OTL log - Second Part
======

========== Files/Folders - Created Within 30 Days ==========

[2014/03/05 16:17:23 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014/03/05 16:12:49 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\ADMIN\Desktop\OTL.exe
[2014/03/05 16:12:18 | 001,037,734 | ---- | C] (Thisisu) -- C:\Documents and Settings\ADMIN\Desktop\JRT.exe
[2014/03/05 12:31:48 | 000,518,144 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2014/03/05 12:31:48 | 000,406,528 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2014/03/05 12:31:48 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2014/03/05 12:31:48 | 000,060,416 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2014/03/05 12:31:06 | 000,000,000 | ---D | C] -- C:\Qoobox
[2014/03/05 12:26:58 | 001,933,048 | ---- | C] (Bleeping Computer, LLC) -- C:\Documents and Settings\ADMIN\Desktop\iExplore.exe
[2014/03/05 12:26:17 | 001,933,048 | ---- | C] (Bleeping Computer, LLC) -- C:\Documents and Settings\ADMIN\Desktop\rkill.exe
[2014/03/05 12:23:53 | 005,187,267 | R--- | C] (Swearware) -- C:\Documents and Settings\ADMIN\Desktop\ComboFix.exe
[2014/03/05 08:14:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes' Anti-Malware (portable)
[2014/03/05 08:14:51 | 000,107,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys
[2014/03/05 08:13:14 | 000,052,312 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys
[2014/03/05 07:50:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\ADMIN\Desktop\RK_Quarantine
[2014/03/04 20:51:44 | 000,688,992 | R--- | C] (Swearware) -- C:\Documents and Settings\ADMIN\Desktop\dds.com
[2014/03/04 20:43:01 | 000,000,000 | ---D | C] -- C:\Avenger
[2014/03/04 15:09:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\ADMIN\Start Menu\Programs\FastClean PRO
[2014/03/04 15:08:13 | 000,000,000 | ---D | C] -- C:\Program Files\Essentials Codec Pack
[2014/03/04 15:08:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\ADMIN\Start Menu\Programs\Essentials Codec Pack
[2014/03/04 15:04:41 | 000,000,000 | ---D | C] -- C:\SOFTWARE-WinMediaPlayer Codec
[2014/02/25 09:57:45 | 000,000,000 | ---D | C] -- C:\HP Envy 700-149 Details
[2014/02/21 20:15:40 | 000,000,000 | ---D | C] -- C:\SOFTWARE-OKI Drivers
[2014/02/20 06:34:34 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft CAPICOM 2.1.0.2
[2014/02/18 20:12:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Microsoft Help
[2014/02/18 20:12:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\ADMIN\Local Settings\Application Data\Microsoft Help
[2014/02/18 13:43:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\VirtualizedApplications
[2014/02/18 11:28:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\ADMIN\Local Settings\Application Data\SoftGrid Client
[2014/02/18 11:28:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\ADMIN\Application Data\SoftGrid Client
[2014/02/18 11:25:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Microsoft Office Home and Student (English)
[2014/02/18 11:20:35 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER
[2014/02/18 11:20:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Documents\SoftGrid Client
[2014/02/18 11:20:12 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Application Virtualization Client
[2014/02/18 11:20:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Microsoft
[2014/02/18 11:15:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\ADMIN\Application Data\TP
[2014/02/18 08:33:51 | 000,000,000 | ---D | C] -- C:\SOFTWARE-Microsoft Office 2010 (Paid via SoftwareKing)
[2014/02/15 18:18:55 | 000,000,000 | ---D | C] -- C:\WIN 8 Tech Stuff
[2014/02/15 10:18:20 | 000,000,000 | ---D | C] -- C:\SOFTWARE-ClassicShell
[2014/02/15 08:48:51 | 000,000,000 | ---D | C] -- C:\SOFTWARE-PowerISO
[2014/02/10 11:35:40 | 000,107,256 | ---- | C] (Trusteer Ltd.) -- C:\WINDOWS\System32\drivers\RapportKELL.sys
[2014/02/10 08:36:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\ADMIN\Application Data\BHOK
[2014/02/10 07:50:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\StudioTax 2013
[2014/02/10 07:50:20 | 000,000,000 | ---D | C] -- C:\Program Files\BHOK IT Consulting
[2014/02/10 07:40:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\TaxFreeway 2013
[2014/02/10 07:13:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\TaxFreeway 2013
[2014/02/10 07:13:49 | 000,000,000 | ---D | C] -- C:\Program Files\Entropy Technology Ltd
[2014/02/04 07:21:41 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\URTTemp

