Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 30-09-2012 01
Ran by SYSTEM at 30-09-2012 01:49:16
Running from F:\
Windows 7 Home Premium (X64) OS Language: English(US)
The current controlset is ControlSet002
==================== Registry (Whitelisted) ===================
HKLM\...\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-06-18] (IDT, Inc.)
HKLM\...\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe [1890088 2010-03-17] (Synaptics Incorporated)
HKLM\...\Run: [Broadcom Wireless Manager UI] C:\Program Files\Dell\DW WLAN Card\WLTRAY.exe [5712896 2010-02-02] (Dell Inc.)
HKLM\...\Run: [lxddmon.exe] "C:\Program Files (x86)\Lexmark 2500 Series\lxddmon.exe" [291760 2007-06-11] ()
HKLM\...\Run: [lxddamon] "C:\Program Files (x86)\Lexmark 2500 Series\lxddamon.exe" [20480 2007-04-30] ()
HKLM\...\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon [2780776 2011-07-19] (CANON INC.)
HKLM-x32\...\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284696 2010-06-08] (Intel Corporation)
HKLM-x32\...\Run: [Dell Webcam Central] "C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" /mode2 [409744 2009-06-24] (Creative Technology Ltd)
HKLM-x32\...\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey [1675160 2012-03-21] (McAfee, Inc.)
HKLM-x32\...\Run: [Dell DataSafe Online] "C:\Program Files (x86)\Dell DataSafe Online\DataSafeOnline.exe" /m [1807680 2010-02-09] ()
HKLM-x32\...\Run: [DellSupportCenter] "C:\Program Files (x86)\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter [206064 2009-05-21] (SupportSoft, Inc.)
HKLM-x32\...\Run: [Absolute Notifier] "C:\Program Files (x86)\Absolute Software\Absolute Notifier\AbsoluteNotifier.exe" [86184 2010-10-08] (Absolute Software)
HKLM-x32\...\Run: [Desktop Disc Tool] "C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe" [498160 2009-12-15] ()
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [37296 2012-01-03] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [843712 2012-01-02] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [421888 2011-10-24] (Apple Inc.)
HKLM-x32\...\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59240 2011-09-27] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [254696 2012-01-18] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [CanonSolutionMenuEx] C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE /logon [1637496 2011-08-04] (CANON INC.)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE [439440 2011-09-27] (CANON INC.)
HKLM-x32\...\Run: []
HKU\Joshua\...\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [39408 2011-02-22] (Google Inc.)
HKU\Joshua\...\Run: [uTorrent] "C:\Users\Joshua\Pictures\uTorrent.exe" /MINIMIZED [880528 2012-06-08] (BitTorrent, Inc.)
HKU\Joshua\...\Run: [DelayShred] "c:\PROGRA~1\mcafee\mqs\ShrCL.EXE" /P5 /q "C:\Users\Joshua\LOCALS~1\APPLIC~1\Temp\FXSAPI~1.TXT" "C:\Users\Joshua\LOCALS~1\APPLIC~1\Temp\ETILQS~1" "C:\Users\Joshua\LOCALS~1\APPLIC~1\Temp\Cookies" "C:\Users\Joshua\LOCALS~1\APPLIC~1\Temp\TEMPOR~1" "C:\Users\Joshua\LOCALS~1\APPLIC~1\Temp\TEMPOR~1\Content.IE5\index.dat" "C:\Users\Joshua\LOCALS~1\APPLIC~1\Temp\TEMPOR~1\Content.IE5" [129184 2012-03-22] ()
HKLM-x32\...\RunOnce: ["C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpdate.exe"] "C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpdate.exe" [559616 2011-10-12] (Dell)
HKLM-x32\...\RunOnce: [Launcher] C:\Program Files (x86)\Dell DataSafe Local Backup\Components\Scheduler\Launcher.exe [165184 2011-08-01] (Softthinks)
Winlogon\Notify\GoToAssist: C:\Program Files (x86)\Citrix\GoToAssist\514\G2AWinLogon_x64.dll [X]
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
Startup: C:\Users\All Users\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\Users\Default\Start Menu\Programs\Startup\Dell Dock First Run.lnk
ShortcutTarget: Dell Dock First Run.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation)
Startup: C:\Users\Default User\Start Menu\Programs\Startup\Dell Dock First Run.lnk
ShortcutTarget: Dell Dock First Run.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation)
==================== Services (Whitelisted) ===================
2 AbsoluteNotifier; "C:\Program Files (x86)\Absolute Software\Absolute Notifier\AbsoluteNotifierService.exe" [10408 2010-10-08] (Microsoft)
2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [140456 2011-09-06] ()
2 lxdd_device; C:\Windows\system32\lxddcoms.exe -service [567216 2007-05-25] ( )
2 lxdd_device; C:\Windows\SysWow64\lxddcoms.exe -service [537520 2007-05-25] ( )
2 MBAMScheduler; "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe" [399432 2012-09-07] (Malwarebytes Corporation)
2 MBAMService; "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe" [676936 2012-09-07] (Malwarebytes Corporation)
2 McAfee SiteAdvisor Service; "C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc [249936 2011-01-27] (McAfee, Inc.)
2 McMPFSvc; "C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc [249936 2011-01-27] (McAfee, Inc.)
2 mcmscsvc; "C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe" /McCoreSvc [249936 2011-01-27] (McAfee, Inc.)
