Results 1 to 8 of 8

Thread: HIGH CPU...Background programs...Disabling of Spy Bot...guessing Virus or Malware

  1. #1
    Junior Member moonlightandroses's Avatar
    Join Date
    Nov 2013
    Posts
    8

    Unhappy HIGH CPU...Background programs...Disabling of Spy Bot...guessing Virus or Malware

    I have run scans but have not run any FIXES

    Please find attached all the things I have done to help someone get started with my issues:

    OTL logfile created on: 11/21/2013 5:54:49 AM - Run 1
    OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Lorrie\Desktop
    Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
    Internet Explorer (Version = 9.10.9200.16736)
    Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

    3.00 Gb Total Physical Memory | 1.70 Gb Available Physical Memory | 56.67% Memory free
    5.99 Gb Paging File | 4.35 Gb Available in Paging File | 72.49% Paging File free
    Paging file location(s): c:\pagefile.sys 0 0 [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
    Drive C: | 450.71 Gb Total Space | 220.21 Gb Free Space | 48.86% Space Free | Partition Type: NTFS
    Drive D: | 15.00 Gb Total Space | 3.74 Gb Free Space | 24.94% Space Free | Partition Type: NTFS

    Computer Name: LORRIE-PC | User Name: Lorrie | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: Current user
    Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

    ========== Processes (SafeList) ==========

    PRC - C:\Users\Lorrie\Desktop\OTL.exe (OldTimer Tools)
    PRC - C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe (Safer-Networking Ltd.)
    PRC - C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe (Safer-Networking Ltd.)
    PRC - C:\Program Files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe (Apple Inc.)
    PRC - C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe (Apple Inc.)
    PRC - C:\Program Files\Common Files\Apple\Internet Services\APSDaemon.exe (Apple Inc.)
    PRC - C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe (Safer-Networking Ltd.)
    PRC - C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd.)
    PRC - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
    PRC - C:\Windows\System32\taskhost.exe (Microsoft Corporation)
    PRC - C:\Program Files\Windstream\Service Agent\ServicepointService.exe (Radialpoint SafeCare Inc.)
    PRC - C:\Program Files\Kodak\KODAK Share Button App\Listener.exe (Eastman Kodak Company)
    PRC - C:\Program Files\Windstream\Diagnostic Tools\HsdService.exe (Windstream)
    PRC - C:\Program Files\Windstream\Diagnostic Tools\DiagnosticTools.exe (Windstream)
    PRC - C:\Windows\System32\atieclxx.exe (AMD)
    PRC - C:\Windows\System32\atiesrxx.exe (AMD)
    PRC - C:\Windows\explorer.exe (Microsoft Corporation)
    PRC - C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe (Eastman Kodak Company)
    PRC - C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe (Creative Labs)
    PRC - C:\Program Files\Hewlett-Packard\Marketsplash by HP\HPLocalWebPrintAgent.exe (Hewlett-Packard Company)
    PRC - C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe ()
    PRC - C:\Program Files\Adobe\Photoshop Elements 6.0\apdproxy.exe (Adobe Systems Incorporated)
    PRC - C:\Program Files\Common Files\InstallShield\UpdateService\agent.exe (Macrovision Corporation)


    ========== Modules (No Company Name) ==========

    MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\ef0a534be135cd8f0d99d938d8b1814a\System.Windows.Forms.ni.dll ()
    MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\29f3ae8d313e62b4daed1107ccd29f9f\System.Configuration.ni.dll ()
    MOD - C:\Program Files\Common Files\Apple\Internet Services\zlib1.dll ()
    MOD - C:\Program Files\Common Files\Apple\Internet Services\libxml2.dll ()
    MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\5aa44bce7933e4de09d935848f868a4b\System.Drawing.ni.dll ()
    MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\09db78d6068543df01862a023aca785a\System.Xml.ni.dll ()
    MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System\5d22a30e587e2cac106b81fb351e7c08\System.ni.dll ()
    MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\9a6c1b7af18b4d5a91dc7f8d6617522f\mscorlib.ni.dll ()
    MOD - C:\Program Files\Spybot - Search & Destroy 2\snlThirdParty150.bpl ()
    MOD - C:\Program Files\Spybot - Search & Destroy 2\DEC150.bpl ()
    MOD - C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll ()
    MOD - C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\VPrintOnline.dll ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\VPrintOnlineHelper40.dll ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\SkinuxCmpV.dll ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\SkinuxCommonV.dll ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\SkinuxBaseV.dll ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\SkinuxXML2V.dll ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\SkinuxImV.dll ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\SkinuxProcV.dll ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\SkinuxFFV.dll ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\SpiffyExt.dll ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\SkinuxZipV.dll ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\ESCom.dll ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\KFx.dll ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\kpries40.dll ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\LocAcqMod.dll ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\keml40.dll ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\KPCDInterface.dll ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\LocCamBack.dll ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\LocUpdateCheck.dll ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\areaifdll.dll ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\Atlas.dll ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\VistaAdapter.esx ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\VistaPrintOnline.esx ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\AppCore.dll ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\VistaControls.esx ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\Pcd.esx ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\VistaCDBackup.esx ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\UpdateChecker.esx ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\DibLibIP.dll ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\ESSkin.esx ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\ESCliWicMDRW.esx ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\ESEmail.esx ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\IStorageMediaStore.esx ()
    MOD - C:\Program Files\Kodak\Kodak EasyShare software\bin\DXRawFormatHandler.esx ()


    ========== Services (SafeList) ==========

    SRV - (SDWSCService) -- C:\Program Files\Spybot File not found
    SRV - (SDUpdateService) -- C:\Program Files\Spybot File not found
    SRV - (SDScannerService) -- C:\Program Files\Spybot File not found
    SRV - (GamesAppService) -- C:\Program Files\WildTangent Games\App\GamesAppService.exe File not found
    SRV - (avgwd) -- C:\Program Files\AVG\AVG2013\avgwdsvc.exe File not found
    SRV - (AVGIDSAgent) -- C:\Program Files\AVG\AVG2013\avgidsagent.exe File not found
    SRV - (vToolbarUpdater17.1.2) -- C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\17.1.2\ToolbarUpdater.exe (AVG Secure Search)
    SRV - (MozillaMaintenance) -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation)
    SRV - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
    SRV - (AdobeARMservice) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
    SRV - (UMVPFSrv) -- C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe (Logitech Inc.)
    SRV - (ServicepointService) -- C:\Program Files\Windstream\Service Agent\ServicepointService.exe (Radialpoint SafeCare Inc.)
    SRV - (HsdService) -- C:\Program Files\Windstream\Diagnostic Tools\HsdService.exe (Windstream)
    SRV - (AMD External Events Utility) -- C:\Windows\System32\atiesrxx.exe (AMD)
    SRV - (Creative Labs Licensing Service) -- C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe (Creative Labs)
    SRV - (FLEXnet Licensing Service) -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Macrovision Europe Ltd.)
    SRV - (WatAdminSvc) -- C:\Windows\System32\Wat\WatAdminSvc.exe (Microsoft Corporation)
    SRV - (SensrSvc) -- C:\Windows\System32\sensrsvc.dll (Microsoft Corporation)
    SRV - (AdobeActiveFileMonitor6.0) -- C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe ()
    SRV - (IDriverT) -- C:\Program Files\Roxio\Roxio MyDVD Premier\InstallShield\Driver\1050\Intel 32\IDriverT.exe (Macrovision Corporation)


    ========== Driver Services (SafeList) ==========

    DRV - (SDHookDriver) -- C:\Program Files\Spybot File not found
    DRV - (MRESP50) -- C:\PROGRA~1\COMMON~1\Motive\MRESP50.SYS File not found
    DRV - (MRENDIS5) -- C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS File not found
    DRV - (MREMPR5) -- C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS File not found
    DRV - (MREMP50) -- C:\PROGRA~1\COMMON~1\Motive\MREMP50.SYS File not found
    DRV - (motport) -- system32\DRIVERS\motport.sys File not found
    DRV - (motmodem) -- system32\DRIVERS\motmodem.sys File not found
    DRV - (MotDev) -- system32\DRIVERS\motodrv.sys File not found
    DRV - (motccgpfl) -- system32\DRIVERS\motccgpfl.sys File not found
    DRV - (motccgp) -- system32\DRIVERS\motccgp.sys File not found
    DRV - (Lbd) -- system32\DRIVERS\Lbd.sys File not found
    DRV - (Lavasoft Kernexplorer) -- C:\Program Files\Lavasoft\Ad-Aware\KernExplorer.sys File not found
    DRV - (aswMBR) -- C:\Users\Lorrie\AppData\Local\Temp\aswMBR.sys File not found
    DRV - (avgtp) -- C:\Windows\System32\drivers\avgtpx86.sys (AVG Technologies)
    DRV - (AVGIDSShim) -- C:\Windows\System32\drivers\avgidsshimx.sys (AVG Technologies CZ, s.r.o.)
    DRV - (Avgrkx86) -- C:\Windows\System32\drivers\avgrkx86.sys (AVG Technologies CZ, s.r.o.)
    DRV - (Avglogx) -- C:\Windows\System32\drivers\avglogx.sys (AVG Technologies CZ, s.r.o.)
    DRV - (AVGIDSDriver) -- C:\Windows\System32\drivers\avgidsdriverx.sys (AVG Technologies CZ, s.r.o.)
    DRV - (AVGIDSHX) -- C:\Windows\System32\drivers\avgidshx.sys (AVG Technologies CZ, s.r.o.)
    DRV - (Avgldx86) -- C:\Windows\System32\drivers\avgldx86.sys (AVG Technologies CZ, s.r.o.)
    DRV - (Avgmfx86) -- C:\Windows\System32\drivers\avgmfx86.sys (AVG Technologies CZ, s.r.o.)
    DRV - (Avgtdix) -- C:\Windows\System32\drivers\avgtdix.sys (AVG Technologies CZ, s.r.o.)
    DRV - (LVUVC) -- C:\Windows\System32\drivers\lvuvc.sys (Logitech Inc.)
    DRV - (LVRS) -- C:\Windows\System32\drivers\lvrs.sys (Logitech Inc.)
    DRV - (atikmdag) -- C:\Windows\System32\drivers\atikmdag.sys (ATI Technologies Inc.)
    DRV - (amdkmdag) -- C:\Windows\System32\drivers\atikmdag.sys (ATI Technologies Inc.)
    DRV - (amdkmdap) -- C:\Windows\System32\drivers\atikmpag.sys (Advanced Micro Devices, Inc.)
    DRV - (TsUsbFlt) -- C:\Windows\System32\drivers\TsUsbFlt.sys (Microsoft Corporation)
    DRV - (WinUsb) -- C:\Windows\System32\drivers\winusb.sys (Microsoft Corporation)
    DRV - (vwifimp) -- C:\Windows\System32\drivers\vwifimp.sys (Microsoft Corporation)
    DRV - (Serial) -- C:\Windows\System32\drivers\serial.sys (Brother Industries Ltd.)
    DRV - (VSTHWBS2) -- C:\Windows\System32\drivers\VSTBS23.SYS (Conexant Systems, Inc.)
    DRV - (e1express) -- C:\Windows\System32\drivers\e1e6232.sys (Intel Corporation)


    ========== Standard Registry (SafeList) ==========


    ========== Internet Explorer ==========

    IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
    IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC

    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://vp.crossmark.com/
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 42 38 23 19 43 E9 CB 01 [binary data]
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore = http://www.ebay.com/
    IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
    IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE10SR
    IE - HKCU\..\SearchScopes\{5933A60C-4230-42B3-B6CF-624A4EB053DF}: "URL" = http://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=198484&p={searchTerms}
    IE - HKCU\..\SearchScopes\{9B97950D-482C-1D79-568F-FC7B9D40C785}: "URL" = http://www.bing.com/search?q={searchTerms}&pc=Z192&form=ZGAIDF&install_date=20110928&iesrc={referrer:source}
    IE - HKCU\..\SearchScopes\{F80BB570-56B3-492B-812B-A6D11947745A}: "URL" = http://search.avg.com/?d=4dc9c365&i=23&tp=chrome&q={searchTerms}&lng={language}&nt=1
    IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
    IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
    IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = localhost:21320

    ========== FireFox ==========

    FF - prefs.js..browser.search.update: false
    FF - prefs.js..browser.search.useDBForOrder: true
    FF - prefs.js..browser.startup.homepage: "www.ebay.com"
    FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:25.0.1
    FF - user.js - File not found

    FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_152.dll ()
    FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
    FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
    FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@radialpoint.com/SPA,version=1: C:\Program Files\Windstream\Service Agent\nprpspa.dll (Windstream)

    FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 25.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components
    FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 25.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins

    [2012/10/15 10:53:20 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Lorrie\AppData\Roaming\Mozilla\Extensions
    [2013/11/16 10:24:13 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Lorrie\AppData\Roaming\Mozilla\Firefox\Profiles\0kr6mrl7.default-1384394449626\extensions
    [2013/11/19 07:36:31 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Lorrie\AppData\Roaming\Mozilla\Firefox\Profiles\8ds89fh7.default-1379420438382\extensions
    [2013/11/16 10:24:13 | 000,915,554 | ---- | M] () (No name found) -- C:\Users\Lorrie\AppData\Roaming\Mozilla\Firefox\Profiles\0kr6mrl7.default-1384394449626\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
    [2013/11/20 08:56:31 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions
    [2013/11/20 08:56:31 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

    O1 HOSTS File: ([2013/11/21 03:50:49 | 000,447,892 | R--- | M]) - C:\Windows\System32\drivers\etc\hosts
    O1 - Hosts: 127.0.0.1 www.007guard.com
    O1 - Hosts: 127.0.0.1 007guard.com
    O1 - Hosts: 127.0.0.1 008i.com
    O1 - Hosts: 127.0.0.1 www.008k.com
    O1 - Hosts: 127.0.0.1 008k.com
    O1 - Hosts: 127.0.0.1 www.00hq.com
    O1 - Hosts: 127.0.0.1 00hq.com
    O1 - Hosts: 127.0.0.1 010402.com
    O1 - Hosts: 127.0.0.1 www.032439.com
    O1 - Hosts: 127.0.0.1 032439.com
    O1 - Hosts: 127.0.0.1 www.0scan.com
    O1 - Hosts: 127.0.0.1 0scan.com
    O1 - Hosts: 127.0.0.1 1000gratisproben.com
    O1 - Hosts: 127.0.0.1 www.1000gratisproben.com
    O1 - Hosts: 127.0.0.1 1001namen.com
    O1 - Hosts: 127.0.0.1 www.1001namen.com
    O1 - Hosts: 127.0.0.1 100888290cs.com
    O1 - Hosts: 127.0.0.1 www.100888290cs.com
    O1 - Hosts: 127.0.0.1 www.100sexlinks.com
    O1 - Hosts: 127.0.0.1 100sexlinks.com
    O1 - Hosts: 127.0.0.1 10sek.com
    O1 - Hosts: 127.0.0.1 www.10sek.com
    O1 - Hosts: 127.0.0.1 www.1-2005-search.com
    O1 - Hosts: 127.0.0.1 1-2005-search.com
    O1 - Hosts: 127.0.0.1 123fporn.info
    O1 - Hosts: 15366 more lines...
    O2 - BHO: (no name) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - No CLSID value found.
    O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
    O2 - BHO: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\17.1.2.1\AVG Secure Search_toolbar.dll__BHODemonDisabled File not found
    O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
    O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
    O3 - HKLM\..\Toolbar: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\17.1.2.1\AVG Secure Search_toolbar.dll__BHODemonDisabled File not found
    O4 - HKLM..\Run: [] File not found
    O4 - HKLM..\Run: [Adobe Photo Downloader] C:\Program Files\Adobe\Photoshop Elements 6.0\apdproxy.exe (Adobe Systems Incorporated)
    O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
    O4 - HKLM..\Run: [DiagnosticTools.exe] C:\Program Files\Windstream\Diagnostic Tools\DiagnosticTools.exe (Windstream)
    O4 - HKLM..\Run: [SDTray] C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd.)
    O4 - HKLM..\Run: [Windstream Service Agent.exe] C:\Program Files\Windstream\Service Agent\Windstream Service Agent.exe (Windstream)
    O4 - HKCU..\Run: [ApplePhotoStreams] C:\Program Files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe (Apple Inc.)
    O4 - HKCU..\Run: [iCloudServices] C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe (Apple Inc.)
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
    O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office14\EXCEL.EXE (Microsoft Corporation)
    O8 - Extra context menu item: Se&nd to OneNote - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
    O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
    O9 - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
    O9 - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
    O9 - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
    O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
    O13 - gopher Prefix: missing
    O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Reg Error: Value error.)
    O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_26)
    O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 10.17.2)
    O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.254.254
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{07BECF09-966E-474F-AC4E-E355ECB076C6}: DhcpNameServer = 192.168.254.254
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{733263B9-EEB7-459C-A510-3A00B34297FF}: DhcpNameServer = 192.168.254.254
    O18 - Protocol\Handler\linkscanner - No CLSID value found
    O18 - Protocol\Handler\viprotocol {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\17.1.2\ViProtocol.dll (AVG Secure Search)
    O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
    O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
    O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
    O20 - Winlogon\Notify\SDWinLogon: DllName - (SDWinLogon.dll) - File not found
    O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
    O32 - HKLM CDRom: AutoRun - 1
    O32 - AutoRun File - [2009/06/10 15:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
    O33 - MountPoints2\{e76dfa98-af42-11e0-929c-001d091f8cb8}\Shell - "" = AutoRun
    O33 - MountPoints2\{e76dfa98-af42-11e0-929c-001d091f8cb8}\Shell\AutoRun\command - "" = K:\KODAK_Camera_Setup_App.exe
    O34 - HKLM BootExecute: (autocheck autochk *)
    O35 - HKLM\..comfile [open] -- "%1" %*
    O35 - HKLM\..exefile [open] -- "%1" %*
    O37 - HKLM\...com [@ = comfile] -- "%1" %*
    O37 - HKLM\...exe [@ = exefile] -- "%1" %*
    O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
    O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
    O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

    NetSvcs: FastUserSwitchingCompatibility - File not found
    NetSvcs: Ias - C:\Windows\System32\ias.dll (Microsoft Corporation)
    NetSvcs: Nla - File not found
    NetSvcs: Ntmssvc - File not found
    NetSvcs: NWCWorkstation - File not found
    NetSvcs: Nwsapagent - File not found
    NetSvcs: SRService - File not found
    NetSvcs: WmdmPmSp - File not found
    NetSvcs: LogonHours - File not found
    NetSvcs: PCAudit - File not found
    NetSvcs: helpsvc - File not found
    NetSvcs: uploadmgr - File not found

    Drivers32: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
    Drivers32: MSVideo - C:\Windows\System32\vfwwdm32.dll (Microsoft Corporation)
    Drivers32: MSVideo8 - C:\Windows\System32\vfwwdm32.dll (Microsoft Corporation)
    Drivers32: vidc.cvid - C:\Windows\System32\iccvid.dll (Radius Inc.)
    Drivers32: vidc.i420 - C:\Windows\System32\lvcodec2.dll (Logitech Inc.)