========== Files - Modified Within 30 Days ==========

[2014/03/05 16:55:00 | 000,000,978 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1202660629-1935655697-839522115-1003UA.job
[2014/03/05 16:55:00 | 000,000,830 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2014/03/05 16:53:00 | 000,000,886 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2014/03/05 16:41:38 | 000,000,348 | ---- | M] () -- C:\WINDOWS\tasks\Windows Codec Update Service.job
[2014/03/05 16:30:47 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2014/03/05 16:27:39 | 000,000,882 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2014/03/05 16:27:38 | 000,000,432 | ---- | M] () -- C:\WINDOWS\tasks\SogouImeMgr.job
[2014/03/05 16:27:26 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2014/03/05 16:12:50 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\ADMIN\Desktop\OTL.exe
[2014/03/05 16:12:20 | 001,037,734 | ---- | M] (Thisisu) -- C:\Documents and Settings\ADMIN\Desktop\JRT.exe
[2014/03/05 16:10:54 | 001,244,192 | ---- | M] () -- C:\Documents and Settings\ADMIN\Desktop\adwcleaner.exe
[2014/03/05 16:04:27 | 000,002,497 | ---- | M] () -- C:\Documents and Settings\ADMIN\Desktop\Microsoft Word.lnk
[2014/03/05 15:51:53 | 000,002,265 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Skype.lnk
[2014/03/05 15:17:41 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2014/03/05 14:16:59 | 005,187,267 | R--- | M] (Swearware) -- C:\Documents and Settings\ADMIN\Desktop\ComboFix.exe
[2014/03/05 12:27:00 | 001,933,048 | ---- | M] (Bleeping Computer, LLC) -- C:\Documents and Settings\ADMIN\Desktop\iExplore.exe
[2014/03/05 12:26:20 | 001,933,048 | ---- | M] (Bleeping Computer, LLC) -- C:\Documents and Settings\ADMIN\Desktop\rkill.exe
[2014/03/05 10:56:10 | 000,107,224 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys
[2014/03/05 10:55:28 | 000,052,312 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys
[2014/03/05 07:43:45 | 003,819,008 | ---- | M] () -- C:\Documents and Settings\ADMIN\Desktop\RogueKiller.exe
[2014/03/04 20:51:44 | 000,688,992 | R--- | M] (Swearware) -- C:\Documents and Settings\ADMIN\Desktop\dds.com
[2014/03/04 15:21:31 | 000,000,046 | ---- | M] () -- C:\Documents and Settings\ADMIN\Application Data\WB.CFG
[2014/03/04 15:09:27 | 000,001,992 | ---- | M] () -- C:\Documents and Settings\ADMIN\Desktop\FastClean PRO.lnk
[2014/03/04 15:08:23 | 000,000,829 | ---- | M] () -- C:\Documents and Settings\ADMIN\Desktop\Media Player Classic.lnk
[2014/03/04 06:59:57 | 000,001,813 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Google Chrome.lnk
[2014/03/01 20:50:43 | 000,001,065 | ---- | M] () -- C:\WINDOWS\winamp.ini
[2014/02/28 21:55:02 | 000,000,926 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1202660629-1935655697-839522115-1003Core.job
[2014/02/21 08:20:22 | 000,002,495 | ---- | M] () -- C:\Documents and Settings\ADMIN\Desktop\Microsoft Excel.lnk
[2014/02/20 06:50:20 | 000,343,256 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2014/02/20 06:46:55 | 000,633,486 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2014/02/20 06:46:55 | 000,134,984 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2014/02/14 06:18:00 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2014/02/12 08:38:30 | 000,000,702 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\AVG 2014.lnk
[2014/02/10 11:35:40 | 000,107,256 | ---- | M] (Trusteer Ltd.) -- C:\WINDOWS\System32\drivers\RapportKELL.sys
[2014/02/10 09:44:32 | 000,017,071 | ---- | M] () -- C:\Documents and Settings\ADMIN\My Documents\newtaxfile.X13
[2014/02/10 09:09:47 | 000,054,272 | ---- | M] () -- C:\Documents and Settings\ADMIN\My Documents\KennethKwan.13t
[2014/02/10 09:08:19 | 000,009,342 | ---- | M] () -- C:\Documents and Settings\ADMIN\My Documents\KENNETHKWAN_2013.TAX
[2014/02/10 08:38:11 | 000,161,744 | ---- | M] () -- C:\Documents and Settings\ADMIN\My Documents\KENNETHKWAN_2013.pdf
[2014/02/10 08:36:22 | 000,054,272 | ---- | M] () -- C:\Documents and Settings\ADMIN\My Documents\KennethKwan.13t.backup
[2014/02/10 07:50:33 | 000,001,850 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\StudioTax 2013.lnk
[2014/02/10 07:47:05 | 000,004,664 | ---- | M] () -- C:\Documents and Settings\ADMIN\My Documents\KENNETH KWAN_2013.TAX

========== Files Created - No Company Name ==========

[2014/03/05 16:10:48 | 001,244,192 | ---- | C] () -- C:\Documents and Settings\ADMIN\Desktop\adwcleaner.exe
[2014/03/05 12:31:48 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2014/03/05 12:31:48 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2014/03/05 12:31:48 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2014/03/05 12:31:48 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2014/03/05 12:31:48 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2014/03/05 07:43:43 | 003,819,008 | ---- | C] () -- C:\Documents and Settings\ADMIN\Desktop\RogueKiller.exe
[2014/03/04 15:21:31 | 000,000,046 | ---- | C] () -- C:\Documents and Settings\ADMIN\Application Data\WB.CFG
[2014/03/04 15:09:38 | 000,000,348 | ---- | C] () -- C:\WINDOWS\tasks\Windows Codec Update Service.job
[2014/03/04 15:09:27 | 000,001,992 | ---- | C] () -- C:\Documents and Settings\ADMIN\Desktop\FastClean PRO.lnk
[2014/03/04 15:08:23 | 000,000,829 | ---- | C] () -- C:\Documents and Settings\ADMIN\Desktop\Media Player Classic.lnk
[2014/02/10 20:15:08 | 000,183,328 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2014/02/10 09:44:32 | 000,017,071 | ---- | C] () -- C:\Documents and Settings\ADMIN\My Documents\newtaxfile.X13
[2014/02/10 09:08:16 | 000,009,342 | ---- | C] () -- C:\Documents and Settings\ADMIN\My Documents\KENNETHKWAN_2013.TAX
[2014/02/10 08:41:29 | 000,054,272 | ---- | C] () -- C:\Documents and Settings\ADMIN\My Documents\KennethKwan.13t.backup
[2014/02/10 08:38:07 | 000,161,744 | ---- | C] () -- C:\Documents and Settings\ADMIN\My Documents\KENNETHKWAN_2013.pdf
[2014/02/10 08:36:14 | 000,054,272 | ---- | C] () -- C:\Documents and Settings\ADMIN\My Documents\KennethKwan.13t
[2014/02/10 07:50:33 | 000,001,850 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\StudioTax 2013.lnk
[2014/02/10 07:47:05 | 000,004,664 | ---- | C] () -- C:\Documents and Settings\ADMIN\My Documents\KENNETH KWAN_2013.TAX
[2013/12/18 08:47:21 | 000,000,147 | ---- | C] () -- C:\WINDOWS\ScreenHunter.INI
[2013/08/30 19:37:00 | 000,379,924 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-S-1-5-21-1202660629-1935655697-839522115-1003-0.dat
[2013/08/30 19:36:59 | 000,320,154 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-System.dat
[2013/04/09 10:51:07 | 000,000,134 | ---- | C] () -- C:\WINDOWS\_delis32.ini
[2013/04/04 19:06:15 | 000,015,616 | ---- | C] () -- C:\WINDOWS\System32\drivers\TrueSight.sys
[2013/03/11 19:49:46 | 000,204,848 | ---- | C] () -- C:\WINDOWS\System32\gswin32c.exe
[2013/03/11 19:49:40 | 000,748,160 | ---- | C] () -- C:\WINDOWS\System32\Co2c40en.dll
[2013/03/11 19:49:40 | 000,054,272 | ---- | C] () -- C:\WINDOWS\System32\P2irdao.dll
[2013/03/11 19:49:40 | 000,050,176 | ---- | C] () -- C:\WINDOWS\System32\P2ctdao.dll
[2013/03/11 19:49:40 | 000,018,944 | ---- | C] ( ) -- C:\WINDOWS\System32\Implode.dll
[2013/01/29 15:03:27 | 000,237,568 | ---- | C] () -- C:\WINDOWS\System32\lame_enc.dll
[2012/11/25 06:28:03 | 000,000,954 | ---- | C] () -- C:\Documents and Settings\ADMIN\Application Data\CoreAVC.ini
[2012/11/23 08:51:37 | 000,000,020 | ---- | C] () -- C:\WINDOWS\System32\pub_store.dat
[2012/11/16 12:35:31 | 000,112,032 | ---- | C] () -- C:\WINDOWS\System32\QQPCUrlLoader.exe
[2012/11/16 12:32:43 | 000,054,468 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat
[2012/08/11 12:34:06 | 000,027,520 | ---- | C] () -- C:\Documents and Settings\ADMIN\Local Settings\Application Data\dt.dat
[2012/07/25 21:09:31 | 000,000,000 | ---- | C] () -- C:\WINDOWS\pcfriend.INI
[2012/07/01 20:03:48 | 000,558,133 | ---- | C] () -- C:\WINDOWS\System32\sqlite3.dll
[2012/06/21 17:38:39 | 000,000,112 | ---- | C] () -- C:\WINDOWS\ActiveSkin.INI
[2012/05/23 16:39:35 | 000,000,041 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\.zreglib
[2012/05/22 14:24:47 | 000,000,073 | ---- | C] () -- C:\WINDOWS\cdplayer.ini
[2012/05/22 14:24:09 | 000,001,534 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\ss.ini
[2012/04/13 09:33:40 | 000,000,000 | ---- | C] () -- C:\WINDOWS\iPlayer.INI
[2008/07/28 13:13:44 | 000,040,960 | ---- | C] () -- C:\Program Files\Uninstall_CDS.exe
[2008/07/14 06:10:51 | 000,000,088 | ---- | C] () -- C:\Documents and Settings\ADMIN\default.pls
[2008/07/12 10:48:48 | 000,075,264 | ---- | C] () -- C:\Documents and Settings\ADMIN\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

