[2008/04/14 05:42:02 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\ServicePackFiles\i386\netlogon.dll
[2008/04/14 05:42:02 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\system32\netlogon.dll
[2004/08/10 14:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=96353FCECBA774BB8DA74A1C6507015A -- C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll
< MD5 for: SCECLI.DLL >
[2004/08/10 14:00:00 | 000,180,224 | ---- | M] (Microsoft Corporation) MD5=0F78E27F563F2AAF74B91A49E2ABF19A -- C:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2008/04/14 05:42:06 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008/04/14 05:42:06 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINDOWS\system32\scecli.dll
< MD5 for: USBSTOR.SYS >
[2004/08/10 14:00:00 | 016,971,599 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:usbstor.sys
[2008/04/14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:usbstor.sys
[2004/08/10 14:00:00 | 016,971,599 | ---- | M] () .cab file -- C:\WINDOWS\I386\sp2.cab:usbstor.sys
[2008/04/14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:usbstor.sys
[2004/08/10 14:00:00 | 000,026,496 | ---- | M] (Microsoft Corporation) MD5=6CD7B22193718F1D17A47A1CD6D37E75 -- C:\WINDOWS\$NtServicePackUninstall$\usbstor.sys
[2008/04/14 00:15:40 | 000,026,368 | ---- | M] (Microsoft Corporation) MD5=A32426D9B14A089EAA1D922E0C5801A9 -- C:\WINDOWS\ServicePackFiles\i386\usbstor.sys
[2008/04/14 00:15:40 | 000,026,368 | ---- | M] (Microsoft Corporation) MD5=A32426D9B14A089EAA1D922E0C5801A9 -- C:\WINDOWS\system32\drivers\usbstor.sys
< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2010-08-11 05:00:08
< End of report >