    CREATERESTOREPOINT
    Restore point Set: OTL Restore Point

    CREATERESTOREPOINT
    Restore point Set: OTL Restore Point

    ========== Files/Folders - Created Within 30 Days ==========

    [2013/11/21 05:49:10 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Lorrie\Desktop\OTL.exe
    [2013/11/21 05:05:08 | 004,745,728 | ---- | C] (AVAST Software) -- C:\Users\Lorrie\Desktop\aswMBR.exe
    [2013/11/21 05:03:56 | 000,000,000 | ---D | C] -- C:\Users\Lorrie\Documents\Computer fixes
    [2013/11/21 03:29:23 | 000,000,000 | ---D | C] -- C:\Users\Lorrie\Documents\Spybot Log
    [2013/11/20 09:17:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
    [2013/11/20 09:17:21 | 000,022,856 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
    [2013/11/20 09:17:21 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
    [2013/11/20 09:16:33 | 010,285,040 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\Lorrie\Desktop\mbam-setup-1.75.0.1300(1).exe
    [2013/11/20 08:56:37 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Maintenance Service
    [2013/11/19 16:39:59 | 000,000,000 | ---D | C] -- C:\Program Files\AVG Secure Search
    [2013/11/18 03:05:37 | 002,877,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript9.dll
    [2013/11/18 03:05:37 | 002,706,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
    [2013/11/18 03:05:36 | 000,391,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
    [2013/11/18 03:05:36 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesetup.dll
    [2013/11/18 03:05:36 | 000,039,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
    [2013/11/18 03:05:35 | 000,493,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
    [2013/11/18 03:05:35 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesysprep.dll
    [2013/11/18 03:05:35 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RegisterIEPKEYs.exe
    [2013/11/18 03:05:35 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ie4uinit.exe
    [2013/11/18 03:05:35 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iernonce.dll
    [2013/11/17 15:30:46 | 001,796,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\authui.dll
    [2013/11/17 15:30:46 | 000,152,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SmartcardCredentialProvider.dll
    [2013/11/17 15:30:33 | 000,220,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ncrypt.dll
    [2013/11/17 15:30:33 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sspisrv.dll
    [2013/11/17 15:29:01 | 000,656,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\nshwfp.dll
    [2013/11/17 15:29:01 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\FWPUCLNT.DLL
    [2013/11/17 15:24:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
    [2013/11/17 15:24:32 | 000,018,968 | ---- | C] (Safer Networking Limited) -- C:\Windows\System32\sdnclean.exe
    [2013/11/16 08:31:30 | 000,000,000 | ---D | C] -- C:\Users\Lorrie\Documents\Spy Bot
    [2013/11/16 08:17:10 | 000,000,000 | ---D | C] -- C:\Users\Lorrie\Documents\ProcAlyzer Dumps
    [2013/11/16 07:25:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy
    [2013/11/16 07:24:48 | 000,000,000 | ---D | C] -- C:\Program Files\Spybot - Search & Destroy 2
    [2013/11/16 06:57:08 | 000,000,000 | ---D | C] -- C:\Users\Lorrie\AppData\Local\LogMeIn Rescue Applet
    [2013/11/16 06:46:07 | 000,000,000 | ---D | C] -- C:\Users\Lorrie\AppData\Local\SlimWare Utilities Inc
    [2013/11/16 06:46:03 | 000,000,000 | ---D | C] -- C:\ProgramData\SlimWare Utilities Inc
    [2013/11/16 06:45:52 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Downloaded Installers
    [2013/11/15 05:09:37 | 000,000,000 | ---D | C] -- C:\Users\Lorrie\Documents\Southwest Travel Credits
    [2013/11/13 20:23:43 | 000,000,000 | ---D | C] -- C:\Program Files\VS Revo Group
    [2013/11/13 08:02:14 | 000,000,000 | ---D | C] -- C:\Users\Lorrie\AppData\Local\Avg2013
    [2013/11/12 05:24:16 | 000,000,000 | -HSD | C] -- C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
    [2013/11/11 17:16:55 | 000,000,000 | ---D | C] -- C:\Users\Lorrie\AppData\Roaming\Nero
    [2013/11/11 17:10:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Seagate
    [2013/11/11 17:10:45 | 000,000,000 | ---D | C] -- C:\Users\Lorrie\AppData\Roaming\Seagate
    [2013/11/08 20:32:57 | 000,000,000 | ---D | C] -- C:\Users\Lorrie\Documents\Chase
    [2013/11/07 14:15:27 | 000,000,000 | ---D | C] -- C:\Program Files\SearchProtect
    [2013/11/07 14:15:26 | 000,000,000 | ---D | C] -- C:\Users\Lorrie\AppData\Local\SearchProtect
    [2013/11/03 05:50:01 | 000,000,000 | ---D | C] -- C:\Users\Lorrie\AppData\Roaming\LavasoftStatistics
    [2013/11/02 19:47:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Oracle
    [2013/11/02 19:45:15 | 000,175,016 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\javaw.exe
    [2013/10/28 07:42:59 | 000,000,000 | ---D | C] -- C:\Users\Lorrie\Documents\Crafts
    [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
    [1 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ]
    [1 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ]

    ========== Files - Modified Within 30 Days ==========

    [2013/11/21 05:49:11 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Lorrie\Desktop\OTL.exe
    [2013/11/21 05:05:11 | 004,745,728 | ---- | M] (AVAST Software) -- C:\Users\Lorrie\Desktop\aswMBR.exe
    [2013/11/21 04:49:16 | 000,891,200 | ---- | M] () -- C:\Users\Lorrie\Desktop\SecurityCheck.exe
    [2013/11/21 03:50:49 | 000,447,892 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts
    [2013/11/21 03:50:46 | 000,447,916 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035049.backup
    [2013/11/21 03:50:44 | 000,447,940 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035046.backup
    [2013/11/21 03:50:42 | 000,447,968 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035044.backup
    [2013/11/21 03:50:40 | 000,447,996 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035042.backup
    [2013/11/21 03:50:37 | 000,448,026 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035040.backup
    [2013/11/21 03:50:35 | 000,448,062 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035037.backup
    [2013/11/21 03:50:31 | 000,448,096 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035035.backup
    [2013/11/21 03:50:25 | 000,448,121 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035028.backup
    [2013/11/21 03:50:25 | 000,448,121 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035031.backup
    [2013/11/21 03:50:22 | 000,448,149 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035025.backup
    [2013/11/21 03:50:19 | 000,448,175 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035022.backup
    [2013/11/21 03:50:17 | 000,448,203 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035019.backup
    [2013/11/21 03:50:08 | 000,448,234 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035010.backup
    [2013/11/21 03:50:08 | 000,448,234 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035017.backup
    [2013/11/21 03:50:08 | 000,448,234 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035014.backup
    [2013/11/21 03:50:06 | 000,448,265 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035008.backup
    [2013/11/21 03:50:03 | 000,448,290 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035006.backup
    [2013/11/21 03:50:00 | 000,448,319 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035003.backup
    [2013/11/21 03:49:58 | 000,448,347 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035000.backup
    [2013/11/21 03:49:56 | 000,448,375 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034958.backup
    [2013/11/21 03:49:52 | 000,448,402 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034956.backup
    [2013/11/21 03:49:49 | 000,448,424 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034952.backup
    [2013/11/21 03:49:46 | 000,448,451 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034949.backup
    [2013/11/21 03:49:41 | 000,448,473 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034946.backup
    [2013/11/21 03:49:24 | 000,448,499 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034941.backup
    [2013/11/21 03:49:20 | 000,448,534 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034924.backup
    [2013/11/21 03:49:18 | 000,448,565 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034920.backup
    [2013/11/21 03:49:15 | 000,448,595 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034918.backup
    [2013/11/21 03:49:03 | 000,448,618 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034915.backup
    [2013/11/21 03:49:01 | 000,448,648 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034903.backup
    [2013/11/21 03:48:57 | 000,448,672 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034901.backup
    [2013/11/21 03:48:54 | 000,448,697 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034857.backup
    [2013/11/21 03:48:36 | 000,448,727 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034854.backup
    [2013/11/21 03:48:34 | 000,448,754 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034836.backup
    [2013/11/21 03:48:32 | 000,448,783 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034834.backup
    [2013/11/21 03:48:30 | 000,448,808 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034832.backup
    [2013/11/21 03:48:28 | 000,448,838 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034830.backup
    [2013/11/21 03:48:23 | 000,448,869 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034828.backup
    [2013/11/21 03:48:21 | 000,448,895 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034823.backup
    [2013/11/21 03:48:16 | 000,448,917 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034821.backup
    [2013/11/21 03:48:15 | 000,448,946 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034816.backup
    [2013/11/21 03:48:13 | 000,448,982 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034815.backup
    [2013/11/21 03:48:10 | 000,449,011 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034813.backup
    [2013/11/21 03:48:03 | 000,449,033 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034806.backup
    [2013/11/21 03:48:03 | 000,449,033 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034810.backup
    [2013/11/21 03:48:01 | 000,449,067 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034803.backup
    [2013/11/21 03:47:59 | 000,449,098 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034801.backup
    [2013/11/21 03:47:54 | 000,449,126 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034757.backup
    [2013/11/21 03:47:54 | 000,449,126 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034759.backup
    [2013/11/21 03:47:50 | 000,449,151 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034754.backup
    [2013/11/21 03:47:40 | 000,449,176 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034750.backup
    [2013/11/21 03:47:38 | 000,449,211 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034740.backup
    [2013/11/21 03:47:34 | 000,449,234 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034738.backup
    [2013/11/21 03:47:31 | 000,449,265 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034734.backup
    [2013/11/21 03:09:15 | 000,449,296 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034731.backup
    [2013/11/21 03:09:13 | 000,449,317 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030915.backup
    [2013/11/21 03:09:11 | 000,449,343 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030913.backup
    [2013/11/21 03:09:09 | 000,449,373 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030911.backup
    [2013/11/21 03:09:07 | 000,449,395 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030909.backup
    [2013/11/21 03:09:05 | 000,449,423 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030907.backup
    [2013/11/21 03:09:02 | 000,449,448 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030905.backup
    [2013/11/21 03:09:00 | 000,449,475 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030902.backup
    [2013/11/21 03:08:51 | 000,449,503 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030900.backup
    [2013/11/21 03:08:49 | 000,449,533 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030851.backup
    [2013/11/21 03:08:47 | 000,449,560 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030849.backup
    [2013/11/21 03:08:45 | 000,449,590 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030847.backup
    [2013/11/21 03:08:42 | 000,449,620 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030845.backup
    [2013/11/21 03:08:37 | 000,449,649 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030842.backup
    [2013/11/21 03:08:35 | 000,449,673 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030837.backup
    [2013/11/21 03:08:29 | 000,449,696 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030835.backup
    [2013/11/21 03:08:27 | 000,449,722 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030829.backup
    [2013/11/21 03:08:22 | 000,449,746 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030827.backup
    [2013/11/21 03:08:19 | 000,449,774 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030822.backup
    [2013/11/21 03:08:16 | 000,449,797 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030819.backup
    [2013/11/21 03:08:10 | 000,449,820 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030816.backup
    [2013/11/21 03:08:07 | 000,449,848 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030810.backup
    [2013/11/21 03:08:05 | 000,449,873 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030807.backup
    [2013/11/21 03:08:02 | 000,449,897 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030805.backup
    [2013/11/21 03:08:00 | 000,449,924 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030802.backup
    [2013/11/21 03:07:58 | 000,449,950 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030800.backup
    [2013/11/21 03:07:56 | 000,449,974 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030758.backup
    [2013/11/21 03:07:54 | 000,450,003 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030756.backup
    [2013/11/21 03:07:51 | 000,450,027 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030754.backup
    [2013/11/21 03:07:48 | 000,450,049 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030751.backup
    [2013/11/21 03:07:42 | 000,450,072 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030748.backup
    [2013/11/21 03:07:31 | 000,450,097 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030742.backup
    [2013/11/21 03:07:22 | 000,450,121 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030731.backup
    [2013/11/21 03:07:18 | 000,450,143 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030722.backup
    [2013/11/21 03:06:56 | 000,450,167 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030718.backup
    [2013/11/21 03:06:54 | 000,450,192 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030656.backup
    [2013/11/21 03:06:48 | 000,450,226 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030654.backup
    [2013/11/21 03:06:14 | 000,450,250 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030648.backup
    [2013/11/21 03:06:12 | 000,450,278 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030614.backup
    [2013/11/21 03:06:09 | 000,450,311 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030612.backup
    [2013/11/21 03:06:07 | 000,450,337 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030609.backup
    [2013/11/21 03:06:05 | 000,450,362 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030607.backup
    [2013/11/21 03:06:04 | 000,450,389 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030605.backup
    [2013/11/21 03:06:02 | 000,450,416 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030604.backup
    [2013/11/21 03:05:59 | 000,450,444 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030602.backup
    [2013/11/21 03:05:57 | 000,450,469 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030559.backup
    [2013/11/21 03:05:23 | 000,450,496 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030557.backup
    [2013/11/21 03:05:03 | 000,450,517 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030523.backup
    [2013/11/21 03:05:00 | 000,450,543 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030503.backup
    [2013/11/21 03:04:58 | 000,450,571 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030500.backup
    [2013/11/21 03:04:55 | 000,450,606 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030458.backup
    [2013/11/21 02:08:07 | 000,450,639 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030455.backup
    [2013/11/21 02:07:44 | 000,450,639 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-020807.backup
    [2013/11/21 02:00:33 | 000,013,440 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
    [2013/11/21 02:00:33 | 000,013,440 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
    [2013/11/21 01:53:44 | 000,000,437 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts.ics
    [2013/11/21 01:51:58 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
    [2013/11/21 01:51:40 | 2414,297,088 | -HS- | M] () -- C:\hiberfil.sys
    [2013/11/20 15:36:26 | 000,627,066 | ---- | M] () -- C:\Windows\System32\perfh009.dat
    [2013/11/20 15:36:26 | 000,107,382 | ---- | M] () -- C:\Windows\System32\perfc009.dat
    [2013/11/20 09:17:23 | 000,001,069 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
    [2013/11/20 09:16:35 | 010,285,040 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Lorrie\Desktop\mbam-setup-1.75.0.1300(1).exe
    [2013/11/20 08:56:44 | 000,001,107 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
    [2013/11/18 15:53:26 | 000,037,664 | ---- | M] (AVG Technologies) -- C:\Windows\System32\drivers\avgtpx86.sys
    [2013/11/17 16:19:11 | 000,450,639 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-020744.backup
    [2013/11/17 16:17:20 | 000,450,639 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131117-161911.backup
    [2013/11/17 15:51:26 | 000,692,616 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe
    [2013/11/17 15:51:26 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl
    [2013/11/17 15:47:22 | 000,007,621 | ---- | M] () -- C:\Users\Lorrie\AppData\Local\Resmon.ResmonCfg
    [2013/11/17 15:24:46 | 000,002,121 | ---- | M] () -- C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
    [2013/11/17 15:08:33 | 000,000,000 | ---- | M] () -- C:\Windows\System32\drivers\lvuvc.hs
    [2013/11/14 18:47:29 | 001,839,440 | ---- | M] () -- C:\Users\Lorrie\Documents\Cinderblock Stove.pdf
    [2013/11/07 14:15:27 | 000,000,000 | ---- | M] () -- C:\END
    [2013/10/26 17:25:44 | 000,373,585 | ---- | M] () -- C:\Users\Lorrie\Documents\VISR Sales Tax Permit.pdf
    [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
    [1 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ]
    [1 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ]
    Attached Files Attached Files

  2. #2
    Junior Member moonlightandroses's Avatar
    Join Date
    Nov 2013
    Posts
    8

    Default Pg 2

    ========== Files - Modified Within 30 Days ==========

    [2013/11/21 05:49:11 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Lorrie\Desktop\OTL.exe
    [2013/11/21 05:05:11 | 004,745,728 | ---- | M] (AVAST Software) -- C:\Users\Lorrie\Desktop\aswMBR.exe
    [2013/11/21 04:49:16 | 000,891,200 | ---- | M] () -- C:\Users\Lorrie\Desktop\SecurityCheck.exe
    [2013/11/21 03:50:49 | 000,447,892 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts
    [2013/11/21 03:50:46 | 000,447,916 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035049.backup
    [2013/11/21 03:50:44 | 000,447,940 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035046.backup
    [2013/11/21 03:50:42 | 000,447,968 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035044.backup
    [2013/11/21 03:50:40 | 000,447,996 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035042.backup
    [2013/11/21 03:50:37 | 000,448,026 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035040.backup
    [2013/11/21 03:50:35 | 000,448,062 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035037.backup
    [2013/11/21 03:50:31 | 000,448,096 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035035.backup
    [2013/11/21 03:50:25 | 000,448,121 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035028.backup
    [2013/11/21 03:50:25 | 000,448,121 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035031.backup
    [2013/11/21 03:50:22 | 000,448,149 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035025.backup
    [2013/11/21 03:50:19 | 000,448,175 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035022.backup
    [2013/11/21 03:50:17 | 000,448,203 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035019.backup
    [2013/11/21 03:50:08 | 000,448,234 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035010.backup
    [2013/11/21 03:50:08 | 000,448,234 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035017.backup
    [2013/11/21 03:50:08 | 000,448,234 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035014.backup
    [2013/11/21 03:50:06 | 000,448,265 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035008.backup
    [2013/11/21 03:50:03 | 000,448,290 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035006.backup
    [2013/11/21 03:50:00 | 000,448,319 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035003.backup
    [2013/11/21 03:49:58 | 000,448,347 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-035000.backup
    [2013/11/21 03:49:56 | 000,448,375 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034958.backup
    [2013/11/21 03:49:52 | 000,448,402 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034956.backup
    [2013/11/21 03:49:49 | 000,448,424 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034952.backup
    [2013/11/21 03:49:46 | 000,448,451 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034949.backup
    [2013/11/21 03:49:41 | 000,448,473 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034946.backup
    [2013/11/21 03:49:24 | 000,448,499 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034941.backup
    [2013/11/21 03:49:20 | 000,448,534 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034924.backup
    [2013/11/21 03:49:18 | 000,448,565 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034920.backup
    [2013/11/21 03:49:15 | 000,448,595 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034918.backup
    [2013/11/21 03:49:03 | 000,448,618 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034915.backup
    [2013/11/21 03:49:01 | 000,448,648 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034903.backup
    [2013/11/21 03:48:57 | 000,448,672 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034901.backup
    [2013/11/21 03:48:54 | 000,448,697 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034857.backup
    [2013/11/21 03:48:36 | 000,448,727 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034854.backup
    [2013/11/21 03:48:34 | 000,448,754 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034836.backup
    [2013/11/21 03:48:32 | 000,448,783 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034834.backup
    [2013/11/21 03:48:30 | 000,448,808 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034832.backup
    [2013/11/21 03:48:28 | 000,448,838 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034830.backup
    [2013/11/21 03:48:23 | 000,448,869 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034828.backup
    [2013/11/21 03:48:21 | 000,448,895 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034823.backup
    [2013/11/21 03:48:16 | 000,448,917 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034821.backup
    [2013/11/21 03:48:15 | 000,448,946 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034816.backup
    [2013/11/21 03:48:13 | 000,448,982 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034815.backup
    [2013/11/21 03:48:10 | 000,449,011 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034813.backup
    [2013/11/21 03:48:03 | 000,449,033 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034806.backup
    [2013/11/21 03:48:03 | 000,449,033 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034810.backup
    [2013/11/21 03:48:01 | 000,449,067 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034803.backup
    [2013/11/21 03:47:59 | 000,449,098 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034801.backup
    [2013/11/21 03:47:54 | 000,449,126 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034757.backup
    [2013/11/21 03:47:54 | 000,449,126 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034759.backup
    [2013/11/21 03:47:50 | 000,449,151 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034754.backup
    [2013/11/21 03:47:40 | 000,449,176 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034750.backup
    [2013/11/21 03:47:38 | 000,449,211 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034740.backup
    [2013/11/21 03:47:34 | 000,449,234 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034738.backup
    [2013/11/21 03:47:31 | 000,449,265 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034734.backup
    [2013/11/21 03:09:15 | 000,449,296 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-034731.backup
    [2013/11/21 03:09:13 | 000,449,317 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030915.backup
    [2013/11/21 03:09:11 | 000,449,343 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030913.backup
    [2013/11/21 03:09:09 | 000,449,373 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030911.backup
    [2013/11/21 03:09:07 | 000,449,395 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030909.backup
    [2013/11/21 03:09:05 | 000,449,423 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030907.backup
    [2013/11/21 03:09:02 | 000,449,448 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030905.backup
    [2013/11/21 03:09:00 | 000,449,475 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030902.backup
    [2013/11/21 03:08:51 | 000,449,503 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030900.backup
    [2013/11/21 03:08:49 | 000,449,533 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030851.backup
    [2013/11/21 03:08:47 | 000,449,560 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030849.backup
    [2013/11/21 03:08:45 | 000,449,590 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030847.backup
    [2013/11/21 03:08:42 | 000,449,620 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030845.backup
    [2013/11/21 03:08:37 | 000,449,649 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030842.backup
    [2013/11/21 03:08:35 | 000,449,673 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030837.backup
    [2013/11/21 03:08:29 | 000,449,696 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030835.backup
    [2013/11/21 03:08:27 | 000,449,722 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030829.backup
    [2013/11/21 03:08:22 | 000,449,746 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030827.backup
    [2013/11/21 03:08:19 | 000,449,774 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030822.backup
    [2013/11/21 03:08:16 | 000,449,797 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030819.backup
    [2013/11/21 03:08:10 | 000,449,820 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030816.backup
    [2013/11/21 03:08:07 | 000,449,848 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030810.backup
    [2013/11/21 03:08:05 | 000,449,873 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030807.backup
    [2013/11/21 03:08:02 | 000,449,897 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030805.backup
    [2013/11/21 03:08:00 | 000,449,924 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030802.backup
    [2013/11/21 03:07:58 | 000,449,950 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030800.backup
    [2013/11/21 03:07:56 | 000,449,974 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030758.backup
    [2013/11/21 03:07:54 | 000,450,003 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030756.backup
    [2013/11/21 03:07:51 | 000,450,027 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030754.backup
    [2013/11/21 03:07:48 | 000,450,049 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030751.backup
    [2013/11/21 03:07:42 | 000,450,072 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030748.backup
    [2013/11/21 03:07:31 | 000,450,097 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030742.backup
    [2013/11/21 03:07:22 | 000,450,121 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030731.backup
    [2013/11/21 03:07:18 | 000,450,143 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030722.backup
    [2013/11/21 03:06:56 | 000,450,167 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030718.backup
    [2013/11/21 03:06:54 | 000,450,192 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030656.backup
    [2013/11/21 03:06:48 | 000,450,226 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030654.backup
    [2013/11/21 03:06:14 | 000,450,250 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030648.backup
    [2013/11/21 03:06:12 | 000,450,278 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030614.backup
    [2013/11/21 03:06:09 | 000,450,311 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030612.backup
    [2013/11/21 03:06:07 | 000,450,337 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030609.backup
    [2013/11/21 03:06:05 | 000,450,362 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030607.backup
    [2013/11/21 03:06:04 | 000,450,389 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030605.backup
    [2013/11/21 03:06:02 | 000,450,416 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030604.backup
    [2013/11/21 03:05:59 | 000,450,444 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030602.backup
    [2013/11/21 03:05:57 | 000,450,469 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030559.backup
    [2013/11/21 03:05:23 | 000,450,496 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030557.backup
    [2013/11/21 03:05:03 | 000,450,517 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030523.backup
    [2013/11/21 03:05:00 | 000,450,543 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030503.backup
    [2013/11/21 03:04:58 | 000,450,571 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030500.backup
    [2013/11/21 03:04:55 | 000,450,606 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030458.backup
    [2013/11/21 02:08:07 | 000,450,639 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-030455.backup
    [2013/11/21 02:07:44 | 000,450,639 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-020807.backup
    [2013/11/21 02:00:33 | 000,013,440 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
    [2013/11/21 02:00:33 | 000,013,440 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
    [2013/11/21 01:53:44 | 000,000,437 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts.ics
    [2013/11/21 01:51:58 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
    [2013/11/21 01:51:40 | 2414,297,088 | -HS- | M] () -- C:\hiberfil.sys
    [2013/11/20 15:36:26 | 000,627,066 | ---- | M] () -- C:\Windows\System32\perfh009.dat
    [2013/11/20 15:36:26 | 000,107,382 | ---- | M] () -- C:\Windows\System32\perfc009.dat
    [2013/11/20 09:17:23 | 000,001,069 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
    [2013/11/20 09:16:35 | 010,285,040 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Lorrie\Desktop\mbam-setup-1.75.0.1300(1).exe
    [2013/11/20 08:56:44 | 000,001,107 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
    [2013/11/18 15:53:26 | 000,037,664 | ---- | M] (AVG Technologies) -- C:\Windows\System32\drivers\avgtpx86.sys
    [2013/11/17 16:19:11 | 000,450,639 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131121-020744.backup
    [2013/11/17 16:17:20 | 000,450,639 | R--- | M] () -- C:\Windows\System32\drivers\etc\hosts.20131117-161911.backup
    [2013/11/17 15:51:26 | 000,692,616 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe
    [2013/11/17 15:51:26 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl
    [2013/11/17 15:47:22 | 000,007,621 | ---- | M] () -- C:\Users\Lorrie\AppData\Local\Resmon.ResmonCfg
    [2013/11/17 15:24:46 | 000,002,121 | ---- | M] () -- C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
    [2013/11/17 15:08:33 | 000,000,000 | ---- | M] () -- C:\Windows\System32\drivers\lvuvc.hs
    [2013/11/14 18:47:29 | 001,839,440 | ---- | M] () -- C:\Users\Lorrie\Documents\Cinderblock Stove.pdf
    [2013/11/07 14:15:27 | 000,000,000 | ---- | M] () -- C:\END
    [2013/10/26 17:25:44 | 000,373,585 | ---- | M] () -- C:\Users\Lorrie\Documents\VISR Sales Tax Permit.pdf
    [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
    [1 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ]
    [1 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ]

