Malwarebytes didn't save a log the first time I ran it, should I run it again to get a log?
Here's the combofix log, it's divided into two posts since it's too long to fit into one.
ComboFix 10-04-26.05 - Kris 04/27/2010 12:00:06.1.2 - x86
Microsoft Windows 7 Home Premium 6.1.7600.0.1252.1.1033.18.3071.2057 [GMT -4:00]
Running from: c:\users\Kris\Desktop\ComboFix.exe
SP: Spybot - Search and Destroy *enabled* (Updated) {ED588FAF-1B8F-43B4-ACA8-8E3C85DADBE9}
* Created a new restore point
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\install.exe
c:\recycler\S-1-5-21-1614895754-2077806209-839522115-1004
c:\users\Kris\AppData\Local\Tempals_inst.exe
c:\users\Kris\AppData\Roaming\chrtmp
c:\users\Kris\AppData\Roaming\SQLite3.dll
Infected copy of c:\windows\system32\drivers\ssmdrv.sys was found and disinfected
Restored copy from - Kitty had a snack
.
((((((((((((((((((((((((( Files Created from 2010-03-27 to 2010-04-27 )))))))))))))))))))))))))))))))
.
2010-04-27 15:50 . 2010-04-27 15:52 -------- d-----w- C:\32788R22FWJFW
2010-04-26 23:04 . 2010-04-26 23:04 388096 ----a-r- c:\users\Kris\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2010-04-26 23:04 . 2010-04-26 23:04 -------- d-----w- c:\program files\Trend Micro
2010-04-25 18:34 . 2010-04-25 18:34 -------- d-----w- c:\users\Kris\AppData\Roaming\Malwarebytes
2010-04-25 18:34 . 2010-03-30 04:46 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-04-25 18:34 . 2010-04-25 18:34 -------- d-----w- c:\programdata\Malwarebytes
2010-04-25 18:34 . 2010-04-25 18:34 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-04-25 18:34 . 2010-03-30 04:45 20824 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-04-24 22:15 . 2010-04-24 22:15 12464 ----a-w- c:\windows\system32\avgrsstx.dll
2010-04-24 22:15 . 2010-04-24 22:15 242896 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2010-04-24 22:15 . 2010-04-24 22:15 29512 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2010-04-24 22:15 . 2010-04-24 22:15 216200 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2010-04-24 22:15 . 2010-04-26 22:35 -------- d-----w- c:\windows\system32\drivers\Avg
2010-04-24 22:15 . 2010-04-24 22:15 -------- d-----w- c:\programdata\avg9
2010-04-24 22:15 . 2010-04-24 22:15 -------- d-----w- c:\program files\AVG
2010-04-24 18:13 . 2010-04-24 18:15 -------- d-----w- c:\windows\BDOSCAN8
2010-04-24 17:50 . 2010-04-24 17:50 -------- d-----w- c:\windows\Sun
2010-04-24 17:43 . 2010-04-24 17:43 152576 ----a-w- c:\windows\Cgysoa.exe
2010-04-24 17:42 . 2010-04-24 17:42 368128 --sha-r- c:\windows\system32\dhcpcorev.dll
2010-04-24 17:42 . 2010-04-24 19:49 -------- d-----w- c:\users\Kris\AppData\Local\HLFFLWMW
2010-04-24 17:14 . 2010-04-24 17:14 -------- d-----w- c:\users\Kris\AppData\Roaming\Ubisoft
2010-04-24 17:14 . 2010-04-24 17:14 -------- d-----w- c:\programdata\Ubisoft
2010-04-22 16:46 . 2010-04-22 16:46 25600 ----a-r- c:\users\Kris\AppData\Roaming\Microsoft\Installer\{110EB5C4-E995-4CFB-AB80-A5F315BEA9E8}\python_icon.exe
2010-04-22 16:45 . 2010-04-22 16:46 -------- d-----w- C:\Python26
2010-04-19 19:15 . 2010-04-19 19:15 -------- d-----w- c:\windows\system32\Wat
