==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-11-04 20:36 - 2013-11-04 20:36 - 00000000 ____D C:\FRST
2013-10-23 14:01 - 2013-10-23 14:01 - 00001970 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2013-10-16 13:17 - 2013-10-16 13:17 - 00000000 ____D C:\Users\KG\Documents\Fax
2013-10-11 17:16 - 2013-10-11 17:16 - 00002102 _____ C:\Users\KG\Desktop\nowintheusa2.html
2013-10-11 17:07 - 2013-10-11 17:07 - 00072364 _____ C:\Users\KG\Desktop\ARCHRISTY.ttf
==================== One Month Modified Files and Folders =======
2013-11-04 20:36 - 2013-11-04 20:36 - 00000000 ____D C:\FRST
2013-11-04 20:36 - 2013-04-26 15:43 - 00000000 ____D C:\users\KG
2013-10-23 14:01 - 2013-10-23 14:01 - 00001970 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2013-10-23 14:00 - 2013-04-26 17:14 - 01032416 _____ (AVAST Software) C:\Windows\System32\Drivers\aswSnx.sys
2013-10-23 14:00 - 2013-04-26 17:14 - 00409832 _____ (AVAST Software) C:\Windows\System32\Drivers\aswSP.sys
2013-10-23 14:00 - 2013-04-26 17:14 - 00205320 _____ C:\Windows\System32\Drivers\aswVmm.sys
2013-10-23 14:00 - 2013-04-26 17:14 - 00092544 _____ (AVAST Software) C:\Windows\System32\Drivers\aswRdr2.sys
2013-10-23 14:00 - 2013-04-26 17:14 - 00084328 _____ (AVAST Software) C:\Windows\System32\Drivers\aswMonFlt.sys
2013-10-23 14:00 - 2013-04-26 17:14 - 00065776 _____ C:\Windows\System32\Drivers\aswRvrt.sys
2013-10-23 14:00 - 2013-04-26 17:14 - 00065264 _____ (AVAST Software) C:\Windows\System32\Drivers\aswTdi.sys
2013-10-23 14:00 - 2013-04-26 17:14 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2013-10-23 14:00 - 2013-04-26 17:14 - 00038984 _____ (AVAST Software) C:\Windows\System32\Drivers\aswFsBlk.sys
2013-10-23 14:00 - 2011-01-17 10:45 - 00334648 _____ (AVAST Software) C:\Windows\System32\aswBoot.exe
2013-10-23 14:00 - 2010-09-27 01:27 - 01572828 _____ C:\Windows\WindowsUpdate.log
2013-10-23 13:58 - 2010-09-27 18:32 - 00000000 _____ C:\Windows\SysWOW64\config.nt
2013-10-23 13:56 - 2013-04-29 15:34 - 00000000 ___RD C:\Users\KG\SkyDrive
2013-10-23 13:55 - 2013-04-26 18:20 - 00005022 _____ C:\Windows\setupact.log
2013-10-21 11:37 - 2010-09-28 00:52 - 00803384 ____H C:\Windows\SysWOW64\mlfcache.dat
2013-10-21 08:58 - 2009-07-13 23:45 - 00016944 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-10-21 08:58 - 2009-07-13 23:45 - 00016944 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-10-21 08:54 - 2009-07-14 00:13 - 00718346 _____ C:\Windows\System32\PerfStringBackup.INI
2013-10-21 08:48 - 2009-07-13 23:45 - 09811672 _____ C:\Windows\System32\FNTCACHE.DAT
2013-10-21 08:47 - 2013-04-26 20:13 - 00006108 _____ C:\Windows\PFRO.log
2013-10-17 09:30 - 2010-09-27 19:39 - 00000000 ____D C:\Windows\Minidump
2013-10-16 13:18 - 2009-07-14 00:32 - 00000000 ____D C:\Windows\System32\FxsTmp
2013-10-16 13:17 - 2013-10-16 13:17 - 00000000 ____D C:\Users\KG\Documents\Fax
2013-10-14 16:08 - 2009-07-13 22:20 - 00000000 ___RD C:\Program Files (x86)
2013-10-11 17:20 - 2013-09-19 11:37 - 00000000 ____D C:\Users\KG\AppData\Roaming\FileZilla
2013-10-11 17:16 - 2013-10-11 17:16 - 00002102 _____ C:\Users\KG\Desktop\nowintheusa2.html
2013-10-11 17:08 - 2013-04-26 15:43 - 00569280 _____ C:\Users\KG\AppData\Local\GDIPFONTCACHEV1.DAT
2013-10-11 17:07 - 2013-10-11 17:07 - 00072364 _____ C:\Users\KG\Desktop\ARCHRISTY.ttf