2 McNaiAnn; "C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe" /McCoreSvc [249936 2011-01-27] (McAfee, Inc.)
2 McNASvc; "C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe" /McCoreSvc [249936 2011-01-27] (McAfee, Inc.)
3 McODS; "C:\Program Files\mcafee\VirusScan\mcods.exe" [502064 2012-08-23] (McAfee, Inc.)
4 McOobeSv; "C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe" /McCoreSvc [249936 2011-01-27] (McAfee, Inc.)
2 McProxy; "C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe" /McCoreSvc [249936 2011-01-27] (McAfee, Inc.)
2 McShield; "C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe" [199272 2012-03-20] (McAfee, Inc.)
2 mfefire; "C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe" [210584 2012-03-20] (McAfee, Inc.)
2 mfevtp; "C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe" [162192 2012-03-20] (McAfee, Inc.)
2 MSK80Service; "C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc [249936 2011-01-27] (McAfee, Inc.)
==================== Drivers (Whitelisted) =====================
3 cfwids; C:\Windows\System32\Drivers\cfwids.sys [65264 2012-02-22] (McAfee, Inc.)
3 MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [25928 2012-09-07] (Malwarebytes Corporation)
3 mfeapfk; C:\Windows\System32\Drivers\mfeapfk.sys [160792 2012-02-22] (McAfee, Inc.)
3 mfeavfk; C:\Windows\System32\Drivers\mfeavfk.sys [229528 2012-02-22] (McAfee, Inc.)
3 mfefirek; C:\Windows\System32\Drivers\mfefirek.sys [487296 2012-02-22] (McAfee, Inc.)
0 mfehidk; C:\Windows\System32\Drivers\mfehidk.sys [647208 2012-02-22] (McAfee, Inc.)
1 mfenlfk; C:\Windows\System32\Drivers\mfenlfk.sys [75936 2012-02-22] (McAfee, Inc.)
3 mferkdet; C:\Windows\System32\Drivers\mferkdet.sys [100912 2012-02-22] (McAfee, Inc.)
0 mfewfpk; C:\Windows\System32\Drivers\mfewfpk.sys [289664 2012-02-22] (McAfee, Inc.)
3 catchme; \??\C:\ComboFix\catchme.sys
3 mfeavfk01;
==================== NetSvcs (Whitelisted) ====================
==================== One Month Created Files and Folders ========
2012-09-30 00:34 - 2012-09-30 00:34 - 00000089 ____A C:\data
2012-09-30 00:32 - 2012-09-30 00:45 - 00000000 ____D C:\Program Files (x86)\DownloadManager
2012-09-29 13:38 - 2012-09-30 00:29 - 00000224 ____A C:\Windows\setupact.log
2012-09-29 13:38 - 2012-09-29 13:38 - 00000456 ____A C:\Windows\PFRO.log
2012-09-29 13:38 - 2012-09-29 13:38 - 00000000 ____A C:\Windows\setuperr.log
2012-09-29 13:36 - 2012-09-29 13:36 - 00005289 ____A C:\AdwCleaner[S1].txt
2012-09-29 13:04 - 2012-09-29 13:04 - 00004532 ____A C:\AdwCleaner[R1].txt
2012-09-29 12:54 - 2012-09-29 12:55 - 00003456 ____A C:\Users\Joshua\My Documents\cc_20120929_125451.reg
2012-09-29 12:54 - 2012-09-29 12:55 - 00003456 ____A C:\Users\Joshua\Documents\cc_20120929_125451.reg
2012-09-29 12:42 - 2012-09-29 12:43 - 00607260 ____R (Swearware) C:\Users\Joshua\Desktop\dds.scr
2012-09-29 12:35 - 2012-09-29 12:35 - 00001071 ____A C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2012-09-29 12:35 - 2012-09-29 12:35 - 00001071 ____A C:\Users\All Users\Desktop\Malwarebytes Anti-Malware.lnk
2012-09-29 12:35 - 2012-09-29 12:35 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2012-09-29 12:35 - 2012-09-07 17:04 - 00025928 ____A (Malwarebytes Corporation) C:\Windows\System32\Drivers\mbam.sys
2012-09-29 12:33 - 2012-09-29 12:34 - 10524080 ____A (Malwarebytes Corporation ) C:\Users\Joshua\Desktop\mbam-setup-1.65.0.1400.exe
2012-09-29 12:25 - 2012-09-29 12:25 - 00513501 ____A C:\Users\Joshua\Desktop\adwcleaner.exe
2012-09-29 12:15 - 2012-09-29 12:15 - 00000824 ____A C:\Users\Public\Desktop\CCleaner.lnk
2012-09-29 12:15 - 2012-09-29 12:15 - 00000824 ____A C:\Users\All Users\Desktop\CCleaner.lnk
2012-09-29 12:15 - 2012-09-29 12:15 - 00000000 ____D C:\Program Files\CCleaner
2012-09-29 12:13 - 2012-09-29 12:14 - 03941312 ____A (Piriform Ltd) C:\Users\Joshua\Desktop\ccsetup323.exe
2012-09-29 11:37 - 2012-09-29 11:37 - 00302592 ____A C:\Users\Joshua\Downloads\c7bkzkj7.exe
2012-09-29 10:33 - 2012-09-29 10:33 - 00000000 ____A C:\Users\Joshua\Desktop\zk2f8py0.reg
2012-09-29 10:29 - 2012-09-29 10:29 - 00302592 ____A C:\Users\Joshua\Desktop\zk2f8py0.exe
2012-09-29 06:18 - 2012-09-29 06:18 - 00000000 ____D C:\Users\All Users\SUPERSetup
2012-09-29 06:18 - 2012-09-29 06:18 - 00000000 ____D C:\Users\All Users\Application Data\SUPERSetup
2012-09-29 05:13 - 2012-09-29 05:13 - 00019277 ____A C:\ComboFix.txt
2012-09-29 05:12 - 2012-09-29 06:00 - 00000000 ____D C:\Windows\erdnt
2012-09-29 03:54 - 2012-09-29 04:11 - 00000000 ____D C:\Users\Joshua\Application Data\USTechSupport
2012-09-29 03:54 - 2012-09-29 04:11 - 00000000 ____D C:\Users\Joshua\AppData\Roaming\USTechSupport
2012-09-29 03:52 - 2012-09-29 04:15 - 00000000 ____D C:\Users\All Users\USTechSupport
2012-09-29 03:52 - 2012-09-29 04:15 - 00000000 ____D C:\Users\All Users\Application Data\USTechSupport
2012-09-29 03:52 - 2012-09-29 03:52 - 02163864 ____A (US Tech Support LLC) C:\Users\Joshua\Downloads\MaxMySpeed.exe
2012-09-26 16:39 - 2012-08-21 16:01 - 00245760 ____A (Microsoft Corporation) C:\Windows\System32\OxpsConverter.exe
2012-09-24 17:45 - 2012-09-24 17:45 - 00000000 ____D C:\Users\Joshua\Application Data\Softland
2012-09-24 17:45 - 2012-09-24 17:45 - 00000000 ____D C:\Users\Joshua\AppData\Roaming\Softland
2012-09-24 17:45 - 2012-05-17 08:45 - 00024968 ____A (Softland) C:\Windows\System32\dopdfmn7.dll
2012-09-24 17:45 - 2012-05-17 08:45 - 00021384 ____A (Softland) C:\Windows\System32\dopdfmi7.dll
2012-09-24 17:45 - 2010-11-25 12:17 - 00007549 ____A C:\Windows\System32\dopdf7.ctm
2012-09-24 17:45 - 2010-02-05 15:00 - 01700352 ____A (Microsoft Corporation) C:\Windows\System32\GdiPlus.dll
2012-09-24 17:44 - 2012-09-24 17:44 - 04238448 ____A (Softland ) C:\Users\Joshua\Downloads\dopdf-7.exe
2012-09-24 17:44 - 2012-09-24 17:44 - 00000000 ____D C:\Program Files\Softland
2012-09-23 11:40 - 2012-09-23 11:40 - 00057560 ____A C:\Windows\SysWOW64\GDIPFONTCACHEV1.DAT
2012-09-21 18:01 - 2012-08-24 13:05 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2012-09-21 18:01 - 2012-08-24 13:03 - 09056256 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2012-09-21 18:01 - 2012-08-24 13:03 - 00735744 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2012-09-21 18:01 - 2012-08-24 13:02 - 12295680 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2012-09-21 18:01 - 2012-08-24 11:57 - 06028800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2012-09-21 18:01 - 2012-08-24 11:57 - 01231872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2012-09-21 18:01 - 2012-08-24 11:57 - 00627712 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2012-09-21 18:01 - 2012-08-24 11:56 - 11020800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2012-09-21 18:00 - 2012-08-24 13:05 - 01188864 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2012-09-21 18:00 - 2012-08-24 13:03 - 00097792 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2012-09-21 18:00 - 2012-08-24 13:03 - 00064512 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2012-09-21 18:00 - 2012-08-24 13:02 - 02453504 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2012-09-21 18:00 - 2012-08-24 13:02 - 00247808 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2012-09-21 18:00 - 2012-08-24 11:57 - 00981504 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2012-09-21 18:00 - 2012-08-24 11:57 - 00067584 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2012-09-21 18:00 - 2012-08-24 11:56 - 02073600 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2012-09-21 18:00 - 2012-08-24 11:56 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2012-09-21 17:59 - 2012-08-24 13:05 - 00134144 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2012-09-21 17:59 - 2012-08-24 11:57 - 00132096 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2012-09-21 17:59 - 2012-08-24 11:56 - 00048128 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2012-09-21 17:59 - 2012-08-24 10:59 - 01638912 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2012-09-21 17:59 - 2012-08-24 10:20 - 01638912 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2012-09-16 20:10 - 2012-09-24 17:42 - 00000000 ____D C:\Users\Joshua\Local Settings\CutePDF Writer
2012-09-16 20:10 - 2012-09-24 17:42 - 00000000 ____D C:\Users\Joshua\Local Settings\Application Data\CutePDF Writer
2012-09-16 20:10 - 2012-09-24 17:42 - 00000000 ____D C:\Users\Joshua\AppData\Local\CutePDF Writer
2012-09-16 20:09 - 2012-09-16 20:09 - 00000000 ____D C:\Program Files (x86)\GPLGS
