First of 2 posts with log file info:
Junction v1.05 - Windows junction creator and reparse point viewer
Copyright (C) 2000-2007 Mark Russinovich
Systems Internals -
http://www.sysinternals.com\\?\c:\\Documents and Settings: JUNCTION
Print Name : C:\Users
Substitute Name: C:\Users
Failed to open \\?\c:\\pagefile.sys: The process cannot access the file because it is being used by another process.
Failed to open \\?\c:\\System Volume Information: Access is denied.
...
...
...
...
...
...
...
Failed to open \\?\c:\\Program Files\Spybot - Search & Destroy\SpybotSD.exe: Access is denied.
...\\?\c:\\ProgramData\Application Data: JUNCTION
Print Name : C:\ProgramData
Substitute Name: C:\ProgramData
\\?\c:\\ProgramData\Desktop: JUNCTION
Print Name : C:\Users\Public\Desktop
Substitute Name: C:\Users\Public\Desktop
\\?\c:\\ProgramData\Documents: JUNCTION
Print Name : C:\Users\Public\Documents
Substitute Name: C:\Users\Public\Documents
\\?\c:\\ProgramData\Favorites: JUNCTION
Print Name : C:\Users\Public\Favorites
Substitute Name: C:\Users\Public\Favorites
\\?\c:\\ProgramData\Start Menu: JUNCTION
Print Name : C:\ProgramData\Microsoft\Windows\Start Menu
Substitute Name: C:\ProgramData\Microsoft\Windows\Start Menu
\\?\c:\\ProgramData\Templates: JUNCTION
Print Name : C:\ProgramData\Microsoft\Windows\Templates
Substitute Name: C:\ProgramData\Microsoft\Windows\Templates
.
Failed to open \\?\c:\\ProgramData\Microsoft\Crypto\RSA\MachineKeys\138c93f3d772802a10e3f67007f1e24f_d12f4d8e-55ea-468b-89aa-fc8e760505f0: Access is denied.
Failed to open \\?\c:\\ProgramData\Microsoft\Crypto\RSA\MachineKeys\89f23b2b6270a8866ba861d0436f5615_d12f4d8e-55ea-468b-89aa-fc8e760505f0: Access is denied.
.\\?\c:\\Users\All Users: UNKNOWN MICROSOFT REPARSE POINT
\\?\c:\\Users\Default User: JUNCTION
Print Name : C:\Users\Default
Substitute Name: C:\Users\Default
\\?\c:\\Users\All Users\Application Data: JUNCTION
Print Name : C:\ProgramData
Substitute Name: C:\ProgramData
\\?\c:\\Users\All Users\Desktop: JUNCTION
Print Name : C:\Users\Public\Desktop
Substitute Name: C:\Users\Public\Desktop
\\?\c:\\Users\All Users\Documents: JUNCTION
Print Name : C:\Users\Public\Documents
Substitute Name: C:\Users\Public\Documents
\\?\c:\\Users\All Users\Favorites: JUNCTION
Print Name : C:\Users\Public\Favorites
Substitute Name: C:\Users\Public\Favorites
\\?\c:\\Users\All Users\Start Menu: JUNCTION
Print Name : C:\ProgramData\Microsoft\Windows\Start Menu
Substitute Name: C:\ProgramData\Microsoft\Windows\Start Menu
\\?\c:\\Users\All Users\Templates: JUNCTION
Print Name : C:\ProgramData\Microsoft\Windows\Templates
Substitute Name: C:\ProgramData\Microsoft\Windows\Templates
.
Failed to open \\?\c:\\Users\All Users\Microsoft\Crypto\RSA\MachineKeys\138c93f3d772802a10e3f67007f1e24f_d12f4d8e-55ea-468b-89aa-fc8e760505f0: Access is denied.
Failed to open \\?\c:\\Users\All Users\Microsoft\Crypto\RSA\MachineKeys\89f23b2b6270a8866ba861d0436f5615_d12f4d8e-55ea-468b-89aa-fc8e760505f0: Access is denied.
.\\?\c:\\Users\Dad\Application Data: JUNCTION
Print Name : C:\Users\Dad\AppData\Roaming
Substitute Name: C:\Users\Dad\AppData\Roaming
\\?\c:\\Users\Dad\Cookies: JUNCTION
Print Name : C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Cookies
Substitute Name: C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Cookies
\\?\c:\\Users\Dad\Local Settings: JUNCTION
Print Name : C:\Users\Dad\AppData\Local
Substitute Name: C:\Users\Dad\AppData\Local
\\?\c:\\Users\Dad\My Documents: JUNCTION
Print Name : C:\Users\Dad\Documents
Substitute Name: C:\Users\Dad\Documents
\\?\c:\\Users\Dad\NetHood: JUNCTION
Print Name : C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Network Shortcuts
Substitute Name: C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Network Shortcuts
\\?\c:\\Users\Dad\PrintHood: JUNCTION
Print Name : C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Printer Shortcuts
Substitute Name: C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Printer Shortcuts
\\?\c:\\Users\Dad\Recent: JUNCTION
Print Name : C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Recent
Substitute Name: C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Recent
\\?\c:\\Users\Dad\SendTo: JUNCTION
Print Name : C:\Users\Dad\AppData\Roaming\Microsoft\Windows\SendTo
Substitute Name: C:\Users\Dad\AppData\Roaming\Microsoft\Windows\SendTo
\\?\c:\\Users\Dad\Start Menu: JUNCTION
Print Name : C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Start Menu
Substitute Name: C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Start Menu
\\?\c:\\Users\Dad\Templates: JUNCTION
Print Name : C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Templates
Substitute Name: C:\Users\Dad\AppData\Roaming\Microsoft\Windows\Templates
.\\?\c:\\Users\Dad\AppData\Local\Application Data: JUNCTION
Print Name : C:\Users\Dad\AppData\Local
Substitute Name: C:\Users\Dad\AppData\Local
\\?\c:\\Users\Dad\AppData\Local\History: JUNCTION
Print Name : C:\Users\Dad\AppData\Local\Microsoft\Windows\History
Substitute Name: C:\Users\Dad\AppData\Local\Microsoft\Windows\History
\\?\c:\\Users\Dad\AppData\Local\Temporary Internet Files: JUNCTION
Print Name : C:\Users\Dad\AppData\Local\Microsoft\Windows\Temporary Internet Files
Substitute Name: C:\Users\Dad\AppData\Local\Microsoft\Windows\Temporary Internet Files
.
.
Failed to open \\?\c:\\Users\Dad\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QFMED9DK\winlogon[1].scr: Access is denied.
..
Failed to open \\?\c:\\Users\Dad\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UIJYKFX3\winlogon[1].scr: Access is denied.
Failed to open \\?\c:\\Users\Dad\Desktop\HijackThis.exe: Access is denied.
Failed to open \\?\c:\\Users\Dad\Desktop\hijackthis.scr: Access is denied.
\\?\c:\\Users\Dad\Documents\My Music: JUNCTION
Print Name : C:\Users\Dad\Music
Substitute Name: C:\Users\Dad\Music
\\?\c:\\Users\Dad\Documents\My Pictures: JUNCTION
Print Name : C:\Users\Dad\Pictures
Substitute Name: C:\Users\Dad\Pictures
\\?\c:\\Users\Dad\Documents\My Videos: JUNCTION
Print Name : C:\Users\Dad\Videos
Substitute Name: C:\Users\Dad\Videos
Failed to open \\?\c:\\Users\Dad\Downloads\winlogon.scr: Access is denied.
\\?\c:\\Users\Default\Application Data: JUNCTION
Print Name : C:\Users\Default\AppData\Roaming
Substitute Name: C:\Users\Default\AppData\Roaming
\\?\c:\\Users\Default\Cookies: JUNCTION
Print Name : C:\Users\Default\AppData\Roaming\Microsoft\Windows\Cookies
Substitute Name: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Cookies
\\?\c:\\Users\Default\Local Settings: JUNCTION
Print Name : C:\Users\Default\AppData\Local
Substitute Name: C:\Users\Default\AppData\Local
\\?\c:\\Users\Default\My Documents: JUNCTION
Print Name : C:\Users\Default\Documents
Substitute Name: C:\Users\Default\Documents
\\?\c:\\Users\Default\NetHood: JUNCTION
Print Name : C:\Users\Default\AppData\Roaming\Microsoft\Windows\Network Shortcuts
Substitute Name: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Network Shortcuts
\\?\c:\\Users\Default\PrintHood: JUNCTION
Print Name : C:\Users\Default\AppData\Roaming\Microsoft\Windows\Printer Shortcuts
Substitute Name: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Printer Shortcuts
\\?\c:\\Users\Default\Recent: JUNCTION
Print Name : C:\Users\Default\AppData\Roaming\Microsoft\Windows\Recent
Substitute Name: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Recent
\\?\c:\\Users\Default\SendTo: JUNCTION
Print Name : C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo
Substitute Name: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo
\\?\c:\\Users\Default\Start Menu: JUNCTION
Print Name : C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu
Substitute Name: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu
\\?\c:\\Users\Default\Templates: JUNCTION
Print Name : C:\Users\Default\AppData\Roaming\Microsoft\Windows\Templates
Substitute Name: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Templates
\\?\c:\\Users\Default\AppData\Local\Application Data: JUNCTION
Print Name : C:\Users\Default\AppData\Local
Substitute Name: C:\Users\Default\AppData\Local
\\?\c:\\Users\Default\AppData\Local\History: JUNCTION
Print Name : C:\Users\Default\AppData\Local\Microsoft\Windows\History
Substitute Name: C:\Users\Default\AppData\Local\Microsoft\Windows\History
\\?\c:\\Users\Default\AppData\Local\Temporary Internet Files: JUNCTION
Print Name : C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files
Substitute Name: C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files
\\?\c:\\Users\Default\Documents\My Music: JUNCTION
Print Name : C:\Users\Default\Music
Substitute Name: C:\Users\Default\Music
\\?\c:\\Users\Default\Documents\My Pictures: JUNCTION
Print Name : C:\Users\Default\Pictures
Substitute Name: C:\Users\Default\Pictures
\\?\c:\\Users\Default\Documents\My Videos: JUNCTION
Print Name : C:\Users\Default\Videos
Substitute Name: C:\Users\Default\Videos
\\?\c:\\Users\Holly\Application Data: JUNCTION
Print Name : C:\Users\Holly\AppData\Roaming
Substitute Name: C:\Users\Holly\AppData\Roaming
\\?\c:\\Users\Holly\Cookies: JUNCTION
Print Name : C:\Users\Holly\AppData\Roaming\Microsoft\Windows\Cookies
Substitute Name: C:\Users\Holly\AppData\Roaming\Microsoft\Windows\Cookies
\\?\c:\\Users\Holly\Local Settings: JUNCTION
Print Name : C:\Users\Holly\AppData\Local
Substitute Name: C:\Users\Holly\AppData\Local
\\?\c:\\Users\Holly\My Documents: JUNCTION
Print Name : C:\Users\Holly\Documents
Substitute Name: C:\Users\Holly\Documents
\\?\c:\\Users\Holly\NetHood: JUNCTION
Print Name : C:\Users\Holly\AppData\Roaming\Microsoft\Windows\Network Shortcuts
Substitute Name: C:\Users\Holly\AppData\Roaming\Microsoft\Windows\Network Shortcuts
\\?\c:\\Users\Holly\PrintHood: JUNCTION
Print Name : C:\Users\Holly\AppData\Roaming\Microsoft\Windows\Printer Shortcuts
Substitute Name: C:\Users\Holly\AppData\Roaming\Microsoft\Windows\Printer Shortcuts
\\?\c:\\Users\Holly\Recent: JUNCTION
Print Name : C:\Users\Holly\AppData\Roaming\Microsoft\Windows\Recent
Substitute Name: C:\Users\Holly\AppData\Roaming\Microsoft\Windows\Recent
\\?\c:\\Users\Holly\SendTo: JUNCTION
Print Name : C:\Users\Holly\AppData\Roaming\Microsoft\Windows\SendTo
Substitute Name: C:\Users\Holly\AppData\Roaming\Microsoft\Windows\SendTo
\\?\c:\\Users\Holly\Start Menu: JUNCTION
Print Name : C:\Users\Holly\AppData\Roaming\Microsoft\Windows\Start Menu
Substitute Name: C:\Users\Holly\AppData\Roaming\Microsoft\Windows\Start Menu
\\?\c:\\Users\Holly\Templates: JUNCTION
Print Name : C:\Users\Holly\AppData\Roaming\Microsoft\Windows\Templates
Substitute Name: C:\Users\Holly\AppData\Roaming\Microsoft\Windows\Templates
\\?\c:\\Users\Holly\AppData\Local\Application Data: JUNCTION
Print Name : C:\Users\Holly\AppData\Local
Substitute Name: C:\Users\Holly\AppData\Local
\\?\c:\\Users\Holly\AppData\Local\History: JUNCTION
Print Name : C:\Users\Holly\AppData\Local\Microsoft\Windows\History
Substitute Name: C:\Users\Holly\AppData\Local\Microsoft\Windows\History
\\?\c:\\Users\Holly\AppData\Local\Temporary Internet Files: JUNCTION
Print Name : C:\Users\Holly\AppData\Local\Microsoft\Windows\Temporary Internet Files
Substitute Name: C:\Users\Holly\AppData\Local\Microsoft\Windows\Temporary Internet Files
..\\?\c:\\Users\Holly\Documents\My Music: JUNCTION
Print Name : C:\Users\Holly\Music
Substitute Name: C:\Users\Holly\Music
\\?\c:\\Users\Holly\Documents\My Pictures: JUNCTION
Print Name : C:\Users\Holly\Pictures
Substitute Name: C:\Users\Holly\Pictures
\\?\c:\\Users\Holly\Documents\My Videos: JUNCTION
Print Name : C:\Users\Holly\Videos
Substitute Name: C:\Users\Holly\Videos
.\\?\c:\\Users\Public\Documents\My Music: JUNCTION
Print Name : C:\Users\Public\Music
Substitute Name: C:\Users\Public\Music
\\?\c:\\Users\Public\Documents\My Pictures: JUNCTION
Print Name : C:\Users\Public\Pictures
Substitute Name: C:\Users\Public\Pictures
\\?\c:\\Users\Public\Documents\My Videos: JUNCTION
Print Name : C:\Users\Public\Videos
Substitute Name: C:\Users\Public\Videos
\\?\c:\\Windows\AppPatch\Custom\Custom: MOUNT POINT
Substitute Name: \Device\__max++>\^