2010-04-16 18:32 . 2010-04-16 18:32 -------- d-----w- c:\program files\Common Files\Java
2010-04-16 18:31 . 2010-04-16 18:31 -------- d-----w- c:\program files\Java
2010-04-16 18:29 . 2010-04-16 18:31 411368 ----a-w- c:\windows\system32\deploytk.dll
2010-04-14 16:37 . 2009-12-29 06:55 172032 ----a-w- c:\windows\system32\wintrust.dll
2010-04-14 16:37 . 2010-02-27 12:07 3954568 ----a-w- c:\windows\system32\ntkrnlpa.exe
2010-04-14 16:37 . 2010-02-27 12:07 3899280 ----a-w- c:\windows\system32\ntoskrnl.exe
2010-04-14 16:37 . 2010-02-27 07:32 221696 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2010-04-14 16:37 . 2010-02-27 07:32 95744 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2010-04-14 16:37 . 2010-02-27 07:32 123392 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2010-04-14 16:37 . 2010-03-08 21:33 427520 ----a-w- c:\windows\system32\vbscript.dll
2010-04-14 16:37 . 2010-01-09 06:52 132608 ----a-w- c:\windows\system32\cabview.dll
2010-04-08 18:44 . 2010-04-08 18:44 -------- d-----w- c:\program files\QuickTime
2010-04-08 18:44 . 2010-04-08 18:44 -------- d-----w- c:\programdata\Apple Computer
2010-04-03 21:19 . 2010-04-03 21:19 516480 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\EmailScannerAddin.dll
2010-04-03 21:19 . 2010-04-03 21:19 17632 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\WSCUpdate.dll
2010-03-31 16:31 . 2010-02-23 07:56 977920 ----a-w- c:\windows\system32\wininet.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-04-24 18:03 . 2010-02-02 06:32 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-04-24 07:49 . 2010-02-06 10:42 -------- d-----w- c:\users\Kris\AppData\Roaming\uTorrent
2010-04-23 22:04 . 2010-03-16 04:19 215128 ----a-w- c:\windows\system32\PnkBstrB.exe
2010-04-23 21:12 . 2010-03-16 04:20 139128 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2010-04-16 08:50 . 2010-02-01 00:52 -------- d-----w- c:\program files\Special Forces
2010-04-13 20:00 . 2010-02-02 22:47 -------- d-----w- c:\program files\Cryptic Studios
2010-04-13 19:58 . 2010-02-09 04:27 -------- d-----w- c:\program files\Common Files\BioWare
2010-04-13 19:57 . 2010-02-09 04:27 -------- d-----w- c:\programdata\Media Center Programs
2010-04-07 21:19 . 2010-03-17 21:19 966104 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\CEAPI.dll
2010-04-07 21:19 . 2010-03-17 21:19 1265264 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\AAWService.exe
2010-03-24 18:17 . 2010-03-24 08:04 952768 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\681\AdobeARM.exe
2010-03-24 18:17 . 2010-03-24 08:04 952768 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\19765\AdobeARM.exe
2010-03-24 18:17 . 2010-03-24 08:04 952768 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\17437\AdobeARM.exe
2010-03-24 18:17 . 2010-03-24 08:04 70584 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\681\AdobeExtractFiles.dll
2010-03-24 18:17 . 2010-03-24 08:04 70584 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\19765\AdobeExtractFiles.dll
2010-03-24 18:17 . 2010-03-24 08:04 70584 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\17437\AdobeExtractFiles.dll
2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\681\ReaderUpdater.exe
