========== Files - Modified Within 30 Days ========== [2012/04/23 19:40:56 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2012/04/23 19:40:38 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2012/04/23 19:37:02 | 000,220,226 | ---- | M] () -- C:\Documents and Settings\Blake\Desktop\Malicious URL Blocked Screenshot - c2pokerface.com
[2012/04/23 19:35:15 | 000,135,521 | ---- | M] () -- C:\Documents and Settings\Blake\Desktop\Malicious URL Blocked Screenshot - Ololoshaface.com
[2012/04/23 19:26:42 | 000,000,031 | ---- | M] () -- C:\WINDOWS\System32\bbcap.err
[2012/04/23 19:23:03 | 000,594,944 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Blake\Desktop\OTL.exe
[2012/04/23 19:20:43 | 000,647,728 | ---- | M] (Xceed Software Inc. 1-450-442-2626 info@xceedsoft.com
www.xceedsoft.com) -- C:\Documents and Settings\Blake\Desktop\R92578.EXE
[2012/04/23 18:00:00 | 000,000,444 | ---- | M] () -- C:\WINDOWS\tasks\ParetoLogic Registration3.job
[2012/04/23 14:30:31 | 000,920,096 | ---- | M] () -- C:\Documents and Settings\Blake\My Documents\Norton_Removal_Tool.exe
[2012/04/22 15:22:03 | 000,002,291 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\CIS 2.2.lnk
[2012/04/22 14:42:07 | 000,002,625 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2012/04/22 14:40:31 | 000,001,689 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\avast! Internet Security.lnk
[2012/04/22 13:37:45 | 000,000,510 | ---- | M] () -- C:\WINDOWS\tasks\SUPERAntiSpyware Scheduled Task dca25f34-0594-4a04-98f4-4bdbf39a5d71.job
[2012/04/22 13:37:44 | 000,000,510 | ---- | M] () -- C:\WINDOWS\tasks\SUPERAntiSpyware Scheduled Task b03b0939-7f9d-4339-a6da-85f1379178b4.job
[2012/04/22 12:43:56 | 000,001,678 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\SUPERAntiSpyware Professional.lnk
[2012/04/22 12:36:23 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2012/04/22 12:16:52 | 000,000,784 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes Anti-Malware.lnk
[2012/04/22 11:38:22 | 000,000,045 | ---- | M] () -- C:\0.bak
[2012/04/22 11:18:43 | 000,000,838 | ---- | M] () -- C:\Documents and Settings\Blake\Desktop\ParetoLogic PC Health Advisor.lnk
[2012/04/22 11:18:42 | 000,000,418 | ---- | M] () -- C:\WINDOWS\tasks\ParetoLogic Update Version3.job
[2012/04/22 11:18:41 | 000,000,376 | ---- | M] () -- C:\WINDOWS\tasks\PC Health Advisor Defrag.job
[2012/04/22 11:18:40 | 000,000,358 | ---- | M] () -- C:\WINDOWS\tasks\PC Health Advisor.job
[2012/04/22 11:18:11 | 005,248,608 | ---- | M] (ParetoLogic Inc.) -- C:\Documents and Settings\Blake\My Documents\ParetoLogic PC Health Advisor.exe
[2012/04/20 17:16:02 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2012/04/20 06:56:34 | 000,001,116 | ---- | M] () -- C:\WINDOWS\System32\C__Documents and Settings_NetworkService_Local Settings_Temporary Internet Files_Content.IE5_YTO161MN_CASSVQM3.HTM
[2012/04/12 08:22:02 | 000,000,790 | ---- | M] () -- C:\Documents and Settings\Blake\Application Data\Microsoft\Internet Explorer\Quick Launch\Microsoft Outlook.lnk
[2012/04/11 19:06:12 | 000,501,638 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2012/04/11 19:06:12 | 000,089,146 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2012/04/11 19:03:45 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2012/04/04 15:56:40 | 000,022,344 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2012/04/04 13:10:01 | 000,241,536 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2012/04/01 18:00:50 | 000,001,824 | ---- | M] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Acrobat Assistant.lnk
[2012/04/01 18:00:50 | 000,001,758 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Adobe Acrobat 6.0 Standard.lnk
[2012/03/30 11:12:33 | 000,000,773 | ---- | M] () -- C:\Documents and Settings\Blake\Desktop\PCLaw®.lnk
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ========== [2012/04/23 19:37:02 | 000,220,226 | ---- | C] () -- C:\Documents and Settings\Blake\Desktop\Malicious URL Blocked Screenshot - c2pokerface.com
[2012/04/23 19:35:15 | 000,135,521 | ---- | C] () -- C:\Documents and Settings\Blake\Desktop\Malicious URL Blocked Screenshot - Ololoshaface.com
[2012/04/23 15:28:15 | 000,920,096 | ---- | C] () -- C:\Documents and Settings\Blake\My Documents\Norton_Removal_Tool.exe
[2012/04/22 14:40:31 | 000,001,689 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\avast! Internet Security.lnk
[2012/04/22 12:44:20 | 000,000,510 | ---- | C] () -- C:\WINDOWS\tasks\SUPERAntiSpyware Scheduled Task dca25f34-0594-4a04-98f4-4bdbf39a5d71.job
[2012/04/22 12:44:20 | 000,000,510 | ---- | C] () -- C:\WINDOWS\tasks\SUPERAntiSpyware Scheduled Task b03b0939-7f9d-4339-a6da-85f1379178b4.job
[2012/04/22 12:43:56 | 000,001,678 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\SUPERAntiSpyware Professional.lnk
[2012/04/22 12:36:23 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2012/04/22 12:16:52 | 000,000,784 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes Anti-Malware.lnk
[2012/04/22 12:05:01 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\ChCfg.exe
[2012/04/22 11:38:21 | 000,000,045 | ---- | C] () -- C:\0.bak
[2012/04/22 11:19:17 | 000,000,444 | ---- | C] () -- C:\WINDOWS\tasks\ParetoLogic Registration3.job
[2012/04/22 11:18:42 | 000,000,838 | ---- | C] () -- C:\Documents and Settings\Blake\Desktop\ParetoLogic PC Health Advisor.lnk
[2012/04/22 11:18:41 | 000,000,418 | ---- | C] () -- C:\WINDOWS\tasks\ParetoLogic Update Version3.job
[2012/04/22 11:18:40 | 000,000,376 | ---- | C] () -- C:\WINDOWS\tasks\PC Health Advisor Defrag.job
[2012/04/22 11:18:38 | 000,000,358 | ---- | C] () -- C:\WINDOWS\tasks\PC Health Advisor.job
[2012/04/20 19:00:14 | 001,089,032 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2012/04/20 06:56:34 | 000,001,116 | ---- | C] () -- C:\WINDOWS\System32\C__Documents and Settings_NetworkService_Local Settings_Temporary Internet Files_Content.IE5_YTO161MN_CASSVQM3.HTM
[2012/04/04 13:12:53 | 000,000,790 | ---- | C] () -- C:\Documents and Settings\Blake\Application Data\Microsoft\Internet Explorer\Quick Launch\Microsoft Outlook.lnk
[2012/02/15 09:04:30 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll
[2012/01/16 19:44:17 | 000,035,080 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat
[2012/01/02 12:50:56 | 000,000,256 | ---- | C] () -- C:\WINDOWS\System32\pool.bin
[2012/01/01 16:58:52 | 000,430,080 | ---- | C] () -- C:\WINDOWS\System32\ZSHP1018.EXE
[2012/01/01 16:02:10 | 000,982,196 | ---- | C] () -- C:\WINDOWS\System32\igkrng500.bin
[2012/01/01 16:02:10 | 000,417,344 | ---- | C] () -- C:\WINDOWS\System32\igcompkrng500.bin
[2012/01/01 15:18:48 | 000,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2012/01/01 15:08:16 | 000,000,008 | ---- | C] () -- C:\WINDOWS\System32\drivers\rtkhdaud.dat
[2012/01/01 15:02:26 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2012/01/01 14:58:28 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2012/01/01 09:53:08 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2012/01/01 09:52:07 | 000,241,536 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT