| TrojanDownloader: Win32/Renos.JM Hier die OTL.txt Zitat:
OTL logfile created on: 02.02.2010 19:34:52 - Run 1
OTL by OldTimer - Version 3.1.27.1 Folder = C:\Users\Heiner\Desktop
64bit-Windows Vista Ultimate Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 7.0.6002.18005)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
4,00 Gb Total Physical Memory | 3,00 Gb Available Physical Memory | 65,00% Memory free
10,00 Gb Paging File | 8,00 Gb Available in Paging File | 85,00% Paging File free
Paging file location(s): c:\pagefile.sys 6139 6139 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 244,14 Gb Total Space | 21,89 Gb Free Space | 8,96% Space Free | Partition Type: NTFS
Drive D: | 221,61 Gb Total Space | 51,19 Gb Free Space | 23,10% Space Free | Partition Type: NTFS
Drive E: | 7,36 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: WOHNI
Current User Name: Heiner
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Include 64bit Scans
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal ========== Processes (SafeList) ==========
PRC - C:\Users\Heiner\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files (x86)\ICQ6Toolbar\ICQ Service.exe ()
PRC - C:\Program Files (x86)\Opera\opera.exe (Opera Software)
PRC - C:\Windows\SysWOW64\PnkBstrA.exe ()
PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
PRC - C:\Program Files (x86)\iTunes\iTunesHelper.exe (Apple Inc.)
PRC - C:\Program Files (x86)\iPod\bin\iPodService.exe (Apple Inc.)
PRC - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe (Apple Inc.)
PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
PRC - C:\Program Files (x86)\TeamViewer\Version4\TeamViewer_Service.exe (TeamViewer GmbH)
PRC - C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc.)
PRC - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe (Nero AG)
PRC - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe (Intel Corporation)
PRC - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Intel Corporation)
PRC - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe (Rocket Division Software)
PRC - C:\Programme\SetPoint\x86\SetPoint32.exe () ========== Modules (SafeList) ==========
MOD - C:\Users\Heiner\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Windows\SysWOW64\comdlg32.dll (Microsoft Corporation)
MOD - C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4016_none_d0893820442e7fe4\msvcr80.dll (Microsoft Corporation)
MOD - C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4016_none_d0893820442e7fe4\msvcp80.dll (Microsoft Corporation)
MOD - C:\Programme\SetPoint\x86\lgscroll.dll (Logitech Inc.) ========== Win32 Services (SafeList) ==========
SRV:64bit: - (TuneUp.Defrag) -- C:\Windows\SysNative\TuneUpDefragService.exe (TuneUp Software GmbH)
SRV:64bit: - (FontCache) -- C:\Windows\SysNative\FntCache.dll (Microsoft Corporation)
SRV:64bit: - (FLEXnet Licensing Service 64) -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe (Acresso Software Inc.)
SRV:64bit: - (UmRdpService) -- C:\Windows\SysNative\umrdp.dll (Microsoft Corporation)
SRV:64bit: - (CscService) -- C:\Windows\SysNative\cscsvc.dll (Microsoft Corporation)
SRV:64bit: - (BthServ) -- C:\Windows\SysNative\bthserv.dll (Microsoft Corporation)
SRV:64bit: - (wbengine) -- C:\Windows\SysNative\wbengine.exe (Microsoft Corporation)
SRV:64bit: - (UxTuneUp) -- C:\Windows\SysNative\uxtuneup.dll (TuneUp Software GmbH)
SRV:64bit: - (AppMgmt) -- C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
SRV:64bit: - (Fax) -- C:\Windows\SysNative\fxssvc.exe (Microsoft Corporation)
SRV - (ICQ Service) -- C:\Program Files (x86)\ICQ6Toolbar\ICQ Service.exe ()
SRV - (gupdate) Google Update Service (gupdate) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (Google Inc.)
SRV - (PnkBstrA) -- C:\Windows\SysWOW64\PnkBstrA.exe ()
SRV - (AntiVirService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
SRV - (AntiVirSchedulerService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
SRV - (iPod Service) -- C:\Program Files (x86)\iPod\bin\iPodService.exe (Apple Inc.)
SRV - (Apple Mobile Device) -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe (Apple Inc.)
SRV - (FLEXnet Licensing Service) -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Acresso Software Inc.)
SRV - (clr_optimization_v2.0.50727_64) -- C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (gusvc) -- C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe (Google)
SRV - (TeamViewer4) -- C:\Program Files (x86)\TeamViewer\Version4\TeamViewer_Service.exe (TeamViewer GmbH)
SRV - (Bonjour Service) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc.)
SRV - (Nero BackItUp Scheduler 4.0) -- C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe (Nero AG)
SRV - (Adobe LM Service) -- C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe (Adobe Systems)
SRV - (Adobe Version Cue CS4) -- C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe (Adobe Systems Incorporated)
SRV - (IAANTMON) Intel(R) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe (Intel Corporation)
SRV - (EvtEng) -- C:\Programme\Intel\WiFi\bin\EvtEng.exe (Intel(R) Corporation)
SRV - (RegSrvc) -- C:\Programme\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel(R) Corporation)
SRV - (UxTuneUp) -- C:\Windows\SysWOW64\uxtuneup.dll (TuneUp Software GmbH)
SRV - (StarWindServiceAE) -- C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe (Rocket Division Software)
SRV - (MSDTC) -- C:\Windows\SysWOW64\Msdtc [2006.11.02 14:34:14 | 000,000,000 | ---D | M]
SRV - (vds) -- C:\Windows\SysWOW64\wbem\vds.mof ()
SRV - (VSS) -- C:\Windows\SysWOW64\wbem\vss.mof ()
SRV - (FirebirdServerMAGIXInstance) -- C:\Program Files (x86)\MAGIX\Common\Database\bin\fbserver.exe (MAGIX®) ========== Driver Services (SafeList) ==========
DRV:64bit: - (avgntflt) -- C:\Windows\SysNative\DRIVERS\avgntflt.sys (Avira GmbH)
DRV:64bit: - (WpdUsb) -- C:\Windows\SysNative\DRIVERS\wpdusb.sys (Microsoft Corporation)
DRV:64bit: - (USBAAPL64) -- C:\Windows\SysNative\Drivers\usbaapl64.sys (Apple, Inc.)
DRV:64bit: - (fvevol) -- C:\Windows\SysNative\DRIVERS\fvevol.sys (Microsoft Corporation)
DRV:64bit: - (BTHPORT) -- C:\Windows\SysNative\Drivers\BTHport.sys (Microsoft Corporation)
DRV:64bit: - (RFCOMM) Bluetooth-Gerät (RFCOMM-Protokoll-TDI) -- C:\Windows\SysNative\DRIVERS\rfcomm.sys (Microsoft Corporation)
DRV:64bit: - (BthEnum) -- C:\Windows\SysNative\DRIVERS\BthEnum.sys (Microsoft Corporation)
DRV:64bit: - (BTHUSB) -- C:\Windows\SysNative\Drivers\BTHUSB.sys (Microsoft Corporation)
DRV:64bit: - (usbaudio) USB-Audiotreiber (WDM) -- C:\Windows\SysNative\drivers\usbaudio.sys (Microsoft Corporation)
DRV:64bit: - (CSC) -- C:\Windows\SysNative\drivers\csc.sys (Microsoft Corporation)
DRV:64bit: - (GEARAspiWDM) -- C:\Windows\SysNative\Drivers\GEARAspiWDM.sys (GEAR Software Inc.)
DRV:64bit: - (libusb0) -- C:\Windows\SysNative\drivers\libusb0.sys (LibUsb-Win32)
DRV:64bit: - (sptd) -- C:\Windows\SysNative\Drivers\sptd.sys ()
DRV:64bit: - (RTL8169) -- C:\Windows\SysNative\DRIVERS\Rtlh64.sys (Realtek Corporation )
DRV:64bit: - (SiFilter) -- C:\Windows\SysNative\DRIVERS\SiWinAcc.sys (Silicon Image, Inc.)
DRV:64bit: - (SiRemFil) -- C:\Windows\SysNative\DRIVERS\SiRemFil.sys (Silicon Image, Inc.)