    ========== Files Created - No Company Name ==========

    [2013/11/21 04:49:13 | 000,891,200 | ---- | C] () -- C:\Users\Lorrie\Desktop\SecurityCheck.exe
    [2013/11/20 14:43:17 | 000,002,179 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Marketsplash Print Software.lnk.disabled
    [2013/11/20 14:43:17 | 000,002,100 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Kodak EasyShare software.lnk
    [2013/11/20 14:43:17 | 000,002,071 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
    [2013/11/20 09:17:23 | 000,001,069 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
    [2013/11/20 08:56:44 | 000,001,107 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
    [2013/11/20 08:56:43 | 000,001,119 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
    [2013/11/17 15:24:46 | 000,002,133 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
    [2013/11/17 15:24:45 | 000,002,121 | ---- | C] () -- C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
    [2013/11/14 18:47:27 | 001,839,440 | ---- | C] () -- C:\Users\Lorrie\Documents\Cinderblock Stove.pdf
    [2013/11/11 17:16:37 | 000,000,195 | R--- | C] () -- C:\Users\Lorrie\Documents\FreePatterns.com.url
    [2013/11/07 14:15:27 | 000,000,000 | ---- | C] () -- C:\END
    [2013/10/26 17:25:44 | 000,373,585 | ---- | C] () -- C:\Users\Lorrie\Documents\VISR Sales Tax Permit.pdf
    [2013/09/17 18:21:06 | 000,000,057 | ---- | C] () -- C:\ProgramData\Ament.ini
    [2013/02/02 09:01:56 | 000,004,096 | -H-- | C] () -- C:\Users\Lorrie\AppData\Local\keyfile3.drm
    [2012/06/02 17:26:30 | 000,000,036 | -H-- | C] () -- C:\Windows\System32\f9t.dat
    [2012/05/24 06:38:51 | 000,007,621 | ---- | C] () -- C:\Users\Lorrie\AppData\Local\Resmon.ResmonCfg
    [2012/01/22 09:27:57 | 000,000,605 | ---- | C] () -- C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc
    [2012/01/18 05:44:00 | 010,920,984 | ---- | C] () -- C:\Windows\System32\LogiDPP.dll
    [2012/01/18 05:44:00 | 000,336,408 | ---- | C] () -- C:\Windows\System32\DevManagerCore.dll
    [2012/01/18 05:44:00 | 000,104,472 | ---- | C] () -- C:\Windows\System32\LogiDPPApp.exe
    [2012/01/18 05:22:54 | 000,028,418 | ---- | C] () -- C:\Windows\System32\lvcoinst.ini
    [2011/11/05 09:20:56 | 000,000,023 | ---- | C] () -- C:\Users\Lorrie\AppData\Local\kodakpcd.ini
    [2011/08/20 17:43:31 | 000,004,535 | ---- | C] () -- C:\Users\Lorrie\.recently-used.xbel
    [2011/08/08 11:34:51 | 000,005,632 | ---- | C] () -- C:\Users\Lorrie\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    [2011/08/08 05:23:03 | 000,000,000 | -H-- | C] () -- C:\Users\Lorrie\.BridgeLabelsAndRatings
    [2010/12/01 20:53:15 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat

    ========== ZeroAccess Check ==========

    [2009/07/13 22:42:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

    [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

    [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

    [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
    "" = %SystemRoot%\system32\shell32.dll -- [2013/07/25 19:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
    "ThreadingModel" = Apartment

    [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
    "" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 06:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
    "ThreadingModel" = Free

    [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
    "" = %systemroot%\system32\wbem\wbemess.dll -- [2009/07/13 19:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation)
    "ThreadingModel" = Both

    ========== LOP Check ==========

    [2012/06/01 16:07:17 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\Ad-Aware Antivirus
    [2011/01/17 12:51:58 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\AlbumGV
    [2013/11/16 07:52:03 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\Amazon
    [2010/12/25 11:55:56 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\Arkadium
    [2013/09/01 09:08:29 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\Avery
    [2013/11/12 05:27:23 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\AVG
    [2013/11/17 16:05:54 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\AVG2013
    [2012/12/29 21:09:51 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\Big Fish Games
    [2011/08/06 06:18:04 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
    [2012/10/24 17:13:51 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\DriverCure
    [2012/10/24 17:53:09 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\EditPlus 3
    [2011/10/26 16:21:47 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\Fighters
    [2011/07/21 22:57:40 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\Friday's games
    [2011/11/29 17:28:36 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\Fuel Industries
    [2010/12/25 09:54:41 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\Fugazo
    [2012/04/19 16:12:45 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\GameMill Entertainment
    [2010/12/23 10:36:05 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\Gamers Digital
    [2013/11/18 08:01:54 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\Garmin
    [2011/07/20 04:33:49 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\Genimo
    [2013/01/04 10:14:37 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\Gogii
    [2011/09/01 03:32:58 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\inkscape
    [2013/09/01 10:10:42 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\IObit
    [2011/11/24 22:34:11 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\iWin
    [2010/12/17 08:53:51 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\Leadertech
    [2011/07/19 19:06:14 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\Mayan Puzzle
    [2011/12/14 06:11:42 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\MumboJumbo
    [2012/10/24 17:13:51 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\ParetoLogic
    [2011/09/28 04:11:20 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\PC Cleaners
    [2011/08/07 05:59:44 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\PDAppFlex
    [2011/12/07 06:42:37 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\PlayFirst
    [2013/11/16 06:43:25 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\Radialpoint
    [2013/11/16 07:55:50 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\Seagate
    [2010/12/23 10:38:44 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\SevenSails
    [2011/07/24 13:52:54 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\Skinux
    [2012/07/02 07:26:01 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\Sling Media
    [2013/08/07 19:26:24 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\Stamps.com Internet Postage
    [2012/12/14 20:24:06 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\TuneUp Software
    [2010/11/29 18:54:45 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\V310-V510 Series
    [2012/10/20 19:25:21 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\WildTangent
    [2012/06/29 18:12:08 | 000,000,000 | ---D | M] -- C:\Users\Lorrie\AppData\Roaming\Windstream

  3. #3
    Junior Member moonlightandroses's Avatar
    Join Date
    Nov 2013
    Posts
    8

    Default Pg 3

    ========== Purity Check ==========



    ========== Custom Scans ==========

    < • %USERPROFILE%\..|smtmp;true;true;true /FP >

    < %temp%\smtmp\*.* /s > >

    < MD5 for: EXPLORER.ADML >
    [2009/07/13 20:07:10 | 000,003,695 | ---- | M] () MD5=7A4C7F3CB156543113596988479CAFCE -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-s..ouppolicy.resources_31bf3856ad364e35_6.1.7600.16385_en-us_22d6d5b5cba907ce\Explorer.adml
    [2009/07/13 20:07:10 | 000,003,695 | ---- | M] () MD5=7A4C7F3CB156543113596988479CAFCE -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-s..ouppolicy.resources_31bf3856ad364e35_6.1.7600.16385_en-us_22d6d5b5cba907ce\Explorer.adml
    [2009/07/13 20:07:10 | 000,003,695 | ---- | M] () MD5=7A4C7F3CB156543113596988479CAFCE -- C:\Windows\winsxs\x86_microsoft-windows-s..ouppolicy.resources_31bf3856ad364e35_6.1.7600.16385_en-us_22d6d5b5cba907ce\Explorer.adml

    < MD5 for: EXPLORER.ADMX >
    [2009/06/10 15:34:46 | 000,003,836 | ---- | M] () MD5=AD131A834808E6AFF4A3918DE05BFCF6 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-shell-grouppolicy_31bf3856ad364e35_6.1.7600.16385_none_1590ffd752297581\Explorer.admx
    [2009/06/10 15:34:46 | 000,003,836 | ---- | M] () MD5=AD131A834808E6AFF4A3918DE05BFCF6 -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-shell-grouppolicy_31bf3856ad364e35_6.1.7600.16385_none_1590ffd752297581\Explorer.admx
    [2009/06/10 15:34:46 | 000,003,836 | ---- | M] () MD5=AD131A834808E6AFF4A3918DE05BFCF6 -- C:\Windows\winsxs\x86_microsoft-windows-shell-grouppolicy_31bf3856ad364e35_6.1.7600.16385_none_1590ffd752297581\Explorer.admx

    < MD5 for: EXPLORER.EXE >
    [2011/02/25 23:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_54149f9ef14031fc\explorer.exe
    [2009/07/13 19:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows.old.000\Windows\explorer.exe
    [2009/07/13 19:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_518afd35db100430\explorer.exe
    [2009/07/13 19:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows.old\Windows\explorer.exe
    [2009/07/13 19:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_518afd35db100430\explorer.exe
    [2009/07/13 19:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_518afd35db100430\explorer.exe
    [2011/02/25 23:51:13 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=255CF508D7CFB10E0794D6AC93280BD8 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_525b5180f3f95373\explorer.exe
    [2009/10/30 23:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_51a66d6ddafc2ed1\explorer.exe
    [2011/02/25 23:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=2AF58D15EDC06EC6FDACCE1F19482BBF -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_51a3a583dafd0cef\explorer.exe
    [2008/10/29 00:20:29 | 002,923,520 | ---- | M] (Microsoft Corporation) MD5=37440D09DEAE0B672A04DCCF7ABF06BE -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6000.16771_none_4f83bb287ccdb7e3\explorer.exe
    [2010/11/20 06:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_53bc10fdd7fe87ca\explorer.exe
    [2008/10/29 00:29:41 | 002,927,104 | ---- | M] (Microsoft Corporation) MD5=4F554999D7D5F05DAAEBBA7B5BA1089D -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.18164_none_5177ca9879e978e8\explorer.exe
    [2008/10/29 21:59:17 | 002,927,616 | ---- | M] (Microsoft Corporation) MD5=50BA5850147410CDE89C523AD3BC606E -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.22298_none_51e4f8c7931bd1e1\explorer.exe
    [2008/01/31 06:26:27 | 002,923,520 | ---- | M] (Microsoft Corporation) MD5=6D06CD98D954FE87FB2DB8108793B399 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6000.16549_none_4fac29707cae347a\explorer.exe
    [2011/02/24 23:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\explorer.exe
    [2011/02/24 23:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_5389023fd8245f84\explorer.exe
    [2009/08/02 23:49:47 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_526619d4f3f142e6\explorer.exe
    [2009/08/02 23:35:50 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_51e07e31dad00878\explorer.exe
    [2008/01/31 06:26:27 | 002,923,520 | ---- | M] (Microsoft Corporation) MD5=BD06F0BF753BC704B653C3A50F89D362 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6000.20668_none_501f261995dcf2cf\explorer.exe
    [2009/10/31 00:00:51 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_52283b2af41f3691\explorer.exe
    [2013/09/20 10:51:08 | 003,885,120 | ---- | M] (Safer-Networking Ltd.) MD5=CDEB46FE688F062D3033209B29755203 -- C:\Program Files\Spybot - Search & Destroy 2\explorer.exe
    [2009/04/11 00:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) MD5=D07D4C3038F3578FFCE1C0237F2A1253 -- C:\$WINDOWS.~Q\DATA\Windows\explorer.exe
    [2009/04/11 00:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) MD5=D07D4C3038F3578FFCE1C0237F2A1253 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6002.18005_none_53a0201e76de3a0b\explorer.exe
    [2008/10/27 20:15:02 | 002,923,520 | ---- | M] (Microsoft Corporation) MD5=E7156B0B74762D9DE0E66BDCDE06E5FB -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6000.20947_none_5033cb5995cd990b\explorer.exe
    [2006/11/02 03:45:07 | 002,923,520 | ---- | M] (Microsoft Corporation) MD5=FD8C53FB002217F6F888BCF6F5D7084D -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6000.16386_none_4f7de5167cd15deb\explorer.exe
    [2008/01/19 01:33:10 | 002,927,104 | ---- | M] (Microsoft Corporation) MD5=FFA764631CB70A30065C12EF8E174F9F -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.18000_none_51b4a71279bc6ebf\explorer.exe

    < MD5 for: EXPLORER.EXE.MUI >
    [2006/11/02 06:41:18 | 000,036,864 | ---- | M] (Microsoft Corporation) MD5=192DD053B43250E264383CDC3D564A18 -- C:\$WINDOWS.~Q\DATA\Windows\en-US\explorer.exe.mui
    [2006/11/02 06:41:18 | 000,036,864 | ---- | M] (Microsoft Corporation) MD5=192DD053B43250E264383CDC3D564A18 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-explorer.resources_31bf3856ad364e35_6.0.6000.16386_en-us_03bbc52176b6ba20\explorer.exe.mui
    [2009/07/13 20:06:56 | 000,022,016 | ---- | M] (Microsoft Corporation) MD5=B9F4B1CA23D60775736059D72BA48526 -- C:\Windows.old.000\Windows\en-US\explorer.exe.mui
    [2009/07/13 20:06:56 | 000,022,016 | ---- | M] (Microsoft Corporation) MD5=B9F4B1CA23D60775736059D72BA48526 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-explorer.resources_31bf3856ad364e35_6.1.7600.16385_en-us_05c8dd40d4f56065\explorer.exe.mui
    [2009/07/13 20:06:56 | 000,022,016 | ---- | M] (Microsoft Corporation) MD5=B9F4B1CA23D60775736059D72BA48526 -- C:\Windows.old\Windows\en-US\explorer.exe.mui
    [2009/07/13 20:06:56 | 000,022,016 | ---- | M] (Microsoft Corporation) MD5=B9F4B1CA23D60775736059D72BA48526 -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-explorer.resources_31bf3856ad364e35_6.1.7600.16385_en-us_05c8dd40d4f56065\explorer.exe.mui
    [2009/07/13 20:06:56 | 000,022,016 | ---- | M] (Microsoft Corporation) MD5=B9F4B1CA23D60775736059D72BA48526 -- C:\Windows\en-US\explorer.exe.mui
    [2009/07/13 20:06:56 | 000,022,016 | ---- | M] (Microsoft Corporation) MD5=B9F4B1CA23D60775736059D72BA48526 -- C:\Windows\winsxs\x86_microsoft-windows-explorer.resources_31bf3856ad364e35_6.1.7600.16385_en-us_05c8dd40d4f56065\explorer.exe.mui

    < MD5 for: EXPLORER.EXE-D5E97654.PF >
    [2013/11/20 06:40:18 | 000,108,632 | ---- | M] () MD5=792801B061064097880598E6F3E956DB -- C:\Windows\Prefetch\EXPLORER.EXE-D5E97654.pf