2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\681\AcrobatUpdater.exe
2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\19765\ReaderUpdater.exe
2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\19765\AcrobatUpdater.exe
2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\17437\ReaderUpdater.exe
2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\17437\AcrobatUpdater.exe
2010-03-24 01:18 . 2010-02-02 06:39 -------- d-----w- c:\programdata\Creative
2010-03-23 20:46 . 2010-03-23 20:46 94208 ----a-r- c:\users\Kris\AppData\Roaming\Microsoft\Installer\{6B976ADF-8AE8-434E-B282-A06C7F624D2F}\python_icon.exe
2010-03-23 20:20 . 2010-03-21 08:51 -------- d-----w- c:\program files\Bethesda Softworks
2010-03-23 19:38 . 2010-03-23 19:38 -------- d-----w- c:\program files\7-Zip
2010-03-23 06:05 . 2010-03-21 08:39 -------- d-----w- c:\program files\UltraISO
2010-03-23 06:03 . 2010-03-23 06:03 -------- d-----w- c:\programdata\2BrightSparks
2010-03-21 09:52 . 2010-03-21 09:52 -------- d-----w- c:\users\Kris\AppData\Roaming\Scooter Software
2010-03-21 08:32 . 2010-03-21 08:32 -------- d-----w- c:\program files\Conduit
2010-03-21 08:31 . 2010-03-21 08:31 -------- d-----w- c:\program files\Alcohol Soft
2010-03-18 04:09 . 2010-03-02 02:52 -------- d-----w- c:\program files\Mass Effect 2
2010-03-17 22:14 . 2010-03-17 20:53 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2010-03-17 21:19 . 2010-03-17 21:17 -------- d-----w- c:\programdata\Lavasoft
2010-03-17 21:19 . 2010-03-17 21:19 95024 ----a-w- c:\windows\system32\drivers\SBREDrv.sys
2010-03-17 21:19 . 2010-03-17 21:19 95024 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\Drivers\SBREDrv.sys
2010-03-17 21:19 . 2010-03-17 21:19 598368 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\EmailScanner.dll
2010-03-17 21:19 . 2010-03-17 21:56 15880 ----a-w- c:\windows\system32\lsdelete.exe
2010-03-17 21:19 . 2010-03-17 21:19 566608 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\sbap.dll
2010-03-17 21:19 . 2010-03-17 21:19 15880 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\lsdelete.exe
2010-03-17 21:19 . 2010-03-17 21:19 1230160 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\SBTE.dll
2010-03-17 21:19 . 2010-03-17 21:19 247120 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\SBRE.dll
2010-03-17 21:19 . 2010-03-17 21:19 6330848 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\Resources.dll
2010-03-17 21:19 . 2010-03-17 21:19 17480 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\EmailScannerBridge.dll
2010-03-17 21:17 . 2010-03-17 21:17 -------- d-----w- c:\program files\Lavasoft
2010-03-17 21:17 . 2010-03-17 21:17 -------- dc-h--w- c:\programdata\{74D08EB8-01D1-4BAE-91E3-F30C1B031AC6}
2010-03-17 21:04 . 2010-03-17 20:53 -------- d-----w- c:\program files\Spybot - Search & Destroy
2010-03-17 07:15 . 2010-03-17 07:15 -------- d-----w- c:\program files\FLV Player
2010-03-16 15:45 . 2010-02-06 10:42 -------- d-----w- c:\program files\uTorrent
2010-03-16 04:20 . 2010-03-16 04:20 138056 ----a-w- c:\users\Kris\AppData\Roaming\PnkBstrK.sys
2010-03-16 04:20 . 2010-03-16 04:20 138056 ----a-w- c:\users\Kris\AppData\Roaming\PnkBstrK.sys
