'desktop.ini' Infection in Windows PC

zim_professional

New Member
Thread author
Apr 8, 2013
6
I am feeling haunted and insecure of coming back of the threat. As I've tons of important files and softwares stored in my PC. Please help me to sort out this problem.

Gratitudes from Zim
:(
 

Fiery

Level 1
Jan 11, 2011
2,007
Hi Zim and welcome to MalwareTips! :)

I'm Fiery and I would gladly assist you in removing the malware on your computer.

Before we start:
  • Note that the removal process is not immediate. Depending on the severity of your infection, it could take a long time.
  • Malware removal can be dangerous. I cannot guarantee the safety of your system as malware can be unpredictable. It is possible that we might encounter situations where the only recourse is to re-format and re-install your operating system. Therefore, I would advise you to backup all your important files before we start.
  • Please be patient and stay with me until I give you the green lights and inform you that your PC is clean.
  • Some tools may be flagged by your antivirus as harmful. Rest assure that ALL the tools we use are safe, the detections are false positives.
  • The absence of symptoms does not mean your PC is fully disinfected.
  • If you are unclear about the instructions, please stop and ask. Following the steps in the order that I post them in is vital.
  • Lastly, if you have requested help on other sites, that will delay and hinder the removal process. Please only stick to one site.

<hr>

Download Farbar Recovery Scan Tool from the below link:
<ul><li>For 64 bit systems download <a title="External link" href="http://download.bleepingcomputer.com/farbar/FRST64.exe" rel="nofollow external"><>Farbar Recovery Scan Tool x64</></a> and save it to a USB/flash drive.</li>

<li>Plug the flashdrive into the infected PC.</li>

<li>Enter <>System Recovery Options</>.</li>

<>To enter System Recovery Options from the Advanced Boot Options:</>
<ul>
<li>Restart the computer.</li>
<li>As soon as the BIOS is loaded begin tapping the<> F8</> key until Advanced Boot Options appears.</li>
<li>Use the arrow keys to select the <>Repair your computer</> menu item.</li>
<li>Select <>US</> as the keyboard language settings, and then click <>Next</>.</li>
<li>Select the operating system you want to repair, and then click <>Next</>.</li>
<li>Select your user account an click <>Next</>.</li>
</ul>

<li>On the System Recovery Options menu you will get the following options:</span>
<pre>Startup Repair
System Restore
Windows Complete PC Restore
Windows Memory Diagnostic Tool
Command Prompt</pre>
<ol>
<li>Select <>Command Prompt</></li>
<li>In the command window type in <>notepad</> and press <>Enter</>.</li>
<li>The notepad opens. Under File menu select <>Open</>.</li>
<li>Select "Computer" and find your flash drive letter and close the notepad.</li>
<li>In the command window type <><span style="color: #ff0000;">e</span>:\frst64</> and press <>Enter</>
<>Note:</><span style="color: #ff0000;"> Replace letter <>e</> with the drive letter of your flash drive.</span></li>
<li>The tool will start to run.</li>
<li>When the tool opens click <>Yes</> to disclaimer.</li>
<li>Press <>Scan</> button.</li>
<li><>FRST</> will let you know when the scan is complete and has written the <>FRST.txt</> to file, close the message.
<li>Type exit</li>
<li>Please copy and paste FRST.txt in your next reply</li></li>
</ol>
</ul>
 
Last edited by a moderator:

zim_professional

New Member
Thread author
Apr 8, 2013
6
Hi Fiery,

Many Thanks for your kind suggestions. As per tour directions I've executed the process successfully. The very program has generated a log regarding the process. I've attached the log for your kind inspection as well. Please let me know about my system health. I hate to be insecure by some kind of malware.

The Log Generated By ' Farbar Recovery Scan Tool x64 ' :

[/size][/font]
"Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 04-05-2013 02
Ran by SYSTEM on 05-05-2013 17:58:52
Running from G:\
Windows 8 Pro (X64) OS Language: English(US)
Internet Explorer Version 9
Boot Mode: Recovery
The current controlset is ControlSet001
ATTENTION!:=====> FRST is updated to run from normal or Safe mode to produce a full FRST.txt log and an extra Addition.txt log.

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [Trend Micro Client Framework] "C:\Program Files\Trend Micro\UniClient\UiFrmWrk\UIWatchDog.exe" [213856 2012-07-25] (Trend Micro Inc.)
HKLM\...\Run: [Trend Micro Titanium] "C:\Program Files\Trend Micro\Titanium\UIFramework\uiWinMgr.exe" -set Silent "1" SplashURL "" [1374864 2012-07-25] (Trend Micro Inc.)
HKLM\...\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s [13513288 2013-03-29] (Realtek Semiconductor)
HKLM-x32\...\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [115048 2011-09-16] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [253816 2013-03-12] (Oracle Corporation)
HKU\Nazmul Islam Nazim\...\Run: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [x]

==================== Services (Whitelisted) =================

S2 AdvancedSystemCareService6; C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe [465216 2013-01-15] (IObit)
S3 DsRoleSvc; C:\Windows\system32\dsrolesrv.dll [388096 2012-07-25] (Microsoft Corporation)
S2 GPCommonService; C:\Program Files\QUBEE WCM\GPCommonService.exe [90112 2010-05-27] (Green Packet Inc.)
S2 GPCommonService(64); C:\Program Files\QUBEE WCM\GPCommonServicex64.exe [110592 2010-05-31] (Green Packet Inc.)
S2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [471552 2012-07-25] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [15440 2012-07-25] (Microsoft Corporation)
S2 Amsp; "C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe" coreFrameworkHost.exe -m=rb -dt=60000 -ad [x]

==================== Drivers (Whitelisted) ====================

S3 e1cexpress; C:\Windows\system32\DRIVERS\e1c63x64.sys [468240 2013-02-20] (Intel Corporation)
S3 MT7118VU; C:\Windows\system32\DRIVERS\mt7118vu_x64.sys [153600 2010-05-06] (MediaTek Inc.)
S2 MTKWMPROT; C:\Windows\system32\DRIVERS\mtkwmptv_x64.sys [18432 2010-05-06] (MediaTek Inc.)
S2 PfFilter; C:\Program Files (x86)\IObit\Protected Folder\pffilter.sys [38392 2012-11-23] (IObit Information Technology)
S1 tmactmon; C:\Windows\system32\DRIVERS\tmactmon.sys [106000 2012-07-12] (Trend Micro Inc.)
S0 tmcomm; C:\Windows\System32\DRIVERS\tmcomm.sys [173504 2012-07-12] (Trend Micro Inc.)
S0 TMEBC; C:\Windows\System32\DRIVERS\TMEBC64.sys [46392 2012-08-24] (Trend Micro Inc.)
S3 tmeevw; C:\Windows\system32\DRIVERS\tmeevw.sys [98104 2012-08-25] (Trend Micro Inc.)
S0 tmel; C:\Windows\System32\DRIVERS\tmel.sys [34224 2012-07-26] (Trend Micro Inc.)
S1 tmevtmgr; C:\Windows\system32\DRIVERS\tmevtmgr.sys [76672 2012-07-12] (Trend Micro Inc.)
S2 tmusa; C:\Windows\system32\DRIVERS\tmusa.sys [77112 2012-09-10] (Trend Micro Inc.)
S0 SmartDefragDriver; System32\Drivers\SmartDefragDriver.sys [x]
S2 TMAgent;