    < MD5 for: IEXPLORE.EXE >
    [2012/07/01 12:30:44 | 000,748,664 | ---- | M] (Microsoft Corporation) MD5=0129BB16161C2FD9A6B19111AB047198 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_9.4.8112.16446_none_b12560b1c817cfde\iexplore.exe
    [2008/04/24 22:22:36 | 000,625,664 | ---- | M] (Microsoft Corporation) MD5=07ED775D6DB4BFA96D7CFB09EB228418 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.16681_none_2d26424d1d17e8b7\iexplore.exe
    [2009/01/14 22:14:36 | 000,634,024 | ---- | M] (Microsoft Corporation) MD5=0844F5B9CB3BB85A917D347EF1565B6C -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.16809_none_2d84c7c91ccfce35\iexplore.exe
    [2012/02/27 23:42:27 | 000,673,048 | ---- | M] (Microsoft Corporation) MD5=09F6A10AB424E2DE445153065FA076BF -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_8.0.7600.16968_none_b35fa5ce860858cf\iexplore.exe
    [2010/09/07 22:36:39 | 000,673,040 | ---- | M] (Microsoft Corporation) MD5=14803EA3E5DD7CB37CB446C74CFDA38F -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_8.0.7600.20795_none_b3c5cc459f4108f2\iexplore.exe
    [2008/06/26 21:54:09 | 000,625,664 | ---- | M] (Microsoft Corporation) MD5=157F8DE991396C536820D7FA5C8DCF7D -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.16711_none_2d71f3a71cdf2247\iexplore.exe
    [2008/02/21 20:44:11 | 000,625,664 | ---- | M] (Microsoft Corporation) MD5=182CAF7403705ACCB51211A761080B8F -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.20777_none_2dc0b0c03628049a\iexplore.exe
    [2008/10/01 21:50:01 | 000,633,632 | ---- | M] (Microsoft Corporation) MD5=19403B64906C9EAC627E3C10847B0FDA -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.16757_none_2d4cb5b31cfa2a15\iexplore.exe
    [2009/11/21 00:42:38 | 000,638,232 | ---- | M] (Microsoft Corporation) MD5=1B6362BB14FCEB9E76BCF9A953B04788 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_8.0.6001.18865_none_120f459f2ff7e1f8\iexplore.exe
    [2009/07/18 06:16:49 | 000,634,648 | ---- | M] (Microsoft Corporation) MD5=1D5A01AA2DE47C052AF46D7EBCB003A3 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.16890_none_2d1a75e31d20e59f\iexplore.exe
    [2009/07/18 15:39:09 | 000,634,648 | ---- | M] (Microsoft Corporation) MD5=1D8163DBFECAEDB9C48C5F55084BC491 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6001.18294_none_2f04b5b11a43dbec\iexplore.exe
    [2009/03/02 22:18:52 | 000,636,072 | ---- | M] (Microsoft Corporation) MD5=1DD66A2851DACDEC32EAE8F9A8865ABD -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.21023_none_2df29b2236034119\iexplore.exe
    [2009/04/24 10:25:27 | 000,634,648 | ---- | M] (Microsoft Corporation) MD5=1F44940EF1D07D0BDAF80E55853DFBD0 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.16851_none_2d46b5dd1cff8f32\iexplore.exe
    [2012/08/24 01:34:41 | 000,748,680 | ---- | M] (Microsoft Corporation) MD5=22CC6CDBA678790046693654C3B212E4 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_9.4.8112.16450_none_b1148f09c82553c5\iexplore.exe
    [2010/02/23 09:06:13 | 000,638,232 | ---- | M] (Microsoft Corporation) MD5=25DB705A7DC85C208B3CF2D20F118AA7 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_8.0.6001.22995_none_127872a6492dd595\iexplore.exe
    [2012/10/08 02:37:24 | 000,748,704 | ---- | M] (Microsoft Corporation) MD5=270A1342BD5AF95CA25A586B4C2F1522 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_9.4.8112.16455_none_b119907bc820d278\iexplore.exe
    [2013/06/11 22:41:27 | 000,770,648 | ---- | M] (Microsoft Corporation) MD5=2A5F565327BFD679EC5F790DC15BBF25 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_10.2.9200.20742_none_a38ffdc27f91d847\iexplore.exe
    [2009/07/13 19:17:29 | 000,673,048 | ---- | M] (Microsoft Corporation) MD5=2C32E3E596CFE660353753EABEFB0540 -- C:\Windows.old.000\Program Files\Internet Explorer\iexplore.exe
    [2009/07/13 19:17:29 | 000,673,048 | ---- | M] (Microsoft Corporation) MD5=2C32E3E596CFE660353753EABEFB0540 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_8.0.7600.16385_none_b346f9b4861b55c2\iexplore.exe
    [2009/07/13 19:17:29 | 000,673,048 | ---- | M] (Microsoft Corporation) MD5=2C32E3E596CFE660353753EABEFB0540 -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_8.0.7600.16385_none_b346f9b4861b55c2\iexplore.exe
    [2009/07/13 19:17:29 | 000,673,048 | ---- | M] (Microsoft Corporation) MD5=2C32E3E596CFE660353753EABEFB0540 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_8.0.7600.16385_none_b346f9b4861b55c2\iexplore.exe
    [2009/04/11 00:27:44 | 000,636,080 | ---- | M] (Microsoft Corporation) MD5=2C5168C856455CC43C4B4E1CC1920001 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6002.18005_none_314d791517204c15\iexplore.exe
    [2009/08/26 23:23:17 | 000,638,232 | ---- | M] (Microsoft Corporation) MD5=2E48756F12C21F46895036AC089AAD97 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_8.0.6001.18828_none_123d862d2fd4be39\iexplore.exe
    [2013/06/11 18:23:57 | 000,770,648 | ---- | M] (Microsoft Corporation) MD5=30E7CA4620500FE012EB464F0E1DE91E -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_10.2.9200.16635_none_ba672fa865e3902d\iexplore.exe
    [2013/02/21 22:10:00 | 000,757,376 | ---- | M] (Microsoft Corporation) MD5=32732CEDE2A1106B736EF3D84054EE04 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_9.4.8112.16476_none_b104f0edc83023b1\iexplore.exe
    [2012/06/02 03:08:27 | 000,748,664 | ---- | M] (Microsoft Corporation) MD5=34B01BBD8F00B6B9C9248DC4F1E3CD01 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_9.4.8112.16447_none_b12660fbc816e935\iexplore.exe
    [2013/08/09 22:18:11 | 000,770,648 | ---- | M] (Microsoft Corporation) MD5=37287D98A1BF5D56AA729CEB9B27C6B1 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_10.2.9200.16686_none_ba6c1a5265df2881\iexplore.exe
    [2011/12/16 02:03:08 | 000,673,048 | ---- | M] (Microsoft Corporation) MD5=38668C6CADABC9487C683FADD3D165D0 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_8.0.7600.16930_none_b378134285f73a44\iexplore.exe
    [2008/01/11 17:39:40 | 000,625,152 | ---- | M] (Microsoft Corporation) MD5=3C1B2AD79DBF750A15A8832AF8192DB4 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.20663_none_2dc77d9e36238626\iexplore.exe
    [2010/01/02 08:58:26 | 000,638,216 | ---- | M] (Microsoft Corporation) MD5=3D8DA00B028DEA9517066F1CECBFC4A2 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_8.0.6001.22973_none_128c11ea491f6b05\iexplore.exe
    [2013/04/04 16:47:49 | 000,757,360 | ---- | M] (Microsoft Corporation) MD5=3F00BE80B9CEA20B7FE7363D15EDDB94 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_9.4.8112.16483_none_b0f72023c83af39d\iexplore.exe
    [2013/02/21 22:10:31 | 000,757,360 | ---- | M] (Microsoft Corporation) MD5=4145E2B5663F6FACC08EFDB17B658BB2 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_9.4.8112.20586_none_b183bdcce155df6c\iexplore.exe
    [2011/08/19 22:35:15 | 000,673,024 | ---- | M] (Microsoft Corporation) MD5=41FE5E37EFE0B587A688BA0E4FA41288 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_8.0.7600.16869_none_b360a432860774ff\iexplore.exe
    [2013/08/09 23:13:42 | 000,770,648 | ---- | M] (Microsoft Corporation) MD5=48A1306191216997F717C451B8D15139 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_10.2.9200.20794_none_a394d1a47f8d8a3c\iexplore.exe
    [2010/05/04 00:32:18 | 000,638,232 | ---- | M] (Microsoft Corporation) MD5=48A6109E8DF0365195298CC527B7426A -- C:\$WINDOWS.~Q\DATA\Windows\SoftwareDistribution\Download\db293c0a2e94582d756118fb9e1657ca\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_8.0.6001.23019_none_12d2cb5048e98eab\iexplore.exe
    [2010/09/08 00:26:34 | 000,638,232 | ---- | M] (Microsoft Corporation) MD5=4A719476A6393B1DCACFEB4F3AC6599C -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_8.0.6001.23067_none_129abb204913e7b2\iexplore.exe
    [2008/01/24 09:39:39 | 000,625,664 | ---- | M] (Microsoft Corporation) MD5=4C1528C481FFE6E4EFE4BAC7271CE251 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.20697_none_2dab0f0236383f55\iexplore.exe
    [2008/10/15 22:27:53 | 000,634,024 | ---- | M] (Microsoft Corporation) MD5=4CBA2F58668F2D5F3259CBE73E227F25 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.20937_none_2debf43c36078f24\iexplore.exe
    [2008/06/26 19:41:30 | 000,625,664 | ---- | M] (Microsoft Corporation) MD5=4DBD95312B1C96C5285D38F1D748CD4D -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.20868_none_2dcc82dc361eff27\iexplore.exe
    [2010/11/03 23:54:54 | 000,673,040 | ---- | M] (Microsoft Corporation) MD5=58CF468D3FF4CF830339FE5E45356355 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_8.0.7600.16700_none_b3987f3a85deec23\iexplore.exe
    [2008/01/19 01:33:12 | 000,625,664 | ---- | M] (Microsoft Corporation) MD5=5B92133D3E7FB2644677686305E29E81 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6001.18000_none_2f62000919fe80c9\iexplore.exe
    [2010/05/04 00:00:35 | 000,638,232 | ---- | M] (Microsoft Corporation) MD5=5C9B1062EA7A44E8F6BFDE994B68C7AA -- C:\$WINDOWS.~Q\DATA\Windows\SoftwareDistribution\Download\db293c0a2e94582d756118fb9e1657ca\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_8.0.6001.18928_none_123d88132fd4bb60\iexplore.exe
    [2010/09/07 22:31:24 | 000,673,040 | ---- | M] (Microsoft Corporation) MD5=61EDBCE47ADF3E52AB0B9F49EE4AEBB8 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_8.0.7600.16671_none_b34dce2a8616cbea\iexplore.exe
    [2012/08/24 01:49:25 | 000,748,680 | ---- | M] (Microsoft Corporation) MD5=62188720CE27B982B4285C03163C9FB3 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_9.4.8112.20557_none_b1a52ddae13ca4f0\iexplore.exe
    [2011/04/22 13:29:16 | 000,673,040 | ---- | M] (Microsoft Corporation) MD5=64EFAF916C4009F1B84153D0BB491FB0 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_8.0.7600.16800_none_b398812085dee94a\iexplore.exe
    [2008/10/01 21:32:01 | 000,633,632 | ---- | M] (Microsoft Corporation) MD5=6655B851D9EEF7C83395EE52D551B448 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.20927_none_2df6c42835ff7333\iexplore.exe
    [2013/05/16 17:34:33 | 000,757,400 | ---- | M] (Microsoft Corporation) MD5=67EE46FD4D3B56531C5DD1BDC149275A -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_9.4.8112.16490_none_b0e94f59c845c389\iexplore.exe
    [2013/01/08 16:42:06 | 000,757,280 | ---- | M] (Microsoft Corporation) MD5=698EB1E5F8C66344D97C00B5699E871D -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_9.4.8112.16464_none_b10dc045c829d512\iexplore.exe
    [2010/11/03 23:54:59 | 000,673,040 | ---- | M] (Microsoft Corporation) MD5=6B2258FF6D2332073FE9E90122FA4168 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_8.0.7600.20831_none_b402ac8b9f13f917\iexplore.exe
    [2011/06/20 23:25:30 | 000,673,040 | ---- | M] (Microsoft Corporation) MD5=6BB506124872ACDFAC5BD912CA1334CE -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_8.0.7600.20992_none_b3c2cf339f43b73b\iexplore.exe
    [2008/01/24 09:39:39 | 000,625,152 | ---- | M] (Microsoft Corporation) MD5=7023BC3AF58F0C47856AF147E290D81A -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.16575_none_2d35117b1d0c34fb\iexplore.exe
    [2010/06/26 00:06:48 | 000,638,232 | ---- | M] (Microsoft Corporation) MD5=7420BE0E7D3D1320054F7ACA0594953D -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_8.0.6001.18943_none_1222e6c92fe9748f\iexplore.exe
    [2013/07/25 21:49:06 | 000,770,648 | ---- | M] (Microsoft Corporation) MD5=7BA1862B8A5698DC5FCFDFF3BC359DE9 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_10.2.9200.16660_none_ba6aa26e65e05c0d\iexplore.exe
    [2009/08/27 07:31:08 | 000,638,216 | ---- | M] (Microsoft Corporation) MD5=7DD482E4A2E3CBB0A72F718C342F5B75 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_8.0.6001.22918_none_12d1f2e448ea4212\iexplore.exe
    [2008/02/19 11:04:57 | 000,625,664 | ---- | M] (Microsoft Corporation) MD5=7F2693693511F7ECD2762081F2F19864 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.20734_none_2de8ef92360a48d1\iexplore.exe
    [2009/07/18 06:16:45 | 000,634,648 | ---- | M] (Microsoft Corporation) MD5=7FCF4E704A48D95202F3E7A1E1A21412 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.21089_none_2db7bd56362e80c9\iexplore.exe
    [2006/11/02 03:45:14 | 000,623,616 | ---- | M] (Microsoft Corporation) MD5=8308F01F27DF839E0010B0F72F855E35 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.16386_none_2d2b3e0d1d136ff5\iexplore.exe
    [2010/01/02 00:40:20 | 000,638,216 | ---- | M] (Microsoft Corporation) MD5=88BD42DAE7CFFEB256CA7145A15E4843 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_8.0.6001.18882_none_11f6a4e9300acdd5\iexplore.exe
    [2012/02/27 23:44:39 | 000,673,048 | ---- | M] (Microsoft Corporation) MD5=8AFD61FB2D96C8229B7D8604F62FA692 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_8.0.7600.21158_none_b3f3eaa79f1e0fea\iexplore.exe
    [2009/03/02 22:32:44 | 000,636,072 | ---- | M] (Microsoft Corporation) MD5=8BA2B7A05F88BE0D45237A0994AD8366 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6001.22389_none_2f9e23da3354de78\iexplore.exe
    [2011/11/04 22:38:00 | 000,673,048 | ---- | M] (Microsoft Corporation) MD5=8ED7C19AEFA3673AADB0D6864B03FBCE -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_8.0.7600.16912_none_b38fb3ae85e53510\iexplore.exe
    [2008/02/19 11:04:58 | 000,625,664 | ---- | M] (Microsoft Corporation) MD5=9143C721DD6482374EFB35BC35944324 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.16609_none_2d84c3fd1ccfd3e7\iexplore.exe
    [2010/12/17 23:32:25 | 000,673,040 | ---- | M] (Microsoft Corporation) MD5=9321CF0D023528C71E3645F8433C86C8 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_8.0.7600.20861_none_b3e23cc79f2c4cea\iexplore.exe
    [2012/06/28 19:00:47 | 000,748,664 | ---- | M] (Microsoft Corporation) MD5=93569D46D79F9756ED077156496AFE23 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_9.4.8112.16448_none_b1276145c816028c\iexplore.exe
    [2008/02/20 22:43:03 | 000,625,664 | ---- | M] (Microsoft Corporation) MD5=9437CA21CD48C9B6BFD6F5AC0143D251 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.16643_none_2d5382911cf5aba1\iexplore.exe
    [2013/10/12 01:16:06 | 000,770,736 | ---- | M] (Microsoft Corporation) MD5=9DFE1678738DD968D7BA5559B52706D1 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_10.2.9200.20848_none_a384a5267f9a8dfe\iexplore.exe
    [2009/08/27 08:04:53 | 000,634,632 | ---- | M] (Microsoft Corporation) MD5=9E45866CD349219784CD5A7620DBEB8A -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.16916_none_2d76f8e51cda9b48\iexplore.exe
    [2009/03/02 22:40:22 | 000,636,072 | ---- | M] (Microsoft Corporation) MD5=9E6C1527D9A2C64BFD780AA23075380F -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6001.18226_none_2f5265b91a094b03\iexplore.exe
    [2008/04/24 20:04:08 | 000,625,664 | ---- | M] (Microsoft Corporation) MD5=9F1427F203CA078005C9943800929640 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.20823_none_2df2c11a360310b0\iexplore.exe
    [2010/02/23 00:39:16 | 000,638,232 | ---- | M] (Microsoft Corporation) MD5=9F52FBE99C749E3F32C75124F09F1B03 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_8.0.6001.18904_none_124f26c32fc81e22\iexplore.exe
    [2013/02/01 22:19:03 | 000,757,280 | ---- | M] (Microsoft Corporation) MD5=A285E1965C115031DA02B777EE9D7689 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_9.4.8112.20580_none_b17dbc10e15b4762\iexplore.exe
    [2011/06/20 23:37:00 | 000,673,040 | ---- | M] (Microsoft Corporation) MD5=A3AB0A260049BE22AB52E302D9220A92 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_8.0.7600.16839_none_b38113f685ef212c\iexplore.exe
    [2009/08/27 07:43:41 | 000,634,632 | ---- | M] (Microsoft Corporation) MD5=A76AFC309AA55CD607A28AC41C7D7603 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.21116_none_2e006dd235f86e54\iexplore.exe
    [2013/05/16 16:27:11 | 000,757,400 | ---- | M] (Microsoft Corporation) MD5=A8732CEDB2C0EE7AFC08F867A47BB3EC -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_9.4.8112.20600_none_b1d43d56e11a6501\iexplore.exe
    [2011/11/04 22:39:45 | 000,673,048 | ---- | M] (Microsoft Corporation) MD5=A8A14CD0CB499B80412F75D53996AE29 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_8.0.7600.21085_none_b3d0781f9f391a91\iexplore.exe
    [2010/12/17 23:33:54 | 000,673,040 | ---- | M] (Microsoft Corporation) MD5=AA08B68EF4E35EFA170CF85A44B23B70 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_8.0.7600.16722_none_b384dff685ed56b3\iexplore.exe
    [2011/02/23 23:45:11 | 000,673,040 | ---- | M] (Microsoft Corporation) MD5=AB2BB40A5FE49AD236791AC22BD08869 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_8.0.7600.20908_none_b42a203b9ef553cc\iexplore.exe
    [2012/11/16 10:33:24 | 000,757,280 | ---- | M] (Microsoft Corporation) MD5=B201AF83DF2E85323E29EB83E4046810 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_9.4.8112.16457_none_b11b910fc81f0526\iexplore.exe
    [2013/04/04 14:50:32 | 000,218,184 | ---- | M] () MD5=B4C6E3889BB310CA7E974A04EC6E46AC -- C:\Program Files\Malwarebytes' Anti-Malware\Chameleon\iexplore.exe
    [2009/03/08 15:09:24 | 000,638,816 | ---- | M] (Microsoft Corporation) MD5=B60DDDD2D63CE41CB8C487FCFBB6419E -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_8.0.6001.18702_none_124d22632fc9f126\iexplore.exe
    [2009/08/27 07:38:13 | 000,634,648 | ---- | M] (Microsoft Corporation) MD5=BBF84F317553520BB78AEF7B047325C1 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6001.18319_none_2f60386919fe783e\iexplore.exe
    [2012/06/02 02:51:58 | 000,748,664 | ---- | M] (Microsoft Corporation) MD5=BE967C74B89577B78FB57C061E12B04C -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_9.4.8112.20553_none_b1a12cb2e1403f94\iexplore.exe
    [2013/04/04 15:55:02 | 000,757,360 | ---- | M] (Microsoft Corporation) MD5=C036AB1ED8BAC04FE4A349BA263077BB -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_9.4.8112.20593_none_b175ed02e160af58\iexplore.exe
    [2012/11/15 21:08:47 | 000,757,280 | ---- | M] (Microsoft Corporation) MD5=C0BA71C1B3FB6E3DD432FF3CCAEBDC62 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_9.4.8112.20565_none_b1985d5ae1468e33\iexplore.exe
    [2011/12/16 03:19:51 | 000,673,048 | ---- | M] (Microsoft Corporation) MD5=C53E41F92B19EC97D987F968403BEC49 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_8.0.7600.21108_none_b429fa439ef58435\iexplore.exe
    [2010/11/20 06:22:51 | 000,673,040 | ---- | M] (Microsoft Corporation) MD5=C613E69C3B191BB02C7A191741A1D024 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_8.0.7601.17514_none_b5780d7c8309d95c\iexplore.exe
    [2011/02/23 23:32:52 | 000,673,040 | ---- | M] (Microsoft Corporation) MD5=C6697A46554E36541E81182B258A19D6 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_8.0.7600.16766_none_b35da16e860a2bd3\iexplore.exe
    [2012/10/08 02:22:05 | 000,748,704 | ---- | M] (Microsoft Corporation) MD5=CECB15F834FC2B4B150449717ADE18DD -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_9.4.8112.20562_none_b1955c7ce149422e\iexplore.exe
    [2013/06/21 02:05:36 | 000,770,648 | ---- | M] (Microsoft Corporation) MD5=CEE28BCBC3251595396EE7FDA2B5F3CF -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_10.2.9200.16618_none_ba64eabc65e5aa62\iexplore.exe
    [2009/04/24 10:03:18 | 000,634,648 | ---- | M] (Microsoft Corporation) MD5=D5271AC4A06AD9D1E2EA0151B79B2657 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.21046_none_2ddffc283610c500\iexplore.exe
    [2010/09/08 00:02:42 | 000,638,232 | ---- | M] (Microsoft Corporation) MD5=D5A730DFDEAE005373E62BC2A866E3BB -- C:\$WINDOWS.~Q\DATA\Program Files\Internet Explorer\iexplore.exe
    [2010/09/08 00:02:42 | 000,638,232 | ---- | M] (Microsoft Corporation) MD5=D5A730DFDEAE005373E62BC2A866E3BB -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_8.0.6001.18975_none_120477992ffffb10\iexplore.exe
    [2009/04/24 10:01:36 | 000,634,648 | ---- | M] (Microsoft Corporation) MD5=D6157423C117F24D24695866A1D0A93F -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6001.22418_none_2fe8d4ea331cfeb1\iexplore.exe
    [2013/09/22 17:54:30 | 000,770,648 | ---- | M] (Microsoft Corporation) MD5=D6B7DDB68436F13C3CAE2B92524F1FEC -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_10.2.9200.16721_none_ba5bba9265ec2c43\iexplore.exe
    [2008/10/15 22:42:58 | 000,634,024 | ---- | M] (Microsoft Corporation) MD5=D762642A109433EEDCD332B0A9511137 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.16764_none_2d3ee4e91d04fa01\iexplore.exe
    [2013/10/12 01:44:13 | 000,770,736 | ---- | M] (Microsoft Corporation) MD5=D7D5768B8A697FCBAEE2CFE137070F02 -- C:\Program Files\Internet Explorer\iexplore.exe
    [2013/10/12 01:44:13 | 000,770,736 | ---- | M] (Microsoft Corporation) MD5=D7D5768B8A697FCBAEE2CFE137070F02 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_10.2.9200.16736_none_ba5c48f465ebc5bf\iexplore.exe
    [2013/09/22 18:01:39 | 000,770,648 | ---- | M] (Microsoft Corporation) MD5=DB352EBF77E8655E0C46B6923F3C9950 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_10.2.9200.20831_none_a38444547f9ac140\iexplore.exe
    [2013/02/01 22:19:04 | 000,757,296 | ---- | M] (Microsoft Corporation) MD5=DDE5A0DFAF7C6370FB36402D7A746ED3 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_9.4.8112.16470_none_b0feef31c8358ba7\iexplore.exe
    [2013/07/25 23:09:39 | 000,770,648 | ---- | M] (Microsoft Corporation) MD5=E70D60B3A350BD09D86CDAD9CF55F36B -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_10.2.9200.20768_none_a39175a67f90a4bb\iexplore.exe
    [2009/11/21 09:05:17 | 000,638,232 | ---- | M] (Microsoft Corporation) MD5=E7F8DF50E483D165BB01F367D3519AA7 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_8.0.6001.22956_none_12a4b2a0490c7f28\iexplore.exe
    [2009/03/02 22:22:10 | 000,636,072 | ---- | M] (Microsoft Corporation) MD5=EA4BE33726155F89D89A3FE7142878E0 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.16830_none_2d5b556b1cf03df9\iexplore.exe
    [2012/06/28 17:35:27 | 000,748,664 | ---- | M] (Microsoft Corporation) MD5=EB4105348272018D096FEB655CD1608C -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_9.4.8112.20554_none_b1a22cfce13f58eb\iexplore.exe
    [2009/07/18 05:55:42 | 000,634,648 | ---- | M] (Microsoft Corporation) MD5=EBEE9E4421F35CD861107DDA0266FBB1 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6001.22475_none_2fa4f48433505a52\iexplore.exe
    [2008/01/11 17:39:40 | 000,625,152 | ---- | M] (Microsoft Corporation) MD5=EDEE147E416398BB3DD5B0DD4F6F1D32 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.16546_none_2d5681891cf2fa7f\iexplore.exe
    [2013/01/08 15:32:42 | 000,757,280 | ---- | M] (Microsoft Corporation) MD5=F05982E56ABD835AA8DF260EEC873E5B -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_9.4.8112.20573_none_b18b8cdae1507776\iexplore.exe
    [2010/06/26 00:52:42 | 000,638,232 | ---- | M] (Microsoft Corporation) MD5=F05B3A2C6CB319DD1377AD566CF5ECE5 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_8.0.6001.23040_none_12a958f24909fe6f\iexplore.exe
    [2009/01/14 22:18:47 | 000,634,024 | ---- | M] (Microsoft Corporation) MD5=F0B1CA517977BA2FF6DA33F1B966C488 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6000.20996_none_2daa146a36391d73\iexplore.exe
    [2009/04/24 10:08:04 | 000,634,632 | ---- | M] (Microsoft Corporation) MD5=F294D8EEB05C835EC44A12CE0A1DFE7A -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6001.18248_none_2f3ec6751a17b593\iexplore.exe
    [2011/04/22 13:11:29 | 000,673,040 | ---- | M] (Microsoft Corporation) MD5=F94877A94996B3C12BB31AD722840457 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_8.0.7600.20949_none_b3ffe0d59f14dce7\iexplore.exe
    [2011/08/19 22:32:44 | 000,673,024 | ---- | M] (Microsoft Corporation) MD5=FA623BE79902A7B49FF4F21117B63C83 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_8.0.7600.21033_none_b40487279f125c2e\iexplore.exe
    [2009/08/27 07:19:25 | 000,634,648 | ---- | M] (Microsoft Corporation) MD5=FE2DFF83B7753AC47C553EF7D5289BEE -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6001.22508_none_2ff3a6bc3314dfe7\iexplore.exe

