Und Teil 2 Code:
========== Driver Services (SafeList) ==========
DRV:64bit: - [2011.07.06 19:52:42 | 000,025,912 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:64bit: - [2011.06.29 09:42:30 | 000,123,784 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avipbb.sys -- (avipbb)
DRV:64bit: - [2011.06.29 09:42:30 | 000,088,288 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\avgntflt.sys -- (avgntflt)
DRV:64bit: - [2011.05.13 15:37:54 | 000,048,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:64bit: - [2011.03.20 13:19:55 | 000,314,016 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\atksgt.sys -- (atksgt)
DRV:64bit: - [2011.03.20 13:19:55 | 000,043,680 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\lirsgt.sys -- (lirsgt)
DRV:64bit: - [2010.11.20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.11.20 15:32:47 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010.11.20 15:32:46 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2010.11.20 13:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010.11.20 11:37:42 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:64bit: - [2010.01.13 16:37:18 | 007,675,392 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NETw5s64.sys -- (NETw5s64) Intel(R)
DRV:64bit: - [2009.10.21 09:35:26 | 000,501,760 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\stwrt64.sys -- (STHDA)
DRV:64bit: - [2009.10.03 05:58:12 | 000,258,560 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2009.09.17 22:56:24 | 000,021,160 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btwrchid.sys -- (btwrchid)
DRV:64bit: - [2009.09.17 22:56:16 | 000,035,104 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btwl2cap.sys -- (btwl2cap)
DRV:64bit: - [2009.09.17 22:56:14 | 000,132,648 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btwavdt.sys -- (btwavdt)
DRV:64bit: - [2009.09.17 22:56:10 | 000,098,344 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btwaudio.sys -- (btwaudio)
DRV:64bit: - [2009.09.03 16:30:20 | 000,128,512 | ---- | M] (Texas Instruments) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tiehdusb.sys -- (TIEHDUSB)
DRV:64bit: - [2009.08.22 11:54:04 | 000,084,512 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA)
DRV:64bit: - [2009.08.15 08:54:54 | 000,286,768 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2009.08.08 06:24:14 | 000,408,600 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2009.07.21 05:39:22 | 000,140,712 | ---- | M] (JMicron Technology Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\jmcr.sys -- (JMCR)
DRV:64bit: - [2009.07.14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.07.08 14:49:08 | 000,030,008 | ---- | M] (Hewlett-Packard) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\hpdskflt.sys -- (hpdskflt)
DRV:64bit: - [2009.07.08 14:48:50 | 000,041,272 | ---- | M] (Hewlett-Packard) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Accelerometer.sys -- (Accelerometer)
DRV:64bit: - [2009.06.29 20:17:00 | 000,070,656 | ---- | M] (ENE TECHNOLOGY INC.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\enecir.sys -- (enecir)
DRV:64bit: - [2009.06.10 23:01:11 | 001,485,312 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTDPV6.SYS -- (SrvHsfV92)
DRV:64bit: - [2009.06.10 23:01:11 | 000,740,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTCNXT6.SYS -- (SrvHsfWinac)
DRV:64bit: - [2009.06.10 23:01:11 | 000,292,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTAZL6.SYS -- (SrvHsfHDA)
DRV:64bit: - [2009.06.10 23:01:06 | 001,146,880 | ---- | M] (LSI Corp) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\agrsm64.sys -- (AgereSoftModem)
DRV:64bit: - [2009.06.10 22:37:05 | 006,108,416 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2009.06.10 22:35:33 | 000,389,120 | ---- | M] (Marvell) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\yk62x64.sys -- (yukonw7)
DRV:64bit: - [2009.06.10 22:35:28 | 005,434,368 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netw5v64.sys -- (netw5v64) Intel(R)
DRV:64bit: - [2009.06.10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009.05.22 08:32:52 | 000,311,424 | ---- | M] (AVerMedia TECHNOLOGIES, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AVerAF15.sys -- (AVerAF15)
DRV:64bit: - [2009.04.29 09:48:32 | 000,018,432 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HpqKbFiltr.sys -- (HpqKbFiltr)
DRV - [2009.10.16 21:47:06 | 000,146,928 | ---- | M] (CyberLink Corp.) [2010/02/24 01:43:16] [Kernel | Auto | Running] -- c:\Program Files (x86)\Hewlett-Packard\Media\DVD\000.fcl -- ({55662437-DA8C-40c0-AADA-2C816A897A49})
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPCON/12
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPCON/12
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPCON/12
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPCON/12
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.ch/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://hp.ch.msn.com/default.aspx
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-ch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 1A CA 50 4D 1F DF CA 01 [binary data]
IE - HKCU\..\URLSearchHook: {472734EA-242A-422b-ADF8-83D1E48CC825} - Reg Error: Key error. File not found
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
FF:64bit: - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX,Inc.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.3: C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Daniel Chvojan\AppData\Local\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Daniel Chvojan\AppData\Local\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\otis@digitalpersona.com: C:\Program Files (x86)\DigitalPersona\Bin\FirefoxExt\ [2010.04.25 19:11:11 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\otis@digitalpersona.com: C:\Program Files (x86)\DigitalPersona\Bin\firefoxext [2010.04.25 19:11:11 | 000,000,000 | ---D | M]
O1 HOSTS File: ([2009.06.10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (DigitalPersona Personal Extension) - {395610AE-C624-4f58-B89E-23733EA00F9A} - C:\Programme\DigitalPersona\Bin\DpOtsPluginIe8.dll (DigitalPersona, Inc.)
O2:64bit: - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
O2:64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O2:64bit: - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Programme\Google\GoogleToolbarNotifier\5.7.6406.1642\swg64.dll (Google Inc.)
O2 - BHO: (DigitalPersona Personal Extension) - {395610AE-C624-4f58-B89E-23733EA00F9A} - C:\Program Files (x86)\DigitalPersona\Bin\DpOtsPluginIe8.dll (DigitalPersona, Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll (Google Inc.)
O3:64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3:64bit: - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3:64bit: - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O4:64bit: - HKLM..\Run: [NvCplDaemon] C:\Windows\SysNative\NvCpl.dll (NVIDIA Corporation)
O4:64bit: - HKLM..\Run: [SmartMenu] C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe ()
O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Programme\IDT\WDM\sttray64.exe (IDT, Inc.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [C:\Free Video Zilla\FVZilla.exe] File not found
O4 - HKLM..\Run: [Corel File Shell Monitor] C:\Program Files (x86)\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe ()
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [DpAgent] C:\Program Files (x86)\DigitalPersona\Bin\DpAgent.exe (DigitalPersona, Inc.)
O4 - HKLM..\Run: [HPCam_Menu] c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [NortonOnlineBackupReminder] C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe (Symantec Corporation)
O4 - HKLM..\Run: [Realtime Audio Engine] File not found
O4 - Startup: C:\Users\Daniel Chvojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk = C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: AllowLegacyWebView = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: AllowUnhashedWebView = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O8:64bit: - Extra context menu item: Bild an &Bluetooth-Gerät senden... - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8:64bit: - Extra context menu item: Free YouTube Download - C:\Users\Daniel Chvojan\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm ()
O8:64bit: - Extra context menu item: Free YouTube to iPhone Converter - C:\Users\Daniel Chvojan\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetoiphoneconverter.htm ()
O8:64bit: - Extra context menu item: Free YouTube to iPod Converter - C:\Users\Daniel Chvojan\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetoipodconverter.htm ()
O8:64bit: - Extra context menu item: Free YouTube to Mp3 Converter - C:\Users\Daniel Chvojan\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm ()
O8:64bit: - Extra context menu item: Google Sidewiki... - C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_70C5B381380DB17F.dll (Google Inc.)
O8:64bit: - Extra context menu item: Seite an &Bluetooth-Gerät senden... - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O8 - Extra context menu item: Bild an &Bluetooth-Gerät senden... - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Free YouTube Download - C:\Users\Daniel Chvojan\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm ()
O8 - Extra context menu item: Free YouTube to iPhone Converter - C:\Users\Daniel Chvojan\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetoiphoneconverter.htm ()
O8 - Extra context menu item: Free YouTube to iPod Converter - C:\Users\Daniel Chvojan\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetoipodconverter.htm ()
O8 - Extra context menu item: Free YouTube to Mp3 Converter - C:\Users\Daniel Chvojan\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm ()
O8 - Extra context menu item: Google Sidewiki... - C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_70C5B381380DB17F.dll (Google Inc.)
O8 - Extra context menu item: Seite an &Bluetooth-Gerät senden... - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9:64bit: - Extra Button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9:64bit: - Extra 'Tools' menuitem : @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: Senden an Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : Senden an &Bluetooth-Gerät... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} hxxp://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab (Solitaire Showdown Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab (MessengerStatsClient Class)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} hxxp://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab (Minesweeper Flags Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.253
O18:64bit: - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\wlpg {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20:64bit: - AppInit_DLLs: (C:\PROGRA~2\WI3C8A~1\Datamngr\x64\datamngr.dll) - File not found
O20:64bit: - AppInit_DLLs: (C:\PROGRA~2\WI3C8A~1\Datamngr\x64\IEBHO.dll) - File not found
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011.08.16 18:26:59 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{DF2D4E15-C6D0-4391-A196-ED63CD07F733}
[2011.08.16 18:26:47 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{20A3358D-527B-40C4-86EC-90E3BBCEAF41}
[2011.08.15 18:17:04 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{AF67E1D8-04AA-4D70-A97E-48D55D892A06}
[2011.08.15 18:16:53 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{1165376B-8330-4544-A856-884B62B0B0E5}
[2011.08.15 18:16:39 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{023FC94C-71C3-48D5-AE03-B0A5048CB350}
[2011.08.14 23:08:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PC Tools Security
[2011.08.14 23:02:56 | 000,000,000 | ---D | C] -- C:\ProgramData\PC Tools
[2011.08.14 22:04:10 | 000,525,544 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysNative\deployJava1.dll
[2011.08.14 22:04:10 | 000,190,752 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysNative\javaws.exe
[2011.08.14 22:04:10 | 000,171,808 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysNative\javaw.exe
[2011.08.14 22:04:10 | 000,171,808 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysNative\java.exe
[2011.08.14 21:55:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2011.08.14 21:55:34 | 000,000,000 | R--D | C] -- C:\Program Files (x86)\Skype
[2011.08.14 21:54:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe
[2011.08.14 21:35:32 | 000,580,096 | ---- | C] (OldTimer Tools) -- C:\Users\Daniel Chvojan\Desktop\OTL.exe
[2011.08.14 21:09:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2011.08.14 21:09:44 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2011.08.14 19:15:34 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\Omnifone_Ltd
[2011.08.14 18:42:18 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\SPReview
[2011.08.14 18:41:39 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Roaming\newfolder3
[2011.08.14 18:41:36 | 000,000,000 | ---D | C] -- C:\ProgramData\MusicStation
[2011.08.14 18:41:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MusicStation
[2011.08.14 18:41:35 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\Downloaded Installations
[2011.08.14 18:41:34 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Synchronization Services
[2011.08.14 18:41:34 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SQL Server Compact Edition
[2011.08.14 18:41:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Synchronization Services
[2011.08.14 12:50:50 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{D492034D-212F-42D0-B9C1-DF14FC8D2E9D}
[2011.08.14 12:50:39 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{EB73D160-3DAA-4619-9534-940AFC568B06}
[2011.08.13 18:37:07 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{752D3C07-5549-47D0-AE56-47A7DAD26C80}
[2011.08.13 11:16:11 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{6578D1DC-9D86-41EF-8FBF-48CFFA87031F}
[2011.08.12 22:45:12 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{1CACA662-C22C-47FC-9B50-10081CC50EDE}
[2011.08.12 22:45:01 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{261888C5-6C5F-47D4-97B9-13B14BF465A5}
[2011.08.12 12:31:25 | 000,000,000 | ---D | C] -- C:\output
[2011.08.12 12:21:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FixFoto
[2011.08.12 12:21:41 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\Documents\FixFoto
[2011.08.12 12:21:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FixFoto
[2011.08.12 10:44:34 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{10F95A60-8CE3-43C8-8DAB-D574B744876E}
[2011.08.12 10:44:24 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{A1F417E2-EAC9-4F9E-B893-99E744FD55C9}
[2011.08.11 10:21:03 | 000,319,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbcjt32.dll
[2011.08.11 10:21:03 | 000,212,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbctrac.dll
[2011.08.11 10:21:03 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbctrac.dll
[2011.08.11 10:21:03 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbccp32.dll
[2011.08.11 10:21:03 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccp32.dll
[2011.08.11 10:21:03 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbccu32.dll
[2011.08.11 10:21:03 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbccr32.dll
[2011.08.11 10:21:03 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccu32.dll
[2011.08.11 10:21:03 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccr32.dll
[2011.08.11 10:20:53 | 001,162,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kernel32.dll
[2011.08.11 10:20:53 | 000,421,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KernelBase.dll
[2011.08.11 10:20:53 | 000,338,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\conhost.exe
[2011.08.11 10:20:53 | 000,243,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll
[2011.08.11 10:20:53 | 000,214,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsrv.dll
[2011.08.11 10:20:53 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setup16.exe
[2011.08.11 10:20:53 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntvdm64.dll
[2011.08.11 10:20:52 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64win.dll
[2011.08.11 10:20:52 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntvdm64.dll
[2011.08.11 10:20:52 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64cpu.dll
[2011.08.11 10:20:52 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\instnm.exe
[2011.08.11 10:20:52 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
[2011.08.11 10:20:52 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-file-l1-1-0.dll
[2011.08.11 10:20:52 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wow32.dll
[2011.08.11 10:20:52 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
[2011.08.11 10:20:52 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll
[2011.08.11 10:20:52 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll
[2011.08.11 10:20:52 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll
[2011.08.11 10:20:52 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll
[2011.08.11 10:20:52 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll
[2011.08.11 10:20:52 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll
[2011.08.11 10:20:52 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
[2011.08.11 10:20:52 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll
[2011.08.11 10:20:52 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll
[2011.08.11 10:20:52 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll
[2011.08.11 10:20:52 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.08.11 10:20:52 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll
[2011.08.11 10:20:52 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll
[2011.08.11 10:20:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
[2011.08.11 10:20:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-string-l1-1-0.dll
[2011.08.11 10:20:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll
[2011.08.11 10:20:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-io-l1-1-0.dll
[2011.08.11 10:20:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll
[2011.08.11 10:20:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll
[2011.08.11 10:20:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll
[2011.08.11 10:20:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-console-l1-1-0.dll
[2011.08.11 10:20:52 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\user.exe
[2011.08.11 10:20:51 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-security-base-l1-1-0.dll
[2011.08.11 10:20:51 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-file-l1-1-0.dll
[2011.08.11 10:20:51 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll
[2011.08.11 10:20:51 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll
[2011.08.11 10:20:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll
[2011.08.11 10:20:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-synch-l1-1-0.dll
[2011.08.11 10:20:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll
[2011.08.11 10:20:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll
[2011.08.11 10:20:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll
[2011.08.11 10:20:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll
[2011.08.11 10:20:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-misc-l1-1-0.dll
[2011.08.11 10:20:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-memory-l1-1-0.dll
[2011.08.11 10:20:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.08.11 10:20:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll
[2011.08.11 10:20:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-util-l1-1-0.dll
[2011.08.11 10:20:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-string-l1-1-0.dll
[2011.08.11 10:20:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll
[2011.08.11 10:20:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-profile-l1-1-0.dll
[2011.08.11 10:20:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-io-l1-1-0.dll
[2011.08.11 10:20:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll
[2011.08.11 10:20:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll
[2011.08.11 10:20:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll
[2011.08.11 10:20:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll
[2011.08.11 10:20:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll
[2011.08.11 10:20:50 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-heap-l1-1-0.dll
[2011.08.11 10:20:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-handle-l1-1-0.dll
[2011.08.11 10:20:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll
[2011.08.11 10:20:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll
[2011.08.11 10:20:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-debug-l1-1-0.dll
[2011.08.11 10:20:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll
[2011.08.11 10:20:49 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localization-l1-1-0.dll
[2011.08.11 10:20:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-console-l1-1-0.dll
[2011.08.11 10:20:34 | 000,702,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2011.08.11 10:20:34 | 000,599,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeeds.dll
[2011.08.11 10:20:33 | 000,134,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2011.08.11 10:20:32 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2011.08.11 10:20:32 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2011.08.11 10:20:32 | 000,132,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2011.08.11 10:20:32 | 000,097,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2011.08.11 10:20:32 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2011.08.11 10:20:25 | 005,561,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2011.08.11 10:20:25 | 003,912,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2011.08.11 10:20:24 | 003,967,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2011.08.11 10:17:31 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{52253305-ECBF-4D23-8A6D-AF60B0D0A83A}
[2011.08.11 10:17:20 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{0B5EFCF8-B6C6-435F-833F-02ED5C23A123}
[2011.08.10 17:14:08 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{34BD6B10-2948-4182-BD4F-1C9C92CD0721}
[2011.08.10 17:13:57 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{41FBE14E-F58A-4D2D-8747-779BF8E1A211}
[2011.08.10 10:17:20 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ashampoo
[2011.08.10 10:17:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Ashampoo
[2011.08.10 10:08:11 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SamLogic CD-Menu Creator 2010
[2011.08.10 10:08:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SamLogic
[2011.08.10 10:07:55 | 000,037,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\VIREG32.EXE
[2011.08.10 10:01:32 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{2898E3F5-D3E1-42AB-BA30-DDF71D8028E0}
[2011.08.09 22:53:34 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Roaming\Jens Lorek
[2011.08.09 22:52:58 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\Documents\TubeBox!
[2011.08.09 22:52:58 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Roaming\TubeBox
[2011.08.09 22:51:56 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TubeBox!
[2011.08.09 22:51:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Jens Lorek
[2011.08.09 21:53:49 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\Desktop\Eigene Dateien
[2011.08.09 17:10:55 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\Documents\My Autoplay
[2011.08.09 17:10:39 | 000,224,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Tabctl32.ocx
[2011.08.09 17:10:39 | 000,115,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSINET.OCX
[2011.08.09 17:10:39 | 000,057,344 | ---- | C] (GalloSoft) -- C:\Windows\SysWow64\GraphicalMenu.ocx
[2011.08.09 17:10:38 | 000,339,968 | ---- | C] (Arafasoft hxxp://www.arafasoft.com/) -- C:\Windows\SysWow64\Asimcr.ocx
[2011.08.09 17:10:38 | 000,046,080 | ---- | C] (Microsoft Corp) -- C:\Windows\SysWow64\MCIWNDX.OCX
[2011.08.09 13:51:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\eRightSoft
[2011.08.09 11:39:53 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{03A5DB27-77BA-458E-A124-C6B6770F4F12}
[2011.08.09 11:39:41 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{CEF150B4-8A32-4283-A41B-F18E97D826F7}
[2011.08.09 11:39:30 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{B0930E95-1B80-42A0-A483-A6877CC8C5D4}
[2011.08.08 10:13:45 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{6C1711EA-6840-437F-9A2D-DD0085131E6E}
[2011.08.08 10:13:34 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{DE162A56-704F-4BF0-8CD4-6DFA0A9709AB}
[2011.08.07 17:38:39 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\EventProviders
[2011.08.07 17:36:00 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{D7525202-756B-4D97-88FB-4D869D0D5F03}
[2011.08.07 16:11:18 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{BA730CFF-3851-4ED6-A7D8-F2D950F60CA5}
[2011.08.07 16:09:24 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{B46866C7-7168-49CA-9C63-AF3C4C8A7D17}
[2011.08.07 16:05:45 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{03985C4D-05C3-4F6F-8B2E-A54E6C03C7C5}
[2011.08.07 12:23:22 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{BDB3B849-7100-4DEF-B1F6-4DC05996E8CF}
[2011.08.07 12:23:12 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{6D9151A7-40B3-4A6C-B793-355F00077809}
[2011.08.06 17:19:31 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\Documents\My Downloads
[2011.08.06 12:50:07 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{D14360B9-2F24-48A3-9F73-5BA28B7E9516}
[2011.08.05 13:34:45 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{C4C904CC-44B4-434A-A807-7F599047A929}
[2011.08.05 13:34:32 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{B500821D-86F9-4BDF-824F-9643ABFF112D}
[2011.08.05 12:25:25 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\Desktop\Musik
[2011.08.05 12:22:27 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{AC854A95-2EC2-425A-B550-2F6FEAE2CF6E}
[2011.08.04 14:49:52 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{FF98D455-6088-4B9A-83B7-306641995273}
[2011.08.04 14:49:38 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{854CB2C6-840D-4516-8407-F8657F3DDEA2}
[2011.08.04 14:49:26 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{C3F764DD-0A3E-41EC-8DAC-0FADA5ABC855}
[2011.08.03 09:50:37 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{0626EC51-541C-4B9E-9D4A-65D27C107FA1}
[2011.08.03 09:50:26 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{80EB4210-E61A-43B9-A49E-D6E1A1B1227D}
[2011.08.02 13:32:56 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{E6713FC3-79B8-4070-B58C-A85844AA51CB}
[2011.08.02 13:32:44 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{B4D23319-1F09-4F0F-AECB-F9F3FE31189D}
[2011.08.01 19:32:21 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{D95CFBC1-48DF-45FD-B23B-E3CF22F1760A}
[2011.08.01 19:32:08 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{67B1AAFE-1999-422D-BA90-841C3C859C7B}
[2011.07.31 18:08:04 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Roaming\GetRightToGo
[2011.07.31 17:28:24 | 000,856,064 | ---- | C] (Essien Research & Development) -- C:\Windows\SysWow64\mpgfiltr.ax
[2011.07.31 17:28:24 | 000,245,760 | ---- | C] (Viscom Software www.viscomsoft.com) -- C:\Windows\SysWow64\VideoEdit.ocx
[2011.07.31 17:28:24 | 000,152,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\COMDLG32.OCX
[2011.07.31 17:28:24 | 000,147,456 | ---- | C] (Viscom Software www.viscomsoft.com) -- C:\Windows\SysWow64\viscomqtenc.dll
[2011.07.31 17:28:24 | 000,110,592 | ---- | C] (Viscom Software) -- C:\Windows\SysWow64\viscomaudioencoder.dll
[2011.07.31 17:28:24 | 000,098,304 | ---- | C] (Viscom Software www.viscomsoft.com) -- C:\Windows\SysWow64\viscomtran.dll
[2011.07.31 17:28:24 | 000,090,112 | ---- | C] (L544⑩ Technology) -- C:\Windows\SysWow64\viscomframe.dll
[2011.07.31 17:28:24 | 000,081,920 | ---- | C] (Viscom Software) -- C:\Windows\SysWow64\viscomwave.dll
[2011.07.31 17:28:23 | 001,703,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\gdiplus.dll
[2011.07.31 17:28:23 | 000,221,184 | ---- | C] (Veign Chris Hanscom Http://www.veign.com) -- C:\Windows\SysWow64\JwldButn2b.ocx
[2011.07.31 17:28:23 | 000,200,704 | ---- | C] (vbAccelerator) -- C:\Windows\SysWow64\vbalExpBar6.ocx
[2011.07.31 17:28:23 | 000,094,208 | ---- | C] (Viscom Software) -- C:\Windows\SysWow64\viscomaudiodata.dll
[2011.07.31 17:28:23 | 000,094,208 | ---- | C] (vbAccelerator) -- C:\Windows\SysWow64\vbalIml6.ocx
[2011.07.31 17:28:23 | 000,040,960 | ---- | C] (vbAccelerator) -- C:\Windows\SysWow64\SSubTmr6.dll
[2011.07.31 16:49:25 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Roaming\avidemux
[2011.07.31 10:00:20 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Roaming\Windows Live Writer
[2011.07.31 10:00:20 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\Windows Live Writer
[2011.07.31 09:59:57 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{F34C2996-F9A5-4641-A754-A1FC5013C6B2}
[2011.07.31 09:59:45 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{4552A368-7AFD-443E-B505-CE7F932E452E}
[2011.07.31 09:59:45 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{0AC5F78C-3731-4C3D-AA31-1F7608181D57}
[2011.07.31 00:07:26 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Roaming\Ulead Systems
[2011.07.30 16:30:46 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Roaming\Media Player Classic
[2011.07.30 16:29:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
[2011.07.30 16:29:48 | 000,237,568 | ---- | C] (www.helixcommunity.org) -- C:\Windows\SysWow64\yv12vfw.dll
[2011.07.30 16:29:48 | 000,232,448 | ---- | C] (Fraunhofer Institut Integrierte Schaltungen IIS) -- C:\Windows\SysWow64\mp3fhg.acm
[2011.07.30 16:29:48 | 000,151,552 | ---- | C] (fccHandler) -- C:\Windows\SysWow64\ac3acm.acm
[2011.07.30 16:29:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\K-Lite Codec Pack
[2011.07.30 15:28:11 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\Desktop\Filme
[2011.07.30 14:29:10 | 000,404,640 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2011.07.30 13:57:33 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\vRevealR 2.0 Crack installer
[2011.07.30 13:19:04 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Roaming\Malwarebytes
[2011.07.30 13:18:59 | 000,041,272 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
[2011.07.30 13:18:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011.07.30 13:18:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2011.07.30 13:18:55 | 000,025,912 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2011.07.30 13:18:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2011.07.30 12:54:52 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\MotionDSP
[2011.07.30 12:54:37 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Roaming\MotionDSP
[2011.07.30 12:54:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\vReveal 3
[2011.07.30 12:43:10 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Roaming\MOVAVI
[2011.07.30 12:28:32 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{27E9C0AD-46DA-48B3-AC3B-52A68FCB0F4B}
[2011.07.30 12:28:21 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{40BFB819-55FE-4125-9025-AC1B3D110D20}
[2011.07.29 12:00:33 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\Documents\My PSP Files
[2011.07.29 12:00:33 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Roaming\Corel
[2011.07.29 11:43:51 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{9CC1540C-69A6-4EA2-B7DB-9E99A01A77B5}
[2011.07.29 11:43:40 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{5651D530-BC01-4D95-B6DA-4199029B8C82}
[2011.07.29 11:07:41 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{2853F94F-2BAC-4180-A1E3-6BF44FA5937A}
[2011.07.28 21:28:24 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Roaming\FVZilla
[2011.07.28 21:28:24 | 000,000,000 | ---D | C] -- C:\downloads
[2011.07.28 16:58:58 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\Electronic Arts
[2011.07.28 16:08:06 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{14754AE2-8E78-403B-907D-AFB8290B32F3}
[2011.07.28 10:15:11 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{ECD82560-0107-465C-A4F5-67A73BF89E57}
[2011.07.26 10:58:49 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{9DCF6C72-2AAA-4D82-8046-52B942AFD6A2}
[2011.07.25 17:30:55 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\SKIDROW
[2011.07.25 10:58:53 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{A5534B8A-AF0E-4B53-B1D0-D3CAB2918A66}
[2011.07.24 23:17:50 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\Documents\My Games
[2011.07.24 23:17:50 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\My Games
[2011.07.24 20:35:16 | 000,233,472 | ---- | C] (Immersion Corporation) -- C:\Windows\SysNative\IFC23.dll
[2011.07.24 16:02:39 | 000,000,000 | ---D | C] -- C:\VCRedist
[2011.07.24 16:01:40 | 000,000,000 | ---D | C] -- C:\miles
[2011.07.24 16:01:40 | 000,000,000 | ---D | C] -- C:\Locale
[2011.07.24 16:01:40 | 000,000,000 | ---D | C] -- C:\EULA
[2011.07.24 16:01:34 | 000,000,000 | ---D | C] -- C:\DirectX
[2011.07.24 16:01:34 | 000,000,000 | ---D | C] -- C:\Debug
[2011.07.24 15:23:56 | 002,605,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_40.dll
[2011.07.24 15:23:56 | 002,036,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_40.dll
[2011.07.24 15:23:56 | 000,519,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_40.dll
[2011.07.24 15:23:56 | 000,452,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_40.dll
[2011.07.24 15:23:54 | 005,631,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_40.dll
[2011.07.24 15:23:54 | 004,379,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_40.dll
[2011.07.24 15:05:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Sid Meier's Civilization V
[2011.07.24 14:51:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Steam
[2011.07.24 14:43:59 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\{A75EDC35-376E-4D35-A49F-65EF5E924F42}
[2011.07.24 13:30:54 | 000,000,000 | ---D | C] -- C:\Windows\de
[2011.07.24 13:25:37 | 000,048,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\fssfltr.sys
[2011.07.24 13:17:03 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\Windows Live
[2011.07.24 11:51:09 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Roaming\uTorrent
[2011.07.24 11:14:08 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
[2011.07.24 11:14:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
[2011.07.24 10:15:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Softendo.com
[2011.07.22 14:25:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\softendo.com
[2011.07.21 13:13:47 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\Desktop\WICHTIG
[2011.07.21 12:55:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Awem
[2011.07.21 11:36:39 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Local\ElevatedDiagnostics
[2011.07.21 11:32:39 | 000,000,000 | ---D | C] -- C:\NVIDIA
[2011.07.21 10:06:34 | 000,000,000 | ---D | C] -- C:\ProgramData\SecTaskMan
[2011.07.21 10:06:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security Task Manager
[2011.07.21 10:06:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Security Task Manager
[2011.07.21 09:31:10 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2011.07.20 17:03:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameTop.com
[2011.07.20 16:19:11 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Cradle Of Rome
[2011.07.20 15:57:42 | 000,000,000 | ---D | C] -- C:\ProgramData\WinZip
[2011.07.20 12:26:40 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DVDVideoSoft
[2011.07.19 15:48:46 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Roaming\Awem
[2011.07.19 15:45:11 | 000,000,000 | ---D | C] -- C:\Users\Daniel Chvojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Cradle Of Rome 2
[2011.07.19 11:28:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cradle of Rome
[4 C:\Users\Daniel Chvojan\AppData\Local\*.tmp files -> C:\Users\Daniel Chvojan\AppData\Local\*.tmp -> ]
[2 C:\*.tmp files -> C:\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011.08.16 20:17:00 | 000,001,156 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4264936456-2933647673-22141408-1000UA.job
[2011.08.16 20:15:01 | 000,001,126 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011.08.16 19:54:40 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011.08.16 19:17:00 | 000,001,104 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4264936456-2933647673-22141408-1000Core.job
[2011.08.16 18:32:05 | 000,023,248 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011.08.16 18:32:05 | 000,023,248 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011.08.16 18:25:40 | 000,001,122 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011.08.16 18:24:19 | 000,065,536 | ---- | M] () -- C:\Windows\SysNative\Ikeext.etl
[2011.08.16 18:24:13 | 000,000,334 | -HS- | M] () -- C:\Windows\tasks\jgza.job
[2011.08.16 18:24:00 | 529,690,623 | -HS- | M] () -- C:\hiberfil.sys
[2011.08.15 21:45:23 | 000,302,592 | ---- | M] () -- C:\Users\Daniel Chvojan\Desktop\qrn90wmy.exe
[2011.08.15 21:39:12 | 000,000,000 | ---- | M] () -- C:\Users\Daniel Chvojan\defogger_reenable
[2011.08.15 18:37:33 | 000,050,477 | ---- | M] () -- C:\Users\Daniel Chvojan\Desktop\Defogger.exe
[2011.08.14 23:08:48 | 001,662,944 | ---- | M] () -- C:\Windows\SysNative\drivers\Cat.DB
[2011.08.14 22:57:29 | 000,410,944 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2011.08.14 22:06:10 | 000,404,640 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2011.08.14 22:04:07 | 000,525,544 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\SysNative\deployJava1.dll
[2011.08.14 22:04:07 | 000,190,752 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\SysNative\javaws.exe
[2011.08.14 22:04:07 | 000,171,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\SysNative\javaw.exe
[2011.08.14 22:04:07 | 000,171,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\SysNative\java.exe
[2011.08.14 21:35:31 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Users\Daniel Chvojan\Desktop\OTL.exe
[2011.08.14 21:27:03 | 000,231,828 | ---- | M] () -- C:\Users\Daniel Chvojan\Documents\cc_20110814_212642.reg
[2011.08.14 21:09:45 | 000,000,827 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2011.08.14 20:51:08 | 001,472,002 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011.08.14 20:51:08 | 000,643,866 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
[2011.08.14 20:51:08 | 000,607,190 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011.08.14 20:51:08 | 000,126,394 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
[2011.08.14 20:51:08 | 000,103,568 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011.08.14 18:53:15 | 000,175,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msclmd.dll
[2011.08.14 18:53:15 | 000,152,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msclmd.dll
[2011.08.14 18:41:42 | 000,000,243 | ---- | M] () -- C:\ProgramData\MusicStation.xml
[2011.08.14 18:41:40 | 000,000,228 | ---- | M] () -- C:\Windows\SysWow64\MsiExec.config
[2011.08.12 12:22:00 | 000,000,912 | ---- | M] () -- C:\Users\Daniel Chvojan\Desktop\FixFoto.lnk
[2011.08.10 10:17:57 | 000,002,662 | ---- | M] () -- C:\Users\Daniel Chvojan\Desktop\Google Chrome.lnk
[2011.08.10 10:17:20 | 000,001,245 | ---- | M] () -- C:\Users\Daniel Chvojan\Desktop\Ashampoo MyAutoplay Menu.lnk
[2011.08.09 21:39:02 | 000,012,165 | ---- | M] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpNCIS 1_navi.JPG
[2011.08.09 21:38:58 | 000,046,349 | ---- | M] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpNCIS 1.0
[2011.08.09 21:38:58 | 000,025,069 | ---- | M] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpNCIS 1.JPG
[2011.08.03 15:01:32 | 000,016,603 | ---- | M] () -- C:\Users\Daniel Chvojan\Desktop\WIEHNACHTE.odt
[2011.07.31 17:32:49 | 000,008,704 | ---- | M] () -- C:\Users\Daniel Chvojan\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.07.30 13:18:59 | 000,001,074 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011.07.30 13:02:07 | 000,063,488 | RHS- | M] () -- C:\Windows\SysWow64\cmmon32O.dll
[2011.07.30 12:42:54 | 000,054,156 | -H-- | M] () -- C:\Windows\QTFont.qfn
[2011.07.30 12:42:54 | 000,001,409 | ---- | M] () -- C:\Windows\QTFont.for
[2011.07.30 12:42:50 | 000,005,117 | ---- | M] () -- C:\ProgramData\hvcatrnw.tht
[2011.07.24 17:41:12 | 000,000,000 | ---- | M] () -- C:\Windows\PowerReg.dat
[2011.07.22 15:20:08 | 000,000,052 | ---- | M] () -- C:\Windows\mafosav.INI
[2011.07.22 10:00:00 | 000,074,752 | ---- | M] () -- C:\Windows\SysWow64\ff_vfw.dll
[2011.07.22 10:00:00 | 000,000,038 | ---- | M] () -- C:\Windows\avisplitter.ini
[2011.07.21 10:01:17 | 000,126,464 | ---- | M] (AlcaTech) -- C:\Windows\SysWow64\Setup.dll
[4 C:\Users\Daniel Chvojan\AppData\Local\*.tmp files -> C:\Users\Daniel Chvojan\AppData\Local\*.tmp -> ]
[2 C:\*.tmp files -> C:\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011.08.15 21:45:26 | 000,302,592 | ---- | C] () -- C:\Users\Daniel Chvojan\Desktop\qrn90wmy.exe
[2011.08.15 21:37:04 | 000,000,000 | ---- | C] () -- C:\Users\Daniel Chvojan\defogger_reenable
[2011.08.15 18:37:36 | 000,050,477 | ---- | C] () -- C:\Users\Daniel Chvojan\Desktop\Defogger.exe
[2011.08.14 23:08:41 | 001,662,944 | ---- | C] () -- C:\Windows\SysNative\drivers\Cat.DB
[2011.08.14 21:54:37 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
[2011.08.14 21:26:44 | 000,231,828 | ---- | C] () -- C:\Users\Daniel Chvojan\Documents\cc_20110814_212642.reg
[2011.08.14 21:09:45 | 000,000,827 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2011.08.14 18:41:42 | 000,000,243 | ---- | C] () -- C:\ProgramData\MusicStation.xml
[2011.08.14 18:41:40 | 000,000,228 | ---- | C] () -- C:\Windows\SysWow64\MsiExec.config
[2011.08.12 12:22:00 | 000,000,912 | ---- | C] () -- C:\Users\Daniel Chvojan\Desktop\FixFoto.lnk
[2011.08.10 10:17:20 | 000,001,245 | ---- | C] () -- C:\Users\Daniel Chvojan\Desktop\Ashampoo MyAutoplay Menu.lnk
[2011.08.09 21:39:02 | 000,012,165 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpNCIS 1_navi.JPG
[2011.08.09 21:38:58 | 000,046,349 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpNCIS 1.0
[2011.08.09 21:38:58 | 000,025,069 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpNCIS 1.JPG
[2011.08.06 15:59:14 | 000,065,536 | ---- | C] () -- C:\Windows\SysNative\Ikeext.etl
[2011.08.03 10:54:45 | 000,016,603 | ---- | C] () -- C:\Users\Daniel Chvojan\Desktop\WIEHNACHTE.odt
[2011.07.31 17:28:24 | 000,598,016 | ---- | C] () -- C:\Windows\SysWow64\viscomqtde.dll
[2011.07.31 17:00:55 | 002,669,056 | ---- | C] () -- C:\Users\Daniel Chvojan\Desktop\VirtualDub.exe
[2011.07.30 16:29:50 | 000,175,616 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2011.07.30 16:29:49 | 000,000,038 | ---- | C] () -- C:\Windows\avisplitter.ini
[2011.07.30 16:29:47 | 000,650,752 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2011.07.30 16:29:47 | 000,243,200 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2011.07.30 16:29:47 | 000,074,752 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll
[2011.07.30 13:18:59 | 000,001,074 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011.07.30 13:02:08 | 000,000,334 | -HS- | C] () -- C:\Windows\tasks\jgza.job
[2011.07.30 13:02:07 | 000,063,488 | RHS- | C] () -- C:\Windows\SysWow64\cmmon32O.dll
[2011.07.30 12:42:54 | 000,054,156 | -H-- | C] () -- C:\Windows\QTFont.qfn
[2011.07.30 12:42:54 | 000,001,409 | ---- | C] () -- C:\Windows\QTFont.for
[2011.07.30 12:42:50 | 000,005,117 | ---- | C] () -- C:\ProgramData\hvcatrnw.tht
[2011.07.24 17:41:12 | 000,000,000 | ---- | C] () -- C:\Windows\PowerReg.dat
[2011.07.24 13:28:39 | 000,001,270 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Movie Maker.lnk
[2011.07.24 13:28:17 | 000,001,339 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Photo Gallery.lnk
[2011.07.24 13:27:45 | 000,001,423 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk
[2011.07.24 13:27:15 | 000,002,451 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk
[2011.07.22 14:28:41 | 000,000,052 | ---- | C] () -- C:\Windows\mafosav.INI
[2011.07.16 18:49:26 | 000,110,080 | ---- | C] () -- C:\Windows\SysWow64\advd.dll
[2011.07.16 18:49:26 | 000,023,040 | ---- | C] () -- C:\Windows\SysWow64\auth.dll
[2011.07.16 18:49:25 | 000,262,144 | ---- | C] () -- C:\Windows\SysWow64\lame_enc.dll
[2011.07.14 22:12:52 | 000,000,000 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\{AF367AAD-0A72-41BD-923E-4207CF4DF079}
[2011.07.06 22:51:01 | 000,000,000 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\{DD969EB8-D537-4D37-A1AF-A69ED710ACF5}
[2011.06.29 22:48:08 | 000,000,000 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\{5E7A5561-9A16-4949-B819-4A61845B083C}
[2011.06.29 22:46:32 | 000,000,000 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\{D132C775-0C7A-44F6-A529-596C9C214141}
[2011.03.31 13:52:59 | 000,051,421 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpSNAPSHOT_20110331_8.JPG
[2011.03.03 21:13:25 | 000,096,151 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpCHOREO (1).JPG
[2011.02.23 11:22:04 | 000,028,748 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Roaming\UserTile.png
[2011.02.04 22:31:43 | 000,688,188 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpFOTO0089.JPG
[2011.01.01 20:58:30 | 000,454,460 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpFOTO0013.0
[2011.01.01 20:58:30 | 000,158,946 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpFOTO0013.JPG
[2011.01.01 20:58:13 | 000,246,402 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpFOTO0043.JPG
[2011.01.01 20:58:12 | 000,603,861 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpFOTO0043.0
[2010.11.10 10:06:53 | 000,925,028 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpP1000730.JPG
[2010.10.31 21:29:10 | 000,034,805 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpSNAPSHOT_20101031.JPG
[2010.10.10 13:39:38 | 007,655,189 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpBIROCHÈRE-PANORAMA.JPG
[2010.09.23 21:19:45 | 000,006,862 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Roaming\.freeciv-client-rc-2.2
[2010.09.21 13:41:51 | 000,153,712 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpKLASS.JPG
[2010.09.21 13:41:14 | 000,014,994 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpKLASS_CROP.JPG
[2010.09.21 13:41:14 | 000,014,799 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpKLASS_CROP.0
[2010.09.10 15:27:05 | 000,117,081 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpELI ZUM BEARBEITE ;P.JPG
[2010.09.04 14:47:44 | 000,298,869 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpCHOREO01_002_CROP_CROP.JPG
[2010.09.04 14:43:33 | 000,393,738 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpCHOREO.JPG
[2010.09.04 14:41:17 | 001,163,138 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpCHOREO01_002.JPG
[2010.08.08 16:47:52 | 000,000,846 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Roaming\wklnhst.dat
[2010.08.02 21:01:32 | 000,368,276 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpFOTO 0079.JPG
[2010.08.02 21:01:07 | 000,494,767 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpFOTO 0079.0
[2010.08.02 14:23:11 | 000,208,885 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpPLAYMATE_MONTAG_GROSS_1.JPG
[2010.08.02 14:17:58 | 000,122,242 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpBILD0625[1].JPG
[2010.08.02 14:11:21 | 000,117,081 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpBILD0606.JPG
[2010.07.01 21:28:53 | 000,448,718 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpIMG_8226.JPG
[2010.06.30 18:38:10 | 000,518,252 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\tmpIMG_8216.JPG
[2010.04.25 19:05:56 | 000,000,056 | -H-- | C] () -- C:\Windows\SysWow64\ezsidmv.dat
[2010.04.21 19:18:29 | 000,008,704 | ---- | C] () -- C:\Users\Daniel Chvojan\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.02.28 17:17:48 | 003,284,480 | ---- | C] () -- C:\Windows\SysWow64\x264vfw.dll
[2010.02.24 03:00:42 | 000,209,040 | ---- | C] () -- C:\Windows\SysWow64\IVIresizeW7.dll
[2010.02.24 03:00:42 | 000,204,944 | ---- | C] () -- C:\Windows\SysWow64\IVIresizeA6.dll
[2010.02.24 03:00:42 | 000,196,752 | ---- | C] () -- C:\Windows\SysWow64\IVIresizeP6.dll
[2010.02.24 03:00:42 | 000,196,752 | ---- | C] () -- C:\Windows\SysWow64\IVIresizeM6.dll
[2010.02.24 03:00:42 | 000,192,656 | ---- | C] () -- C:\Windows\SysWow64\IVIresizePX.dll
[2010.02.24 03:00:42 | 000,024,720 | ---- | C] () -- C:\Windows\SysWow64\IVIresize.dll
[2010.02.24 02:25:51 | 000,000,283 | ---- | C] () -- C:\Windows\SysWow64\RStoneLog2.ini
[2010.02.24 02:25:51 | 000,000,224 | ---- | C] () -- C:\Windows\SysWow64\RStoneLog.ini
[2010.01.09 01:27:54 | 000,009,868 | ---- | C] () -- C:\Windows\SysWow64\ezdigsgn.dat
[2009.09.29 16:25:16 | 000,013,312 | ---- | C] () -- C:\Windows\LPRES.DLL
[2009.07.14 07:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009.07.14 04:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009.07.14 04:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009.07.14 02:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009.07.14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009.07.13 23:59:36 | 001,498,564 | ---- | C] () -- C:\Windows\SysWow64\igkrng400.bin
[2009.07.13 23:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009.06.10 23:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
========== Alternate Data Streams ==========
@Alternate Data Stream - 132 bytes -> C:\ProgramData\Temp:2E65951B
@Alternate Data Stream - 128 bytes -> C:\ProgramData\Temp:BB24555F
@Alternate Data Stream - 128 bytes -> C:\ProgramData\Temp:890CC2F3
@Alternate Data Stream - 115 bytes -> C:\ProgramData\Temp:A5B56640
@Alternate Data Stream - 109 bytes -> C:\ProgramData\Temp:DFC5A2B2
< End of report > |