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-05-05 17:58 - 2013-05-05 17:58 - 00000000 ____D C:\FRST
2013-05-05 17:58 - 2013-05-05 17:58 - 00000000 ____A C:\Recovery.txt
2013-05-05 16:26 - 2013-05-05 16:26 - 00001435 ____A C:\Users\Nazmul Islam Nazim\Desktop\New Text Document.txt
2013-05-05 16:20 - 2013-05-05 16:20 - 00000000 ____D C:\Program Files\Realtek
2013-05-05 16:19 - 2013-03-29 20:42 - 03379272 ____A (Realtek Semiconductor Corp.) C:\Windows\System32\Drivers\RTKVHD64.sys
2013-05-05 16:19 - 2013-03-29 17:04 - 21170176 ____A (Realtek Semiconductor Corp.) C:\Windows\System32\RCoRes64.dat
2013-05-05 16:19 - 2013-03-29 16:52 - 00914992 ____A (Sony Corporation) C:\Windows\System32\SFSS_APO.dll
2013-05-05 16:19 - 2013-03-29 16:10 - 00449481 ____A C:\Windows\System32\Drivers\RTAIODAT.DAT
2013-05-05 16:19 - 2013-03-27 15:57 - 00135240 ____A (Realtek Semiconductor Corp.) C:\Windows\System32\RCoInstII64.dll
2013-05-05 16:19 - 2013-03-26 16:06 - 02797128 ____A (Realtek Semiconductor Corp.) C:\Windows\System32\RtPgEx64.dll
2013-05-05 16:19 - 2013-03-26 16:04 - 02734624 ____A (Fortemedia Corporation) C:\Windows\System32\FMAPO64.dll
2013-05-05 16:19 - 2013-03-26 14:40 - 03693128 ____A (Realtek Semiconductor Corp.) C:\Windows\System32\RtkAPO64.dll
2013-05-05 16:19 - 2013-03-26 13:38 - 01659464 ____A (Realtek Semiconductor Corp.) C:\Windows\System32\RTSnMg64.cpl
2013-05-05 16:19 - 2013-03-25 16:32 - 03180264 ____A C:\Windows\System32\Drivers\rtvienna.dat
2013-05-05 16:19 - 2013-03-23 02:43 - 00208072 ____A (Andrea Electronics Corporation) C:\Windows\System32\AERTAC64.dll
2013-05-05 16:19 - 2013-03-20 12:17 - 09123608 ____A (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioVnA64.dll
2013-05-05 16:19 - 2013-03-20 12:16 - 02102040 ____A (Waves Audio Ltd.) C:\Windows\System32\WavesGUILib64.dll
2013-05-05 16:19 - 2013-03-20 12:16 - 01900312 ____A (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioRealtek264.dll
2013-05-05 16:19 - 2013-03-20 12:16 - 00910104 ____A (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPOShell64.dll
2013-05-05 16:19 - 2013-03-15 18:34 - 04957976 ____A (A-volute) C:\Windows\System32\RTKSMlfx.dll
2013-05-05 16:19 - 2013-03-15 18:33 - 00887640 ____A (A-Volute) C:\Windows\System32\RTKSMSettingsIPC.dll
2013-05-05 16:19 - 2013-03-12 17:16 - 00613448 ____A (Realtek Semiconductor Corp.) C:\Windows\System32\RtDataProc64.dll
2013-05-05 16:19 - 2013-03-08 11:51 - 00904752 ____A (Sony Corporation) C:\Windows\System32\MISS_APO.dll
2013-05-05 16:19 - 2013-02-28 12:10 - 14021912 ____A (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioRealtek64.dll
2013-05-05 16:19 - 2013-02-28 12:10 - 02032408 ____A (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioEQ64.dll
2013-05-05 16:19 - 2013-02-27 04:37 - 00823072 ____A (SRS Labs, Inc.) C:\Windows\System32\slcnt64.dll
2013-05-05 16:19 - 2013-02-27 04:37 - 00633632 ____A (SRS Labs, Inc.) C:\Windows\System32\sltech64.dll
2013-05-05 16:19 - 2013-02-27 04:37 - 00517408 ____A (SRS Labs, Inc.) C:\Windows\System32\sl3apo64.dll
2013-05-05 16:19 - 2013-02-27 04:37 - 00213792 ____A (TODO: <Company name>) C:\Windows\System32\slprp64.dll
2013-05-05 16:19 - 2013-02-21 16:26 - 00858032 ____A (TOSHIBA Corporation) C:\Windows\System32\tossaeapo64.dll
2013-05-05 16:19 - 2013-02-21 16:26 - 00148912 ____A (TOSHIBA Corporation) C:\Windows\System32\toseaeapo64.dll
2013-05-05 16:19 - 2013-02-21 16:25 - 00569256 ____A (TOSHIBA Corporation) C:\Windows\System32\tosasfapo64.dll
2013-05-05 16:19 - 2013-02-20 17:55 - 01284680 ____A (Realtek Semiconductor Corp.) C:\Windows\System32\RTCOM64.dll
2013-05-05 16:19 - 2013-02-19 17:52 - 00991816 ____A (Realtek Semiconductor Corp.) C:\Windows\System32\RtkApi64.dll
2013-05-05 16:19 - 2013-01-17 18:32 - 00719640 ____A (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO5064.dll
2013-05-05 16:19 - 2012-12-12 10:17 - 00395208 ____A (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO30.dll
2013-05-05 16:19 - 2012-10-02 13:41 - 00501192 ____A (DTS) C:\Windows\System32\DTSU2PLFX64.dll
2013-05-05 16:19 - 2012-10-02 13:41 - 00487368 ____A (DTS) C:\Windows\System32\DTSU2PGFX64.dll
2013-05-05 16:19 - 2012-10-02 13:41 - 00415688 ____A (DTS) C:\Windows\System32\DTSU2PREC64.dll
2013-05-05 16:19 - 2012-09-10 19:06 - 00612728 ____A (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO4064.dll
2013-05-05 16:19 - 2012-08-31 18:18 - 07164176 ____A (Dolby Laboratories) C:\Windows\System32\R4EEP64A.dll
2013-05-05 16:19 - 2012-08-31 18:17 - 00434960 ____A (Dolby Laboratories) C:\Windows\System32\R4EED64A.dll
2013-05-05 16:19 - 2012-08-31 18:17 - 00141584 ____A (Dolby Laboratories) C:\Windows\System32\R4EEL64A.dll
2013-05-05 16:19 - 2012-08-31 18:17 - 00124176 ____A (Dolby Laboratories) C:\Windows\System32\R4EEA64A.dll
2013-05-05 16:19 - 2012-08-31 18:17 - 00075024 ____A (Dolby Laboratories) C:\Windows\System32\R4EEG64A.dll
2013-05-05 16:19 - 2012-07-15 20:13 - 00394616 ____A (Waves Audio Ltd.) C:\Windows\System32\MaxxVolumeSDAPO.dll
2013-05-05 16:19 - 2012-06-20 16:26 - 00110592 ____A (Real Sound Lab SIA) C:\Windows\System32\CONEQMSAPOGUILibrary.dll
2013-05-05 16:19 - 2012-03-08 10:47 - 00108640 ____A (Andrea Electronics Corporation) C:\Windows\System32\AERTAR64.dll
2013-05-05 16:19 - 2012-01-30 10:43 - 00836544 ____A (TOSHIBA Corporation) C:\Windows\System32\tadefxapo264.dll
2013-05-05 16:19 - 2012-01-10 09:20 - 00065944 ____A (TOSHIBA CORPORATION.) C:\Windows\System32\tepeqapo64.dll
2013-05-05 16:19 - 2011-12-20 14:32 - 00331880 ____A (Realtek Semiconductor Corp.) C:\Windows\System32\RtlCPAPI64.dll
2013-05-05 16:19 - 2011-11-22 15:28 - 00014952 ____A (Realtek Semiconductor Corp.) C:\Windows\System32\RtkCoLDR64.dll
2013-05-05 16:19 - 2011-09-02 13:21 - 00221024 ____A (Synopsys, Inc.) C:\Windows\System32\SFNHK64.dll
2013-05-05 16:19 - 2011-09-02 13:21 - 00081248 ____A (Synopsys, Inc.) C:\Windows\System32\SFCOM64.dll
2013-05-05 16:19 - 2011-09-02 13:21 - 00078688 ____A (Synopsys, Inc.) C:\Windows\System32\SFAPO64.dll
2013-05-05 16:19 - 2011-08-23 16:00 - 00603984 ____A (Knowles Acoustics ) C:\Windows\System32\KAAPORT64.dll
2013-05-05 16:19 - 2011-05-31 08:42 - 01756264 ____A (DTS) C:\Windows\System32\DTSS2SpeakerDLL64.dll
2013-05-05 16:19 - 2011-05-31 08:42 - 01568360 ____A (DTS) C:\Windows\System32\DTSS2HeadphoneDLL64.dll
2013-05-05 16:19 - 2011-05-31 08:42 - 01486952 ____A (DTS) C:\Windows\System32\DTSBoostDLL64.dll
2013-05-05 16:19 - 2011-05-31 08:42 - 00728680 ____A (DTS) C:\Windows\System32\DTSBassEnhancementDLL64.dll
2013-05-05 16:19 - 2011-05-31 08:42 - 00712296 ____A (DTS) C:\Windows\System32\DTSSymmetryDLL64.dll
2013-05-05 16:19 - 2011-05-31 08:42 - 00693352 ____A (DTS) C:\Windows\System32\DTSVoiceClarityDLL64.dll
2013-05-05 16:19 - 2011-05-31 08:42 - 00491112 ____A (DTS) C:\Windows\System32\DTSNeoPCDLL64.dll
2013-05-05 16:19 - 2011-05-31 08:42 - 00432744 ____A (DTS) C:\Windows\System32\DTSLimiterDLL64.dll
2013-05-05 16:19 - 2011-05-31 08:42 - 00428648 ____A (DTS) C:\Windows\System32\DTSGainCompensatorDLL64.dll
2013-05-05 16:19 - 2011-05-31 08:42 - 00242792 ____A (DTS) C:\Windows\System32\DTSLFXAPO64.dll
2013-05-05 16:19 - 2011-05-31 08:42 - 00242792 ____A (DTS) C:\Windows\System32\DTSGFXAPO64.dll
2013-05-05 16:19 - 2011-05-31 08:42 - 00241768 ____A (DTS) C:\Windows\System32\DTSGFXAPONS64.dll
2013-05-05 16:19 - 2011-03-17 11:17 - 01361336 ____A (TOSHIBA Corporation) C:\Windows\System32\tosade.dll
2013-05-05 16:19 - 2011-03-07 16:11 - 00148416 ____A (TOSHIBA Corporation) C:\Windows\System32\tadefxapo.dll
2013-05-05 16:19 - 2010-11-08 06:31 - 00375128 ____A (Dolby Laboratories, Inc.) C:\Windows\System32\RTEEP64A.dll
2013-05-05 16:19 - 2010-11-08 06:31 - 00310104 ____A (Dolby Laboratories, Inc.) C:\Windows\System32\RP3DHT64.dll
2013-05-05 16:19 - 2010-11-08 06:31 - 00310104 ____A (Dolby Laboratories, Inc.) C:\Windows\System32\RP3DAA64.dll
2013-05-05 16:19 - 2010-11-08 06:31 - 00204120 ____A (Dolby Laboratories, Inc.) C:\Windows\System32\RTEED64A.dll
2013-05-05 16:19 - 2010-11-08 06:31 - 00101208 ____A (Dolby Laboratories, Inc.) C:\Windows\System32\RTEEL64A.dll
2013-05-05 16:19 - 2010-11-08 06:31 - 00078680 ____A (Dolby Laboratories, Inc.) C:\Windows\System32\RTEEG64A.dll
2013-05-05 16:19 - 2010-11-03 17:30 - 00149608 ____A (Realtek Semiconductor Corp.) C:\Windows\System32\RtkCfg64.dll
2013-05-05 16:19 - 2010-09-27 08:34 - 00318808 ____A (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO20.dll
2013-05-05 16:19 - 2010-07-22 15:48 - 00074064 ____A (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2013-05-05 16:19 - 2009-11-24 08:55 - 00518896 ____A (SRS Labs, Inc.) C:\Windows\System32\SRSTSX64.dll
2013-05-05 16:19 - 2009-11-24 08:55 - 00211184 ____A (SRS Labs, Inc.) C:\Windows\System32\SRSTSH64.dll
2013-05-05 16:19 - 2009-11-24 08:55 - 00198896 ____A (SRS Labs, Inc.) C:\Windows\System32\SRSHP64.dll
2013-05-05 16:19 - 2009-11-24 08:55 - 00155888 ____A (SRS Labs, Inc.) C:\Windows\System32\SRSWOW64.dll
2013-05-05 16:13 - 2013-05-05 16:13 - 00283968 ____A C:\Windows\Minidump\050513-13406-01.dmp
2013-05-05 16:13 - 2013-05-05 16:13 - 00000000 ____D C:\Windows\Minidump
2013-05-05 15:39 - 2013-05-05 15:49 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2013-05-05 15:39 - 2013-05-05 15:41 - 01766629 ____A C:\Users\Nazmul Islam Nazim\Downloads\Unconfirmed 277416.crdownload
2013-05-05 15:39 - 2013-05-05 15:39 - 00000000 ____D C:\Users\Nazmul Islam Nazim\Documents\ProcAlyzer Dumps
2013-05-05 15:28 - 2013-05-05 16:20 - 00001645 ____A C:\Windows\setupact.log
2013-05-05 15:28 - 2013-05-05 15:28 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2013-05-05 15:28 - 2013-05-05 15:28 - 00000000 ____A C:\Windows\setuperr.log
2013-05-05 14:54 - 2013-05-05 16:18 - 00002564 ____A C:\Windows\PFRO.log
2013-05-05 14:52 - 2012-07-26 20:18 - 00034224 ____A (Trend Micro Inc.) C:\Windows\System32\Drivers\tmel.sys
2013-05-05 14:39 - 2013-05-05 15:15 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\IDM
2013-05-05 14:39 - 2013-05-05 14:54 - 00000000 ____D C:\Program Files (x86)\Internet Download Manager
2013-05-05 14:39 - 2013-05-05 14:39 - 00000000 ____D C:\ProgramData\IDM
2013-05-05 14:14 - 2013-05-05 14:14 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\SystemRequirementsLab
2013-05-05 14:14 - 2013-05-05 14:14 - 00000000 ____D C:\Program Files (x86)\SystemRequirementsLab
2013-05-05 09:03 - 2013-05-05 09:03 - 00866720 ____A (Oracle Corporation) C:\Windows\SysWOW64\npDeployJava1.dll
2013-05-05 09:03 - 2013-05-05 09:03 - 00788896 ____A (Oracle Corporation) C:\Windows\SysWOW64\deployJava1.dll
2013-05-05 09:03 - 2013-05-05 09:03 - 00263584 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-05-05 09:03 - 2013-05-05 09:03 - 00174496 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-05-05 09:03 - 2013-05-05 09:03 - 00174496 ____A (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-05-05 09:03 - 2013-05-05 09:03 - 00095648 ____A (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-05-05 09:03 - 2013-05-05 09:03 - 00000000 ____D C:\ProgramData\Sun
2013-05-05 09:03 - 2013-05-05 09:03 - 00000000 ____D C:\Program Files (x86)\Java
2013-05-05 08:46 - 2013-05-05 08:47 - 00903072 ____A (Oracle Corporation) C:\Users\Nazmul Islam Nazim\Downloads\chromeinstall-7u21.exe
2013-05-05 08:36 - 2013-05-05 16:41 - 05663240 ____A C:\Windows\SysWOW64\wmm_cur.log
2013-05-05 07:35 - 2013-05-05 14:32 - 00000000 ____D C:\Users\Public\Documents\TrendMicro
2013-05-05 07:35 - 2013-05-05 07:35 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Local\Trend Micro
2013-05-05 07:34 - 2013-05-05 07:34 - 00001445 ____A C:\Users\Nazmul Islam Nazim\Desktop\Trend Micro Titanium Internet Security.lnk
2013-05-05 07:34 - 2013-05-05 07:34 - 00000059 ____A C:\Windows\System32\SupportTool.exe.bat
2013-05-05 07:34 - 2012-09-10 21:06 - 00077112 ____A (Trend Micro Inc.) C:\Windows\System32\Drivers\tmusa.sys
2013-05-05 07:34 - 2012-08-25 05:16 - 00098104 ____A (Trend Micro Inc.) C:\Windows\System32\Drivers\tmeevw.sys
2013-05-05 07:34 - 2012-08-24 05:07 - 00046392 ____A (Trend Micro Inc.) C:\Windows\System32\Drivers\TMEBC64.sys
2013-05-05 07:34 - 2012-07-12 02:29 - 00173504 ____A (Trend Micro Inc.) C:\Windows\System32\Drivers\tmcomm.sys
2013-05-05 07:34 - 2012-07-12 02:29 - 00106000 ____A (Trend Micro Inc.) C:\Windows\System32\Drivers\tmactmon.sys
2013-05-05 07:34 - 2012-07-12 02:29 - 00076672 ____A (Trend Micro Inc.) C:\Windows\System32\Drivers\tmevtmgr.sys
2013-05-05 07:33 - 2013-05-05 07:35 - 00000000 ____D C:\ProgramData\Trend Micro
2013-05-05 07:33 - 2013-05-05 07:33 - 00000036 ____A C:\Users\Nazmul Islam Nazim\AppData\Local\housecall.guid.cache
2013-05-05 07:33 - 2013-05-05 07:33 - 00000000 ____D C:\Program Files\Trend Micro
2013-05-05 07:27 - 2013-05-05 07:27 - 00181476 ____A C:\ProgramData\1367766892.bdinstall.bin
2013-05-05 07:18 - 2013-05-05 14:09 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy.BackupBySpybotPortable
2013-05-05 07:15 - 2013-05-05 07:15 - 00000167 ____A C:\Windows\System32\netcfg-29898015.txt
2013-05-05 07:09 - 2013-05-05 14:54 - 00000000 ____D C:\Program Files (x86)\Trend Micro
2013-05-05 06:47 - 2013-05-05 06:47 - 00001108 ____A C:\Windows\System32\netcfg-28219343.txt
2013-05-04 20:38 - 2013-01-15 17:49 - 00026432 ____A (IObit) C:\Windows\System32\RegistryDefragBootTime.exe
2013-05-04 20:36 - 2013-05-04 20:36 - 00000117 ____A C:\Windows\System32\netcfg-3110734.txt
2013-05-04 20:35 - 2013-05-04 20:36 - 00000117 ____A C:\Windows\System32\netcfg-3110578.txt
2013-05-04 20:34 - 2013-05-04 20:34 - 00001170 ___AH C:\Users\Public\Desktop\Smart Defrag 2.lnk
2013-05-04 20:34 - 2010-11-26 17:02 - 00017720 ____A C:\Windows\System32\Drivers\SmartDefragDriver.sys
2013-05-04 19:58 - 2013-05-04 19:58 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\Malwarebytes
2013-05-04 19:58 - 2013-05-04 19:58 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-05-04 19:45 - 2013-05-04 19:45 - 00000117 ____A C:\Windows\System32\netcfg-96609.txt
2013-05-04 19:45 - 2013-05-04 19:45 - 00000117 ____A C:\Windows\System32\netcfg-93656.txt
2013-05-04 19:42 - 2013-05-04 19:42 - 00000117 ____A C:\Windows\System32\netcfg-2699156.txt
2013-05-04 19:42 - 2013-05-04 19:42 - 00000117 ____A C:\Windows\System32\netcfg-2699125.txt
2013-05-04 19:29 - 2013-05-04 19:29 - 00002255 ___AH C:\Users\Public\Desktop\Google Chrome.lnk