2010-03-16 04:19 . 2010-03-16 04:19 75064 ----a-w- c:\windows\system32\PnkBstrA.exe
2010-03-16 04:19 . 2010-03-16 04:19 2434856 ----a-w- c:\windows\system32\pbsvc_bc2.exe
2010-03-16 04:06 . 2010-03-16 04:06 -------- d-----w- c:\program files\Electronic Arts
2010-03-02 03:21 . 2010-03-02 03:21 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2010-03-02 03:05 . 2010-03-02 03:05 -------- d--h--r- c:\users\Kris\AppData\Roaming\SecuROM
2010-03-02 03:02 . 2010-03-02 03:02 -------- d-----w- c:\program files\AGEIA Technologies
2010-03-02 03:02 . 2010-03-02 03:02 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-03-02 02:47 . 2010-03-01 19:15 -------- d-----w- c:\users\Kris\AppData\Roaming\DAEMON Tools Lite
2010-03-01 19:16 . 2010-03-01 19:15 -------- d-----w- c:\program files\DAEMON Tools Lite
2010-03-01 19:16 . 2010-03-01 19:16 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-03-01 19:15 . 2010-03-01 19:15 -------- d-----w- c:\programdata\DAEMON Tools Lite
2010-02-24 14:16 . 2010-02-01 01:08 181632 ------w- c:\windows\system32\MpSigStub.exe
2010-02-04 15:53 . 2010-03-17 21:17 2954656 -c--a-w- c:\programdata\{74D08EB8-01D1-4BAE-91E3-F30C1B031AC6}\Ad-AwareInstaller.exe
2010-02-04 15:53 . 2010-03-17 21:19 64288 ----a-w- c:\windows\system32\drivers\Lbd.sys
2010-02-02 07:45 . 2010-02-23 21:08 2048 ----a-w- c:\windows\system32\tzres.dll
2010-02-02 06:39 . 2010-02-02 06:39 444952 ----a-w- c:\windows\system32\wrap_oal.dll
2010-02-02 06:39 . 2010-02-02 06:39 109080 ----a-w- c:\windows\system32\OpenAL32.dll
2010-02-02 04:56 . 2010-02-01 04:27 56816 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2010-02-01 02:13 . 2010-02-01 02:13 23052 ----a-w- c:\windows\system32\emptyregdb.dat
2010-02-01 00:51 . 2010-02-01 00:51 57560 ----a-w- c:\users\Kris\AppData\Local\GDIPFONTCACHEV1.DAT
2010-02-01 00:50 . 2010-02-01 00:50 0 ----a-w- c:\windows\ativpsrm.bin
2010-02-01 00:47 . 2010-02-01 00:47 10134 ----a-r- c:\users\Kris\AppData\Roaming\Microsoft\Installer\{84B587B3-94BA-CAFF-5824-DB8D2E7A72F4}\ARPPRODUCTICON.exe
2009-06-10 21:26 . 2009-07-14 02:04 9633792 --sha-r- c:\windows\Fonts\StaticCache.dat
2009-07-14 01:14 . 2009-07-13 23:42 396800 --sha-w- c:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_f12e83abb108c86c\WinMail.exe
.
Here's the combofix log, it's divided into two posts since it's too long to fit into one.
ComboFix 10-04-26.05 - Kris 04/27/2010 12:00:06.1.2 - x86
Microsoft Windows 7 Home Premium 6.1.7600.0.1252.1.1033.18.3071.2057 [GMT -4:00]
Running from: c:\users\Kris\Desktop\ComboFix.exe
SP: Spybot - Search and Destroy *enabled* (Updated) {ED588FAF-1B8F-43B4-ACA8-8E3C85DADBE9}
* Created a new restore point
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\install.exe
c:\recycler\S-1-5-21-1614895754-2077806209-839522115-1004
c:\users\Kris\AppData\Local\Tempals_inst.exe
c:\users\Kris\AppData\Roaming\chrtmp
c:\users\Kris\AppData\Roaming\SQLite3.dll
Infected copy of c:\windows\system32\drivers\ssmdrv.sys was found and disinfected
Restored copy from - Kitty had a snack
.
((((((((((((((((((((((((( Files Created from 2010-03-27 to 2010-04-27 )))))))))))))))))))))))))))))))
.
2010-04-27 15:50 . 2010-04-27 15:52 -------- d-----w- C:\32788R22FWJFW
2010-04-26 23:04 . 2010-04-26 23:04 388096 ----a-r- c:\users\Kris\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2010-04-26 23:04 . 2010-04-26 23:04 -------- d-----w- c:\program files\Trend Micro
2010-04-25 18:34 . 2010-04-25 18:34 -------- d-----w- c:\users\Kris\AppData\Roaming\Malwarebytes
2010-04-25 18:34 . 2010-03-30 04:46 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-04-25 18:34 . 2010-04-25 18:34 -------- d-----w- c:\programdata\Malwarebytes
2010-04-25 18:34 . 2010-04-25 18:34 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-04-25 18:34 . 2010-03-30 04:45 20824 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-04-24 22:15 . 2010-04-24 22:15 12464 ----a-w- c:\windows\system32\avgrsstx.dll
2010-04-24 22:15 . 2010-04-24 22:15 242896 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2010-04-24 22:15 . 2010-04-24 22:15 29512 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2010-04-24 22:15 . 2010-04-24 22:15 216200 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2010-04-24 22:15 . 2010-04-26 22:35 -------- d-----w- c:\windows\system32\drivers\Avg
2010-04-24 22:15 . 2010-04-24 22:15 -------- d-----w- c:\programdata\avg9
2010-04-24 22:15 . 2010-04-24 22:15 -------- d-----w- c:\program files\AVG
2010-04-24 18:13 . 2010-04-24 18:15 -------- d-----w- c:\windows\BDOSCAN8
2010-04-24 17:50 . 2010-04-24 17:50 -------- d-----w- c:\windows\Sun
2010-04-24 17:43 . 2010-04-24 17:43 152576 ----a-w- c:\windows\Cgysoa.exe
2010-04-24 17:42 . 2010-04-24 17:42 368128 --sha-r- c:\windows\system32\dhcpcorev.dll
2010-04-24 17:42 . 2010-04-24 19:49 -------- d-----w- c:\users\Kris\AppData\Local\HLFFLWMW
2010-04-24 17:14 . 2010-04-24 17:14 -------- d-----w- c:\users\Kris\AppData\Roaming\Ubisoft
2010-04-24 17:14 . 2010-04-24 17:14 -------- d-----w- c:\programdata\Ubisoft
2010-04-22 16:46 . 2010-04-22 16:46 25600 ----a-r- c:\users\Kris\AppData\Roaming\Microsoft\Installer\{110EB5C4-E995-4CFB-AB80-A5F315BEA9E8}\python_icon.exe
2010-04-22 16:45 . 2010-04-22 16:46 -------- d-----w- C:\Python26
2010-04-19 19:15 . 2010-04-19 19:15 -------- d-----w- c:\windows\system32\Wat
2010-04-16 18:32 . 2010-04-16 18:32 -------- d-----w- c:\program files\Common Files\Java
2010-04-16 18:31 . 2010-04-16 18:31 -------- d-----w- c:\program files\Java
2010-04-16 18:29 . 2010-04-16 18:31 411368 ----a-w- c:\windows\system32\deploytk.dll
2010-04-14 16:37 . 2009-12-29 06:55 172032 ----a-w- c:\windows\system32\wintrust.dll
2010-04-14 16:37 . 2010-02-27 12:07 3954568 ----a-w- c:\windows\system32\ntkrnlpa.exe
2010-04-14 16:37 . 2010-02-27 12:07 3899280 ----a-w- c:\windows\system32\ntoskrnl.exe
2010-04-14 16:37 . 2010-02-27 07:32 221696 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2010-04-14 16:37 . 2010-02-27 07:32 95744 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2010-04-14 16:37 . 2010-02-27 07:32 123392 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2010-04-14 16:37 . 2010-03-08 21:33 427520 ----a-w- c:\windows\system32\vbscript.dll
2010-04-14 16:37 . 2010-01-09 06:52 132608 ----a-w- c:\windows\system32\cabview.dll
2010-04-08 18:44 . 2010-04-08 18:44 -------- d-----w- c:\program files\QuickTime
2010-04-08 18:44 . 2010-04-08 18:44 -------- d-----w- c:\programdata\Apple Computer
2010-04-03 21:19 . 2010-04-03 21:19 516480 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\EmailScannerAddin.dll
2010-04-03 21:19 . 2010-04-03 21:19 17632 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\WSCUpdate.dll
2010-03-31 16:31 . 2010-02-23 07:56 977920 ----a-w- c:\windows\system32\wininet.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-04-24 18:03 . 2010-02-02 06:32 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-04-24 07:49 . 2010-02-06 10:42 -------- d-----w- c:\users\Kris\AppData\Roaming\uTorrent
2010-04-23 22:04 . 2010-03-16 04:19 215128 ----a-w- c:\windows\system32\PnkBstrB.exe
2010-04-23 21:12 . 2010-03-16 04:20 139128 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2010-04-16 08:50 . 2010-02-01 00:52 -------- d-----w- c:\program files\Special Forces
2010-04-13 20:00 . 2010-02-02 22:47 -------- d-----w- c:\program files\Cryptic Studios
2010-04-13 19:58 . 2010-02-09 04:27 -------- d-----w- c:\program files\Common Files\BioWare
2010-04-13 19:57 . 2010-02-09 04:27 -------- d-----w- c:\programdata\Media Center Programs
2010-04-07 21:19 . 2010-03-17 21:19 966104 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\CEAPI.dll
2010-04-07 21:19 . 2010-03-17 21:19 1265264 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\AAWService.exe
2010-03-24 18:17 . 2010-03-24 08:04 952768 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\681\AdobeARM.exe
2010-03-24 18:17 . 2010-03-24 08:04 952768 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\19765\AdobeARM.exe
2010-03-24 18:17 . 2010-03-24 08:04 952768 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\17437\AdobeARM.exe
2010-03-24 18:17 . 2010-03-24 08:04 70584 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\681\AdobeExtractFiles.dll
2010-03-24 18:17 . 2010-03-24 08:04 70584 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\19765\AdobeExtractFiles.dll
2010-03-24 18:17 . 2010-03-24 08:04 70584 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\17437\AdobeExtractFiles.dll
2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\681\ReaderUpdater.exe
2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\681\AcrobatUpdater.exe
2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\19765\ReaderUpdater.exe
2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\19765\AcrobatUpdater.exe
2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\17437\ReaderUpdater.exe
2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\programdata\Adobe\Reader\9.3\ARM\17437\AcrobatUpdater.exe
2010-03-24 01:18 . 2010-02-02 06:39 -------- d-----w- c:\programdata\Creative
2010-03-23 20:46 . 2010-03-23 20:46 94208 ----a-r- c:\users\Kris\AppData\Roaming\Microsoft\Installer\{6B976ADF-8AE8-434E-B282-A06C7F624D2F}\python_icon.exe
2010-03-23 20:20 . 2010-03-21 08:51 -------- d-----w- c:\program files\Bethesda Softworks
2010-03-23 19:38 . 2010-03-23 19:38 -------- d-----w- c:\program files\7-Zip
2010-03-23 06:05 . 2010-03-21 08:39 -------- d-----w- c:\program files\UltraISO
2010-03-23 06:03 . 2010-03-23 06:03 -------- d-----w- c:\programdata\2BrightSparks
2010-03-21 09:52 . 2010-03-21 09:52 -------- d-----w- c:\users\Kris\AppData\Roaming\Scooter Software
2010-03-21 08:32 . 2010-03-21 08:32 -------- d-----w- c:\program files\Conduit
2010-03-21 08:31 . 2010-03-21 08:31 -------- d-----w- c:\program files\Alcohol Soft
2010-03-18 04:09 . 2010-03-02 02:52 -------- d-----w- c:\program files\Mass Effect 2
2010-03-17 22:14 . 2010-03-17 20:53 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2010-03-17 21:19 . 2010-03-17 21:17 -------- d-----w- c:\programdata\Lavasoft
2010-03-17 21:19 . 2010-03-17 21:19 95024 ----a-w- c:\windows\system32\drivers\SBREDrv.sys
2010-03-17 21:19 . 2010-03-17 21:19 95024 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\Drivers\SBREDrv.sys
2010-03-17 21:19 . 2010-03-17 21:19 598368 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\EmailScanner.dll
2010-03-17 21:19 . 2010-03-17 21:56 15880 ----a-w- c:\windows\system32\lsdelete.exe
2010-03-17 21:19 . 2010-03-17 21:19 566608 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\sbap.dll
2010-03-17 21:19 . 2010-03-17 21:19 15880 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\lsdelete.exe
2010-03-17 21:19 . 2010-03-17 21:19 1230160 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\SBTE.dll
2010-03-17 21:19 . 2010-03-17 21:19 247120 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\SBRE.dll
2010-03-17 21:19 . 2010-03-17 21:19 6330848 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\Resources.dll
2010-03-17 21:19 . 2010-03-17 21:19 17480 ----a-w- c:\programdata\Lavasoft\Ad-Aware\Update\EmailScannerBridge.dll
2010-03-17 21:17 . 2010-03-17 21:17 -------- d-----w- c:\program files\Lavasoft
2010-03-17 21:17 . 2010-03-17 21:17 -------- dc-h--w- c:\programdata\{74D08EB8-01D1-4BAE-91E3-F30C1B031AC6}
2010-03-17 21:04 . 2010-03-17 20:53 -------- d-----w- c:\program files\Spybot - Search & Destroy
2010-03-17 07:15 . 2010-03-17 07:15 -------- d-----w- c:\program files\FLV Player
2010-03-16 15:45 . 2010-02-06 10:42 -------- d-----w- c:\program files\uTorrent
2010-03-16 04:20 . 2010-03-16 04:20 138056 ----a-w- c:\users\Kris\AppData\Roaming\PnkBstrK.sys
2010-03-16 04:20 . 2010-03-16 04:20 138056 ----a-w- c:\users\Kris\AppData\Roaming\PnkBstrK.sys
2010-03-16 04:19 . 2010-03-16 04:19 75064 ----a-w- c:\windows\system32\PnkBstrA.exe
2010-03-16 04:19 . 2010-03-16 04:19 2434856 ----a-w- c:\windows\system32\pbsvc_bc2.exe
2010-03-16 04:06 . 2010-03-16 04:06 -------- d-----w- c:\program files\Electronic Arts
2010-03-02 03:21 . 2010-03-02 03:21 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2010-03-02 03:05 . 2010-03-02 03:05 -------- d--h--r- c:\users\Kris\AppData\Roaming\SecuROM
2010-03-02 03:02 . 2010-03-02 03:02 -------- d-----w- c:\program files\AGEIA Technologies
2010-03-02 03:02 . 2010-03-02 03:02 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-03-02 02:47 . 2010-03-01 19:15 -------- d-----w- c:\users\Kris\AppData\Roaming\DAEMON Tools Lite
2010-03-01 19:16 . 2010-03-01 19:15 -------- d-----w- c:\program files\DAEMON Tools Lite
2010-03-01 19:16 . 2010-03-01 19:16 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-03-01 19:15 . 2010-03-01 19:15 -------- d-----w- c:\programdata\DAEMON Tools Lite
2010-02-24 14:16 . 2010-02-01 01:08 181632 ------w- c:\windows\system32\MpSigStub.exe
2010-02-04 15:53 . 2010-03-17 21:17 2954656 -c--a-w- c:\programdata\{74D08EB8-01D1-4BAE-91E3-F30C1B031AC6}\Ad-AwareInstaller.exe
2010-02-04 15:53 . 2010-03-17 21:19 64288 ----a-w- c:\windows\system32\drivers\Lbd.sys
2010-02-02 07:45 . 2010-02-23 21:08 2048 ----a-w- c:\windows\system32\tzres.dll
2010-02-02 06:39 . 2010-02-02 06:39 444952 ----a-w- c:\windows\system32\wrap_oal.dll
2010-02-02 06:39 . 2010-02-02 06:39 109080 ----a-w- c:\windows\system32\OpenAL32.dll
2010-02-02 04:56 . 2010-02-01 04:27 56816 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2010-02-01 02:13 . 2010-02-01 02:13 23052 ----a-w- c:\windows\system32\emptyregdb.dat
2010-02-01 00:51 . 2010-02-01 00:51 57560 ----a-w- c:\users\Kris\AppData\Local\GDIPFONTCACHEV1.DAT
2010-02-01 00:50 . 2010-02-01 00:50 0 ----a-w- c:\windows\ativpsrm.bin
2010-02-01 00:47 . 2010-02-01 00:47 10134 ----a-r- c:\users\Kris\AppData\Roaming\Microsoft\Installer\{84B587B3-94BA-CAFF-5824-DB8D2E7A72F4}\ARPPRODUCTICON.exe
2009-06-10 21:26 . 2009-07-14 02:04 9633792 --sha-r- c:\windows\Fonts\StaticCache.dat
2009-07-14 01:14 . 2009-07-13 23:42 396800 --sha-w- c:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_f12e83abb108c86c\WinMail.exe
.