2012-09-16 20:08 - 2012-09-16 20:08 - 05254656 ____A C:\Users\Joshua\Downloads\converter.exe
2012-09-15 20:58 - 2012-09-15 20:58 - 00000000 ____D C:\Program Files (x86)\Acro Software
2012-09-15 20:58 - 2012-07-31 11:31 - 00087152 ____A C:\Windows\System32\cpwmon64.dll
2012-09-15 20:55 - 2012-09-15 20:55 - 04633584 ____A (Acro Software Inc. ) C:\Users\Joshua\Downloads\CuteWriter.exe
2012-09-15 20:54 - 2012-09-15 20:54 - 00587640 ____A C:\Users\Joshua\Downloads\cbsidlm-tr1_6-CutePDF_Writer-10206470.exe
2012-09-15 20:43 - 2012-09-15 20:43 - 00000000 ____D C:\Users\Joshua\Local Settings\PrimoPDFContent
2012-09-15 20:43 - 2012-09-15 20:43 - 00000000 ____D C:\Users\Joshua\Local Settings\Application Data\PrimoPDFContent
2012-09-15 20:43 - 2012-09-15 20:43 - 00000000 ____D C:\Users\Joshua\AppData\Local\PrimoPDFContent
2012-09-15 19:42 - 2012-09-15 19:45 - 700989440 ___AT C:\Users\Joshua\My Documents\ModPhys.ps
2012-09-15 19:42 - 2012-09-15 19:45 - 700989440 ___AT C:\Users\Joshua\Documents\ModPhys.ps
2012-09-15 19:39 - 2012-09-15 21:04 - 00000000 ____D C:\Users\Joshua\Application Data\PrimoPDF
2012-09-15 19:39 - 2012-09-15 21:04 - 00000000 ____D C:\Users\Joshua\AppData\Roaming\PrimoPDF
2012-09-15 19:37 - 2012-09-16 21:04 - 00000000 ____D C:\Program Files (x86)\Nitro PDF
2012-09-15 19:37 - 2011-02-28 17:37 - 00095008 ____A C:\Windows\System32\Primomonnt.dll
2012-09-15 19:35 - 2012-09-16 19:44 - 07549704 ____A C:\Users\Joshua\Downloads\InternationalPrimoPDF.exe
2012-09-15 18:43 - 2012-09-15 18:43 - 00000000 ____A C:\Users\Joshua\My Documents\SolidPhys.txt
2012-09-15 18:43 - 2012-09-15 18:43 - 00000000 ____A C:\Users\Joshua\Documents\SolidPhys.txt
2012-09-15 16:56 - 2012-09-15 16:56 - 00101680 ____A (Amazon.com, Inc.) C:\Windows\System32\stkMonitor.dll
2012-09-15 16:56 - 2012-09-15 16:56 - 00000000 ____D C:\Users\Joshua\Local Settings\Application Data\Amazon
2012-09-15 16:56 - 2012-09-15 16:56 - 00000000 ____D C:\Users\Joshua\Local Settings\Amazon
2012-09-15 16:56 - 2012-09-15 16:56 - 00000000 ____D C:\Users\Joshua\AppData\Local\Amazon
2012-09-15 16:56 - 2012-09-15 16:56 - 00000000 ____D C:\Program Files (x86)\Amazon
2012-09-15 16:55 - 2012-09-15 16:55 - 05291440 ____A (Amazon.com, Inc.) C:\Users\Joshua\Downloads\SendToKindleForPC-installer.exe
2012-09-15 16:42 - 2012-09-24 18:15 - 00000000 ____D C:\Users\Joshua\Desktop\Fall 2012 Class PDF's
2012-09-14 18:29 - 2012-09-14 18:29 - 00000000 ___HD C:\Users\All Users\CanonIJSolutionMenuEX
2012-09-14 18:29 - 2012-09-14 18:29 - 00000000 ___HD C:\Users\All Users\CanonIJEPPEX2
2012-09-14 18:29 - 2012-09-14 18:29 - 00000000 ___HD C:\Users\All Users\CanonEPP
2012-09-14 18:29 - 2012-09-14 18:29 - 00000000 ___HD C:\Users\All Users\Application Data\CanonIJSolutionMenuEX
2012-09-14 18:29 - 2012-09-14 18:29 - 00000000 ___HD C:\Users\All Users\Application Data\CanonIJEPPEX2
2012-09-14 18:29 - 2012-09-14 18:29 - 00000000 ___HD C:\Users\All Users\Application Data\CanonEPP
2012-09-14 18:28 - 2012-09-14 18:28 - 00000000 ___HD C:\Users\All Users\CanonIJMyPrinter
2012-09-14 18:28 - 2012-09-14 18:28 - 00000000 ___HD C:\Users\All Users\Application Data\CanonIJMyPrinter
2012-09-14 18:28 - 2012-09-14 18:28 - 00000000 ____D C:\Users\Joshua\Application Data\Canon
2012-09-14 18:28 - 2012-09-14 18:28 - 00000000 ____D C:\Users\Joshua\AppData\Roaming\Canon
2012-09-14 18:25 - 2012-09-14 18:25 - 00000000 ____D C:\Users\All Users\Canon IJ Network Tool
2012-09-14 18:25 - 2012-09-14 18:25 - 00000000 ____D C:\Users\All Users\Application Data\Canon IJ Network Tool
2012-09-14 18:14 - 2012-09-14 18:14 - 00000000 ___HD C:\Users\All Users\CanonIJFAX
2012-09-14 18:14 - 2012-09-14 18:14 - 00000000 ___HD C:\Users\All Users\CanonIJEGV
2012-09-14 18:14 - 2012-09-14 18:14 - 00000000 ___HD C:\Users\All Users\Application Data\CanonIJFAX
2012-09-14 18:14 - 2012-09-14 18:14 - 00000000 ___HD C:\Users\All Users\Application Data\CanonIJEGV
2012-09-14 18:10 - 2012-09-14 18:10 - 00002037 ____A C:\Users\Public\Desktop\Canon Solution Menu EX.lnk
2012-09-14 18:10 - 2012-09-14 18:10 - 00002037 ____A C:\Users\All Users\Desktop\Canon Solution Menu EX.lnk
2012-09-14 18:10 - 2012-09-14 18:10 - 00000000 ____D C:\Program Files\Common Files\CANON
2012-09-14 18:09 - 2012-09-14 18:09 - 00000000 ____D C:\Users\All Users\CanonIJWSpt