2013-05-04 19:27 - 2013-05-04 19:27 - 00000696 ____A C:\Users\Public\Desktop\CCleaner.lnk
2013-05-04 19:04 - 2013-05-04 19:04 - 00000748 ____A C:\Users\Public\Desktop\Mozilla Firefox.lnk
2013-05-04 19:04 - 2013-05-04 19:04 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\Mozilla
2013-05-04 19:04 - 2013-05-04 19:04 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Local\Mozilla
2013-05-04 19:02 - 2013-05-05 16:56 - 00000930 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-05-04 19:02 - 2013-05-05 16:17 - 00000934 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-05-04 19:02 - 2013-05-04 19:29 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Local\Google
2013-05-04 19:02 - 2013-05-04 19:28 - 00000000 ____D C:\Program Files (x86)\Google
2013-05-04 18:59 - 2013-05-04 18:59 - 00000117 ____A C:\Windows\System32\netcfg-87765.txt
2013-05-04 18:59 - 2013-05-04 18:59 - 00000117 ____A C:\Windows\System32\netcfg-84500.txt
2013-05-04 18:56 - 2013-05-04 18:56 - 00000117 ____A C:\Windows\System32\netcfg-2507750.txt
2013-05-04 18:56 - 2013-05-04 18:56 - 00000117 ____A C:\Windows\System32\netcfg-2507703.txt
2013-05-04 18:39 - 2013-05-05 15:57 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\DMCache
2013-05-04 18:39 - 2013-05-04 18:39 - 00000000 ____D C:\Users\Nazmul Islam Nazim\Downloads\Video
2013-05-04 18:39 - 2013-05-04 18:39 - 00000000 ____D C:\Users\Nazmul Islam Nazim\Downloads\Compressed
2013-05-04 18:30 - 2013-05-04 18:30 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\Apple Computer
2013-05-04 18:29 - 2013-05-04 20:34 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\IObit
2013-05-04 18:29 - 2013-05-04 18:29 - 00001272 ___AH C:\Users\Public\Desktop\Uninstaller.lnk
2013-05-04 18:29 - 2013-05-04 18:29 - 00001221 ____A C:\Users\Public\Desktop\Advanced SystemCare 6.lnk
2013-05-04 18:29 - 2013-05-04 18:29 - 00000000 ____D C:\ProgramData\{CED89F1A-945F-46EC-B23C-5EAF6D2DB12A}
2013-05-04 18:16 - 2013-05-04 18:16 - 00000117 ____A C:\Windows\System32\netcfg-87375.txt
2013-05-04 18:16 - 2013-05-04 18:16 - 00000117 ____A C:\Windows\System32\netcfg-84328.txt
2013-05-04 18:16 - 2013-05-04 18:16 - 00000117 ____A C:\Windows\System32\netcfg-84281.txt
2013-05-04 18:16 - 2013-05-04 18:16 - 00000117 ____A C:\Windows\System32\netcfg-84171.txt
2013-05-04 18:16 - 2013-05-04 18:16 - 00000117 ____A C:\Windows\System32\netcfg-84125.txt
2013-05-04 18:16 - 2013-05-04 18:16 - 00000117 ____A C:\Windows\System32\netcfg-83984.txt
2013-05-04 18:13 - 2013-05-04 18:13 - 00000117 ____A C:\Windows\System32\netcfg-1394781.txt
2013-05-04 18:13 - 2013-05-04 18:13 - 00000117 ____A C:\Windows\System32\netcfg-1394718.txt
2013-05-04 18:13 - 2013-05-04 18:13 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\WinRAR
2013-05-04 18:13 - 2012-10-18 06:57 - 00106496 ____A (windowsforum.kr) C:\Windows\System32\SLCHook.dll
2013-05-04 18:12 - 2013-05-05 08:13 - 00000000 ____D C:\Program Files\WinRAR
2013-05-04 17:52 - 2013-05-04 17:52 - 00000117 ____A C:\Windows\System32\netcfg-83328.txt
2013-05-04 17:52 - 2013-05-04 17:52 - 00000117 ____A C:\Windows\System32\netcfg-83187.txt
2013-05-04 17:51 - 2013-05-04 17:51 - 00000017 ____A C:\Users\Nazmul Islam Nazim\AppData\Local\resmon.resmoncfg
2013-05-04 17:50 - 2013-05-04 17:50 - 00000117 ____A C:\Windows\System32\netcfg-2894406.txt
2013-05-04 17:50 - 2013-05-04 17:50 - 00000117 ____A C:\Windows\System32\netcfg-2894359.txt
2013-05-04 17:49 - 2013-05-04 17:49 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\Garmin
2013-05-04 17:49 - 2013-05-04 17:49 - 00000000 ____D C:\Program Files\DIFX
2013-05-04 17:49 - 2013-05-04 17:49 - 00000000 ____D C:\Program Files (x86)\Garmin
2013-05-04 17:46 - 2013-05-04 17:46 - 00992028 ____A C:\Windows\SysWOW64\PerfStringBackup.INI
2013-05-04 17:45 - 2013-05-04 17:45 - 00000000 ____D C:\Windows\SysWOW64\BestPractices
2013-05-04 17:45 - 2013-05-04 17:45 - 00000000 ____D C:\Windows\System32\BestPractices
2013-05-04 17:45 - 2013-05-04 17:45 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2013-05-04 17:45 - 2013-05-04 17:45 - 00000000 ____D C:\Program Files (x86)\MSBuild
2013-05-04 17:44 - 2013-05-04 17:44 - 00000000 ____D C:\Windows\ADAM
2013-05-04 17:44 - 2013-05-04 17:44 - 00000000 ____D C:\Program Files\Reference Assemblies
2013-05-04 17:44 - 2013-05-04 17:44 - 00000000 ____D C:\Program Files\MSBuild
2013-05-04 17:44 - 2013-05-04 17:44 - 00000000 ____D C:\inetpub
2013-05-04 17:39 - 2013-05-04 19:28 - 00000000 ____D C:\Windows\Panther
2013-05-04 17:38 - 2013-05-04 17:38 - 00000000 ____D C:\Users\Public\Documents\Stardock
2013-05-04 17:37 - 2013-05-04 17:37 - 00000000 ____D C:\ProgramData\Package Cache
2013-05-04 17:33 - 2013-05-05 16:09 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\vlc
2013-05-04 17:33 - 2013-05-04 17:33 - 00000638 ___AH C:\Users\Public\Desktop\VLC media player.lnk
2013-05-04 17:23 - 2012-07-05 18:02 - 01166440 ____A (Microsoft Corporation) C:\Windows\System32\PresentationNative_v0300.dll
2013-05-04 17:23 - 2012-07-05 18:02 - 00778856 ____A (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll
2013-05-04 17:23 - 2012-07-05 18:02 - 00124040 ____A (Microsoft Corporation) C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll
2013-05-04 17:23 - 2012-07-05 18:02 - 00102528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-05-04 17:23 - 2012-07-05 18:02 - 00035400 ____A (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2013-05-04 17:23 - 2012-07-05 18:02 - 00035400 ____A (Microsoft Corporation) C:\Windows\System32\TsWpfWrp.exe
2013-05-04 17:15 - 2013-05-04 17:15 - 00000000 ____D C:\ProgramData\ShellIcons
2013-05-04 17:04 - 2013-05-04 17:04 - 00000117 ____A C:\Windows\System32\netcfg-126890.txt
2013-05-04 17:04 - 2013-05-04 17:04 - 00000117 ____A C:\Windows\System32\netcfg-126843.txt
2013-05-04 17:04 - 2013-05-04 17:04 - 00000117 ____A C:\Windows\System32\netcfg-126781.txt
2013-05-04 17:04 - 2013-05-04 17:04 - 00000117 ____A C:\Windows\System32\netcfg-123734.txt
2013-05-04 17:04 - 2013-05-04 17:04 - 00000117 ____A C:\Windows\System32\netcfg-123671.txt
2013-05-04 17:04 - 2013-05-04 17:04 - 00000117 ____A C:\Windows\System32\netcfg-123468.txt
2013-05-04 17:03 - 2013-05-04 17:03 - 00016246 ____A C:\Windows\System32\results.xml
2013-05-04 17:03 - 2013-05-04 17:03 - 00000385 ____A C:\Users\Nazmul Islam Nazim\AppData\Roaminguser_gensett.xml
2013-05-04 17:01 - 2013-05-04 17:01 - 00000117 ____A C:\Windows\System32\netcfg-1185765.txt
2013-05-04 17:01 - 2013-05-04 17:01 - 00000117 ____A C:\Windows\System32\netcfg-1185734.txt
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\2C0A
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0C0A
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0C04
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0816
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0804
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0424
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\041F
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\041E
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\041D
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\041B
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0419
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0416
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0415
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0414
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0413
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0412
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0411
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0410
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\040E
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\040D
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\040C
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\040B
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\040A
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0408
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0407
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0406
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0405
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0404
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0401
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Program Files (x86)\Renesas Electronics
2013-05-04 17:00 - 2013-05-05 16:20 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2013-05-04 17:00 - 2013-05-04 17:01 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-05-04 17:00 - 2013-05-04 17:00 - 00000000 ____D C:\Program Files (x86)\Realtek
2013-05-04 17:00 - 2013-01-16 15:02 - 02079816 ____A (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2013-05-04 16:59 - 2013-05-04 16:59 - 00000000 ____D C:\ProgramData\Intel
2013-05-04 16:59 - 2012-05-15 06:13 - 00144896 ____A (Intel Corporation) C:\Windows\System32\IntelOpenCL64.dll
2013-05-04 16:59 - 2012-05-15 06:13 - 00020992 ____A (Khronos Group) C:\Windows\System32\OpenCL.dll
2013-05-04 16:59 - 2012-05-15 05:20 - 00104448 ____A (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll
2013-05-04 16:59 - 2012-05-15 05:20 - 00017920 ____A (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2013-05-04 16:58 - 2013-05-04 16:58 - 00000291 ____A C:\Windows\System32\netcfg-986187.txt
2013-05-04 16:58 - 2013-02-06 16:17 - 00544568 ____A (Intel Corporation) C:\Windows\System32\PROUnstl.exe
2013-05-04 16:58 - 2006-01-12 14:52 - 00001904 ____N C:\Windows\System32\SetupBD.din
2013-05-04 16:56 - 2013-05-04 16:59 - 00000000 ____D C:\Program Files (x86)\Intel
2013-05-04 16:56 - 2013-02-27 14:37 - 00053248 ____A (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll
2013-05-04 16:55 - 2013-05-04 16:55 - 00000000 ____D C:\Intel
2013-05-04 16:52 - 2013-05-04 16:52 - 01642069 ____A C:\ProgramData\1367715012.bdinstall.bin
2013-05-04 16:52 - 2013-05-04 16:52 - 00000385 ____A C:\Windows\System32\user_gensett.xml
2013-05-04 16:52 - 2013-05-04 16:52 - 00000251 ____A C:\Windows\System32\netcfg-615343.txt
2013-05-04 16:52 - 2013-05-04 16:52 - 00000117 ____A C:\Windows\System32\netcfg-620859.txt
2013-05-04 16:52 - 2013-05-04 16:52 - 00000117 ____A C:\Windows\System32\netcfg-620828.txt
2013-05-04 16:52 - 2013-05-04 16:52 - 00000117 ____A C:\Windows\System32\netcfg-620781.txt
2013-05-04 16:52 - 2013-05-04 16:52 - 00000117 ____A C:\Windows\System32\netcfg-617734.txt
2013-05-04 16:52 - 2013-05-04 16:52 - 00000117 ____A C:\Windows\System32\netcfg-617515.txt
2013-05-04 16:52 - 2013-05-04 16:52 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_avchv_01009.Wdf
2013-05-04 16:51 - 2013-05-05 08:36 - 06291512 ____A C:\Windows\SysWOW64\wmm_old.log
2013-05-04 16:51 - 2013-05-04 16:52 - 00000000 ____D C:\Users\Nazmul Islam Nazim\Documents\Qubee Broadband
2013-05-04 16:51 - 2013-05-04 16:51 - 00001710 ____A C:\Users\Public\Desktop\QUBEE WCM.lnk
2013-05-04 16:51 - 2013-05-04 16:51 - 00001108 ____A C:\Windows\System32\netcfg-590406.txt
2013-05-04 16:51 - 2013-05-04 16:51 - 00001088 ____A C:\Windows\System32\netcfg-581796.txt
2013-05-04 16:51 - 2013-05-04 16:51 - 00000000 ____D C:\Users\Nazmul Islam Nazim\Documents\Qubee Broadband Update
2013-05-04 16:51 - 2013-05-04 16:51 - 00000000 ____D C:\ProgramData\BDLogging
2013-05-04 16:51 - 2010-05-06 10:27 - 01886144 ____A C:\Windows\System32\Drivers\mt7118u.bin
2013-05-04 16:51 - 2010-05-06 10:27 - 00018432 ____A (MediaTek Inc.) C:\Windows\System32\Drivers\mtkwmptv_x64.sys
2013-05-04 16:51 - 2009-07-15 00:21 - 01721576 ____A (Microsoft Corporation) C:\Windows\System32\WdfCoInstaller01009.dll
2013-05-04 16:51 - 2007-04-11 10:11 - 00511328 ____A (Microsoft Corporation) C:\Windows\capicom.dll
2013-05-04 16:50 - 2013-05-05 16:41 - 00000000 ____D C:\Program Files\QUBEE WCM
2013-05-04 16:50 - 2013-05-04 16:50 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\QuickScan
2013-05-04 16:50 - 2010-05-06 10:27 - 00153600 ____A (MediaTek Inc.) C:\Windows\System32\Drivers\mt7118vu_x64.sys
2013-05-04 16:47 - 2013-05-04 20:34 - 00000000 ____D C:\Program Files (x86)\IObit
2013-05-04 16:47 - 2013-05-04 18:34 - 00000000 ____D C:\ProgramData\IObit
2013-05-04 16:47 - 2013-05-04 16:47 - 00001204 ____A C:\Users\Public\Desktop\Protected Folder.lnk
2013-05-04 16:44 - 2013-05-04 16:44 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\Adobe
2013-05-04 16:44 - 2013-05-04 16:44 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Local\VirtualStore
2013-05-04 16:43 - 2013-05-05 16:31 - 01779434 ____A C:\Windows\WindowsUpdate.log
2013-05-04 16:43 - 2013-05-04 20:37 - 00000000 ____D C:\users\Nazmul Islam Nazim
2013-05-04 16:43 - 2013-05-04 16:44 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Local\Packages
2013-05-04 16:43 - 2013-05-04 16:44 - 00000000 ____D C:\ProgramData\PRICache
2013-05-04 16:43 - 2013-05-04 16:43 - 00001133 ____A C:\Windows\System32\netcfg-89171.txt
2013-05-04 16:43 - 2013-05-04 16:43 - 00000020 ___SH C:\Users\Nazmul Islam Nazim\ntuser.ini
2013-05-04 16:43 - 2013-05-04 16:43 - 00000000 ____D C:\Windows\CSC
2013-05-04 16:42 - 2013-05-05 17:42 - 00000000 __SHD C:\Recovery
2013-05-04 16:40 - 2013-05-05 16:13 - 349324101 ____A C:\Windows\MEMORY.DMP
2013-05-04 16:40 - 2013-05-04 16:40 - 00001134 ____A C:\Windows\System32\netcfg-43843.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000185 ____A C:\Windows\System32\netcfg-43609.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000164 ____A C:\Windows\System32\netcfg-42000.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000161 ____A C:\Windows\System32\netcfg-43312.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000160 ____A C:\Windows\System32\netcfg-43109.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000160 ____A C:\Windows\System32\netcfg-42734.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000160 ____A C:\Windows\System32\netcfg-41390.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000159 ____A C:\Windows\System32\netcfg-42531.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000157 ____A C:\Windows\System32\netcfg-42906.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000157 ____A C:\Windows\System32\netcfg-41734.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000150 ____A C:\Windows\System32\netcfg-42218.txt
2013-04-30 09:21 - 2013-04-05 03:32 - 00166576 ____A (Tonec Inc.) C:\Windows\System32\Drivers\idmwfp.sys

==================== One Month Modified Files and Folders =======

2013-05-05 17:58 - 2013-05-05 17:58 - 00000000 ____D C:\FRST
2013-05-05 17:58 - 2013-05-05 17:58 - 00000000 ____A C:\Recovery.txt
2013-05-05 17:42 - 2013-05-04 16:42 - 00000000 __SHD C:\Recovery
2013-05-05 16:56 - 2013-05-04 19:02 - 00000930 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-05-05 16:56 - 2012-07-25 23:22 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2013-05-05 16:41 - 2013-05-05 08:36 - 05663240 ____A C:\Windows\SysWOW64\wmm_cur.log
2013-05-05 16:41 - 2013-05-04 16:50 - 00000000 ____D C:\Program Files\QUBEE WCM
2013-05-05 16:40 - 2012-07-25 23:28 - 01018040 ____A C:\Windows\System32\PerfStringBackup.INI
2013-05-05 16:37 - 2012-07-25 21:26 - 00262144 __ASH C:\Windows\System32\config\ELAM
2013-05-05 16:31 - 2013-05-04 16:43 - 01779434 ____A C:\Windows\WindowsUpdate.log
2013-05-05 16:26 - 2013-05-05 16:26 - 00001435 ____A C:\Users\Nazmul Islam Nazim\Desktop\New Text Document.txt
2013-05-05 16:20 - 2013-05-05 16:20 - 00000000 ____D C:\Program Files\Realtek
2013-05-05 16:20 - 2013-05-05 15:28 - 00001645 ____A C:\Windows\setupact.log
2013-05-05 16:20 - 2013-05-04 17:00 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2013-05-05 16:18 - 2013-05-05 14:54 - 00002564 ____A C:\Windows\PFRO.log
2013-05-05 16:17 - 2013-05-04 19:02 - 00000934 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-05-05 16:13 - 2013-05-05 16:13 - 00283968 ____A C:\Windows\Minidump\050513-13406-01.dmp
2013-05-05 16:13 - 2013-05-05 16:13 - 00000000 ____D C:\Windows\Minidump
2013-05-05 16:13 - 2013-05-04 16:40 - 349324101 ____A C:\Windows\MEMORY.DMP
2013-05-05 16:12 - 2013-05-04 18:39 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\DMCache
2013-05-05 16:09 - 2013-05-04 17:33 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\vlc
2013-05-05 16:00 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\System32\sru
2013-05-05 15:49 - 2013-05-05 15:39 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2013-05-05 15:41 - 2013-05-05 15:39 - 01766629 ____A C:\Users\Nazmul Islam Nazim\Downloads\Unconfirmed 277416.crdownload
2013-05-05 15:39 - 2013-05-05 15:39 - 00000000 ____D C:\Users\Nazmul Islam Nazim\Documents\ProcAlyzer Dumps
2013-05-05 15:30 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\AUInstallAgent
2013-05-05 15:28 - 2013-05-05 15:28 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2013-05-05 15:28 - 2013-05-05 15:28 - 00000000 ____A C:\Windows\setuperr.log
2013-05-05 15:15 - 2013-05-05 14:39 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\IDM
2013-05-05 14:54 - 2013-05-05 14:39 - 00000000 ____D C:\Program Files (x86)\Internet Download Manager
2013-05-05 14:54 - 2013-05-05 07:09 - 00000000 ____D C:\Program Files (x86)\Trend Micro
2013-05-05 14:54 - 2012-07-25 21:26 - 00262144 __ASH C:\Windows\System32\config\BBI
2013-05-05 14:39 - 2013-05-05 14:39 - 00000000 ____D C:\ProgramData\IDM
2013-05-05 14:32 - 2013-05-05 07:35 - 00000000 ____D C:\Users\Public\Documents\TrendMicro
2013-05-05 14:14 - 2013-05-05 14:14 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\SystemRequirementsLab
2013-05-05 14:14 - 2013-05-05 14:14 - 00000000 ____D C:\Program Files (x86)\SystemRequirementsLab
2013-05-05 14:09 - 2013-05-05 07:18 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy.BackupBySpybotPortable
2013-05-05 09:03 - 2013-05-05 09:03 - 00866720 ____A (Oracle Corporation) C:\Windows\SysWOW64\npDeployJava1.dll
2013-05-05 09:03 - 2013-05-05 09:03 - 00788896 ____A (Oracle Corporation) C:\Windows\SysWOW64\deployJava1.dll
2013-05-05 09:03 - 2013-05-05 09:03 - 00263584 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-05-05 09:03 - 2013-05-05 09:03 - 00174496 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-05-05 09:03 - 2013-05-05 09:03 - 00174496 ____A (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-05-05 09:03 - 2013-05-05 09:03 - 00095648 ____A (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-05-05 09:03 - 2013-05-05 09:03 - 00000000 ____D C:\ProgramData\Sun
2013-05-05 09:03 - 2013-05-05 09:03 - 00000000 ____D C:\Program Files (x86)\Java
2013-05-05 08:47 - 2013-05-05 08:46 - 00903072 ____A (Oracle Corporation) C:\Users\Nazmul Islam Nazim\Downloads\chromeinstall-7u21.exe
2013-05-05 08:36 - 2013-05-04 16:51 - 06291512 ____A C:\Windows\SysWOW64\wmm_old.log
2013-05-05 08:13 - 2013-05-04 18:12 - 00000000 ____D C:\Program Files\WinRAR
2013-05-05 07:35 - 2013-05-05 07:35 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Local\Trend Micro
2013-05-05 07:35 - 2013-05-05 07:33 - 00000000 ____D C:\ProgramData\Trend Micro
2013-05-05 07:34 - 2013-05-05 07:34 - 00001445 ____A C:\Users\Nazmul Islam Nazim\Desktop\Trend Micro Titanium Internet Security.lnk
2013-05-05 07:34 - 2013-05-05 07:34 - 00000059 ____A C:\Windows\System32\SupportTool.exe.bat
2013-05-05 07:34 - 2012-07-26 00:12 - 00000000 ___HD C:\Windows\ELAMBKUP
2013-05-05 07:33 - 2013-05-05 07:33 - 00000036 ____A C:\Users\Nazmul Islam Nazim\AppData\Local\housecall.guid.cache
2013-05-05 07:33 - 2013-05-05 07:33 - 00000000 ____D C:\Program Files\Trend Micro
2013-05-05 07:27 - 2013-05-05 07:27 - 00181476 ____A C:\ProgramData\1367766892.bdinstall.bin
2013-05-05 07:15 - 2013-05-05 07:15 - 00000167 ____A C:\Windows\System32\netcfg-29898015.txt
2013-05-05 06:47 - 2013-05-05 06:47 - 00001108 ____A C:\Windows\System32\netcfg-28219343.txt
2013-05-04 20:37 - 2013-05-04 16:43 - 00000000 ____D C:\users\Nazmul Islam Nazim
2013-05-04 20:36 - 2013-05-04 20:36 - 00000117 ____A C:\Windows\System32\netcfg-3110734.txt
2013-05-04 20:36 - 2013-05-04 20:35 - 00000117 ____A C:\Windows\System32\netcfg-3110578.txt
2013-05-04 20:34 - 2013-05-04 20:34 - 00001170 ___AH C:\Users\Public\Desktop\Smart Defrag 2.lnk
2013-05-04 20:34 - 2013-05-04 18:29 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\IObit
2013-05-04 20:34 - 2013-05-04 16:47 - 00000000 ____D C:\Program Files (x86)\IObit
2013-05-04 19:58 - 2013-05-04 19:58 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\Malwarebytes
2013-05-04 19:58 - 2013-05-04 19:58 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-05-04 19:45 - 2013-05-04 19:45 - 00000117 ____A C:\Windows\System32\netcfg-96609.txt
2013-05-04 19:45 - 2013-05-04 19:45 - 00000117 ____A C:\Windows\System32\netcfg-93656.txt
2013-05-04 19:44 - 2012-07-25 23:19 - 00281176 ____A C:\Windows\System32\FNTCACHE.DAT
2013-05-04 19:42 - 2013-05-04 19:42 - 00000117 ____A C:\Windows\System32\netcfg-2699156.txt
2013-05-04 19:42 - 2013-05-04 19:42 - 00000117 ____A C:\Windows\System32\netcfg-2699125.txt
2013-05-04 19:29 - 2013-05-04 19:29 - 00002255 ___AH C:\Users\Public\Desktop\Google Chrome.lnk
2013-05-04 19:29 - 2013-05-04 19:02 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Local\Google
2013-05-04 19:28 - 2013-05-04 19:02 - 00000000 ____D C:\Program Files (x86)\Google
2013-05-04 19:28 - 2013-05-04 17:39 - 00000000 ____D C:\Windows\Panther
2013-05-04 19:27 - 2013-05-04 19:27 - 00000696 ____A C:\Users\Public\Desktop\CCleaner.lnk
2013-05-04 19:04 - 2013-05-04 19:04 - 00000748 ____A C:\Users\Public\Desktop\Mozilla Firefox.lnk
2013-05-04 19:04 - 2013-05-04 19:04 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\Mozilla
2013-05-04 19:04 - 2013-05-04 19:04 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Local\Mozilla
2013-05-04 18:59 - 2013-05-04 18:59 - 00000117 ____A C:\Windows\System32\netcfg-87765.txt
2013-05-04 18:59 - 2013-05-04 18:59 - 00000117 ____A C:\Windows\System32\netcfg-84500.txt
2013-05-04 18:56 - 2013-05-04 18:56 - 00000117 ____A C:\Windows\System32\netcfg-2507750.txt
2013-05-04 18:56 - 2013-05-04 18:56 - 00000117 ____A C:\Windows\System32\netcfg-2507703.txt
2013-05-04 18:39 - 2013-05-04 18:39 - 00000000 ____D C:\Users\Nazmul Islam Nazim\Downloads\Video
2013-05-04 18:39 - 2013-05-04 18:39 - 00000000 ____D C:\Users\Nazmul Islam Nazim\Downloads\Compressed
2013-05-04 18:34 - 2013-05-04 16:47 - 00000000 ____D C:\ProgramData\IObit
2013-05-04 18:30 - 2013-05-04 18:30 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\Apple Computer
2013-05-04 18:29 - 2013-05-04 18:29 - 00001272 ___AH C:\Users\Public\Desktop\Uninstaller.lnk
2013-05-04 18:29 - 2013-05-04 18:29 - 00001221 ____A C:\Users\Public\Desktop\Advanced SystemCare 6.lnk
2013-05-04 18:29 - 2013-05-04 18:29 - 00000000 ____D C:\ProgramData\{CED89F1A-945F-46EC-B23C-5EAF6D2DB12A}
2013-05-04 18:16 - 2013-05-04 18:16 - 00000117 ____A C:\Windows\System32\netcfg-87375.txt
2013-05-04 18:16 - 2013-05-04 18:16 - 00000117 ____A C:\Windows\System32\netcfg-84328.txt
2013-05-04 18:16 - 2013-05-04 18:16 - 00000117 ____A C:\Windows\System32\netcfg-84281.txt
2013-05-04 18:16 - 2013-05-04 18:16 - 00000117 ____A C:\Windows\System32\netcfg-84171.txt
2013-05-04 18:16 - 2013-05-04 18:16 - 00000117 ____A C:\Windows\System32\netcfg-84125.txt
2013-05-04 18:16 - 2013-05-04 18:16 - 00000117 ____A C:\Windows\System32\netcfg-83984.txt
2013-05-04 18:13 - 2013-05-04 18:13 - 00000117 ____A C:\Windows\System32\netcfg-1394781.txt
2013-05-04 18:13 - 2013-05-04 18:13 - 00000117 ____A C:\Windows\System32\netcfg-1394718.txt
2013-05-04 18:13 - 2013-05-04 18:13 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\WinRAR
2013-05-04 17:52 - 2013-05-04 17:52 - 00000117 ____A C:\Windows\System32\netcfg-83328.txt
2013-05-04 17:52 - 2013-05-04 17:52 - 00000117 ____A C:\Windows\System32\netcfg-83187.txt
2013-05-04 17:51 - 2013-05-04 17:51 - 00000017 ____A C:\Users\Nazmul Islam Nazim\AppData\Local\resmon.resmoncfg
2013-05-04 17:50 - 2013-05-04 17:50 - 00000117 ____A C:\Windows\System32\netcfg-2894406.txt
2013-05-04 17:50 - 2013-05-04 17:50 - 00000117 ____A C:\Windows\System32\netcfg-2894359.txt
2013-05-04 17:49 - 2013-05-04 17:49 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\Garmin
2013-05-04 17:49 - 2013-05-04 17:49 - 00000000 ____D C:\Program Files\DIFX
2013-05-04 17:49 - 2013-05-04 17:49 - 00000000 ____D C:\Program Files (x86)\Garmin
2013-05-04 17:46 - 2013-05-04 17:46 - 00992028 ____A C:\Windows\SysWOW64\PerfStringBackup.INI
2013-05-04 17:45 - 2013-05-04 17:45 - 00000000 ____D C:\Windows\SysWOW64\BestPractices
2013-05-04 17:45 - 2013-05-04 17:45 - 00000000 ____D C:\Windows\System32\BestPractices
2013-05-04 17:45 - 2013-05-04 17:45 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2013-05-04 17:45 - 2013-05-04 17:45 - 00000000 ____D C:\Program Files (x86)\MSBuild
2013-05-04 17:45 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\SysWOW64\inetsrv
2013-05-04 17:45 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\System32\inetsrv
2013-05-04 17:44 - 2013-05-04 17:44 - 00000000 ____D C:\Windows\ADAM
2013-05-04 17:44 - 2013-05-04 17:44 - 00000000 ____D C:\Program Files\Reference Assemblies
2013-05-04 17:44 - 2013-05-04 17:44 - 00000000 ____D C:\Program Files\MSBuild
2013-05-04 17:44 - 2013-05-04 17:44 - 00000000 ____D C:\inetpub
2013-05-04 17:39 - 2012-07-26 00:13 - 00262144 ____A C:\Windows\System32\config\BCD-Template
2013-05-04 17:38 - 2013-05-04 17:38 - 00000000 ____D C:\Users\Public\Documents\Stardock
2013-05-04 17:37 - 2013-05-04 17:37 - 00000000 ____D C:\ProgramData\Package Cache
2013-05-04 17:33 - 2013-05-04 17:33 - 00000638 ___AH C:\Users\Public\Desktop\VLC media player.lnk
2013-05-04 17:15 - 2013-05-04 17:15 - 00000000 ____D C:\ProgramData\ShellIcons
2013-05-04 17:04 - 2013-05-04 17:04 - 00000117 ____A C:\Windows\System32\netcfg-126890.txt
2013-05-04 17:04 - 2013-05-04 17:04 - 00000117 ____A C:\Windows\System32\netcfg-126843.txt
2013-05-04 17:04 - 2013-05-04 17:04 - 00000117 ____A C:\Windows\System32\netcfg-126781.txt
2013-05-04 17:04 - 2013-05-04 17:04 - 00000117 ____A C:\Windows\System32\netcfg-123734.txt
2013-05-04 17:04 - 2013-05-04 17:04 - 00000117 ____A C:\Windows\System32\netcfg-123671.txt
2013-05-04 17:04 - 2013-05-04 17:04 - 00000117 ____A C:\Windows\System32\netcfg-123468.txt
2013-05-04 17:03 - 2013-05-04 17:03 - 00016246 ____A C:\Windows\System32\results.xml
2013-05-04 17:03 - 2013-05-04 17:03 - 00000385 ____A C:\Users\Nazmul Islam Nazim\AppData\Roaminguser_gensett.xml
2013-05-04 17:01 - 2013-05-04 17:01 - 00000117 ____A C:\Windows\System32\netcfg-1185765.txt
2013-05-04 17:01 - 2013-05-04 17:01 - 00000117 ____A C:\Windows\System32\netcfg-1185734.txt
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\2C0A
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0C0A
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0C04
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0816
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0804
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0424
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\041F
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\041E
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\041D
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\041B
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0419
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0416
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0415
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0414
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0413
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0412
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0411
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0410
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\040E
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\040D
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\040C
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\040B
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\040A
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0408
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0407
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0406
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0405
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0404
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0401
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Program Files (x86)\Renesas Electronics
2013-05-04 17:01 - 2013-05-04 17:00 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-05-04 17:01 - 2012-07-25 23:49 - 00000000 ____D C:\Windows\System32\0409
2013-05-04 17:00 - 2013-05-04 17:00 - 00000000 ____D C:\Program Files (x86)\Realtek
2013-05-04 16:59 - 2013-05-04 16:59 - 00000000 ____D C:\ProgramData\Intel
2013-05-04 16:59 - 2013-05-04 16:56 - 00000000 ____D C:\Program Files (x86)\Intel
2013-05-04 16:58 - 2013-05-04 16:58 - 00000291 ____A C:\Windows\System32\netcfg-986187.txt
2013-05-04 16:56 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\System32\restore
2013-05-04 16:55 - 2013-05-04 16:55 - 00000000 ____D C:\Intel
2013-05-04 16:52 - 2013-05-04 16:52 - 01642069 ____A C:\ProgramData\1367715012.bdinstall.bin
2013-05-04 16:52 - 2013-05-04 16:52 - 00000385 ____A C:\Windows\System32\user_gensett.xml
2013-05-04 16:52 - 2013-05-04 16:52 - 00000251 ____A C:\Windows\System32\netcfg-615343.txt
2013-05-04 16:52 - 2013-05-04 16:52 - 00000117 ____A C:\Windows\System32\netcfg-620859.txt
2013-05-04 16:52 - 2013-05-04 16:52 - 00000117 ____A C:\Windows\System32\netcfg-620828.txt
2013-05-04 16:52 - 2013-05-04 16:52 - 00000117 ____A C:\Windows\System32\netcfg-620781.txt
2013-05-04 16:52 - 2013-05-04 16:52 - 00000117 ____A C:\Windows\System32\netcfg-617734.txt
2013-05-04 16:52 - 2013-05-04 16:52 - 00000117 ____A C:\Windows\System32\netcfg-617515.txt
2013-05-04 16:52 - 2013-05-04 16:52 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_avchv_01009.Wdf
2013-05-04 16:52 - 2013-05-04 16:51 - 00000000 ____D C:\Users\Nazmul Islam Nazim\Documents\Qubee Broadband
2013-05-04 16:51 - 2013-05-04 16:51 - 00001710 ____A C:\Users\Public\Desktop\QUBEE WCM.lnk
2013-05-04 16:51 - 2013-05-04 16:51 - 00001108 ____A C:\Windows\System32\netcfg-590406.txt
2013-05-04 16:51 - 2013-05-04 16:51 - 00001088 ____A C:\Windows\System32\netcfg-581796.txt
2013-05-04 16:51 - 2013-05-04 16:51 - 00000000 ____D C:\Users\Nazmul Islam Nazim\Documents\Qubee Broadband Update
2013-05-04 16:51 - 2013-05-04 16:51 - 00000000 ____D C:\ProgramData\BDLogging
2013-05-04 16:51 - 2012-07-26 00:12 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2013-05-04 16:50 - 2013-05-04 16:50 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\QuickScan
2013-05-04 16:47 - 2013-05-04 16:47 - 00001204 ____A C:\Users\Public\Desktop\Protected Folder.lnk
2013-05-04 16:44 - 2013-05-04 16:44 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\Adobe
2013-05-04 16:44 - 2013-05-04 16:44 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Local\VirtualStore
2013-05-04 16:44 - 2013-05-04 16:43 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Local\Packages
2013-05-04 16:44 - 2013-05-04 16:43 - 00000000 ____D C:\ProgramData\PRICache
2013-05-04 16:44 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\rescache
2013-05-04 16:43 - 2013-05-04 16:43 - 00001133 ____A C:\Windows\System32\netcfg-89171.txt
2013-05-04 16:43 - 2013-05-04 16:43 - 00000020 ___SH C:\Users\Nazmul Islam Nazim\ntuser.ini
2013-05-04 16:43 - 2013-05-04 16:43 - 00000000 ____D C:\Windows\CSC
2013-05-04 16:43 - 2012-07-26 00:12 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
2013-05-04 16:43 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\WinStore
2013-05-04 16:42 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\System32\Recovery
2013-05-04 16:40 - 2013-05-04 16:40 - 00001134 ____A C:\Windows\System32\netcfg-43843.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000185 ____A C:\Windows\System32\netcfg-43609.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000164 ____A C:\Windows\System32\netcfg-42000.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000161 ____A C:\Windows\System32\netcfg-43312.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000160 ____A C:\Windows\System32\netcfg-43109.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000160 ____A C:\Windows\System32\netcfg-42734.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000160 ____A C:\Windows\System32\netcfg-41390.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000159 ____A C:\Windows\System32\netcfg-42531.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000157 ____A C:\Windows\System32\netcfg-42906.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000157 ____A C:\Windows\System32\netcfg-41734.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000150 ____A C:\Windows\System32\netcfg-42218.txt
2013-04-05 03:32 - 2013-04-30 09:21 - 00166576 ____A (Tonec Inc.) C:\Windows\System32\Drivers\idmwfp.sys

==================== Known DLLs (Whitelisted) ================


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe
[2012-07-25 15:55] - [2012-07-25 19:08] - 0516608 ____A (Microsoft Corporation) 93AB226C07A9789B2EC7B41F73602F76

C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe
[2012-07-25 16:00] - [2012-07-25 19:08] - 0030208 ____A (Microsoft Corporation) 57350BEDE3834915B6145B67C71C7BDA

C:\Windows\SysWOW64\svchost.exe
[2012-07-25 16:01] - [2012-07-25 19:20] - 0023040 ____A (Microsoft Corporation) 0A175AF8B65797BD22C11903A8BFEB2D

C:\Windows\System32\services.exe
[2012-07-25 21:26] - [2012-07-25 21:26] - 0410624 ____A (Microsoft Corporation) 754A2CC1F32107EA87CBD305ABE3E618

C:\Windows\System32\User32.dll
[2012-07-25 16:01] - [2012-07-25 19:07] - 1342464 ____A (Microsoft Corporation) 1D08594400EE1B500B93256795FE30AE

C:\Windows\SysWOW64\User32.dll
[2012-07-25 16:02] - [2012-07-25 16:02] - 1126912 ____A (Microsoft Corporation) 8A93F57772FD24959F76A65FF79D282D

C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

==================== EXE ASSOCIATION =====================

HKLM\...\.exe: exefile => OK
HKLM\...\exefile\DefaultIcon: %1 => OK
HKLM\...\exefile\open\command: "%1" %* => OK

==================== Restore Points =========================

Restore point made on: 2013-05-04 16:56:53

==================== Memory info ===========================

Percentage of memory in use: 14%
Total physical RAM: 3996.4 MB
Available physical RAM: 3406.6 MB
Total Pagefile: 3996.4 MB
Available Pagefile: 3412.54 MB
Total Virtual: 8192 MB
Available Virtual: 8191.88 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:70.9 GB) (Free:50.65 GB) NTFS
Drive d: (Entertainment) (Fixed) (Total:244.52 GB) (Free:97.76 GB) NTFS
Drive e: (Software) (Fixed) (Total:100.24 GB) (Free:38.95 GB) NTFS
Drive f: (Work) (Fixed) (Total:50 GB) (Free:47.96 GB) NTFS
Drive g: (NAZIM) (Removable) (Total:7.45 GB) (Free:7.45 GB) FAT32 (Disk=1 Partition=1)
Drive h: () (Fixed) (Total:0.1 GB) (Free:0.03 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS


Disk ### Status Size Free Dyn Gpt
-------- ------------- ------- ------- --- ---
Disk 0 Online 465 GB 0 B *
Disk 1 Online 7650 MB 1024 KB

Partitions of Disk 0:
===============

Disk ID: 45424965

Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Dynamic Data 992 KB 31 KB
Partition 2 Dynamic Data 100 MB 1024 KB
Partition 3 Dynamic Data 70 GB 101 MB
Partition 4 Dynamic Data 394 GB 71 GB

==================================================================================

Disk: 0
Partition 1
Type : 42
Hidden: Yes
Active: No

There is no volume associated with this partition.

=========================================================

Disk: 0
Partition 2
Type : 42
Hidden: Yes
Active: Yes

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 0 H NTFS Simple 100 MB Healthy

=========================================================

Disk: 0
Partition 3
Type : 42
Hidden: Yes
Active: No

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 3 C NTFS Simple 70 GB Healthy

=========================================================

Disk: 0
Partition 4
Type : 42
Hidden: Yes
Active: No

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 2 D Entertainme NTFS Simple 244 GB Healthy

=========================================================

Partitions of Disk 1:
===============

Disk ID: DFD99D64

Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 7648 MB 31 KB
Partition 0 Primary 31 KB 7648 MB

==================================================================================

Disk: 1
Partition 1
Type : 0B
Hidden: No
Active: Yes

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 6 G NAZIM FAT32 Removable 7648 MB Healthy

=========================================================
============================== MBR & Partition Table ==================

====================================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 45424965)
Partition 1: (Not Active) - (Size=993 KB) - (Type=42)
Partition 2: (Active) - (Size=100 MB) - (Type=42)
Partition 3: (Not Active) - (Size=71 GB) - (Type=42)
Partition 4: (Not Active) - (Size=395 GB) - (Type=42)

====================================================================
Disk: 1 (MBR Code: Windows Vista) (Size: 7 GB) (Disk ID: DFD99D64)
Partition 1: (Active) - (Size=7 GB) - (Type=0B)
Partition 2: (Not Active) - (Size=32 KB) - (Type=21)


Last Boot: 2013-05-04 16:40

==================== End Of Log ============================"
 

zim_professional

New Member
Thread author
Apr 8, 2013
6
Hi Fiery,

Here is the log. Please assure me about my system health...................



"Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 04-05-2013 02
Ran by SYSTEM on 05-05-2013 17:58:52
Running from G:\
Windows 8 Pro (X64) OS Language: English(US)
Internet Explorer Version 9
Boot Mode: Recovery
The current controlset is ControlSet001
ATTENTION!:=====> FRST is updated to run from normal or Safe mode to produce a full FRST.txt log and an extra Addition.txt log.

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [Trend Micro Client Framework] "C:\Program Files\Trend Micro\UniClient\UiFrmWrk\UIWatchDog.exe" [213856 2012-07-25] (Trend Micro Inc.)
HKLM\...\Run: [Trend Micro Titanium] "C:\Program Files\Trend Micro\Titanium\UIFramework\uiWinMgr.exe" -set Silent "1" SplashURL "" [1374864 2012-07-25] (Trend Micro Inc.)
HKLM\...\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s [13513288 2013-03-29] (Realtek Semiconductor)
HKLM-x32\...\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [115048 2011-09-16] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [253816 2013-03-12] (Oracle Corporation)
HKU\Nazmul Islam Nazim\...\Run: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [x]

==================== Services (Whitelisted) =================

S2 AdvancedSystemCareService6; C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe [465216 2013-01-15] (IObit)
S3 DsRoleSvc; C:\Windows\system32\dsrolesrv.dll [388096 2012-07-25] (Microsoft Corporation)
S2 GPCommonService; C:\Program Files\QUBEE WCM\GPCommonService.exe [90112 2010-05-27] (Green Packet Inc.)
S2 GPCommonService(64); C:\Program Files\QUBEE WCM\GPCommonServicex64.exe [110592 2010-05-31] (Green Packet Inc.)
S2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [471552 2012-07-25] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [15440 2012-07-25] (Microsoft Corporation)
S2 Amsp; "C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe" coreFrameworkHost.exe -m=rb -dt=60000 -ad [x]

==================== Drivers (Whitelisted) ====================

S3 e1cexpress; C:\Windows\system32\DRIVERS\e1c63x64.sys [468240 2013-02-20] (Intel Corporation)
S3 MT7118VU; C:\Windows\system32\DRIVERS\mt7118vu_x64.sys [153600 2010-05-06] (MediaTek Inc.)
S2 MTKWMPROT; C:\Windows\system32\DRIVERS\mtkwmptv_x64.sys [18432 2010-05-06] (MediaTek Inc.)
S2 PfFilter; C:\Program Files (x86)\IObit\Protected Folder\pffilter.sys [38392 2012-11-23] (IObit Information Technology)
S1 tmactmon; C:\Windows\system32\DRIVERS\tmactmon.sys [106000 2012-07-12] (Trend Micro Inc.)
S0 tmcomm; C:\Windows\System32\DRIVERS\tmcomm.sys [173504 2012-07-12] (Trend Micro Inc.)
S0 TMEBC; C:\Windows\System32\DRIVERS\TMEBC64.sys [46392 2012-08-24] (Trend Micro Inc.)
S3 tmeevw; C:\Windows\system32\DRIVERS\tmeevw.sys [98104 2012-08-25] (Trend Micro Inc.)
S0 tmel; C:\Windows\System32\DRIVERS\tmel.sys [34224 2012-07-26] (Trend Micro Inc.)
S1 tmevtmgr; C:\Windows\system32\DRIVERS\tmevtmgr.sys [76672 2012-07-12] (Trend Micro Inc.)
S2 tmusa; C:\Windows\system32\DRIVERS\tmusa.sys [77112 2012-09-10] (Trend Micro Inc.)
S0 SmartDefragDriver; System32\Drivers\SmartDefragDriver.sys [x]
S2 TMAgent;

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-05-05 17:58 - 2013-05-05 17:58 - 00000000 ____D C:\FRST
2013-05-05 17:58 - 2013-05-05 17:58 - 00000000 ____A C:\Recovery.txt
2013-05-05 16:26 - 2013-05-05 16:26 - 00001435 ____A C:\Users\Nazmul Islam Nazim\Desktop\New Text Document.txt
2013-05-05 16:20 - 2013-05-05 16:20 - 00000000 ____D C:\Program Files\Realtek
2013-05-05 16:19 - 2013-03-29 20:42 - 03379272 ____A (Realtek Semiconductor Corp.) C:\Windows\System32\Drivers\RTKVHD64.sys
2013-05-05 16:19 - 2013-03-29 17:04 - 21170176 ____A (Realtek Semiconductor Corp.) C:\Windows\System32\RCoRes64.dat
2013-05-05 16:19 - 2013-03-29 16:52 - 00914992 ____A (Sony Corporation) C:\Windows\System32\SFSS_APO.dll
2013-05-05 16:19 - 2013-03-29 16:10 - 00449481 ____A C:\Windows\System32\Drivers\RTAIODAT.DAT
2013-05-05 16:19 - 2013-03-27 15:57 - 00135240 ____A (Realtek Semiconductor Corp.) C:\Windows\System32\RCoInstII64.dll
2013-05-05 16:19 - 2013-03-26 16:06 - 02797128 ____A (Realtek Semiconductor Corp.) C:\Windows\System32\RtPgEx64.dll
2013-05-05 16:19 - 2013-03-26 16:04 - 02734624 ____A (Fortemedia Corporation) C:\Windows\System32\FMAPO64.dll
2013-05-05 16:19 - 2013-03-26 14:40 - 03693128 ____A (Realtek Semiconductor Corp.) C:\Windows\System32\RtkAPO64.dll
2013-05-05 16:19 - 2013-03-26 13:38 - 01659464 ____A (Realtek Semiconductor Corp.) C:\Windows\System32\RTSnMg64.cpl
2013-05-05 16:19 - 2013-03-25 16:32 - 03180264 ____A C:\Windows\System32\Drivers\rtvienna.dat
2013-05-05 16:19 - 2013-03-23 02:43 - 00208072 ____A (Andrea Electronics Corporation) C:\Windows\System32\AERTAC64.dll
2013-05-05 16:19 - 2013-03-20 12:17 - 09123608 ____A (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioVnA64.dll
2013-05-05 16:19 - 2013-03-20 12:16 - 02102040 ____A (Waves Audio Ltd.) C:\Windows\System32\WavesGUILib64.dll
2013-05-05 16:19 - 2013-03-20 12:16 - 01900312 ____A (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioRealtek264.dll
2013-05-05 16:19 - 2013-03-20 12:16 - 00910104 ____A (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPOShell64.dll
2013-05-05 16:19 - 2013-03-15 18:34 - 04957976 ____A (A-volute) C:\Windows\System32\RTKSMlfx.dll
2013-05-05 16:19 - 2013-03-15 18:33 - 00887640 ____A (A-Volute) C:\Windows\System32\RTKSMSettingsIPC.dll
2013-05-05 16:19 - 2013-03-12 17:16 - 00613448 ____A (Realtek Semiconductor Corp.) C:\Windows\System32\RtDataProc64.dll
2013-05-05 16:19 - 2013-03-08 11:51 - 00904752 ____A (Sony Corporation) C:\Windows\System32\MISS_APO.dll
2013-05-05 16:19 - 2013-02-28 12:10 - 14021912 ____A (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioRealtek64.dll
2013-05-05 16:19 - 2013-02-28 12:10 - 02032408 ____A (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioEQ64.dll
2013-05-05 16:19 - 2013-02-27 04:37 - 00823072 ____A (SRS Labs, Inc.) C:\Windows\System32\slcnt64.dll
2013-05-05 16:19 - 2013-02-27 04:37 - 00633632 ____A (SRS Labs, Inc.) C:\Windows\System32\sltech64.dll
2013-05-05 16:19 - 2013-02-27 04:37 - 00517408 ____A (SRS Labs, Inc.) C:\Windows\System32\sl3apo64.dll
2013-05-05 16:19 - 2013-02-27 04:37 - 00213792 ____A (TODO: <Company name>) C:\Windows\System32\slprp64.dll
2013-05-05 16:19 - 2013-02-21 16:26 - 00858032 ____A (TOSHIBA Corporation) C:\Windows\System32\tossaeapo64.dll
2013-05-05 16:19 - 2013-02-21 16:26 - 00148912 ____A (TOSHIBA Corporation) C:\Windows\System32\toseaeapo64.dll
2013-05-05 16:19 - 2013-02-21 16:25 - 00569256 ____A (TOSHIBA Corporation) C:\Windows\System32\tosasfapo64.dll
2013-05-05 16:19 - 2013-02-20 17:55 - 01284680 ____A (Realtek Semiconductor Corp.) C:\Windows\System32\RTCOM64.dll
2013-05-05 16:19 - 2013-02-19 17:52 - 00991816 ____A (Realtek Semiconductor Corp.) C:\Windows\System32\RtkApi64.dll
2013-05-05 16:19 - 2013-01-17 18:32 - 00719640 ____A (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO5064.dll
2013-05-05 16:19 - 2012-12-12 10:17 - 00395208 ____A (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO30.dll
2013-05-05 16:19 - 2012-10-02 13:41 - 00501192 ____A (DTS) C:\Windows\System32\DTSU2PLFX64.dll
2013-05-05 16:19 - 2012-10-02 13:41 - 00487368 ____A (DTS) C:\Windows\System32\DTSU2PGFX64.dll
2013-05-05 16:19 - 2012-10-02 13:41 - 00415688 ____A (DTS) C:\Windows\System32\DTSU2PREC64.dll
2013-05-05 16:19 - 2012-09-10 19:06 - 00612728 ____A (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO4064.dll
2013-05-05 16:19 - 2012-08-31 18:18 - 07164176 ____A (Dolby Laboratories) C:\Windows\System32\R4EEP64A.dll
2013-05-05 16:19 - 2012-08-31 18:17 - 00434960 ____A (Dolby Laboratories) C:\Windows\System32\R4EED64A.dll
2013-05-05 16:19 - 2012-08-31 18:17 - 00141584 ____A (Dolby Laboratories) C:\Windows\System32\R4EEL64A.dll
2013-05-05 16:19 - 2012-08-31 18:17 - 00124176 ____A (Dolby Laboratories) C:\Windows\System32\R4EEA64A.dll
2013-05-05 16:19 - 2012-08-31 18:17 - 00075024 ____A (Dolby Laboratories) C:\Windows\System32\R4EEG64A.dll
2013-05-05 16:19 - 2012-07-15 20:13 - 00394616 ____A (Waves Audio Ltd.) C:\Windows\System32\MaxxVolumeSDAPO.dll
2013-05-05 16:19 - 2012-06-20 16:26 - 00110592 ____A (Real Sound Lab SIA) C:\Windows\System32\CONEQMSAPOGUILibrary.dll
2013-05-05 16:19 - 2012-03-08 10:47 - 00108640 ____A (Andrea Electronics Corporation) C:\Windows\System32\AERTAR64.dll
2013-05-05 16:19 - 2012-01-30 10:43 - 00836544 ____A (TOSHIBA Corporation) C:\Windows\System32\tadefxapo264.dll
2013-05-05 16:19 - 2012-01-10 09:20 - 00065944 ____A (TOSHIBA CORPORATION.) C:\Windows\System32\tepeqapo64.dll
2013-05-05 16:19 - 2011-12-20 14:32 - 00331880 ____A (Realtek Semiconductor Corp.) C:\Windows\System32\RtlCPAPI64.dll
2013-05-05 16:19 - 2011-11-22 15:28 - 00014952 ____A (Realtek Semiconductor Corp.) C:\Windows\System32\RtkCoLDR64.dll
2013-05-05 16:19 - 2011-09-02 13:21 - 00221024 ____A (Synopsys, Inc.) C:\Windows\System32\SFNHK64.dll
2013-05-05 16:19 - 2011-09-02 13:21 - 00081248 ____A (Synopsys, Inc.) C:\Windows\System32\SFCOM64.dll
2013-05-05 16:19 - 2011-09-02 13:21 - 00078688 ____A (Synopsys, Inc.) C:\Windows\System32\SFAPO64.dll
2013-05-05 16:19 - 2011-08-23 16:00 - 00603984 ____A (Knowles Acoustics ) C:\Windows\System32\KAAPORT64.dll
2013-05-05 16:19 - 2011-05-31 08:42 - 01756264 ____A (DTS) C:\Windows\System32\DTSS2SpeakerDLL64.dll
2013-05-05 16:19 - 2011-05-31 08:42 - 01568360 ____A (DTS) C:\Windows\System32\DTSS2HeadphoneDLL64.dll
2013-05-05 16:19 - 2011-05-31 08:42 - 01486952 ____A (DTS) C:\Windows\System32\DTSBoostDLL64.dll
2013-05-05 16:19 - 2011-05-31 08:42 - 00728680 ____A (DTS) C:\Windows\System32\DTSBassEnhancementDLL64.dll
2013-05-05 16:19 - 2011-05-31 08:42 - 00712296 ____A (DTS) C:\Windows\System32\DTSSymmetryDLL64.dll
2013-05-05 16:19 - 2011-05-31 08:42 - 00693352 ____A (DTS) C:\Windows\System32\DTSVoiceClarityDLL64.dll
2013-05-05 16:19 - 2011-05-31 08:42 - 00491112 ____A (DTS) C:\Windows\System32\DTSNeoPCDLL64.dll
2013-05-05 16:19 - 2011-05-31 08:42 - 00432744 ____A (DTS) C:\Windows\System32\DTSLimiterDLL64.dll
2013-05-05 16:19 - 2011-05-31 08:42 - 00428648 ____A (DTS) C:\Windows\System32\DTSGainCompensatorDLL64.dll
2013-05-05 16:19 - 2011-05-31 08:42 - 00242792 ____A (DTS) C:\Windows\System32\DTSLFXAPO64.dll
2013-05-05 16:19 - 2011-05-31 08:42 - 00242792 ____A (DTS) C:\Windows\System32\DTSGFXAPO64.dll
2013-05-05 16:19 - 2011-05-31 08:42 - 00241768 ____A (DTS) C:\Windows\System32\DTSGFXAPONS64.dll
2013-05-05 16:19 - 2011-03-17 11:17 - 01361336 ____A (TOSHIBA Corporation) C:\Windows\System32\tosade.dll
2013-05-05 16:19 - 2011-03-07 16:11 - 00148416 ____A (TOSHIBA Corporation) C:\Windows\System32\tadefxapo.dll
2013-05-05 16:19 - 2010-11-08 06:31 - 00375128 ____A (Dolby Laboratories, Inc.) C:\Windows\System32\RTEEP64A.dll
2013-05-05 16:19 - 2010-11-08 06:31 - 00310104 ____A (Dolby Laboratories, Inc.) C:\Windows\System32\RP3DHT64.dll
2013-05-05 16:19 - 2010-11-08 06:31 - 00310104 ____A (Dolby Laboratories, Inc.) C:\Windows\System32\RP3DAA64.dll
2013-05-05 16:19 - 2010-11-08 06:31 - 00204120 ____A (Dolby Laboratories, Inc.) C:\Windows\System32\RTEED64A.dll
2013-05-05 16:19 - 2010-11-08 06:31 - 00101208 ____A (Dolby Laboratories, Inc.) C:\Windows\System32\RTEEL64A.dll
2013-05-05 16:19 - 2010-11-08 06:31 - 00078680 ____A (Dolby Laboratories, Inc.) C:\Windows\System32\RTEEG64A.dll
2013-05-05 16:19 - 2010-11-03 17:30 - 00149608 ____A (Realtek Semiconductor Corp.) C:\Windows\System32\RtkCfg64.dll
2013-05-05 16:19 - 2010-09-27 08:34 - 00318808 ____A (Waves Audio Ltd.) C:\Windows\System32\MaxxAudioAPO20.dll
2013-05-05 16:19 - 2010-07-22 15:48 - 00074064 ____A (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2013-05-05 16:19 - 2009-11-24 08:55 - 00518896 ____A (SRS Labs, Inc.) C:\Windows\System32\SRSTSX64.dll
2013-05-05 16:19 - 2009-11-24 08:55 - 00211184 ____A (SRS Labs, Inc.) C:\Windows\System32\SRSTSH64.dll
2013-05-05 16:19 - 2009-11-24 08:55 - 00198896 ____A (SRS Labs, Inc.) C:\Windows\System32\SRSHP64.dll
2013-05-05 16:19 - 2009-11-24 08:55 - 00155888 ____A (SRS Labs, Inc.) C:\Windows\System32\SRSWOW64.dll
2013-05-05 16:13 - 2013-05-05 16:13 - 00283968 ____A C:\Windows\Minidump\050513-13406-01.dmp
2013-05-05 16:13 - 2013-05-05 16:13 - 00000000 ____D C:\Windows\Minidump
2013-05-05 15:39 - 2013-05-05 15:49 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2013-05-05 15:39 - 2013-05-05 15:41 - 01766629 ____A C:\Users\Nazmul Islam Nazim\Downloads\Unconfirmed 277416.crdownload
2013-05-05 15:39 - 2013-05-05 15:39 - 00000000 ____D C:\Users\Nazmul Islam Nazim\Documents\ProcAlyzer Dumps
2013-05-05 15:28 - 2013-05-05 16:20 - 00001645 ____A C:\Windows\setupact.log
2013-05-05 15:28 - 2013-05-05 15:28 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2013-05-05 15:28 - 2013-05-05 15:28 - 00000000 ____A C:\Windows\setuperr.log
2013-05-05 14:54 - 2013-05-05 16:18 - 00002564 ____A C:\Windows\PFRO.log
2013-05-05 14:52 - 2012-07-26 20:18 - 00034224 ____A (Trend Micro Inc.) C:\Windows\System32\Drivers\tmel.sys
2013-05-05 14:39 - 2013-05-05 15:15 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\IDM
2013-05-05 14:39 - 2013-05-05 14:54 - 00000000 ____D C:\Program Files (x86)\Internet Download Manager
2013-05-05 14:39 - 2013-05-05 14:39 - 00000000 ____D C:\ProgramData\IDM
2013-05-05 14:14 - 2013-05-05 14:14 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\SystemRequirementsLab
2013-05-05 14:14 - 2013-05-05 14:14 - 00000000 ____D C:\Program Files (x86)\SystemRequirementsLab
2013-05-05 09:03 - 2013-05-05 09:03 - 00866720 ____A (Oracle Corporation) C:\Windows\SysWOW64\npDeployJava1.dll
2013-05-05 09:03 - 2013-05-05 09:03 - 00788896 ____A (Oracle Corporation) C:\Windows\SysWOW64\deployJava1.dll
2013-05-05 09:03 - 2013-05-05 09:03 - 00263584 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-05-05 09:03 - 2013-05-05 09:03 - 00174496 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-05-05 09:03 - 2013-05-05 09:03 - 00174496 ____A (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-05-05 09:03 - 2013-05-05 09:03 - 00095648 ____A (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-05-05 09:03 - 2013-05-05 09:03 - 00000000 ____D C:\ProgramData\Sun
2013-05-05 09:03 - 2013-05-05 09:03 - 00000000 ____D C:\Program Files (x86)\Java
2013-05-05 08:46 - 2013-05-05 08:47 - 00903072 ____A (Oracle Corporation) C:\Users\Nazmul Islam Nazim\Downloads\chromeinstall-7u21.exe
2013-05-05 08:36 - 2013-05-05 16:41 - 05663240 ____A C:\Windows\SysWOW64\wmm_cur.log
2013-05-05 07:35 - 2013-05-05 14:32 - 00000000 ____D C:\Users\Public\Documents\TrendMicro
2013-05-05 07:35 - 2013-05-05 07:35 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Local\Trend Micro
2013-05-05 07:34 - 2013-05-05 07:34 - 00001445 ____A C:\Users\Nazmul Islam Nazim\Desktop\Trend Micro Titanium Internet Security.lnk
2013-05-05 07:34 - 2013-05-05 07:34 - 00000059 ____A C:\Windows\System32\SupportTool.exe.bat
2013-05-05 07:34 - 2012-09-10 21:06 - 00077112 ____A (Trend Micro Inc.) C:\Windows\System32\Drivers\tmusa.sys
2013-05-05 07:34 - 2012-08-25 05:16 - 00098104 ____A (Trend Micro Inc.) C:\Windows\System32\Drivers\tmeevw.sys
2013-05-05 07:34 - 2012-08-24 05:07 - 00046392 ____A (Trend Micro Inc.) C:\Windows\System32\Drivers\TMEBC64.sys
2013-05-05 07:34 - 2012-07-12 02:29 - 00173504 ____A (Trend Micro Inc.) C:\Windows\System32\Drivers\tmcomm.sys
2013-05-05 07:34 - 2012-07-12 02:29 - 00106000 ____A (Trend Micro Inc.) C:\Windows\System32\Drivers\tmactmon.sys
2013-05-05 07:34 - 2012-07-12 02:29 - 00076672 ____A (Trend Micro Inc.) C:\Windows\System32\Drivers\tmevtmgr.sys
2013-05-05 07:33 - 2013-05-05 07:35 - 00000000 ____D C:\ProgramData\Trend Micro
2013-05-05 07:33 - 2013-05-05 07:33 - 00000036 ____A C:\Users\Nazmul Islam Nazim\AppData\Local\housecall.guid.cache
2013-05-05 07:33 - 2013-05-05 07:33 - 00000000 ____D C:\Program Files\Trend Micro
2013-05-05 07:27 - 2013-05-05 07:27 - 00181476 ____A C:\ProgramData\1367766892.bdinstall.bin
2013-05-05 07:18 - 2013-05-05 14:09 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy.BackupBySpybotPortable
2013-05-05 07:15 - 2013-05-05 07:15 - 00000167 ____A C:\Windows\System32\netcfg-29898015.txt
2013-05-05 07:09 - 2013-05-05 14:54 - 00000000 ____D C:\Program Files (x86)\Trend Micro
2013-05-05 06:47 - 2013-05-05 06:47 - 00001108 ____A C:\Windows\System32\netcfg-28219343.txt
2013-05-04 20:38 - 2013-01-15 17:49 - 00026432 ____A (IObit) C:\Windows\System32\RegistryDefragBootTime.exe
2013-05-04 20:36 - 2013-05-04 20:36 - 00000117 ____A C:\Windows\System32\netcfg-3110734.txt
2013-05-04 20:35 - 2013-05-04 20:36 - 00000117 ____A C:\Windows\System32\netcfg-3110578.txt
2013-05-04 20:34 - 2013-05-04 20:34 - 00001170 ___AH C:\Users\Public\Desktop\Smart Defrag 2.lnk
2013-05-04 20:34 - 2010-11-26 17:02 - 00017720 ____A C:\Windows\System32\Drivers\SmartDefragDriver.sys
2013-05-04 19:58 - 2013-05-04 19:58 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\Malwarebytes
2013-05-04 19:58 - 2013-05-04 19:58 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-05-04 19:45 - 2013-05-04 19:45 - 00000117 ____A C:\Windows\System32\netcfg-96609.txt
2013-05-04 19:45 - 2013-05-04 19:45 - 00000117 ____A C:\Windows\System32\netcfg-93656.txt
2013-05-04 19:42 - 2013-05-04 19:42 - 00000117 ____A C:\Windows\System32\netcfg-2699156.txt
2013-05-04 19:42 - 2013-05-04 19:42 - 00000117 ____A C:\Windows\System32\netcfg-2699125.txt
2013-05-04 19:29 - 2013-05-04 19:29 - 00002255 ___AH C:\Users\Public\Desktop\Google Chrome.lnk
2013-05-04 19:27 - 2013-05-04 19:27 - 00000696 ____A C:\Users\Public\Desktop\CCleaner.lnk
2013-05-04 19:04 - 2013-05-04 19:04 - 00000748 ____A C:\Users\Public\Desktop\Mozilla Firefox.lnk
2013-05-04 19:04 - 2013-05-04 19:04 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\Mozilla
2013-05-04 19:04 - 2013-05-04 19:04 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Local\Mozilla
2013-05-04 19:02 - 2013-05-05 16:56 - 00000930 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-05-04 19:02 - 2013-05-05 16:17 - 00000934 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-05-04 19:02 - 2013-05-04 19:29 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Local\Google
2013-05-04 19:02 - 2013-05-04 19:28 - 00000000 ____D C:\Program Files (x86)\Google
2013-05-04 18:59 - 2013-05-04 18:59 - 00000117 ____A C:\Windows\System32\netcfg-87765.txt
2013-05-04 18:59 - 2013-05-04 18:59 - 00000117 ____A C:\Windows\System32\netcfg-84500.txt
2013-05-04 18:56 - 2013-05-04 18:56 - 00000117 ____A C:\Windows\System32\netcfg-2507750.txt
2013-05-04 18:56 - 2013-05-04 18:56 - 00000117 ____A C:\Windows\System32\netcfg-2507703.txt
2013-05-04 18:39 - 2013-05-05 15:57 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\DMCache
2013-05-04 18:39 - 2013-05-04 18:39 - 00000000 ____D C:\Users\Nazmul Islam Nazim\Downloads\Video
2013-05-04 18:39 - 2013-05-04 18:39 - 00000000 ____D C:\Users\Nazmul Islam Nazim\Downloads\Compressed
2013-05-04 18:30 - 2013-05-04 18:30 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\Apple Computer
2013-05-04 18:29 - 2013-05-04 20:34 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\IObit
2013-05-04 18:29 - 2013-05-04 18:29 - 00001272 ___AH C:\Users\Public\Desktop\Uninstaller.lnk
2013-05-04 18:29 - 2013-05-04 18:29 - 00001221 ____A C:\Users\Public\Desktop\Advanced SystemCare 6.lnk
2013-05-04 18:29 - 2013-05-04 18:29 - 00000000 ____D C:\ProgramData\{CED89F1A-945F-46EC-B23C-5EAF6D2DB12A}
2013-05-04 18:16 - 2013-05-04 18:16 - 00000117 ____A C:\Windows\System32\netcfg-87375.txt
2013-05-04 18:16 - 2013-05-04 18:16 - 00000117 ____A C:\Windows\System32\netcfg-84328.txt
2013-05-04 18:16 - 2013-05-04 18:16 - 00000117 ____A C:\Windows\System32\netcfg-84281.txt
2013-05-04 18:16 - 2013-05-04 18:16 - 00000117 ____A C:\Windows\System32\netcfg-84171.txt
2013-05-04 18:16 - 2013-05-04 18:16 - 00000117 ____A C:\Windows\System32\netcfg-84125.txt
2013-05-04 18:16 - 2013-05-04 18:16 - 00000117 ____A C:\Windows\System32\netcfg-83984.txt
2013-05-04 18:13 - 2013-05-04 18:13 - 00000117 ____A C:\Windows\System32\netcfg-1394781.txt
2013-05-04 18:13 - 2013-05-04 18:13 - 00000117 ____A C:\Windows\System32\netcfg-1394718.txt
2013-05-04 18:13 - 2013-05-04 18:13 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\WinRAR
2013-05-04 18:13 - 2012-10-18 06:57 - 00106496 ____A (windowsforum.kr) C:\Windows\System32\SLCHook.dll
2013-05-04 18:12 - 2013-05-05 08:13 - 00000000 ____D C:\Program Files\WinRAR
2013-05-04 17:52 - 2013-05-04 17:52 - 00000117 ____A C:\Windows\System32\netcfg-83328.txt
2013-05-04 17:52 - 2013-05-04 17:52 - 00000117 ____A C:\Windows\System32\netcfg-83187.txt
2013-05-04 17:51 - 2013-05-04 17:51 - 00000017 ____A C:\Users\Nazmul Islam Nazim\AppData\Local\resmon.resmoncfg
2013-05-04 17:50 - 2013-05-04 17:50 - 00000117 ____A C:\Windows\System32\netcfg-2894406.txt
2013-05-04 17:50 - 2013-05-04 17:50 - 00000117 ____A C:\Windows\System32\netcfg-2894359.txt
2013-05-04 17:49 - 2013-05-04 17:49 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\Garmin
2013-05-04 17:49 - 2013-05-04 17:49 - 00000000 ____D C:\Program Files\DIFX
2013-05-04 17:49 - 2013-05-04 17:49 - 00000000 ____D C:\Program Files (x86)\Garmin
2013-05-04 17:46 - 2013-05-04 17:46 - 00992028 ____A C:\Windows\SysWOW64\PerfStringBackup.INI
2013-05-04 17:45 - 2013-05-04 17:45 - 00000000 ____D C:\Windows\SysWOW64\BestPractices
2013-05-04 17:45 - 2013-05-04 17:45 - 00000000 ____D C:\Windows\System32\BestPractices
2013-05-04 17:45 - 2013-05-04 17:45 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2013-05-04 17:45 - 2013-05-04 17:45 - 00000000 ____D C:\Program Files (x86)\MSBuild
2013-05-04 17:44 - 2013-05-04 17:44 - 00000000 ____D C:\Windows\ADAM
2013-05-04 17:44 - 2013-05-04 17:44 - 00000000 ____D C:\Program Files\Reference Assemblies
2013-05-04 17:44 - 2013-05-04 17:44 - 00000000 ____D C:\Program Files\MSBuild
2013-05-04 17:44 - 2013-05-04 17:44 - 00000000 ____D C:\inetpub
2013-05-04 17:39 - 2013-05-04 19:28 - 00000000 ____D C:\Windows\Panther
2013-05-04 17:38 - 2013-05-04 17:38 - 00000000 ____D C:\Users\Public\Documents\Stardock
2013-05-04 17:37 - 2013-05-04 17:37 - 00000000 ____D C:\ProgramData\Package Cache
2013-05-04 17:33 - 2013-05-05 16:09 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\vlc
2013-05-04 17:33 - 2013-05-04 17:33 - 00000638 ___AH C:\Users\Public\Desktop\VLC media player.lnk
2013-05-04 17:23 - 2012-07-05 18:02 - 01166440 ____A (Microsoft Corporation) C:\Windows\System32\PresentationNative_v0300.dll
2013-05-04 17:23 - 2012-07-05 18:02 - 00778856 ____A (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll
2013-05-04 17:23 - 2012-07-05 18:02 - 00124040 ____A (Microsoft Corporation) C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll
2013-05-04 17:23 - 2012-07-05 18:02 - 00102528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-05-04 17:23 - 2012-07-05 18:02 - 00035400 ____A (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2013-05-04 17:23 - 2012-07-05 18:02 - 00035400 ____A (Microsoft Corporation) C:\Windows\System32\TsWpfWrp.exe
2013-05-04 17:15 - 2013-05-04 17:15 - 00000000 ____D C:\ProgramData\ShellIcons
2013-05-04 17:04 - 2013-05-04 17:04 - 00000117 ____A C:\Windows\System32\netcfg-126890.txt
2013-05-04 17:04 - 2013-05-04 17:04 - 00000117 ____A C:\Windows\System32\netcfg-126843.txt
2013-05-04 17:04 - 2013-05-04 17:04 - 00000117 ____A C:\Windows\System32\netcfg-126781.txt
2013-05-04 17:04 - 2013-05-04 17:04 - 00000117 ____A C:\Windows\System32\netcfg-123734.txt
2013-05-04 17:04 - 2013-05-04 17:04 - 00000117 ____A C:\Windows\System32\netcfg-123671.txt
2013-05-04 17:04 - 2013-05-04 17:04 - 00000117 ____A C:\Windows\System32\netcfg-123468.txt
2013-05-04 17:03 - 2013-05-04 17:03 - 00016246 ____A C:\Windows\System32\results.xml
2013-05-04 17:03 - 2013-05-04 17:03 - 00000385 ____A C:\Users\Nazmul Islam Nazim\AppData\Roaminguser_gensett.xml
2013-05-04 17:01 - 2013-05-04 17:01 - 00000117 ____A C:\Windows\System32\netcfg-1185765.txt
2013-05-04 17:01 - 2013-05-04 17:01 - 00000117 ____A C:\Windows\System32\netcfg-1185734.txt
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\2C0A
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0C0A
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0C04
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0816
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0804
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0424
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\041F
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\041E
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\041D
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\041B
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0419
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0416
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0415
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0414
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0413
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0412
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0411
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0410
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\040E
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\040D
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\040C
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\040B
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\040A
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0408
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0407
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0406
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0405
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0404
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0401
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Program Files (x86)\Renesas Electronics
2013-05-04 17:00 - 2013-05-05 16:20 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2013-05-04 17:00 - 2013-05-04 17:01 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-05-04 17:00 - 2013-05-04 17:00 - 00000000 ____D C:\Program Files (x86)\Realtek
2013-05-04 17:00 - 2013-01-16 15:02 - 02079816 ____A (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2013-05-04 16:59 - 2013-05-04 16:59 - 00000000 ____D C:\ProgramData\Intel
2013-05-04 16:59 - 2012-05-15 06:13 - 00144896 ____A (Intel Corporation) C:\Windows\System32\IntelOpenCL64.dll
2013-05-04 16:59 - 2012-05-15 06:13 - 00020992 ____A (Khronos Group) C:\Windows\System32\OpenCL.dll
2013-05-04 16:59 - 2012-05-15 05:20 - 00104448 ____A (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll
2013-05-04 16:59 - 2012-05-15 05:20 - 00017920 ____A (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2013-05-04 16:58 - 2013-05-04 16:58 - 00000291 ____A C:\Windows\System32\netcfg-986187.txt
2013-05-04 16:58 - 2013-02-06 16:17 - 00544568 ____A (Intel Corporation) C:\Windows\System32\PROUnstl.exe
2013-05-04 16:58 - 2006-01-12 14:52 - 00001904 ____N C:\Windows\System32\SetupBD.din
2013-05-04 16:56 - 2013-05-04 16:59 - 00000000 ____D C:\Program Files (x86)\Intel
2013-05-04 16:56 - 2013-02-27 14:37 - 00053248 ____A (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll
2013-05-04 16:55 - 2013-05-04 16:55 - 00000000 ____D C:\Intel
2013-05-04 16:52 - 2013-05-04 16:52 - 01642069 ____A C:\ProgramData\1367715012.bdinstall.bin
2013-05-04 16:52 - 2013-05-04 16:52 - 00000385 ____A C:\Windows\System32\user_gensett.xml
2013-05-04 16:52 - 2013-05-04 16:52 - 00000251 ____A C:\Windows\System32\netcfg-615343.txt
2013-05-04 16:52 - 2013-05-04 16:52 - 00000117 ____A C:\Windows\System32\netcfg-620859.txt
2013-05-04 16:52 - 2013-05-04 16:52 - 00000117 ____A C:\Windows\System32\netcfg-620828.txt
2013-05-04 16:52 - 2013-05-04 16:52 - 00000117 ____A C:\Windows\System32\netcfg-620781.txt
2013-05-04 16:52 - 2013-05-04 16:52 - 00000117 ____A C:\Windows\System32\netcfg-617734.txt
2013-05-04 16:52 - 2013-05-04 16:52 - 00000117 ____A C:\Windows\System32\netcfg-617515.txt
2013-05-04 16:52 - 2013-05-04 16:52 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_avchv_01009.Wdf
2013-05-04 16:51 - 2013-05-05 08:36 - 06291512 ____A C:\Windows\SysWOW64\wmm_old.log
2013-05-04 16:51 - 2013-05-04 16:52 - 00000000 ____D C:\Users\Nazmul Islam Nazim\Documents\Qubee Broadband
2013-05-04 16:51 - 2013-05-04 16:51 - 00001710 ____A C:\Users\Public\Desktop\QUBEE WCM.lnk
2013-05-04 16:51 - 2013-05-04 16:51 - 00001108 ____A C:\Windows\System32\netcfg-590406.txt
2013-05-04 16:51 - 2013-05-04 16:51 - 00001088 ____A C:\Windows\System32\netcfg-581796.txt
2013-05-04 16:51 - 2013-05-04 16:51 - 00000000 ____D C:\Users\Nazmul Islam Nazim\Documents\Qubee Broadband Update
2013-05-04 16:51 - 2013-05-04 16:51 - 00000000 ____D C:\ProgramData\BDLogging
2013-05-04 16:51 - 2010-05-06 10:27 - 01886144 ____A C:\Windows\System32\Drivers\mt7118u.bin
2013-05-04 16:51 - 2010-05-06 10:27 - 00018432 ____A (MediaTek Inc.) C:\Windows\System32\Drivers\mtkwmptv_x64.sys
2013-05-04 16:51 - 2009-07-15 00:21 - 01721576 ____A (Microsoft Corporation) C:\Windows\System32\WdfCoInstaller01009.dll
2013-05-04 16:51 - 2007-04-11 10:11 - 00511328 ____A (Microsoft Corporation) C:\Windows\capicom.dll
2013-05-04 16:50 - 2013-05-05 16:41 - 00000000 ____D C:\Program Files\QUBEE WCM
2013-05-04 16:50 - 2013-05-04 16:50 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\QuickScan
2013-05-04 16:50 - 2010-05-06 10:27 - 00153600 ____A (MediaTek Inc.) C:\Windows\System32\Drivers\mt7118vu_x64.sys
2013-05-04 16:47 - 2013-05-04 20:34 - 00000000 ____D C:\Program Files (x86)\IObit
2013-05-04 16:47 - 2013-05-04 18:34 - 00000000 ____D C:\ProgramData\IObit
2013-05-04 16:47 - 2013-05-04 16:47 - 00001204 ____A C:\Users\Public\Desktop\Protected Folder.lnk
2013-05-04 16:44 - 2013-05-04 16:44 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\Adobe
2013-05-04 16:44 - 2013-05-04 16:44 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Local\VirtualStore
2013-05-04 16:43 - 2013-05-05 16:31 - 01779434 ____A C:\Windows\WindowsUpdate.log
2013-05-04 16:43 - 2013-05-04 20:37 - 00000000 ____D C:\users\Nazmul Islam Nazim
2013-05-04 16:43 - 2013-05-04 16:44 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Local\Packages
2013-05-04 16:43 - 2013-05-04 16:44 - 00000000 ____D C:\ProgramData\PRICache
2013-05-04 16:43 - 2013-05-04 16:43 - 00001133 ____A C:\Windows\System32\netcfg-89171.txt
2013-05-04 16:43 - 2013-05-04 16:43 - 00000020 ___SH C:\Users\Nazmul Islam Nazim\ntuser.ini
2013-05-04 16:43 - 2013-05-04 16:43 - 00000000 ____D C:\Windows\CSC
2013-05-04 16:42 - 2013-05-05 17:42 - 00000000 __SHD C:\Recovery
2013-05-04 16:40 - 2013-05-05 16:13 - 349324101 ____A C:\Windows\MEMORY.DMP
2013-05-04 16:40 - 2013-05-04 16:40 - 00001134 ____A C:\Windows\System32\netcfg-43843.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000185 ____A C:\Windows\System32\netcfg-43609.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000164 ____A C:\Windows\System32\netcfg-42000.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000161 ____A C:\Windows\System32\netcfg-43312.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000160 ____A C:\Windows\System32\netcfg-43109.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000160 ____A C:\Windows\System32\netcfg-42734.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000160 ____A C:\Windows\System32\netcfg-41390.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000159 ____A C:\Windows\System32\netcfg-42531.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000157 ____A C:\Windows\System32\netcfg-42906.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000157 ____A C:\Windows\System32\netcfg-41734.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000150 ____A C:\Windows\System32\netcfg-42218.txt
2013-04-30 09:21 - 2013-04-05 03:32 - 00166576 ____A (Tonec Inc.) C:\Windows\System32\Drivers\idmwfp.sys

==================== One Month Modified Files and Folders =======

2013-05-05 17:58 - 2013-05-05 17:58 - 00000000 ____D C:\FRST
2013-05-05 17:58 - 2013-05-05 17:58 - 00000000 ____A C:\Recovery.txt
2013-05-05 17:42 - 2013-05-04 16:42 - 00000000 __SHD C:\Recovery
2013-05-05 16:56 - 2013-05-04 19:02 - 00000930 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-05-05 16:56 - 2012-07-25 23:22 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2013-05-05 16:41 - 2013-05-05 08:36 - 05663240 ____A C:\Windows\SysWOW64\wmm_cur.log
2013-05-05 16:41 - 2013-05-04 16:50 - 00000000 ____D C:\Program Files\QUBEE WCM
2013-05-05 16:40 - 2012-07-25 23:28 - 01018040 ____A C:\Windows\System32\PerfStringBackup.INI
2013-05-05 16:37 - 2012-07-25 21:26 - 00262144 __ASH C:\Windows\System32\config\ELAM
2013-05-05 16:31 - 2013-05-04 16:43 - 01779434 ____A C:\Windows\WindowsUpdate.log
2013-05-05 16:26 - 2013-05-05 16:26 - 00001435 ____A C:\Users\Nazmul Islam Nazim\Desktop\New Text Document.txt
2013-05-05 16:20 - 2013-05-05 16:20 - 00000000 ____D C:\Program Files\Realtek
2013-05-05 16:20 - 2013-05-05 15:28 - 00001645 ____A C:\Windows\setupact.log
2013-05-05 16:20 - 2013-05-04 17:00 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2013-05-05 16:18 - 2013-05-05 14:54 - 00002564 ____A C:\Windows\PFRO.log
2013-05-05 16:17 - 2013-05-04 19:02 - 00000934 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-05-05 16:13 - 2013-05-05 16:13 - 00283968 ____A C:\Windows\Minidump\050513-13406-01.dmp
2013-05-05 16:13 - 2013-05-05 16:13 - 00000000 ____D C:\Windows\Minidump
2013-05-05 16:13 - 2013-05-04 16:40 - 349324101 ____A C:\Windows\MEMORY.DMP
2013-05-05 16:12 - 2013-05-04 18:39 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\DMCache
2013-05-05 16:09 - 2013-05-04 17:33 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\vlc
2013-05-05 16:00 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\System32\sru
2013-05-05 15:49 - 2013-05-05 15:39 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2013-05-05 15:41 - 2013-05-05 15:39 - 01766629 ____A C:\Users\Nazmul Islam Nazim\Downloads\Unconfirmed 277416.crdownload
2013-05-05 15:39 - 2013-05-05 15:39 - 00000000 ____D C:\Users\Nazmul Islam Nazim\Documents\ProcAlyzer Dumps
2013-05-05 15:30 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\AUInstallAgent
2013-05-05 15:28 - 2013-05-05 15:28 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2013-05-05 15:28 - 2013-05-05 15:28 - 00000000 ____A C:\Windows\setuperr.log
2013-05-05 15:15 - 2013-05-05 14:39 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\IDM
2013-05-05 14:54 - 2013-05-05 14:39 - 00000000 ____D C:\Program Files (x86)\Internet Download Manager
2013-05-05 14:54 - 2013-05-05 07:09 - 00000000 ____D C:\Program Files (x86)\Trend Micro
2013-05-05 14:54 - 2012-07-25 21:26 - 00262144 __ASH C:\Windows\System32\config\BBI
2013-05-05 14:39 - 2013-05-05 14:39 - 00000000 ____D C:\ProgramData\IDM
2013-05-05 14:32 - 2013-05-05 07:35 - 00000000 ____D C:\Users\Public\Documents\TrendMicro
2013-05-05 14:14 - 2013-05-05 14:14 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\SystemRequirementsLab
2013-05-05 14:14 - 2013-05-05 14:14 - 00000000 ____D C:\Program Files (x86)\SystemRequirementsLab
2013-05-05 14:09 - 2013-05-05 07:18 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy.BackupBySpybotPortable
2013-05-05 09:03 - 2013-05-05 09:03 - 00866720 ____A (Oracle Corporation) C:\Windows\SysWOW64\npDeployJava1.dll
2013-05-05 09:03 - 2013-05-05 09:03 - 00788896 ____A (Oracle Corporation) C:\Windows\SysWOW64\deployJava1.dll
2013-05-05 09:03 - 2013-05-05 09:03 - 00263584 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-05-05 09:03 - 2013-05-05 09:03 - 00174496 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-05-05 09:03 - 2013-05-05 09:03 - 00174496 ____A (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-05-05 09:03 - 2013-05-05 09:03 - 00095648 ____A (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-05-05 09:03 - 2013-05-05 09:03 - 00000000 ____D C:\ProgramData\Sun
2013-05-05 09:03 - 2013-05-05 09:03 - 00000000 ____D C:\Program Files (x86)\Java
2013-05-05 08:47 - 2013-05-05 08:46 - 00903072 ____A (Oracle Corporation) C:\Users\Nazmul Islam Nazim\Downloads\chromeinstall-7u21.exe
2013-05-05 08:36 - 2013-05-04 16:51 - 06291512 ____A C:\Windows\SysWOW64\wmm_old.log
2013-05-05 08:13 - 2013-05-04 18:12 - 00000000 ____D C:\Program Files\WinRAR
2013-05-05 07:35 - 2013-05-05 07:35 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Local\Trend Micro
2013-05-05 07:35 - 2013-05-05 07:33 - 00000000 ____D C:\ProgramData\Trend Micro
2013-05-05 07:34 - 2013-05-05 07:34 - 00001445 ____A C:\Users\Nazmul Islam Nazim\Desktop\Trend Micro Titanium Internet Security.lnk
2013-05-05 07:34 - 2013-05-05 07:34 - 00000059 ____A C:\Windows\System32\SupportTool.exe.bat
2013-05-05 07:34 - 2012-07-26 00:12 - 00000000 ___HD C:\Windows\ELAMBKUP
2013-05-05 07:33 - 2013-05-05 07:33 - 00000036 ____A C:\Users\Nazmul Islam Nazim\AppData\Local\housecall.guid.cache
2013-05-05 07:33 - 2013-05-05 07:33 - 00000000 ____D C:\Program Files\Trend Micro
2013-05-05 07:27 - 2013-05-05 07:27 - 00181476 ____A C:\ProgramData\1367766892.bdinstall.bin
2013-05-05 07:15 - 2013-05-05 07:15 - 00000167 ____A C:\Windows\System32\netcfg-29898015.txt
2013-05-05 06:47 - 2013-05-05 06:47 - 00001108 ____A C:\Windows\System32\netcfg-28219343.txt
2013-05-04 20:37 - 2013-05-04 16:43 - 00000000 ____D C:\users\Nazmul Islam Nazim
2013-05-04 20:36 - 2013-05-04 20:36 - 00000117 ____A C:\Windows\System32\netcfg-3110734.txt
2013-05-04 20:36 - 2013-05-04 20:35 - 00000117 ____A C:\Windows\System32\netcfg-3110578.txt
2013-05-04 20:34 - 2013-05-04 20:34 - 00001170 ___AH C:\Users\Public\Desktop\Smart Defrag 2.lnk
2013-05-04 20:34 - 2013-05-04 18:29 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\IObit
2013-05-04 20:34 - 2013-05-04 16:47 - 00000000 ____D C:\Program Files (x86)\IObit
2013-05-04 19:58 - 2013-05-04 19:58 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\Malwarebytes
2013-05-04 19:58 - 2013-05-04 19:58 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-05-04 19:45 - 2013-05-04 19:45 - 00000117 ____A C:\Windows\System32\netcfg-96609.txt
2013-05-04 19:45 - 2013-05-04 19:45 - 00000117 ____A C:\Windows\System32\netcfg-93656.txt
2013-05-04 19:44 - 2012-07-25 23:19 - 00281176 ____A C:\Windows\System32\FNTCACHE.DAT
2013-05-04 19:42 - 2013-05-04 19:42 - 00000117 ____A C:\Windows\System32\netcfg-2699156.txt
2013-05-04 19:42 - 2013-05-04 19:42 - 00000117 ____A C:\Windows\System32\netcfg-2699125.txt
2013-05-04 19:29 - 2013-05-04 19:29 - 00002255 ___AH C:\Users\Public\Desktop\Google Chrome.lnk
2013-05-04 19:29 - 2013-05-04 19:02 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Local\Google
2013-05-04 19:28 - 2013-05-04 19:02 - 00000000 ____D C:\Program Files (x86)\Google
2013-05-04 19:28 - 2013-05-04 17:39 - 00000000 ____D C:\Windows\Panther
2013-05-04 19:27 - 2013-05-04 19:27 - 00000696 ____A C:\Users\Public\Desktop\CCleaner.lnk
2013-05-04 19:04 - 2013-05-04 19:04 - 00000748 ____A C:\Users\Public\Desktop\Mozilla Firefox.lnk
2013-05-04 19:04 - 2013-05-04 19:04 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\Mozilla
2013-05-04 19:04 - 2013-05-04 19:04 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Local\Mozilla
2013-05-04 18:59 - 2013-05-04 18:59 - 00000117 ____A C:\Windows\System32\netcfg-87765.txt
2013-05-04 18:59 - 2013-05-04 18:59 - 00000117 ____A C:\Windows\System32\netcfg-84500.txt
2013-05-04 18:56 - 2013-05-04 18:56 - 00000117 ____A C:\Windows\System32\netcfg-2507750.txt
2013-05-04 18:56 - 2013-05-04 18:56 - 00000117 ____A C:\Windows\System32\netcfg-2507703.txt
2013-05-04 18:39 - 2013-05-04 18:39 - 00000000 ____D C:\Users\Nazmul Islam Nazim\Downloads\Video
2013-05-04 18:39 - 2013-05-04 18:39 - 00000000 ____D C:\Users\Nazmul Islam Nazim\Downloads\Compressed
2013-05-04 18:34 - 2013-05-04 16:47 - 00000000 ____D C:\ProgramData\IObit
2013-05-04 18:30 - 2013-05-04 18:30 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\Apple Computer
2013-05-04 18:29 - 2013-05-04 18:29 - 00001272 ___AH C:\Users\Public\Desktop\Uninstaller.lnk
2013-05-04 18:29 - 2013-05-04 18:29 - 00001221 ____A C:\Users\Public\Desktop\Advanced SystemCare 6.lnk
2013-05-04 18:29 - 2013-05-04 18:29 - 00000000 ____D C:\ProgramData\{CED89F1A-945F-46EC-B23C-5EAF6D2DB12A}
2013-05-04 18:16 - 2013-05-04 18:16 - 00000117 ____A C:\Windows\System32\netcfg-87375.txt
2013-05-04 18:16 - 2013-05-04 18:16 - 00000117 ____A C:\Windows\System32\netcfg-84328.txt
2013-05-04 18:16 - 2013-05-04 18:16 - 00000117 ____A C:\Windows\System32\netcfg-84281.txt
2013-05-04 18:16 - 2013-05-04 18:16 - 00000117 ____A C:\Windows\System32\netcfg-84171.txt
2013-05-04 18:16 - 2013-05-04 18:16 - 00000117 ____A C:\Windows\System32\netcfg-84125.txt
2013-05-04 18:16 - 2013-05-04 18:16 - 00000117 ____A C:\Windows\System32\netcfg-83984.txt
2013-05-04 18:13 - 2013-05-04 18:13 - 00000117 ____A C:\Windows\System32\netcfg-1394781.txt
2013-05-04 18:13 - 2013-05-04 18:13 - 00000117 ____A C:\Windows\System32\netcfg-1394718.txt
2013-05-04 18:13 - 2013-05-04 18:13 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\WinRAR
2013-05-04 17:52 - 2013-05-04 17:52 - 00000117 ____A C:\Windows\System32\netcfg-83328.txt
2013-05-04 17:52 - 2013-05-04 17:52 - 00000117 ____A C:\Windows\System32\netcfg-83187.txt
2013-05-04 17:51 - 2013-05-04 17:51 - 00000017 ____A C:\Users\Nazmul Islam Nazim\AppData\Local\resmon.resmoncfg
2013-05-04 17:50 - 2013-05-04 17:50 - 00000117 ____A C:\Windows\System32\netcfg-2894406.txt
2013-05-04 17:50 - 2013-05-04 17:50 - 00000117 ____A C:\Windows\System32\netcfg-2894359.txt
2013-05-04 17:49 - 2013-05-04 17:49 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\Garmin
2013-05-04 17:49 - 2013-05-04 17:49 - 00000000 ____D C:\Program Files\DIFX
2013-05-04 17:49 - 2013-05-04 17:49 - 00000000 ____D C:\Program Files (x86)\Garmin
2013-05-04 17:46 - 2013-05-04 17:46 - 00992028 ____A C:\Windows\SysWOW64\PerfStringBackup.INI
2013-05-04 17:45 - 2013-05-04 17:45 - 00000000 ____D C:\Windows\SysWOW64\BestPractices
2013-05-04 17:45 - 2013-05-04 17:45 - 00000000 ____D C:\Windows\System32\BestPractices
2013-05-04 17:45 - 2013-05-04 17:45 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2013-05-04 17:45 - 2013-05-04 17:45 - 00000000 ____D C:\Program Files (x86)\MSBuild
2013-05-04 17:45 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\SysWOW64\inetsrv
2013-05-04 17:45 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\System32\inetsrv
2013-05-04 17:44 - 2013-05-04 17:44 - 00000000 ____D C:\Windows\ADAM
2013-05-04 17:44 - 2013-05-04 17:44 - 00000000 ____D C:\Program Files\Reference Assemblies
2013-05-04 17:44 - 2013-05-04 17:44 - 00000000 ____D C:\Program Files\MSBuild
2013-05-04 17:44 - 2013-05-04 17:44 - 00000000 ____D C:\inetpub
2013-05-04 17:39 - 2012-07-26 00:13 - 00262144 ____A C:\Windows\System32\config\BCD-Template
2013-05-04 17:38 - 2013-05-04 17:38 - 00000000 ____D C:\Users\Public\Documents\Stardock
2013-05-04 17:37 - 2013-05-04 17:37 - 00000000 ____D C:\ProgramData\Package Cache
2013-05-04 17:33 - 2013-05-04 17:33 - 00000638 ___AH C:\Users\Public\Desktop\VLC media player.lnk
2013-05-04 17:15 - 2013-05-04 17:15 - 00000000 ____D C:\ProgramData\ShellIcons
2013-05-04 17:04 - 2013-05-04 17:04 - 00000117 ____A C:\Windows\System32\netcfg-126890.txt
2013-05-04 17:04 - 2013-05-04 17:04 - 00000117 ____A C:\Windows\System32\netcfg-126843.txt
2013-05-04 17:04 - 2013-05-04 17:04 - 00000117 ____A C:\Windows\System32\netcfg-126781.txt
2013-05-04 17:04 - 2013-05-04 17:04 - 00000117 ____A C:\Windows\System32\netcfg-123734.txt
2013-05-04 17:04 - 2013-05-04 17:04 - 00000117 ____A C:\Windows\System32\netcfg-123671.txt
2013-05-04 17:04 - 2013-05-04 17:04 - 00000117 ____A C:\Windows\System32\netcfg-123468.txt
2013-05-04 17:03 - 2013-05-04 17:03 - 00016246 ____A C:\Windows\System32\results.xml
2013-05-04 17:03 - 2013-05-04 17:03 - 00000385 ____A C:\Users\Nazmul Islam Nazim\AppData\Roaminguser_gensett.xml
2013-05-04 17:01 - 2013-05-04 17:01 - 00000117 ____A C:\Windows\System32\netcfg-1185765.txt
2013-05-04 17:01 - 2013-05-04 17:01 - 00000117 ____A C:\Windows\System32\netcfg-1185734.txt
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\2C0A
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0C0A
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0C04
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0816
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0804
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0424
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\041F
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\041E
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\041D
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\041B
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0419
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0416
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0415
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0414
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0413
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0412
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0411
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0410
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\040E
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\040D
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\040C
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\040B
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\040A
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0408
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0407
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0406
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0405
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0404
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Windows\System32\0401
2013-05-04 17:01 - 2013-05-04 17:01 - 00000000 ____D C:\Program Files (x86)\Renesas Electronics
2013-05-04 17:01 - 2013-05-04 17:00 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-05-04 17:01 - 2012-07-25 23:49 - 00000000 ____D C:\Windows\System32\0409
2013-05-04 17:00 - 2013-05-04 17:00 - 00000000 ____D C:\Program Files (x86)\Realtek
2013-05-04 16:59 - 2013-05-04 16:59 - 00000000 ____D C:\ProgramData\Intel
2013-05-04 16:59 - 2013-05-04 16:56 - 00000000 ____D C:\Program Files (x86)\Intel
2013-05-04 16:58 - 2013-05-04 16:58 - 00000291 ____A C:\Windows\System32\netcfg-986187.txt
2013-05-04 16:56 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\System32\restore
2013-05-04 16:55 - 2013-05-04 16:55 - 00000000 ____D C:\Intel
2013-05-04 16:52 - 2013-05-04 16:52 - 01642069 ____A C:\ProgramData\1367715012.bdinstall.bin
2013-05-04 16:52 - 2013-05-04 16:52 - 00000385 ____A C:\Windows\System32\user_gensett.xml
2013-05-04 16:52 - 2013-05-04 16:52 - 00000251 ____A C:\Windows\System32\netcfg-615343.txt
2013-05-04 16:52 - 2013-05-04 16:52 - 00000117 ____A C:\Windows\System32\netcfg-620859.txt
2013-05-04 16:52 - 2013-05-04 16:52 - 00000117 ____A C:\Windows\System32\netcfg-620828.txt
2013-05-04 16:52 - 2013-05-04 16:52 - 00000117 ____A C:\Windows\System32\netcfg-620781.txt
2013-05-04 16:52 - 2013-05-04 16:52 - 00000117 ____A C:\Windows\System32\netcfg-617734.txt
2013-05-04 16:52 - 2013-05-04 16:52 - 00000117 ____A C:\Windows\System32\netcfg-617515.txt
2013-05-04 16:52 - 2013-05-04 16:52 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_avchv_01009.Wdf
2013-05-04 16:52 - 2013-05-04 16:51 - 00000000 ____D C:\Users\Nazmul Islam Nazim\Documents\Qubee Broadband
2013-05-04 16:51 - 2013-05-04 16:51 - 00001710 ____A C:\Users\Public\Desktop\QUBEE WCM.lnk
2013-05-04 16:51 - 2013-05-04 16:51 - 00001108 ____A C:\Windows\System32\netcfg-590406.txt
2013-05-04 16:51 - 2013-05-04 16:51 - 00001088 ____A C:\Windows\System32\netcfg-581796.txt
2013-05-04 16:51 - 2013-05-04 16:51 - 00000000 ____D C:\Users\Nazmul Islam Nazim\Documents\Qubee Broadband Update
2013-05-04 16:51 - 2013-05-04 16:51 - 00000000 ____D C:\ProgramData\BDLogging
2013-05-04 16:51 - 2012-07-26 00:12 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2013-05-04 16:50 - 2013-05-04 16:50 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\QuickScan
2013-05-04 16:47 - 2013-05-04 16:47 - 00001204 ____A C:\Users\Public\Desktop\Protected Folder.lnk
2013-05-04 16:44 - 2013-05-04 16:44 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Roaming\Adobe
2013-05-04 16:44 - 2013-05-04 16:44 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Local\VirtualStore
2013-05-04 16:44 - 2013-05-04 16:43 - 00000000 ____D C:\Users\Nazmul Islam Nazim\AppData\Local\Packages
2013-05-04 16:44 - 2013-05-04 16:43 - 00000000 ____D C:\ProgramData\PRICache
2013-05-04 16:44 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\rescache
2013-05-04 16:43 - 2013-05-04 16:43 - 00001133 ____A C:\Windows\System32\netcfg-89171.txt
2013-05-04 16:43 - 2013-05-04 16:43 - 00000020 ___SH C:\Users\Nazmul Islam Nazim\ntuser.ini
2013-05-04 16:43 - 2013-05-04 16:43 - 00000000 ____D C:\Windows\CSC
2013-05-04 16:43 - 2012-07-26 00:12 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
2013-05-04 16:43 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\WinStore
2013-05-04 16:42 - 2012-07-26 00:12 - 00000000 ____D C:\Windows\System32\Recovery
2013-05-04 16:40 - 2013-05-04 16:40 - 00001134 ____A C:\Windows\System32\netcfg-43843.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000185 ____A C:\Windows\System32\netcfg-43609.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000164 ____A C:\Windows\System32\netcfg-42000.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000161 ____A C:\Windows\System32\netcfg-43312.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000160 ____A C:\Windows\System32\netcfg-43109.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000160 ____A C:\Windows\System32\netcfg-42734.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000160 ____A C:\Windows\System32\netcfg-41390.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000159 ____A C:\Windows\System32\netcfg-42531.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000157 ____A C:\Windows\System32\netcfg-42906.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000157 ____A C:\Windows\System32\netcfg-41734.txt
2013-05-04 16:40 - 2013-05-04 16:40 - 00000150 ____A C:\Windows\System32\netcfg-42218.txt
2013-04-05 03:32 - 2013-04-30 09:21 - 00166576 ____A (Tonec Inc.) C:\Windows\System32\Drivers\idmwfp.sys

==================== Known DLLs (Whitelisted) ================


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe
[2012-07-25 15:55] - [2012-07-25 19:08] - 0516608 ____A (Microsoft Corporation) 93AB226C07A9789B2EC7B41F73602F76

C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe
[2012-07-25 16:00] - [2012-07-25 19:08] - 0030208 ____A (Microsoft Corporation) 57350BEDE3834915B6145B67C71C7BDA

C:\Windows\SysWOW64\svchost.exe
[2012-07-25 16:01] - [2012-07-25 19:20] - 0023040 ____A (Microsoft Corporation) 0A175AF8B65797BD22C11903A8BFEB2D

C:\Windows\System32\services.exe
[2012-07-25 21:26] - [2012-07-25 21:26] - 0410624 ____A (Microsoft Corporation) 754A2CC1F32107EA87CBD305ABE3E618

C:\Windows\System32\User32.dll
[2012-07-25 16:01] - [2012-07-25 19:07] - 1342464 ____A (Microsoft Corporation) 1D08594400EE1B500B93256795FE30AE

C:\Windows\SysWOW64\User32.dll
[2012-07-25 16:02] - [2012-07-25 16:02] - 1126912 ____A (Microsoft Corporation) 8A93F57772FD24959F76A65FF79D282D

C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

==================== EXE ASSOCIATION =====================

HKLM\...\.exe: exefile => OK
HKLM\...\exefile\DefaultIcon: %1 => OK
HKLM\...\exefile\open\command: "%1" %* => OK

==================== Restore Points =========================

Restore point made on: 2013-05-04 16:56:53

==================== Memory info ===========================

Percentage of memory in use: 14%
Total physical RAM: 3996.4 MB
Available physical RAM: 3406.6 MB
Total Pagefile: 3996.4 MB
Available Pagefile: 3412.54 MB
Total Virtual: 8192 MB
Available Virtual: 8191.88 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:70.9 GB) (Free:50.65 GB) NTFS
Drive d: (Entertainment) (Fixed) (Total:244.52 GB) (Free:97.76 GB) NTFS
Drive e: (Software) (Fixed) (Total:100.24 GB) (Free:38.95 GB) NTFS
Drive f: (Work) (Fixed) (Total:50 GB) (Free:47.96 GB) NTFS
Drive g: (NAZIM) (Removable) (Total:7.45 GB) (Free:7.45 GB) FAT32 (Disk=1 Partition=1)
Drive h: () (Fixed) (Total:0.1 GB) (Free:0.03 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS


Disk ### Status Size Free Dyn Gpt
-------- ------------- ------- ------- --- ---
Disk 0 Online 465 GB 0 B *
Disk 1 Online 7650 MB 1024 KB

Partitions of Disk 0:
===============

Disk ID: 45424965

Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Dynamic Data 992 KB 31 KB
Partition 2 Dynamic Data 100 MB 1024 KB
Partition 3 Dynamic Data 70 GB 101 MB
Partition 4 Dynamic Data 394 GB 71 GB

==================================================================================

Disk: 0
Partition 1
Type : 42
Hidden: Yes
Active: No

There is no volume associated with this partition.

=========================================================

Disk: 0
Partition 2
Type : 42
Hidden: Yes
Active: Yes

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 0 H NTFS Simple 100 MB Healthy

=========================================================

Disk: 0
Partition 3
Type : 42
Hidden: Yes
Active: No

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 3 C NTFS Simple 70 GB Healthy

=========================================================

Disk: 0
Partition 4
Type : 42
Hidden: Yes
Active: No

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 2 D Entertainme NTFS Simple 244 GB Healthy

=========================================================

Partitions of Disk 1:
===============

Disk ID: DFD99D64

Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 7648 MB 31 KB
Partition 0 Primary 31 KB 7648 MB

==================================================================================

Disk: 1
Partition 1
Type : 0B
Hidden: No
Active: Yes

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 6 G NAZIM FAT32 Removable 7648 MB Healthy

=========================================================
============================== MBR & Partition Table ==================

====================================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 45424965)
Partition 1: (Not Active) - (Size=993 KB) - (Type=42)
Partition 2: (Active) - (Size=100 MB) - (Type=42)
Partition 3: (Not Active) - (Size=71 GB) - (Type=42)
Partition 4: (Not Active) - (Size=395 GB) - (Type=42)

====================================================================
Disk: 1 (MBR Code: Windows Vista) (Size: 7 GB) (Disk ID: DFD99D64)
Partition 1: (Active) - (Size=7 GB) - (Type=0B)
Partition 2: (Not Active) - (Size=32 KB) - (Type=21)


Last Boot: 2013-05-04 16:40

==================== End Of Log ============================"
 

Fiery

Level 1
Jan 11, 2011
2,007
Everything seems fine, you mentioned that you reformatted your PC after the infection?

If you reformatted, the malware would be deleted.

Though, you may wish to scan your USB with the programs you have already as that is your source of infection. Before you insert the USB, turn Autorun off by following the instructions here: http://www.c-sharpcorner.com/UploadFile/6cde20/turn-off-autoplay-functionality-for-removal-drive-in-windows/

Also, Download Security Check by screen317 from here or here.
  • Save it to your Desktop.
  • Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
  • A notepad document should open automatically called checkup.txt.
  • Please post the contents of that document in your next reply. Please do not attach it!
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top