DRV:64bit: - (Si3531) -- C:\Windows\SysNative\DRIVERS\Si3531.sys (Silicon Image, Inc)
DRV:64bit: - (iaStor) -- C:\Windows\SysNative\DRIVERS\iaStor.sys (Intel Corporation)
DRV:64bit: - (adfs) -- C:\Windows\SysNative\drivers\adfs.sys (Adobe Systems, Inc.)
DRV:64bit: - (NETw5v64) Intel(R) -- C:\Windows\SysNative\DRIVERS\NETw5v64.sys (Intel Corporation)
DRV:64bit: - (PxHlpa64) -- C:\Windows\SysNative\Drivers\PxHlpa64.sys (Sonic Solutions)
DRV:64bit: - (xnacc) -- C:\Windows\SysNative\DRIVERS\xnacc.sys (Microsoft Corporation)
DRV:64bit: - (StillCam) -- C:\Windows\SysNative\DRIVERS\serscan.sys (Microsoft Corporation)
DRV:64bit: - (BthPan) Bluetooth-Gerät (PAN) -- C:\Windows\SysNative\DRIVERS\bthpan.sys (Microsoft Corporation)
DRV:64bit: - (MODEMCSA) -- C:\Windows\SysNative\drivers\MODEMCSA.sys (Microsoft Corporation)
DRV:64bit: - (CmBatt) -- C:\Windows\SysNative\DRIVERS\CmBatt.sys (Microsoft Corporation)
DRV:64bit: - (AnyDVD) -- C:\Windows\SysNative\Drivers\AnyDVD.sys (SlySoft, Inc.)
DRV:64bit: - (s217mdm) -- C:\Windows\SysNative\DRIVERS\s217mdm.sys (MCCI Corporation)
DRV:64bit: - (s217unic) Sony Ericsson Device 217 USB Ethernet Emulation SEMC217 (WDM) -- C:\Windows\SysNative\DRIVERS\s217unic.sys (MCCI)
DRV:64bit: - (s217obex) -- C:\Windows\SysNative\DRIVERS\s217obex.sys (MCCI Corporation)
DRV:64bit: - (s217nd5) Sony Ericsson Device 217 USB Ethernet Emulation SEMC217 (NDIS) -- C:\Windows\SysNative\DRIVERS\s217nd5.sys (MCCI Corporation)
DRV:64bit: - (s217bus) Sony Ericsson Device 217 driver (WDM) -- C:\Windows\SysNative\DRIVERS\s217bus.sys (MCCI Corporation)
DRV:64bit: - (s217mdfl) -- C:\Windows\SysNative\DRIVERS\s217mdfl.sys (MCCI Corporation)
DRV:64bit: - (NWUSBPort) -- C:\Windows\SysNative\DRIVERS\nwusbser.sys (Novatel Wireless Inc.)
DRV:64bit: - (NWUSBModem) -- C:\Windows\SysNative\DRIVERS\nwusbmdm.sys (Novatel Wireless Inc.)
DRV:64bit: - (ElbyCDIO) -- C:\Windows\SysNative\Drivers\ElbyCDIO.sys (Elaborate Bytes AG)
DRV:64bit: - (TTCinergyT2) TerraTec Cinergy T² (BDA) -- C:\Windows\SysNative\DRIVERS\TTCinergyT2BDA.sys (TerraTec Electronic GmbH)
DRV:64bit: - (JRAID) -- C:\Windows\SysNative\drivers\jraid.sys (JMicron Technology Corp.)
DRV:64bit: - (NETw4v64) Intel(R) -- C:\Windows\SysNative\DRIVERS\NETw4v64.sys (Intel Corporation)
DRV:64bit: - (ElbyDelay) -- C:\Windows\SysNative\Drivers\ElbyDelay.sys (Elaborate Bytes AG)
DRV:64bit: - (LMouFilt) -- C:\Windows\SysNative\DRIVERS\LMouFilt.Sys (Logitech, Inc.)
DRV:64bit: - (LHidFilt) -- C:\Windows\SysNative\DRIVERS\LHidFilt.Sys (Logitech, Inc.)
DRV:64bit: - (itecir) -- C:\Windows\SysNative\DRIVERS\itecir.sys (Windows (R) Codename Longhorn DDK provider)
DRV:64bit: - (FWLANUSB) -- C:\Windows\SysNative\DRIVERS\fwlanusb.sys (AVM GmbH)
DRV:64bit: - (avmeject) -- C:\Windows\SysNative\drivers\avmeject.sys (AVM Berlin)
DRV:64bit: - (HdAudAddService) -- C:\Windows\SysNative\drivers\HdAudio.sys (Microsoft Corporation)
DRV:64bit: - (PStrip64) -- C:\Windows\SysNative\DRIVERS\PSTRIP64.SYS ()
DRV:64bit: - (smserial) -- C:\Windows\SysNative\DRIVERS\smserl64.sys (Motorola Inc.)
DRV - (libusb0) -- C:\Windows\SysWOW64\drivers\libusb0.sys (LibUsb-Win32)
DRV - (GVTDrv64) -- C:\Windows\GVTDrv64.sys ()
DRV - (cdrbsdrv) -- C:\Windows\SysWOW64\drivers\CDRBSDRV.SYS (B.H.A Corporation)
DRV - (itecir) -- C:\Windows\ITECIR [2008.08.27 23:05:10 | 000,000,000 | ---D | M]
DRV - (CSC) -- C:\Windows\CSC [2008.08.27 17:22:04 | 000,000,000 | ---D | M]
DRV - (adfs) -- C:\Windows\SysWOW64\drivers\adfs.sys (Adobe Systems, Inc.)
DRV - (ElbyCDIO) -- C:\Windows\SysWOW64\ElbyCDIO.dll (Elaborate Bytes AG)
DRV - (AnyDVD) -- C:\Windows\SysWOW64\drivers\AnyDVD.sys (SlySoft, Inc.)