2012-09-14 18:09 - 2012-09-14 18:09 - 00000000 ____D C:\Users\All Users\Application Data\CanonIJWSpt
2012-09-14 18:06 - 2012-09-14 18:06 - 00002316 ____A C:\Users\Public\Desktop\Canon MX430 series On-screen Manual.lnk
2012-09-14 18:06 - 2012-09-14 18:06 - 00002316 ____A C:\Users\All Users\Desktop\Canon MX430 series On-screen Manual.lnk
2012-09-14 18:06 - 2012-09-14 18:06 - 00000000 ____D C:\Program Files\Canon
2012-09-14 18:04 - 2012-09-14 18:04 - 00000000 ___HD C:\Windows\System32\CanonIJ Uninstaller Information
2012-09-14 18:04 - 2012-09-14 18:04 - 00000000 ___HD C:\Users\All Users\CanonBJ
2012-09-14 18:04 - 2012-09-14 18:04 - 00000000 ___HD C:\Users\All Users\Application Data\CanonBJ
2012-09-14 18:04 - 2012-09-14 18:04 - 00000000 ___HD C:\Program Files\CanonBJ
2012-09-14 18:04 - 2012-09-14 18:04 - 00000000 ____D C:\Windows\System32\STRING
2012-09-14 18:04 - 2011-11-03 05:00 - 00385024 ____A (CANON INC.) C:\Windows\System32\CNMLMB1.DLL
2012-09-14 18:04 - 2011-10-14 11:57 - 00300544 ____A (CANON INC.) C:\Windows\System32\CNC_B1C.dll
2012-09-14 18:04 - 2011-10-14 11:57 - 00102912 ____A (CANON INC.) C:\Windows\SysWOW64\CNC_B1U.dll
2012-09-14 18:04 - 2011-10-14 11:56 - 00109568 ____A (CANON INC.) C:\Windows\System32\CNC_B1I.dll
2012-09-14 18:04 - 2011-09-29 04:23 - 00256000 ____A (CANON INC.) C:\Windows\System32\CNMIUB1.DLL
2012-09-14 18:04 - 2011-09-22 08:59 - 00358912 ____A (CANON INC.) C:\Windows\System32\CNC_B1L.dll
2012-09-14 18:04 - 2011-09-22 08:57 - 00316416 ____A (CANON INC.) C:\Windows\SysWOW64\CNC_B1L.dll
2012-09-14 18:04 - 2011-09-21 05:00 - 00302592 ____A (CANON INC.) C:\Windows\System32\CNCALB1.DLL
2012-09-14 18:04 - 2011-08-16 03:30 - 00356864 ____A (CANON INC.) C:\Windows\System32\CNMN6PPM.DLL
2012-09-14 18:04 - 2011-08-16 03:30 - 00039424 ____A (CANON INC.) C:\Windows\System32\CNMN6UI.DLL
2012-09-14 18:04 - 2011-06-30 13:52 - 00065280 ____A C:\Windows\SysWOW64\CNC175BD.TBL
2012-09-14 18:04 - 2011-06-30 13:52 - 00065280 ____A C:\Windows\System32\CNC175BD.TBL
2012-09-14 18:04 - 2011-05-27 11:19 - 00097792 ____A (Canon Inc.) C:\Windows\System32\CNC_B1O.dll
2012-09-14 18:04 - 2008-08-25 18:02 - 00017920 ____A (CANON INC.) C:\Windows\System32\CNHMCA6.dll
2012-09-14 18:04 - 2008-08-25 18:02 - 00015872 ____A (CANON INC.) C:\Windows\SysWOW64\CNHMCA.dll
2012-09-14 18:03 - 2012-09-22 03:17 - 00000000 ____D C:\Users\All Users\CanonIJPLM
2012-09-14 18:03 - 2012-09-22 03:17 - 00000000 ____D C:\Users\All Users\Application Data\CanonIJPLM
2012-09-14 18:02 - 2012-09-14 18:28 - 00000000 ____D C:\Program Files (x86)\Canon
2012-09-14 18:02 - 2012-09-14 18:02 - 00000000 ___HD C:\Users\All Users\CanonIJETV
2012-09-14 18:02 - 2012-09-14 18:02 - 00000000 ___HD C:\Users\All Users\Application Data\CanonIJETV
2012-09-12 11:59 - 2012-08-22 13:12 - 01913200 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys
2012-09-12 11:59 - 2012-08-22 13:12 - 00950128 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ndis.sys
2012-09-12 11:59 - 2012-08-22 13:12 - 00376688 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\netio.sys
2012-09-12 11:59 - 2012-08-22 13:12 - 00288624 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\FWPKCLNT.SYS
2012-09-12 11:59 - 2012-08-02 12:58 - 00574464 ____A (Microsoft Corporation) C:\Windows\System32\d3d10level9.dll
2012-09-12 11:59 - 2012-08-02 11:57 - 00490496 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2012-09-12 11:59 - 2012-07-04 15:26 - 00041472 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\RNDISMP.sys
2012-09-10 22:46 - 2012-09-10 22:47 - 00007562 ____A C:\Users\Joshua\My Documents\cc_20120910_224651.reg
2012-09-10 22:46 - 2012-09-10 22:47 - 00007562 ____A C:\Users\Joshua\Documents\cc_20120910_224651.reg
2012-09-10 22:44 - 2012-09-10 22:44 - 00160710 ____A C:\Users\Joshua\My Documents\cc_20120910_224400.reg
2012-09-10 22:44 - 2012-09-10 22:44 - 00160710 ____A C:\Users\Joshua\Documents\cc_20120910_224400.reg
2012-09-10 22:39 - 2012-09-10 22:40 - 03927560 ____A (Piriform Ltd) C:\Users\Joshua\Downloads\ccsetup322.exe
==================== 3 Months Modified Files ==================
2012-09-30 00:47 - 2011-01-14 10:07 - 01861103 ____A C:\Windows\WindowsUpdate.log
2012-09-30 00:36 - 2009-07-13 23:45 - 00013872 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2012-09-30 00:36 - 2009-07-13 23:45 - 00013872 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2012-09-30 00:34 - 2012-09-30 00:34 - 00000089 ____A C:\data
2012-09-30 00:34 - 2009-07-14 00:13 - 00727334 ____A C:\Windows\System32\PerfStringBackup.INI
2012-09-30 00:29 - 2012-09-29 13:38 - 00000224 ____A C:\Windows\setupact.log
2012-09-30 00:29 - 2011-02-22 21:09 - 00000894 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2012-09-30 00:29 - 2009-07-14 00:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2012-09-29 22:52 - 2011-02-22 21:09 - 00000898 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2012-09-29 13:38 - 2012-09-29 13:38 - 00000456 ____A C:\Windows\PFRO.log
2012-09-29 13:38 - 2012-09-29 13:38 - 00000000 ____A C:\Windows\setuperr.log
2012-09-29 13:36 - 2012-09-29 13:36 - 00005289 ____A C:\AdwCleaner[S1].txt
2012-09-29 13:04 - 2012-09-29 13:04 - 00004532 ____A C:\AdwCleaner[R1].txt
2012-09-29 12:55 - 2012-09-29 12:54 - 00003456 ____A C:\Users\Joshua\My Documents\cc_20120929_125451.reg
2012-09-29 12:55 - 2012-09-29 12:54 - 00003456 ____A C:\Users\Joshua\Documents\cc_20120929_125451.reg
2012-09-29 12:43 - 2012-09-29 12:42 - 00607260 ____R (Swearware) C:\Users\Joshua\Desktop\dds.scr
2012-09-29 12:35 - 2012-09-29 12:35 - 00001071 ____A C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2012-09-29 12:35 - 2012-09-29 12:35 - 00001071 ____A C:\Users\All Users\Desktop\Malwarebytes Anti-Malware.lnk
2012-09-29 12:34 - 2012-09-29 12:33 - 10524080 ____A (Malwarebytes Corporation ) C:\Users\Joshua\Desktop\mbam-setup-1.65.0.1400.exe
2012-09-29 12:25 - 2012-09-29 12:25 - 00513501 ____A C:\Users\Joshua\Desktop\adwcleaner.exe
2012-09-29 12:15 - 2012-09-29 12:15 - 00000824 ____A C:\Users\Public\Desktop\CCleaner.lnk
2012-09-29 12:15 - 2012-09-29 12:15 - 00000824 ____A C:\Users\All Users\Desktop\CCleaner.lnk
2012-09-29 12:14 - 2012-09-29 12:13 - 03941312 ____A (Piriform Ltd) C:\Users\Joshua\Desktop\ccsetup323.exe
2012-09-29 11:37 - 2012-09-29 11:37 - 00302592 ____A C:\Users\Joshua\Downloads\c7bkzkj7.exe
2012-09-29 10:33 - 2012-09-29 10:33 - 00000000 ____A C:\Users\Joshua\Desktop\zk2f8py0.reg
2012-09-29 10:29 - 2012-09-29 10:29 - 00302592 ____A C:\Users\Joshua\Desktop\zk2f8py0.exe
2012-09-29 05:13 - 2012-09-29 05:13 - 00019277 ____A C:\ComboFix.txt
2012-09-29 05:12 - 2009-07-13 21:34 - 00000215 ____A C:\Windows\system.ini
2012-09-29 03:52 - 2012-09-29 03:52 - 02163864 ____A (US Tech Support LLC) C:\Users\Joshua\Downloads\MaxMySpeed.exe
2012-09-24 17:44 - 2012-09-24 17:44 - 04238448 ____A (Softland ) C:\Users\Joshua\Downloads\dopdf-7.exe
2012-09-23 11:40 - 2012-09-23 11:40 - 00057560 ____A C:\Windows\SysWOW64\GDIPFONTCACHEV1.DAT
2012-09-16 20:08 - 2012-09-16 20:08 - 05254656 ____A C:\Users\Joshua\Downloads\converter.exe
2012-09-16 19:44 - 2012-09-15 19:35 - 07549704 ____A C:\Users\Joshua\Downloads\InternationalPrimoPDF.exe
2012-09-15 20:55 - 2012-09-15 20:55 - 04633584 ____A (Acro Software Inc. ) C:\Users\Joshua\Downloads\CuteWriter.exe
2012-09-15 20:54 - 2012-09-15 20:54 - 00587640 ____A C:\Users\Joshua\Downloads\cbsidlm-tr1_6-CutePDF_Writer-10206470.exe
2012-09-15 19:45 - 2012-09-15 19:42 - 700989440 ___AT C:\Users\Joshua\My Documents\ModPhys.ps
2012-09-15 19:45 - 2012-09-15 19:42 - 700989440 ___AT C:\Users\Joshua\Documents\ModPhys.ps
2012-09-15 18:43 - 2012-09-15 18:43 - 00000000 ____A C:\Users\Joshua\My Documents\SolidPhys.txt
2012-09-15 18:43 - 2012-09-15 18:43 - 00000000 ____A C:\Users\Joshua\Documents\SolidPhys.txt
2012-09-15 16:56 - 2012-09-15 16:56 - 00101680 ____A (Amazon.com, Inc.) C:\Windows\System32\stkMonitor.dll
2012-09-15 16:55 - 2012-09-15 16:55 - 05291440 ____A (Amazon.com, Inc.) C:\Users\Joshua\Downloads\SendToKindleForPC-installer.exe
2012-09-14 18:10 - 2012-09-14 18:10 - 00002037 ____A C:\Users\Public\Desktop\Canon Solution Menu EX.lnk
2012-09-14 18:10 - 2012-09-14 18:10 - 00002037 ____A C:\Users\All Users\Desktop\Canon Solution Menu EX.lnk
2012-09-14 18:06 - 2012-09-14 18:06 - 00002316 ____A C:\Users\Public\Desktop\Canon MX430 series On-screen Manual.lnk
2012-09-14 18:06 - 2012-09-14 18:06 - 00002316 ____A C:\Users\All Users\Desktop\Canon MX430 series On-screen Manual.lnk
2012-09-13 03:01 - 2011-03-01 12:42 - 64462936 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
2012-09-10 22:47 - 2012-09-10 22:46 - 00007562 ____A C:\Users\Joshua\My Documents\cc_20120910_224651.reg
2012-09-10 22:47 - 2012-09-10 22:46 - 00007562 ____A C:\Users\Joshua\Documents\cc_20120910_224651.reg
2012-09-10 22:44 - 2012-09-10 22:44 - 00160710 ____A C:\Users\Joshua\My Documents\cc_20120910_224400.reg
2012-09-10 22:44 - 2012-09-10 22:44 - 00160710 ____A C:\Users\Joshua\Documents\cc_20120910_224400.reg
2012-09-10 22:40 - 2012-09-10 22:39 - 03927560 ____A (Piriform Ltd) C:\Users\Joshua\Downloads\ccsetup322.exe
2012-09-07 17:04 - 2012-09-29 12:35 - 00025928 ____A (Malwarebytes Corporation) C:\Windows\System32\Drivers\mbam.sys
2012-08-29 16:35 - 2012-08-29 16:35 - 00929280 ____A C:\Users\Joshua\Downloads\LarColAlg8_01_04.ppt
2012-08-24 13:05 - 2012-09-21 18:01 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2012-08-24 13:05 - 2012-09-21 18:00 - 01188864 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2012-08-24 13:05 - 2012-09-21 17:59 - 00134144 ____A (Microsoft Corporation) C:\Windows\System32\url.dll
2012-08-24 13:03 - 2012-09-21 18:01 - 09056256 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2012-08-24 13:03 - 2012-09-21 18:01 - 00735744 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2012-08-24 13:03 - 2012-09-21 18:00 - 00097792 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2012-08-24 13:03 - 2012-09-21 18:00 - 00064512 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2012-08-24 13:02 - 2012-09-21 18:01 - 12295680 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2012-08-24 13:02 - 2012-09-21 18:00 - 02453504 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2012-08-24 13:02 - 2012-09-21 18:00 - 00247808 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2012-08-24 11:57 - 2012-09-21 18:01 - 06028800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2012-08-24 11:57 - 2012-09-21 18:01 - 01231872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2012-08-24 11:57 - 2012-09-21 18:01 - 00627712 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2012-08-24 11:57 - 2012-09-21 18:00 - 00981504 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2012-08-24 11:57 - 2012-09-21 18:00 - 00067584 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2012-08-24 11:57 - 2012-09-21 17:59 - 00132096 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2012-08-24 11:56 - 2012-09-21 18:01 - 11020800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2012-08-24 11:56 - 2012-09-21 18:00 - 02073600 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2012-08-24 11:56 - 2012-09-21 18:00 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2012-08-24 11:56 - 2012-09-21 17:59 - 00048128 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2012-08-24 10:59 - 2012-09-21 17:59 - 01638912 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2012-08-24 10:20 - 2012-09-21 17:59 - 01638912 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2012-08-22 13:12 - 2012-09-12 11:59 - 01913200 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys
2012-08-22 13:12 - 2012-09-12 11:59 - 00950128 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ndis.sys
2012-08-22 13:12 - 2012-09-12 11:59 - 00376688 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\netio.sys
2012-08-22 13:12 - 2012-09-12 11:59 - 00288624 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\FWPKCLNT.SYS
2012-08-21 16:01 - 2012-09-26 16:39 - 00245760 ____A (Microsoft Corporation) C:\Windows\System32\OxpsConverter.exe
2012-08-17 08:44 - 2009-07-13 23:45 - 00274320 ____A C:\Windows\System32\FNTCACHE.DAT
2012-08-02 12:58 - 2012-09-12 11:59 - 00574464 ____A (Microsoft Corporation) C:\Windows\System32\d3d10level9.dll
2012-08-02 11:57 - 2012-09-12 11:59 - 00490496 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2012-07-31 11:31 - 2012-09-15 20:58 - 00087152 ____A C:\Windows\System32\cpwmon64.dll
2012-07-25 13:57 - 2012-07-25 13:56 - 10652120 ____A (Malwarebytes Corporation ) C:\Users\Joshua\Downloads\mbam-setup-1.62.0.1300.exe
2012-07-25 10:29 - 2012-07-25 10:29 - 02136664 ____A (Kaspersky Lab ZAO) C:\Users\Joshua\Downloads\tdsskiller.exe
2012-07-23 19:37 - 2012-07-23 19:37 - 00000000 ____A C:\Windows\SysWOW64\sho8B2F.tmp
2012-07-23 18:05 - 2012-07-23 18:03 - 16580936 ____A (McAfee, Inc.) C:\Users\Joshua\Downloads\6781xdat.exe.part
2012-07-23 18:04 - 2012-07-23 18:04 - 02199393 ____A (McAfee, Inc.) C:\Users\Joshua\Downloads\5400eng.exe
2012-07-18 13:15 - 2012-08-16 08:15 - 03148800 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys
2012-07-16 15:32 - 2012-07-16 15:32 - 00008187 ____A C:\Users\Joshua\My Documents\2012-2013 FADX.txt
2012-07-16 15:32 - 2012-07-16 15:32 - 00008187 ____A C:\Users\Joshua\Documents\2012-2013 FADX.txt
2012-07-06 15:07 - 2012-08-17 03:09 - 00552960 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\bthport.sys
2012-07-04 17:16 - 2012-08-16 08:18 - 00073216 ____A (Microsoft Corporation) C:\Windows\System32\netapi32.dll
2012-07-04 17:13 - 2012-08-16 08:18 - 00136704 ____A (Microsoft Corporation) C:\Windows\System32\browser.dll
2012-07-04 17:13 - 2012-08-16 08:18 - 00059392 ____A (Microsoft Corporation) C:\Windows\System32\browcli.dll
2012-07-04 16:16 - 2012-08-16 08:18 - 00057344 ____A (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll
2012-07-04 16:14 - 2012-08-16 08:18 - 00041984 ____A (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll
2012-07-04 15:26 - 2012-09-12 11:59 - 00041472 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\RNDISMP.sys
==================== Known DLLs (Whitelisted) =================
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
==================== EXE ASSOCIATION =====================
HKLM\...\.exe: exefile => OK
HKLM\...\exefile\DefaultIcon: %1 => OK
HKLM\...\exefile\open\command: "%1" %* => OK
==================== Restore Points =========================
Restore point made on: 2012-09-29 06:01:43
==================== Memory info ===========================
Percentage of memory in use: 16%
Total physical RAM: 3894.68 MB
Available physical RAM: 3249.96 MB
Total Pagefile: 3892.83 MB
Available Pagefile: 3241.49 MB
Total Virtual: 8192 MB
Available Virtual: 8191.9 MB
==================== Partitions =============================
1 Drive c: (OS) (Fixed) (Total:451.01 GB) (Free:370.24 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
2 Drive d: (Recovery) (Fixed) (Total:14.65 GB) (Free:7.47 GB) NTFS ==>[System with boot components (obtained from reading drive)]
4 Drive f: (JOKAZZ) (Removable) (Total:3.74 GB) (Free:2.27 GB) FAT32
5 Drive g: () (Removable) (Total:3.69 GB) (Free:0.02 GB) FAT32
6 Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS
Disk ### Status Size Free Dyn Gpt
-------- ------------- ------- ------- --- ---
Disk 0 Online 465 GB 0 B
Disk 1 Online 3835 MB 0 B
Disk 2 Online 3781 MB 0 B
Partitions of Disk 0:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 OEM 100 MB 1024 KB
Partition 2 Primary 14 GB 101 MB
Partition 3 Primary 451 GB 14 GB
==================================================================================
Disk: 0
Partition 1
Type : DE
Hidden: Yes
Active: No
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 5 DELLUTILITY FAT Partition 100 MB Healthy Hidden
=========================================================
Disk: 0
Partition 2
Type : 07
Hidden: No
Active: Yes
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 1 D Recovery NTFS Partition 14 GB Healthy
=========================================================
Disk: 0
Partition 3
Type : 07
Hidden: No
Active: No
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 2 C OS NTFS Partition 451 GB Healthy
=========================================================
Partitions of Disk 1:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 3827 MB 19 KB
==================================================================================
Disk: 1
Partition 1
Type : 0B
Hidden: No
Active: No
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 3 F JOKAZZ FAT32 Removable 3827 MB Healthy
=========================================================
Partitions of Disk 2:
===============
Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 3777 MB 4096 KB
==================================================================================
Disk: 2
Partition 1
Type : 0B
Hidden: No
Active: No
Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 4 G FAT32 Removable 3777 MB Healthy
=========================================================
Last Boot: 2012-09-26 18:45
==================== End Of Log =============================