========== ZeroAccess Check ==========

[2008/07/27 13:33:38 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2010/12/20 17:15:52 | 001,510,400 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2009/02/09 07:10:48 | 000,473,600 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2008/04/13 19:12:08 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

========== LOP Check ==========

[2013/10/02 08:33:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\AVG2014
[2014/02/10 08:36:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\BHOK
[2013/11/23 07:55:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\Blueberry
[2014/02/26 07:52:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\Canon
[2008/08/06 00:43:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2012/06/16 12:38:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\DVDVideoSoft
[2013/08/30 07:44:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\ElevatedDiagnostics
[2012/04/04 16:58:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\Free Sound Recorder
[2013/11/07 08:13:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\Free-PDF-to-Word.com
[2012/11/17 08:34:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\Kingsoft
[2013/11/23 07:54:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\LogSys
[2012/11/17 08:43:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\Maxthon3
[2011/12/25 06:28:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\Nitro PDF
[2013/04/10 18:43:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\PPStream
[2012/11/24 11:39:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\SEGameCenter
[2012/06/02 07:23:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\Sevas-S
[2014/02/19 08:33:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\SoftGrid Client
[2013/03/12 16:54:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\Softland
[2013/03/13 17:36:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\SogouInput
[2013/06/30 21:08:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\SogouPY
[2012/11/24 11:29:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\SogouPY.users
[2012/01/05 16:38:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\SumatraPDF
[2013/05/03 10:21:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\Thunderbird
[2014/02/18 11:30:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\TP
[2012/09/26 17:40:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\TuneUp Software
[2012/11/29 19:00:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\uTorrent
[2012/11/17 08:43:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\Wandoujia2
[2012/06/21 05:40:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ADMIN\Application Data\wtxpcom
[2012/11/03 02:15:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\0C8E61B26569A9A100000C8E5529AF40
[2013/10/02 08:31:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVG2013
[2013/10/02 13:05:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVG2014
[2011/01/19 13:56:33 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\Common Files
[2014/02/10 07:13:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Entropy Technology Ltd
[2012/11/17 08:43:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Kingsoft
[2013/06/23 23:04:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\KuaiWan
[2013/11/23 07:53:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\LogSys
[2009/06/12 17:42:07 | 000,000,000 | --SD | M] -- C:\Documents and Settings\All Users\Application Data\Memeo
[2014/03/05 09:44:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MFAData
[2011/12/25 06:26:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Nitro PDF
[2014/01/07 13:32:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\OPPU
[2013/07/03 08:59:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\regid.1986-12.com.adobe
[2012/06/02 05:48:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SlySoft
[2012/12/02 06:08:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Thunder Network
[2011/12/26 08:02:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Trusteer
[2014/02/18 13:43:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\VirtualizedApplications
[2012/11/23 08:54:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Xunlei
[2014/03/04 20:37:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\YouTube Downloader
[2011/12/16 11:19:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2012/10/13 08:31:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Default User\Application Data\TuneUp Software
[2013/03/12 16:54:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\Softland
[2012/11/24 18:31:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Application Data\SogouPY.users

========== Purity Check ==========



========== Files - Unicode (All) ==========
[2013/12/29 06:04:31 | 000,036,864 | ---- | M] ()(C:\Documents and Settings\ADMIN\My Documents\??????.doc) -- C:\Documents and Settings\ADMIN\My Documents\住宅租赁合約.doc
[2013/12/26 17:47:18 | 000,036,864 | ---- | C] ()(C:\Documents and Settings\ADMIN\My Documents\??????.doc) -- C:\Documents and Settings\ADMIN\My Documents\住宅租赁合約.doc
[2012/11/23 15:08:23 | 000,000,000 | ---D | M](C:\Documents and Settings\ADMIN\Application Data\????) -- C:\Documents and Settings\ADMIN\Application Data\迅雷游戏
[2012/11/23 15:08:23 | 000,000,000 | ---D | M](C:\Documents and Settings\ADMIN\Application Data\????) -- C:\Documents and Settings\ADMIN\Application Data\迅雷游戏
[2012/11/23 15:08:05 | 000,000,000 | ---D | M](C:\Program Files\????) -- C:\Program Files\迅雷游戏
[2012/11/23 15:08:05 | 000,000,000 | ---D | M](C:\Program Files\????) -- C:\Program Files\迅雷游戏
[2012/11/22 20:07:10 | 000,000,832 | ---- | M] ()(C:\Documents and Settings\ADMIN\Application Data\Microsoft\Internet Explorer\Quick Launch\?????.lnk) -- C:\Documents and Settings\ADMIN\Application Data\Microsoft\Internet Explorer\Quick Launch\百度浏览器.lnk
[2012/11/22 20:07:10 | 000,000,832 | ---- | C] ()(C:\Documents and Settings\ADMIN\Application Data\Microsoft\Internet Explorer\Quick Launch\?????.lnk) -- C:\Documents and Settings\ADMIN\Application Data\Microsoft\Internet Explorer\Quick Launch\百度浏览器.lnk
[2012/11/16 12:32:24 | 000,000,810 | ---- | M] ()(C:\Documents and Settings\ADMIN\Application Data\Microsoft\Internet Explorer\Quick Launch\QQ??.lnk) -- C:\Documents and Settings\ADMIN\Application Data\Microsoft\Internet Explorer\Quick Launch\QQ音乐.lnk
[2012/11/16 12:32:24 | 000,000,810 | ---- | C] ()(C:\Documents and Settings\ADMIN\Application Data\Microsoft\Internet Explorer\Quick Launch\QQ??.lnk) -- C:\Documents and Settings\ADMIN\Application Data\Microsoft\Internet Explorer\Quick Launch\QQ音乐.lnk
[2012/07/23 14:21:14 | 000,027,136 | ---- | M] ()(C:\Documents and Settings\ADMIN\My Documents\??.doc) -- C:\Documents and Settings\ADMIN\My Documents\药能.doc
[2012/07/23 14:21:13 | 000,027,136 | ---- | C] ()(C:\Documents and Settings\ADMIN\My Documents\??.doc) -- C:\Documents and Settings\ADMIN\My Documents\药能.doc
(C:\Program Files\????) -- C:\Program Files\迅雷游戏
(C:\Documents and Settings\All Users\Start Menu\Programs\?????????) -- C:\Documents and Settings\All Users\Start Menu\Programs\谷歌金山词霸合作版
(C:\Documents and Settings\All Users\Start Menu\Programs\???????) -- C:\Documents and Settings\All Users\Start Menu\Programs\搜狗拼音输入法
(C:\Documents and Settings\All Users\Start Menu\Programs\????) -- C:\Documents and Settings\All Users\Start Menu\Programs\迅雷软件
(C:\Documents and Settings\All Users\Start Menu\Programs\????) -- C:\Documents and Settings\All Users\Start Menu\Programs\腾讯软件
(C:\Documents and Settings\ADMIN\Start Menu\Programs\??????) -- C:\Documents and Settings\ADMIN\Start Menu\Programs\迅雷游戏盒子
(C:\Documents and Settings\ADMIN\Start Menu\Programs\?????) -- C:\Documents and Settings\ADMIN\Start Menu\Programs\百度浏览器
(C:\Documents and Settings\ADMIN\Start Menu\Programs\????) -- C:\Documents and Settings\ADMIN\Start Menu\Programs\腾讯软件
(C:\Documents and Settings\ADMIN\Application Data\????) -- C:\Documents and Settings\ADMIN\Application Data\迅雷游戏

< End of report >

======
Note: The FastClean PRO shortcut icon is still on the Desktop.
***********************************************