    < MD5 for: IEXPLORE.EXE.MUI >
    [2006/11/02 06:41:15 | 000,016,384 | ---- | M] (Microsoft Corporation) MD5=3CCDDDBC49DEACA370F39A9F0E146A1B -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-i..texplorer.resources_31bf3856ad364e35_6.0.6000.16386_en-us_3b55b11a57da5590\iexplore.exe.mui
    [2012/07/01 12:30:44 | 000,005,632 | ---- | M] (Microsoft Corporation) MD5=4C71CCB3C8817185E67210856778831F -- C:\Windows\winsxs\x86_microsoft-windows-i..-optional.resources_31bf3856ad364e35_9.4.8112.16421_en-us_aae2948effb95a30\iexplore.exe.mui
    [2013/06/21 02:05:36 | 000,005,632 | ---- | M] (Microsoft Corporation) MD5=8EDDC50FD07326E7DF9C4EEA422F0918 -- C:\Program Files\Internet Explorer\en-US\iexplore.exe.mui
    [2013/06/21 02:05:36 | 000,005,632 | ---- | M] (Microsoft Corporation) MD5=8EDDC50FD07326E7DF9C4EEA422F0918 -- C:\Windows\winsxs\x86_microsoft-windows-i..-optional.resources_31bf3856ad364e35_10.2.9200.16521_en-us_b41defe19d893548\iexplore.exe.mui
    [2009/03/08 15:27:11 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=943030B55FDB56FB8B8FCC086071E119 -- C:\$WINDOWS.~Q\DATA\Program Files\Internet Explorer\en-US\iexplore.exe.mui
    [2009/03/08 15:27:11 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=943030B55FDB56FB8B8FCC086071E119 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-i..texplorer.resources_31bf3856ad364e35_8.0.6001.18702_en-us_207795706a90d6c1\iexplore.exe.mui
    [2009/07/13 20:05:06 | 000,005,120 | ---- | M] (Microsoft Corporation) MD5=FBA4CD95930248053A2C3F43CA70B986 -- C:\Windows.old.000\Program Files\Internet Explorer\en-US\iexplore.exe.mui
    [2009/07/13 20:05:06 | 000,005,120 | ---- | M] (Microsoft Corporation) MD5=FBA4CD95930248053A2C3F43CA70B986 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-i..-optional.resources_31bf3856ad364e35_8.0.7600.16385_en-us_acf38f2bbdc896a9\iexplore.exe.mui
    [2009/07/13 20:05:06 | 000,005,120 | ---- | M] (Microsoft Corporation) MD5=FBA4CD95930248053A2C3F43CA70B986 -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-i..-optional.resources_31bf3856ad364e35_8.0.7600.16385_en-us_acf38f2bbdc896a9\iexplore.exe.mui
    [2009/07/13 20:05:06 | 000,005,120 | ---- | M] (Microsoft Corporation) MD5=FBA4CD95930248053A2C3F43CA70B986 -- C:\Windows\winsxs\x86_microsoft-windows-i..-optional.resources_31bf3856ad364e35_8.0.7600.16385_en-us_acf38f2bbdc896a9\iexplore.exe.mui
    [2009/07/13 20:05:06 | 000,005,120 | ---- | M] (Microsoft Corporation) MD5=FBA4CD95930248053A2C3F43CA70B986 -- C:\Windows\winsxs\x86_microsoft-windows-i..-optional.resources_31bf3856ad364e35_8.0.7601.17514_en-us_af24a2f3bab71a43\iexplore.exe.mui

    < MD5 for: IEXPLORE.EXE-058FE8F5.PF >
    [2010/11/26 10:24:28 | 000,111,724 | ---- | M] () MD5=C2C938883EBF07A4226CD19DAB1DBDA1 -- C:\$WINDOWS.~Q\DATA\Windows\Prefetch\IEXPLORE.EXE-058FE8F5.pf

    < MD5 for: SERVICES >
    [2006/09/18 15:41:30 | 000,017,244 | ---- | M] () MD5=9F534244B7F8F55D5C0BB498D8D481E7 -- C:\$INPLACE.~TR\Machine\DATA\Windows\System32\drivers\etc\services
    [2006/09/18 15:41:30 | 000,017,244 | ---- | M] () MD5=9F534244B7F8F55D5C0BB498D8D481E7 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-w..nfrastructure-other_31bf3856ad364e35_6.0.6000.16386_none_024e4071fa6fea95\services
    [2009/06/10 15:39:37 | 000,017,463 | ---- | M] () MD5=D9E1A01B480D961B7CF0509D597A92D6 -- C:\Windows.old.000\Windows\System32\drivers\etc\services
    [2009/06/10 15:39:37 | 000,017,463 | ---- | M] () MD5=D9E1A01B480D961B7CF0509D597A92D6 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-w..nfrastructure-other_31bf3856ad364e35_6.1.7600.16385_none_045b589158ae90da\services
    [2009/06/10 15:39:37 | 000,017,463 | ---- | M] () MD5=D9E1A01B480D961B7CF0509D597A92D6 -- C:\Windows.old\Windows\System32\drivers\etc\services
    [2009/06/10 15:39:37 | 000,017,463 | ---- | M] () MD5=D9E1A01B480D961B7CF0509D597A92D6 -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-w..nfrastructure-other_31bf3856ad364e35_6.1.7600.16385_none_045b589158ae90da\services
    [2009/06/10 15:39:37 | 000,017,463 | ---- | M] () MD5=D9E1A01B480D961B7CF0509D597A92D6 -- C:\Windows\System32\drivers\etc\services
    [2009/06/10 15:39:37 | 000,017,463 | ---- | M] () MD5=D9E1A01B480D961B7CF0509D597A92D6 -- C:\Windows\winsxs\x86_microsoft-windows-w..nfrastructure-other_31bf3856ad364e35_6.1.7600.16385_none_045b589158ae90da\services

  4. #4
    Junior Member moonlightandroses's Avatar
    Join Date
    Nov 2013
    Posts
    8

    Default Pg 4

    < MD5 for: SERVICES.CFG >
    [2012/09/23 19:43:36 | 000,603,848 | R--- | M] () MD5=81B120EAEE296F0E54F66C16C5A21367 -- C:\Windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744BA0000000010\11.0.0\services.cfg
    [2013/09/05 08:04:00 | 000,559,090 | ---- | M] () MD5=8ADD48E413D05BF2E7AEC00173DDFABC -- C:\Program Files\Adobe\Reader 11.0\Reader\Services\Services.cfg

    < MD5 for: SERVICES.CSS >
    [2005/06/29 13:48:58 | 000,014,339 | ---- | M] () MD5=9D415BDEF74ADF7B0CD791E40A911A38 -- C:\$INPLACE.~TR\Machine\DATA\Program Files\Intuit\QuickBooks 2009\Components\Services\services.css

    < MD5 for: SERVICES.DAT >
    [2010/12/13 15:18:35 | 000,010,240 | ---- | M] () MD5=93EF4E04373E30CBEF51125A1C97547F -- C:\Users\Lorrie\AppData\Roaming\Adobe\Acrobat\10.0\Security\services.dat

    < MD5 for: SERVICES.EXE >
    [2008/01/19 01:33:28 | 000,279,040 | ---- | M] (Microsoft Corporation) MD5=2B336AB6286D6C81FA02CBAB914E3C6C -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.0.6001.18000_none_cf5fc067cd49010a\services.exe
    [2006/11/02 03:45:40 | 000,279,552 | ---- | M] (Microsoft Corporation) MD5=329CF3C97CE4C19375C8ABCABAE258B0 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.0.6000.16386_none_cd28fe6bd05df036\services.exe
    [2009/07/13 19:14:36 | 000,259,072 | ---- | M] (Microsoft Corporation) MD5=5F1B6A9C35D3D5CA72D6D6FDEF9747D6 -- C:\Windows.old.000\Windows\System32\services.exe
    [2009/07/13 19:14:36 | 000,259,072 | ---- | M] (Microsoft Corporation) MD5=5F1B6A9C35D3D5CA72D6D6FDEF9747D6 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_cf36168b2e9c967b\services.exe
    [2009/07/13 19:14:36 | 000,259,072 | ---- | M] (Microsoft Corporation) MD5=5F1B6A9C35D3D5CA72D6D6FDEF9747D6 -- C:\Windows.old\Windows\System32\services.exe
    [2009/07/13 19:14:36 | 000,259,072 | ---- | M] (Microsoft Corporation) MD5=5F1B6A9C35D3D5CA72D6D6FDEF9747D6 -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_cf36168b2e9c967b\services.exe
    [2009/07/13 19:14:36 | 000,259,072 | ---- | M] (Microsoft Corporation) MD5=5F1B6A9C35D3D5CA72D6D6FDEF9747D6 -- C:\Windows\System32\services.exe
    [2009/07/13 19:14:36 | 000,259,072 | ---- | M] (Microsoft Corporation) MD5=5F1B6A9C35D3D5CA72D6D6FDEF9747D6 -- C:\Windows\winsxs\x86_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_cf36168b2e9c967b\services.exe
    [2009/04/11 00:27:59 | 000,279,552 | ---- | M] (Microsoft Corporation) MD5=D4E6D91C1349B7BFB3599A6ADA56851B -- C:\$WINDOWS.~Q\DATA\Windows\System32\services.exe
    [2009/04/11 00:27:59 | 000,279,552 | ---- | M] (Microsoft Corporation) MD5=D4E6D91C1349B7BFB3599A6ADA56851B -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.0.6002.18005_none_d14b3973ca6acc56\services.exe

    < MD5 for: SERVICES.EXE.MUI >
    [2009/07/13 20:03:06 | 000,017,408 | ---- | M] (Microsoft Corporation) MD5=0DA5F221169DEB5AC3A22465CD6F0281 -- C:\Windows.old.000\Windows\System32\en-US\services.exe.mui
    [2009/07/13 20:03:06 | 000,017,408 | ---- | M] (Microsoft Corporation) MD5=0DA5F221169DEB5AC3A22465CD6F0281 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-s..ontroller.resources_31bf3856ad364e35_6.1.7600.16385_en-us_69d39d3a8748c332\services.exe.mui
    [2009/07/13 20:03:06 | 000,017,408 | ---- | M] (Microsoft Corporation) MD5=0DA5F221169DEB5AC3A22465CD6F0281 -- C:\Windows.old\Windows\System32\en-US\services.exe.mui
    [2009/07/13 20:03:06 | 000,017,408 | ---- | M] (Microsoft Corporation) MD5=0DA5F221169DEB5AC3A22465CD6F0281 -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-s..ontroller.resources_31bf3856ad364e35_6.1.7600.16385_en-us_69d39d3a8748c332\services.exe.mui
    [2009/07/13 20:03:06 | 000,017,408 | ---- | M] (Microsoft Corporation) MD5=0DA5F221169DEB5AC3A22465CD6F0281 -- C:\Windows\System32\en-US\services.exe.mui
    [2009/07/13 20:03:06 | 000,017,408 | ---- | M] (Microsoft Corporation) MD5=0DA5F221169DEB5AC3A22465CD6F0281 -- C:\Windows\winsxs\x86_microsoft-windows-s..ontroller.resources_31bf3856ad364e35_6.1.7600.16385_en-us_69d39d3a8748c332\services.exe.mui
    [2006/11/02 06:40:53 | 000,017,920 | ---- | M] (Microsoft Corporation) MD5=1626EACF0E7E59F85C59DDDD27C4169C -- C:\$WINDOWS.~Q\DATA\Windows\System32\en-US\services.exe.mui
    [2006/11/02 06:40:53 | 000,017,920 | ---- | M] (Microsoft Corporation) MD5=1626EACF0E7E59F85C59DDDD27C4169C -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-s..ontroller.resources_31bf3856ad364e35_6.0.6000.16386_en-us_67c6851b290a1ced\services.exe.mui

    < MD5 for: SERVICES.LNK >
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\$WINDOWS.~Q\DATA\Users\All Users\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Documents and Settings\All Users\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Documents and Settings\All Users\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Documents and Settings\All Users\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Documents and Settings\All Users\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\ProgramData\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\ProgramData\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\ProgramData\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\ProgramData\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\ProgramData\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Users\All Users\Application Data\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Users\All Users\Application Data\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Users\All Users\Application Data\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Users\All Users\Application Data\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Users\All Users\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
    [2009/07/13 22:41:45 | 000,001,288 | ---- | M] () MD5=021B1B178776500E54560EDCFFE0EE21 -- C:\Windows.old.000\Users\All Users\Start Menu\Programs\Administrative Tools\services.lnk
    [2008/09/25 07:24:05 | 000,001,688 | ---- | M] () MD5=D4E97325E63F3793C2DA7935C300F97D -- C:\$WINDOWS.~Q\DATA\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk

    < MD5 for: SERVICES.MOF >
    [2006/09/18 15:46:11 | 000,002,866 | ---- | M] () MD5=26A11C895A7F0B6D32105EBE127D8500 -- C:\$WINDOWS.~Q\DATA\Windows\System32\wbem\services.mof
    [2006/09/18 15:46:11 | 000,002,866 | ---- | M] () MD5=26A11C895A7F0B6D32105EBE127D8500 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.0.6000.16386_none_cd28fe6bd05df036\services.mof
    [2006/09/18 15:46:11 | 000,002,866 | ---- | M] () MD5=26A11C895A7F0B6D32105EBE127D8500 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.0.6001.18000_none_cf5fc067cd49010a\services.mof
    [2006/09/18 15:46:11 | 000,002,866 | ---- | M] () MD5=26A11C895A7F0B6D32105EBE127D8500 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.0.6002.18005_none_d14b3973ca6acc56\services.mof
    [2009/06/10 15:26:14 | 000,002,866 | ---- | M] () MD5=26A11C895A7F0B6D32105EBE127D8500 -- C:\Windows.old.000\Windows\System32\wbem\services.mof
    [2009/06/10 15:26:14 | 000,002,866 | ---- | M] () MD5=26A11C895A7F0B6D32105EBE127D8500 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_cf36168b2e9c967b\services.mof
    [2009/06/10 15:26:14 | 000,002,866 | ---- | M] () MD5=26A11C895A7F0B6D32105EBE127D8500 -- C:\Windows.old\Windows\System32\wbem\services.mof
    [2009/06/10 15:26:14 | 000,002,866 | ---- | M] () MD5=26A11C895A7F0B6D32105EBE127D8500 -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_cf36168b2e9c967b\services.mof
    [2009/06/10 15:26:14 | 000,002,866 | ---- | M] () MD5=26A11C895A7F0B6D32105EBE127D8500 -- C:\Windows\System32\wbem\services.mof
    [2009/06/10 15:26:14 | 000,002,866 | ---- | M] () MD5=26A11C895A7F0B6D32105EBE127D8500 -- C:\Windows\winsxs\x86_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_cf36168b2e9c967b\services.mof

    < MD5 for: SERVICES.MSC >
    [2006/11/02 06:41:29 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\$WINDOWS.~Q\DATA\Windows\System32\en-US\services.msc
    [2006/09/18 15:29:40 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\$WINDOWS.~Q\DATA\Windows\System32\services.msc
    [2006/11/02 06:41:29 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-s..cessnapin.resources_31bf3856ad364e35_6.0.6000.16386_en-us_a2085506ff73b6e0\services.msc
    [2006/09/18 15:29:40 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-servicessnapin_31bf3856ad364e35_6.0.6000.16386_none_cd2d20a848cfd40f\services.msc
    [2006/09/18 15:29:40 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-servicessnapin_31bf3856ad364e35_6.0.6001.18000_none_cf63e2a445bae4e3\services.msc
    [2009/07/13 20:08:50 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows.old.000\Windows\System32\en-US\services.msc
    [2009/06/10 15:21:09 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows.old.000\Windows\System32\services.msc
    [2009/07/13 20:08:50 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-s..cessnapin.resources_31bf3856ad364e35_6.1.7600.16385_en-us_a4156d265db25d25\services.msc
    [2009/06/10 15:21:09 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-servicessnapin_31bf3856ad364e35_6.1.7600.16385_none_cf3a38c7a70e7a54\services.msc
    [2009/07/13 20:08:50 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows.old\Windows\System32\en-US\services.msc
    [2009/06/10 15:21:09 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows.old\Windows\System32\services.msc
    [2009/07/13 20:08:50 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-s..cessnapin.resources_31bf3856ad364e35_6.1.7600.16385_en-us_a4156d265db25d25\services.msc
    [2009/06/10 15:21:09 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-servicessnapin_31bf3856ad364e35_6.1.7600.16385_none_cf3a38c7a70e7a54\services.msc
    [2009/07/13 20:08:50 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\System32\en-US\services.msc
    [2009/06/10 15:21:09 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\System32\services.msc
    [2009/07/13 20:08:50 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\winsxs\x86_microsoft-windows-s..cessnapin.resources_31bf3856ad364e35_6.1.7600.16385_en-us_a4156d265db25d25\services.msc
    [2009/06/10 15:21:09 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\winsxs\x86_microsoft-windows-servicessnapin_31bf3856ad364e35_6.1.7600.16385_none_cf3a38c7a70e7a54\services.msc

    < MD5 for: SERVICES.PTXML >
    [2009/07/13 14:20:01 | 000,001,061 | ---- | M] () MD5=640D7DD61B1CFA6C96F80F68F78CDFA7 -- C:\Windows.old.000\Windows\System32\wdi\perftrack\Services.ptxml
    [2009/07/13 14:20:01 | 000,001,061 | ---- | M] () MD5=640D7DD61B1CFA6C96F80F68F78CDFA7 -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_cf36168b2e9c967b\Services.ptxml
    [2009/07/13 14:20:01 | 000,001,061 | ---- | M] () MD5=640D7DD61B1CFA6C96F80F68F78CDFA7 -- C:\Windows.old\Windows\System32\wdi\perftrack\Services.ptxml
    [2009/07/13 14:20:01 | 000,001,061 | ---- | M] () MD5=640D7DD61B1CFA6C96F80F68F78CDFA7 -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_cf36168b2e9c967b\Services.ptxml
    [2009/07/13 14:20:01 | 000,001,061 | ---- | M] () MD5=640D7DD61B1CFA6C96F80F68F78CDFA7 -- C:\Windows\System32\wdi\perftrack\Services.ptxml
    [2009/07/13 14:20:01 | 000,001,061 | ---- | M] () MD5=640D7DD61B1CFA6C96F80F68F78CDFA7 -- C:\Windows\winsxs\x86_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_cf36168b2e9c967b\Services.ptxml

    < MD5 for: SERVICES.SBS >
    [2011/03/01 00:00:00 | 000,034,818 | ---- | M] () MD5=62AFD4B2025CE6D4706B36F4C4808F9B -- C:\Program Files\Spybot - Search & Destroy 2\Includes\Services.sbs
    [2011/03/01 01:58:46 | 000,034,818 | ---- | M] () MD5=62AFD4B2025CE6D4706B36F4C4808F9B -- C:\Program Files\Spybot - Search & Destroy 2\Updates\Extracts\Services.sbs

    < MD5 for: SERVICES.SBS-20110301.CAB >
    [2013/11/16 07:34:31 | 000,041,248 | ---- | M] () MD5=149FF3413EED31253183D6E65E383138 -- C:\Program Files\Spybot - Search & Destroy 2\Updates\Downloads\Services.sbs-20110301.cab

    < MD5 for: SERVICES.XSD >
    [2007/08/13 13:44:36 | 000,002,072 | ---- | M] () MD5=2FDABAB193926D77AD539401831B829C -- C:\$INPLACE.~TR\Machine\DATA\Program Files\Common Files\Detto Technologies, Inc\Schemas\Services.xsd

    < MD5 for: WINLOGON.ADML >
    [2009/07/13 20:05:00 | 000,008,013 | ---- | M] () MD5=CED0EAD8D152B3D0F114698DE2316C5E -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-winlogon-adm.resources_31bf3856ad364e35_6.1.7600.16385_en-us_94da67ab3e358f3a\WinLogon.adml
    [2009/07/13 20:05:00 | 000,008,013 | ---- | M] () MD5=CED0EAD8D152B3D0F114698DE2316C5E -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-winlogon-adm.resources_31bf3856ad364e35_6.1.7600.16385_en-us_94da67ab3e358f3a\WinLogon.adml
    [2009/07/13 20:05:00 | 000,008,013 | ---- | M] () MD5=CED0EAD8D152B3D0F114698DE2316C5E -- C:\Windows\winsxs\x86_microsoft-windows-winlogon-adm.resources_31bf3856ad364e35_6.1.7600.16385_en-us_94da67ab3e358f3a\WinLogon.adml

    < MD5 for: WINLOGON.ADMX >
    [2009/06/10 15:43:18 | 000,005,237 | ---- | M] () MD5=89D8F50E186A16C2CED3CF36DBBC0B2C -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-winlogon-adm_31bf3856ad364e35_6.1.7600.16385_none_7ae3b2e5da95d117\WinLogon.admx
    [2009/06/10 15:43:18 | 000,005,237 | ---- | M] () MD5=89D8F50E186A16C2CED3CF36DBBC0B2C -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-winlogon-adm_31bf3856ad364e35_6.1.7600.16385_none_7ae3b2e5da95d117\WinLogon.admx
    [2009/06/10 15:43:18 | 000,005,237 | ---- | M] () MD5=89D8F50E186A16C2CED3CF36DBBC0B2C -- C:\Windows\winsxs\x86_microsoft-windows-winlogon-adm_31bf3856ad364e35_6.1.7600.16385_none_7ae3b2e5da95d117\WinLogon.admx

    < MD5 for: WINLOGON.EXE >
    [2009/10/28 00:17:59 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=37CDB7E72EB66BA85A87CBE37E7F03FD -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_6fc699643622d177\winlogon.exe
    [2009/10/27 23:52:08 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=3BABE6767C78FBF5FB8435FEED187F30 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_703394514f56f7c2\winlogon.exe
    [2010/11/20 06:17:54 | 000,286,720 | ---- | M] (Microsoft Corporation) MD5=6D13E1406F50C66E2A95D97F22C47560 -- C:\Windows\System32\winlogon.exe
    [2010/11/20 06:17:54 | 000,286,720 | ---- | M] (Microsoft Corporation) MD5=6D13E1406F50C66E2A95D97F22C47560 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_71ca6b0233339500\winlogon.exe
    [2009/04/11 00:28:13 | 000,314,368 | ---- | M] (Microsoft Corporation) MD5=898E7C06A350D4A1A64A9EA264D55452 -- C:\$WINDOWS.~Q\DATA\Windows\System32\winlogon.exe
    [2009/04/11 00:28:13 | 000,314,368 | ---- | M] (Microsoft Corporation) MD5=898E7C06A350D4A1A64A9EA264D55452 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6002.18005_none_71ae7a22d2134741\winlogon.exe
    [2009/07/13 19:14:45 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=8EC6A4AB12B8F3759E21F8E3A388F2CF -- C:\Windows.old.000\Windows\System32\winlogon.exe
    [2009/07/13 19:14:45 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=8EC6A4AB12B8F3759E21F8E3A388F2CF -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_6f99573a36451166\winlogon.exe
    [2009/07/13 19:14:45 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=8EC6A4AB12B8F3759E21F8E3A388F2CF -- C:\Windows.old\Windows\System32\winlogon.exe
    [2009/07/13 19:14:45 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=8EC6A4AB12B8F3759E21F8E3A388F2CF -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_6f99573a36451166\winlogon.exe
    [2009/07/13 19:14:45 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=8EC6A4AB12B8F3759E21F8E3A388F2CF -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_6f99573a36451166\winlogon.exe
    [2006/11/02 03:45:57 | 000,308,224 | ---- | M] (Microsoft Corporation) MD5=9F75392B9128A91ABAFB044EA350BAAD -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6000.16386_none_6d8c3f1ad8066b21\winlogon.exe
    [2013/04/04 14:50:32 | 000,218,184 | ---- | M] () MD5=B4C6E3889BB310CA7E974A04EC6E46AC -- C:\Program Files\Malwarebytes' Anti-Malware\Chameleon\winlogon.exe
    [2008/01/19 01:33:37 | 000,314,880 | ---- | M] (Microsoft Corporation) MD5=C2610B6BDBEFC053BBDAB4F1B965CB24 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6001.18000_none_6fc30116d4f17bf5\winlogon.exe

    < MD5 for: WINLOGON.EXE.MUI >
    [2008/01/19 01:40:57 | 000,028,672 | ---- | M] (Microsoft Corporation) MD5=26AC28BF50DC112BAA794A83E08588F0 -- C:\$WINDOWS.~Q\DATA\Windows\System32\en-US\winlogon.exe.mui
    [2008/01/19 01:40:57 | 000,028,672 | ---- | M] (Microsoft Corporation) MD5=26AC28BF50DC112BAA794A83E08588F0 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-winlogon.resources_31bf3856ad364e35_6.0.6001.18000_en-us_caf8918b0416723a\winlogon.exe.mui
    [2010/11/20 06:12:53 | 000,023,040 | ---- | M] (Microsoft Corporation) MD5=65C2C2EE8F334EE07F66876551DE1827 -- C:\Windows\System32\en-US\winlogon.exe.mui
    [2010/11/20 06:12:53 | 000,023,040 | ---- | M] (Microsoft Corporation) MD5=65C2C2EE8F334EE07F66876551DE1827 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon.resources_31bf3856ad364e35_6.1.7601.17514_en-us_ccfffb7662588b45\winlogon.exe.mui
    [2006/11/02 06:40:50 | 000,028,672 | ---- | M] (Microsoft Corporation) MD5=A1D2856F3EC3C86EBBF1442B0245A8B3 -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-winlogon.resources_31bf3856ad364e35_6.0.6000.16386_en-us_c8c1cf8f072b6166\winlogon.exe.mui
    [2009/07/13 20:05:28 | 000,022,528 | ---- | M] (Microsoft Corporation) MD5=DB61D28A59DEE68F77811B291D83AD1B -- C:\Windows.old.000\Windows\System32\en-US\winlogon.exe.mui
    [2009/07/13 20:05:28 | 000,022,528 | ---- | M] (Microsoft Corporation) MD5=DB61D28A59DEE68F77811B291D83AD1B -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-winlogon.resources_31bf3856ad364e35_6.1.7600.16385_en-us_cacee7ae656a07ab\winlogon.exe.mui
    [2009/07/13 20:05:28 | 000,022,528 | ---- | M] (Microsoft Corporation) MD5=DB61D28A59DEE68F77811B291D83AD1B -- C:\Windows.old\Windows\System32\en-US\winlogon.exe.mui
    [2009/07/13 20:05:28 | 000,022,528 | ---- | M] (Microsoft Corporation) MD5=DB61D28A59DEE68F77811B291D83AD1B -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-winlogon.resources_31bf3856ad364e35_6.1.7600.16385_en-us_cacee7ae656a07ab\winlogon.exe.mui
    [2009/07/13 20:05:28 | 000,022,528 | ---- | M] (Microsoft Corporation) MD5=DB61D28A59DEE68F77811B291D83AD1B -- C:\Windows\winsxs\x86_microsoft-windows-winlogon.resources_31bf3856ad364e35_6.1.7600.16385_en-us_cacee7ae656a07ab\winlogon.exe.mui

    < MD5 for: WINLOGON.MFL >
    [2009/07/13 20:09:40 | 000,001,080 | ---- | M] () MD5=2783ED50691284F7EAE6BE9729337E1A -- C:\Windows.old.000\Windows\System32\wbem\en-US\winlogon.mfl
    [2009/07/13 20:09:40 | 000,001,080 | ---- | M] () MD5=2783ED50691284F7EAE6BE9729337E1A -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-winlogon-mof.resources_31bf3856ad364e35_6.1.7600.16385_en-us_2891397980a26140\winlogon.mfl
    [2009/07/13 20:09:40 | 000,001,080 | ---- | M] () MD5=2783ED50691284F7EAE6BE9729337E1A -- C:\Windows.old\Windows\System32\wbem\en-US\winlogon.mfl
    [2009/07/13 20:09:40 | 000,001,080 | ---- | M] () MD5=2783ED50691284F7EAE6BE9729337E1A -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-winlogon-mof.resources_31bf3856ad364e35_6.1.7600.16385_en-us_2891397980a26140\winlogon.mfl
    [2009/07/13 20:09:40 | 000,001,080 | ---- | M] () MD5=2783ED50691284F7EAE6BE9729337E1A -- C:\Windows\System32\wbem\en-US\winlogon.mfl
    [2009/07/13 20:09:40 | 000,001,080 | ---- | M] () MD5=2783ED50691284F7EAE6BE9729337E1A -- C:\Windows\winsxs\x86_microsoft-windows-winlogon-mof.resources_31bf3856ad364e35_6.1.7600.16385_en-us_2891397980a26140\winlogon.mfl

    < MD5 for: WINLOGON.MOF >
    [2006/09/18 15:41:56 | 000,002,794 | ---- | M] () MD5=545C578F290B9CDD280966939935B9EA -- C:\$WINDOWS.~Q\DATA\Windows\System32\wbem\winlogon.mof
    [2006/09/18 15:41:56 | 000,002,794 | ---- | M] () MD5=545C578F290B9CDD280966939935B9EA -- C:\$WINDOWS.~Q\DATA\Windows\winsxs\x86_microsoft-windows-winlogon-mof_31bf3856ad364e35_6.0.6000.16386_none_7e0207d478fccc94\winlogon.mof
    [2009/07/13 14:37:34 | 000,003,192 | ---- | M] () MD5=DF722B96F32A61783BC310FACF10240B -- C:\Windows.old.000\Windows\System32\wbem\winlogon.mof
    [2009/07/13 14:37:34 | 000,003,192 | ---- | M] () MD5=DF722B96F32A61783BC310FACF10240B -- C:\Windows.old.000\Windows\winsxs\x86_microsoft-windows-winlogon-mof_31bf3856ad364e35_6.1.7600.16385_none_800f1ff3d73b72d9\winlogon.mof
    [2009/07/13 14:37:34 | 000,003,192 | ---- | M] () MD5=DF722B96F32A61783BC310FACF10240B -- C:\Windows.old\Windows\System32\wbem\winlogon.mof
    [2009/07/13 14:37:34 | 000,003,192 | ---- | M] () MD5=DF722B96F32A61783BC310FACF10240B -- C:\Windows.old\Windows\winsxs\x86_microsoft-windows-winlogon-mof_31bf3856ad364e35_6.1.7600.16385_none_800f1ff3d73b72d9\winlogon.mof
    [2009/07/13 14:37:34 | 000,003,192 | ---- | M] () MD5=DF722B96F32A61783BC310FACF10240B -- C:\Windows\System32\wbem\winlogon.mof
    [2009/07/13 14:37:34 | 000,003,192 | ---- | M] () MD5=DF722B96F32A61783BC310FACF10240B -- C:\Windows\winsxs\x86_microsoft-windows-winlogon-mof_31bf3856ad364e35_6.1.7600.16385_none_800f1ff3d73b72d9\winlogon.mof

    < %SYSTEMDRIVE%\*.* >
    [2010/11/26 10:24:30 | 000,000,002 | ---- | M] () -- C:\$UpgDrv$
    [2012/07/01 12:35:15 | 000,069,091 | ---- | M] () -- C:\aaw7boot.log
    [2011/12/01 10:47:32 | 000,000,000 | ---- | M] () -- C:\AdobeDebug.txt
    [2009/06/10 15:42:20 | 000,000,024 | ---- | M] () -- C:\autoexec.bat
    [2010/11/20 06:40:07 | 000,383,786 | RHS- | M] () -- C:\bootmgr
    [2010/11/26 19:02:21 | 000,008,192 | RHS- | M] () -- C:\BOOTSECT.BAK
    [2009/06/10 15:42:20 | 000,000,010 | ---- | M] () -- C:\config.sys
    [2008/01/11 17:46:34 | 000,005,793 | RH-- | M] () -- C:\dell.sdr
    [2013/11/07 14:15:27 | 000,000,000 | ---- | M] () -- C:\END
    [2009/12/10 07:12:08 | 000,000,000 | ---- | M] () -- C:\FileRecovery.log
    [2013/11/21 01:51:40 | 2414,297,088 | -HS- | M] () -- C:\hiberfil.sys
    [2010/01/07 10:37:12 | 000,001,205 | ---- | M] () -- C:\install.log
    [2013/07/25 12:26:10 | 000,005,379 | ---- | M] () -- C:\InstallHelper.log
    [2008/02/19 10:56:14 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
    [2008/01/26 05:17:24 | 000,006,771 | ---- | M] () -- C:\logfile
    [2008/02/19 10:56:14 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
    [2013/11/21 01:51:42 | 3219,066,880 | -HS- | M] () -- C:\pagefile.sys
    [2006/08/07 12:21:18 | 004,636,672 | ---- | M] (Amyuni Technologies) -- C:\Setup.exe
    [2008/05/07 23:36:04 | 000,000,162 | ---- | M] () -- C:\YServer.txt

    < %systemroot%\Fonts\*.com >
    [2009/07/13 22:52:25 | 000,026,040 | ---- | M] () -- C:\Windows\Fonts\GlobalMonospace.CompositeFont
    [2009/07/13 22:52:25 | 000,026,489 | ---- | M] () -- C:\Windows\Fonts\GlobalSansSerif.CompositeFont
    [2009/07/13 22:52:25 | 000,029,779 | ---- | M] () -- C:\Windows\Fonts\GlobalSerif.CompositeFont
    [2009/07/13 22:52:25 | 000,043,318 | ---- | M] () -- C:\Windows\Fonts\GlobalUserInterface.CompositeFont

    < %systemroot%\Fonts\*.dll >

    < %systemroot%\Fonts\*.ini >
    [2009/06/10 15:31:19 | 000,000,065 | ---- | M] () -- C:\Windows\Fonts\desktop.ini

    < %systemroot%\Fonts\*.ini2 >

    < %systemroot%\Fonts\*.exe >

    < %systemroot%\system32\spool\prtprocs\w32x86\*.* >
    [2009/07/13 19:15:26 | 000,090,624 | ---- | M] (Hewlett-Packard Corporation) -- C:\Windows\system32\spool\prtprocs\w32x86\HPZPPWN7.DLL
    [2009/07/13 19:15:35 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\spool\prtprocs\w32x86\jnwppr.dll
    [2010/07/09 07:31:14 | 000,082,184 | ---- | M] (Microsoft Corporation.) -- C:\Windows\system32\spool\prtprocs\w32x86\lmdippr8.dll
    [2010/11/20 06:21:36 | 000,030,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\spool\prtprocs\w32x86\winprint.dll

    < %systemroot%\REPAIR\*.bak1 >

    < %systemroot%\REPAIR\*.ini >

    < %systemroot%\system32\*.jpg >

    < %systemroot%\*.jpg >

    < %systemroot%\*.png >

    < %systemroot%\*.scr >

    < %systemroot%\*._sy >

    < %APPDATA%\Adobe\Update\*.* >

    < %ALLUSERSPROFILE%\Favorites\*.* >

    < %APPDATA%\Microsoft\*.* >

    < %PROGRAMFILES%\*.* >
    [2009/07/13 22:41:57 | 000,000,174 | -HS- | M] () -- C:\Program Files\desktop.ini