DRV - (ElbyDelay) -- C:\Windows\SysWOW64\drivers\ElbyDelay.sys (Elaborate Bytes AG)
DRV - (Tcpip) -- C:\Windows\SysWOW64\wbem\tcpip.mof ()
DRV - (mpsdrv) -- C:\Windows\SysWOW64\wbem\mpsdrv.mof ()
DRV - (hotcore2) -- C:\Windows\system32\drivers\hotcore2.sys (Paragon Software Group)
DRV - (pfc) -- C:\Windows\SysWOW64\drivers\pfc.sys (Padus, Inc.) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ==========
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = ICQ.com Suche
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKCU\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll (ICQ)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local ========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
FF - prefs.js..browser.search.selectedEngine: "ICQ Search"
FF - prefs.js..browser.startup.homepage: "http://start.icq.com/"
FF - prefs.js..extensions.enabledItems: {E2883E8F-472F-4fb0-9522-AC9BF37916A7}:1
FF - prefs.js..extensions.enabledItems: 6
FF - prefs.js..extensions.enabledItems: 2
FF - prefs.js..extensions.enabledItems: 48
FF - prefs.js..extensions.enabledItems: battlefieldheroespatcher@ea.com:4.0.27.0
FF - prefs.js..extensions.enabledItems: {D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}:0.9.6.5
FF - prefs.js..extensions.enabledItems: {DDC359D1-844A-42a7-9AA1-88A850A938A8}:1.1.7
FF - prefs.js..extensions.enabledItems: {800b5000-a755-47e1-992b-48a1c1357f07}:1.1.4.1
FF - prefs.js..extensions.enabledItems: moveplayer@movenetworks.com:1.0.0.071303000004
FF - prefs.js..extensions.enabledItems: kosa@kallout.com:1.3.1.46
FF - prefs.js..extensions.enabledItems: {46551EC9-40F0-4e47-8E18-8E5CF550CFB8}:1.0.7
FF - prefs.js..extensions.enabledItems: {00352F14-3F76-4e4d-ACFF-9972D7E4B3B9}:0.7.1
FF - prefs.js..keyword.URL: "http://search.icq.com/search/afe_results.php?ch_id=afex&q="
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.5\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2010.01.18 18:34:05 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.5\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2010.01.18 18:34:05 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6b5\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox 3.6 Beta 2\components [2010.01.18 18:34:05 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6b5\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox 3.6 Beta 2\plugins [2010.01.18 18:34:05 | 000,000,000 | ---D | M]
[2009.05.04 13:19:04 | 000,000,000 | ---D | M] -- C:\Users\Heiner\AppData\Roaming\mozilla\Extensions
[2010.01.31 16:32:59 | 000,000,000 | ---D | M] -- C:\Users\Heiner\AppData\Roaming\mozilla\Firefox\Profiles\ey95xvu7.default\extensions
[2009.08.24 14:32:11 | 000,000,000 | ---D | M] (MacOSX Theme) -- C:\Users\Heiner\AppData\Roaming\mozilla\Firefox\Profiles\ey95xvu7.default\extensions\{00352F14-3F76-4e4d-ACFF-9972D7E4B3B9}
[2009.10.29 18:34:42 | 000,000,000 | ---D | M] (Stylish) -- C:\Users\Heiner\AppData\Roaming\mozilla\Firefox\Profiles\ey95xvu7.default\extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}
[2009.08.13 12:42:19 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Heiner\AppData\Roaming\mozilla\Firefox\Profiles\ey95xvu7.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2009.06.14 12:35:32 | 000,000,000 | ---D | M] (JetFox Aqua) -- C:\Users\Heiner\AppData\Roaming\mozilla\Firefox\Profiles\ey95xvu7.default\extensions\{bdf8fec0-4c8b-11dd-ae16-0800200c9a66}
[2009.05.04 14:15:45 | 000,000,000 | ---D | M] (Download Statusbar) -- C:\Users\Heiner\AppData\Roaming\mozilla\Firefox\Profiles\ey95xvu7.default\extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}
[2009.10.29 18:34:43 | 000,000,000 | ---D | M] (DownThemAll!) -- C:\Users\Heiner\AppData\Roaming\mozilla\Firefox\Profiles\ey95xvu7.default\extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}
[2009.11.02 15:33:10 | 000,000,000 | ---D | M] (Adobe DLM (powered by getPlus(R))) -- C:\Users\Heiner\AppData\Roaming\mozilla\Firefox\Profiles\ey95xvu7.default\extensions\{E2883E8F-472F-4fb0-9522-AC9BF37916A7}
[2009.11.02 15:38:12 | 000,000,000 | ---D | M] (FoxTab) -- C:\Users\Heiner\AppData\Roaming\mozilla\Firefox\Profiles\ey95xvu7.default\extensions\{ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a}
[2010.01.28 14:32:54 | 000,000,000 | ---D | M] -- C:\Users\Heiner\AppData\Roaming\mozilla\Firefox\Profiles\ey95xvu7.default\extensions\battlefieldheroespatcher@ea.com
[2009.10.28 14:23:06 | 000,000,000 | ---D | M] -- C:\Users\Heiner\AppData\Roaming\mozilla\Firefox\Profiles\ey95xvu7.default\extensions\kosa@kallout.com
[2009.09.18 15:59:32 | 000,000,000 | ---D | M] -- C:\Users\Heiner\AppData\Roaming\mozilla\Firefox\Profiles\ey95xvu7.default\extensions\moveplayer@movenetworks.com
[2010.01.25 18:10:10 | 000,000,950 | ---- | M] () -- C:\Users\Heiner\AppData\Roaming\Mozilla\FireFox\Profiles\ey95xvu7.default\searchplugins\icqplugin-1.xml
[2009.12.10 19:06:45 | 000,000,950 | ---- | M] () -- C:\Users\Heiner\AppData\Roaming\Mozilla\FireFox\Profiles\ey95xvu7.default\searchplugins\icqplugin-10.xml
[2009.12.12 19:42:10 | 000,000,950 | ---- | M] () -- C:\Users\Heiner\AppData\Roaming\Mozilla\FireFox\Profiles\ey95xvu7.default\searchplugins\icqplugin-11.xml
[2009.12.12 19:45:43 | 000,000,961 | ---- | M] () -- C:\Users\Heiner\AppData\Roaming\Mozilla\FireFox\Profiles\ey95xvu7.default\searchplugins\icqplugin-12.xml
[2009.12.13 17:43:41 | 000,000,950 | ---- | M] () -- C:\Users\Heiner\AppData\Roaming\Mozilla\FireFox\Profiles\ey95xvu7.default\searchplugins\icqplugin-13.xml
[2010.01.10 14:38:00 | 000,000,961 | ---- | M] () -- C:\Users\Heiner\AppData\Roaming\Mozilla\FireFox\Profiles\ey95xvu7.default\searchplugins\icqplugin-14.xml
[2010.01.14 15:54:16 | 000,000,950 | ---- | M] () -- C:\Users\Heiner\AppData\Roaming\Mozilla\FireFox\Profiles\ey95xvu7.default\searchplugins\icqplugin-15.xml
[2010.01.18 17:25:00 | 000,000,950 | ---- | M] () -- C:\Users\Heiner\AppData\Roaming\Mozilla\FireFox\Profiles\ey95xvu7.default\searchplugins\icqplugin-16.xml
[2010.01.19 16:02:34 | 000,000,950 | ---- | M] () -- C:\Users\Heiner\AppData\Roaming\Mozilla\FireFox\Profiles\ey95xvu7.default\searchplugins\icqplugin-17.xml
[2010.01.29 21:35:45 | 000,000,950 | ---- | M] () -- C:\Users\Heiner\AppData\Roaming\Mozilla\FireFox\Profiles\ey95xvu7.default\searchplugins\icqplugin-18.xml
[2010.01.31 16:32:57 | 000,000,961 | ---- | M] () -- C:\Users\Heiner\AppData\Roaming\Mozilla\FireFox\Profiles\ey95xvu7.default\searchplugins\icqplugin-19.xml
[2009.08.11 19:04:26 | 000,000,950 | ---- | M] () -- C:\Users\Heiner\AppData\Roaming\Mozilla\FireFox\Profiles\ey95xvu7.default\searchplugins\icqplugin-2.xml
[2010.02.01 21:34:36 | 000,000,950 | ---- | M] () -- C:\Users\Heiner\AppData\Roaming\Mozilla\FireFox\Profiles\ey95xvu7.default\searchplugins\icqplugin-20.xml
[2010.02.01 23:26:07 | 000,000,950 | ---- | M] () -- C:\Users\Heiner\AppData\Roaming\Mozilla\FireFox\Profiles\ey95xvu7.default\searchplugins\icqplugin-21.xml
[2009.08.13 12:44:03 | 000,000,950 | ---- | M] () -- C:\Users\Heiner\AppData\Roaming\Mozilla\FireFox\Profiles\ey95xvu7.default\searchplugins\icqplugin-3.xml
[2009.09.11 18:21:20 | 000,000,961 | ---- | M] () -- C:\Users\Heiner\AppData\Roaming\Mozilla\FireFox\Profiles\ey95xvu7.default\searchplugins\icqplugin-4.xml
[2009.11.02 15:32:07 | 000,000,961 | ---- | M] () -- C:\Users\Heiner\AppData\Roaming\Mozilla\FireFox\Profiles\ey95xvu7.default\searchplugins\icqplugin-5.xml
[2009.11.09 18:28:00 | 000,000,961 | ---- | M] () -- C:\Users\Heiner\AppData\Roaming\Mozilla\FireFox\Profiles\ey95xvu7.default\searchplugins\icqplugin-6.xml
[2009.11.09 19:20:38 | 000,000,961 | ---- | M] () -- C:\Users\Heiner\AppData\Roaming\Mozilla\FireFox\Profiles\ey95xvu7.default\searchplugins\icqplugin-7.xml
[2009.11.18 16:17:13 | 000,000,950 | ---- | M] () -- C:\Users\Heiner\AppData\Roaming\Mozilla\FireFox\Profiles\ey95xvu7.default\searchplugins\icqplugin-8.xml
[2009.12.04 14:34:59 | 000,000,961 | ---- | M] () -- C:\Users\Heiner\AppData\Roaming\Mozilla\FireFox\Profiles\ey95xvu7.default\searchplugins\icqplugin-9.xml
[2008.07.10 13:07:28 | 000,000,944 | ---- | M] () -- C:\Users\Heiner\AppData\Roaming\Mozilla\FireFox\Profiles\ey95xvu7.default\searchplugins\icqplugin.xml
[2010.01.31 16:32:59 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\mozilla firefox\extensions
[2010.01.19 16:02:11 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2009.08.25 18:57:44 | 000,001,392 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml
[2009.08.25 18:57:44 | 000,002,344 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml
[2009.08.25 18:57:44 | 000,006,805 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml
[2009.09.11 18:21:07 | 000,001,178 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-de.xml
[2009.08.25 18:57:44 | 000,000,801 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml
O1 HOSTS File: ([2009.05.04 13:47:47 | 000,001,239 | ---- | M]) - C:\Windows\SysNative\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O1 - Hosts: 127.0.0.1 activate.adobe.com
O1 - Hosts: 127.0.0.1 practivate.adobe.com
O1 - Hosts: 127.0.0.1 ereg.adobe.com
O1 - Hosts: 127.0.0.1 activate.wip3.adobe.com
O1 - Hosts: 127.0.0.1 wip3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-3.adobe.com
O1 - Hosts: 127.0.0.1 ereg.wip3.adobe.com
O1 - Hosts: 127.0.0.1 activate-sea.adobe.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O1 - Hosts: 127.0.0.1 activate-sjc0.adobe.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O2 - BHO: (Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (ContributeBHO Class) - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files (x86)\Adobe\/Adobe Contribute CS4/contributeieplugin.dll ()
O2 - BHO: (AskBar BHO) - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files (x86)\AskBarDis\bar\bin\askBar.dll (Ask.com)
O2 - BHO: (FGCatchUrl) - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\Program Files (x86)\FlashGet\jccatch.dll (Best Download Manager - FlashGet)
O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.6.0_07\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll (Google Inc.)
O2 - BHO: (FDMIECookiesBHO Class) - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files (x86)\Free Download Manager\iefdm2.dll ()
O2 - BHO: (FlashGet GetFlash Class) - {F156768E-81EF-470C-9057-481BA8380DBA} - C:\Program Files (x86)\FlashGet\getflash.dll (Best Download Manager - FlashGet)
O3:64bit: - HKLM\..\Toolbar: (BS.Player ControlBar) - {2C688203-7EB3-4327-9995-1CB417BA23F9} - C:\Program Files (x86)\BS.Player ControlBar\BSToolbar64.dll File not found
O3:64bit: - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll ()
O3 - HKLM\..\Toolbar: (Ask Toolbar) - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files (x86)\AskBarDis\bar\bin\askBar.dll (Ask.com)
O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (Contribute Toolbar) - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files (x86)\Adobe\/Adobe Contribute CS4/contributeieplugin.dll ()
O3 - HKLM\..\Toolbar: (ICQToolBar) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll (ICQ)
O3 - HKLM\..\Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (Ask Toolbar) - {3041D03E-FD4B-44E0-B742-2D9B88305F98} - C:\Program Files (x86)\AskBarDis\bar\bin\askBar.dll (Ask.com)
O3:64bit: - HKCU\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [IAAnotif] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Kernel and Hardware Abstraction Layer] C:\Windows\KHALMNPR.Exe (Logitech Inc.)
O4:64bit: - HKLM..\Run: [NvCplDaemon] C:\Windows\SysNative\NvCpl.DLL (NVIDIA Corporation)
O4:64bit: - HKLM..\Run: [NvMediaCenter] C:\Windows\SysNative\NvMcTray.DLL (NVIDIA Corporation)
O4:64bit: - HKLM..\Run: [NvSvc] C:\Windows\SysNative\nvsvc64.DLL (NVIDIA Corporation)
O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Windows\RAVCpl64.exe (Realtek Semiconductor)
O4:64bit: - HKLM..\Run: [Skytel] C:\Windows\SkyTel.exe (Realtek Semiconductor Corp.)
O4:64bit: - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [iTunesHelper] C:\Program Files (x86)\iTunes\iTunesHelper.exe (Apple Inc.)
O4 - HKLM..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe ()
O4 - HKLM..\Run: [TkBellExe] C:\Program Files (x86)\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = FF 00 00 00 [binary data]
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8:64bit: - Extra context menu item: Alles mit FDM herunterladen - C:\Program Files (x86)\Free Download Manager\dlall.htm ()
O8:64bit: - Extra context menu item: An vorhandenes PDF anfügen - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Ausgewählte Verknüpfungen in Adobe PDF konvertieren - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Ausgewählte Verknüpfungen in vorhandene PDF-Datei konvertieren - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Auswahl in Adobe PDF konvertieren - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Auswahl in vorhandene PDF-Datei konvertieren - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Auswahl mit FDM herunterladen - C:\Program Files (x86)\Free Download Manager\dlselected.htm ()
O8:64bit: - Extra context menu item: Datei mit FDM herunterladen - C:\Program Files (x86)\Free Download Manager\dllink.htm ()
O8:64bit: - Extra context menu item: In Adobe PDF konvertieren - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Translate with &Babylon - C:\Program Files (x86)\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (Babylon Ltd.)
O8:64bit: - Extra context menu item: Verknüpfungsziel in Adobe PDF konvertieren - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Verknüpfungsziel in vorhandene PDF-Datei konvertieren - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Videos mit FDM herunterladen - C:\Program Files (x86)\Free Download Manager\dlfvideo.htm ()
O8 - Extra context menu item: Alles mit FDM herunterladen - C:\Program Files (x86)\Free Download Manager\dlall.htm ()
O8 - Extra context menu item: An vorhandenes PDF anfügen - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Ausgewählte Verknüpfungen in Adobe PDF konvertieren - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Ausgewählte Verknüpfungen in vorhandene PDF-Datei konvertieren - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Auswahl in Adobe PDF konvertieren - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Auswahl in vorhandene PDF-Datei konvertieren - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Auswahl mit FDM herunterladen - C:\Program Files (x86)\Free Download Manager\dlselected.htm ()
O8 - Extra context menu item: Datei mit FDM herunterladen - C:\Program Files (x86)\Free Download Manager\dllink.htm ()
O8 - Extra context menu item: In Adobe PDF konvertieren - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Translate with &Babylon - C:\Program Files (x86)\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (Babylon Ltd.)
O8 - Extra context menu item: Verknüpfungsziel in Adobe PDF konvertieren - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Verknüpfungsziel in vorhandene PDF-Datei konvertieren - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Videos mit FDM herunterladen - C:\Program Files (x86)\Free Download Manager\dlfvideo.htm ()
O9:64bit: - Extra Button: Encarta Suchleiste - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Programme\Common Files\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files (x86)\Java\jre1.6.0_07\bin\npjpi160_07.dll (Sun Microsystems, Inc.)
O9 - Extra Button: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files (x86)\ICQ7.0\ICQ.exe (ICQ, Inc.)
O9 - Extra 'Tools' menuitem : ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files (x86)\ICQ7.0\ICQ.exe (ICQ, Inc.)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra Button: Encarta Suchleiste - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files (x86)\Common Files\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL (Microsoft Corporation)
O9 - Extra Button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files (x86)\FlashGet\FlashGet.exe (FlashGet.com)
O9 - Extra 'Tools' menuitem : FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files (x86)\FlashGet\FlashGet.exe (FlashGet.com)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Windows\SysNative\wshbth.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Windows\SysWOW64\wshbth.dll (Microsoft Corporation)
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} http://appldnld.apple.com.edgesuite....x/qtplugin.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_07)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_07)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_07)
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} http://icq.oberon-media.com/Gameshel...onGameHost.cab (Oberon Flash Game Host)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/ge...sh/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O18:64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
O18:64bit: - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O22:64bit: - SharedTaskScheduler: {E31004D1-A431-41B8-826F-E902F9D95C81} - Windows DreamScene - C:\Windows\SysNative\DreamScene.dll (Microsoft Corporation)
O24 - Desktop WallPaper: D:\yodm3d\desktopwallpaper0.bmp
O24 - Desktop BackupWallPaper: D:\yodm3d\desktopwallpaper0.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009.09.04 07:10:22 | 000,214,408 | R--- | M] (Konami Digital Entertainment Co., Ltd.) - E:\autorun.exe -- [ UDF ]
O32 - AutoRun File - [2009.09.04 07:10:22 | 000,000,047 | R--- | M] () - E:\Autorun.inf -- [ UDF ]
O33 - MountPoints2\{2b4f8f5a-79eb-11dd-b606-001060d0fb8e}\Shell\AutoRun\command - "" = start.exe
O33 - MountPoints2\{946d90ce-e239-11dd-a6f2-001060d0fb8e}\Shell - "" = AutoRun
O33 - MountPoints2\{946d90ce-e239-11dd-a6f2-001060d0fb8e}\Shell\AutoRun\command - "" = F:\start.exe -- File not found
O33 - MountPoints2\{d0150a4a-2cfe-11de-b8de-001060d0fb8e}\Shell\AutoRun\command - "" = start.exe
O33 - MountPoints2\{fe4c037e-7453-11dd-a2c4-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{fe4c037e-7453-11dd-a2c4-806e6f6e6963}\Shell\AutoRun\command - "" = E:\autorun.exe -- [2009.09.04 07:10:22 | 000,214,408 | R--- | M] (Konami Digital Entertainment Co., Ltd.)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found 64bit: O35 - comfile [open] -- "%1" %* File not found 64bit: O35 - exefile [open] -- "%1" %* File not found
O35 - comfile [open] -- "%1" %*
O35 - exefile [open] -- "%1" %* ========== Files/Folders - Created Within 30 Days ==========
[2010.02.02 19:34:00 | 000,548,864 | ---- | C] (OldTimer Tools) -- C:\Users\Heiner\Desktop\OTL.exe
[2010.02.02 19:19:03 | 000,000,000 | ---D | C] -- C:\Windows\TEMP
[2010.02.02 12:53:27 | 000,000,000 | ---D | C] -- C:\Users\Heiner\AppData\Roaming\Malwarebytes
[2010.02.02 12:53:22 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
[2010.02.02 12:53:20 | 000,022,104 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2010.02.02 12:53:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2010.02.02 12:53:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2010.02.02 12:52:57 | 005,115,824 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\Heiner\Desktop\mbam-setup.exe
[2010.02.01 23:14:33 | 061,379,912 | ---- | C] (Avira GmbH) -- C:\Users\Heiner\Desktop\rescue_system-common-en.exe
[2010.01.29 22:12:00 | 000,000,000 | ---D | C] -- C:\Users\Heiner\Desktop\Selig - Und endlich Unendlich
[2010.01.29 14:59:41 | 000,000,000 | ---D | C] -- C:\Users\Heiner\AppData\Roaming\InstallShield
[2010.01.25 16:17:14 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Camera_Bison_7.96.701.07_Vistax86
[2010.01.25 15:43:28 | 000,000,000 | ---D | C] -- C:\Windows\Snapshot
[2010.01.24 21:04:11 | 000,000,000 | ---D | C] -- C:\DRIVERS
[2010.01.24 20:37:06 | 000,000,000 | ---D | C] -- C:\Users\Heiner\AppData\Roaming\CyberLink
[2010.01.23 18:16:00 | 000,000,000 | ---D | C] -- C:\Users\Heiner\AppData\Roaming\Pegasys Inc
[2010.01.22 16:04:58 | 001,032,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wininet.dll
[2010.01.22 16:04:56 | 000,834,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wininet.dll
[2010.01.22 16:04:50 | 000,180,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2010.01.22 16:04:49 | 000,249,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll
[2010.01.22 16:04:49 | 000,193,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2010.01.22 16:04:49 | 000,086,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieencode.dll
[2010.01.22 16:04:49 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieencode.dll
[2010.01.22 16:04:47 | 000,422,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2010.01.22 16:04:46 | 000,380,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2010.01.19 16:01:50 | 000,000,000 | ---D | C] -- C:\Users\Heiner\AppData\Local\AOL
[2010.01.19 16:01:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ICQ7.0
[2010.01.18 18:37:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iPod
[2010.01.18 18:36:51 | 000,000,000 | ---D | C] -- C:\Programme\iTunes
[2010.01.18 18:36:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iTunes
[2010.01.12 21:32:33 | 000,189,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\t2embed.dll
[2010.01.12 21:32:33 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\t2embed.dll
[2010.01.12 21:32:33 | 000,096,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fontsub.dll
[2010.01.12 21:32:33 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fontsub.dll
[2010.01.11 18:38:13 | 000,000,000 | ---D | C] -- C:\Users\Heiner\Documents\KONAMI
[2010.01.11 18:13:41 | 000,000,000 | ---D | C] -- C:\ProgramData\KONAMI
[2010.01.11 18:13:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\KONAMI
[2010.01.05 18:51:35 | 000,000,000 | ---D | C] -- C:\Users\Heiner\Musik
[2007.10.22 03:31:06 | 001,673,224 | ---- | C] (Microsoft Corporation) -- C:\Program Files (x86)\dsetup32.dll
[2007.10.22 03:31:06 | 000,502,792 | ---- | C] (Microsoft Corporation) -- C:\Program Files (x86)\DXSETUP.exe
[2007.10.22 03:31:06 | 000,076,808 | ---- | C] (Microsoft Corporation) -- C:\Program Files (x86)\DSETUP.dll
[1 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] ========== Files - Modified Within 30 Days ==========
[2010.02.02 19:35:00 | 000,000,436 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{1E54261E-F0B5-4D29-A3C8-99305EF5D914}.job
[2010.02.02 19:34:59 | 000,000,438 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{C38AAB0D-F01B-4FC8-9AB3-8786558E2E85}.job
[2010.02.02 19:34:36 | 005,767,168 | -HS- | M] () -- C:\Users\Heiner\ntuser.dat
[2010.02.02 19:34:00 | 000,548,864 | ---- | M] (OldTimer Tools) -- C:\Users\Heiner\Desktop\OTL.exe
[2010.02.02 19:25:09 | 001,647,594 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2010.02.02 19:25:09 | 000,704,432 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
[2010.02.02 19:25:09 | 000,658,764 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2010.02.02 19:25:09 | 000,159,322 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
[2010.02.02 19:25:09 | 000,130,498 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2010.02.02 19:21:15 | 000,001,064 | ---- | M] () -- C:\Windows\tasks\Google Software Updater.job
[2010.02.02 19:19:32 | 000,002,497 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Acrobat - Schnellstart.lnk
[2010.02.02 19:19:31 | 000,001,104 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2010.02.02 19:19:08 | 000,003,888 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2010.02.02 19:19:08 | 000,003,888 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2010.02.02 19:19:01 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010.02.02 19:18:59 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010.02.02 19:18:57 | 4293,320,704 | -HS- | M] () -- C:\hiberfil.sys
[2010.02.02 19:16:55 | 000,524,288 | -HS- | M] () -- C:\Users\Heiner\ntuser.dat{54366e83-0d13-11df-ac23-001060d0fb8e}.TMContainer00000000000000000001.regtrans-ms
[2010.02.02 19:16:55 | 000,065,536 | -HS- | M] () -- C:\Users\Heiner\ntuser.dat{54366e83-0d13-11df-ac23-001060d0fb8e}.TM.blf
[2010.02.02 19:16:48 | 000,001,627 | ---- | M] () -- C:\Windows\bthservsdp.dat
[2010.02.02 19:16:37 | 003,314,431 | -H-- | M] () -- C:\Users\Heiner\AppData\Local\IconCache.db
[2010.02.02 18:52:55 | 000,001,108 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2010.02.02 12:53:24 | 000,000,853 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010.02.02 12:52:59 | 005,115,824 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Heiner\Desktop\mbam-setup.exe
[2010.02.02 11:49:48 | 000,006,556 | ---- | M] () -- C:\Users\Heiner\Desktop\cc_20100202_114925.reg
[2010.02.02 11:49:06 | 000,070,918 | ---- | M] () -- C:\Users\Heiner\Desktop\cc_20100202_114840.reg
[2010.02.02 11:35:38 | 000,524,288 | -HS- | M] () -- C:\Users\Heiner\ntuser.dat{54366e83-0d13-11df-ac23-001060d0fb8e}.TMContainer00000000000000000002.regtrans-ms
[2010.02.01 23:16:19 | 061,379,912 | ---- | M] (Avira GmbH) -- C:\Users\Heiner\Desktop\rescue_system-common-en.exe
[2010.02.01 22:59:24 | 005,767,168 | -HS- | M] () -- C:\Users\Heiner\ntuser.dat_previous
[2010.02.01 22:59:23 | 000,524,288 | -HS- | M] () -- C:\Users\Heiner\ntuser.dat{9921dff5-b4d6-11de-bc9c-001060d0fb8e}.TMContainer00000000000000000001.regtrans-ms
[2010.02.01 22:59:23 | 000,065,536 | -HS- | M] () -- C:\Users\Heiner\ntuser.dat{9921dff5-b4d6-11de-bc9c-001060d0fb8e}.TM.blf
[2010.01.30 14:56:28 | 000,375,595 | ---- | M] () -- C:\Users\Heiner\Desktop\Produktvergleich.mht
[2010.01.29 14:59:51 | 000,000,583 | ---- | M] () -- C:\Windows\win.ini
[2010.01.28 14:44:19 | 000,190,160 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.xtr
[2010.01.28 14:44:19 | 000,190,160 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2010.01.24 20:49:15 | 003,223,720 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2010.01.23 18:34:20 | 000,051,712 | ---- | M] () -- C:\Users\Heiner\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.01.23 11:02:36 | 000,000,600 | ---- | M] () -- C:\Users\Heiner\AppData\Roaming\winscp.rnd
[2010.01.12 19:28:15 | 000,000,034 | ---- | M] () -- C:\Windows\cdplayer.ini
[2010.01.07 16:07:14 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
[2010.01.07 16:07:06 | 000,022,104 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[1 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] ========== Files Created - No Company Name ==========
[2010.02.02 12:53:24 | 000,000,853 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010.02.02 12:11:47 | 4293,320,704 | -HS- | C] () -- C:\hiberfil.sys
[2010.02.02 11:49:26 | 000,006,556 | ---- | C] () -- C:\Users\Heiner\Desktop\cc_20100202_114925.reg
[2010.02.02 11:48:45 | 000,070,918 | ---- | C] () -- C:\Users\Heiner\Desktop\cc_20100202_114840.reg
[2010.02.01 23:01:44 | 000,524,288 | -HS- | C] () -- C:\Users\Heiner\ntuser.dat{54366e83-0d13-11df-ac23-001060d0fb8e}.TMContainer00000000000000000002.regtrans-ms
[2010.02.01 23:01:44 | 000,524,288 | -HS- | C] () -- C:\Users\Heiner\ntuser.dat{54366e83-0d13-11df-ac23-001060d0fb8e}.TMContainer00000000000000000001.regtrans-ms
[2010.02.01 23:01:44 | 000,065,536 | -HS- | C] () -- C:\Users\Heiner\ntuser.dat{54366e83-0d13-11df-ac23-001060d0fb8e}.TM.blf
[2010.01.30 14:56:28 | 000,375,595 | ---- | C] () -- C:\Users\Heiner\Desktop\Produktvergleich.mht
[2010.01.05 18:55:33 | 000,000,034 | ---- | C] () -- C:\Windows\cdplayer.ini
[2009.12.29 15:56:48 | 000,290,816 | ---- | C] () -- C:\Windows\SysWow64\decdll.dll
[2009.11.07 17:35:50 | 000,000,080 | R--- | C] () -- C:\Windows\OEM.ini
[2009.09.11 14:07:20 | 000,117,248 | ---- | C] () -- C:\Windows\SysWow64\EhStorAuthn.dll
[2009.09.11 14:05:41 | 000,368,640 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009.07.10 10:21:38 | 000,425,572 | ---- | C] () -- C:\Users\Heiner\AppData\Local\dd_vcredistMSI57B0.txt
[2009.07.10 10:21:38 | 000,011,450 | ---- | C] () -- C:\Users\Heiner\AppData\Local\dd_vcredistUI57B0.txt
[2009.06.04 15:05:14 | 000,000,576 | ---- | C] () -- C:\ProgramData\afl.log
[2009.06.02 15:44:31 | 000,612,470 | ---- | C] () -- C:\Users\Heiner\AppData\Local\dd_NET_Framework35_LangPack_MSI35C2.txt
[2009.06.02 15:44:28 | 000,077,772 | ---- | C] () -- C:\Users\Heiner\AppData\Local\dd_dotnetfx35install_lp.txt
[2009.06.02 15:44:28 | 000,000,002 | ---- | C] () -- C:\Users\Heiner\AppData\Local\dd_dotnetfx35error_lp.txt
[2009.06.02 15:43:33 | 001,865,054 | ---- | C] () -- C:\Users\Heiner\AppData\Local\dd_NET_Framework35_x64_MSI3505.txt
[2009.06.02 15:42:10 | 000,232,450 | ---- | C] () -- C:\Users\Heiner\AppData\Local\dd_depcheck_NETFX_EXP_35.txt
[2009.06.02 15:42:06 | 000,231,434 | ---- | C] () -- C:\Users\Heiner\AppData\Local\dd_dotnetfx35install.txt
[2009.06.02 15:42:06 | 000,005,882 | ---- | C] () -- C:\Users\Heiner\AppData\Local\uxeventlog.txt
[2009.06.02 15:42:06 | 000,000,002 | ---- | C] () -- C:\Users\Heiner\AppData\Local\dd_dotnetfx35error.txt
[2009.06.01 16:34:51 | 000,000,600 | ---- | C] () -- C:\Users\Heiner\AppData\Roaming\winscp.rnd
[2009.05.26 14:55:42 | 000,000,009 | -HS- | C] () -- C:\Users\Heiner\AppData\Local\systemCurUses
[2009.05.26 14:55:41 | 000,000,006 | -HS- | C] () -- C:\Users\Heiner\AppData\Local\systemHdID
[2009.05.08 14:08:40 | 000,258,048 | ---- | C] () -- C:\Windows\SysWow64\EMRegSys.dll
[2009.04.24 12:58:29 | 000,043,520 | ---- | C] () -- C:\Windows\SysWow64\CmdLineExt03.dll
[2009.03.04 15:28:50 | 000,000,094 | ---- | C] () -- C:\Users\Heiner\AppData\Local\fusioncache.dat
[2009.02.11 19:39:32 | 000,283,070 | ---- | C] () -- C:\Users\Heiner\AppData\Local\qsdfiz_nav.dat
[2009.02.11 19:39:02 | 000,003,000 | ---- | C] () -- C:\Users\Heiner\AppData\Local\qsdfiz.dat
[2009.02.11 19:39:02 | 000,000,330 | ---- | C] () -- C:\Users\Heiner\AppData\Local\qsdfiz_navps.dat
[2009.02.11 19:39:02 | 000,000,090 | ---- | C] () -- C:\Users\Heiner\AppData\Local\qsdfiz.bat
[2009.01.15 20:19:27 | 000,030,528 | ---- | C] () -- C:\Windows\GVTDrv64.sys
[2008.11.15 12:25:13 | 000,051,712 | ---- | C] () -- C:\Users\Heiner\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008.10.29 17:57:52 | 000,000,023 | -HS- | C] () -- C:\Windows\SysWow64\ebcacfdfabc_z.dll
[2008.10.22 05:29:06 | 000,173,550 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
[2008.10.05 09:36:49 | 000,237,568 | ---- | C] () -- C:\Windows\SysWow64\lame_enc.dll
[2008.09.17 21:44:51 | 000,131,072 | ---- | C] () -- C:\Windows\SysWow64\imgproc.dll
[2008.09.16 01:14:24 | 003,596,288 | ---- | C] () -- C:\Windows\SysWow64\qt-dx331.dll
[2008.09.16 01:12:02 | 000,000,416 | ---- | C] () -- C:\Windows\SysWow64\dtu100.dll.manifest
[2008.09.16 01:12:02 | 000,000,416 | ---- | C] () -- C:\Windows\SysWow64\dpl100.dll.manifest
[2008.09.16 01:11:10 | 000,012,288 | ---- | C] () -- C:\Windows\SysWow64\DivXWMPExtType.dll
[2008.09.12 21:17:28 | 000,042,226 | ---- | C] () -- C:\Windows\php.ini
[2008.09.09 10:38:33 | 000,120,200 | ---- | C] () -- C:\Windows\SysWow64\DLLDEV32i.dll
[2008.09.09 10:37:25 | 000,006,768 | ---- | C] () -- C:\Windows\mgxoschk.ini
[2008.09.04 19:46:09 | 000,765,952 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2008.09.04 19:46:09 | 000,180,224 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2008.09.03 09:03:33 | 004,239,360 | ---- | C] () -- C:\Windows\SysWow64\qtp-mt334.dll
[2008.09.03 09:03:33 | 000,008,192 | ---- | C] () -- C:\Windows\SysWow64\wnaspi32.dll
[2008.08.28 02:24:42 | 000,000,088 | RHS- | C] () -- C:\ProgramData\BF99FCB3F6.sys
[2008.08.28 02:24:41 | 000,003,766 | -HS- | C] () -- C:\ProgramData\KGyGaAvL.sys
[2008.08.28 00:00:45 | 000,000,083 | -HS- | C] () -- C:\ProgramData\.zreglib
[2008.08.27 23:02:15 | 000,056,414 | ---- | C] () -- C:\ProgramData\nvModes.dat
[2008.08.27 23:02:15 | 000,056,414 | ---- | C] () -- C:\ProgramData\nvModes.001
[2008.08.27 21:56:12 | 000,000,069 | ---- | C] () -- C:\Windows\NeroDigital.ini
[2008.08.27 21:17:40 | 001,630,270 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2008.01.21 03:49:10 | 000,060,124 | ---- | C] () -- C:\Windows\SysWow64\tcpmon.ini
[2007.11.02 03:27:18 | 000,012,288 | ---- | C] () -- C:\Windows\SysWow64\Spyder3.sys
[2007.11.02 03:27:18 | 000,012,288 | ---- | C] () -- C:\Windows\SysWow64\drivers\Spyder3.sys
[2007.10.22 03:49:52 | 001,805,306 | ---- | C] () -- C:\Program Files (x86)\NOV2007_d3dx9_36_x64.cab
[2007.10.22 03:49:50 | 000,867,848 | ---- | C] () -- C:\Program Files (x86)\NOV2007_d3dx10_36_x64.cab
[2007.10.22 03:49:48 | 001,712,608 | ---- | C] () -- C:\Program Files (x86)\NOV2007_d3dx9_36_x86.cab
[2007.10.22 03:49:48 | 000,807,132 | ---- | C] () -- C:\Program Files (x86)\NOV2007_d3dx10_36_x86.cab
[2007.10.22 03:49:48 | 000,200,010 | ---- | C] () -- C:\Program Files (x86)\NOV2007_XACT_x64.cab
[2007.10.22 03:49:48 | 000,151,512 | ---- | C] () -- C:\Program Files (x86)\NOV2007_XACT_x86.cab
[2007.10.22 03:49:48 | 000,049,392 | ---- | C] () -- C:\Program Files (x86)\NOV2007_X3DAudio_x64.cab
[2007.10.22 03:49:48 | 000,044,850 | ---- | C] () -- C:\Program Files (x86)\dxdllreg_x86.cab
[2007.10.22 03:49:48 | 000,021,744 | ---- | C] () -- C:\Program Files (x86)\NOV2007_X3DAudio_x86.cab
[2007.10.22 03:31:06 | 001,611,374 | ---- | C] () -- C:\Program Files (x86)\JUN2007_d3dx9_34_x64.cab
[2007.10.22 03:31:06 | 001,610,886 | ---- | C] () -- C:\Program Files (x86)\JUN2007_d3dx9_34_x86.cab
[2007.10.22 03:31:06 | 001,413,862 | ---- | C] () -- C:\Program Files (x86)\OCT2006_d3dx9_31_x64.cab
[2007.10.22 03:31:06 | 001,128,177 | ---- | C] () -- C:\Program Files (x86)\OCT2006_d3dx9_31_x86.cab
[2007.10.22 03:31:06 | 000,702,644 | ---- | C] () -- C:\Program Files (x86)\JUN2007_d3dx10_34_x64.cab
[2007.10.22 03:31:06 | 000,702,072 | ---- | C] () -- C:\Program Files (x86)\JUN2007_d3dx10_34_x86.cab
[2007.10.22 03:31:06 | 000,200,722 | ---- | C] () -- C:\Program Files (x86)\JUN2007_XACT_x64.cab
[2007.10.22 03:31:06 | 000,183,321 | ---- | C] () -- C:\Program Files (x86)\OCT2006_XACT_x64.cab
[2007.10.22 03:31:06 | 000,181,745 | ---- | C] () -- C:\Program Files (x86)\JUN2006_XACT_x64.cab
[2007.10.22 03:31:06 | 000,156,509 | ---- | C] () -- C:\Program Files (x86)\JUN2007_XACT_x86.cab
[2007.10.22 03:31:06 | 000,138,977 | ---- | C] () -- C:\Program Files (x86)\OCT2006_XACT_x86.cab
[2007.10.22 03:31:06 | 000,134,631 | ---- | C] () -- C:\Program Files (x86)\JUN2006_XACT_x86.cab
[2007.10.22 03:31:06 | 000,086,925 | ---- | C] () -- C:\Program Files (x86)\Oct2005_xinput_x64.cab
[2007.10.22 03:31:06 | 000,086,802 | ---- | C] () -- C:\Program Files (x86)\dxupdate.cab
[2007.10.22 03:31:06 | 000,046,247 | ---- | C] () -- C:\Program Files (x86)\Oct2005_xinput_x86.cab
[2007.10.22 03:31:04 | 001,803,760 | ---- | C] () -- C:\Program Files (x86)\AUG2007_d3dx9_35_x64.cab
[2007.10.22 03:31:04 | 001,711,752 | ---- | C] () -- C:\Program Files (x86)\AUG2007_d3dx9_35_x86.cab
[2007.10.22 03:31:04 | 001,575,336 | ---- | C] () -- C:\Program Files (x86)\DEC2006_d3dx9_32_x86.cab
[2007.10.22 03:31:04 | 001,572,114 | ---- | C] () -- C:\Program Files (x86)\DEC2006_d3dx9_32_x64.cab
[2007.10.22 03:31:04 | 001,363,684 | ---- | C] () -- C:\Program Files (x86)\Feb2006_d3dx9_29_x64.cab
[2007.10.22 03:31:04 | 001,358,864 | ---- | C] () -- C:\Program Files (x86)\Dec2005_d3dx9_28_x64.cab
[2007.10.22 03:31:04 | 001,351,430 | ---- | C] () -- C:\Program Files (x86)\Aug2005_d3dx9_27_x64.cab
[2007.10.22 03:31:04 | 001,336,890 | ---- | C] () -- C:\Program Files (x86)\Jun2005_d3dx9_26_x64.cab
[2007.10.22 03:31:04 | 001,248,387 | ---- | C] () -- C:\Program Files (x86)\Feb2005_d3dx9_24_x64.cab
[2007.10.22 03:31:04 | 001,085,608 | ---- | C] () -- C:\Program Files (x86)\Feb2006_d3dx9_29_x86.cab
[2007.10.22 03:31:04 | 001,080,344 | ---- | C] () -- C:\Program Files (x86)\Dec2005_d3dx9_28_x86.cab
[2007.10.22 03:31:04 | 001,078,532 | ---- | C] () -- C:\Program Files (x86)\Aug2005_d3dx9_27_x86.cab
[2007.10.22 03:31:04 | 001,065,813 | ---- | C] () -- C:\Program Files (x86)\Jun2005_d3dx9_26_x86.cab
[2007.10.22 03:31:04 | 001,014,113 | ---- | C] () -- C:\Program Files (x86)\Feb2005_d3dx9_24_x86.cab
[2007.10.22 03:31:04 | 000,855,886 | ---- | C] () -- C:\Program Files (x86)\AUG2007_d3dx10_35_x64.cab
[2007.10.22 03:31:04 | 000,800,467 | ---- | C] () -- C:\Program Files (x86)\AUG2007_d3dx10_35_x86.cab
[2007.10.22 03:31:04 | 000,213,767 | ---- | C] () -- C:\Program Files (x86)\DEC2006_d3dx10_00_x64.cab
[2007.10.22 03:31:04 | 000,201,696 | ---- | C] () -- C:\Program Files (x86)\AUG2007_XACT_x64.cab
[2007.10.22 03:31:04 | 000,198,275 | ---- | C] () -- C:\Program Files (x86)\FEB2007_XACT_x64.cab
[2007.10.22 03:31:04 | 000,193,435 | ---- | C] () -- C:\Program Files (x86)\DEC2006_XACT_x64.cab
[2007.10.22 03:31:04 | 000,192,680 | ---- | C] () -- C:\Program Files (x86)\DEC2006_d3dx10_00_x86.cab
[2007.10.22 03:31:04 | 000,183,863 | ---- | C] () -- C:\Program Files (x86)\AUG2006_XACT_x64.cab
[2007.10.22 03:31:04 | 000,179,247 | ---- | C] () -- C:\Program Files (x86)\Feb2006_XACT_x64.cab
[2007.10.22 03:31:04 | 000,156,612 | ---- | C] () -- C:\Program Files (x86)\AUG2007_XACT_x86.cab
[2007.10.22 03:31:04 | 000,154,825 | ---- | C] () -- C:\Program Files (x86)\APR2007_XACT_x86.cab
[2007.10.22 03:31:04 | 000,151,583 | ---- | C] () -- C:\Program Files (x86)\FEB2007_XACT_x86.cab
[2007.10.22 03:31:04 | 000,146,559 | ---- | C] () -- C:\Program Files (x86)\DEC2006_XACT_x86.cab
[2007.10.22 03:31:04 | 000,138,195 | ---- | C] () -- C:\Program Files (x86)\AUG2006_XACT_x86.cab
[2007.10.22 03:31:04 | 000,133,297 | ---- | C] () -- C:\Program Files (x86)\Feb2006_XACT_x86.cab
[2007.10.22 03:31:04 | 000,100,417 | ---- | C] () -- C:\Program Files (x86)\APR2007_xinput_x64.cab
[2007.10.22 03:31:04 | 000,088,102 | ---- | C] () -- C:\Program Files (x86)\AUG2006_xinput_x64.cab
[2007.10.22 03:31:04 | 000,056,902 | ---- | C] () -- C:\Program Files (x86)\APR2007_xinput_x86.cab
[2007.10.22 03:31:04 | 000,047,018 | ---- | C] () -- C:\Program Files (x86)\AUG2006_xinput_x86.cab
[2007.10.22 03:31:02 | 013,265,040 | ---- | C] () -- C:\Program Files (x86)\dxnt.cab
[2007.10.22 03:31:02 | 004,163,518 | ---- | C] () -- C:\Program Files (x86)\Apr2006_MDX1_x86_Archive.cab
[2007.10.22 03:31:02 | 001,610,958 | ---- | C] () -- C:\Program Files (x86)\APR2007_d3dx9_33_x64.cab
[2007.10.22 03:31:02 | 001,609,639 | ---- | C] () -- C:\Program Files (x86)\APR2007_d3dx9_33_x86.cab
[2007.10.22 03:31:02 | 001,398,718 | ---- | C] () -- C:\Program Files (x86)\Apr2006_d3dx9_30_x64.cab
[2007.10.22 03:31:02 | 001,348,242 | ---- | C] () -- C:\Program Files (x86)\Apr2005_d3dx9_25_x64.cab
[2007.10.22 03:31:02 | 001,156,363 | ---- | C] () -- C:\Program Files (x86)\BDANT.cab
[2007.10.22 03:31:02 | 001,116,109 | ---- | C] () -- C:\Program Files (x86)\Apr2006_d3dx9_30_x86.cab
[2007.10.22 03:31:02 | 001,079,850 | ---- | C] () -- C:\Program Files (x86)\Apr2005_d3dx9_25_x86.cab
[2007.10.22 03:31:02 | 000,976,020 | ---- | C] () -- C:\Program Files (x86)\BDAXP.cab
[2007.10.22 03:31:02 | 000,917,318 | ---- | C] () -- C:\Program Files (x86)\Apr2006_MDX1_x86.cab
[2007.10.22 03:31:02 | 000,702,212 | ---- | C] () -- C:\Program Files (x86)\APR2007_d3dx10_33_x64.cab
[2007.10.22 03:31:02 | 000,699,465 | ---- | C] () -- C:\Program Files (x86)\APR2007_d3dx10_33_x86.cab
[2007.10.22 03:31:02 | 000,199,366 | ---- | C] () -- C:\Program Files (x86)\APR2007_XACT_x64.cab
[2007.10.22 03:31:02 | 000,180,021 | ---- | C] () -- C:\Program Files (x86)\Apr2006_XACT_x64.cab
[2007.10.22 03:31:02 | 000,133,991 | ---- | C] () -- C:\Program Files (x86)\Apr2006_XACT_x86.cab
[2007.10.22 03:31:02 | 000,087,989 | ---- | C] () -- C:\Program Files (x86)\Apr2006_xinput_x64.cab
[2007.10.22 03:31:02 | 000,046,898 | ---- | C] () -- C:\Program Files (x86)\Apr2006_xinput_x86.cab
[2007.10.18 15:35:44 | 000,044,344 | ---- | C] () -- C:\Windows\SysWow64\i1display.sys
[2007.10.18 15:35:44 | 000,044,344 | ---- | C] () -- C:\Windows\SysWow64\drivers\i1display.sys
[2007.10.18 14:44:25 | 000,012,288 | ---- | C] () -- C:\Windows\SysWow64\Spyder2.sys
[2007.10.18 14:44:25 | 000,012,288 | ---- | C] () -- C:\Windows\SysWow64\drivers\Spyder2.sys
[2007.07.23 09:03:32 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelTraditionalChinese.dll
[2007.07.23 09:03:32 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelSwedish.dll
[2007.07.23 09:03:32 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelSpanish.dll
[2007.07.23 09:03:30 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelSimplifiedChinese.dll
[2007.07.23 09:03:30 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelPortugese.dll
[2007.07.23 09:03:30 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelKorean.dll
[2007.07.23 09:03:30 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelJapanese.dll
[2007.07.23 09:03:30 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelGerman.dll
[2007.07.23 09:03:30 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelFrench.dll
[2007.03.12 20:31:28 | 001,732,608 | ---- | C] () -- C:\Windows\SysWow64\BCGPStyle2007Luna.dll
[2006.12.27 12:43:19 | 000,044,344 | ---- | C] () -- C:\Windows\SysWow64\seqcal.sys
[2006.12.27 12:43:19 | 000,044,344 | ---- | C] () -- C:\Windows\SysWow64\drivers\seqcal.sys
[2005.11.10 02:52:42 | 000,059,392 | ---- | C] () -- C:\Windows\sm56spn.dll
[2005.11.10 02:52:42 | 000,059,392 | ---- | C] () -- C:\Windows\sm56itl.dll
[2005.11.10 02:52:42 | 000,059,392 | ---- | C] () -- C:\Windows\sm56eng.dll
[2005.11.10 02:52:42 | 000,059,392 | ---- | C] () -- C:\Windows\sm56brz.dll
[2005.11.10 02:52:42 | 000,053,248 | ---- | C] () -- C:\Windows\sm56ger.dll
[2005.11.10 02:52:42 | 000,053,248 | ---- | C] () -- C:\Windows\sm56fra.dll
[2005.11.10 02:52:42 | 000,045,056 | ---- | C] () -- C:\Windows\sm56jpn.dll
[2005.11.10 02:52:42 | 000,040,960 | ---- | C] () -- C:\Windows\sm56cht.dll
[2005.11.10 02:52:42 | 000,040,960 | ---- | C] () -- C:\Windows\sm56chs.dll
< End of report >
| |