2013-10-11 16:06 - 2013-04-26 17:32 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-10-11 16:06 - 2011-06-01 16:55 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-10-11 16:06 - 2009-07-13 22:20 - 00000000 ____D C:\Windows\SysWOW64
==================== Known DLLs (Whitelisted) ============
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe
[2011-04-28 07:19] - [2011-02-26 01:23] - 2870272 ____A (Microsoft Corporation) 0862495E0C825893DB75EF44FAEA8E93
C:\Windows\System32\winlogon.exe
[2010-09-27 01:40] - [2009-10-28 01:24] - 0389632 ____A (Microsoft Corporation) DA3E2A6FA9660CC75B471530CE88453A
C:\Windows\System32\wininit.exe
[2009-07-13 18:52] - [2009-07-13 20:39] - 0129024 ____A (Microsoft Corporation) 94355C28C1970635A31B3FE52EB7CEBA
C:\Windows\System32\svchost.exe
[2009-07-13 18:31] - [2009-07-13 20:39] - 0027136 ____A (Microsoft Corporation) C78655BC80301D76ED4FEF1C1EA40A7D
C:\Windows\System32\services.exe
[2009-07-13 18:19] - [2009-07-13 20:39] - 0328704 ____A (Microsoft Corporation) 24ACB7E5BE595468E3B9AA488B9B4FCB
C:\Windows\System32\User32.dll
[2009-07-13 18:38] - [2009-07-13 20:41] - 1008640 ____A (Microsoft Corporation) 72D7B3EA16946E8F0CF7458150031CC6
C:\Windows\System32\userinit.exe
[2009-07-13 18:50] - [2009-07-13 20:39] - 0030208 ____A (Microsoft Corporation) 6F8F1376A13114CC10C0E69274F5A4DE
C:\Windows\System32\Drivers\volsnap.sys
[2009-07-13 18:20] - [2009-07-13 20:45] - 0294992 ____A (Microsoft Corporation) 58F82EED8CA24B461441F9C3E4F0BF5C
==================== EXE ASSOCIATION =====================
HKLM\...\.exe: exefile => OK
HKLM\...\exefile\DefaultIcon: %1 => OK
HKLM\...\exefile\open\command: "%1" %* => OK
==================== Restore Points =========================
1
Restore point made on: 2013-10-23 13:59:43
==================== Memory info ===========================
Percentage of memory in use: 11%
Total physical RAM: 3071.23 MB
Available physical RAM: 2731.36 MB
Total Pagefile: 2895.88 MB
Available Pagefile: 2823.43 MB
Total Virtual: 2047.88 MB
Available Virtual: 1994.65 MB
==================== Drives ================================
Drive b: (RAMDisk) (Fixed) (Total:0.06 GB) (Free:0.06 GB) NTFS
Drive c: (Home) (Fixed) (Total:59.53 GB) (Free:13.44 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (Dev) (Fixed) (Total:49.29 GB) (Free:49.12 GB) NTFS
Drive e: (Office External 1TB) (Fixed) (Total:931.51 GB) (Free:477.06 GB) NTFS
Drive f: () (Removable) (Total:0.93 GB) (Free:0.93 GB) FAT
Drive g: (Programs) (Fixed) (Total:24.41 GB) (Free:24.28 GB) NTFS
Drive h: (Storage) (Fixed) (Total:159.18 GB) (Free:81.22 GB) NTFS
Drive x: (ReatogoPE) (CDROM) (Total:0.43 GB) (Free:0 GB) CDFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or

(Size: 60 GB) (Disk ID: 359E015C)
Partition 1: (Active) - (Size=60 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (Size: 233 GB) (Disk ID: 1F6589C5)
Partition 1: (Not Active) - (Size=49 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=24 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=159 GB) - (Type=07 NTFS)
========================================================
Disk: 2 (MBR Code: Windows XP) (Size: 932 GB) (Disk ID: 7F8A7D50)
Partition 1: (Not Active) - (Size=932 GB) - (Type=07 NTFS)
========================================================
Disk: 3 (Size: 963 MB) (Disk ID: 04DD5721)
Partition 1: (Active) - (Size=957 MB) - (Type=06)
LastRegBack: 2013-10-21 09:09
==================== End Of Log ============================