    < %APPDATA%\Update\*.* >

    < %systemroot%\*. /mp /s >

    < dir "%systemdrive%\*" /S /A:L /C >
    Volume in drive C is OS
    Volume Serial Number is 2C9C-7D05
    Directory of C:\
    07/13/2009 10:53 PM <JUNCTION> Documents and Settings [C:\Users]
    0 File(s) 0 bytes
    Directory of C:\$WINDOWS.~Q\DATA
    01/24/2008 07:17 AM <JUNCTION> Documents and Settings [C:\Users]
    0 File(s) 0 bytes
    Directory of C:\$WINDOWS.~Q\DATA\ProgramData
    01/24/2008 07:17 AM <JUNCTION> Application Data [C:\ProgramData]
    01/24/2008 07:17 AM <JUNCTION> Desktop [C:\Users\Public\Desktop]
    01/24/2008 07:17 AM <JUNCTION> Documents [C:\Users\Public\Documents]
    01/24/2008 07:17 AM <JUNCTION> Favorites [C:\Users\Public\Favorites]
    01/24/2008 07:17 AM <JUNCTION> Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu]
    01/24/2008 07:17 AM <JUNCTION> Templates [C:\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\$WINDOWS.~Q\DATA\Users
    01/24/2008 07:17 AM <SYMLINKD> All Users [C:\ProgramData]
    01/24/2008 07:17 AM <JUNCTION> Default User [C:\Users\Default]
    0 File(s) 0 bytes
    Directory of C:\$WINDOWS.~Q\DATA\Users\All Users
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\$WINDOWS.~Q\DATA\Users\Default
    01/24/2008 07:17 AM <JUNCTION> Application Data [C:\Users\Default\AppData\Roaming]
    01/24/2008 07:17 AM <JUNCTION> Cookies [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Cookies]
    01/24/2008 07:17 AM <JUNCTION> Local Settings [C:\Users\Default\AppData\Local]
    01/24/2008 07:17 AM <JUNCTION> My Documents [C:\Users\Default\Documents]
    01/24/2008 07:17 AM <JUNCTION> NetHood [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
    01/24/2008 07:17 AM <JUNCTION> PrintHood [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
    01/24/2008 07:17 AM <JUNCTION> Recent [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Recent]
    01/24/2008 07:17 AM <JUNCTION> SendTo [C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo]
    01/24/2008 07:17 AM <JUNCTION> Start Menu [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu]
    01/24/2008 07:17 AM <JUNCTION> Templates [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\$WINDOWS.~Q\DATA\Users\Default\AppData\Local
    01/24/2008 07:17 AM <JUNCTION> Application Data [C:\Users\Default\AppData\Local]
    01/24/2008 07:17 AM <JUNCTION> History [C:\Users\Default\AppData\Local\Microsoft\Windows\History]
    01/24/2008 07:17 AM <JUNCTION> Temporary Internet Files [C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\$WINDOWS.~Q\DATA\Users\Default\Documents
    01/24/2008 07:17 AM <JUNCTION> My Music [C:\Users\Default\Music]
    01/24/2008 07:17 AM <JUNCTION> My Pictures [C:\Users\Default\Pictures]
    01/24/2008 07:17 AM <JUNCTION> My Videos [C:\Users\Default\Videos]
    0 File(s) 0 bytes
    Directory of C:\$WINDOWS.~Q\DATA\Users\Douglas
    05/17/2009 08:58 AM <JUNCTION> Application Data [C:\Users\Douglas\AppData\Roaming]
    05/17/2009 08:58 AM <JUNCTION> Cookies [C:\Users\Douglas\AppData\Roaming\Microsoft\Windows\Cookies]
    05/17/2009 08:58 AM <JUNCTION> Local Settings [C:\Users\Douglas\AppData\Local]
    05/17/2009 08:58 AM <JUNCTION> My Documents [C:\Users\Douglas\Documents]
    05/17/2009 08:58 AM <JUNCTION> NetHood [C:\Users\Douglas\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
    05/17/2009 08:58 AM <JUNCTION> PrintHood [C:\Users\Douglas\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
    05/17/2009 08:58 AM <JUNCTION> Recent [C:\Users\Douglas\AppData\Roaming\Microsoft\Windows\Recent]
    05/17/2009 08:58 AM <JUNCTION> SendTo [C:\Users\Douglas\AppData\Roaming\Microsoft\Windows\SendTo]
    05/17/2009 08:58 AM <JUNCTION> Start Menu [C:\Users\Douglas\AppData\Roaming\Microsoft\Windows\Start Menu]
    05/17/2009 08:58 AM <JUNCTION> Templates [C:\Users\Douglas\AppData\Roaming\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\$WINDOWS.~Q\DATA\Users\Douglas\AppData\Local
    05/17/2009 08:58 AM <JUNCTION> Application Data [C:\Users\Douglas\AppData\Local]
    05/17/2009 08:58 AM <JUNCTION> History [C:\Users\Douglas\AppData\Local\Microsoft\Windows\History]
    05/17/2009 08:58 AM <JUNCTION> Temporary Internet Files [C:\Users\Douglas\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\$WINDOWS.~Q\DATA\Users\Douglas\Documents
    05/17/2009 08:58 AM <JUNCTION> My Music [C:\Users\Douglas\Music]
    05/17/2009 08:58 AM <JUNCTION> My Pictures [C:\Users\Douglas\Pictures]
    05/17/2009 08:58 AM <JUNCTION> My Videos [C:\Users\Douglas\Videos]
    0 File(s) 0 bytes
    Directory of C:\$WINDOWS.~Q\DATA\Users\Guest
    02/03/2008 11:20 PM <JUNCTION> Application Data [C:\Users\Guest\AppData\Roaming]
    02/03/2008 11:20 PM <JUNCTION> Cookies [C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Cookies]
    02/03/2008 11:20 PM <JUNCTION> Local Settings [C:\Users\Guest\AppData\Local]
    02/03/2008 11:20 PM <JUNCTION> My Documents [C:\Users\Guest\Documents]
    02/03/2008 11:20 PM <JUNCTION> NetHood [C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
    02/03/2008 11:20 PM <JUNCTION> PrintHood [C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
    02/03/2008 11:20 PM <JUNCTION> Recent [C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Recent]
    02/03/2008 11:20 PM <JUNCTION> SendTo [C:\Users\Guest\AppData\Roaming\Microsoft\Windows\SendTo]
    02/03/2008 11:20 PM <JUNCTION> Start Menu [C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu]
    02/03/2008 11:20 PM <JUNCTION> Templates [C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\$WINDOWS.~Q\DATA\Users\Guest\AppData\Local
    02/03/2008 11:20 PM <JUNCTION> Application Data [C:\Users\Guest\AppData\Local]
    02/03/2008 11:20 PM <JUNCTION> History [C:\Users\Guest\AppData\Local\Microsoft\Windows\History]
    02/03/2008 11:20 PM <JUNCTION> Temporary Internet Files [C:\Users\Guest\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\$WINDOWS.~Q\DATA\Users\Guest\Documents
    02/03/2008 11:20 PM <JUNCTION> My Music [C:\Users\Guest\Music]
    02/03/2008 11:20 PM <JUNCTION> My Pictures [C:\Users\Guest\Pictures]
    02/03/2008 11:20 PM <JUNCTION> My Videos [C:\Users\Guest\Videos]
    0 File(s) 0 bytes
    Directory of C:\$WINDOWS.~Q\DATA\Users\Lorrie
    01/24/2008 07:20 AM <JUNCTION> Application Data [C:\Users\Lorrie\AppData\Roaming]
    01/24/2008 07:20 AM <JUNCTION> Cookies [C:\Users\Lorrie\AppData\Roaming\Microsoft\Windows\Cookies]
    01/24/2008 07:20 AM <JUNCTION> Local Settings [C:\Users\Lorrie\AppData\Local]
    01/24/2008 07:20 AM <JUNCTION> My Documents [C:\Users\Lorrie\Documents]
    01/24/2008 07:20 AM <JUNCTION> NetHood [C:\Users\Lorrie\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
    01/24/2008 07:20 AM <JUNCTION> PrintHood [C:\Users\Lorrie\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
    01/24/2008 07:20 AM <JUNCTION> Recent [C:\Users\Lorrie\AppData\Roaming\Microsoft\Windows\Recent]
    01/24/2008 07:20 AM <JUNCTION> SendTo [C:\Users\Lorrie\AppData\Roaming\Microsoft\Windows\SendTo]
    01/24/2008 07:20 AM <JUNCTION> Start Menu [C:\Users\Lorrie\AppData\Roaming\Microsoft\Windows\Start Menu]
    01/24/2008 07:20 AM <JUNCTION> Templates [C:\Users\Lorrie\AppData\Roaming\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\$WINDOWS.~Q\DATA\Users\Lorrie\AppData\Local
    01/24/2008 07:20 AM <JUNCTION> Application Data [C:\Users\Lorrie\AppData\Local]
    01/24/2008 07:20 AM <JUNCTION> History [C:\Users\Lorrie\AppData\Local\Microsoft\Windows\History]
    01/24/2008 07:20 AM <JUNCTION> Temporary Internet Files [C:\Users\Lorrie\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes

  5. #5
    Junior Member moonlightandroses's Avatar
    Join Date
    Nov 2013
    Posts
    8

    Default Pg 5

    Directory of C:\$WINDOWS.~Q\DATA\Users\Lorrie\Documents
    01/24/2008 07:20 AM <JUNCTION> My Music [C:\Users\Lorrie\Music]
    01/24/2008 07:20 AM <JUNCTION> My Pictures [C:\Users\Lorrie\Pictures]
    01/24/2008 07:20 AM <JUNCTION> My Videos [C:\Users\Lorrie\Videos]
    0 File(s) 0 bytes
    Directory of C:\$WINDOWS.~Q\DATA\Users\Public\Documents
    01/24/2008 07:17 AM <JUNCTION> My Music [C:\Users\Public\Music]
    01/24/2008 07:17 AM <JUNCTION> My Pictures [C:\Users\Public\Pictures]
    01/24/2008 07:17 AM <JUNCTION> My Videos [C:\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\$WINDOWS.~Q\DATA\Windows\System32\config\systemprofile
    04/19/2010 12:15 PM <JUNCTION> Application Data [C:\Windows\system32\config\systemprofile\AppData\Roaming]
    04/19/2010 12:15 PM <JUNCTION> Cookies [C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies]
    04/19/2010 12:15 PM <JUNCTION> Local Settings [C:\Windows\system32\config\systemprofile\AppData\Local]
    04/19/2010 12:15 PM <JUNCTION> Start Menu [C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Start Menu]
    0 File(s) 0 bytes
    Directory of C:\$WINDOWS.~Q\DATA\Windows\System32\config\systemprofile\AppData\Local
    04/19/2010 12:15 PM <JUNCTION> Application Data [C:\Windows\system32\config\systemprofile\AppData\Local]
    04/19/2010 12:15 PM <JUNCTION> History [C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History]
    04/19/2010 12:15 PM <JUNCTION> Temporary Internet Files [C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\ProgramData
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Users
    07/13/2009 10:53 PM <SYMLINKD> All Users [C:\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Default User [C:\Users\Default]
    0 File(s) 0 bytes
    Directory of C:\Users\All Users
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Users\Default
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Users\Default\AppData\Roaming]
    07/13/2009 10:53 PM <JUNCTION> Cookies [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Cookies]
    07/13/2009 10:53 PM <JUNCTION> Local Settings [C:\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> My Documents [C:\Users\Default\Documents]
    07/13/2009 10:53 PM <JUNCTION> NetHood [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
    07/13/2009 10:53 PM <JUNCTION> PrintHood [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
    07/13/2009 10:53 PM <JUNCTION> Recent [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Recent]
    07/13/2009 10:53 PM <JUNCTION> SendTo [C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Users\Default\AppData\Roaming\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Users\Default\AppData\Local
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Users\Default\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Users\Default\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Users\Default\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Users\Default\Videos]
    0 File(s) 0 bytes
    Directory of C:\Users\Lorrie
    11/26/2010 05:22 PM <JUNCTION> Application Data [C:\Users\Lorrie\AppData\Roaming]
    11/26/2010 05:22 PM <JUNCTION> Cookies [C:\Users\Lorrie\AppData\Roaming\Microsoft\Windows\Cookies]
    11/26/2010 05:22 PM <JUNCTION> Local Settings [C:\Users\Lorrie\AppData\Local]
    11/26/2010 05:22 PM <JUNCTION> My Documents [C:\Users\Lorrie\Documents]
    11/26/2010 05:22 PM <JUNCTION> NetHood [C:\Users\Lorrie\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
    11/26/2010 05:22 PM <JUNCTION> PrintHood [C:\Users\Lorrie\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
    11/26/2010 05:22 PM <JUNCTION> Recent [C:\Users\Lorrie\AppData\Roaming\Microsoft\Windows\Recent]
    11/26/2010 05:22 PM <JUNCTION> SendTo [C:\Users\Lorrie\AppData\Roaming\Microsoft\Windows\SendTo]
    11/26/2010 05:22 PM <JUNCTION> Start Menu [C:\Users\Lorrie\AppData\Roaming\Microsoft\Windows\Start Menu]
    11/26/2010 05:22 PM <JUNCTION> Templates [C:\Users\Lorrie\AppData\Roaming\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Users\Lorrie\AppData\Local
    11/26/2010 05:22 PM <JUNCTION> Application Data [C:\Users\Lorrie\AppData\Local]
    11/26/2010 05:22 PM <JUNCTION> History [C:\Users\Lorrie\AppData\Local\Microsoft\Windows\History]
    11/26/2010 05:22 PM <JUNCTION> Temporary Internet Files [C:\Users\Lorrie\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Users\Lorrie\Documents
    11/26/2010 05:22 PM <JUNCTION> My Music [C:\Users\Lorrie\Music]
    11/26/2010 05:22 PM <JUNCTION> My Pictures [C:\Users\Lorrie\Pictures]
    11/26/2010 05:22 PM <JUNCTION> My Videos [C:\Users\Lorrie\Videos]
    0 File(s) 0 bytes
    Directory of C:\Users\Public\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows\System32\config\systemprofile
    12/27/2010 08:27 AM <JUNCTION> Application Data [C:\Windows\system32\config\systemprofile\AppData\Roaming]
    12/27/2010 08:27 AM <JUNCTION> Cookies [C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies]
    12/27/2010 08:27 AM <JUNCTION> Local Settings [C:\Windows\system32\config\systemprofile\AppData\Local]
    12/27/2010 08:29 AM <JUNCTION> My Documents [C:\Windows\system32\config\systemprofile\Documents]
    12/27/2010 08:29 AM <JUNCTION> NetHood [C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
    12/27/2010 08:29 AM <JUNCTION> PrintHood [C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
    12/27/2010 08:29 AM <JUNCTION> Recent [C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Recent]
    12/27/2010 08:29 AM <JUNCTION> SendTo [C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\SendTo]
    12/27/2010 08:29 AM <JUNCTION> Start Menu [C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Start Menu]
    12/27/2010 08:29 AM <JUNCTION> Templates [C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows\System32\config\systemprofile\AppData\Local
    12/27/2010 08:27 AM <JUNCTION> Application Data [C:\Windows\system32\config\systemprofile\AppData\Local]
    12/27/2010 08:27 AM <JUNCTION> History [C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History]
    12/27/2010 08:27 AM <JUNCTION> Temporary Internet Files [C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows\System32\config\systemprofile\Documents
    12/27/2010 08:29 AM <JUNCTION> My Music [C:\Windows\system32\config\systemprofile\Music]
    12/27/2010 08:29 AM <JUNCTION> My Pictures [C:\Windows\system32\config\systemprofile\Pictures]
    12/27/2010 08:29 AM <JUNCTION> My Videos [C:\Windows\system32\config\systemprofile\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old\Users\Lorrie
    11/26/2010 12:04 PM <JUNCTION> PrintHood [C:\Users\Lorrie\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
    11/26/2010 12:04 PM <JUNCTION> Recent [C:\Users\Lorrie\AppData\Roaming\Microsoft\Windows\Recent]
    11/26/2010 12:04 PM <JUNCTION> SendTo [C:\Users\Lorrie\AppData\Roaming\Microsoft\Windows\SendTo]
    11/26/2010 12:04 PM <JUNCTION> Start Menu [C:\Users\Lorrie\AppData\Roaming\Microsoft\Windows\Start Menu]
    11/26/2010 12:04 PM <JUNCTION> Templates [C:\Users\Lorrie\AppData\Roaming\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old\Users\Public\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000
    07/13/2009 10:53 PM <JUNCTION> Documents and Settings [C:\Windows.old.000\Users]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings
    07/13/2009 10:53 PM <SYMLINKD> All Users [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Default User [C:\Windows.old.000\Users\Default]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Roaming]
    07/13/2009 10:53 PM <JUNCTION> Cookies [C:\Windows.old.000\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies]
    07/13/2009 10:53 PM <JUNCTION> Local Settings [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> My Documents [C:\Windows.old.000\Users\Administrator\Documents]
    07/13/2009 10:53 PM <JUNCTION> NetHood [C:\Windows.old.000\Users\Administrator\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
    07/13/2009 10:53 PM <JUNCTION> PrintHood [C:\Windows.old.000\Users\Administrator\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
    07/13/2009 10:53 PM <JUNCTION> Recent [C:\Windows.old.000\Users\Administrator\AppData\Roaming\Microsoft\Windows\Recent]
    07/13/2009 10:53 PM <JUNCTION> SendTo [C:\Windows.old.000\Users\Administrator\AppData\Roaming\Microsoft\Windows\SendTo]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\Users\Administrator\AppData\Roaming\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator\AppData\Local
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator\AppData\Local\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator\AppData\Local\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator\AppData\Local\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator\AppData\Local\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [.]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [.]
    07/13/2009 10:53 PM <JUNCTION> History [.]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [.]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Administrator\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Administrator\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Administrator\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator\Local Settings
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator\Local Settings\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator\Local Settings\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator\Local Settings\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator\Local Settings\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [.]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [.]
    07/13/2009 10:53 PM <JUNCTION> History [.]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [.]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Administrator\My Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Administrator\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Administrator\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Administrator\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\All Users
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\All Users\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [.]
    07/13/2009 10:53 PM <JUNCTION> Desktop [.]
    07/13/2009 10:53 PM <JUNCTION> Documents [.]
    07/13/2009 10:53 PM <JUNCTION> Favorites [.]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [.]
    07/13/2009 10:53 PM <JUNCTION> Templates [.]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [.]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\All Users\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\All Users\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\All Users\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Roaming]
    07/13/2009 10:53 PM <JUNCTION> Cookies [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\Cookies]
    07/13/2009 10:53 PM <JUNCTION> Local Settings [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> My Documents [C:\Windows.old.000\Users\Default\Documents]
    07/13/2009 10:53 PM <JUNCTION> NetHood [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
    07/13/2009 10:53 PM <JUNCTION> PrintHood [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
    07/13/2009 10:53 PM <JUNCTION> Recent [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\Recent]
    07/13/2009 10:53 PM <JUNCTION> SendTo [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default\AppData\Local
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default\AppData\Local\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default\AppData\Local\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default\AppData\Local\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [.]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [.]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Default\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Default\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Default\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default\Local Settings
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default\Local Settings\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default\Local Settings\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default\Local Settings\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default\Local Settings\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [.]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [.]
    0 File(s) 0 bytes

  6. #6
    Junior Member moonlightandroses's Avatar
    Join Date
    Nov 2013
    Posts
    8

    Default Pg 6

    Directory of C:\Windows.old.000\Documents and Settings\Default\My Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Default\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Default\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Default\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Roaming]
    07/13/2009 10:53 PM <JUNCTION> Cookies [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\Cookies]
    07/13/2009 10:53 PM <JUNCTION> Local Settings [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> My Documents [C:\Windows.old.000\Users\Default\Documents]
    07/13/2009 10:53 PM <JUNCTION> NetHood [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
    07/13/2009 10:53 PM <JUNCTION> PrintHood [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
    07/13/2009 10:53 PM <JUNCTION> Recent [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\Recent]
    07/13/2009 10:53 PM <JUNCTION> SendTo [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User\AppData\Local
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User\AppData\Local\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User\AppData\Local\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User\AppData\Local\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [.]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [.]
    07/13/2009 10:53 PM <JUNCTION> History [.]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [.]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Default\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Default\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Default\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User\Local Settings
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User\Local Settings\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User\Local Settings\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User\Local Settings\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [.]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [.]
    07/13/2009 10:53 PM <JUNCTION> History [.]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [.]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Default User\My Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Default\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Default\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Default\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Documents and Settings\Public\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [.]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [.]
    07/13/2009 10:53 PM <JUNCTION> Favorites [.]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [.]
    07/13/2009 10:53 PM <JUNCTION> Templates [.]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\ProgramData\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users
    07/13/2009 10:53 PM <SYMLINKD> All Users [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Default User [C:\Windows.old.000\Users\Default]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Roaming]
    07/13/2009 10:53 PM <JUNCTION> Cookies [C:\Windows.old.000\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies]
    07/13/2009 10:53 PM <JUNCTION> Local Settings [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> My Documents [C:\Windows.old.000\Users\Administrator\Documents]
    07/13/2009 10:53 PM <JUNCTION> NetHood [C:\Windows.old.000\Users\Administrator\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
    07/13/2009 10:53 PM <JUNCTION> PrintHood [C:\Windows.old.000\Users\Administrator\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
    07/13/2009 10:53 PM <JUNCTION> Recent [C:\Windows.old.000\Users\Administrator\AppData\Roaming\Microsoft\Windows\Recent]
    07/13/2009 10:53 PM <JUNCTION> SendTo [C:\Windows.old.000\Users\Administrator\AppData\Roaming\Microsoft\Windows\SendTo]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\Users\Administrator\AppData\Roaming\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\AppData\Local
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\AppData\Local\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\AppData\Local\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\AppData\Local\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\AppData\Local\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [.]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [.]
    07/13/2009 10:53 PM <JUNCTION> History [.]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [.]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Administrator\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Administrator\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Administrator\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\Local Settings
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\Local Settings\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\Local Settings\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\Local Settings\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\Local Settings\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Administrator\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Administrator\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [.]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [.]
    07/13/2009 10:53 PM <JUNCTION> History [.]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [.]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Administrator\My Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Administrator\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Administrator\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Administrator\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\All Users
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\All Users\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\All Users\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes

  7. #7
    Junior Member moonlightandroses's Avatar
    Join Date
    Nov 2013
    Posts
    8

    Default Pg ???

    Directory of C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\ProgramData]
    07/13/2009 10:53 PM <JUNCTION> Desktop [C:\Windows.old.000\Users\Public\Desktop]
    07/13/2009 10:53 PM <JUNCTION> Documents [C:\Windows.old.000\Users\Public\Documents]
    07/13/2009 10:53 PM <JUNCTION> Favorites [C:\Windows.old.000\Users\Public\Favorites]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\ProgramData\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\ProgramData\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [.]
    07/13/2009 10:53 PM <JUNCTION> Desktop [.]
    07/13/2009 10:53 PM <JUNCTION> Documents [.]
    07/13/2009 10:53 PM <JUNCTION> Favorites [.]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [.]
    07/13/2009 10:53 PM <JUNCTION> Templates [.]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [.]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\All Users\Application Data\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\All Users\Application Data\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\All Users\Application Data\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\All Users\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Roaming]
    07/13/2009 10:53 PM <JUNCTION> Cookies [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\Cookies]
    07/13/2009 10:53 PM <JUNCTION> Local Settings [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> My Documents [C:\Windows.old.000\Users\Default\Documents]
    07/13/2009 10:53 PM <JUNCTION> NetHood [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
    07/13/2009 10:53 PM <JUNCTION> PrintHood [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
    07/13/2009 10:53 PM <JUNCTION> Recent [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\Recent]
    07/13/2009 10:53 PM <JUNCTION> SendTo [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\AppData\Local
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\AppData\Local\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\AppData\Local\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\AppData\Local\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [.]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [.]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Default\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Default\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Default\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\Local Settings
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\Local Settings\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\Local Settings\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\Local Settings\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [.]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [.]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default\My Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Default\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Default\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Default\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Roaming]
    07/13/2009 10:53 PM <JUNCTION> Cookies [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\Cookies]
    07/13/2009 10:53 PM <JUNCTION> Local Settings [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> My Documents [C:\Windows.old.000\Users\Default\Documents]
    07/13/2009 10:53 PM <JUNCTION> NetHood [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
    07/13/2009 10:53 PM <JUNCTION> PrintHood [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
    07/13/2009 10:53 PM <JUNCTION> Recent [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\Recent]
    07/13/2009 10:53 PM <JUNCTION> SendTo [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo]
    07/13/2009 10:53 PM <JUNCTION> Start Menu [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu]
    07/13/2009 10:53 PM <JUNCTION> Templates [C:\Windows.old.000\Users\Default\AppData\Roaming\Microsoft\Windows\Templates]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\AppData\Local
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\AppData\Local\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\AppData\Local\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\AppData\Local\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [.]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [.]
    07/13/2009 10:53 PM <JUNCTION> History [.]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [.]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Default\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Default\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Default\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\Local Settings
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\Local Settings\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\Local Settings\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\Local Settings\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [C:\Windows.old.000\Users\Default\AppData\Local]
    07/13/2009 10:53 PM <JUNCTION> History [C:\Windows.old.000\Users\Default\AppData\Local\Microsoft\Windows\History]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [.]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data
    07/13/2009 10:53 PM <JUNCTION> Application Data [.]
    07/13/2009 10:53 PM <JUNCTION> History [.]
    07/13/2009 10:53 PM <JUNCTION> Temporary Internet Files [.]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Default User\My Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Default\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Default\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Default\Videos]
    0 File(s) 0 bytes
    Directory of C:\Windows.old.000\Users\Public\Documents
    07/13/2009 10:53 PM <JUNCTION> My Music [C:\Windows.old.000\Users\Public\Music]
    07/13/2009 10:53 PM <JUNCTION> My Pictures [C:\Windows.old.000\Users\Public\Pictures]
    07/13/2009 10:53 PM <JUNCTION> My Videos [C:\Windows.old.000\Users\Public\Videos]
    0 File(s) 0 bytes
    Total Files Listed:
    0 File(s) 0 bytes
    1080 Dir(s) 236,247,900,160 bytes free

    < %systemroot%\System32\config\*.sav >

    < %PROGRAMFILES%\bak. /s >

    < %systemroot%\system32\bak. /s >

    < %ALLUSERSPROFILE%\Start Menu\*.lnk /x >

    < %systemroot%\system32\config\systemprofile\*.dat /x >

    < %systemroot%\*.config >

    < %systemroot%\system32\*.db >

    < %PROGRAMFILES%\Internet Explorer\*.dat >

    < %APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x >
    [2012/07/01 12:39:01 | 000,000,317 | -HS- | M] () -- C:\Users\Lorrie\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\desktop.ini

    < %USERPROFILE%\Desktop\*.exe >
    [2012/10/26 04:20:34 | 037,868,688 | ---- | M] (Adobe Systems Incorporated) -- C:\Users\Lorrie\Desktop\AdbeRdr11000_en_US.exe
    [2013/11/21 05:05:11 | 004,745,728 | ---- | M] (AVAST Software) -- C:\Users\Lorrie\Desktop\aswMBR.exe
    [2012/08/24 18:29:33 | 000,587,432 | ---- | M] () -- C:\Users\Lorrie\Desktop\cbsidlm-tr1_5-Matildas_Fantastic_Cookbook_Software-10704359.exe
    [2011/11/05 09:28:05 | 001,857,488 | ---- | M] () -- C:\Users\Lorrie\Desktop\install_easyshare.exe
    [2013/07/14 21:18:03 | 032,728,088 | ---- | M] () -- C:\Users\Lorrie\Desktop\KMPlayer_3.6.0.87_00_20130701000000.exe
    [2012/08/25 05:36:29 | 176,230,400 | ---- | M] () -- C:\Users\Lorrie\Desktop\MatildaV41_Setup.exe
    [2013/11/20 09:16:35 | 010,285,040 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Lorrie\Desktop\mbam-setup-1.75.0.1300(1).exe
    [2013/09/03 13:35:43 | 010,285,040 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Lorrie\Desktop\mbam-setup-1.75.0.1300.exe
    [2013/11/21 05:49:11 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Lorrie\Desktop\OTL.exe
    [2010/11/28 07:32:43 | 006,352,756 | ---- | M] (DiskInternals Research) -- C:\Users\Lorrie\Desktop\Outlook_Recovery.exe
    [2013/11/21 04:49:16 | 000,891,200 | ---- | M] () -- C:\Users\Lorrie\Desktop\SecurityCheck.exe
    [2010/12/25 09:22:31 | 004,750,496 | ---- | M] (Adobe Systems Inc.) -- C:\Users\Lorrie\Desktop\Shockwave_Installer_Slim.exe
    [2012/07/02 05:30:49 | 000,686,792 | ---- | M] (Adobe Systems Incorporated) -- C:\Users\Lorrie\Desktop\uninstall_flash_player.exe
    [2011/09/26 15:00:14 | 028,104,424 | ---- | M] (Igor Pavlov) -- C:\Users\Lorrie\Desktop\VoiceStudio_210.exe
    [2013/02/10 07:04:39 | 088,450,792 | ---- | M] () -- C:\Users\Lorrie\Desktop\w_turbotax_1040_hab_ar_20120700100.exe

    < %PROGRAMFILES%\Common Files\*.* >

    < %systemroot%\*.src >

    < %systemroot%\install\*.* >

    < %systemroot%\system32\DLL\*.* >

    < %systemroot%\system32\HelpFiles\*.* >

    < %systemroot%\system32\rundll\*.* >

    < %systemroot%\winn32\*.* >

    < %systemroot%\Java\*.* >

    < %systemroot%\system32\test\*.* >

    < %systemroot%\system32\Rundll32\*.* >

    < %systemroot%\AppPatch\Custom\*.* >

    < HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >

    < HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2013-11-20 09:09:47

    ========== Base Services ==========
    SRV - [2009/07/13 19:14:53 | 000,062,464 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\aelupsvc.dll -- (AeLookupSvc)
    SRV - [2013/02/26 22:49:16 | 000,047,104 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\appinfo.dll -- (Appinfo)
    SRV - [2009/07/13 19:14:11 | 000,059,392 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\alg.exe -- (ALG)
    SRV - [2010/11/20 06:20:58 | 000,585,728 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\qmgr.dll -- (BITS)
    SRV - [2010/11/20 06:18:06 | 000,494,592 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\BFE.DLL -- (BFE)
    SRV - [2013/09/24 18:49:20 | 000,022,016 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\lsass.exe -- (KeyIso)
    SRV - [2009/07/13 19:15:19 | 000,271,360 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\es.dll -- (EventSystem)
    SRV - [2012/07/04 15:14:34 | 000,102,912 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\browser.dll -- (Browser)
    SRV - [2013/07/08 22:46:31 | 000,140,288 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\cryptsvc.dll -- (CryptSvc)
    SRV - [2010/11/20 06:21:03 | 000,376,832 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\rpcss.dll -- (DcomLaunch)
    SRV - [2010/11/20 06:18:30 | 000,254,464 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\dhcpcore.dll -- (Dhcp)
    SRV - [2011/03/02 23:38:01 | 000,132,608 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\dnsrslvr.dll -- (Dnscache)
    SRV - [2009/07/13 19:15:13 | 000,098,304 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\eapsvc.dll -- (EapHost)
    SRV - [2009/07/13 19:15:24 | 000,049,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\hidserv.dll -- (hidserv)
    SRV - [2009/07/13 19:15:33 | 000,300,544 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\ipnathlp.dll -- (SharedAccess)
    SRV - [2010/11/20 06:19:23 | 000,350,208 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\IPSECSVC.DLL -- (PolicyAgent)
    No service found with a name of MsMpSvc
    No service found with a name of NisSrv
    SRV - [2009/07/13 19:16:15 | 000,313,856 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\swprv.dll -- (swprv)
    SRV - [2009/07/13 19:15:41 | 000,049,664 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\mmcss.dll -- (MMCSS)
    SRV - [2009/07/13 19:16:03 | 000,280,576 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\netman.dll -- (Netman)
    SRV - [2009/07/13 19:16:03 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\netprofm.dll -- (netprofm)
    SRV - [2012/10/03 10:42:26 | 000,242,176 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\nlasvc.dll -- (NlaSvc)
    SRV - [2009/07/13 19:16:11 | 000,019,456 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\nsisvc.dll -- (nsi)
    SRV - [2011/05/24 04:44:59 | 000,293,376 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\umpnpmgr.dll -- (PlugPlay)
    SRV - [2012/02/10 23:37:49 | 000,317,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\spoolsv.exe -- (Spooler)
    SRV - [2013/09/24 18:49:20 | 000,022,016 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\lsass.exe -- (ProtectedStorage)
    No service found with a name of EMDMgmt
    SRV - [2009/07/13 19:16:12 | 000,090,624 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\rasauto.dll -- (RasAuto)
    SRV - [2010/11/20 06:21:00 | 000,286,208 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\rasmans.dll -- (RasMan)
    SRV - [2010/11/20 06:21:03 | 000,376,832 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\rpcss.dll -- (RpcSs)
    SRV - [2009/07/13 19:16:13 | 000,021,504 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\seclogon.dll -- (seclogon)
    SRV - [2013/09/24 18:49:20 | 000,022,016 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\lsass.exe -- (SamSs)
    SRV - [2009/07/13 19:16:20 | 000,073,728 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wscsvc.dll -- (wscsvc)
    SRV - [2010/11/20 06:21:26 | 000,168,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\srvsvc.dll -- (LanmanServer)
    SRV - [2010/11/20 06:21:19 | 000,328,192 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\shsvcs.dll -- (ShellHWDetection)
    No service found with a name of slsvc
    SRV - [2010/11/20 06:21:05 | 000,750,592 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\schedsvc.dll -- (Schedule)
    SRV - [2010/11/20 06:21:28 | 000,242,176 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\tapisrv.dll -- (TapiSrv)
    SRV - [2009/07/13 19:16:16 | 000,037,376 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\themeservice.dll -- (Themes)
    SRV - [2012/04/30 22:44:12 | 000,164,352 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\profsvc.dll -- (ProfSvc)
    SRV - [2010/11/20 06:17:51 | 001,025,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\VSSVC.exe -- (VSS)
    SRV - [2010/11/20 06:18:05 | 000,473,600 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\audiosrv.dll -- (Audiosrv)
    SRV - [2010/11/20 06:18:05 | 000,473,600 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\audiosrv.dll -- (AudioEndpointBuilder)
    SRV - [2010/11/20 06:21:06 | 000,125,952 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\sdrsvc.dll -- (SDRSVC)
    SRV - [2013/05/26 22:57:27 | 000,680,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
    SRV - [2010/11/20 06:21:35 | 001,086,976 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wevtsvc.dll -- (eventlog)
    SRV - [2010/11/20 06:19:40 | 000,566,272 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\MPSSVC.dll -- (MpsSvc)
    SRV - [2010/11/20 06:21:35 | 000,463,360 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wiaservc.dll -- (StiSvc)
    SRV - [2010/11/20 06:17:22 | 000,073,216 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\msiexec.exe -- (msiserver)
    SRV - [2009/07/13 19:16:19 | 000,168,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wbem\WMIsvc.dll -- (Winmgmt)
    SRV - [2012/06/02 16:19:17 | 001,933,848 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wuaueng.dll -- (wuauserv)
    SRV - [2010/11/20 06:18:34 | 000,214,016 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\dot3svc.dll -- (dot3svc)
    SRV - [2009/07/13 19:16:19 | 000,829,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wlansvc.dll -- (Wlansvc)
    SRV - [2010/11/20 06:21:36 | 000,084,480 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wkssvc.dll -- (LanmanWorkstation)

    ========== Drive Information ==========

    Physical Drives
    ---------------

    Drive: \\\\.\\PHYSICALDRIVE0 - Fixed hard disk media
    Interface type: IDE
    Media Type: Fixed hard disk media
    Model: ST3500630AS ATA Device
    Partitions: 3
    Status: OK
    Status Info: 0

    Drive: \\\\.\\PHYSICALDRIVE1 -
    Interface type: USB
    Media Type:
    Model: TEAC USB HS-CF Card USB Device
    Partitions: 0
    Status: OK
    Status Info: 0

    Drive: \\\\.\\PHYSICALDRIVE2 -
    Interface type: USB
    Media Type:
    Model: TEAC USB HS-xD/SM USB Device
    Partitions: 0
    Status: OK
    Status Info: 0

    Drive: \\\\.\\PHYSICALDRIVE3 -
    Interface type: USB
    Media Type:
    Model: TEAC USB HS-MS Card USB Device
    Partitions: 0
    Status: OK
    Status Info: 0

    Drive: \\\\.\\PHYSICALDRIVE4 -
    Interface type: USB
    Media Type:
    Model: TEAC USB HS-SD Card USB Device
    Partitions: 0
    Status: OK
    Status Info: 0

    Drive: \\\\.\\PHYSICALDRIVE5 -
    Interface type: USB
    Media Type:
    Model: HP Officejet 6500 E USB Device
    Partitions: 0
    Status: OK
    Status Info: 0

    Partitions
    ---------------

    DeviceID: Disk #0, Partition #0
    PartitionType: Unknown
    Bootable: False
    BootPartition: False
    PrimaryPartition: True
    Size: 47.00MB
    Starting Offset: 32256
    Hidden sectors: 0


    DeviceID: Disk #0, Partition #1
    PartitionType: Installable File System
    Bootable: False
    BootPartition: False
    PrimaryPartition: True
    Size: 15.00GB
    Starting Offset: 50331648
    Hidden sectors: 0


    DeviceID: Disk #0, Partition #2
    PartitionType: Installable File System
    Bootable: True
    BootPartition: True
    PrimaryPartition: True
    Size: 451.00GB
    Starting Offset: 16156459008
    Hidden sectors: 0


    ========== Alternate Data Streams ==========

    @Alternate Data Stream - 97 bytes -> C:\ProgramData\TEMP:1419F1F4
    @Alternate Data Stream - 97 bytes -> C:\ProgramData\TEMP:0C988F7D
    @Alternate Data Stream - 247 bytes -> C:\ProgramData\TEMP:EB333CFC
    @Alternate Data Stream - 246 bytes -> C:\ProgramData\TEMP:57B374AB
    @Alternate Data Stream - 246 bytes -> C:\ProgramData\TEMP:3AF262FC
    @Alternate Data Stream - 245 bytes -> C:\ProgramData\TEMP:9812B773
    @Alternate Data Stream - 242 bytes -> C:\ProgramData\TEMP:E732B44B
    @Alternate Data Stream - 236 bytes -> C:\ProgramData\TEMP:700B9342
    @Alternate Data Stream - 235 bytes -> C:\ProgramData\TEMP:737160C1
    @Alternate Data Stream - 223 bytes -> C:\ProgramData\TEMP:F84B8DB5
    @Alternate Data Stream - 221 bytes -> C:\ProgramData\TEMP:EC855C73
    @Alternate Data Stream - 221 bytes -> C:\ProgramData\TEMP:96AFAB10
    @Alternate Data Stream - 220 bytes -> C:\ProgramData\TEMP:D48500F8
    @Alternate Data Stream - 219 bytes -> C:\ProgramData\TEMP:F7401CCF
    @Alternate Data Stream - 219 bytes -> C:\ProgramData\TEMP:8684F6F0
    @Alternate Data Stream - 213 bytes -> C:\ProgramData\TEMP:AC83EA04
    @Alternate Data Stream - 213 bytes -> C:\ProgramData\TEMP:50636E35
    @Alternate Data Stream - 212 bytes -> C:\ProgramData\TEMP:0AC32449
    @Alternate Data Stream - 211 bytes -> C:\ProgramData\TEMP:E1D6C864
    @Alternate Data Stream - 210 bytes -> C:\ProgramData\TEMP:1A5207FA
    @Alternate Data Stream - 207 bytes -> C:\ProgramData\TEMP:6B55B892
    @Alternate Data Stream - 207 bytes -> C:\ProgramData\TEMP:3D36932D
    @Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:7A632F57
    @Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:46CBC45C
    @Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:E5A9D792
    @Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:28D92DA8
    @Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:E2DDFA62
    @Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:571CCF8E
    @Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:2F6CA973
    @Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:0588E665
    @Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:E4E83517
    @Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:D39B2133
    @Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:B42826C8
    @Alternate Data Stream - 117 bytes -> C:\ProgramData\TEMP:4F31D675
    @Alternate Data Stream - 115 bytes -> C:\ProgramData\TEMP:ECC979BD
    @Alternate Data Stream - 115 bytes -> C:\ProgramData\TEMP:DEE46C4E

    < End of report >

  8. #8
    Member of Team Spybot tashi's Avatar
    Join Date
    Oct 2005
    Location
    USA
    Posts
    30,956

    Default

    Hello moonlightandroses,

    In case you missed it please see the FAQ which includes guidelines for this forum and instructions in post #2 on how to provide the preliminary DDS and aswMBR logs used for analysis.
    http://forums.spybot.info/showthread.php?t=288

    Then start a new topic providing the DDS and aswMBR logs only (in one post) as shown in that sticky with a link back to this thread.

    Best regards.
    Microsoft MVP Reconnect 2018-
    Windows Insider MVP 2016-2018
    Microsoft Consumer Security MVP 2006-2016

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •