Trojaner-Board

Trojaner-Board (https://www.trojaner-board.de/)
-   Plagegeister aller Art und deren Bekämpfung (https://www.trojaner-board.de/plagegeister-aller-art-deren-bekaempfung/)
-   -   Werde auf andere Seiten gelenkt! (Google) (https://www.trojaner-board.de/100834-andere-seiten-gelenkt-google.html)

Jonas_ 27.06.2011 23:02

Werde auf andere Seiten gelenkt! (Google)
 
Hallo Trojaner-Board Community,

ich habe selber gelesen, dass viele Personen das gleiche Problem haben wie ich: sie werden nach der Google Suche von einem beliebigen Begriff nach anklicken des Suchergebnisses auf eine VÖLLIG andere Website geleitet. Ich selber hatte noch nie so ein Problem und muss sagen, dass ich, obwohl ich selbst von mir sage, im Bereich Computer nicht auf den Kopf gefallen zu sein, im Moment ziemlich überfordert bin.

Am 26.07.2011 hat mein Virenprogramm (Antivir) folgendes gefunden:

Zitat:

Die Datei 'C:\Windows\assembly\GAC_32\Desktop.ini'
enthielt einen Virus oder unerwünschtes Programm 'BDS/ZAccess.bn.1' [backdoor].
Durchgeführte Aktion(en):
Beim Versuch eine Sicherungskopie der Datei anzulegen ist ein Fehler aufgetreten und die Datei wurde nicht gelöscht. Fehlernummer: 26003.
Die Datei konnte nicht gelöscht werden!
Es wird versucht die Aktion mit Hilfe der ARK Library durchzuführen.
Die Datei konnte nicht ins Quarantäneverzeichnis verschoben werden!
Die Datei konnte nicht gelöscht werden!
Zitat:

In der Datei 'C:\Windows\assembly\GAC_32\Desktop.ini'
wurde ein Virus oder unerwünschtes Programm 'BDS/ZAccess.bn.1' [backdoor] gefunden.
Ausgeführte Aktion: Zugriff verweigern
Zitat:

Die Datei 'C:\Windows\assembly\GAC_32\Desktop.ini'
enthielt einen Virus oder unerwünschtes Programm 'BDS/ZAccess.bn.1' [backdoor].
Durchgeführte Aktion(en):
Die Datei konnte nicht gelöscht werden!
Es wird versucht die Aktion mit Hilfe der ARK Library durchzuführen.
Die Datei konnte nicht gelöscht werden!
Die Datei wurde zum Löschen nach einem Neustart markiert.
Da bei allen drei Meldungen gesagt wurde, dass die Datei nicht gelöscht werden konnte, gehe ich davon aus, dass sie weiterhin vorhanden sind. Manuell kann ich sie auch nicht löschen, dass sie im Angegebenen Pfad nicht auffindbar sind.

Mit OTL habe ich bereits einen Scan gemacht.

Ich kann leider nur die Extras.txt als Archiv anhängen. Die OTL.txt ist zu groß.

Ich hoffe mir kann bei meinem Problem weitergeholfen werden.

Mit freundlichen Grüßen,
Jonas

kira 28.06.2011 10:04

Hallo und Herzlich Willkommen! :)

Bevor wir unsere Zusammenarbeit beginnen, [Bitte Vollständig lesen]:
Zitat:

  • "Fernbehandlungen/Fernhilfe" und die damit verbundenen Haftungsrisken:
    - da die Fehlerprüfung und Handlung werden über große Entfernungen durchgeführt, besteht keine Haftung unsererseits für die daraus entstehenden Folgen.
    - also, jede Haftung für die daraus entstandene Schäden wird ausgeschlossen, ANWEISUNGEN UND DEREN BEFOLGUNG, ERFOLGT AUF DEINE EIGENE VERANTWORTUNG!
  • Charakteristische Merkmale/Profilinformationen:
    - aus der verwendeten Loglisten oder Logdateien - wie z.B. deinen Realnamen, Seriennummer in Programm etc)- kannst Du herauslöschen oder durch [X] ersetzen
  • Die Systemprüfung und Bereinigung:
    - kann einige Zeit in Anspruch nehmen (je nach Art der Infektion), kann aber sogar so stark kompromittiert sein, so dass eine wirkungsvolle technische Säuberung ist nicht mehr möglich bzw Du es neu installieren musst
  • Ich empfehle Dir die Anweisungen erst einmal komplett durchzulesen, bevor du es anwendest, weil wenn du etwas falsch machst, kann es wirklich gefährlich werden. Wenn du meinen Anweisungen Schritt für Schritt folgst, kann eigentlich nichts schief gehen.
  • Innerhalb der Betreuungszeit:
    - ohne Abspräche bitte nicht auf eigene Faust handeln!- bei Problemen nachfragen.
  • Die Reihenfolge:
    - genau so wie beschrieben bitte einhalten, nicht selbst die Reihenfolge wählen!
  • GECRACKTE SOFTWARE werden hier nicht geduldet!!!!
  • Ansonsten unsere Forumsregeln:
    - Bitte erst lesen, dann posten!-> Für alle Hilfesuchenden! Was muss ich vor der Eröffnung eines Themas beachten?
  • Alle Logfile mit einem vBCode Tag eingefügen, das bietet hier eine gute Übersicht, erleichtert mir die Arbeit! Falls das Logfile zu groß, teile es in mehrere Teile auf.

Sobald Du diesen Einführungstext gelesen hast, kannst Du beginnen:)
Zitat:

Wenn ein System kompromittiert wurde, ist das System nicht mehr vertrauenswürdig
Eine Neuinstallation garantiert die rückstandsfreie Entfernung der Infektion - Lesestoff: "Hilfe: Ich wurde das Opfer eines Hackerangriffs. Was soll ich tun?" - Säubern eines gefährdeten Systems
Falls du doch für die Systemreinigung entscheidest - Ein System zu bereinigen kann ein paar Tage dauern (je nach Art der Infektion), kann aber sogar so stark kompromittiert sein, so dass eine wirkungsvolle technische Säuberung ist nicht mehr möglich bzw Du es neu installieren musst::

Für Vista und Win7:
Wichtig: Alle Befehle bitte als Administrator ausführen! rechte Maustaste auf die Eingabeaufforderung und "als Administrator ausführen" auswählen
Auf der angewählten Anwendung einen Rechtsklick (rechte Maustaste) und "Als Administrator ausführen" wählen!

1.
Lade Dir Malwarebytes Anti-Malware von→ malwarebytes.org
  • Installieren und per Doppelklick starten.
  • Deutsch einstellen und gleich mal die Datenbanken zu aktualisieren - online updaten
  • "Komplett Scan durchführen" wählen (überall Haken setzen)
  • wenn der Scanvorgang beendet ist, klicke auf "Zeige Resultate"
  • Alle Funde - falls MBAM meldet in C:\System Volume Information - den Haken bitte entfernen - markieren und auf "Löschen" - "Ausgewähltes entfernen") klicken.
  • Poste das Ergebnis hier in den Thread - den Bericht findest Du unter "Scan-Berichte"
eine bebilderte Anleitung findest Du hier: Anleitung/virus-protect.org

2.
erneut einen Scan mit OTL:
  • Doppelklick auf die OTL.exe
  • Vista und Windows 7 User: Rechtsklick auf die OTL.exe und "als Administrator ausführen" wählen.
  • Oben findest Du ein Kästchen mit Ausgabe.
    Wähle bitte Standard-Ausgabe
  • Unter Extra-Registrierung wähle bitte Benutze SafeList.
  • Mache Häckchen bei LOP- und Purity-Prüfung.
  • Klicke nun auf Scan links oben.
  • Wenn der Scan beendet wurde werden zwei Logfiles erstellt.
    Du findest die Logfiles auf Deinem Desktop => OTL.txt und Extras.txt
  • Poste die Logfiles in Code-Tags hier in den Thread.

3.
Bitte Versteckte - und Systemdateien sichtbar machen den Link hier anklicken:
System-Dateien und -Ordner unter XP und Vista sichtbar machen
Am Ende unserer Arbeit, kannst wieder rückgängig machen!

4.
→ Lade Dir HJTscanlist.zip herunter
→ entpacke die Datei auf deinem Desktop
→ Bei WindowsXP Home musst vor dem Scan zusätzlich tasklist.zip installieren
→ per Doppelklick starten
→ Wähle dein Betriebsystem aus - bei Win7 wähle Vista
→ Wenn Du gefragt wirst, die Option "Einstellung" (1) - scanlist" wählen
→ Nach kurzer Zeit sollte sich Dein Editor öffnen und die Datei hjtscanlist.txt präsentieren
→ Bitte kopiere den Inhalt hier in Deinen Thread.
** Falls es klappt auf einmal nicht, kannst den Text in mehrere Teile teilen und so posten

5.
Ich würde gerne noch all deine installierten Programme sehen:
Lade dir das Tool Ccleaner herunter
Download
installieren (Software-Lizenzvereinbarung lesen, falls angeboten wird "Füge CCleaner Yahoo! Toolbar hinzu" abwählen)→ starten→ falls nötig - unter Options settings-> "german" einstellen
dann klick auf "Extra (um die installierten Programme auch anzuzeigen)→ weiter auf "Als Textdatei speichern..."
wird eine Textdatei (*.txt) erstellt, kopiere dazu den Inhalt und füge ihn da ein

Zitat:

Damit dein Thread übersichtlicher und schön lesbar bleibt, am besten nutze den Code-Tags für deinen Post:
→ vor dein Log schreibst Du (also am Anfang des Logfiles):[code]
hier kommt dein Logfile rein - z.B hjtsanlist o. sonstiges
→ dahinter - also am Ende der Logdatei: [/code]

** Möglichst nicht ins internet gehen, kein Online-Banking, File-sharing, Chatprogramme usw
gruß
kira

Jonas_ 28.06.2011 10:52

Malwarebytes:


Code:

Malwarebytes' Anti-Malware 1.51.0.1200
www.malwarebytes.org

Datenbank Version: 6966

Windows 6.1.7601 Service Pack 1
Internet Explorer 8.0.7601.17514

28.06.2011 11:50:52
mbam-log-2011-06-28 (11-50-52).txt

Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|E:\|F:\|G:\|H:\|)
Durchsuchte Objekte: 330310
Laufzeit: 33 Minute(n), 35 Sekunde(n)

Infizierte Speicherprozesse: 0
Infizierte Speichermodule: 0
Infizierte Registrierungsschlüssel: 0
Infizierte Registrierungswerte: 0
Infizierte Dateiobjekte der Registrierung: 0
Infizierte Verzeichnisse: 0
Infizierte Dateien: 0

Infizierte Speicherprozesse:
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule:
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel:
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungswerte:
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung:
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse:
(Keine bösartigen Objekte gefunden)

Infizierte Dateien:
(Keine bösartigen Objekte gefunden)


Jonas_ 28.06.2011 11:00

OTL erster Teil:

Code:

OTL logfile created on: 28.06.2011 11:54:24 - Run 3
OTL by OldTimer - Version 3.2.24.1    Folder = C:\Users\Jonas\Desktop
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
4,00 Gb Total Physical Memory | 2,04 Gb Available Physical Memory | 50,93% Memory free
8,00 Gb Paging File | 5,82 Gb Available in Paging File | 72,77% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 48,73 Gb Total Space | 17,87 Gb Free Space | 36,67% Space Free | Partition Type: NTFS
Drive D: | 184,05 Gb Total Space | 108,25 Gb Free Space | 58,81% Space Free | Partition Type: NTFS
Drive G: | 931,28 Gb Total Space | 931,19 Gb Free Space | 99,99% Space Free | Partition Type: FAT32
Drive H: | 7,39 Gb Total Space | 0,01 Gb Free Space | 0,10% Space Free | Partition Type: FAT32
 
Computer Name: JOHNNY | User Name: Jonas | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
========== Processes (SafeList) ==========
 
PRC - [2011.06.27 23:43:48 | 000,579,072 | ---- | M] (OldTimer Tools) -- C:\Users\Jonas\Desktop\OTL.exe
PRC - [2011.05.29 09:11:22 | 001,047,656 | ---- | M] (Malwarebytes Corporation) -- D:\Programem\Malwarebytes' Anti-Malware\mbam.exe
PRC - [2011.04.27 11:46:08 | 000,136,360 | ---- | M] (Avira GmbH) -- D:\Programme\Avira\AntiVir Desktop\sched.exe
PRC - [2011.04.05 00:58:10 | 000,818,784 | ---- | M] ( ) -- D:\Programme\Miranda\miranda32.exe
PRC - [2011.03.21 20:56:16 | 001,230,704 | ---- | M] () -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
PRC - [2011.03.19 15:35:52 | 000,269,480 | ---- | M] (Avira GmbH) -- D:\Programme\Avira\AntiVir Desktop\avguard.exe
PRC - [2010.12.17 18:34:11 | 000,075,136 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe
PRC - [2010.11.21 14:07:23 | 000,281,768 | ---- | M] (Avira GmbH) -- D:\Programme\Avira\AntiVir Desktop\avgnt.exe
PRC - [2010.10.27 21:21:54 | 001,155,072 | ---- | M] (Last.fm) -- D:\Programme\Last.fm\LastFM.exe
PRC - [2009.04.17 10:09:46 | 000,935,208 | ---- | M] (Nero AG) -- C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
 
 
========== Modules (SafeList) ==========
 
MOD - [2011.06.27 23:43:48 | 000,579,072 | ---- | M] (OldTimer Tools) -- C:\Users\Jonas\Desktop\OTL.exe
MOD - [2010.11.20 13:55:09 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
 
 
========== Win32 Services (SafeList) ==========
 
SRV:64bit: - [2009.08.18 03:36:20 | 000,203,264 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2009.07.14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2011.04.27 11:46:08 | 000,136,360 | ---- | M] (Avira GmbH) [Auto | Running] -- D:\Programme\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2011.03.19 15:35:52 | 000,269,480 | ---- | M] (Avira GmbH) [Auto | Running] -- D:\Programme\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2010.12.17 18:34:11 | 000,075,136 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2010.06.25 19:07:20 | 000,117,264 | ---- | M] (CACE Technologies, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\WinPcap\rpcapd.exe -- (rpcapd) Remote Packet Capture Protocol v.0 (experimental)
SRV - [2010.05.06 11:30:22 | 000,357,456 | ---- | M] (Logitech, Inc.) [On_Demand | Stopped] -- C:\Programme\Common Files\LogiShrd\Bluetooth\LBTServ.exe -- (LBTServ)
SRV - [2010.03.18 14:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009.06.10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009.04.17 10:09:46 | 000,935,208 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe -- (Nero BackItUp Scheduler 4.0)
 
 
========== Driver Services (SafeList) ==========
 
DRV:64bit: - [2011.05.13 13:55:39 | 000,254,528 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:64bit: - [2011.05.10 08:06:08 | 000,051,712 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2011.05.04 23:20:42 | 000,314,016 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\atksgt.sys -- (atksgt)
DRV:64bit: - [2011.05.04 23:20:41 | 000,043,680 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\lirsgt.sys -- (lirsgt)
DRV:64bit: - [2011.04.20 03:22:32 | 000,306,176 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2011.03.30 20:46:44 | 000,114,704 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2011.03.11 08:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011.03.11 08:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010.12.07 15:37:35 | 000,033,344 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV:64bit: - [2010.11.26 14:25:07 | 000,083,120 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\avgntflt.sys -- (avgntflt)
DRV:64bit: - [2010.11.20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.11.20 13:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010.11.20 13:03:42 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2010.06.25 19:07:26 | 000,035,344 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\npf.sys -- (NPF)
DRV:64bit: - [2010.05.06 11:21:46 | 000,125,456 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV:64bit: - [2010.03.18 11:00:00 | 000,063,568 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LHidFilt.Sys -- (LHidFilt)
DRV:64bit: - [2010.03.02 14:35:01 | 000,116,568 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avipbb.sys -- (avipbb)
DRV:64bit: - [2010.02.18 09:18:24 | 000,046,136 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdiox64.sys -- (amdiox64)
DRV:64bit: - [2009.08.18 04:48:48 | 006,037,504 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (atikmdag)
DRV:64bit: - [2009.08.18 04:48:48 | 006,037,504 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2009.08.13 23:10:18 | 000,073,984 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xusb21.sys -- (xusb21)
DRV:64bit: - [2009.07.14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.06.10 22:38:56 | 000,000,308 | ---- | M] () [File_System | On_Demand | Running] -- C:\Windows\SysNative\wbem\ntfs.mof -- (Ntfs)
DRV:64bit: - [2009.06.10 22:35:42 | 000,187,392 | ---- | M] (Realtek Corporation                                            ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2009.06.10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009.05.18 14:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2007.08.23 07:29:52 | 000,147,584 | ---- | M] (Cherry GmbH) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Ch64USB.sys -- (Ch64USB)
DRV:64bit: - [2005.03.29 02:30:38 | 000,008,192 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ASACPI.sys -- (MTsensor)
 
========== Standard Registry (SafeList) ==========
 
 
========== Internet Explorer ==========
 
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
 
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.conduit.com?SearchSource=10&ctid=CT2269050
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 96 A4 26 E7 15 96 CB 01  [binary data]
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
 
FF - HKLM\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\html5video [2011.02.26 22:57:22 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{6904342A-8307-11DF-A508-4AE2DFD72085}: C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\wpa [2011.02.26 22:57:23 | 000,000,000 | ---D | M]
 
 
O1 HOSTS File: ([2009.06.10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O2 - BHO: (DivX HiQ) - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O4:64bit: - HKLM..\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.)
O4 - HKLM..\Run: [avgnt] D:\Programme\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\RunOnce: [Malwarebytes' Anti-Malware] D:\Programem\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Low Rights present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8:64bit: - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Jonas\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm ()
O8:64bit: - Extra context menu item: Nach Microsoft &Excel exportieren - D:\Programme\Microsoft Office\OFFICE11\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Jonas\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm ()
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - D:\Programme\Microsoft Office\OFFICE11\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: Recherchieren - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Programme\Microsoft Office\OFFICE11\REFIEBAR.DLL (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000001 -  File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000002 -  File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000003 -  File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000004 -  File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000005 -  File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000006 -  File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000007 -  File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000008 -  File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000009 -  File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000010 -  File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 -  File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 -  File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 -  File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 -  File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 -  File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 -  File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 -  File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 -  File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 -  File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 -  File not found
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.178.1
O18:64bit: - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\msdaipp - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\wlpg {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - Reg Error: Key error. File not found
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\PROGRA~2\COMMON~1\MICROS~1\WEBCOM~1\11\OWC11.DLL (Microsoft Corporation)
O18:64bit: - Protocol\Filter\text/xml {807553E5-5146-11D5-A672-00B0D022E945} - Reg Error: Key error. File not found
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) -  File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) -  File not found
O20:64bit: - Winlogon\Notify\LBTWlgn: DllName - Reg Error: Key error. - c:\Programme\Common Files\LogiShrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{aba432dd-7d4f-11e0-a6d0-90e6bab972ac}\Shell - "" = AutoRun
O33 - MountPoints2\{aba432dd-7d4f-11e0-a6d0-90e6bab972ac}\Shell\AutoRun\command - "" = F:\Start.exe
O33 - MountPoints2\E\Shell - "" = AutoRun
O33 - MountPoints2\E\Shell\AutoRun\command - "" = E:\Autorun.exe
O34 - HKLM BootExecute: (autocheck autochk *) -  File not found
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
 
========== Files/Folders - Created Within 30 Days ==========
 
[2011.06.28 11:20:11 | 000,000,000 | ---D | C] -- C:\Programme\CCleaner
[2011.06.28 11:18:57 | 003,216,552 | ---- | C] (Piriform Ltd) -- C:\Users\Jonas\Desktop\ccsetup308.exe
[2011.06.28 11:14:59 | 000,039,984 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
[2011.06.28 11:14:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011.06.28 10:33:02 | 000,000,000 | ---D | C] -- C:\Users\Jonas\AppData\Roaming\Malwarebytes
[2011.06.28 10:32:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2011.06.28 10:32:43 | 000,025,912 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2011.06.28 10:31:51 | 009,435,312 | ---- | C] (Malwarebytes Corporation                                    ) -- C:\Users\Jonas\Desktop\mbam-setup-1.51.0.1200.exe
[2011.06.27 23:43:49 | 000,579,072 | ---- | C] (OldTimer Tools) -- C:\Users\Jonas\Desktop\OTL.exe
[2011.06.26 14:14:06 | 000,000,000 | ---D | C] -- C:\Windows\system64
[2011.06.20 00:34:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2011.06.20 00:33:49 | 000,157,472 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaws.exe
[2011.06.20 00:33:49 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaw.exe
[2011.06.20 00:33:49 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\java.exe
[2011.06.20 00:33:45 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\SPReview
[2011.06.20 00:31:44 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\EventProviders
[2011.06.19 02:54:00 | 001,942,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dfshim.dll
[2011.06.19 02:54:00 | 000,048,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netfxperf.dll
[2011.06.19 02:53:54 | 001,130,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dfshim.dll
[2011.06.19 02:53:51 | 003,715,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstscax.dll
[2011.06.19 02:53:51 | 001,838,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10warp.dll
[2011.06.19 02:53:51 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys
[2011.06.19 02:53:51 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbRedirectionGroupPolicyExtension.dll
[2011.06.19 02:53:49 | 003,215,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll
[2011.06.19 02:53:46 | 001,171,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10warp.dll
[2011.06.19 02:53:46 | 000,954,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc40.dll
[2011.06.19 02:53:46 | 000,954,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc40u.dll
[2011.06.19 02:53:46 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tssrvlic.dll
[2011.06.19 02:53:45 | 001,109,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorets.dll
[2011.06.19 02:53:44 | 000,629,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pmcsnap.dll
[2011.06.19 02:53:43 | 014,633,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmp.dll
[2011.06.19 02:53:43 | 002,314,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tquery.dll
[2011.06.19 02:53:42 | 002,223,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssrch.dll
[2011.06.19 02:53:42 | 001,731,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll
[2011.06.19 02:53:41 | 004,120,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mf.dll
[2011.06.19 02:53:41 | 003,205,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mmcndmgr.dll
[2011.06.19 02:53:41 | 000,485,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_isv.dll
[2011.06.19 02:53:40 | 003,008,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xpsservices.dll
[2011.06.19 02:53:40 | 000,488,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc.dll
[2011.06.19 02:53:40 | 000,423,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_isv.dll
[2011.06.19 02:53:40 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_isv.exe
[2011.06.19 02:53:40 | 000,359,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate.exe
[2011.06.19 02:53:39 | 001,219,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rpcrt4.dll
[2011.06.19 02:53:39 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc.dll
[2011.06.19 02:53:39 | 000,327,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_isv.exe
[2011.06.19 02:53:38 | 000,322,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate.exe
[2011.06.19 02:53:38 | 000,238,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ppcsnap.dll
[2011.06.19 02:53:38 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PushPrinterConnections.exe
[2011.06.19 02:53:37 | 002,086,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ole32.dll
[2011.06.19 02:53:36 | 000,263,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwizui.dll
[2011.06.19 02:53:35 | 003,207,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mf.dll
[2011.06.19 02:53:35 | 001,866,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ExplorerFrame.dll
[2011.06.19 02:53:35 | 001,556,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RacEngn.dll
[2011.06.19 02:53:35 | 001,340,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\diagperf.dll
[2011.06.19 02:53:35 | 001,197,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskschd.dll
[2011.06.19 02:53:34 | 001,753,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vssapi.dll
[2011.06.19 02:53:34 | 001,334,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CertEnroll.dll
[2011.06.19 02:53:34 | 001,326,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\NaturalLanguage6.dll
[2011.06.19 02:53:33 | 003,860,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UIRibbon.dll
[2011.06.19 02:53:33 | 001,401,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssrch.dll
[2011.06.19 02:53:33 | 000,299,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mcupdate_GenuineIntel.dll
[2011.06.19 02:53:32 | 011,410,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmp.dll
[2011.06.19 02:53:31 | 003,027,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVCORE.DLL
[2011.06.19 02:53:31 | 000,295,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationHost.exe
[2011.06.19 02:53:31 | 000,099,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationHostProxy.dll
[2011.06.19 02:53:30 | 000,598,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spinstall.exe
[2011.06.19 02:53:30 | 000,320,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationHost.exe
[2011.06.19 02:53:30 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spreview.exe
[2011.06.19 02:53:30 | 000,274,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpdd.dll
[2011.06.19 02:53:30 | 000,162,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpudd.dll
[2011.06.19 02:53:30 | 000,109,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationHostProxy.dll
[2011.06.19 02:53:29 | 003,957,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinSAT.exe
[2011.06.19 02:53:29 | 001,975,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CertEnroll.dll
[2011.06.19 02:53:29 | 001,888,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVDECOD.DLL
[2011.06.19 02:53:29 | 001,548,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tquery.dll
[2011.06.19 02:53:28 | 002,067,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d9.dll
[2011.06.19 02:53:28 | 001,115,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RacEngn.dll
[2011.06.19 02:53:28 | 000,867,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SearchFolder.dll
[2011.06.19 02:53:27 | 005,066,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AuthFWSnapin.dll
[2011.06.19 02:53:27 | 005,066,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AuthFWSnapin.dll
[2011.06.19 02:53:27 | 001,161,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kernel32.dll
[2011.06.19 02:53:26 | 003,391,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dbgeng.dll
[2011.06.19 02:53:26 | 001,632,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dwmcore.dll
[2011.06.19 02:53:25 | 001,456,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll
[2011.06.19 02:53:25 | 000,079,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdvgumd32.dll
[2011.06.19 02:53:24 | 001,493,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ExplorerFrame.dll
[2011.06.19 02:53:24 | 000,958,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\actxprxy.dll
[2011.06.19 02:53:24 | 000,750,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TSWorkspace.dll
[2011.06.19 02:53:23 | 001,447,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2011.06.19 02:53:23 | 001,116,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstsc.exe
[2011.06.19 02:53:23 | 000,784,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gpprefcl.dll
[2011.06.19 02:53:23 | 000,419,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KernelBase.dll
[2011.06.19 02:53:22 | 001,244,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imapi2fs.dll
[2011.06.19 02:53:22 | 000,695,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netlogon.dll
[2011.06.19 02:53:22 | 000,244,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sqmapi.dll
[2011.06.19 02:53:21 | 001,900,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\setupapi.dll
[2011.06.19 02:53:21 | 001,828,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d9.dll
[2011.06.19 02:53:21 | 001,212,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\propsys.dll
[2011.06.19 02:53:21 | 000,787,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d11.dll
[2011.06.19 02:53:20 | 001,927,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\authui.dll
[2011.06.19 02:53:20 | 001,281,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\werconcpl.dll
[2011.06.19 02:53:20 | 000,720,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbc32.dll
[2011.06.19 02:53:20 | 000,505,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\taskschd.dll
[2011.06.19 02:53:20 | 000,464,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskeng.exe
[2011.06.19 02:53:20 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PushPrinterConnections.exe
[2011.06.19 02:53:19 | 001,049,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstsc.exe
[2011.06.19 02:53:19 | 001,008,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\user32.dll
[2011.06.19 02:53:19 | 000,376,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\netio.sys
[2011.06.19 02:53:18 | 001,796,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certmgr.dll
[2011.06.19 02:53:18 | 000,395,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\webio.dll
[2011.06.19 02:53:18 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wer.dll
[2011.06.19 02:53:18 | 000,342,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certcli.dll
[2011.06.19 02:53:18 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scavengeui.dll
[2011.06.19 02:53:18 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\LSCSHostPolicy.dll
[2011.06.19 02:53:17 | 001,371,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dwmcore.dll
[2011.06.19 02:53:17 | 000,955,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\localspl.dll
[2011.06.19 02:53:17 | 000,758,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PortableDeviceApi.dll
[2011.06.19 02:53:17 | 000,457,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdrm.dll
[2011.06.19 02:53:17 | 000,448,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shlwapi.dll
[2011.06.19 02:53:17 | 000,299,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsmf.dll
[2011.06.19 02:53:17 | 000,210,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncsi.dll
[2011.06.19 02:53:16 | 002,652,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netshell.dll
[2011.06.19 02:53:16 | 001,509,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdtctm.dll
[2011.06.19 02:53:16 | 000,573,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbc32.dll
[2011.06.19 02:53:16 | 000,519,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netcfgx.dll
[2011.06.19 02:53:16 | 000,479,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appmgr.dll
[2011.06.19 02:53:16 | 000,390,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winlogon.exe
[2011.06.19 02:53:16 | 000,299,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpshell.exe
[2011.06.19 02:53:16 | 000,295,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\framedynos.dll
[2011.06.19 02:53:16 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tcpmonui.dll
[2011.06.19 02:53:15 | 001,572,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\quartz.dll
[2011.06.19 02:53:15 | 001,328,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\quartz.dll
[2011.06.19 02:53:15 | 000,800,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\usp10.dll
[2011.06.19 02:53:15 | 000,658,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxgi.dll
[2011.06.19 02:53:15 | 000,597,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\TSWorkspace.dll
[2011.06.19 02:53:15 | 000,594,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\comdlg32.dll
[2011.06.19 02:53:15 | 000,481,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpps.dll
[2011.06.19 02:53:15 | 000,343,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsm.exe
[2011.06.19 02:53:15 | 000,342,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\apphelp.dll
[2011.06.19 02:53:15 | 000,297,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ws2_32.dll
[2011.06.19 02:53:14 | 002,543,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpdshext.dll
[2011.06.19 02:53:14 | 002,055,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Query.dll
[2011.06.19 02:53:14 | 000,897,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\azroles.dll
[2011.06.19 02:53:14 | 000,270,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tsmf.dll
[2011.06.19 02:53:14 | 000,266,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QAGENT.DLL
[2011.06.19 02:53:14 | 000,091,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3api.dll
[2011.06.19 02:53:13 | 002,522,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dbgeng.dll
[2011.06.19 02:53:13 | 001,098,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Vault.dll
[2011.06.19 02:53:13 | 000,778,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssvp.dll
[2011.06.19 02:53:13 | 000,758,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\samsrv.dll
[2011.06.19 02:53:13 | 000,751,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\win32spl.dll
[2011.06.19 02:53:13 | 000,653,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lpksetup.exe
[2011.06.19 02:53:13 | 000,345,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cmd.exe
[2011.06.19 02:53:13 | 000,281,600 | ---- | C] (Microsoft) -- C:\Windows\SysNative\DShowRdpFilter.dll
[2011.06.19 02:53:12 | 000,522,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d11.dll
[2011.06.19 02:53:12 | 000,210,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpclip.exe
[2011.06.19 02:53:11 | 001,619,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVDECOD.DLL
[2011.06.19 02:53:11 | 001,363,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Query.dll
[2011.06.19 02:53:11 | 001,190,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecs.dll
[2011.06.19 02:53:11 | 000,584,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\gpprefcl.dll
[2011.06.19 02:53:11 | 000,582,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sxs.dll
[2011.06.19 02:53:11 | 000,406,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netcfgx.dll
[2011.06.19 02:53:11 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\webio.dll
[2011.06.19 02:53:10 | 001,808,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pnidui.dll
[2011.06.19 02:53:10 | 000,584,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ipsmsnap.dll
[2011.06.19 02:53:10 | 000,473,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskcomp.dll
[2011.06.19 02:53:10 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfds.dll
[2011.06.19 02:53:10 | 000,312,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Wldap32.dll
[2011.06.19 02:53:10 | 000,272,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mcbuilder.exe
[2011.06.19 02:53:10 | 000,252,928 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\DShowRdpFilter.dll
[2011.06.19 02:53:10 | 000,240,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cscobj.dll
[2011.06.19 02:53:10 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\hgprint.dll
[2011.06.19 02:53:10 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\upnp.dll
[2011.06.19 02:53:09 | 002,151,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mmcndmgr.dll
[2011.06.19 02:53:09 | 001,792,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\authui.dll
[2011.06.19 02:53:09 | 001,158,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\webservices.dll
[2011.06.19 02:53:09 | 000,732,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imapi2fs.dll
[2011.06.19 02:53:09 | 000,341,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdrm.dll
[2011.06.19 02:53:09 | 000,167,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpendp.dll
[2011.06.19 02:53:09 | 000,049,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netfxperf.dll
[2011.06.19 02:53:08 | 000,933,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sqlsrv32.dll
[2011.06.19 02:53:08 | 000,547,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PortableDeviceApi.dll
[2011.06.19 02:53:08 | 000,403,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gdi32.dll
[2011.06.19 02:53:08 | 000,345,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fveapi.dll
[2011.06.19 02:53:08 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll
[2011.06.19 02:53:08 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsta.dll
[2011.06.19 02:53:08 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dot3api.dll
[2011.06.19 02:53:07 | 001,555,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certmgr.dll
[2011.06.19 02:53:07 | 001,441,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlanpref.dll
[2011.06.19 02:53:07 | 001,243,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMNetMgr.dll
[2011.06.19 02:53:07 | 001,009,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mcmde.dll
[2011.06.19 02:53:07 | 000,695,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapi.dll
[2011.06.19 02:53:07 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSNP.ax
[2011.06.19 02:53:07 | 000,285,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\schtasks.exe
[2011.06.19 02:53:07 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mcbuilder.exe
[2011.06.19 02:53:07 | 000,183,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prncache.dll
[2011.06.19 02:53:06 | 001,712,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xpsservices.dll
[2011.06.19 02:53:06 | 000,630,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\evr.dll
[2011.06.19 02:53:06 | 000,409,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\photowiz.dll
[2011.06.19 02:53:06 | 000,263,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vpnike.dll
[2011.06.19 02:53:06 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wintrust.dll
[2011.06.19 02:53:06 | 000,169,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tspubwmi.dll
[2011.06.19 02:53:06 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\userenv.dll
[2011.06.19 02:53:05 | 002,262,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SyncCenter.dll
[2011.06.19 02:53:05 | 001,082,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppobjs.dll
[2011.06.19 02:53:05 | 001,024,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpmde.dll
[2011.06.19 02:53:05 | 000,412,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2011.06.19 02:53:05 | 000,302,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cmd.exe
[2011.06.19 02:53:05 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AudioSes.dll
[2011.06.19 02:53:05 | 000,279,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\framedyn.dll
[2011.06.19 02:53:04 | 002,072,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMPEncEn.dll
[2011.06.19 02:53:04 | 000,605,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpeffects.dll
[2011.06.19 02:53:04 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2011.06.19 02:53:04 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfreadwrite.dll
[2011.06.19 02:53:04 | 000,200,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tscfgwmi.dll
[2011.06.19 02:53:04 | 000,178,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpinit.exe
[2011.06.19 02:53:03 | 000,551,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\localsec.dll
[2011.06.19 02:53:03 | 000,503,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imapi2.dll
[2011.06.19 02:53:03 | 000,501,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinSATAPI.dll
[2011.06.19 02:53:03 | 000,492,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\win32spl.dll
[2011.06.19 02:53:03 | 000,324,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netdiagfx.dll
[2011.06.19 02:53:03 | 000,298,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bcryptprimitives.dll
[2011.06.19 02:53:03 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfds.dll
[2011.06.19 02:53:03 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\stobject.dll
[2011.06.19 02:53:03 | 000,244,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vmicsvc.exe
[2011.06.19 02:53:03 | 000,206,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\framedynos.dll
[2011.06.19 02:53:03 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\credui.dll
[2011.06.19 02:53:03 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fde.dll
[2011.06.19 02:53:03 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdd.dll
[2011.06.19 02:53:03 | 000,140,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpendp.dll
[2011.06.19 02:53:02 | 000,762,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\azroles.dll
[2011.06.19 02:53:02 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\biocpl.dll
[2011.06.19 02:53:02 | 000,498,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cscui.dll
[2011.06.19 02:53:02 | 000,253,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tcpipcfg.dll
[2011.06.19 02:53:02 | 000,244,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spp.dll
[2011.06.19 02:53:02 | 000,223,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QSHVHOST.DLL
[2011.06.19 02:53:02 | 000,166,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetpp.dll
[2011.06.19 02:53:02 | 000,165,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netid.dll
[2011.06.19 02:53:02 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ncsi.dll
[2011.06.19 02:53:02 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\davclnt.dll
[2011.06.19 02:53:01 | 002,755,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\themeui.dll
[2011.06.19 02:53:01 | 002,746,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gameux.dll
[2011.06.19 02:53:01 | 001,050,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\printui.dll
[2011.06.19 02:53:01 | 000,571,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mspbda.dll
[2011.06.19 02:53:01 | 000,378,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msinfo32.exe
[2011.06.19 02:53:01 | 000,339,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\appmgr.dll
[2011.06.19 02:53:01 | 000,303,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scansetting.dll
[2011.06.19 02:53:01 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\credui.dll
[2011.06.19 02:53:00 | 000,552,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdri.dll
[2011.06.19 02:53:00 | 000,477,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PhotoScreensaver.scr
[2011.06.19 02:53:00 | 000,337,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\conhost.exe
[2011.06.19 02:53:00 | 000,307,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wusa.exe
[2011.06.19 02:53:00 | 000,145,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IPHLPAPI.DLL
[2011.06.19 02:53:00 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aitagent.exe
[2011.06.19 02:53:00 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\splwow64.exe
[2011.06.19 02:52:59 | 000,934,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FirewallControlPanel.dll
[2011.06.19 02:52:59 | 000,854,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dbghelp.dll
[2011.06.19 02:52:59 | 000,625,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mscms.dll
[2011.06.19 02:52:59 | 000,577,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AdmTmpl.dll
[2011.06.19 02:52:59 | 000,508,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxgi.dll
[2011.06.19 02:52:59 | 000,442,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winspool.drv
[2011.06.19 02:52:59 | 000,229,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsRasterService.dll
[2011.06.19 02:52:59 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfreadwrite.dll
[2011.06.19 02:52:59 | 000,187,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rpchttp.dll
[2011.06.19 02:52:59 | 000,172,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wintrust.dll
[2011.06.19 02:52:59 | 000,144,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\basecsp.dll
[2011.06.19 02:52:58 | 003,211,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msi.dll
[2011.06.19 02:52:58 | 000,488,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\evr.dll
[2011.06.19 02:52:58 | 000,418,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppwinob.dll
[2011.06.19 02:52:58 | 000,405,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wisptis.exe
[2011.06.19 02:52:58 | 000,305,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\taskcomp.dll
[2011.06.19 02:52:58 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ocsetup.exe
[2011.06.19 02:52:57 | 001,031,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcore.dll
[2011.06.19 02:52:57 | 000,780,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ci.dll
[2011.06.19 02:52:57 | 000,778,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sqlsrv32.dll
[2011.06.19 02:52:57 | 000,776,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\calc.exe
[2011.06.19 02:52:57 | 000,459,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DXP.dll
[2011.06.19 02:52:57 | 000,348,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eapp3hst.dll
[2011.06.19 02:52:57 | 000,335,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WinSATAPI.dll
[2011.06.19 02:52:57 | 000,207,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cfgmgr32.dll
[2011.06.19 02:52:57 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ocsetapi.dll
[2011.06.19 02:52:56 | 002,983,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIRibbon.dll
[2011.06.19 02:52:56 | 000,850,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mmsys.cpl
[2011.06.19 02:52:56 | 000,509,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntshrui.dll
[2011.06.19 02:52:56 | 000,303,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eapphost.dll
[2011.06.19 02:52:56 | 000,264,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\upnp.dll
[2011.06.19 02:52:56 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mprapi.dll
[2011.06.19 02:52:56 | 000,148,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\t2embed.dll
[2011.06.19 02:52:56 | 000,128,000 | ---- | C] (Microsoft) -- C:\Windows\SysNative\Robocopy.exe
[2011.06.19 02:52:56 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\thumbcache.dll
[2011.06.19 02:52:56 | 000,078,720 | ---- | C] (Hewlett-Packard Company) -- C:\Windows\SysNative\drivers\HpSAMD.sys
[2011.06.19 02:52:55 | 002,494,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netshell.dll
[2011.06.19 02:52:55 | 001,457,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DxpTaskSync.dll
[2011.06.19 02:52:55 | 001,160,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSMPEG2ENC.DLL
[2011.06.19 02:52:55 | 000,658,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PerfCenterCPL.dll
[2011.06.19 02:52:55 | 000,263,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\hal.dll
[2011.06.19 02:52:55 | 000,232,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scecli.dll
[2011.06.19 02:52:55 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ie4uinit.exe
[2011.06.19 02:52:55 | 000,128,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dwmredir.dll
[2011.06.19 02:52:54 | 002,851,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\themeui.dll
[2011.06.19 02:52:54 | 000,675,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DXPTaskRingtone.dll
[2011.06.19 02:52:54 | 000,568,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scrptadm.dll
[2011.06.19 02:52:54 | 000,429,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\puiobj.dll
[2011.06.19 02:52:54 | 000,235,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\onex.dll
[2011.06.19 02:52:54 | 000,179,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Classpnp.sys
[2011.06.19 02:52:54 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
[2011.06.19 02:52:54 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prncache.dll
[2011.06.19 02:52:54 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msasn1.dll
[2011.06.19 02:52:53 | 002,341,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msi.dll
[2011.06.19 02:52:53 | 001,363,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wdc.dll
[2011.06.19 02:52:53 | 000,932,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\printui.dll
[2011.06.19 02:52:53 | 000,352,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpeffects.dll
[2011.06.19 02:52:53 | 000,243,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll
[2011.06.19 02:52:53 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aaclient.dll
[2011.06.19 02:52:53 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\net1.exe
[2011.06.19 02:52:53 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rpchttp.dll
[2011.06.19 02:52:52 | 001,120,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sdengin2.dll
[2011.06.19 02:52:52 | 000,799,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msftedit.dll
[2011.06.19 02:52:52 | 000,475,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlangpui.dll
[2011.06.19 02:52:52 | 000,406,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scesrv.dll
[2011.06.19 02:52:52 | 000,246,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scansetting.dll
[2011.06.19 02:52:51 | 002,621,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wucltux.dll
[2011.06.19 02:52:51 | 002,504,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVCORE.DLL
[2011.06.19 02:52:51 | 001,689,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netcenter.dll
[2011.06.19 02:52:51 | 000,691,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\VAN.dll
[2011.06.19 02:52:51 | 000,483,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\StructuredQuery.dll
[2011.06.19 02:52:51 | 000,462,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wiadefui.dll
[2011.06.19 02:52:51 | 000,411,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlangpui.dll
[2011.06.19 02:52:51 | 000,273,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SndVol.exe
[2011.06.19 02:52:51 | 000,239,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dskquoui.dll
[2011.06.19 02:52:51 | 000,213,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MMDevAPI.dll
[2011.06.19 02:52:51 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\aaclient.dll
[2011.06.19 02:52:51 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\regapi.dll
[2011.06.19 02:52:51 | 000,080,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\davclnt.dll
[2011.06.19 02:52:51 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\samcli.dll
[2011.06.19 02:52:51 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wscapi.dll
[2011.06.19 02:52:50 | 002,311,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wpdshext.dll
[2011.06.19 02:52:50 | 001,750,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pnidui.dll
[2011.06.19 02:52:50 | 000,782,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\webservices.dll
[2011.06.19 02:52:50 | 000,515,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\timedate.cpl
[2011.06.19 02:52:50 | 000,464,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scrptadm.dll
[2011.06.19 02:52:50 | 000,340,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srchadmin.dll
[2011.06.19 02:52:50 | 000,248,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wksprt.exe
[2011.06.19 02:52:50 | 000,167,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QSHVHOST.DLL
[2011.06.19 02:52:50 | 000,124,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fde.dll
[2011.06.19 02:52:50 | 000,112,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\consent.exe
[2011.06.19 02:52:50 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\t2embed.dll
[2011.06.19 02:52:50 | 000,107,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QUTIL.DLL
[2011.06.19 02:52:50 | 000,088,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\setupcl.exe
[2011.06.19 02:52:49 | 002,146,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SyncCenter.dll
[2011.06.19 02:52:49 | 000,726,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appwiz.cpl
[2011.06.19 02:52:49 | 000,684,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TabletPC.cpl
[2011.06.19 02:52:49 | 000,560,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapi.dll
[2011.06.19 02:52:49 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rastls.dll
[2011.06.19 02:52:49 | 000,225,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netdiagfx.dll
[2011.06.19 02:52:49 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskhost.exe
[2011.06.19 02:52:49 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wscapi.dll
[2011.06.19 02:52:48 | 000,332,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\hgcpl.dll
[2011.06.19 02:52:48 | 000,300,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msconfig.exe
[2011.06.19 02:52:48 | 000,215,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netiohlp.dll
[2011.06.19 02:52:48 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cscobj.dll
[2011.06.19 02:52:48 | 000,134,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WinSCard.dll
[2011.06.19 02:52:48 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mimefilt.dll
[2011.06.19 02:52:47 | 001,538,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2011.06.19 02:52:47 | 000,830,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSMPEG2ENC.DLL
[2011.06.19 02:52:47 | 000,826,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpcore.dll
[2011.06.19 02:52:47 | 000,726,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AuxiliaryDisplayCpl.dll
[2011.06.19 02:52:47 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\clusapi.dll
[2011.06.19 02:52:47 | 000,166,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\basecsp.dll
[2011.06.19 02:52:47 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\winsta.dll
[2011.06.19 02:52:47 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fdeploy.dll
[2011.06.19 02:52:47 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsmproxy.dll
[2011.06.19 02:52:47 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbGDCoInstaller.dll
[2011.06.19 02:52:46 | 002,576,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\gameux.dll
[2011.06.19 02:52:46 | 000,633,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\riched20.dll
[2011.06.19 02:52:46 | 000,630,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DXPTaskRingtone.dll
[2011.06.19 02:52:46 | 000,392,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imapi2.dll
[2011.06.19 02:52:46 | 000,372,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mtxclu.dll
[2011.06.19 02:52:46 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2011.06.19 02:52:46 | 000,118,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dnscmmc.dll
[2011.06.19 02:52:44 | 000,186,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\logoncli.dll
[2011.06.19 02:52:44 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RpcRtRemote.dll
[2011.06.19 02:52:43 | 002,250,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SensorsCpl.dll
[2011.06.19 02:52:43 | 002,193,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\themecpl.dll
[2011.06.19 02:52:43 | 001,624,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPEncEn.dll
[2011.06.19 02:52:43 | 000,666,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssvp.dll
[2011.06.19 02:52:43 | 000,486,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\powercpl.dll
[2011.06.19 02:52:43 | 000,359,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eudcedit.exe
[2011.06.19 02:52:43 | 000,357,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sharemediacpl.dll
[2011.06.19 02:52:43 | 000,199,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\onex.dll
[2011.06.19 02:52:43 | 000,090,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nci.dll
[2011.06.19 02:52:43 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\hbaapi.dll
[2011.06.19 02:52:42 | 001,077,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Narrator.exe
[2011.06.19 02:52:42 | 000,777,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\autochk.exe
[2011.06.19 02:52:42 | 000,668,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autochk.exe
[2011.06.19 02:52:42 | 000,658,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autofmt.exe
[2011.06.19 02:52:42 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\comctl32.dll
[2011.06.19 02:52:42 | 000,355,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Faultrep.dll
[2011.06.19 02:52:42 | 000,232,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppcomapi.dll
[2011.06.19 02:52:42 | 000,188,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netjoin.dll
[2011.06.19 02:52:42 | 000,167,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msutb.dll
[2011.06.19 02:52:42 | 000,166,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netiohlp.dll
[2011.06.19 02:52:42 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cabview.dll
[2011.06.19 02:52:42 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IPHLPAPI.DLL
[2011.06.19 02:52:42 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll
[2011.06.19 02:52:42 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vpnikeapi.dll
[2011.06.19 02:52:42 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\proquota.exe
[2011.06.19 02:52:41 | 000,793,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\autoconv.exe
[2011.06.19 02:52:41 | 000,763,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\autofmt.exe
[2011.06.19 02:52:41 | 000,679,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autoconv.exe
[2011.06.19 02:52:41 | 000,611,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpd_ci.dll
[2011.06.19 02:52:41 | 000,455,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nshipsec.dll
[2011.06.19 02:52:41 | 000,441,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\powercpl.dll
[2011.06.19 02:52:41 | 000,400,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ipsmsnap.dll
[2011.06.19 02:52:41 | 000,303,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msinfo32.exe
[2011.06.19 02:52:41 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\srchadmin.dll
[2011.06.19 02:52:41 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eapphost.dll
[2011.06.19 02:52:41 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AudioSes.dll
[2011.06.19 02:52:41 | 000,181,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tcpipcfg.dll
[2011.06.19 02:52:41 | 000,179,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\schtasks.exe
[2011.06.19 02:52:41 | 000,168,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bcdsrv.dll
[2011.06.19 02:52:41 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shsetup.dll
[2011.06.19 02:52:41 | 000,126,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\audiodg.exe
[2011.06.19 02:52:41 | 000,116,224 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\SysNative\fms.dll
[2011.06.19 02:52:41 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\regapi.dll
[2011.06.19 02:52:41 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mimefilt.dll
[2011.06.19 02:52:40 | 001,466,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2011.06.19 02:52:40 | 001,264,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sdclt.exe
[2011.06.19 02:52:40 | 000,905,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mmsys.cpl
[2011.06.19 02:52:40 | 000,665,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AuxiliaryDisplayCpl.dll
[2011.06.19 02:52:40 | 000,414,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlanui.dll
[2011.06.19 02:52:40 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msihnd.dll
[2011.06.19 02:52:40 | 000,222,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wwanconn.dll
[2011.06.19 02:52:40 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\framedyn.dll
[2011.06.19 02:52:40 | 000,171,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\scsiport.sys
[2011.06.19 02:52:40 | 000,156,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prntvpt.dll
[2011.06.19 02:52:40 | 000,155,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscorier.dll
[2011.06.19 02:52:40 | 000,154,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mscorier.dll
[2011.06.19 02:52:40 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpsign.exe
[2011.06.19 02:52:39 | 001,227,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wdc.dll
[2011.06.19 02:52:39 | 001,066,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Display.dll
[2011.06.19 02:52:39 | 000,957,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mblctr.exe
[2011.06.19 02:52:39 | 000,861,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fontext.dll
[2011.06.19 02:52:39 | 000,749,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\batmeter.dll
[2011.06.19 02:52:39 | 000,624,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qedit.dll
[2011.06.19 02:52:39 | 000,478,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\timedate.cpl
[2011.06.19 02:52:39 | 000,211,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mprddm.dll
[2011.06.19 02:52:39 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSNP.ax
[2011.06.19 02:52:39 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QAGENT.DLL
[2011.06.19 02:52:39 | 000,117,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netid.dll
[2011.06.19 02:52:39 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidclass.sys
[2011.06.19 02:52:39 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\rdpvideominiport.sys
[2011.06.19 02:52:38 | 001,326,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanpref.dll
[2011.06.19 02:52:38 | 001,202,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DiagCpl.dll
[2011.06.19 02:52:38 | 001,003,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMNetMgr.dll
[2011.06.19 02:52:38 | 000,933,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Vault.dll
[2011.06.19 02:52:38 | 000,372,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rastls.dll
[2011.06.19 02:52:38 | 000,346,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\untfs.dll
[2011.06.19 02:52:38 | 000,307,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scesrv.dll
[2011.06.19 02:52:38 | 000,223,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpsrcwp.dll
[2011.06.19 02:52:38 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nci.dll
[2011.06.19 02:52:38 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rtutils.dll
[2011.06.19 02:52:38 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
[2011.06.19 02:52:37 | 002,217,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bootres.dll
[2011.06.19 02:52:37 | 000,812,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpccpl.dll
[2011.06.19 02:52:37 | 000,625,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\usercpl.dll
[2011.06.19 02:52:37 | 000,433,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MCEWMDRMNDBootstrap.dll
[2011.06.19 02:52:37 | 000,250,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ksproxy.ax
[2011.06.19 02:52:37 | 000,098,816 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\Robocopy.exe
[2011.06.19 02:52:37 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WSTPager.ax
[2011.06.19 02:52:36 | 001,400,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DxpTaskSync.dll
[2011.06.19 02:52:36 | 001,040,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Display.dll
[2011.06.19 02:52:36 | 000,227,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\taskmgr.exe
[2011.06.19 02:52:36 | 000,225,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SndVolSSO.dll
[2011.06.19 02:52:36 | 000,211,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rasppp.dll
[2011.06.19 02:52:36 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dot3cfg.dll
[2011.06.19 02:52:36 | 000,052,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\winhv.sys
[2011.06.19 02:52:35 | 000,416,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prnfldr.dll
[2011.06.19 02:52:35 | 000,352,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\termmgr.dll
[2011.06.19 02:52:35 | 000,324,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\puiobj.dll
[2011.06.19 02:52:35 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mtxclu.dll
[2011.06.19 02:52:35 | 000,279,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxdiagn.dll


Jonas_ 28.06.2011 11:01

OTL zweiter Teil:

Code:

[2011.06.19 02:52:35 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskmgr.exe
[2011.06.19 02:52:35 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssphtb.dll
[2011.06.19 02:52:35 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shdocvw.dll
[2011.06.19 02:52:35 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsRasterService.dll
[2011.06.19 02:52:35 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\hbaapi.dll
[2011.06.19 02:52:34 | 000,403,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\untfs.dll
[2011.06.19 02:52:34 | 000,300,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pdh.dll
[2011.06.19 02:52:34 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eudcedit.exe
[2011.06.19 02:52:34 | 000,268,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSAC3ENC.DLL
[2011.06.19 02:52:34 | 000,155,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ataport.sys
[2011.06.19 02:52:34 | 000,127,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\logoncli.dll
[2011.06.19 02:52:34 | 000,115,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WPDShServiceObj.dll
[2011.06.19 02:52:34 | 000,111,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shsetup.dll
[2011.06.19 02:52:34 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\proquota.exe
[2011.06.19 02:52:33 | 003,745,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\accessibilitycpl.dll
[2011.06.19 02:52:33 | 002,202,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SensorsCpl.dll
[2011.06.19 02:52:33 | 000,856,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\FirewallControlPanel.dll
[2011.06.19 02:52:33 | 000,649,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\appwiz.cpl
[2011.06.19 02:52:33 | 000,416,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wiadefui.dll
[2011.06.19 02:52:33 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sppcomapi.dll
[2011.06.19 02:52:33 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rasppp.dll
[2011.06.19 02:52:33 | 000,149,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorekmts.dll
[2011.06.19 02:52:33 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cabview.dll
[2011.06.19 02:52:32 | 002,157,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\themecpl.dll
[2011.06.19 02:52:32 | 000,413,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PhotoScreensaver.scr
[2011.06.19 02:52:32 | 000,366,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\zipfldr.dll
[2011.06.19 02:52:32 | 000,349,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\slui.exe
[2011.06.19 02:52:32 | 000,335,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msieftp.dll
[2011.06.19 02:52:32 | 000,312,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\hgcpl.dll
[2011.06.19 02:52:32 | 000,233,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\defaultlocationcpl.dll
[2011.06.19 02:52:32 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\FWPUCLNT.DLL
[2011.06.19 02:52:32 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dnscmmc.dll
[2011.06.19 02:52:31 | 000,828,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fontext.dll
[2011.06.19 02:52:31 | 000,769,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sud.dll
[2011.06.19 02:52:31 | 000,508,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DeviceCenter.dll
[2011.06.19 02:52:31 | 000,481,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscms.dll
[2011.06.19 02:52:31 | 000,429,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\localsec.dll
[2011.06.19 02:52:31 | 000,268,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mprddm.dll
[2011.06.19 02:52:31 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scecli.dll
[2011.06.19 02:52:31 | 000,104,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Mpeg2Data.ax
[2011.06.19 02:52:31 | 000,080,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscories.dll
[2011.06.19 02:52:30 | 002,146,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\networkmap.dll
[2011.06.19 02:52:30 | 001,065,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptui.dll
[2011.06.19 02:52:30 | 000,780,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ActionCenter.dll
[2011.06.19 02:52:30 | 000,600,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PerfCenterCPL.dll
[2011.06.19 02:52:30 | 000,600,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\usercpl.dll
[2011.06.19 02:52:30 | 000,503,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srcore.dll
[2011.06.19 02:52:30 | 000,410,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanui.dll
[2011.06.19 02:52:30 | 000,373,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\intl.cpl
[2011.06.19 02:52:30 | 000,366,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qdvd.dll
[2011.06.19 02:52:30 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskbarcpl.dll
[2011.06.19 02:52:30 | 000,221,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\OnLineIDCpl.dll
[2011.06.19 02:52:30 | 000,220,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SndVolSSO.dll
[2011.06.19 02:52:30 | 000,172,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\twext.dll
[2011.06.19 02:52:30 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\psisrndr.ax
[2011.06.19 02:52:29 | 001,644,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netcenter.dll
[2011.06.19 02:52:29 | 000,898,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\OobeFldr.dll
[2011.06.19 02:52:29 | 000,740,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\batmeter.dll
[2011.06.19 02:52:29 | 000,701,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dsuiext.dll
[2011.06.19 02:52:29 | 000,638,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\VAN.dll
[2011.06.19 02:52:29 | 000,514,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdvd.dll
[2011.06.19 02:52:29 | 000,509,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qedit.dll
[2011.06.19 02:52:29 | 000,472,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\azroleui.dll
[2011.06.19 02:52:29 | 000,346,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bcdedit.exe
[2011.06.19 02:52:29 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SndVol.exe
[2011.06.19 02:52:29 | 000,154,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\uxlib.dll
[2011.06.19 02:52:29 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\recovery.dll
[2011.06.19 02:52:29 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prntvpt.dll
[2011.06.19 02:52:29 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cca.dll
[2011.06.19 02:52:29 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\isoburn.exe
[2011.06.19 02:52:29 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpwsx.dll
[2011.06.19 02:52:29 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\w32tm.exe
[2011.06.19 02:52:28 | 003,727,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\accessibilitycpl.dll
[2011.06.19 02:52:28 | 000,762,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sdcpl.dll
[2011.06.19 02:52:28 | 000,721,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bthprops.cpl
[2011.06.19 02:52:28 | 000,516,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\main.cpl
[2011.06.19 02:52:28 | 000,419,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\systemcpl.dll
[2011.06.19 02:52:28 | 000,352,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwizeng.dll
[2011.06.19 02:52:28 | 000,345,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MediaMetadataHandler.dll
[2011.06.19 02:52:28 | 000,327,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\zipfldr.dll
[2011.06.19 02:52:28 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\azroleui.dll
[2011.06.19 02:52:28 | 000,304,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\efscore.dll
[2011.06.19 02:52:28 | 000,238,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\recdisc.exe
[2011.06.19 02:52:28 | 000,226,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSAC3ENC.DLL
[2011.06.19 02:52:28 | 000,200,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\syncui.dll
[2011.06.19 02:52:28 | 000,196,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\VBICodec.ax
[2011.06.19 02:52:28 | 000,193,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netplwiz.dll
[2011.06.19 02:52:28 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fdeploy.dll
[2011.06.19 02:52:28 | 000,058,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tzutil.exe
[2011.06.19 02:52:28 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\httpapi.dll
[2011.06.19 02:52:28 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sisbkup.dll
[2011.06.19 02:52:27 | 002,130,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\networkmap.dll
[2011.06.19 02:52:27 | 001,003,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cryptui.dll
[2011.06.19 02:52:27 | 000,549,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ActionCenterCPL.dll
[2011.06.19 02:52:27 | 000,460,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certcli.dll
[2011.06.19 02:52:27 | 000,451,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shwebsvc.dll
[2011.06.19 02:52:27 | 000,414,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlanmsm.dll
[2011.06.19 02:52:27 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Faultrep.dll
[2011.06.19 02:52:27 | 000,207,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sysclass.dll
[2011.06.19 02:52:27 | 000,186,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\adsldp.dll
[2011.06.19 02:52:27 | 000,184,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fvecpl.dll
[2011.06.19 02:52:27 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netjoin.dll
[2011.06.19 02:52:27 | 000,155,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\autoplay.dll
[2011.06.19 02:52:27 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncryptui.dll
[2011.06.19 02:52:27 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
[2011.06.19 02:52:26 | 000,755,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sud.dll
[2011.06.19 02:52:26 | 000,744,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ActionCenter.dll
[2011.06.19 02:52:26 | 000,445,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwizeng.dll
[2011.06.19 02:52:26 | 000,421,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\termmgr.dll
[2011.06.19 02:52:26 | 000,395,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prnfldr.dll
[2011.06.19 02:52:26 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wusa.exe
[2011.06.19 02:52:26 | 000,312,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MCEWMDRMNDBootstrap.dll
[2011.06.19 02:52:26 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msieftp.dll
[2011.06.19 02:52:26 | 000,295,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\photowiz.dll
[2011.06.19 02:52:26 | 000,266,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MediaMetadataHandler.dll
[2011.06.19 02:52:26 | 000,240,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MFPlay.dll
[2011.06.19 02:52:26 | 000,218,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\OnLineIDCpl.dll
[2011.06.19 02:52:26 | 000,185,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vdsutil.dll
[2011.06.19 02:52:26 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AuxiliaryDisplayServices.dll
[2011.06.19 02:52:26 | 000,097,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2011.06.19 02:52:26 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ksxbar.ax
[2011.06.19 02:52:25 | 000,641,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msscp.dll
[2011.06.19 02:52:25 | 000,474,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sysmon.ocx
[2011.06.19 02:52:25 | 000,389,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sysmon.ocx
[2011.06.19 02:52:25 | 000,313,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ReAgent.dll
[2011.06.19 02:52:25 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rstrui.exe
[2011.06.19 02:52:25 | 000,279,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sethc.exe
[2011.06.19 02:52:25 | 000,271,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iprtrmgr.dll
[2011.06.19 02:52:25 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\defaultlocationcpl.dll
[2011.06.19 02:52:25 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SmartcardCredentialProvider.dll
[2011.06.19 02:52:25 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbccp32.dll
[2011.06.19 02:52:25 | 000,129,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntlanman.dll
[2011.06.19 02:52:25 | 000,082,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3cfg.dll
[2011.06.19 02:52:25 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ftp.exe
[2011.06.19 02:52:24 | 000,692,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\bthprops.cpl
[2011.06.19 02:52:24 | 000,446,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sqlcese30.dll
[2011.06.19 02:52:24 | 000,428,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shwebsvc.dll
[2011.06.19 02:52:24 | 000,345,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\intl.cpl
[2011.06.19 02:52:24 | 000,333,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ssText3d.scr
[2011.06.19 02:52:24 | 000,321,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\unimdm.tsp
[2011.06.19 02:52:24 | 000,319,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbcjt32.dll
[2011.06.19 02:52:24 | 000,282,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iTVData.dll
[2011.06.19 02:52:24 | 000,281,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iprtrmgr.dll
[2011.06.19 02:52:24 | 000,212,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbctrac.dll
[2011.06.19 02:52:24 | 000,205,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\efscore.dll
[2011.06.19 02:52:24 | 000,148,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ifsutil.dll
[2011.06.19 02:52:24 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2011.06.19 02:52:24 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2011.06.19 02:52:24 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UserAccountControlSettings.dll
[2011.06.19 02:52:24 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpd3d.dll
[2011.06.19 02:52:24 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wwanprotdim.dll
[2011.06.19 02:52:24 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsgqec.dll
[2011.06.19 02:52:24 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2011.06.19 02:52:24 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sisbkup.dll
[2011.06.19 02:52:23 | 000,781,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmdrmsdk.dll
[2011.06.19 02:52:23 | 000,738,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpmde.dll
[2011.06.19 02:52:23 | 000,537,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ActionCenterCPL.dll
[2011.06.19 02:52:23 | 000,495,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drmmgrtn.dll
[2011.06.19 02:52:23 | 000,484,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DeviceCenter.dll
[2011.06.19 02:52:23 | 000,159,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\syncui.dll
[2011.06.19 02:52:23 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autoplay.dll
[2011.06.19 02:52:23 | 000,128,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srvcli.dll
[2011.06.19 02:52:23 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntlanman.dll
[2011.06.19 02:52:23 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\slwga.dll
[2011.06.19 02:52:22 | 000,859,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\OobeFldr.dll
[2011.06.19 02:52:22 | 000,656,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nshwfp.dll
[2011.06.19 02:52:22 | 000,473,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\riched20.dll
[2011.06.19 02:52:22 | 000,410,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\systemcpl.dll
[2011.06.19 02:52:22 | 000,344,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntprint.dll
[2011.06.19 02:52:22 | 000,297,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntprint.dll
[2011.06.19 02:52:22 | 000,270,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sethc.exe
[2011.06.19 02:52:22 | 000,255,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wavemsp.dll
[2011.06.19 02:52:22 | 000,225,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DevicePairingFolder.dll
[2011.06.19 02:52:22 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dskquoui.dll
[2011.06.19 02:52:22 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bcdboot.exe
[2011.06.19 02:52:22 | 000,173,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\powercfg.cpl
[2011.06.19 02:52:22 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SmartcardCredentialProvider.dll
[2011.06.19 02:52:22 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\NAPHLPR.DLL
[2011.06.19 02:52:22 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nslookup.exe
[2011.06.19 02:52:22 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WSTPager.ax
[2011.06.19 02:52:22 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\acppage.dll
[2011.06.19 02:52:22 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rtutils.dll
[2011.06.19 02:52:21 | 001,672,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\networkexplorer.dll
[2011.06.19 02:52:21 | 000,743,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\blackbox.dll
[2011.06.19 02:52:21 | 000,270,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srrstr.dll
[2011.06.19 02:52:21 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\activeds.dll
[2011.06.19 02:52:21 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ksproxy.ax
[2011.06.19 02:52:21 | 000,182,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpsrcwp.dll
[2011.06.19 02:52:21 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netplwiz.dll
[2011.06.19 02:52:21 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\NAPHLPR.DLL
[2011.06.19 02:52:21 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppnp.dll
[2011.06.19 02:52:21 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\migisol.dll
[2011.06.19 02:52:21 | 000,093,696 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\SysWow64\fms.dll
[2011.06.19 02:52:20 | 001,133,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdosys.dll
[2011.06.19 02:52:20 | 000,805,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cdosys.dll
[2011.06.19 02:52:20 | 000,606,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dfrgui.exe
[2011.06.19 02:52:20 | 000,592,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msftedit.dll
[2011.06.19 02:52:20 | 000,346,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nshipsec.dll
[2011.06.19 02:52:20 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ReAgent.dll
[2011.06.19 02:52:20 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wavemsp.dll
[2011.06.19 02:52:20 | 000,217,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinSCard.dll
[2011.06.19 02:52:20 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationSettings.exe
[2011.06.19 02:52:20 | 000,153,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\remotepg.dll
[2011.06.19 02:52:20 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kstvtune.ax
[2011.06.19 02:52:20 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cabinet.dll
[2011.06.19 02:52:20 | 000,086,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\isoburn.exe
[2011.06.19 02:52:20 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wkscli.dll
[2011.06.19 02:52:20 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\httpapi.dll
[2011.06.19 02:52:19 | 000,840,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\blackbox.dll
[2011.06.19 02:52:19 | 000,685,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dsuiext.dll
[2011.06.19 02:52:19 | 000,636,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmdrmdev.dll
[2011.06.19 02:52:19 | 000,594,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wvc.dll
[2011.06.19 02:52:19 | 000,586,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dfrgui.exe
[2011.06.19 02:52:19 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanmsm.dll
[2011.06.19 02:52:19 | 000,358,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpdxm.dll
[2011.06.19 02:52:19 | 000,333,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3ui.dll
[2011.06.19 02:52:19 | 000,293,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wsqmcons.exe
[2011.06.19 02:52:19 | 000,197,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ocsetup.exe
[2011.06.19 02:52:19 | 000,178,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuwebv.dll
[2011.06.19 02:52:19 | 000,164,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuwebv.dll
[2011.06.19 02:52:19 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\net1.exe
[2011.06.19 02:52:19 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wsnmp32.dll
[2011.06.19 02:52:19 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ftp.exe
[2011.06.19 02:52:19 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tzutil.exe
[2011.06.19 02:52:19 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WerFaultSecure.exe
[2011.06.19 02:52:18 | 000,899,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Bubbles.scr
[2011.06.19 02:52:18 | 000,444,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wvc.dll
[2011.06.19 02:52:18 | 000,438,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AdmTmpl.dll
[2011.06.19 02:52:18 | 000,406,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wimgapi.dll
[2011.06.19 02:52:18 | 000,281,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\unimdm.tsp
[2011.06.19 02:52:18 | 000,258,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dxgmms1.sys
[2011.06.19 02:52:18 | 000,209,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstask.dll
[2011.06.19 02:52:18 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfps.dll
[2011.06.19 02:52:18 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\twext.dll
[2011.06.19 02:52:18 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mapistub.dll
[2011.06.19 02:52:18 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mapi32.dll
[2011.06.19 02:52:18 | 000,040,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wtsapi32.dll
[2011.06.19 02:52:18 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbRedirectionGroupPolicyControl.exe
[2011.06.19 02:52:17 | 001,911,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\OpcServices.dll
[2011.06.19 02:52:17 | 000,497,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\main.cpl
[2011.06.19 02:52:17 | 000,363,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\diskraid.exe
[2011.06.19 02:52:17 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qasf.dll
[2011.06.19 02:52:17 | 000,195,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2011.06.19 02:52:17 | 000,190,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qcap.dll
[2011.06.19 02:52:17 | 000,182,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFPlatform.dll
[2011.06.19 02:52:17 | 000,180,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ifsutil.dll
[2011.06.19 02:52:17 | 000,153,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2011.06.19 02:52:17 | 000,118,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\uxlib.dll
[2011.06.19 02:52:17 | 000,113,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setupugc.exe
[2011.06.19 02:52:17 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\unimdmat.dll
[2011.06.19 02:52:17 | 000,051,200 | ---- | C] (Twain Working Group) -- C:\Windows\twain_32.dll
[2011.06.19 02:52:17 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iscsium.dll
[2011.06.19 02:52:17 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\slwga.dll
[2011.06.19 02:52:16 | 000,616,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmdrmsdk.dll
[2011.06.19 02:52:16 | 000,573,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10level9.dll
[2011.06.19 02:52:16 | 000,294,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsAnytimeUpgradeResults.exe
[2011.06.19 02:52:16 | 000,293,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ssText3d.scr
[2011.06.19 02:52:16 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\audiodev.dll
[2011.06.19 02:52:16 | 000,242,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Mystify.scr
[2011.06.19 02:52:16 | 000,241,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Ribbons.scr
[2011.06.19 02:52:16 | 000,230,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\clusapi.dll
[2011.06.19 02:52:16 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpencom.dll
[2011.06.19 02:52:16 | 000,172,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\perfmon.exe
[2011.06.19 02:52:16 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpshell.dll
[2011.06.19 02:52:16 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msvfw32.dll
[2011.06.19 02:52:16 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nslookup.exe
[2011.06.19 02:52:16 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mciavi32.dll
[2011.06.19 02:52:16 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imgutil.dll
[2011.06.19 02:52:16 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\muifontsetup.dll
[2011.06.19 02:52:15 | 001,087,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dbghelp.dll
[2011.06.19 02:52:15 | 000,623,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSAPI.dll
[2011.06.19 02:52:15 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msscp.dll
[2011.06.19 02:52:15 | 000,327,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wimserv.exe
[2011.06.19 02:52:15 | 000,276,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\diskraid.exe
[2011.06.19 02:52:15 | 000,254,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qasf.dll
[2011.06.19 02:52:15 | 000,213,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ActionQueue.dll
[2011.06.19 02:52:15 | 000,211,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DevicePairingFolder.dll
[2011.06.19 02:52:15 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpencom.dll
[2011.06.19 02:52:15 | 000,157,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\perfmon.exe
[2011.06.19 02:52:15 | 000,125,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inseng.dll
[2011.06.19 02:52:15 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tlscsp.dll
[2011.06.19 02:52:15 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\umb.dll
[2011.06.19 02:52:15 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\NAPCRYPT.DLL
[2011.06.19 02:52:15 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\acppage.dll
[2011.06.19 02:52:15 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AzSqlExt.dll
[2011.06.19 02:52:15 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netutils.dll
[2011.06.19 02:52:14 | 000,402,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drmmgrtn.dll
[2011.06.19 02:52:14 | 000,337,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\raschap.dll
[2011.06.19 02:52:14 | 000,318,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\raschap.dll
[2011.06.19 02:52:14 | 000,215,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpdwcn.dll
[2011.06.19 02:52:14 | 000,202,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\input.dll
[2011.06.19 02:52:14 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\remotepg.dll
[2011.06.19 02:52:14 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wiavideo.dll
[2011.06.19 02:52:14 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QUTIL.DLL
[2011.06.19 02:52:14 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\bfsvc.exe
[2011.06.19 02:52:14 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\runonce.exe
[2011.06.19 02:52:14 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\NAPCRYPT.DLL
[2011.06.19 02:52:13 | 001,232,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMADMOD.DLL
[2011.06.19 02:52:13 | 001,111,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\onexui.dll
[2011.06.19 02:52:13 | 000,666,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVSDECD.DLL
[2011.06.19 02:52:13 | 000,299,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpdxm.dll
[2011.06.19 02:52:13 | 000,219,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iTVData.dll
[2011.06.19 02:52:13 | 000,190,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vdsbas.dll
[2011.06.19 02:52:13 | 000,174,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ocsetapi.dll
[2011.06.19 02:52:13 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MdSched.exe
[2011.06.19 02:52:13 | 000,133,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Kswdmcap.ax
[2011.06.19 02:52:13 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccp32.dll
[2011.06.19 02:52:13 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UserAccountControlSettings.dll
[2011.06.19 02:52:13 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PrintIsolationProxy.dll
[2011.06.19 02:52:13 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vpnikeapi.dll
[2011.06.19 02:52:13 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\syssetup.dll
[2011.06.19 02:52:12 | 000,395,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nltest.exe
[2011.06.19 02:52:12 | 000,242,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eapp3hst.dll
[2011.06.19 02:52:12 | 000,238,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstask.dll
[2011.06.19 02:52:12 | 000,232,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bitsadmin.exe
[2011.06.19 02:52:12 | 000,210,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxdiagn.dll
[2011.06.19 02:52:12 | 000,198,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wpdwcn.dll
[2011.06.19 02:52:12 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MFPlay.dll
[2011.06.19 02:52:12 | 000,160,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vdsbas.dll
[2011.06.19 02:52:12 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\rmcast.sys
[2011.06.19 02:52:12 | 000,096,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
[2011.06.19 02:52:12 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\logagent.exe
[2011.06.19 02:52:12 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2011.06.19 02:52:12 | 000,050,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\runonce.exe
[2011.06.19 02:52:11 | 000,527,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmdrmnet.dll
[2011.06.19 02:52:11 | 000,507,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmdrmdev.dll
[2011.06.19 02:52:11 | 000,489,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10level9.dll
[2011.06.19 02:52:11 | 000,431,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WPDSp.dll
[2011.06.19 02:52:11 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssphtb.dll
[2011.06.19 02:52:11 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\bitsadmin.exe
[2011.06.19 02:52:11 | 000,181,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qcap.dll
[2011.06.19 02:52:11 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shacct.dll
[2011.06.19 02:52:11 | 000,124,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QSVRMGMT.DLL
[2011.06.19 02:52:11 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_ssp_isv.dll
[2011.06.19 02:52:11 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shacct.dll
[2011.06.19 02:52:11 | 000,105,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpshell.dll
[2011.06.19 02:52:11 | 000,104,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\logman.exe
[2011.06.19 02:52:11 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wudriver.dll
[2011.06.19 02:52:11 | 000,087,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wudriver.dll
[2011.06.19 02:52:11 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tabcal.exe
[2011.06.19 02:52:11 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vss_ps.dll
[2011.06.19 02:52:11 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cscapi.dll
[2011.06.19 02:52:11 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\lsmproxy.dll
[2011.06.19 02:52:10 | 001,160,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\OpcServices.dll
[2011.06.19 02:52:10 | 000,978,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMSPDMOD.DLL
[2011.06.19 02:52:10 | 000,878,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Bubbles.scr
[2011.06.19 02:52:10 | 000,435,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PortableDeviceStatus.dll
[2011.06.19 02:52:10 | 000,350,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WPDSp.dll
[2011.06.19 02:52:10 | 000,325,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msnetobj.dll
[2011.06.19 02:52:10 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sqlcese30.dll
[2011.06.19 02:52:10 | 000,250,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qdv.dll
[2011.06.19 02:52:10 | 000,236,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pdh.dll
[2011.06.19 02:52:10 | 000,224,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PortableDeviceSyncProvider.dll
[2011.06.19 02:52:10 | 000,183,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PortableDeviceSyncProvider.dll
[2011.06.19 02:52:10 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mprapi.dll
[2011.06.19 02:52:10 | 000,137,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CscMig.dll
[2011.06.19 02:52:10 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_ssp.dll
[2011.06.19 02:52:10 | 000,098,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2011.06.19 02:52:10 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\kstvtune.ax
[2011.06.19 02:52:10 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\logman.exe
[2011.06.19 02:52:10 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spbcd.dll
[2011.06.19 02:52:10 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ncryptui.dll
[2011.06.19 02:52:10 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\unimdmat.dll
[2011.06.19 02:52:10 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpd3d.dll
[2011.06.19 02:52:10 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vmictimeprovider.dll
[2011.06.19 02:52:10 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iscsium.dll
[2011.06.19 02:52:09 | 000,427,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PortableDeviceStatus.dll
[2011.06.19 02:52:09 | 000,392,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMPhoto.dll
[2011.06.19 02:52:09 | 000,318,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPhoto.dll
[2011.06.19 02:52:09 | 000,313,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dot3ui.dll
[2011.06.19 02:52:09 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Mystify.scr
[2011.06.19 02:52:09 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Ribbons.scr
[2011.06.19 02:52:09 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbctrac.dll
[2011.06.19 02:52:09 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\powercfg.cpl
[2011.06.19 02:52:09 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\desk.cpl
[2011.06.19 02:52:09 | 000,121,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fphc.dll
[2011.06.19 02:52:09 | 000,099,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QSVRMGMT.DLL
[2011.06.19 02:52:09 | 000,089,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\amstream.dll
[2011.06.19 02:52:09 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\olethk32.dll
[2011.06.19 02:52:09 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mapistub.dll
[2011.06.19 02:52:09 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mapi32.dll
[2011.06.19 02:52:09 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Mpeg2Data.ax
[2011.06.19 02:52:09 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2011.06.19 02:52:09 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\takeown.exe
[2011.06.19 02:52:09 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PnPUnattend.exe
[2011.06.19 02:52:09 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tsgqec.dll
[2011.06.19 02:52:09 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\utildll.dll
[2011.06.19 02:52:08 | 001,148,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IMJP10.IME
[2011.06.19 02:52:08 | 000,902,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMADMOD.DLL
[2011.06.19 02:52:08 | 000,541,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVSDECD.DLL
[2011.06.19 02:52:08 | 000,436,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmdrmnet.dll
[2011.06.19 02:52:08 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sqmapi.dll
[2011.06.19 02:52:08 | 000,155,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imagehlp.dll
[2011.06.19 02:52:08 | 000,153,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\VBICodec.ax
[2011.06.19 02:52:08 | 000,144,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\EhStorAPI.dll
[2011.06.19 02:52:08 | 000,115,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3msm.dll
[2011.06.19 02:52:08 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wiavideo.dll
[2011.06.19 02:52:08 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Kswdmcap.ax
[2011.06.19 02:52:08 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fphc.dll
[2011.06.19 02:52:08 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\avifil32.dll
[2011.06.19 02:52:08 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netapi32.dll
[2011.06.19 02:52:08 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\takeown.exe
[2011.06.19 02:52:08 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shimgvw.dll
[2011.06.19 02:52:08 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\HotStartUserAgent.dll
[2011.06.19 02:52:07 | 000,681,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFx.dll
[2011.06.19 02:52:07 | 000,283,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdv.dll
[2011.06.19 02:52:07 | 000,265,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msnetobj.dll
[2011.06.19 02:52:07 | 000,226,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFHost.exe
[2011.06.19 02:52:07 | 000,128,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\EhStorAPI.dll
[2011.06.19 02:52:07 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sppinst.dll
[2011.06.19 02:52:07 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cmstp.exe
[2011.06.19 02:52:07 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QCLIPROV.DLL
[2011.06.19 02:52:07 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisrndr.ax
[2011.06.19 02:52:07 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSDvbNP.ax
[2011.06.19 02:52:07 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QCLIPROV.DLL
[2011.06.19 02:52:07 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CertPolEng.dll
[2011.06.19 02:52:07 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WavDest.dll
[2011.06.19 02:52:07 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\djoin.exe
[2011.06.19 02:52:07 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nrpsrv.dll
[2011.06.19 02:52:06 | 000,739,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMSPDMOD.DLL
[2011.06.19 02:52:06 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msorcl32.dll
[2011.06.19 02:52:06 | 000,166,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\diskpart.exe
[2011.06.19 02:52:06 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iscsicli.exe
[2011.06.19 02:52:06 | 000,143,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mydocs.dll
[2011.06.19 02:52:06 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setupcln.dll
[2011.06.19 02:52:06 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mobsync.exe
[2011.06.19 02:52:06 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cmstp.exe
[2011.06.19 02:52:06 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fdProxy.dll
[2011.06.19 02:52:06 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MuiUnattend.exe
[2011.06.19 02:52:06 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cca.dll
[2011.06.19 02:52:06 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\g711codc.ax
[2011.06.19 02:52:06 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vfwwdm32.dll
[2011.06.19 02:52:06 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wsnmp32.dll
[2011.06.19 02:52:06 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MultiDigiMon.exe
[2011.06.19 02:52:06 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuauclt.exe
[2011.06.19 02:52:06 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pdhui.dll
[2011.06.19 02:52:06 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\relog.exe
[2011.06.19 02:52:06 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AzSqlExt.dll
[2011.06.19 02:52:06 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sscore.dll
[2011.06.19 02:52:05 | 000,306,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_ssp.exe
[2011.06.19 02:52:05 | 000,305,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_ssp_isv.exe
[2011.06.19 02:52:05 | 000,194,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\itircl.dll
[2011.06.19 02:52:05 | 000,144,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iscsicli.exe
[2011.06.19 02:52:05 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mydocs.dll
[2011.06.19 02:52:05 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\diskpart.exe
[2011.06.19 02:52:05 | 000,130,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\BdeHdCfg.exe
[2011.06.19 02:52:05 | 000,128,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\desk.cpl
[2011.06.19 02:52:05 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dot3msm.dll
[2011.06.19 02:52:05 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\amstream.dll
[2011.06.19 02:52:05 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rastapi.dll
[2011.06.19 02:52:05 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spbcd.dll
[2011.06.19 02:52:05 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\browcli.dll
[2011.06.19 02:52:05 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wkscli.dll
[2011.06.19 02:52:05 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbisurf.ax
[2011.06.19 02:52:05 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\relog.exe
[2011.06.19 02:52:05 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdmo.dll
[2011.06.19 02:52:05 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netiougc.exe
[2011.06.19 02:52:05 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netbtugc.exe
[2011.06.19 02:52:05 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\BWUnpairElevated.dll
[2011.06.19 02:52:04 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\itircl.dll
[2011.06.19 02:52:04 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp_isv.dll
[2011.06.19 02:52:04 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp.dll
[2011.06.19 02:52:04 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\resutils.dll
[2011.06.19 02:52:04 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CertPolEng.dll
[2011.06.19 02:52:04 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\syssetup.dll
[2011.06.19 02:52:03 | 001,027,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IMJP10.IME
[2011.06.19 02:52:03 | 000,434,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSTIFF.dll
[2011.06.19 02:52:03 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ksxbar.ax
[2011.06.19 02:52:03 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapp.exe
[2011.06.19 02:52:02 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpps.dll
[2011.06.19 02:52:02 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eappgnui.dll
[2011.06.19 02:52:02 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qprocess.exe
[2011.06.19 02:52:01 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mciqtz32.dll
[2011.06.19 02:52:01 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\choice.exe
[2011.06.19 02:52:00 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imagehlp.dll
[2011.06.19 02:52:00 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\findstr.exe
[2011.06.19 02:52:00 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapp.exe
[2011.06.19 02:52:00 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WerFaultSecure.exe
[2011.06.19 02:51:59 | 001,080,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\onexui.dll
[2011.06.19 02:51:59 | 000,280,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp.exe
[2011.06.19 02:51:59 | 000,278,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp_isv.exe
[2011.06.19 02:51:59 | 000,145,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppc.dll
[2011.06.19 02:51:59 | 000,101,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mobsync.exe
[2011.06.19 02:51:59 | 000,094,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eappgnui.dll
[2011.06.19 02:51:59 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tlscsp.dll
[2011.06.19 02:51:59 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\findstr.exe
[2011.06.19 02:51:59 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\luainstall.dll
[2011.06.19 02:51:59 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mciqtz32.dll
[2011.06.19 02:51:59 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\chglogon.exe
[2011.06.19 02:51:59 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ReAgentc.exe
[2011.06.19 02:51:58 | 000,121,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sppc.dll
[2011.06.19 02:51:58 | 000,082,944 | ---- | C] (Radius Inc.) -- C:\Windows\SysWow64\iccvid.dll
[2011.06.19 02:51:58 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\manage-bde.exe
[2011.06.19 02:51:58 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cabinet.dll
[2011.06.19 02:51:58 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetmib1.dll
[2011.06.19 02:51:58 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSDvbNP.ax
[2011.06.19 02:51:58 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\repair-bde.exe
[2011.06.19 02:51:58 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wdiasqmmodule.dll
[2011.06.19 02:51:58 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shimgvw.dll
[2011.06.19 02:51:58 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\schedcli.dll
[2011.06.19 02:51:58 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qappsrv.exe
[2011.06.19 02:51:58 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spopk.dll
[2011.06.19 02:51:58 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spopk.dll
[2011.06.19 02:51:58 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\muifontsetup.dll
[2011.06.19 02:51:57 | 000,147,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RDPENCDD.dll
[2011.06.19 02:51:57 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFCoinstaller.dll
[2011.06.19 02:51:57 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\luainstall.dll
[2011.06.19 02:51:57 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\unlodctr.exe
[2011.06.19 02:51:57 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\profprov.dll
[2011.06.19 02:51:57 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdmo.dll
[2011.06.19 02:51:57 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\chgport.exe
[2011.06.19 02:51:56 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vmicres.dll
[2011.06.19 02:51:56 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbcconf.dll
[2011.06.19 02:51:56 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetmib1.dll
[2011.06.19 02:51:56 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\g711codc.ax
[2011.06.19 02:51:56 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vmstorfltres.dll
[2011.06.19 02:51:56 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vbisurf.ax
[2011.06.19 02:51:56 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tskill.exe
[2011.06.19 02:51:56 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tscon.exe
[2011.06.19 02:51:56 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsdiscon.exe
[2011.06.19 02:51:56 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rwinsta.exe
[2011.06.19 02:51:56 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdprefdrvapi.dll
[2011.06.19 02:51:56 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\logoff.exe
[2011.06.19 02:51:56 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\chgusr.exe
[2011.06.19 02:51:56 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fixmapi.exe
[2011.06.19 02:51:55 | 001,164,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIRibbonRes.dll
[2011.06.19 02:51:55 | 001,164,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UIRibbonRes.dll
[2011.06.19 02:51:55 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vmbusres.dll
[2011.06.19 02:51:55 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSMON.dll
[2011.06.19 02:51:55 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\browcli.dll
[2011.06.19 02:51:55 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbcconf.dll
[2011.06.19 02:51:55 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wups.dll
[2011.06.19 02:51:55 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\LogonUI.exe
[2011.06.19 02:51:55 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\tdi.sys
[2011.06.19 02:51:55 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\elsTrans.dll
[2011.06.19 02:51:55 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TRAPI.dll
[2011.06.19 02:51:55 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shadow.exe
[2011.06.19 02:51:55 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\perfts.dll
[2011.06.19 02:51:55 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe
[2011.06.19 02:51:54 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\napdsnap.dll
[2011.06.19 02:51:54 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dsauth.dll
[2011.06.19 02:51:54 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdprefdrvapi.dll
[2011.06.19 02:51:54 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\elsTrans.dll
[2011.06.19 02:51:54 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSUNATD.exe
[2011.06.19 02:51:54 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\reset.exe
[2011.06.19 02:51:54 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\change.exe
[2011.06.19 02:51:54 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\query.exe
[2011.06.19 02:51:54 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2011.06.19 02:51:53 | 000,457,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imkr80.ime
[2011.06.19 02:51:53 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\napdsnap.dll
[2011.06.19 02:51:53 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbrpm.sys
[2011.06.19 02:51:53 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dsauth.dll
[2011.06.19 02:51:53 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cscdll.dll
[2011.06.19 02:51:53 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bitsperf.dll
[2011.06.19 02:51:53 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\TRAPI.dll
[2011.06.19 02:51:53 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\bitsperf.dll
[2011.06.19 02:51:53 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\schedcli.dll
[2011.06.19 02:51:52 | 000,482,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
[2011.06.19 02:51:52 | 000,430,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imkr80.ime
[2011.06.19 02:51:52 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups2.dll
[2011.06.19 02:51:52 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups.dll
[2011.06.19 02:51:52 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shgina.dll
[2011.06.19 02:51:52 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wsdchngr.dll
[2011.06.19 02:51:52 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wsdchngr.dll
[2011.06.19 02:51:52 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shgina.dll
[2011.06.19 02:51:52 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sscore.dll
[2011.06.19 02:51:52 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\riched32.dll
[2011.06.19 02:51:51 | 000,361,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64win.dll
[2011.06.19 02:51:51 | 000,032,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\USBCAMD2.sys
[2011.06.19 02:51:51 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wshirda.dll
[2011.06.19 02:51:50 | 000,386,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2011.06.19 02:51:50 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64cpu.dll
[2011.06.19 02:51:49 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vmbuspipe.dll
[2011.06.19 02:51:49 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wshirda.dll
[2011.06.19 02:51:49 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\riched32.dll
[2011.06.19 02:51:49 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcfgex.dll
[2011.06.19 02:51:49 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwmp.dll
[2011.06.19 02:51:48 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\VmbusCoinstaller.dll
[2011.06.19 02:51:48 | 000,129,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\VmdCoinstall.dll
[2011.06.19 02:51:48 | 000,128,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IcCoinstall.dll
[2011.06.19 02:51:48 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\C_ISCII.DLL
[2011.06.19 02:51:48 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shunimpl.dll
[2011.06.19 02:51:48 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\C_ISCII.DLL
[2011.06.19 02:51:48 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwmp.dll
[2011.06.19 02:51:48 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdxm.ocx
[2011.06.19 02:51:48 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxmasf.dll
[2011.06.19 02:51:48 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-ums-l1-1-0.dll
[2011.06.19 02:51:47 | 012,625,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmploc.DLL
[2011.06.19 02:51:47 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmploc.DLL
[2011.06.19 02:51:47 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shunimpl.dll
[2011.06.19 02:51:47 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTUQ.DLL
[2011.06.19 02:51:47 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTUF.DLL
[2011.06.19 02:51:47 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDSG.DLL
[2011.06.19 02:51:47 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kbdlk41a.dll
[2011.06.19 02:51:47 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDGKL.DLL
[2011.06.19 02:51:47 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTUQ.DLL
[2011.06.19 02:51:47 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTUF.DLL
[2011.06.19 02:51:47 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDSG.DLL
[2011.06.19 02:51:47 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDSF.DLL
[2011.06.19 02:51:47 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDPO.DLL
[2011.06.19 02:51:47 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDNEPR.DLL
[2011.06.19 02:51:47 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\kbdlk41a.dll
[2011.06.19 02:51:47 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINTAM.DLL
[2011.06.19 02:51:47 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINBEN.DLL
[2011.06.19 02:51:47 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDGR1.DLL
[2011.06.19 02:51:47 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDGR1.DLL
[2011.06.19 02:51:47 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDGKL.DLL
[2011.06.19 02:51:47 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdxm.ocx
[2011.06.19 02:51:47 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxmasf.dll
[2011.06.19 02:51:46 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDCZ1.DLL
[2011.06.19 02:51:46 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDCZ1.DLL
[2011.06.19 02:51:46 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDUS.DLL
[2011.06.19 02:51:46 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDUGHR1.DLL
[2011.06.19 02:51:46 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTAJIK.DLL
[2011.06.19 02:51:46 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDMON.DLL
[2011.06.19 02:51:46 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDLT1.DLL
[2011.06.19 02:51:46 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINTAM.DLL
[2011.06.19 02:51:46 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINORI.DLL
[2011.06.19 02:51:46 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINMAR.DLL
[2011.06.19 02:51:46 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINKAN.DLL
[2011.06.19 02:51:46 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINHIN.DLL
[2011.06.19 02:51:46 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINBEN.DLL
[2011.06.19 02:51:46 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDUS.DLL
[2011.06.19 02:51:46 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDUGHR1.DLL
[2011.06.19 02:51:46 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTURME.DLL
[2011.06.19 02:51:46 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTAJIK.DLL
[2011.06.19 02:51:46 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDMON.DLL
[2011.06.19 02:51:46 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDMAORI.DLL
[2011.06.19 02:51:46 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDLT1.DLL
[2011.06.19 02:51:46 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINTEL.DLL
[2011.06.19 02:51:46 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDGEO.DLL
[2011.06.19 02:51:46 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDGEO.DLL
[2011.06.19 02:51:46 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDBULG.DLL
[2011.06.19 02:51:46 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDBLR.DLL
[2011.06.19 02:51:45 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nlsbres.dll
[2011.06.19 02:51:45 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTURME.DLL
[2011.06.19 02:51:45 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDSF.DLL
[2011.06.19 02:51:45 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDPO.DLL
[2011.06.19 02:51:45 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDNEPR.DLL
[2011.06.19 02:51:45 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDMAORI.DLL
[2011.06.19 02:51:45 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINTEL.DLL
[2011.06.19 02:51:45 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINORI.DLL
[2011.06.19 02:51:45 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINMAR.DLL
[2011.06.19 02:51:45 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINKAN.DLL
[2011.06.19 02:51:45 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINHIN.DLL
[2011.06.19 02:51:45 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDBULG.DLL
[2011.06.19 02:51:45 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDBLR.DLL
[2011.06.19 02:51:45 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDBASH.DLL
[2011.06.19 02:51:45 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDBASH.DLL
[2011.06.19 02:51:45 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dpnaddr.dll
[2011.06.19 02:51:45 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dpnaddr.dll
[2011.06.19 02:51:44 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nlsbres.dll
[2011.06.19 02:51:44 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\BlbEvents.dll
[2011.06.19 02:51:44 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pifmgr.dll
[2011.06.19 02:51:44 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pifmgr.dll
[2011.06.19 02:51:44 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwizres.dll
[2011.06.19 02:51:44 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwizres.dll
[2011.06.19 02:51:23 | 000,209,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PkgMgr.exe
[2011.06.19 02:51:23 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wdscore.dll
[2011.06.19 02:51:16 | 000,323,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drvstore.dll
[2011.06.19 02:51:16 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dpx.dll
[2011.06.19 02:49:14 | 000,529,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wbemcomn.dll
[2011.06.19 02:49:14 | 000,524,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmicmiplugin.dll
[2011.06.19 02:49:05 | 000,933,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SmiEngine.dll
[2011.06.19 02:49:02 | 000,199,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PkgMgr.exe
[2011.06.19 02:48:50 | 000,422,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drvstore.dll
[2011.06.19 02:48:50 | 000,399,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dpx.dll
[2011.06.15 14:05:14 | 000,288,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\FWPKCLNT.SYS
[2011.06.15 13:43:37 | 000,702,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2011.06.15 13:43:36 | 000,599,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeeds.dll
[2011.06.15 13:43:34 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2011.06.15 13:43:34 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2011.06.15 13:42:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2011.06.15 13:42:31 | 000,000,000 | ---D | C] -- C:\Programme\iTunes
[2011.06.15 13:42:31 | 000,000,000 | ---D | C] -- C:\Programme\iPod
[2011.06.15 13:41:15 | 000,321,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1core.dll
[2011.06.15 13:41:15 | 000,219,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10_1core.dll
[2011.06.15 13:41:15 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1.dll
[2011.06.15 13:41:15 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10_1.dll
[2011.06.15 13:41:08 | 000,861,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleaut32.dll
[2011.05.30 17:32:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Canon
[2011.05.30 17:32:39 | 000,000,000 | ---D | C] -- C:\ProgramData\ZoomBrowser
[2011.05.30 17:32:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
[2011.05.30 17:31:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Canon
[2011.05.29 21:46:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Symantec
[2011.05.29 21:46:25 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security Scan
[2011.05.29 21:46:25 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\NSSx64
[2011.05.29 21:46:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Norton Security Scan
[2011.05.29 21:46:25 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\NSSx64\0301010.006
[2011.05.29 21:46:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Norton
[2011.05.29 21:46:23 | 000,000,000 | ---D | C] -- C:\ProgramData\NortonInstaller
[2011.05.29 21:46:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NortonInstaller
[2011.05.29 12:02:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
[2011.05.29 12:02:10 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI
[2011.05.29 12:01:09 | 000,000,000 | ---D | C] -- C:\Programme\ATI Technologies
[2011.05.29 11:58:52 | 000,000,000 | ---D | C] -- C:\ATI
[1 C:\Users\Jonas\AppData\Local\*.tmp files -> C:\Users\Jonas\AppData\Local\*.tmp -> ]
 
========== Files - Modified Within 30 Days ==========
 
[2011.06.28 11:52:01 | 000,001,108 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011.06.28 11:30:01 | 000,001,120 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3793214032-3665191566-2873153956-1001UA.job
[2011.06.28 11:19:05 | 003,216,552 | ---- | M] (Piriform Ltd) -- C:\Users\Jonas\Desktop\ccsetup308.exe
[2011.06.28 11:18:33 | 000,002,097 | ---- | M] () -- C:\Users\Jonas\Desktop\hjtscanlist.zip
[2011.06.28 11:14:59 | 000,000,736 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011.06.28 10:32:18 | 009,435,312 | ---- | M] (Malwarebytes Corporation                                    ) -- C:\Users\Jonas\Desktop\mbam-setup-1.51.0.1200.exe
[2011.06.28 10:30:57 | 000,014,016 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011.06.28 10:30:57 | 000,014,016 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011.06.28 10:25:51 | 000,001,104 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011.06.28 10:25:47 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011.06.28 10:25:36 | 3220,574,208 | -HS- | M] () -- C:\hiberfil.sys
[2011.06.27 23:43:48 | 000,579,072 | ---- | M] (OldTimer Tools) -- C:\Users\Jonas\Desktop\OTL.exe
[2011.06.27 19:15:39 | 001,507,104 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011.06.27 19:15:39 | 000,657,428 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
[2011.06.27 19:15:39 | 000,618,714 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011.06.27 19:15:39 | 000,130,818 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
[2011.06.27 19:15:39 | 000,107,034 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011.06.26 13:30:00 | 000,001,068 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3793214032-3665191566-2873153956-1001Core.job
[2011.06.20 03:31:09 | 000,286,816 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2011.06.20 00:43:25 | 000,152,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msclmd.dll
[2011.06.20 00:43:24 | 000,175,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msclmd.dll
[2011.06.17 22:05:30 | 001,526,060 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2011.06.15 18:37:16 | 000,002,399 | ---- | M] () -- C:\Users\Jonas\Desktop\Google Chrome.lnk
[2011.06.05 13:36:55 | 000,018,960 | ---- | M] (Logitech, Inc.) -- C:\Windows\SysNative\drivers\LNonPnP.sys
[2011.06.05 13:36:50 | 000,000,000 | ---- | M] () -- C:\Users\Jonas\AppData\Local\{DB0B7733-6C53-435D-80D9-DD02B5F16E9D}
[2011.05.30 06:12:10 | 000,000,448 | -H-- | M] () -- C:\Windows\tasks\Norton Security Scan for Jonas.job
[1 C:\Users\Jonas\AppData\Local\*.tmp files -> C:\Users\Jonas\AppData\Local\*.tmp -> ]
 
========== Files Created - No Company Name ==========
 
[2011.06.28 11:18:41 | 000,002,097 | ---- | C] () -- C:\Users\Jonas\Desktop\hjtscanlist.zip
[2011.06.28 11:14:59 | 000,000,736 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011.06.20 03:34:56 | 000,001,547 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
[2011.06.19 02:53:46 | 000,095,744 | ---- | C] () -- C:\Windows\SysNative\RDVGHelper.exe
[2011.06.19 02:53:31 | 000,347,904 | ---- | C] () -- C:\Windows\SysNative\systemsf.ebd
[2011.06.19 02:51:59 | 000,010,429 | ---- | C] () -- C:\Windows\SysNative\ScavengeSpace.xml
[2011.06.19 02:51:42 | 000,105,559 | ---- | C] () -- C:\Windows\SysWow64\RacRules.xml
[2011.06.19 02:51:42 | 000,105,559 | ---- | C] () -- C:\Windows\SysNative\RacRules.xml
[2011.06.19 02:51:23 | 000,001,041 | ---- | C] () -- C:\Windows\SysWow64\tcpbidi.xml
[2011.06.19 02:51:22 | 000,146,389 | ---- | C] () -- C:\Windows\SysWow64\printmanagement.msc
[2011.06.05 13:36:31 | 000,000,000 | ---- | C] () -- C:\Users\Jonas\AppData\Local\{DB0B7733-6C53-435D-80D9-DD02B5F16E9D}
[2011.05.29 21:46:29 | 000,000,448 | -H-- | C] () -- C:\Windows\tasks\Norton Security Scan for Jonas.job
[2011.05.29 21:46:25 | 000,000,172 | ---- | C] () -- C:\Windows\SysNative\drivers\NSSx64\0301010.006\isolate.ini
[2011.05.25 20:00:54 | 000,045,286 | ---- | C] () -- C:\Users\Jonas\AppData\Roaming\room_v3.dat
[2011.05.05 01:28:10 | 000,059,904 | ---- | C] () -- C:\Windows\SysWow64\OVDecode.dll
[2011.03.26 20:02:29 | 000,046,742 | ---- | C] () -- C:\Users\Jonas\AppData\Roaming\room.dat
[2011.03.17 19:51:44 | 000,003,929 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2011.03.11 23:29:14 | 000,000,594 | ---- | C] () -- C:\Windows\War3Unin.dat
[2010.12.16 22:53:22 | 000,215,128 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2010.12.16 22:53:21 | 000,075,136 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2010.12.07 15:22:47 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2010.12.07 14:38:15 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2010.11.02 09:40:18 | 000,093,004 | -H-- | C] () -- C:\Windows\SysWow64\mlfcache.dat
[2010.08.18 19:41:03 | 001,526,060 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2010.08.17 20:14:37 | 000,000,400 | ---- | C] () -- C:\Windows\ODBC.INI
[2010.07.20 21:52:26 | 000,021,840 | ---- | C] () -- C:\Windows\SysWow64\SIntfNT.dll
[2010.07.20 21:52:26 | 000,017,212 | ---- | C] () -- C:\Windows\SysWow64\SIntf32.dll
[2010.07.20 21:52:26 | 000,012,067 | ---- | C] () -- C:\Windows\SysWow64\SIntf16.dll
[2010.07.20 21:41:22 | 000,031,930 | ---- | C] () -- C:\Windows\DIIUnin.dat
[2010.06.25 19:03:12 | 000,053,299 | ---- | C] () -- C:\Windows\SysWow64\pthreadVC.dll
[2009.07.14 07:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009.07.14 04:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009.07.14 04:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009.07.14 02:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009.07.14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009.07.13 23:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009.06.10 23:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2008.10.22 05:29:06 | 000,173,550 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
[2003.02.20 17:53:42 | 000,005,702 | ---- | C] () -- C:\Windows\SysWow64\OUTLPERF.INI
 
========== LOP Check ==========
 
[2010.12.15 13:52:11 | 000,000,000 | ---D | M] -- C:\Users\Jonas\AppData\Roaming\Beat Hazard
[2010.12.28 23:01:30 | 000,000,000 | ---D | M] -- C:\Users\Jonas\AppData\Roaming\bizarre creations
[2011.05.13 13:57:03 | 000,000,000 | ---D | M] -- C:\Users\Jonas\AppData\Roaming\DAEMON Tools Lite
[2011.04.10 12:53:33 | 000,000,000 | ---D | M] -- C:\Users\Jonas\AppData\Roaming\DVDVideoSoftIEHelpers
[2010.07.25 16:34:39 | 000,000,000 | ---D | M] -- C:\Users\Jonas\AppData\Roaming\flatball
[2010.10.25 14:39:14 | 000,000,000 | ---D | M] -- C:\Users\Jonas\AppData\Roaming\Leadertech
[2010.10.22 00:03:51 | 000,000,000 | ---D | M] -- C:\Users\Jonas\AppData\Roaming\LolClient
[2010.11.23 11:59:38 | 000,000,000 | ---D | M] -- C:\Users\Jonas\AppData\Roaming\Rainmeter
[2011.05.18 17:11:40 | 000,000,000 | ---D | M] -- C:\Users\Jonas\AppData\Roaming\TS3Client
[2011.05.04 23:25:22 | 000,000,000 | ---D | M] -- C:\Users\Jonas\AppData\Roaming\Ubisoft
[2011.05.30 12:37:49 | 000,032,640 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
 
========== Purity Check ==========
 
 

< End of report >


Jonas_ 28.06.2011 11:13

OTL Extras:

Code:

OTL Extras logfile created on: 28.06.2011 11:54:24 - Run 3
OTL by OldTimer - Version 3.2.24.1    Folder = C:\Users\Jonas\Desktop
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
4,00 Gb Total Physical Memory | 2,04 Gb Available Physical Memory | 50,93% Memory free
8,00 Gb Paging File | 5,82 Gb Available in Paging File | 72,77% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 48,73 Gb Total Space | 17,87 Gb Free Space | 36,67% Space Free | Partition Type: NTFS
Drive D: | 184,05 Gb Total Space | 108,25 Gb Free Space | 58,81% Space Free | Partition Type: NTFS
Drive G: | 931,28 Gb Total Space | 931,19 Gb Free Space | 99,99% Space Free | Partition Type: FAT32
Drive H: | 7,39 Gb Total Space | 0,01 Gb Free Space | 0,10% Space Free | Partition Type: FAT32
 
Computer Name: JOHNNY | User Name: Jonas | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
========== Extra Registry (SafeList) ==========
 
 
========== File Associations ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
 
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
 
========== Shell Spawning ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %* File not found
cmdfile [open] -- "%1" %* File not found
comfile [open] -- "%1" %* File not found
exefile [open] -- "%1" %* File not found
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- "D:\Programme\Microsoft Office\OFFICE11\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "D:\Programme\Microsoft Office\OFFICE11\msohtmed.exe" /p %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %* File not found
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1" File not found
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l File not found
scrfile [open] -- "%1" /S File not found
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 File not found
Directory [AddToPlaylistVLC] -- "D:\Programme\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "D:\Programme\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- "D:\Programme\Microsoft Office\OFFICE11\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "D:\Programme\Microsoft Office\OFFICE11\msohtmed.exe" /p %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "D:\Programme\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "D:\Programme\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 
========== Security Center Settings ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01  [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
 
========== Firewall Settings ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0
 
========== Authorized Applications List ==========
 
 
========== HKEY_LOCAL_MACHINE Uninstall List ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{0E3DAF3D-FF69-345A-A99E-1FED304CA083}" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
"{0E543634-7E25-4B8F-8D5B-97880E5E5088}" = Bonjour
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_iP4300" = Canon iP4300
"{1B8ABA62-74F0-47ED-B18C-A43128E591B8}" = Windows Live ID Sign-in Assistant
"{28D73032-5DAA-4F83-B154-85105DBCCB92}" = iTunes
"{4044201A-8576-2999-1166-96C5593F3CFF}" = ATI Catalyst Install Manager
"{439760BC-7737-4386-9B1D-A90A3E8A22EA}" = Apple Mobile Device Support
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{8338783A-0968-3B85-AFC7-BAAE0A63DC50}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{A116AC61-8223-C019-9F66-2FEBA27A9ABE}" = ccc-utility64
"{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}" = Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053
"{D07A61E5-A59C-433C-BCBD-22025FA2287B}" = Windows Live Language Selector
"{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"CCleaner" = CCleaner
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile DEU Language Pack" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
"SP6" = Logitech SetPoint 6.15
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"WinRAR archiver" = WinRAR
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0513EE35-E0FB-4166-B663-BD1AE3A803DE}" = Anno 1404
"{08A1400E-E040-1C31-2E90-49ADACDCE8FF}" = Catalyst Control Center Graphics Light
"{08B3869E-D282-424C-9AFC-870E04A4BA14}" = Rockstar Games Social Club
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{18F04681-FCB2-602E-DB5E-302F65268FBE}" = ccc-core-static
"{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{20400dbd-e6db-45b8-9b6b-1dd7033818ec}" = Nero InfoTool
"{2348b586-c9ae-46ce-936c-a68e9426e214}" = Nero StartSmart Help
"{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java(TM) 6 Update 26
"{3060F83F-3A04-DCD1-3BC4-35EC73164AF1}" = CCC Help English
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{33cf58f5-48d8-4575-83d6-96f574e4d83a}" = Nero DriveSpeed
"{37B33B16-2535-49E7-8990-32668708A0A3}" = Windows Live UX Platform Language Pack
"{3AC8457C-0385-4BEA-A959-E095F05D6D67}" = Battlefield: Bad Company™ 2
"{3bc996da-ba53-487d-9955-0eb04602d148}" = Nero 9 Essentials
"{3D3AFDE9-A3F1-4F1C-434A-9BC75604CE9D}" = Catalyst Control Center Graphics Full Existing
"{3D9CF3CA-3AB0-4A82-9853-D7C43FD1D775}" = ANNO 1404
"{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = eReg
"{3FEA6CD1-EA13-4CE7-A74E-A74A4A0A7B5C}" = FIFA 11
"{418D5410-7A7B-315F-0CF9-A76BC6C131DC}" = Catalyst Control Center InstallProxy
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime
"{579BA58C-F33D-4970-9953-B94B43768AC3}" = Grand Theft Auto IV
"{59E4543A-D49D-4489-B445-473D763C79AF}" = Microsoft Games for Windows - LIVE Redistributable
"{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053
"{662E830F-830E-1644-9469-607CA1814F4F}" = Catalyst Control Center Core Implementation
"{6804F085-58B9-8E92-CB0F-769F730F0185}" = Catalyst Control Center Graphics Previews Common
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{6AFCA4E1-9B78-3640-8F72-A7BF33448200}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7748ac8c-18e3-43bb-959b-088faea16fb2}" = Nero StartSmart
"{7829db6f-a066-4e40-8912-cb07887c20bb}" = Nero BurnRights
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{869200db-287a-4dc0-b02b-2b6787fbcd4c}" = Nero DiscSpeed
"{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
"{8CDA6D95-78B3-B62C-4E25-2E24883749E1}" = Catalyst Control Center Graphics Previews Vista
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{90110407-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AC76BA86-7AD7-1031-7B44-A94000000001}" = Adobe Reader 9.4.4 - Deutsch
"{AE7D5AF6-E561-4711-BC5A-E2CE7AFD8CA7}_is1" = Silent Hill Homecoming
"{B113D18C-67B0-4FB7-B329-E89B66194AE6}" = Windows Live Fotogalerie
"{b2ec4a38-b545-4a00-8214-13fe0e915e6d}" = Advertising Center
"{B3575D00-27EF-49C2-B9E0-14B3D954E992}" = Apple Application Support
"{B3FED300-806C-11E0-A0D0-B8AC6F97B88E}" = Google Earth
"{bd5ca0da-71ad-43da-b19e-6eee0c9adc9a}" = Nero ControlCenter
"{C2AB7DC4-489E-4BE9-887A-52262FBADBE0}" = Windows Live Photo Common
"{C41300B9-185D-475E-BFEC-39EF732F19B1}" = Apple Software Update
"{cc019e3f-59d2-4486-8d4b-878105b62a71}" = Nero DiscSpeed
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D48818BC-744E-A732-BA1B-59043861F445}" = Catalyst Control Center Graphics Full New
"{D6987225-AECA-91BC-FA4B-9A2D812BF9D3}" = Catalyst Control Center HydraVision Full
"{dba84796-8503-4ff0-af57-1747dd9a166d}" = Nero Online Upgrade
"{DD9E3191-A37E-8A0D-D5A6-5D3C5A8AACBF}" = Skins
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E4E88B54-4777-4659-967A-2EED1E6AFD83}" = Windows Live Movie Maker
"{e5c7d048-f9b4-4219-b323-8bdb01a2563d}" = Nero DriveSpeed
"{e8a80433-302b-4ff1-815d-fcc8eac482ff}" = Nero Installer
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F1CBC6F7-D82D-4DC5-B81C-9A14F418593A}_is1" = WC3Banlist
"{f4041dce-3fe1-4e18-8a9e-9de65231ee36}" = Nero ControlCenter
"{f6bdd7c5-89ed-4569-9318-469aa9732572}" = Nero BurnRights
"{F78AC3C0-578C-49AB-BD4E-3107A6036A13}" = Tom Clancy's Ghost Recon Advanced Warfighter® 2
"{F95E4EE0-0C6E-4273-B6B9-91FD6F071D76}" = Windows Live Essentials
"{fbcdfd61-7dcf-4e71-9226-873ba0053139}" = Nero InfoTool
"Adobe Flash Player ActiveX" = Adobe Flash Player ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus
"Blur(TM)_is1" = Blur(TM)
"CameraWindowDC8" = Canon Utilities CameraWindow DC 8
"CameraWindowLauncher" = Canon Utilities CameraWindow
"CANON iMAGE GATEWAY Task" = CANON iMAGE GATEWAY Task for ZoomBrowser EX
"Canon Internet Library for ZoomBrowser EX" = Canon Internet Library for ZoomBrowser EX
"Canon MOV Decoder" = Canon MOV Decoder
"Canon MOV Encoder" = Canon MOV Encoder
"DAEMON Tools Lite" = DAEMON Tools Lite
"Diablo II" = Diablo II
"DivX Setup.divx.com" = DivX Setup
"Fraps" = Fraps (remove only)
"Garena" = Garena 2010
"Hamachi" = Hamachi 1.0.3.0
"HijackThis" = HijackThis 2.0.2
"hon" = Heroes of Newerth
"LastFM_is1" = Last.fm 1.5.4.27091
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware Version 1.51.0.1200
"MovieEditTask" = Canon MovieEdit Task for ZoomBrowser EX
"MovieUploaderForYouTube" = Canon Utilities Movie Uploader for YouTube
"MyCamera" = Canon Utilities MyCamera
"NSS" = Norton Security Scan
"PhotoStitch" = Canon Utilities PhotoStitch
"PunkBusterSvc" = PunkBuster Services
"Uninstall_is1" = Uninstall 1.0.0.1
"VLC media player" = VLC media player 1.1.4
"Warkeys" = Warkeys 1.17.1.0b
"WinLiveSuite" = Windows Live Essentials
"WinPcapInst" = WinPcap 4.1.2
"ZoomBrowser EX" = Canon Utilities ZoomBrowser EX
"ZoomBrowser EX Memory Card Utility" = Canon ZoomBrowser EX Memory Card Utility
 
========== HKEY_CURRENT_USER Uninstall List ==========
 
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome
 
========== Last 10 Event Log Errors ==========
 
[ Application Events ]
Error - 22.05.2011 13:00:00 | Computer Name = Johnny | Source = Windows Backup | ID = 4103
Description =
 
Error - 29.05.2011 12:50:18 | Computer Name = Johnny | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: uninst1.exe, Version: 0.0.0.0, Zeitstempel:
 0x4433860b  Name des fehlerhaften Moduls: gentee.dll, Version: 0.0.0.0, Zeitstempel:
 0x450fc8a6  Ausnahmecode: 0xc0000005  Fehleroffset: 0x00006304  ID des fehlerhaften Prozesses:
 0x1220  Startzeit der fehlerhaften Anwendung: 0x01cc1e207c4f924e  Pfad der fehlerhaften
 Anwendung: C:\Users\Jonas\AppData\Local\Temp\uninst1.exe  Pfad des fehlerhaften Moduls:
 C:\Users\Jonas\AppData\Local\Temp\gentee01\gentee.dll  Berichtskennung: bb9ff209-8a13-11e0-a843-90e6bab972ac
 
Error - 29.05.2011 13:00:00 | Computer Name = Johnny | Source = Windows Backup | ID = 4103
Description =
 
Error - 15.06.2011 07:33:33 | Computer Name = Johnny | Source = Windows Backup | ID = 4103
Description =
 
Error - 15.06.2011 13:10:03 | Computer Name = Johnny | Source = .NET Runtime Optimization Service | ID = 1101
Description =
 
Error - 15.06.2011 13:10:09 | Computer Name = Johnny | Source = .NET Runtime Optimization Service | ID = 1101
Description =
 
Error - 19.06.2011 13:00:01 | Computer Name = Johnny | Source = Windows Backup | ID = 4103
Description =
 
Error - 19.06.2011 18:33:38 | Computer Name = Johnny | Source = VSS | ID = 12305
Description =
 
Error - 19.06.2011 21:34:53 | Computer Name = Johnny | Source = ESENT | ID = 215
Description = WinMail (3352) WindowsMail0: Die Sicherung wurde abgebrochen, weil
 sie vom Client angehalten wurde, oder weil die Verbindung mit dem Client unterbrochen
 wurde.
 
Error - 19.06.2011 21:34:58 | Computer Name = Johnny | Source = ESENT | ID = 215
Description = WinMail (3572) WindowsMail0: Die Sicherung wurde abgebrochen, weil
 sie vom Client angehalten wurde, oder weil die Verbindung mit dem Client unterbrochen
 wurde.
 
[ System Events ]
Error - 27.06.2011 18:17:32 | Computer Name = Johnny | Source = atikmdag | ID = 43029
Description = Display is not active
 
Error - 27.06.2011 18:46:48 | Computer Name = Johnny | Source = atikmdag | ID = 43029
Description = Display is not active
 
Error - 27.06.2011 18:46:55 | Computer Name = Johnny | Source = atikmdag | ID = 43029
Description = Display is not active
 
Error - 27.06.2011 18:51:01 | Computer Name = Johnny | Source = atikmdag | ID = 43029
Description = Display is not active
 
Error - 27.06.2011 18:54:47 | Computer Name = Johnny | Source = atikmdag | ID = 43029
Description = Display is not active
 
Error - 28.06.2011 04:25:47 | Computer Name = Johnny | Source = atikmdag | ID = 52236
Description = CPLIB :: General - Invalid Parameter
 
Error - 28.06.2011 04:25:47 | Computer Name = Johnny | Source = atikmdag | ID = 43029
Description = Display is not active
 
Error - 28.06.2011 04:25:50 | Computer Name = Johnny | Source = Service Control Manager | ID = 7000
Description = Der Dienst "Windows-Firewallautorisierungstreiber" wurde aufgrund
folgenden Fehlers nicht gestartet:  %%183
 
Error - 28.06.2011 04:25:50 | Computer Name = Johnny | Source = Service Control Manager | ID = 7001
Description = Der Dienst "Windows-Firewall" ist vom Dienst "Windows-Firewallautorisierungstreiber"
 abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:  %%183
 
Error - 28.06.2011 04:26:23 | Computer Name = Johnny | Source = Service Control Manager | ID = 7024
Description = Der Dienst "Heimnetzgruppen-Listener" wurde mit folgendem dienstspezifischem
 Fehler beendet: %%-2147023143.
 
 
< End of report >

--- --- ---

Jonas_ 28.06.2011 11:17

HJTScanlist.txt erster Teil:

Code:


                        $$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$
                        º                                    º
                                    hjtscanlist v2.0             
                        º                                    º
                        $$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$

Microsoft Windows [Version 6.1.7601]
 
 
C:

  28.06.2011 11:20    C:\Program Files --------- 8192 
  28.06.2011 10:32    C:\ProgramData --------- 8192 
  28.06.2011 10:31    C:\System Volume Information --------- 8192 
      C:\pagefile.sys ---------   
      C:\hiberfil.sys ---------   
  26.06.2011 14:14    C:\Windows --------- 28672 
  20.06.2011 00:34    C:\Config.Msi --------- 0 
  30.05.2011 17:32    C:\Program Files (x86) --------- 12288 
  29.05.2011 11:58    C:\ATI --------- 0 
  29.05.2011 11:43    C:\$Recycle.Bin --------- 0 
  07.12.2010 14:50    C:\Recovery --------- 0 
  07.12.2010 14:50    C:\Programme --------- 0 
  07.12.2010 14:50    C:\Dokumente und Einstellungen --------- 0 
  29.08.2010 23:35    C:\Users --------- 4096 
  14.07.2009 05:20    C:\PerfLogs --------- 0 
----------------------------------------

 
C:\Windows

  28.06.2011 11:56    C:\Windows\WindowsUpdate.log --------- 1403143 
  28.06.2011 10:25    C:\Windows\setupact.log --------- 182229 
  28.06.2011 10:25    C:\Windows\bootstat.dat --------- 67584 
  20.06.2011 12:06    C:\Windows\PFRO.log --------- 22178 
  15.06.2011 19:18    C:\Windows\win.ini --------- 499 
  05.06.2011 13:36    C:\Windows\LkmdfCoInst.log --------- 2114 
  14.05.2011 23:38    C:\Windows\DirectX.log --------- 292895 
  14.05.2011 23:38    C:\Windows\DIFx.log --------- 1328 
  03.05.2011 16:15    C:\Windows\IE9_main.log --------- 2673 
  25.03.2011 00:00    C:\Windows\War3Unin.dat --------- 594 
  25.02.2011 08:19    C:\Windows\explorer.exe --------- 2871808 
  07.12.2010 20:24    C:\Windows\DXError.log --------- 366 
  07.12.2010 15:22    C:\Windows\nsreg.dat --------- 0 
  07.12.2010 14:38    C:\Windows\DtcInstall.log --------- 3806 
  07.12.2010 14:38    C:\Windows\TSSysprep.log --------- 5767 
  07.12.2010 14:38    C:\Windows\ativpsrm.bin --------- 0 
  20.11.2010 15:25    C:\Windows\splwow64.exe --------- 67072 
  20.11.2010 15:24    C:\Windows\bfsvc.exe --------- 71168 
  20.11.2010 14:21    C:\Windows\twain_32.dll --------- 51200 
  12.11.2010 15:24    C:\Windows\MEMORY.DMP --------- 319197006 
  10.11.2010 02:28    C:\Windows\WLXPGSS.SCR --------- 301936 
  25.10.2010 14:39    C:\Windows\LDPINST.LOG --------- 7708 
  01.09.2010 13:10    C:\Windows\ODBC.INI --------- 400 
  05.08.2010 23:35    C:\Windows\msxml4-KB973688-enu.LOG --------- 283542 
  05.08.2010 23:35    C:\Windows\msxml4-KB954430-enu.LOG --------- 286744 
  20.07.2010 21:54    C:\Windows\DIIUnin.dat --------- 31930 
  20.07.2010 21:41    C:\Windows\DIIUnin.pif --------- 2829 
  20.07.2010 21:41    C:\Windows\DIIUnin.exe --------- 102400 
  14.07.2009 06:54    C:\Windows\WindowsShell.Manifest --------- 749 
  14.07.2009 06:51    C:\Windows\setuperr.log --------- 0 
  14.07.2009 03:39    C:\Windows\write.exe --------- 10240 
  14.07.2009 03:39    C:\Windows\regedit.exe --------- 427008 
  14.07.2009 03:39    C:\Windows\notepad.exe --------- 193536 
  14.07.2009 03:39    C:\Windows\hh.exe --------- 16896 
  14.07.2009 03:39    C:\Windows\HelpPane.exe --------- 733696 
  14.07.2009 03:39    C:\Windows\fveupdate.exe --------- 15360 
  14.07.2009 03:14    C:\Windows\winhlp32.exe --------- 9728 
  14.07.2009 03:14    C:\Windows\twunk_32.exe --------- 31232 
  14.07.2009 01:06    C:\Windows\mib.bin --------- 43131 
  17.06.2009 08:53    C:\Windows\atiogl.xml --------- 18333 
  10.06.2009 23:41    C:\Windows\twunk_16.exe --------- 49680 
  10.06.2009 23:41    C:\Windows\twain.dll --------- 94784 
  10.06.2009 23:08    C:\Windows\system.ini --------- 219 
  10.06.2009 22:52    C:\Windows\WMSysPr9.prx --------- 316640 
  10.06.2009 22:36    C:\Windows\msdfmap.ini --------- 1405 
  10.06.2009 22:31    C:\Windows\Ultimate.xml --------- 51867 
  10.06.2009 22:31    C:\Windows\Starter.xml --------- 48201 
  21.03.2003 21:18    C:\Windows\War3Unin.exe --------- 126976 
----------------------------------------

 
C:\Windows\System

----------------------------------------

 
C:\Windows\System32

 28.06.2011 12:07    C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 --------- 14016 
 28.06.2011 12:07    C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 --------- 14016 
 28.06.2011 10:42    C:\Windows\system32\config --------- 32768 
 28.06.2011 10:32    C:\Windows\system32\drivers --------- 65536 
 27.06.2011 19:15    C:\Windows\system32\perfc009.dat --------- 107034 
 27.06.2011 19:15    C:\Windows\system32\perfh009.dat --------- 618714 
 27.06.2011 19:15    C:\Windows\system32\perfh007.dat --------- 657428 
 27.06.2011 19:15    C:\Windows\system32\perfc007.dat --------- 130818 
 27.06.2011 19:15    C:\Windows\system32\PerfStringBackup.INI --------- 1507104 
 26.06.2011 13:51    C:\Windows\system32\Tasks --------- 4096 
 20.06.2011 08:13    C:\Windows\system32\catroot --------- 4096 
 20.06.2011 08:13    C:\Windows\system32\catroot2 --------- 32768 
 20.06.2011 03:33    C:\Windows\system32\DriverStore --------- 4096 
 20.06.2011 03:31    C:\Windows\system32\FNTCACHE.DAT --------- 286816 
 20.06.2011 03:25    C:\Windows\system32\da-DK --------- 0 
 20.06.2011 03:25    C:\Windows\system32\de-DE --------- 327680 
 20.06.2011 03:25    C:\Windows\system32\oobe --------- 4096 
 20.06.2011 03:25    C:\Windows\system32\migration --------- 0 
 20.06.2011 03:25    C:\Windows\system32\AdvancedInstallers --------- 0 
 20.06.2011 03:25    C:\Windows\system32\Setup --------- 0 
 20.06.2011 03:25    C:\Windows\system32\cs-CZ --------- 0 
 20.06.2011 03:25    C:\Windows\system32\manifeststore --------- 0 
 20.06.2011 03:25    C:\Windows\system32\es-ES --------- 0 
 20.06.2011 03:25    C:\Windows\system32\sppui --------- 0 
 20.06.2011 03:25    C:\Windows\system32\wbem --------- 65536 
 20.06.2011 03:25    C:\Windows\system32\migwiz --------- 4096 
 20.06.2011 03:25    C:\Windows\system32\Dism --------- 4096 
 20.06.2011 03:24    C:\Windows\system32\Boot --------- 0 
 20.06.2011 00:43    C:\Windows\system32\msclmd.dll --------- 175616 
 20.06.2011 00:33    C:\Windows\system32\SPReview --------- 0 
 20.06.2011 00:31    C:\Windows\system32\EventProviders --------- 0 
 15.06.2011 19:18    C:\Windows\system32\MRT.exe --------- 49454024 
 28.05.2011 07:32    C:\Windows\system32\mshtml.dll --------- 9001984 
 28.05.2011 05:30    C:\Windows\system32\mshtml.tlb --------- 1638912 
 28.05.2011 05:06    C:\Windows\system32\win32k.sys --------- 3135488 
 24.05.2011 19:14    C:\Windows\system32\MpSigStub.exe --------- 270720 
 20.05.2011 01:55    C:\Windows\system32\NDF --------- 0 
 15.05.2011 02:20    C:\Windows\system32\wfp --------- 0 
 15.05.2011 02:18    C:\Windows\system32\LogFiles --------- 4096 
 10.05.2011 08:06    C:\Windows\system32\usbaaplrc.dll --------- 4517664 
 03.05.2011 07:29    C:\Windows\system32\inetcomm.dll --------- 976896 
 29.04.2011 07:52    C:\Windows\system32\msfeeds.dll --------- 702464 
 29.04.2011 07:51    C:\Windows\system32\iertutil.dll --------- 2443776 
 23.04.2011 00:08    C:\Windows\system32\wininet.dll --------- 1188864 
 23.04.2011 00:08    C:\Windows\system32\urlmon.dll --------- 1492992 
 23.04.2011 00:04    C:\Windows\system32\jsproxy.dll --------- 64512 
 23.04.2011 00:04    C:\Windows\system32\ieui.dll --------- 247808 
 23.04.2011 00:04    C:\Windows\system32\ieframe.dll --------- 12262400 
 20.04.2011 04:09    C:\Windows\system32\atiapfxx.blb --------- 165296 
 20.04.2011 04:09    C:\Windows\system32\atiapfxx.exe --------- 151552 
 20.04.2011 04:07    C:\Windows\system32\aticfx64.dll --------- 795648 
 20.04.2011 03:40    C:\Windows\system32\atiumd6v.dll --------- 1222656 
 20.04.2011 03:27    C:\Windows\system32\coinst.dll --------- 58880 
 20.04.2011 03:22    C:\Windows\system32\atig6pxx.dll --------- 14848 
 20.04.2011 03:22    C:\Windows\system32\atiglpxx.dll --------- 12800 
 20.04.2011 03:22    C:\Windows\system32\atig6txx.dll --------- 39936 
 20.04.2011 03:21    C:\Windows\system32\atiuxp64.dll --------- 40960 
 20.04.2011 03:21    C:\Windows\system32\atiu9p64.dll --------- 38912 
 19.04.2011 22:10    C:\Windows\system32\OVDecode64.dll --------- 61952 
 19.04.2011 22:10    C:\Windows\system32\OpenCL.dll --------- 53760 
 19.04.2011 22:10    C:\Windows\system32\amdocl64.dll --------- 16116224 
 09.04.2011 09:02    C:\Windows\system32\ntoskrnl.exe --------- 5562240 
 09.04.2011 08:58    C:\Windows\system32\poqexec.exe --------- 142336 
 07.04.2011 15:34    C:\Windows\system32\CanonIJ Uninstaller Information --------- 0 
 06.04.2011 16:26    C:\Windows\system32\dnssd.dll --------- 96544 
 06.04.2011 16:26    C:\Windows\system32\dnssdX.dll --------- 237856 
 06.04.2011 16:26    C:\Windows\system32\jdns_sd.dll --------- 69408 
 06.04.2011 16:26    C:\Windows\system32\dns-sd.exe --------- 119584 
 17.03.2011 19:51    C:\Windows\system32\atipblag.dat --------- 3929 
 12.03.2011 14:08    C:\Windows\system32\XpsPrint.dll --------- 1465344 
 11.03.2011 08:34    C:\Windows\system32\mfc42u.dll --------- 1359872 
 11.03.2011 08:34    C:\Windows\system32\mfc42.dll --------- 1395712 
 11.03.2011 08:33    C:\Windows\system32\esent.dll --------- 2565632 
 11.03.2011 08:30    C:\Windows\system32\fsutil.exe --------- 96768 
 03.03.2011 08:24    C:\Windows\system32\dnsrslvr.dll --------- 183296 
 03.03.2011 08:24    C:\Windows\system32\dnsapi.dll --------- 357888 
 03.03.2011 08:21    C:\Windows\system32\dnscacheugc.exe --------- 30208 
 25.02.2011 08:22    C:\Windows\system32\oleaut32.dll --------- 861696 
 24.02.2011 08:15    C:\Windows\system32\XpsGdiConverter.dll --------- 476160 
 19.02.2011 14:05    C:\Windows\system32\FntCache.dll --------- 1139200 
 19.02.2011 14:04    C:\Windows\system32\DWrite.dll --------- 1544192 
 19.02.2011 14:04    C:\Windows\system32\d2d1.dll --------- 902656 
 19.02.2011 14:03    C:\Windows\system32\atmlib.dll --------- 46080 
 19.02.2011 11:00    C:\Windows\system32\atmfd.dll --------- 367616 
 18.02.2011 12:56    C:\Windows\system32\vbscript.dll --------- 613376 
 18.02.2011 12:54    C:\Windows\system32\jscript.dll --------- 919040 
 18.02.2011 12:51    C:\Windows\system32\prevhost.exe --------- 31232 
 12.02.2011 13:34    C:\Windows\system32\FXSCOVER.exe --------- 267776 
 05.02.2011 19:10    C:\Windows\system32\winload.efi --------- 642944 
 05.02.2011 19:10    C:\Windows\system32\kdusb.dll --------- 20352 
 05.02.2011 19:10    C:\Windows\system32\kd1394.dll --------- 19328 
 05.02.2011 19:10    C:\Windows\system32\kdcom.dll --------- 17792 
 05.02.2011 19:06    C:\Windows\system32\winresume.exe --------- 518672 
 05.02.2011 19:06    C:\Windows\system32\winload.exe --------- 605552 
 05.02.2011 19:06    C:\Windows\system32\winresume.efi --------- 566208 
 17.01.2011 13:09    C:\Windows\system32\d3d10_1.dll --------- 197120 
 07.01.2011 15:02    C:\Windows\system32\mfc100enu.dll --------- 55120 
 07.01.2011 15:02    C:\Windows\system32\mfc100esn.dll --------- 63824 
 07.01.2011 15:02    C:\Windows\system32\mfc100ita.dll --------- 62288 
 07.01.2011 15:02    C:\Windows\system32\mfc100deu.dll --------- 64336 
----------------------------------------

 
C:\Windows\Prefetch

 28.06.2011 12:13    C:\Windows\Prefetch\CMD.EXE-4A81B364.pf --------- 7540 
 28.06.2011 12:13    C:\Windows\Prefetch\CONHOST.EXE-1F3E9D7E.pf --------- 17070 
 28.06.2011 12:12    C:\Windows\Prefetch\DLLHOST.EXE-5E46FA0D.pf --------- 102580 
 28.06.2011 12:12    C:\Windows\Prefetch\DLLHOST.EXE-ECB71776.pf --------- 23400 
 28.06.2011 12:12    C:\Windows\Prefetch\SPPSVC.EXE-B0F8131B.pf --------- 37914 
 28.06.2011 12:12    C:\Windows\Prefetch\WMIPRVSE.EXE-5CEC779C.pf --------- 206988 
 28.06.2011 12:12    C:\Windows\Prefetch\MMC.EXE-F5DC4F82.pf --------- 53616 
 28.06.2011 12:12    C:\Windows\Prefetch\CONTROL.EXE-817F8F1D.pf --------- 34326 
 28.06.2011 12:08    C:\Windows\Prefetch\AVWSC.EXE-F5DE2BC0.pf --------- 70310 
 28.06.2011 12:07    C:\Windows\Prefetch\AgGlFgAppHistory.db --------- 2053593 
 28.06.2011 12:07    C:\Windows\Prefetch\AgGlFaultHistory.db --------- 662310 
 28.06.2011 12:07    C:\Windows\Prefetch\AgGlGlobalHistory.db --------- 4077511 
 28.06.2011 12:07    C:\Windows\Prefetch\AgRobust.db --------- 1124024 
 28.06.2011 12:05    C:\Windows\Prefetch\TASKHOST.EXE-7238F31D.pf --------- 162116 
 28.06.2011 11:58    C:\Windows\Prefetch\NOTEPAD.EXE-86E0E9B9.pf --------- 21170 
 28.06.2011 11:57    C:\Windows\Prefetch\WINRAR.EXE-2B27F2F4.pf --------- 58752 
 28.06.2011 11:57    C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-77482212.pf --------- 16682 
 28.06.2011 11:57    C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-0CB8CADE.pf --------- 542816 
 28.06.2011 11:57    C:\Windows\Prefetch\SVCHOST.EXE-80F4A784.pf --------- 1422350 
 28.06.2011 11:56    C:\Windows\Prefetch\AUDIODG.EXE-BDFD3029.pf --------- 250582 
 28.06.2011 11:55    C:\Windows\Prefetch\CHROME.EXE-49D31D03.pf --------- 122300 
 28.06.2011 11:53    C:\Windows\Prefetch\OTL.EXE-F137DAD9.pf --------- 461310 
 28.06.2011 11:52    C:\Windows\Prefetch\TASKENG.EXE-48D4E289.pf --------- 652842 
 28.06.2011 11:52    C:\Windows\Prefetch\GOOGLEUPDATE.EXE-B95715F5.pf --------- 46070 
 28.06.2011 11:51    C:\Windows\Prefetch\NOTEPAD.EXE-1605FA5B.pf --------- 25250 
 28.06.2011 11:50    C:\Windows\Prefetch\RUNDLL32.EXE-55A11A68.pf --------- 237120 
 28.06.2011 11:30    C:\Windows\Prefetch\GOOGLEUPDATE.EXE-D64C51EE.pf --------- 37318 
 28.06.2011 11:20    C:\Windows\Prefetch\CCLEANER64.EXE-779BD542.pf --------- 304232 
 28.06.2011 11:20    C:\Windows\Prefetch\PING.EXE-371F41E2.pf --------- 24148 
 28.06.2011 11:20    C:\Windows\Prefetch\CCSETUP308.EXE-8E3067C8.pf --------- 270194 
 28.06.2011 11:19    C:\Windows\Prefetch\MBAM.EXE-3A8F83D4.pf --------- 132926 
 28.06.2011 11:19    C:\Windows\Prefetch\DLLHOST.EXE-76936ED5.pf --------- 188524 
 28.06.2011 11:15    C:\Windows\Prefetch\REGSVR32.EXE-D5170E12.pf --------- 27332 
 28.06.2011 11:14    C:\Windows\Prefetch\MBAMGUI.EXE-061530D5.pf --------- 14636 
 28.06.2011 11:14    C:\Windows\Prefetch\REGSVR32.EXE-8461DBEE.pf --------- 19802 
 28.06.2011 11:14    C:\Windows\Prefetch\MBAM-SETUP-1.51.0.1200.TMP-D0137D9B.pf --------- 53246 
 28.06.2011 11:14    C:\Windows\Prefetch\MBAM-SETUP-1.51.0.1200.EXE-14D3FD3A.pf --------- 21978 
 28.06.2011 11:07    C:\Windows\Prefetch\_IU14D2N.TMP-0CA55611.pf --------- 49464 
 28.06.2011 11:07    C:\Windows\Prefetch\UNINS000.EXE-918B77EC.pf --------- 28582 
 28.06.2011 11:07    C:\Windows\Prefetch\MBAMGUI.EXE-21232495.pf --------- 14624 
 28.06.2011 11:07    C:\Windows\Prefetch\MBAM.EXE-D66D7994.pf --------- 187796 
 28.06.2011 11:06    C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-3793214032-3665191566-2873153956-1001.db --------- 1184618 
 28.06.2011 11:06    C:\Windows\Prefetch\AgGlUAD_S-1-5-21-3793214032-3665191566-2873153956-1001.db --------- 2310716 
 28.06.2011 11:03    C:\Windows\Prefetch\MIRANDA32.EXE-31FA1977.pf --------- 332572 
 28.06.2011 10:40    C:\Windows\Prefetch\DLLHOST.EXE-E7777CC4.pf --------- 23124 
 28.06.2011 10:39    C:\Windows\Prefetch\RUNDLL32.EXE-A3E35360.pf --------- 166804 
 28.06.2011 10:38    C:\Windows\Prefetch\WERMGR.EXE-0F2AC88C.pf --------- 13106 
 28.06.2011 10:36    C:\Windows\Prefetch\SPLWOW64.EXE-297C4568.pf --------- 139386 
 28.06.2011 10:36    C:\Windows\Prefetch\WINWORD.EXE-D42E9C44.pf --------- 187442 
 28.06.2011 10:34    C:\Windows\Prefetch\WSQMCONS.EXE-118B52B7.pf --------- 5290 
 28.06.2011 10:32    C:\Windows\Prefetch\MBAM-SETUP-1.51.0.1200.TMP-1012D5B1.pf --------- 53428 
 28.06.2011 10:31    C:\Windows\Prefetch\WUAUCLT.EXE-70318591.pf --------- 32024 
 28.06.2011 10:31    C:\Windows\Prefetch\MPAS-D_BD1.EXE-97E29C40.pf --------- 17714 
 28.06.2011 10:31    C:\Windows\Prefetch\MPMINISIGSTUB.EXE-E61DDB4B.pf --------- 6108 
 28.06.2011 10:31    C:\Windows\Prefetch\MPSIGSTUB.EXE-6CB27A06.pf --------- 26224 
 28.06.2011 10:31    C:\Windows\Prefetch\IPODSCROBBLER.EXE-112A9B89.pf --------- 42312 
 28.06.2011 10:31    C:\Windows\Prefetch\SVCHOST.EXE-7CFEDEA3.pf --------- 17946 
 28.06.2011 10:31    C:\Windows\Prefetch\VSSVC.EXE-B8AFC319.pf --------- 103112 
 28.06.2011 10:31    C:\Windows\Prefetch\SVCHOST.EXE-E2C2633A.pf --------- 16482 
 28.06.2011 10:30    C:\Windows\Prefetch\TRUSTEDINSTALLER.EXE-3CC531E5.pf --------- 663698 
 28.06.2011 10:29    C:\Windows\Prefetch\WMIADAP.EXE-F8DFDFA2.pf --------- 52932 
 28.06.2011 10:29    C:\Windows\Prefetch\WMIPRVSE.EXE-1628051C.pf --------- 58258 
 28.06.2011 10:28    C:\Windows\Prefetch\SVCHOST.EXE-05F624AB.pf --------- 9082 
 28.06.2011 10:28    C:\Windows\Prefetch\GOOGLECRASHHANDLER.EXE-8001F7AE.pf --------- 23266 
 28.06.2011 10:28    C:\Windows\Prefetch\MSCORSVW.EXE-57D17DAF.pf --------- 45734 
 28.06.2011 10:28    C:\Windows\Prefetch\MSCORSVW.EXE-C3C515BD.pf --------- 21016 
 28.06.2011 10:27    C:\Windows\Prefetch\ReadyBoot --------- 0 
 28.06.2011 10:26    C:\Windows\Prefetch\SVCHOST.EXE-C871F054.pf --------- 46496 
 28.06.2011 10:26    C:\Windows\Prefetch\WMPNETWK.EXE-D9F2A96F.pf --------- 92478 
 28.06.2011 10:26    C:\Windows\Prefetch\IPODSERVICE.EXE-37C43D64.pf --------- 206214 
 28.06.2011 10:26    C:\Windows\Prefetch\WMPNSCFG.EXE-FC0D39BF.pf --------- 35612 
 28.06.2011 03:48    C:\Windows\Prefetch\PfSvPerfStats.bin --------- 584 
 28.06.2011 03:30    C:\Windows\Prefetch\MPCMDRUN.EXE-F401FBB4.pf --------- 27314 
 28.06.2011 01:32    C:\Windows\Prefetch\LPREMOVE.EXE-284EF282.pf --------- 2388 
 28.06.2011 01:25    C:\Windows\Prefetch\RUNDLL32.EXE-411A328D.pf --------- 228988 
 28.06.2011 01:22    C:\Windows\Prefetch\SVCHOST.EXE-7AC6742A.pf --------- 16996 
 28.06.2011 01:22    C:\Windows\Prefetch\DEFRAG.EXE-588F90AD.pf --------- 17756 
 28.06.2011 01:22    C:\Windows\Prefetch\Layout.ini --------- 1627416 
 28.06.2011 00:43    C:\Windows\Prefetch\NOTEPAD.EXE-D8414F97.pf --------- 22338 
 28.06.2011 00:28    C:\Windows\Prefetch\PREVHOST.EXE-4F1C4E0F.pf --------- 23736 
 28.06.2011 00:17    C:\Windows\Prefetch\HON.EXE-2B7DA407.pf --------- 209748 
 28.06.2011 00:10    C:\Windows\Prefetch\DLLHOST.EXE-5FD5BD9D.pf --------- 23486 
 28.06.2011 00:10    C:\Windows\Prefetch\TS3CLIENT_WIN64.EXE-FF0943AF.pf --------- 250652 
 27.06.2011 23:55    C:\Windows\Prefetch\AVCENTER.EXE-EBE30B94.pf --------- 132240 
 27.06.2011 23:42    C:\Windows\Prefetch\HELPPANE.EXE-FEDC965B.pf --------- 135620 
 27.06.2011 23:41    C:\Windows\Prefetch\VDS.EXE-6E7946F9.pf --------- 33116 
 27.06.2011 23:41    C:\Windows\Prefetch\WBENGINE.EXE-28FD7E8B.pf --------- 24066 
 27.06.2011 23:41    C:\Windows\Prefetch\RSTRUI.EXE-2D50C58D.pf --------- 118254 
 27.06.2011 23:41    C:\Windows\Prefetch\VDSLDR.EXE-6B089E8B.pf --------- 18616 
 27.06.2011 23:24    C:\Windows\Prefetch\HIJACKTHIS.EXE-07C49778.pf --------- 50408 
 27.06.2011 23:23    C:\Windows\Prefetch\AVSCAN.EXE-5922A648.pf --------- 192808 
 27.06.2011 23:21    C:\Windows\Prefetch\SDCLT.EXE-E10B972A.pf --------- 7042 
 27.06.2011 23:19    C:\Windows\Prefetch\TASKMGR.EXE-5F5F473D.pf --------- 45166 
 27.06.2011 23:19    C:\Windows\Prefetch\LOGONUI.EXE-09140401.pf --------- 56370 
 27.06.2011 23:17    C:\Windows\Prefetch\WUDFHOST.EXE-AFFEF87C.pf --------- 240150 
 27.06.2011 19:54    C:\Windows\Prefetch\PING.EXE-7E94E73E.pf --------- 23924 
 27.06.2011 19:54    C:\Windows\Prefetch\SDIAGNHOST.EXE-8D72177C.pf --------- 151214 
 27.06.2011 19:54    C:\Windows\Prefetch\W32TM.EXE-1101AF41.pf --------- 15406 
 27.06.2011 19:54    C:\Windows\Prefetch\CSC.EXE-BE9AC2DF.pf --------- 52866 
 27.06.2011 19:54    C:\Windows\Prefetch\CVTRES.EXE-2B9D810D.pf --------- 12358 
 27.06.2011 19:54    C:\Windows\Prefetch\RUNDLL32.EXE-B49E1152.pf --------- 3342 
 27.06.2011 19:13    C:\Windows\Prefetch\APPLEMOBILEDEVICEHELPER.EXE-EDD411E2.pf --------- 48090 
 27.06.2011 19:13    C:\Windows\Prefetch\LASTFM.EXE-48295092.pf --------- 191114 
 27.06.2011 19:13    C:\Windows\Prefetch\ITUNES.EXE-C082D25E.pf --------- 261528 
 27.06.2011 19:12    C:\Windows\Prefetch\SNDVOL.EXE-5D4CC7D6.pf --------- 37372 
 27.06.2011 19:06    C:\Windows\Prefetch\CCC.EXE-B637C9BF.pf --------- 223498 
 27.06.2011 17:37    C:\Windows\Prefetch\DLLHOST.EXE-97229F6A.pf --------- 18410 
 27.06.2011 17:33    C:\Windows\Prefetch\MSFEEDSSYNC.EXE-6E6FBDF4.pf --------- 45684 
 27.06.2011 12:59    C:\Windows\Prefetch\DLLHOST.EXE-4F28A26F.pf --------- 94490 
 27.06.2011 12:43    C:\Windows\Prefetch\JAVAWS.EXE-446541A7.pf --------- 27172 
 27.06.2011 12:43    C:\Windows\Prefetch\JAVAW.EXE-95D02C48.pf --------- 94192 
 27.06.2011 12:42    C:\Windows\Prefetch\SC.EXE-945D79AE.pf --------- 8468 
 27.06.2011 12:42    C:\Windows\Prefetch\RUNDLL32.EXE-0CF9BF08.pf --------- 55384 
 27.06.2011 12:42    C:\Windows\Prefetch\DINOTIFY.EXE-35A869D6.pf --------- 17492 
 27.06.2011 12:42    C:\Windows\Prefetch\DRVINST.EXE-4CB4314A.pf --------- 63382 
 27.06.2011 02:12    C:\Windows\Prefetch\RUNDLL32.EXE-81144448.pf --------- 28398 
 27.06.2011 02:12    C:\Windows\Prefetch\RUNDLL32.EXE-D860C57B.pf --------- 35956 
 26.06.2011 20:58    C:\Windows\Prefetch\LULNCHR.EXE-F5999604.pf --------- 69688 
 26.06.2011 20:58    C:\Windows\Prefetch\LOGITECHUPDATE.EXE-656A2776.pf --------- 28914 
 22.06.2011 19:40    C:\Windows\Prefetch\NTOSBOOT-B00DFAAD.pf --------- 2701378 
 20.06.2011 03:36    C:\Windows\Prefetch\AgCx_SC4.db --------- 343491 
 07.12.2010 14:37    C:\Windows\Prefetch\AgAppLaunch.db --------- 334168 
 23.07.2010 19:28    C:\Windows\Prefetch\AgCx_SC1.db --------- 508532 
 23.07.2010 19:27    C:\Windows\Prefetch\AgCx_SC1.db.trx --------- 4688 
----------------------------------------

 
C:\Windows\Tasks

 28.06.2011 11:52    C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job --------- 1108 
 28.06.2011 11:30    C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3793214032-3665191566-2873153956-1001UA.job --------- 1120 
 28.06.2011 10:25    C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job --------- 1104 
 28.06.2011 10:25    C:\Windows\Tasks\SA.DAT --------- 6 
 26.06.2011 13:30    C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3793214032-3665191566-2873153956-1001Core.job --------- 1068 
 30.05.2011 12:37    C:\Windows\Tasks\SCHEDLGU.TXT --------- 32640 
 30.05.2011 06:12    C:\Windows\Tasks\Norton Security Scan for Jonas.job --------- 448 
----------------------------------------

 
C:\Windows\Temp

 28.06.2011 10:31    C:\Windows\Temp\MpSigStub.log --------- 343996 
 28.06.2011 10:25    C:\Windows\Temp\{E9C1E0AC-C9B2-4c85-94DE-9C1518918D02}.tlb --------- 3596 
 28.06.2011 10:25    C:\Windows\Temp\{E9C1E0AC-C9B2-4c85-94DE-9C1518918D12}.tlb --------- 3596 
 28.06.2011 03:29    C:\Windows\Temp\MpCmdRun.log --------- 173230 
 27.06.2011 13:15    C:\Windows\Temp\fwtsqmfile13.sqm --------- 608 
 26.06.2011 16:21    C:\Windows\Temp\fwtsqmfile12.sqm --------- 608 
 24.06.2011 15:09    C:\Windows\Temp\fwtsqmfile11.sqm --------- 608 
 24.06.2011 03:43    C:\Windows\Temp\fwtsqmfile10.sqm --------- 608 
 23.06.2011 03:59    C:\Windows\Temp\fwtsqmfile09.sqm --------- 608 
 22.06.2011 04:34    C:\Windows\Temp\TMP000000343B240804FD540AB2 --------- 524288 
 21.06.2011 19:29    C:\Windows\Temp\fwtsqmfile08.sqm --------- 608 
 21.06.2011 10:29    C:\Windows\Temp\fwtsqmfile07.sqm --------- 608 
 21.06.2011 04:12    C:\Windows\Temp\fwtsqmfile06.sqm --------- 608 
 20.06.2011 03:29    C:\Windows\Temp\TMP000003430F80BA55AA76049F --------- 524288 
 17.06.2011 22:12    C:\Windows\Temp\fwtsqmfile05.sqm --------- 608 
 16.06.2011 03:12    C:\Windows\Temp\fwtsqmfile04.sqm --------- 608 
 16.06.2011 03:12    C:\Windows\Temp\TMP00000104D967A601DDC9F204 --------- 524288 
 15.06.2011 19:18    C:\Windows\Temp\dd_vcredistUI6FCC.txt --------- 18688 
 15.06.2011 19:18    C:\Windows\Temp\dd_vcredistMSI6FCC.txt --------- 442204 
 15.06.2011 19:17    C:\Windows\Temp\dd_vcredistUI6F23.txt --------- 18784 
 15.06.2011 19:17    C:\Windows\Temp\dd_vcredistMSI6F23.txt --------- 432362 
 15.06.2011 19:14    C:\Windows\Temp\KB2518870_20110615_191026226.html --------- 59422 
 15.06.2011 19:14    C:\Windows\Temp\KB2518870_20110615_191026226-Microsoft .NET Framework 4 Client Profile DEU Language Pack-MSP1.txt --------- 3949134 
 15.06.2011 19:13    C:\Windows\Temp\KB2518870_20110615_191026226-Microsoft .NET Framework 4 Client Profile-MSP0.txt --------- 10716414 
 15.06.2011 19:10    C:\Windows\Temp\KB2518870_10.0.30319 --------- 0 
 15.06.2011 19:10    C:\Windows\Temp\dd_clwireg.txt --------- 14684 
 15.06.2011 19:10    C:\Windows\Temp\KB2478663_20110615_190255838.html --------- 58244 
 15.06.2011 19:10    C:\Windows\Temp\KB2478663_20110615_190255838-Microsoft .NET Framework 4 Client Profile DEU Language Pack-MSP1.txt --------- 2047778 
 15.06.2011 19:09    C:\Windows\Temp\KB2478663_20110615_190255838-Microsoft .NET Framework 4 Client Profile-MSP0.txt --------- 10030382 
 15.06.2011 19:02    C:\Windows\Temp\KB2478663_10.0.30319 --------- 0 
 05.06.2011 13:36    C:\Windows\Temp\DMIFCB5.tmp --------- 0 
 05.06.2011 13:36    C:\Windows\Temp\DMIFC48.tmp --------- 0 
 05.06.2011 13:36    C:\Windows\Temp\kmdf01009.inf --------- 388 
 05.06.2011 13:36    C:\Windows\Temp\WdfCoInstaller01009.dll --------- 1721576 
 05.06.2011 13:36    C:\Windows\Temp\GUR5688.tmp --------- 0 
 31.05.2011 16:55    C:\Windows\Temp\fwtsqmfile03.sqm --------- 608 
 30.05.2011 16:26    C:\Windows\Temp\fwtsqmfile02.sqm --------- 608 
 30.05.2011 07:13    C:\Windows\Temp\fwtsqmfile19.sqm --------- 608 
 27.05.2011 20:09    C:\Windows\Temp\fwtsqmfile18.sqm --------- 608 
 26.05.2011 22:14    C:\Windows\Temp\fwtsqmfile17.sqm --------- 608 
 26.05.2011 13:50    C:\Windows\Temp\isE427.tmp --------- 0 
 26.05.2011 13:50    C:\Windows\Temp\isC0EE.tmp --------- 0 
 26.05.2011 13:50    C:\Windows\Temp\._msige60 --------- 24576 
 25.05.2011 14:44    C:\Windows\Temp\fwtsqmfile16.sqm --------- 608 
 24.05.2011 14:07    C:\Windows\Temp\fwtsqmfile15.sqm --------- 608 
 23.05.2011 22:31    C:\Windows\Temp\fwtsqmfile01.sqm --------- 608 
 21.05.2011 09:36    C:\Windows\Temp\TMP000000243971F7D4687A89C3 --------- 524288 
 20.05.2011 02:06    C:\Windows\Temp\Microsoft Visual C++ 2010  x86 Redistributable Setup_20110520_020644105.html --------- 94548 
 20.05.2011 02:06    C:\Windows\Temp\Microsoft Visual C++ 2010  x86 Redistributable Setup_20110520_020644105-Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319-MSP0.txt --------- 332514 
 20.05.2011 02:06    C:\Windows\Temp\Microsoft Visual C++ 2010  x86 Redistributable Setup_20110520_020644105-MSI_vc_red.msi.txt --------- 368690 
 20.05.2011 02:06    C:\Windows\Temp\Microsoft Visual C++ 2010  x86 Redistributable Setup_10.0.30319 --------- 0 
 20.05.2011 02:06    C:\Windows\Temp\Microsoft Visual C++ 2010  x64 Redistributable Setup_20110520_020632888.html --------- 99778 
 20.05.2011 02:06    C:\Windows\Temp\Microsoft Visual C++ 2010  x64 Redistributable Setup_20110520_020632888-Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319-MSP0.txt --------- 307594 
 20.05.2011 02:06    C:\Windows\Temp\Microsoft Visual C++ 2010  x64 Redistributable Setup_20110520_020632888-MSI_vc_red.msi.txt --------- 347718 
 20.05.2011 02:06    C:\Windows\Temp\Microsoft Visual C++ 2010  x64 Redistributable Setup_10.0.30319 --------- 0 
 20.05.2011 02:06    C:\Windows\Temp\dd_vcredistUI6ADD.txt --------- 11666 
 20.05.2011 02:06    C:\Windows\Temp\dd_vcredistMSI6ADD.txt --------- 431126 
 20.05.2011 02:06    C:\Windows\Temp\dd_vcredistUI6A71.txt --------- 11602 
 20.05.2011 02:06    C:\Windows\Temp\dd_vcredistMSI6A71.txt --------- 417242 
 20.05.2011 01:52    C:\Windows\Temp\fwtsqmfile00.sqm --------- 608 
 20.05.2011 01:47    C:\Windows\Temp\fwtsqmfile14.sqm --------- 608 
 15.05.2011 01:11    C:\Windows\Temp\GUR6A46.exe --------- 0 
 15.05.2011 01:11    C:\Windows\Temp\GUR6A46.tmp --------- 0 
 15.05.2011 01:00    C:\Windows\Temp\TMP000000C95AF12B17EFFCC8ED --------- 524288 
 13.05.2011 15:35    C:\Windows\Temp\TMP000000015375B6914CCF3C5C --------- 524288 
 12.05.2011 23:29    C:\Windows\Temp\TMP0000014139844B829EFE53D3 --------- 524288 
 11.05.2011 00:17    C:\Windows\Temp\TMP00000030AE0E0AE24A4D05CB --------- 524288 
 10.05.2011 16:10    C:\Windows\Temp\TMP00000092532167984BC5EE05 --------- 524288 
 09.05.2011 01:39    C:\Windows\Temp\TMP00000024B6C001FFA8BD63F0 --------- 524288 
 27.04.2011 11:46    C:\Windows\Temp\AVSETUP_4db7e5ef --------- 0 
 19.04.2011 22:59    C:\Windows\Temp\BITB3CB.tmp --------- 0 
 19.04.2011 22:59    C:\Windows\Temp\GURB357.tmp --------- 0 
 19.04.2011 22:54    C:\Windows\Temp\BIT3DFD.tmp --------- 0 
 19.04.2011 22:52    C:\Windows\Temp\GUR863F.tmp --------- 0 
 15.04.2011 20:10    C:\Windows\Temp\KB2446708_20110415_200715318.html --------- 55340 
 15.04.2011 20:10    C:\Windows\Temp\KB2446708_20110415_200715318-Microsoft .NET Framework 4 Client Profile-MSP0.txt --------- 9156478 
 15.04.2011 20:07    C:\Windows\Temp\KB2446708_10.0.30319 --------- 0 
 09.04.2011 00:45    C:\Windows\Temp\TMP00000081DEEC52DCDA204502 --------- 524288 
 08.04.2011 16:52    C:\Windows\Temp\dd_ATL80SP1_KB973923UI3FA6.txt --------- 11652 
 08.04.2011 16:52    C:\Windows\Temp\dd_ATL80SP1_KB973923MSI3FA6.txt --------- 539360 
 07.04.2011 15:28    C:\Windows\Temp\CDM --------- 0 
 04.03.2011 15:25    C:\Windows\Temp\MPInstrumentation --------- 0 
 08.01.2011 20:52    C:\Windows\Temp\TMP00000117505A5A978AA19247 --------- 524288 
 03.01.2011 05:33    C:\Windows\Temp\TMP0000014FA2451F0D684A5626 --------- 524288 
 29.12.2010 00:39    C:\Windows\Temp\TMP0000003DA12646CE02E98D21 --------- 524288 
 24.12.2010 00:37    C:\Windows\Temp\dmiwu --------- 0 
 07.12.2010 14:53    C:\Windows\Temp\debug.log --------- 3635 
 07.12.2010 14:50    C:\Windows\Temp\RarSFX0 --------- 4096 
 07.12.2010 14:38    C:\Windows\Temp\DMIE0DC.tmp --------- 0 
 25.11.2010 09:12    C:\Windows\Temp\KB2160841_20101125_081025417.html --------- 55180 
 25.11.2010 09:12    C:\Windows\Temp\KB2160841_20101125_081025417-Microsoft .NET Framework 4 Client Profile-MSP0.txt --------- 4775522 
 25.11.2010 09:10    C:\Windows\Temp\KB2160841_10.0.30319 --------- 0 
 25.10.2010 14:39    C:\Windows\Temp\lnonpnpsamp.log --------- 0 
 10.11.2009 18:51    C:\Windows\Temp\DMI5D8C.tmp --------- 0 
 14.10.2009 07:09    C:\Windows\Temp\FXSAPIDebugLogFile.txt --------- 0 
 14.10.2009 07:09    C:\Windows\Temp\FXSTIFFDebugLogFile.txt --------- 0 
 14.10.2009 07:06    C:\Windows\Temp\TS_BFF8.tmp --------- 262144 
 14.10.2009 07:06    C:\Windows\Temp\TS_BE71.tmp --------- 524288 
 14.10.2009 07:06    C:\Windows\Temp\TS_B3E1.tmp --------- 786432 
 14.10.2009 07:06    C:\Windows\Temp\TS_B343.tmp --------- 262144 
 14.10.2009 07:06    C:\Windows\Temp\TS_B268.tmp --------- 262144 
 14.10.2009 07:06    C:\Windows\Temp\TS_B10F.tmp --------- 262144 
 14.10.2009 07:06    C:\Windows\Temp\TS_AE6E.tmp --------- 458752 
 14.10.2009 07:06    C:\Windows\Temp\TS_ADC1.tmp --------- 327680 
 14.10.2009 07:06    C:\Windows\Temp\TS_AAF1.tmp --------- 262144 
 14.10.2009 07:06    C:\Windows\Temp\DMI5B4A.tmp --------- 0 
 10.06.2009 23:07    C:\Windows\Temp\FirstUX --------- 0 
----------------------------------------

 
C:\Users\Jonas\AppData\Local\Temp

 28.06.2011 12:02    C:\Users\Jonas\AppData\Local\Temp\etilqs_wk7V3IAZfnZb3Gtshb6m --------- 0 
 28.06.2011 11:55    C:\Users\Jonas\AppData\Local\Temp\etilqs_JUkl8vFc7YdwkMO1Xh8W --------- 0 
 28.06.2011 11:16    C:\Users\Jonas\AppData\Local\Temp\~DFD0F98248CDEB89B4.TMP --------- 147456 
 28.06.2011 11:07    C:\Users\Jonas\AppData\Local\Temp\~DF1FC79F42943285EF.TMP --------- 147456 
 28.06.2011 10:33    C:\Users\Jonas\AppData\Local\Temp\~DFFED988C0469DDA9F.TMP --------- 147456 
 28.06.2011 10:33    C:\Users\Jonas\AppData\Local\Temp\~DFD299B029CD796CD8.TMP --------- 147456 
 28.06.2011 10:32    C:\Users\Jonas\AppData\Local\Temp\_iu14D2N.tmp --------- 711728 
 28.06.2011 10:31    C:\Users\Jonas\AppData\Local\Temp\jusched.log --------- 415406 
 28.06.2011 10:26    C:\Users\Jonas\AppData\Local\Temp\etilqs_yWpLwWzJHYJUZLbJPr5d-journal --------- 0 
 28.06.2011 10:26    C:\Users\Jonas\AppData\Local\Temp\etilqs_yWpLwWzJHYJUZLbJPr5d --------- 1024 
 28.06.2011 10:26    C:\Users\Jonas\AppData\Local\Temp\div9F0C.tmp --------- 0 
 28.06.2011 10:26    C:\Users\Jonas\AppData\Local\Temp\{E9C1E0AC-C9B2-4c85-94DE-9C1518918D12}.tlb --------- 3596 
 28.06.2011 10:26    C:\Users\Jonas\AppData\Local\Temp\{E9C1E0AC-C9B2-4c85-94DE-9C1518918D02}.tlb --------- 3596 
 28.06.2011 10:25    C:\Users\Jonas\AppData\Local\Temp\WPDNSE --------- 0 
 28.06.2011 01:47    C:\Users\Jonas\AppData\Local\Temp\div8323.tmp --------- 0 
 27.06.2011 19:05    C:\Users\Jonas\AppData\Local\Temp\div97EB.tmp --------- 0 
 27.06.2011 17:28    C:\Users\Jonas\AppData\Local\Temp\div9DE3.tmp --------- 0 
 27.06.2011 12:43    C:\Users\Jonas\AppData\Local\Temp\hsperfdata_Jonas --------- 0 
 27.06.2011 12:38    C:\Users\Jonas\AppData\Local\Temp\div9A2C.tmp --------- 0 
 26.06.2011 20:58    C:\Users\Jonas\AppData\Local\Temp\div9ECD.tmp --------- 0 
 26.06.2011 16:22    C:\Users\Jonas\AppData\Local\Temp\div9379.tmp --------- 0 
 26.06.2011 14:11    C:\Users\Jonas\AppData\Local\Temp\{02C23D84-6FC1-4704-B7FE-215A2DF3C5B3} --------- 0 
 26.06.2011 14:01    C:\Users\Jonas\AppData\Local\Temp\{929B415C-F55C-4EA1-A97B-8CE4D85249AC} --------- 0 
 26.06.2011 14:00    C:\Users\Jonas\AppData\Local\Temp\7983.rra --------- 81920 
 26.06.2011 14:00    C:\Users\Jonas\AppData\Local\Temp\{F26F831A-927A-4C85-8073-7DC1485571D0} --------- 0 
 26.06.2011 14:00    C:\Users\Jonas\AppData\Local\Temp\{6B0B6469-0893-4556-9183-3EB4EC3F2516} --------- 0 
 26.06.2011 13:51    C:\Users\Jonas\AppData\Local\Temp\ec70.rra --------- 81920 
 26.06.2011 13:51    C:\Users\Jonas\AppData\Local\Temp\{71FAD8A3-EC54-45CD-A286-A900FD9F6012} --------- 0 
 26.06.2011 13:51    C:\Users\Jonas\AppData\Local\Temp\{6842D5CA-96D3-49E6-A9ED-328D99A015AD} --------- 0 
 26.06.2011 13:51    C:\Users\Jonas\AppData\Local\Temp\{41a1b45e-1263-459a-964e-8c4c1ce55470} --------- 0 
 26.06.2011 13:37    C:\Users\Jonas\AppData\Local\Temp\ed5a.rra --------- 81920 
 26.06.2011 13:37    C:\Users\Jonas\AppData\Local\Temp\{79914C67-00AF-4A1C-AAAE-67BE48C0E305} --------- 0 
 26.06.2011 13:37    C:\Users\Jonas\AppData\Local\Temp\{46472DB2-E434-4DA1-8DB7-0A2EF64E4F0E} --------- 0 
 26.06.2011 13:23    C:\Users\Jonas\AppData\Local\Temp\divC2A2.tmp --------- 0 
 26.06.2011 07:15    C:\Users\Jonas\AppData\Local\Temp\div98D5.tmp --------- 0 
 25.06.2011 20:15    C:\Users\Jonas\AppData\Local\Temp\divBCD8.tmp --------- 0 
 25.06.2011 20:12    C:\Users\Jonas\AppData\Local\Temp\divCC14.tmp --------- 0 
 25.06.2011 17:31    C:\Users\Jonas\AppData\Local\Temp\div979E.tmp --------- 0 
 25.06.2011 11:23    C:\Users\Jonas\AppData\Local\Temp\div9923.tmp --------- 0 
 25.06.2011 01:44    C:\Users\Jonas\AppData\Local\Temp\divC773.tmp --------- 0 
 24.06.2011 19:15    C:\Users\Jonas\AppData\Local\Temp\divAB8A.tmp --------- 0 
 24.06.2011 10:51    C:\Users\Jonas\AppData\Local\Temp\div9C8C.tmp --------- 0 
 24.06.2011 02:05    C:\Users\Jonas\AppData\Local\Temp\HoN Mod Manager --------- 0 
 24.06.2011 01:59    C:\Users\Jonas\AppData\Local\Temp\div9887.tmp --------- 0 
 23.06.2011 19:01    C:\Users\Jonas\AppData\Local\Temp\div9E41.tmp --------- 0 
 23.06.2011 12:45    C:\Users\Jonas\AppData\Local\Temp\divC551.tmp --------- 0 
 22.06.2011 19:40    C:\Users\Jonas\AppData\Local\Temp\divA46A.tmp --------- 0 
 22.06.2011 11:46    C:\Users\Jonas\AppData\Local\Temp\divA17C.tmp --------- 0 
 22.06.2011 00:53    C:\Users\Jonas\AppData\Local\Temp\div9D47.tmp --------- 0 
 22.06.2011 00:53    C:\Users\Jonas\AppData\Local\Temp\drm_dialogs.dll --------- 65536 
 21.06.2011 16:42    C:\Users\Jonas\AppData\Local\Temp\div9655.tmp --------- 0 
 21.06.2011 14:14    C:\Users\Jonas\AppData\Local\Temp\divBBCF.tmp --------- 0 
 21.06.2011 10:10    C:\Users\Jonas\AppData\Local\Temp\div8611.tmp --------- 0 
 20.06.2011 18:54    C:\Users\Jonas\AppData\Local\Temp\divD077.tmp --------- 0 
 20.06.2011 12:07    C:\Users\Jonas\AppData\Local\Temp\divA5B0.tmp --------- 0 
 20.06.2011 03:35    C:\Users\Jonas\AppData\Local\Temp\div5F6D.tmp --------- 0 
 20.06.2011 03:35    C:\Users\Jonas\AppData\Local\Temp\e0599c8c86f64c13aa --------- 0 
 20.06.2011 03:34    C:\Users\Jonas\AppData\Local\Temp\wmsetup.log --------- 27719 
 20.06.2011 00:34    C:\Users\Jonas\AppData\Local\Temp\JAUReg.log --------- 895 
 20.06.2011 00:34    C:\Users\Jonas\AppData\Local\Temp\AUCHECK_PARSER.txt --------- 4467 
 20.06.2011 00:33    C:\Users\Jonas\AppData\Local\Temp\java_install_reg.log --------- 12354 
 20.06.2011 00:31    C:\Users\Jonas\AppData\Local\Temp\java_install_sp.log --------- 5522 
 20.06.2011 00:30    C:\Users\Jonas\AppData\Local\Temp\jinstall.cfg --------- 1290 
 19.06.2011 11:37    C:\Users\Jonas\AppData\Local\Temp\div90EA.tmp --------- 0 
 19.06.2011 00:34    C:\Users\Jonas\AppData\Local\Temp\divA811.tmp --------- 0 
 18.06.2011 12:39    C:\Users\Jonas\AppData\Local\Temp\divA65C.tmp --------- 0 
 17.06.2011 20:07    C:\Users\Jonas\AppData\Local\Temp\divAD2F.tmp --------- 0 
 17.06.2011 16:16    C:\Users\Jonas\AppData\Local\Temp\divAF61.tmp --------- 0 
 17.06.2011 11:33    C:\Users\Jonas\AppData\Local\Temp\divB856.tmp --------- 0 
 17.06.2011 11:31    C:\Users\Jonas\AppData\Local\Temp\divD029.tmp --------- 0 
 17.06.2011 00:30    C:\Users\Jonas\AppData\Local\Temp\AdobeARM.log --------- 550632 
 17.06.2011 00:30    C:\Users\Jonas\AppData\Local\Temp\ArmUI.ini --------- 148526 
 16.06.2011 11:10    C:\Users\Jonas\AppData\Local\Temp\divC7A1.tmp --------- 0 
 15.06.2011 23:48    C:\Users\Jonas\AppData\Local\Temp\AUCHECK_CORE.txt --------- 14496 
 15.06.2011 23:43    C:\Users\Jonas\AppData\Local\Temp\div34F4.tmp --------- 0 
 15.06.2011 19:00    C:\Users\Jonas\AppData\Local\Temp\chrome_installer.log --------- 135 
 15.06.2011 14:37    C:\Users\Jonas\AppData\Local\Temp\tmp47104.WMC --------- 0 
 15.06.2011 13:41    C:\Users\Jonas\AppData\Local\Temp\QTInstallCode.log --------- 34223 
 15.06.2011 13:41    C:\Users\Jonas\AppData\Local\Temp\SetupAdminA0.log --------- 85 
 15.06.2011 13:23    C:\Users\Jonas\AppData\Local\Temp\div7E62.tmp --------- 0 
 15.06.2011 13:22    C:\Users\Jonas\AppData\Local\Temp\div90E9.tmp --------- 0 
 05.06.2011 13:36    C:\Users\Jonas\AppData\Local\Temp\div9C0F.tmp --------- 0 
 31.05.2011 12:22    C:\Users\Jonas\AppData\Local\Temp\div99FD.tmp --------- 0 
 31.05.2011 06:46    C:\Users\Jonas\AppData\Local\Temp\divA044.tmp --------- 0 
 30.05.2011 17:34    C:\Users\Jonas\AppData\Local\Temp\divB5B7.tmp --------- 0 
 30.05.2011 17:28    C:\Users\Jonas\AppData\Local\Temp\divC2C1.tmp --------- 0 
 30.05.2011 12:38    C:\Users\Jonas\AppData\Local\Temp\divBDC2.tmp --------- 0 
 30.05.2011 06:12    C:\Users\Jonas\AppData\Local\Temp\divB75C.tmp --------- 0 
 29.05.2011 21:04    C:\Users\Jonas\AppData\Local\Temp\tmp1.data --------- 1675 
 29.05.2011 18:53    C:\Users\Jonas\AppData\Local\Temp\5e85.rra --------- 81920 
 29.05.2011 18:53    C:\Users\Jonas\AppData\Local\Temp\{185EDC76-6340-4A7D-995D-4BCA3EC3C14F} --------- 0 
 29.05.2011 18:53    C:\Users\Jonas\AppData\Local\Temp\{DE7B4DD5-B5DB-4DED-BB15-3231A354E1E1} --------- 0 
 29.05.2011 18:50    C:\Users\Jonas\AppData\Local\Temp\gentee01 --------- 0 
 29.05.2011 18:50    C:\Users\Jonas\AppData\Local\Temp\gentee01.tmp --------- 0 
 29.05.2011 18:50    C:\Users\Jonas\AppData\Local\Temp\uninst1.exe --------- 105472 
 29.05.2011 18:47    C:\Users\Jonas\AppData\Local\Temp\divC18B.tmp --------- 0 
 29.05.2011 18:47    C:\Users\Jonas\AppData\Local\Temp\divFE1E.tmp --------- 0 
 29.05.2011 18:46    C:\Users\Jonas\AppData\Local\Temp\SymCCIS_CheckCriteria.txt --------- 758 
 29.05.2011 18:46    C:\Users\Jonas\AppData\Local\Temp\SCCLog.txt --------- 2603 
 29.05.2011 18:45    C:\Users\Jonas\AppData\Local\Temp\divA2B5.tmp --------- 0 
 29.05.2011 12:04    C:\Users\Jonas\AppData\Local\Temp\divBFD5.tmp --------- 0 
 29.05.2011 11:47    C:\Users\Jonas\AppData\Local\Temp\div927E.tmp --------- 0 
 29.05.2011 11:10    C:\Users\Jonas\AppData\Local\Temp\div95F7.tmp --------- 0 
 29.05.2011 03:13    C:\Users\Jonas\AppData\Local\Temp\div9EEE.tmp --------- 0 
 28.05.2011 17:01    C:\Users\Jonas\AppData\Local\Temp\divB691.tmp --------- 0 
 28.05.2011 10:46    C:\Users\Jonas\AppData\Local\Temp\div90F9.tmp --------- 0 
 28.05.2011 01:40    C:\Users\Jonas\AppData\Local\Temp\divAEF3.tmp --------- 0 
 27.05.2011 13:55    C:\Users\Jonas\AppData\Local\Temp\div9E12.tmp --------- 0 
 27.05.2011 10:26    C:\Users\Jonas\AppData\Local\Temp\div9839.tmp --------- 0 
 27.05.2011 02:43    C:\Users\Jonas\AppData\Local\Temp\div9EBE.tmp --------- 0 
 26.05.2011 13:38    C:\Users\Jonas\AppData\Local\Temp\divA0FF.tmp --------- 0 
 26.05.2011 02:27    C:\Users\Jonas\AppData\Local\Temp\~DF1DECD3AF0B75FC2E.TMP --------- 16384 
 26.05.2011 01:31    C:\Users\Jonas\AppData\Local\Temp\divC206.tmp --------- 0 
 25.05.2011 22:23    C:\Users\Jonas\AppData\Local\Temp\ge3968 --------- 0 
 25.05.2011 17:36    C:\Users\Jonas\AppData\Local\Temp\divA35F.tmp --------- 0 
 25.05.2011 11:19    C:\Users\Jonas\AppData\Local\Temp\div94BF.tmp --------- 0 
 25.05.2011 01:26    C:\Users\Jonas\AppData\Local\Temp\div9684.tmp --------- 0 
 24.05.2011 18:44    C:\Users\Jonas\AppData\Local\Temp\div9C7E.tmp --------- 0 
 24.05.2011 14:14    C:\Users\Jonas\AppData\Local\Temp\div8CB4.tmp --------- 0 
 24.05.2011 14:10    C:\Users\Jonas\AppData\Local\Temp\div88AF.tmp --------- 0 
 24.05.2011 10:19    C:\Users\Jonas\AppData\Local\Temp\div5DD8.tmp --------- 0 
 24.05.2011 09:53    C:\Users\Jonas\AppData\Local\Temp\div9B35.tmp --------- 0 
 23.05.2011 22:36    C:\Users\Jonas\AppData\Local\Temp\div9E7F.tmp --------- 0 
 23.05.2011 19:48    C:\Users\Jonas\AppData\Local\Temp\div8DAE.tmp --------- 0 
 23.05.2011 14:59    C:\Users\Jonas\AppData\Local\Temp\div92DC.tmp --------- 0 
 23.05.2011 11:03    C:\Users\Jonas\AppData\Local\Temp\div8E4A.tmp --------- 0 
 22.05.2011 22:18    C:\Users\Jonas\AppData\Local\Temp\div8EC7.tmp --------- 0 
 22.05.2011 12:22    C:\Users\Jonas\AppData\Local\Temp\div7731.tmp --------- 0 
 21.05.2011 23:17    C:\Users\Jonas\AppData\Local\Temp\div8D41.tmp --------- 0 
 21.05.2011 14:41    C:\Users\Jonas\AppData\Local\Temp\divBE7D.tmp --------- 0 
 21.05.2011 08:40    C:\Users\Jonas\AppData\Local\Temp\div979D.tmp --------- 0 
 20.05.2011 11:13    C:\Users\Jonas\AppData\Local\Temp\div83C0.tmp --------- 0 
 20.05.2011 01:59    C:\Users\Jonas\AppData\Local\Temp\msdtadmin --------- 0 
 20.05.2011 01:48    C:\Users\Jonas\AppData\Local\Temp\div731C.tmp --------- 0 
 19.05.2011 22:59    C:\Users\Jonas\AppData\Local\Temp\div7CEC.tmp --------- 0 
 19.05.2011 11:47    C:\Users\Jonas\AppData\Local\Temp\div9C5D.tmp --------- 0 
 19.05.2011 02:40    C:\Users\Jonas\AppData\Local\Temp\BITB7C9.tmp --------- 589464 
 18.05.2011 16:09    C:\Users\Jonas\AppData\Local\Temp\divA0EF.tmp --------- 0 
 18.05.2011 12:12    C:\Users\Jonas\AppData\Local\Temp\div932A.tmp --------- 0 
 17.05.2011 11:43    C:\Users\Jonas\AppData\Local\Temp\divA736.tmp --------- 0 
 16.05.2011 10:15    C:\Users\Jonas\AppData\Local\Temp\divBAE5.tmp --------- 0 
 15.05.2011 22:55    C:\Users\Jonas\AppData\Local\Temp\~DF1E77D5FF191385D5.TMP --------- 16384 
 15.05.2011 15:14    C:\Users\Jonas\AppData\Local\Temp\divC5AE.tmp --------- 0 
 15.05.2011 02:20    C:\Users\Jonas\AppData\Local\Temp\{DF2BF327-42B0-4EF3-A86D-0ABCA156C7CC} --------- 0 
 15.05.2011 02:20    C:\Users\Jonas\AppData\Local\Temp\{114540CA-B23C-4CB7-A6FD-C01757B8AC94} --------- 0 
 15.05.2011 01:32    C:\Users\Jonas\AppData\Local\Temp\x86 --------- 0 
 15.05.2011 01:32    C:\Users\Jonas\AppData\Local\Temp\amd64 --------- 0 
 15.05.2011 01:22    C:\Users\Jonas\AppData\Local\Temp\divA350.tmp --------- 0 
 15.05.2011 01:11    C:\Users\Jonas\AppData\Local\Temp\div93D5.tmp --------- 0 
 15.05.2011 01:08    C:\Users\Jonas\AppData\Local\Temp\divAB3C.tmp --------- 0 
 15.05.2011 01:02    C:\Users\Jonas\AppData\Local\Temp\divEE63.tmp --------- 0 
 15.05.2011 00:59    C:\Users\Jonas\AppData\Local\Temp\etilqs_HianCNRyaYhsAgKIycOj --------- 0 
 15.05.2011 00:59    C:\Users\Jonas\AppData\Local\Temp\etilqs_2zuB4sYPBNQ9woAbZd5Z --------- 0 
 14.05.2011 23:30    C:\Users\Jonas\AppData\Local\Temp\{4A6AFFEC-BBF5-432F-9F21-7A2DDD353EFA} --------- 0 
 14.05.2011 23:30    C:\Users\Jonas\AppData\Local\Temp\{144FE2F6-212A-493C-87D7-B0F2676BEC68} --------- 0 
 14.05.2011 23:30    C:\Users\Jonas\AppData\Local\Temp\{ADCE8B1A-9026-4735-A9E2-1481645F9145} --------- 0 
 14.05.2011 23:27    C:\Users\Jonas\AppData\Local\Temp\{F0221850-FF19-40A4-9AE1-4A5A1C9C61D1} --------- 0 
 14.05.2011 23:26    C:\Users\Jonas\AppData\Local\Temp\4157.rra --------- 81920 
 14.05.2011 23:26    C:\Users\Jonas\AppData\Local\Temp\{18E0DBB5-46B0-4A4F-861B-AE82441DFAD2} --------- 0 
 14.05.2011 23:26    C:\Users\Jonas\AppData\Local\Temp\{DEF9F5BD-A131-463B-B8FC-3968AF081B58} --------- 0 
 14.05.2011 23:14    C:\Users\Jonas\AppData\Local\Temp\etilqs_6rw5Ma3U2PwrjVaJVTST-journal --------- 0 
 14.05.2011 23:14    C:\Users\Jonas\AppData\Local\Temp\etilqs_6rw5Ma3U2PwrjVaJVTST --------- 1024 
 14.05.2011 10:08    C:\Users\Jonas\AppData\Local\Temp\divB318.tmp --------- 0 
 13.05.2011 23:26    C:\Users\Jonas\AppData\Local\Temp\divE983.tmp --------- 0 
 13.05.2011 17:07    C:\Users\Jonas\AppData\Local\Temp\{FD7A45DE-2322-4BFE-B3F6-D38DAF2570D5} --------- 0 
 13.05.2011 17:06    C:\Users\Jonas\AppData\Local\Temp\{92EC1F15-155E-488F-94B7-5BD00FA40740} --------- 0 
 13.05.2011 17:04    C:\Users\Jonas\AppData\Local\Temp\{D759F5AC-D238-478D-93D6-6FE07EA2756C} --------- 0 
 13.05.2011 17:04    C:\Users\Jonas\AppData\Local\Temp\{A016E8F0-55CE-4514-9A9A-82BAF0691D6F} --------- 0 
 13.05.2011 17:02    C:\Users\Jonas\AppData\Local\Temp\{B0F20845-1856-4B8B-9029-D03E42D650E7} --------- 0 
 13.05.2011 17:02    C:\Users\Jonas\AppData\Local\Temp\{DC30A9F6-4E6F-4005-93D7-6D7065D665BF} --------- 0 
 13.05.2011 16:19    C:\Users\Jonas\AppData\Local\Temp\{814094EC-12F9-46BD-9557-2C083A99BAF9} --------- 0 
 13.05.2011 16:19    C:\Users\Jonas\AppData\Local\Temp\{94A126C8-5F75-4EA0-BA09-32DF405FB907} --------- 0 
 13.05.2011 16:16    C:\Users\Jonas\AppData\Local\Temp\{A6ADD0EA-45C3-4FBC-ABDA-3CBC296CAE1A} --------- 0 
 13.05.2011 16:16    C:\Users\Jonas\AppData\Local\Temp\{F10E7E48-B2E7-49F4-8245-C01606D676DA} --------- 0 
 13.05.2011 15:37    C:\Users\Jonas\AppData\Local\Temp\divB6DF.tmp --------- 0 
 13.05.2011 15:34    C:\Users\Jonas\AppData\Local\Temp\etilqs_l3i4yGmuDB8XXNrGunJn --------- 0 
 13.05.2011 15:32    C:\Users\Jonas\AppData\Local\Temp\divA67B.tmp --------- 0 
 13.05.2011 14:59    C:\Users\Jonas\AppData\Local\Temp\{1da8714c-ba7f-4431-8cec-c9fe4ffb5710} --------- 0 
 13.05.2011 14:43    C:\Users\Jonas\AppData\Local\Temp\{72853573-4BD6-4C3F-9C36-020DA456861A} --------- 0 
 13.05.2011 14:41    C:\Users\Jonas\AppData\Local\Temp\{14F92A26-72EF-4138-BCAD-D2E8D198298C} --------- 0 
 13.05.2011 14:30    C:\Users\Jonas\AppData\Local\Temp\{20894A87-EF72-49B4-ADBA-E6C19C4F9C97} --------- 0 
 13.05.2011 13:59    C:\Users\Jonas\AppData\Local\Temp\{B23BC2B4-F7AB-4B6D-8B51-AC5B6B08B07D} --------- 0 
 13.05.2011 13:59    C:\Users\Jonas\AppData\Local\Temp\{66D66279-54FB-465E-BFD4-FEE8E3F54DE8} --------- 0 
 13.05.2011 12:57    C:\Users\Jonas\AppData\Local\Temp\divB173.tmp --------- 0 
 12.05.2011 18:51    C:\Users\Jonas\AppData\Local\Temp\BFBC2Updater.log --------- 335203 
 12.05.2011 17:09    C:\Users\Jonas\AppData\Local\Temp\{91960ea1-35e2-41fe-94b2-df899cbc9ee1} --------- 0 
 12.05.2011 14:47    C:\Users\Jonas\AppData\Local\Temp\div9829.tmp --------- 0 
 12.05.2011 09:17    C:\Users\Jonas\AppData\Local\Temp\div9DC4.tmp --------- 0 
 12.05.2011 09:15    C:\Users\Jonas\AppData\Local\Temp\etilqs_fJTUWwyl79fXDglBEgYa --------- 0 
 12.05.2011 09:15    C:\Users\Jonas\AppData\Local\Temp\fla8593.tmp --------- 8001717 
 12.05.2011 08:46    C:\Users\Jonas\AppData\Local\Temp\etilqs_4kYusYjd676Jheb3OjYq --------- 0 
 12.05.2011 08:44    C:\Users\Jonas\AppData\Local\Temp\div7CCD.tmp --------- 0 
 11.05.2011 23:01    C:\Users\Jonas\AppData\Local\Temp\div83BF.tmp --------- 0 
 11.05.2011 19:35    C:\Users\Jonas\AppData\Local\Temp\div8CA5.tmp --------- 0 
 11.05.2011 13:21    C:\Users\Jonas\AppData\Local\Temp\divE204.tmp --------- 0 
 11.05.2011 12:03    C:\Users\Jonas\AppData\Local\Temp\etilqs_7flQUDIXUbaHu6v9DAtf --------- 0 
 11.05.2011 11:52    C:\Users\Jonas\AppData\Local\Temp\etilqs_wmQX72Ps831JT4dbWjoC --------- 0 
 11.05.2011 10:39    C:\Users\Jonas\AppData\Local\Temp\fla643F.tmp --------- 3852705 
 11.05.2011 10:37    C:\Users\Jonas\AppData\Local\Temp\div94FF.tmp --------- 0 
 10.05.2011 22:17    C:\Users\Jonas\AppData\Local\Temp\div584C.tmp --------- 0 
 10.05.2011 18:24    C:\Users\Jonas\AppData\Local\Temp\div70AC.tmp --------- 0 
 10.05.2011 08:05    C:\Users\Jonas\AppData\Local\Temp\div560B.tmp --------- 0 
 09.05.2011 23:11    C:\Users\Jonas\AppData\Local\Temp\i4j_nlog_2 --------- 6718 
 09.05.2011 22:49    C:\Users\Jonas\AppData\Local\Temp\div59B3.tmp --------- 0 
 09.05.2011 19:23    C:\Users\Jonas\AppData\Local\Temp\div587B.tmp --------- 0 
 09.05.2011 14:43    C:\Users\Jonas\AppData\Local\Temp\divA9D6.tmp --------- 0 
 09.05.2011 11:37    C:\Users\Jonas\AppData\Local\Temp\{D7F7D7DD-0215-472F-9D20-F16A04F8D710} --------- 0 
 09.05.2011 11:37    C:\Users\Jonas\AppData\Local\Temp\{07FFFC7E-58F3-4108-B746-8336745790A0} --------- 0 
 09.05.2011 11:29    C:\Users\Jonas\AppData\Local\Temp\ubi9DE4.tmp.exe --------- 229621136 
 09.05.2011 11:14    C:\Users\Jonas\AppData\Local\Temp\{08D9BD6B-783F-44BB-8DF1-3ECC2D49F99B} --------- 0 
 09.05.2011 11:11    C:\Users\Jonas\AppData\Local\Temp\div6D42.tmp --------- 0 
 09.05.2011 00:56    C:\Users\Jonas\AppData\Local\Temp\div57DF.tmp --------- 0 
 08.05.2011 17:49    C:\Users\Jonas\AppData\Local\Temp\div70CB.tmp --------- 0 
 08.05.2011 10:32    C:\Users\Jonas\AppData\Local\Temp\div5494.tmp --------- 0 
 07.05.2011 23:54    C:\Users\Jonas\AppData\Local\Temp\div59D2.tmp --------- 0 
 07.05.2011 19:02    C:\Users\Jonas\AppData\Local\Temp\div5A3F.tmp --------- 0 
 07.05.2011 12:23    C:\Users\Jonas\AppData\Local\Temp\div758C.tmp --------- 0 
 06.05.2011 14:31    C:\Users\Jonas\AppData\Local\Temp\div2BFF.tmp --------- 0 
 05.05.2011 20:16    C:\Users\Jonas\AppData\Local\Temp\ge2844 --------- 0 
 05.05.2011 20:01    C:\Users\Jonas\AppData\Local\Temp\div5907.tmp --------- 0 
 05.05.2011 17:18    C:\Users\Jonas\AppData\Local\Temp\jre-6u26-windows-i586-iftw-rv.exe --------- 901408 
 05.05.2011 17:13    C:\Users\Jonas\AppData\Local\Temp\div61CE.tmp --------- 0 
 05.05.2011 10:21    C:\Users\Jonas\AppData\Local\Temp\div6C68.tmp --------- 0 
 04.05.2011 23:21    C:\Users\Jonas\AppData\Local\Temp\{4DE0AEDE-3A77-4A28-BFDF-DEAC7156024B} --------- 0 
 04.05.2011 22:36    C:\Users\Jonas\AppData\Local\Temp\divBFC5.tmp --------- 0 
 04.05.2011 22:34    C:\Users\Jonas\AppData\Local\Temp\etilqs_mIbpfAC0QXt7bz02hkKP --------- 0 
 04.05.2011 20:14    C:\Users\Jonas\AppData\Local\Temp\etilqs_jgQwU1yMqnIKXw6JYCqz --------- 0 
 04.05.2011 20:11    C:\Users\Jonas\AppData\Local\Temp\div9819.tmp --------- 0 
 04.05.2011 14:05    C:\Users\Jonas\AppData\Local\Temp\div9896.tmp --------- 0 
 04.05.2011 07:47    C:\Users\Jonas\AppData\Local\Temp\divA469.tmp --------- 0 
 03.05.2011 16:10    C:\Users\Jonas\AppData\Local\Temp\div8F05.tmp --------- 0 
 03.05.2011 11:26    C:\Users\Jonas\AppData\Local\Temp\div9607.tmp --------- 0 
 03.05.2011 09:25    C:\Users\Jonas\AppData\Local\Temp\div8610.tmp --------- 0


Jonas_ 28.06.2011 11:18

HJTScanlist.txt zweiter Teil:

Code:

02.05.2011 21:39    C:\Users\Jonas\AppData\Local\Temp\~DFA2A0C473D605D6C0.TMP --------- 16384 
 02.05.2011 20:14    C:\Users\Jonas\AppData\Local\Temp\div88BF.tmp --------- 0 
 02.05.2011 13:32    C:\Users\Jonas\AppData\Local\Temp\divBEEB.tmp --------- 0 
 02.05.2011 08:42    C:\Users\Jonas\AppData\Local\Temp\div926F.tmp --------- 0 
 01.05.2011 22:08    C:\Users\Jonas\AppData\Local\Temp\div8C18.tmp --------- 0 
 01.05.2011 12:27    C:\Users\Jonas\AppData\Local\Temp\div9DD4.tmp --------- 0 
 30.04.2011 11:45    C:\Users\Jonas\AppData\Local\Temp\div8F44.tmp --------- 0 
 30.04.2011 01:31    C:\Users\Jonas\AppData\Local\Temp\divA256.tmp --------- 0 
 29.04.2011 10:40    C:\Users\Jonas\AppData\Local\Temp\divA295.tmp --------- 0 
 28.04.2011 22:15    C:\Users\Jonas\AppData\Local\Temp\divAAAF.tmp --------- 0 
 28.04.2011 13:24    C:\Users\Jonas\AppData\Local\Temp\divC8BA.tmp --------- 0 
 28.04.2011 08:46    C:\Users\Jonas\AppData\Local\Temp\div8D32.tmp --------- 0 
 28.04.2011 00:01    C:\Users\Jonas\AppData\Local\Temp\div8F15.tmp --------- 0 
 27.04.2011 20:10    C:\Users\Jonas\AppData\Local\Temp\pdf24 --------- 0 
 27.04.2011 19:43    C:\Users\Jonas\AppData\Local\Temp\msohtml1 --------- 0 
 27.04.2011 17:35    C:\Users\Jonas\AppData\Local\Temp\div8B5D.tmp --------- 0 
 27.04.2011 10:38    C:\Users\Jonas\AppData\Local\Temp\div9C7D.tmp --------- 0 
 27.04.2011 01:34    C:\Users\Jonas\AppData\Local\Temp\SetupAdminD84.log --------- 85 
 27.04.2011 01:25    C:\Users\Jonas\AppData\Local\Temp\AdobeARM_NotLocked.log --------- 745 
 27.04.2011 01:14    C:\Users\Jonas\AppData\Local\Temp\div8833.tmp --------- 0 
 26.04.2011 16:31    C:\Users\Jonas\AppData\Local\Temp\div8EA8.tmp --------- 0 
 26.04.2011 12:29    C:\Users\Jonas\AppData\Local\Temp\div8D02.tmp --------- 0 
 26.04.2011 01:19    C:\Users\Jonas\AppData\Local\Temp\div823A.tmp --------- 0 
 25.04.2011 19:46    C:\Users\Jonas\AppData\Local\Temp\div893B.tmp --------- 0 
 25.04.2011 15:06    C:\Users\Jonas\AppData\Local\Temp\div8516.tmp --------- 0 
 25.04.2011 12:50    C:\Users\Jonas\AppData\Local\Temp\div9D57.tmp --------- 0 
 24.04.2011 10:45    C:\Users\Jonas\AppData\Local\Temp\div98C6.tmp --------- 0 
 23.04.2011 22:16    C:\Users\Jonas\AppData\Local\Temp\div7B75.tmp --------- 0 
 23.04.2011 17:25    C:\Users\Jonas\AppData\Local\Temp\div6A17.tmp --------- 0 
 23.04.2011 12:05    C:\Users\Jonas\AppData\Local\Temp\div7DA7.tmp --------- 0 
 22.04.2011 17:35    C:\Users\Jonas\AppData\Local\Temp\div7E24.tmp --------- 0 
 22.04.2011 14:14    C:\Users\Jonas\AppData\Local\Temp\div8788.tmp --------- 0 
 22.04.2011 12:48    C:\Users\Jonas\AppData\Local\Temp\ge560 --------- 0 
 22.04.2011 11:15    C:\Users\Jonas\AppData\Local\Temp\div6CA6.tmp --------- 0 
 22.04.2011 10:21    C:\Users\Jonas\AppData\Local\Temp\div89F6.tmp --------- 0 
 21.04.2011 23:06    C:\Users\Jonas\AppData\Local\Temp\div8A26.tmp --------- 0 
 21.04.2011 17:58    C:\Users\Jonas\AppData\Local\Temp\div90BA.tmp --------- 0 
 21.04.2011 11:31    C:\Users\Jonas\AppData\Local\Temp\div8A44.tmp --------- 0 
 20.04.2011 18:52    C:\Users\Jonas\AppData\Local\Temp\divD893.tmp --------- 0 
 20.04.2011 18:52    C:\Users\Jonas\AppData\Local\Temp\divC727.tmp --------- 0 
 20.04.2011 17:59    C:\Users\Jonas\AppData\Local\Temp\divD5E5.tmp --------- 0 
 20.04.2011 17:59    C:\Users\Jonas\AppData\Local\Temp\DivXSetup.exe --------- 913760 
 20.04.2011 14:48    C:\Users\Jonas\AppData\Local\Temp\div8E59.tmp --------- 0 
 20.04.2011 14:43    C:\Users\Jonas\AppData\Local\Temp\Jonas.bmp --------- 31832 
 20.04.2011 14:12    C:\Users\Jonas\AppData\Local\Temp\div9DA5.tmp --------- 0 
 20.04.2011 03:21    C:\Users\Jonas\AppData\Local\Temp\~DF2ACE682E06983771.TMP --------- 16384 
 19.04.2011 23:32    C:\Users\Jonas\AppData\Local\Temp\div7C8E.tmp --------- 0 
 19.04.2011 23:00    C:\Users\Jonas\AppData\Local\Temp\div9404.tmp --------- 0 
 19.04.2011 22:59    C:\Users\Jonas\AppData\Local\Temp\divBAC6.tmp --------- 0 
 19.04.2011 22:59    C:\Users\Jonas\AppData\Local\Temp\BITBAFD.tmp --------- 0 
 19.04.2011 22:59    C:\Users\Jonas\AppData\Local\Temp\GURBA1A.tmp --------- 0 
 19.04.2011 22:56    C:\Users\Jonas\AppData\Local\Temp\divB3E3.tmp --------- 0 
 19.04.2011 22:54    C:\Users\Jonas\AppData\Local\Temp\BIT3DEC.tmp --------- 0 
 19.04.2011 22:52    C:\Users\Jonas\AppData\Local\Temp\divB183.tmp --------- 0 
 19.04.2011 22:52    C:\Users\Jonas\AppData\Local\Temp\GUR8729.tmp --------- 0 
 19.04.2011 14:40    C:\Users\Jonas\AppData\Local\Temp\div8F54.tmp --------- 0 
 19.04.2011 11:12    C:\Users\Jonas\AppData\Local\Temp\div99AF.tmp --------- 0 
 19.04.2011 02:15    C:\Users\Jonas\AppData\Local\Temp\div92AD.tmp --------- 0 
 18.04.2011 19:08    C:\Users\Jonas\AppData\Local\Temp\Word8.0 --------- 0 
 18.04.2011 17:09    C:\Users\Jonas\AppData\Local\Temp\div9423.tmp --------- 0 
 18.04.2011 14:12    C:\Users\Jonas\AppData\Local\Temp\div88BE.tmp --------- 0 
 18.04.2011 09:30    C:\Users\Jonas\AppData\Local\Temp\div8C09.tmp --------- 0 
 17.04.2011 17:32    C:\Users\Jonas\AppData\Local\Temp\div9A3B.tmp --------- 0 
 17.04.2011 09:03    C:\Users\Jonas\AppData\Local\Temp\divA1F9.tmp --------- 0 
 16.04.2011 11:24    C:\Users\Jonas\AppData\Local\Temp\div3C73.tmp --------- 0 
 15.04.2011 18:35    C:\Users\Jonas\AppData\Local\Temp\div869E.tmp --------- 0 
 14.04.2011 17:15    C:\Users\Jonas\AppData\Local\Temp\div869D.tmp --------- 0 
 14.04.2011 12:34    C:\Users\Jonas\AppData\Local\Temp\div8535.tmp --------- 0 
 13.04.2011 22:27    C:\Users\Jonas\AppData\Local\Temp\div8AB1.tmp --------- 0 
 13.04.2011 19:22    C:\Users\Jonas\AppData\Local\Temp\div8787.tmp --------- 0 
 13.04.2011 14:13    C:\Users\Jonas\AppData\Local\Temp\div87D4.tmp --------- 0 
 12.04.2011 22:04    C:\Users\Jonas\AppData\Local\Temp\div92FB.tmp --------- 0 
 12.04.2011 18:00    C:\Users\Jonas\AppData\Local\Temp\div9A1C.tmp --------- 0 
 12.04.2011 15:33    C:\Users\Jonas\AppData\Local\Temp\div972F.tmp --------- 0 
 11.04.2011 21:36    C:\Users\Jonas\AppData\Local\Temp\div71B5.tmp --------- 0 
 11.04.2011 15:05    C:\Users\Jonas\AppData\Local\Temp\div8F53.tmp --------- 0 
 10.04.2011 23:26    C:\Users\Jonas\AppData\Local\Temp\DDMCache --------- 0 
 10.04.2011 22:24    C:\Users\Jonas\AppData\Local\Temp\div8DEC.tmp --------- 0 
 10.04.2011 15:54    C:\Users\Jonas\AppData\Local\Temp\div8C76.tmp --------- 0 
 10.04.2011 12:09    C:\Users\Jonas\AppData\Local\Temp\divA340.tmp --------- 0 
 09.04.2011 23:22    C:\Users\Jonas\AppData\Local\Temp\div8D31.tmp --------- 0 
 09.04.2011 08:40    C:\Users\Jonas\AppData\Local\Temp\div957B.tmp --------- 0 
 09.04.2011 07:47    C:\Users\Jonas\AppData\Local\Temp\div9A4B.tmp --------- 0 
 08.04.2011 20:43    C:\Users\Jonas\AppData\Local\Temp\divD058.tmp --------- 0 
 08.04.2011 16:39    C:\Users\Jonas\AppData\Local\Temp\04081621-00001280-jjp7zu5pwi --------- 0 
 08.04.2011 14:09    C:\Users\Jonas\AppData\Local\Temp\div9378.tmp --------- 0 
 08.04.2011 08:40    C:\Users\Jonas\AppData\Local\Temp\div8C37.tmp --------- 0 
 07.04.2011 22:17    C:\Users\Jonas\AppData\Local\Temp\div9EED.tmp --------- 0 
 07.04.2011 16:50    C:\Users\Jonas\AppData\Local\Temp\div8F34.tmp --------- 0 
 07.04.2011 15:13    C:\Users\Jonas\AppData\Local\Temp\FXSTIFFDebugLogFile.txt --------- 0 
 07.04.2011 14:16    C:\Users\Jonas\AppData\Local\Temp\div88ED.tmp --------- 0 
 07.04.2011 07:33    C:\Users\Jonas\AppData\Local\Temp\div905C.tmp --------- 0 
 06.04.2011 16:47    C:\Users\Jonas\AppData\Local\Temp\div7DC6.tmp --------- 0 
 05.04.2011 22:27    C:\Users\Jonas\AppData\Local\Temp\div8880.tmp --------- 0 
 05.04.2011 17:05    C:\Users\Jonas\AppData\Local\Temp\oPackage --------- 0 
 05.04.2011 13:48    C:\Users\Jonas\AppData\Local\Temp\div3111.tmp --------- 0 
 05.04.2011 13:48    C:\Users\Jonas\AppData\Local\Temp\div1038.tmp --------- 0 
 05.04.2011 12:23    C:\Users\Jonas\AppData\Local\Temp\div83CF.tmp --------- 0 
 04.04.2011 18:15    C:\Users\Jonas\AppData\Local\Temp\div842C.tmp --------- 0 
 04.04.2011 14:29    C:\Users\Jonas\AppData\Local\Temp\div86BB.tmp --------- 0 
 04.04.2011 07:12    C:\Users\Jonas\AppData\Local\Temp\div8B6D.tmp --------- 0 
 04.04.2011 00:21    C:\Users\Jonas\AppData\Local\Temp\div8D7F.tmp --------- 0 
 03.04.2011 22:28    C:\Users\Jonas\AppData\Local\Temp\div7AAB.tmp --------- 0 
 03.04.2011 16:55    C:\Users\Jonas\AppData\Local\Temp\div861F.tmp --------- 0 
 03.04.2011 09:38    C:\Users\Jonas\AppData\Local\Temp\div8A25.tmp --------- 0 
 03.04.2011 00:39    C:\Users\Jonas\AppData\Local\Temp\div8F43.tmp --------- 0 
 02.04.2011 12:20    C:\Users\Jonas\AppData\Local\Temp\div8EA7.tmp --------- 0 
 01.04.2011 18:07    C:\Users\Jonas\AppData\Local\Temp\div99DF.tmp --------- 0 
 01.04.2011 15:18    C:\Users\Jonas\AppData\Local\Temp\div95E8.tmp --------- 0 
 01.04.2011 10:40    C:\Users\Jonas\AppData\Local\Temp\div8E98.tmp --------- 0 
 31.03.2011 21:59    C:\Users\Jonas\AppData\Local\Temp\divAF70.tmp --------- 0 
 31.03.2011 14:43    C:\Users\Jonas\AppData\Local\Temp\div8B2F.tmp --------- 0 
 31.03.2011 07:58    C:\Users\Jonas\AppData\Local\Temp\div91D3.tmp --------- 0 
 30.03.2011 21:34    C:\Users\Jonas\AppData\Local\Temp\div9339.tmp --------- 0 
 30.03.2011 13:50    C:\Users\Jonas\AppData\Local\Temp\div8A92.tmp --------- 0 
 29.03.2011 22:00    C:\Users\Jonas\AppData\Local\Temp\div98C5.tmp --------- 0 
 29.03.2011 14:35    C:\Users\Jonas\AppData\Local\Temp\div94FE.tmp --------- 0 
 29.03.2011 07:04    C:\Users\Jonas\AppData\Local\Temp\div8B7D.tmp --------- 0 
 28.03.2011 21:31    C:\Users\Jonas\AppData\Local\Temp\div695C.tmp --------- 0 
 28.03.2011 15:01    C:\Users\Jonas\AppData\Local\Temp\div7473.tmp --------- 0 
 27.03.2011 22:24    C:\Users\Jonas\AppData\Local\Temp\div8CD3.tmp --------- 0 
 27.03.2011 12:08    C:\Users\Jonas\AppData\Local\Temp\div6FE1.tmp --------- 0 
 27.03.2011 08:55    C:\Users\Jonas\AppData\Local\Temp\divA84F.tmp --------- 0 
 26.03.2011 21:09    C:\Users\Jonas\AppData\Local\Temp\div7AD9.tmp --------- 0 
 26.03.2011 02:07    C:\Users\Jonas\AppData\Local\Temp\divA60E.tmp --------- 0 
 25.03.2011 14:43    C:\Users\Jonas\AppData\Local\Temp\divA6D9.tmp --------- 0 
 24.03.2011 23:05    C:\Users\Jonas\AppData\Local\Temp\div8870.tmp --------- 0 
 24.03.2011 15:41    C:\Users\Jonas\AppData\Local\Temp\divAB5B.tmp --------- 0 
 23.03.2011 21:01    C:\Users\Jonas\AppData\Local\Temp\div6E3C.tmp --------- 0 
 23.03.2011 18:00    C:\Users\Jonas\AppData\Local\Temp\div702F.tmp --------- 0 
 22.03.2011 15:23    C:\Users\Jonas\AppData\Local\Temp\div88DD.tmp --------- 0 
 21.03.2011 22:33    C:\Users\Jonas\AppData\Local\Temp\div82E5.tmp --------- 0 
 21.03.2011 15:37    C:\Users\Jonas\AppData\Local\Temp\div9D67.tmp --------- 0 
 20.03.2011 19:27    C:\Users\Jonas\AppData\Local\Temp\div7F0E.tmp --------- 0 
 20.03.2011 12:09    C:\Users\Jonas\AppData\Local\Temp\div703F.tmp --------- 0 
 20.03.2011 02:25    C:\Users\Jonas\AppData\Local\Temp\div7EB0.tmp --------- 0 
 19.03.2011 20:14    C:\Users\Jonas\AppData\Local\Temp\div8DCD.tmp --------- 0 
 19.03.2011 15:34    C:\Users\Jonas\AppData\Local\Temp\div9433.tmp --------- 0 
 18.03.2011 14:34    C:\Users\Jonas\AppData\Local\Temp\div865E.tmp --------- 0 
 17.03.2011 19:04    C:\Users\Jonas\AppData\Local\Temp\div8239.tmp --------- 0 
 17.03.2011 15:33    C:\Users\Jonas\AppData\Local\Temp\div862F.tmp --------- 0 
 17.03.2011 08:47    C:\Users\Jonas\AppData\Local\Temp\div867D.tmp --------- 0 
 16.03.2011 22:53    C:\Users\Jonas\AppData\Local\Temp\div843C.tmp --------- 0 
 16.03.2011 13:27    C:\Users\Jonas\AppData\Local\Temp\div87B5.tmp --------- 0 
 16.03.2011 12:55    C:\Users\Jonas\AppData\Local\Temp\SetupAdminAE4.log --------- 85 
 16.03.2011 12:41    C:\Users\Jonas\AppData\Local\Temp\divA0A1.tmp --------- 0 
 15.03.2011 21:59    C:\Users\Jonas\AppData\Local\Temp\veetleb --------- 0 
 15.03.2011 18:47    C:\Users\Jonas\AppData\Local\Temp\div8507.tmp --------- 0 
 15.03.2011 15:53    C:\Users\Jonas\AppData\Local\Temp\div8B2E.tmp --------- 0 
 14.03.2011 16:34    C:\Users\Jonas\AppData\Local\Temp\div9481.tmp --------- 0 
 13.03.2011 23:20    C:\Users\Jonas\AppData\Local\Temp\div9858.tmp --------- 0 
 13.03.2011 13:31    C:\Users\Jonas\AppData\Local\Temp\93 Til Infinity.jpg --------- 29533 
 13.03.2011 12:40    C:\Users\Jonas\AppData\Local\Temp\div8832.tmp --------- 0 
 12.03.2011 20:48    C:\Users\Jonas\AppData\Local\Temp\div8FB1.tmp --------- 0 
 12.03.2011 11:43    C:\Users\Jonas\AppData\Local\Temp\div8E3A.tmp --------- 0 
 11.03.2011 23:46    C:\Users\Jonas\AppData\Local\Temp\{E6171303-86B0-45E1-B2AB-A6427198087C} --------- 0 
 11.03.2011 23:29    C:\Users\Jonas\AppData\Local\Temp\{7cc12d56-d2dc-4c75-acd5-8ced7f0e4161} --------- 0 
 11.03.2011 23:12    C:\Users\Jonas\AppData\Local\Temp\div90F8.tmp --------- 0 
 11.03.2011 16:25    C:\Users\Jonas\AppData\Local\Temp\div8B7C.tmp --------- 0 
 10.03.2011 15:34    C:\Users\Jonas\AppData\Local\Temp\div9359.tmp --------- 0 
 09.03.2011 22:54    C:\Users\Jonas\AppData\Local\Temp\divEEE0.tmp --------- 0 
 09.03.2011 12:57    C:\Users\Jonas\AppData\Local\Temp\jar_cache7832675006074081265.tmp --------- 14121 
 09.03.2011 12:34    C:\Users\Jonas\AppData\Local\Temp\div8F72.tmp --------- 0 
 09.03.2011 09:52    C:\Users\Jonas\AppData\Local\Temp\div99DE.tmp --------- 0 
 08.03.2011 16:12    C:\Users\Jonas\AppData\Local\Temp\div8786.tmp --------- 0 
 07.03.2011 22:25    C:\Users\Jonas\AppData\Local\Temp\div8748.tmp --------- 0 
 07.03.2011 16:20    C:\Users\Jonas\AppData\Local\Temp\ge3184 --------- 0 
 07.03.2011 13:27    C:\Users\Jonas\AppData\Local\Temp\div8EE6.tmp --------- 0 
 06.03.2011 11:22    C:\Users\Jonas\AppData\Local\Temp\divA2F2.tmp --------- 0 
 06.03.2011 03:35    C:\Users\Jonas\AppData\Local\Temp\div80D2.tmp --------- 0 
 05.03.2011 17:00    C:\Users\Jonas\AppData\Local\Temp\div8084.tmp --------- 0 
 05.03.2011 13:43    C:\Users\Jonas\AppData\Local\Temp\div866D.tmp --------- 0 
 04.03.2011 18:31    C:\Users\Jonas\AppData\Local\Temp\div8BAB.tmp --------- 0 
 04.03.2011 14:35    C:\Users\Jonas\AppData\Local\Temp\div7F3D.tmp --------- 0 
 04.03.2011 00:04    C:\Users\Jonas\AppData\Local\Temp\div7D69.tmp --------- 0 
 03.03.2011 14:59    C:\Users\Jonas\AppData\Local\Temp\div81FB.tmp --------- 0 
 03.03.2011 09:00    C:\Users\Jonas\AppData\Local\Temp\divA7C3.tmp --------- 0 
 02.03.2011 23:25    C:\Users\Jonas\AppData\Local\Temp\div86EA.tmp --------- 0 
 02.03.2011 12:46    C:\Users\Jonas\AppData\Local\Temp\div68DF.tmp --------- 0 
 02.03.2011 01:12    C:\Users\Jonas\AppData\Local\Temp\9537 --------- 0 
 01.03.2011 23:29    C:\Users\Jonas\AppData\Local\Temp\div87A5.tmp --------- 0 
 28.02.2011 22:58    C:\Users\Jonas\AppData\Local\Temp\div869C.tmp --------- 0 
 28.02.2011 15:48    C:\Users\Jonas\AppData\Local\Temp\div8EB7.tmp --------- 0 
 28.02.2011 08:11    C:\Users\Jonas\AppData\Local\Temp\div815F.tmp --------- 0 
 27.02.2011 12:40    C:\Users\Jonas\AppData\Local\Temp\div6BDC.tmp --------- 0 
 27.02.2011 09:37    C:\Users\Jonas\AppData\Local\Temp\div81AD.tmp --------- 0 
 27.02.2011 01:13    C:\Users\Jonas\AppData\Local\Temp\SPW73F6.tmp --------- 0 
 27.02.2011 01:13    C:\Users\Jonas\AppData\Local\Temp\SPW73F7.tmp --------- 0 
 26.02.2011 23:27    C:\Users\Jonas\AppData\Local\Temp\divEAA9.tmp --------- 0 
 26.02.2011 22:57    C:\Users\Jonas\AppData\Local\Temp\~DFA37D19ADD9EB82CE.TMP --------- 32768 
 26.02.2011 22:57    C:\Users\Jonas\AppData\Local\Temp\divCE24.tmp --------- 0 
 26.02.2011 22:54    C:\Users\Jonas\AppData\Local\Temp\DivXWebPlayerInstaller.exe --------- 911200 
 26.02.2011 22:54    C:\Users\Jonas\AppData\Local\Temp\div4160.tmp --------- 0 
 10.02.2011 02:48    C:\Users\Jonas\AppData\Local\Temp\jre-6u24-windows-i586-iftw-rv.exe --------- 885536 
 01.02.2011 18:40    C:\Users\Jonas\AppData\Local\Temp\SetupAdmin9DC.log --------- 84 
 25.01.2011 23:24    C:\Users\Jonas\AppData\Local\Temp\~DF8241E726105F69F5.TMP --------- 16384 
 09.01.2011 03:54    C:\Users\Jonas\AppData\Local\Temp\Viel.png --------- 123649 
 07.01.2011 21:03    C:\Users\Jonas\AppData\Local\Temp\Fifa 11 OST.jpg --------- 119770 
 07.01.2011 16:04    C:\Users\Jonas\AppData\Local\Temp\~DF06DEF04109326C3C.TMP --------- 16384 
 06.01.2011 01:40    C:\Users\Jonas\AppData\Local\Temp\jre-6u23-windows-i586-iftw-rv.exe --------- 884512 
 05.01.2011 02:22    C:\Users\Jonas\AppData\Local\Temp\~DFC3A3FD1779643161.TMP --------- 16384 
 04.01.2011 01:13    C:\Users\Jonas\AppData\Local\Temp\~DF65384F926AA52F4B.TMP --------- 16384 
 03.01.2011 15:17    C:\Users\Jonas\AppData\Local\Temp\au-descriptor-1.6.0_23-b70.xml --------- 7779 
 29.12.2010 03:58    C:\Users\Jonas\AppData\Local\Temp\tmp73704.WMC --------- 0 
 29.12.2010 00:53    C:\Users\Jonas\AppData\Local\Temp\tmp66432.WMC --------- 0 
 29.12.2010 00:39    C:\Users\Jonas\AppData\Local\Temp\WERE781.tmp.WERInternalMetadata.xml --------- 3500 
 29.12.2010 00:37    C:\Users\Jonas\AppData\Local\Temp\etilqs_MQBduZiiJ2FlhzwIeyt3 --------- 0 
 29.12.2010 00:35    C:\Users\Jonas\AppData\Local\Temp\etilqs_ipfMjQDHcW6eoDEXOwek --------- 0 
 29.12.2010 00:03    C:\Users\Jonas\AppData\Local\Temp\etilqs_QDT5xXi4k0KdffgzSCrf --------- 0 
 29.12.2010 00:03    C:\Users\Jonas\AppData\Local\Temp\WERACE4.tmp.WERInternalMetadata.xml --------- 3622 
 28.12.2010 23:52    C:\Users\Jonas\AppData\Local\Temp\etilqs_6xbBbOksubCe6DKICpxN --------- 0 
 28.12.2010 23:52    C:\Users\Jonas\AppData\Local\Temp\etilqs_XI0I4txfUBiQVRnnKib2 --------- 0 
 28.12.2010 23:01    C:\Users\Jonas\AppData\Local\Temp\is-ERF7R.tmp --------- 0 
 28.12.2010 23:01    C:\Users\Jonas\AppData\Local\Temp\is-69C5M.tmp --------- 0 
 28.12.2010 21:28    C:\Users\Jonas\AppData\Local\Temp\etilqs_twxiHZdaax0FMWciL4Pi-journal --------- 0 
 28.12.2010 21:28    C:\Users\Jonas\AppData\Local\Temp\etilqs_twxiHZdaax0FMWciL4Pi --------- 0 
 27.12.2010 16:08    C:\Users\Jonas\AppData\Local\Temp\dd_vcredistUI7479.txt --------- 14172 
 27.12.2010 16:08    C:\Users\Jonas\AppData\Local\Temp\dd_vcredistMSI7479.txt --------- 502848 
 27.12.2010 12:47    C:\Users\Jonas\AppData\Local\Temp\SetupAdminE60.log --------- 86 
 27.12.2010 12:47    C:\Users\Jonas\AppData\Local\Temp\qtplugin.log --------- 3560 
 23.12.2010 02:12    C:\Users\Jonas\AppData\Local\Temp\{2ea2f98b-fcab-4335-a568-b0af2f32065e} --------- 0 
 23.12.2010 02:12    C:\Users\Jonas\AppData\Local\Temp\{d519989b-ea69-4b68-be01-69a2b33b23d6} --------- 0 
 17.12.2010 21:50    C:\Users\Jonas\AppData\Local\Temp\ge992 --------- 0 
 16.12.2010 18:12    C:\Users\Jonas\AppData\Local\Temp\{410f0d28-3c73-4a44-bd9f-5f7e523d340b} --------- 0 
 16.12.2010 16:32    C:\Users\Jonas\AppData\Local\Temp\pbsAF76.tmp --------- 0 
 13.12.2010 16:23    C:\Users\Jonas\AppData\Local\Temp\Deployment --------- 0 
 12.12.2010 16:14    C:\Users\Jonas\AppData\Local\Temp\dd_vcredistUI6C23.txt --------- 14326 
 12.12.2010 16:13    C:\Users\Jonas\AppData\Local\Temp\dd_vcredistMSI6C23.txt --------- 556612 
 12.12.2010 15:21    C:\Users\Jonas\AppData\Local\Temp\scoped_dir1793 --------- 0 
 12.12.2010 15:21    C:\Users\Jonas\AppData\Local\Temp\scoped_dir17501 --------- 0 
 10.12.2010 00:24    C:\Users\Jonas\AppData\Local\Temp\scoped_dir20580 --------- 0 
 10.12.2010 00:24    C:\Users\Jonas\AppData\Local\Temp\scoped_dir31074 --------- 0 
 09.12.2010 18:10    C:\Users\Jonas\AppData\Local\Temp\scoped_dir17703 --------- 0 
 09.12.2010 18:10    C:\Users\Jonas\AppData\Local\Temp\scoped_dir23386 --------- 0 
 08.12.2010 23:39    C:\Users\Jonas\AppData\Local\Temp\8E4B.dir --------- 0 
 08.12.2010 23:39    C:\Users\Jonas\AppData\Local\Temp\8E4B.tmp --------- 0 
 07.12.2010 20:25    C:\Users\Jonas\AppData\Local\Temp\plugtmp --------- 0 
 07.12.2010 19:59    C:\Users\Jonas\AppData\Local\Temp\FP_PL_PFS_INSTALLER.exe --------- 2568656 
 07.12.2010 19:45    C:\Users\Jonas\AppData\Local\Temp\iTunesPluginWinSetup_3.0.2.0.exe --------- 652459 
 07.12.2010 19:35    C:\Users\Jonas\AppData\Local\Temp\SetupAdminBC8.log --------- 2121909 
 07.12.2010 19:25    C:\Users\Jonas\AppData\Local\Temp\Temp1_Winrar3.93_Final_x32-x64_-Reg-aktiviert.zip --------- 0 
 07.12.2010 19:22    C:\Users\Jonas\AppData\Local\Temp\WLZ9D57.tmp --------- 0 
 07.12.2010 18:21    C:\Users\Jonas\AppData\Local\Temp\scoped_dir1471 --------- 0 
 07.12.2010 18:21    C:\Users\Jonas\AppData\Local\Temp\scoped_dir18266 --------- 0 
 07.12.2010 15:58    C:\Users\Jonas\AppData\Local\Temp\dd_vcredistUI5A12.txt --------- 22874 
 07.12.2010 15:58    C:\Users\Jonas\AppData\Local\Temp\dd_vcredistMSI5A12.txt --------- 395286 
 07.12.2010 15:24    C:\Users\Jonas\AppData\Local\Temp\WmpPluginSetup_2.1.0.6.exe --------- 491523 
 07.12.2010 15:20    C:\Users\Jonas\AppData\Local\Temp\trkF71C.tmp --------- 0 
 07.12.2010 15:20    C:\Users\Jonas\AppData\Local\Temp\WLZB4BE.tmp --------- 0 
 07.12.2010 15:14    C:\Users\Jonas\AppData\Local\Temp\dd_vcredistUI3823.txt --------- 11634 
 07.12.2010 15:14    C:\Users\Jonas\AppData\Local\Temp\dd_vcredistMSI3823.txt --------- 407912 
 07.12.2010 14:54    C:\Users\Jonas\AppData\Local\Temp\FXSAPIDebugLogFile.txt --------- 0 
 07.12.2010 14:54    C:\Users\Jonas\AppData\Local\Temp\Low --------- 0 
 03.12.2010 15:17    C:\Users\Jonas\AppData\Local\Temp\au-descriptor-1.6.0_22-b74.xml --------- 7769 
 27.11.2010 20:09    C:\Users\Jonas\AppData\Local\Temp\Microsoft Visual C++ 2010  x86 Redistributable Setup_20101127_190859749.html --------- 74652 
 27.11.2010 20:09    C:\Users\Jonas\AppData\Local\Temp\Microsoft Visual C++ 2010  x86 Redistributable Setup_20101127_190859749-MSI_vc_red.msi.txt --------- 265486 
 27.11.2010 20:08    C:\Users\Jonas\AppData\Local\Temp\Microsoft Visual C++ 2010  x86 Redistributable Setup_10.0.30319 --------- 0 
 27.11.2010 20:08    C:\Users\Jonas\AppData\Local\Temp\VSDBA79.tmp --------- 0 
 24.11.2010 18:07    C:\Users\Jonas\AppData\Local\Temp\ge1888 --------- 0 
 24.11.2010 12:39    C:\Users\Jonas\AppData\Local\Temp\dd_dotNetFx40LP_Client_x86_x64de_decompression_log.txt --------- 1265 
 24.11.2010 12:39    C:\Users\Jonas\AppData\Local\Temp\Microsoft .NET Framework Client Profile Language Pack Setup_20101124_113834483.html --------- 251246 
 24.11.2010 12:39    C:\Users\Jonas\AppData\Local\Temp\Microsoft .NET Framework Client Profile Language Pack Setup_20101124_113834483-MSI_netfx_CoreLP_x64.msi.txt --------- 2144318 
 24.11.2010 12:38    C:\Users\Jonas\AppData\Local\Temp\Microsoft .NET Framework Client Profile Language Pack Setup_4.0.30319 --------- 0 
 24.11.2010 12:38    C:\Users\Jonas\AppData\Local\Temp\dd_dotNetFx40_Client_x86_x64_decompression_log.txt --------- 1308 
 24.11.2010 12:38    C:\Users\Jonas\AppData\Local\Temp\Microsoft .NET Framework 4 Client Profile Setup_20101124_113540441.html --------- 590526 
 24.11.2010 12:38    C:\Users\Jonas\AppData\Local\Temp\dd_SetupUtility.txt --------- 660 
 24.11.2010 12:38    C:\Users\Jonas\AppData\Local\Temp\Microsoft .NET Framework 4 Client Profile Setup_20101124_113540441-MSI_netfx_Core_x64.msi.txt --------- 7230638 
 24.11.2010 12:35    C:\Users\Jonas\AppData\Local\Temp\Microsoft .NET Framework 4 Client Profile Setup_4.0.30319 --------- 0 
 21.11.2010 20:10    C:\Users\Jonas\AppData\Local\Temp\tmp82626.WMC --------- 0 
 20.11.2010 14:02    C:\Users\Jonas\AppData\Local\Temp\scoped_dir13879 --------- 0 
 20.11.2010 14:02    C:\Users\Jonas\AppData\Local\Temp\scoped_dir20707 --------- 0 
 15.11.2010 21:58    C:\Users\Jonas\AppData\Local\Temp\Adobe --------- 0 
 15.11.2010 21:54    C:\Users\Jonas\AppData\Local\Temp\SetupAdmin1008.log --------- 86 
 15.11.2010 21:45    C:\Users\Jonas\AppData\Local\Temp\iTunesPluginWinSetup_3.0.4.0.exe --------- 662808 
 14.11.2010 12:25    C:\Users\Jonas\AppData\Local\Temp\~DF9EEE1F14E01237D3.TMP --------- 16384 
 12.11.2010 14:57    C:\Users\Jonas\AppData\Local\Temp\etilqs_Z2QqeA7md0g29HIUdKYd --------- 0 
 10.11.2010 16:06    C:\Users\Jonas\AppData\Local\Temp\~DFCB3FFF0B4C85FC39.TMP --------- 16384 
 08.11.2010 21:51    C:\Users\Jonas\AppData\Local\Temp\~DF907D2383E13649D5.TMP --------- 16384 
 06.11.2010 12:57    C:\Users\Jonas\AppData\Local\Temp\Pharoahe Monch - Simon Says (HQ High Quality Uncensored).jpg --------- 3673 
 04.11.2010 22:00    C:\Users\Jonas\AppData\Local\Temp\AMDCatalyst_EXE_Package_Banner_415x82_Oct_2010.bmp --------- 102390 
 03.11.2010 22:09    C:\Users\Jonas\AppData\Local\Temp\Solid-7e63d7722e85a927aea46524bf0e80009554c3f1.FFS --------- 3517 
 03.11.2010 21:30    C:\Users\Jonas\AppData\Local\Temp\~DF92B60416082381DE.TMP --------- 16384 
 03.11.2010 15:48    C:\Users\Jonas\AppData\Local\Temp\~DF73B205E98341A996.TMP --------- 16384 
 03.11.2010 15:17    C:\Users\Jonas\AppData\Local\Temp\au-descriptor-1.6.0_22-b04.xml --------- 7780 
 02.11.2010 19:11    C:\Users\Jonas\AppData\Local\Temp\~DFA30EA4013DED0765.TMP --------- 16384 
 02.11.2010 16:31    C:\Users\Jonas\AppData\Local\Temp\ge2032 --------- 0 
 31.10.2010 19:21    C:\Users\Jonas\AppData\Local\Temp\ge4304 --------- 0 
 31.10.2010 18:27    C:\Users\Jonas\AppData\Local\Temp\ge4672 --------- 0 
 31.10.2010 01:16    C:\Users\Jonas\AppData\Local\Temp\Last.fm-1.5.4.27091.exe --------- 5417632 
 25.10.2010 14:44    C:\Users\Jonas\AppData\Local\Temp\lu --------- 0 
 25.10.2010 14:39    C:\Users\Jonas\AppData\Local\Temp\MSetup_2010-10-25_143914.log --------- 776 
 25.10.2010 14:39    C:\Users\Jonas\AppData\Local\Temp\LuUpdater.log --------- 0 
 25.10.2010 14:38    C:\Users\Jonas\AppData\Local\Temp\Logishrd --------- 0 
 25.10.2010 14:38    C:\Users\Jonas\AppData\Local\Temp\Logitech --------- 0 
 21.10.2010 15:59    C:\Users\Jonas\AppData\Local\Temp\LeagueofLegends.exe.log --------- 13783916 
 21.10.2010 13:45    C:\Users\Jonas\AppData\Local\Temp\~DF550C7B73172231C6.TMP --------- 16384 
 21.10.2010 13:31    C:\Users\Jonas\AppData\Local\Temp\pdoA65D.tmp --------- 0 
 21.10.2010 13:30    C:\Users\Jonas\AppData\Local\Temp\2108c9e8224c7fa081bdfda2a19e3d5f.lock --------- 0 
 21.10.2010 13:30    C:\Users\Jonas\AppData\Local\Temp\swt-win32-3349.dll --------- 139672 
 21.10.2010 01:57    C:\Users\Jonas\AppData\Local\Temp\~DF4BCBBD9639858D85.TMP --------- 16384 
 19.10.2010 14:08    C:\Users\Jonas\AppData\Local\Temp\~DFCF2D65E724082E20.TMP --------- 16384 
 18.10.2010 01:40    C:\Users\Jonas\AppData\Local\Temp\~DF01AE726F7EEDBADF.TMP --------- 16384 
 05.10.2010 22:06    C:\Users\Jonas\AppData\Local\Temp\~DF81FCB579CB1FAA9E.TMP --------- 16384 
 04.10.2010 21:33    C:\Users\Jonas\AppData\Local\Temp\~DF3C4F870D026FC6CB.TMP --------- 16384 
 03.10.2010 21:11    C:\Users\Jonas\AppData\Local\Temp\StructuredQuery.log --------- 2327 
 03.10.2010 21:06    C:\Users\Jonas\AppData\Local\Temp\~DF58CE9ED6244A05FF.TMP --------- 16384 
 29.09.2010 22:58    C:\Users\Jonas\AppData\Local\Temp\~DFCFA64DFB9C500659.TMP --------- 16384 
 28.09.2010 23:48    C:\Users\Jonas\AppData\Local\Temp\~DFCC90394F82748B8D.TMP --------- 16384 
 27.09.2010 14:51    C:\Users\Jonas\AppData\Local\Temp\~DFF2F9594966B7C69A.TMP --------- 16384 
 26.09.2010 23:09    C:\Users\Jonas\AppData\Local\Temp\etilqs_ui4Ep7v9mVhxZtjKnUBJ --------- 0 
 26.09.2010 22:56    C:\Users\Jonas\AppData\Local\Temp\etilqs_E0mflNDVS8rd6IhZdM1C --------- 0 
 23.09.2010 16:40    C:\Users\Jonas\AppData\Local\Temp\ge3384 --------- 0 
 23.09.2010 16:33    C:\Users\Jonas\AppData\Local\Temp\geColladaModelCacheLock --------- 0 
 23.09.2010 16:33    C:\Users\Jonas\AppData\Local\Temp\geIconCacheLock --------- 0 
 23.09.2010 16:33    C:\Users\Jonas\AppData\Local\Temp\isFD15.tmp --------- 0 
 23.09.2010 16:33    C:\Users\Jonas\AppData\Local\Temp\._msige52 --------- 0 
 22.09.2010 14:03    C:\Users\Jonas\AppData\Local\Temp\etilqs_2czkOYDokDlcZJfyEct3 --------- 0 
 22.09.2010 13:46    C:\Users\Jonas\AppData\Local\Temp\etilqs_6fCafBaQhumJNUsNHCei --------- 0 
 17.09.2010 23:53    C:\Users\Jonas\AppData\Local\Temp\~DFAF056923D68C2AD2.TMP --------- 16384 
 15.09.2010 17:50    C:\Users\Jonas\AppData\Local\Temp\tmp79064.WMC --------- 0 
 15.09.2010 15:15    C:\Users\Jonas\AppData\Local\Temp\~DF9064C9E9AADBB765.TMP --------- 16384 
 13.09.2010 20:53    C:\Users\Jonas\AppData\Local\Temp\~DF701348FB1E1A3690.TMP --------- 16384 
 07.09.2010 16:39    C:\Users\Jonas\AppData\Local\Temp\msohtml --------- 0 
 06.09.2010 22:31    C:\Users\Jonas\AppData\Local\Temp\SetupAdmin2B8.log --------- 84 
 02.09.2010 07:52    C:\Users\Jonas\AppData\Local\Temp\BFBC2Game_Data_DFE --------- 0 
 01.09.2010 13:10    C:\Users\Jonas\AppData\Local\Temp\Microsoft Office 2003 Setup(0002).txt --------- 9545 
 01.09.2010 13:10    C:\Users\Jonas\AppData\Local\Temp\Microsoft Office 2003 Setup(0002)_Task(0001).txt --------- 416734 
 01.09.2010 13:09    C:\Users\Jonas\AppData\Local\Temp\offcln11.log --------- 47923 
 18.08.2010 19:41    C:\Users\Jonas\AppData\Local\Temp\outlook logging --------- 0 
 17.08.2010 20:21    C:\Users\Jonas\AppData\Local\Temp\VBE --------- 0 
 17.08.2010 20:16    C:\Users\Jonas\AppData\Local\Temp\Microsoft Office 2003 Setup(0001).txt --------- 9545 
 17.08.2010 20:16    C:\Users\Jonas\AppData\Local\Temp\Microsoft Office 2003 Setup(0001)_Task(0001).txt --------- 414546 
 15.08.2010 16:40    C:\Users\Jonas\AppData\Local\Temp\scoped_dir15119 --------- 0 
 15.08.2010 16:40    C:\Users\Jonas\AppData\Local\Temp\scoped_dir12003 --------- 0 
 12.08.2010 21:44    C:\Users\Jonas\AppData\Local\Temp\tmp87593.WMC --------- 0 
 10.08.2010 20:27    C:\Users\Jonas\AppData\Local\Temp\~DFF7ACA9A7E0178C67.TMP --------- 16384 
 10.08.2010 02:48    C:\Users\Jonas\AppData\Local\Temp\~DF8CF8B13A1F771706.TMP --------- 16384 
 10.08.2010 02:27    C:\Users\Jonas\AppData\Local\Temp\etilqs_BYkSEMYerT6m8soRCYR9 --------- 0 
 10.08.2010 01:11    C:\Users\Jonas\AppData\Local\Temp\etilqs_5uK1bLgIQQUUx41SQgeo-journal --------- 0 
 10.08.2010 01:11    C:\Users\Jonas\AppData\Local\Temp\etilqs_5uK1bLgIQQUUx41SQgeo --------- 0 
 08.08.2010 19:25    C:\Users\Jonas\AppData\Local\Temp\~DF7B55A2A126FA37AF.TMP --------- 16384 
 08.08.2010 17:27    C:\Users\Jonas\AppData\Local\Temp\~DFEDC1CB2AC1818630.TMP --------- 16384 
 08.08.2010 15:22    C:\Users\Jonas\AppData\Local\Temp\~DF264B4D0AA1084E9C.TMP --------- 16384 
 07.08.2010 14:27    C:\Users\Jonas\AppData\Local\Temp\~DF142E604B113259DA.TMP --------- 16384 
 07.08.2010 02:23    C:\Users\Jonas\AppData\Local\Temp\~DFAE1492B193EB4899.TMP --------- 16384 
 04.08.2010 17:32    C:\Users\Jonas\AppData\Local\Temp\Nero Setup (100804 171144).log --------- 333000 
 04.08.2010 17:11    C:\Users\Jonas\AppData\Local\Temp\nro.log --------- 0 
 02.08.2010 20:05    C:\Users\Jonas\AppData\Local\Temp\~DF8E5E40188D2D22BC.TMP --------- 16384 
 31.07.2010 11:49    C:\Users\Jonas\AppData\Local\Temp\scoped_dir15591 --------- 0 
 31.07.2010 11:49    C:\Users\Jonas\AppData\Local\Temp\scoped_dir15384 --------- 0 
 31.07.2010 03:29    C:\Users\Jonas\AppData\Local\Temp\~DFF80920A5E46AB494.TMP --------- 16384 
 31.07.2010 03:19    C:\Users\Jonas\AppData\Local\Temp\scoped_dir13861 --------- 0 
 31.07.2010 03:19    C:\Users\Jonas\AppData\Local\Temp\scoped_dir13833 --------- 0 
 30.07.2010 23:24    C:\Users\Jonas\AppData\Local\Temp\scoped_dir602 --------- 0 
 30.07.2010 23:24    C:\Users\Jonas\AppData\Local\Temp\scoped_dir32737 --------- 0 
 30.07.2010 10:07    C:\Users\Jonas\AppData\Local\Temp\scoped_dir27568 --------- 0 
 30.07.2010 10:07    C:\Users\Jonas\AppData\Local\Temp\scoped_dir8158 --------- 0 
 30.07.2010 01:02    C:\Users\Jonas\AppData\Local\Temp\~DFFF3026DD107876A3.TMP --------- 16384 
 29.07.2010 10:44    C:\Users\Jonas\AppData\Local\Temp\scoped_dir24346 --------- 0 
 29.07.2010 10:44    C:\Users\Jonas\AppData\Local\Temp\scoped_dir28236 --------- 0 
 28.07.2010 23:54    C:\Users\Jonas\AppData\Local\Temp\~DF43662A5B50433505.TMP --------- 16384 
 28.07.2010 21:19    C:\Users\Jonas\AppData\Local\Temp\scoped_dir17127 --------- 0 
 28.07.2010 21:19    C:\Users\Jonas\AppData\Local\Temp\scoped_dir1629 --------- 0 
 28.07.2010 11:09    C:\Users\Jonas\AppData\Local\Temp\scoped_dir13191 --------- 0 
 28.07.2010 11:09    C:\Users\Jonas\AppData\Local\Temp\scoped_dir4771 --------- 0 
 27.07.2010 09:51    C:\Users\Jonas\AppData\Local\Temp\scoped_dir11687 --------- 0 
 27.07.2010 09:51    C:\Users\Jonas\AppData\Local\Temp\scoped_dir10563 --------- 0 
 27.07.2010 00:44    C:\Users\Jonas\AppData\Local\Temp\scoped_dir20913 --------- 0 
 27.07.2010 00:44    C:\Users\Jonas\AppData\Local\Temp\scoped_dir1847 --------- 0 
 27.07.2010 00:29    C:\Users\Jonas\AppData\Local\Temp\dmiwu --------- 0 
 27.07.2010 00:12    C:\Users\Jonas\AppData\Local\Temp\scoped_dir25429 --------- 0 
 27.07.2010 00:12    C:\Users\Jonas\AppData\Local\Temp\scoped_dir28185 --------- 0 
 27.07.2010 00:10    C:\Users\Jonas\AppData\Local\Temp\scoped_dir27839 --------- 0 
 27.07.2010 00:10    C:\Users\Jonas\AppData\Local\Temp\scoped_dir210 --------- 0 
 27.07.2010 00:08    C:\Users\Jonas\AppData\Local\Temp\scoped_dir5668 --------- 0 
 27.07.2010 00:08    C:\Users\Jonas\AppData\Local\Temp\scoped_dir27532 --------- 0 
 26.07.2010 22:21    C:\Users\Jonas\AppData\Local\Temp\scoped_dir18148 --------- 0 
 26.07.2010 22:21    C:\Users\Jonas\AppData\Local\Temp\scoped_dir6420 --------- 0 
 26.07.2010 22:02    C:\Users\Jonas\AppData\Local\Temp\{5ccae45e-625e-4a40-9627-0329e9289047} --------- 0 
 26.07.2010 16:15    C:\Users\Jonas\AppData\Local\Temp\~DFAADC1CDDD7E5FAA4.TMP --------- 16384 
 26.07.2010 03:27    C:\Users\Jonas\AppData\Local\Temp\EADAB6B.exe --------- 22103176 
 26.07.2010 03:26    C:\Users\Jonas\AppData\Local\Temp\EADAB6B.tmp --------- 0 
 25.07.2010 15:48    C:\Users\Jonas\AppData\Local\Temp\jre_setup.log --------- 25598 
 25.07.2010 15:48    C:\Users\Jonas\AppData\Local\Temp\java_install.log --------- 28583 
 25.07.2010 13:53    C:\Users\Jonas\AppData\Local\Temp\EAD90E9.exe --------- 22103176 
 25.07.2010 13:52    C:\Users\Jonas\AppData\Local\Temp\EAD90E9.tmp --------- 0 
 24.07.2010 14:16    C:\Users\Jonas\AppData\Local\Temp\{8326b3a8-14c7-41e6-9ee1-adaf912c0978} --------- 0 
 24.07.2010 14:15    C:\Users\Jonas\AppData\Local\Temp\{bd9f48c7-a3e5-46a9-8981-38d0950928ff} --------- 0 
 24.07.2010 10:19    C:\Users\Jonas\AppData\Local\Temp\EADAD8D.exe --------- 22103176 
 24.07.2010 10:18    C:\Users\Jonas\AppData\Local\Temp\EADAD8D.tmp --------- 0 
 23.07.2010 18:07    C:\Users\Jonas\AppData\Local\Temp\EADA88D.exe --------- 1603584 
 23.07.2010 18:07    C:\Users\Jonas\AppData\Local\Temp\EADA88D.tmp --------- 0 
 23.07.2010 16:32    C:\Users\Jonas\AppData\Local\Temp\~DF0EB43AA306CA20BC.TMP --------- 16384 
 23.07.2010 11:11    C:\Users\Jonas\AppData\Local\Temp\EAD9980.exe --------- 22103176 
 23.07.2010 11:10    C:\Users\Jonas\AppData\Local\Temp\EAD9980.tmp --------- 0 
 23.07.2010 02:01    C:\Users\Jonas\AppData\Local\Temp\EAD9DE3.exe --------- 22103176 
 23.07.2010 02:00    C:\Users\Jonas\AppData\Local\Temp\EAD9DE3.tmp --------- 0 
 22.07.2010 20:30    C:\Users\Jonas\AppData\Local\Temp\EADA801.exe --------- 2564096 
 22.07.2010 20:30    C:\Users\Jonas\AppData\Local\Temp\EADA801.tmp --------- 0 
 22.07.2010 15:49    C:\Users\Jonas\AppData\Local\Temp\Crysis_Data_DFE --------- 0 
 22.07.2010 14:02    C:\Users\Jonas\AppData\Local\Temp\{4c904322-b7f2-40e0-8376-d7e5b6826404} --------- 0 
 22.07.2010 12:49    C:\Users\Jonas\AppData\Local\Temp\{6a9be7a6-0825-4fdb-8263-c183d70637b2} --------- 0 
 21.07.2010 17:27    C:\Users\Jonas\AppData\Local\Temp\{65bb5802-abf2-45b6-88b8-e8eb924629ed} --------- 0 
 21.07.2010 00:49    C:\Users\Jonas\AppData\Local\Temp\{af5acfba-b278-492a-9c08-30e034ea3a3c} --------- 0 
 20.07.2010 22:52    C:\Users\Jonas\AppData\Local\Temp\{3f41d896-1f56-487a-96ca-73510529bc2c} --------- 0 
 20.07.2010 21:56    C:\Users\Jonas\AppData\Local\Temp\{a1795980-ec2b-4b6c-bdde-f07bc12ae2a3} --------- 0 
 20.07.2010 21:56    C:\Users\Jonas\AppData\Local\Temp\{a6ceec84-649b-408f-a380-094d0c28363a} --------- 0 
 20.07.2010 21:41    C:\Users\Jonas\AppData\Local\Temp\Install.log --------- 74 
 20.07.2010 20:16    C:\Users\Jonas\AppData\Local\Temp\OutofProcReport857595.txt --------- 1630 
 20.07.2010 20:10    C:\Users\Jonas\AppData\Local\Temp\{C644412A-BBD9-49B1-AC73-3D8CE9E675C9} --------- 0 
 20.07.2010 20:10    C:\Users\Jonas\AppData\Local\Temp\{9EC6C402-3830-4B04-948A-494A2F2700E8} --------- 0 
 20.07.2010 20:08    C:\Users\Jonas\AppData\Local\Temp\{56D6E3AC-6BAC-4D3C-AACD-21D657832A3D} --------- 0 
 20.07.2010 20:00    C:\Users\Jonas\AppData\Local\Temp\{31ac63d4-4575-4e20-a691-5d02598eb49f} --------- 0 
 26.02.2010 10:45    C:\Users\Jonas\AppData\Local\Temp\devcon.exe --------- 80896 
 18.10.2009 21:17    C:\Users\Jonas\AppData\Local\Temp\avatar --------- 2869 
 27.02.2007 17:08    C:\Users\Jonas\AppData\Local\Temp\_isEA7D.exe --------- 456416 
 27.02.2007 17:08    C:\Users\Jonas\AppData\Local\Temp\_isDB54.exe --------- 456416 
 27.02.2007 17:08    C:\Users\Jonas\AppData\Local\Temp\_isEBE4.exe --------- 456416 
 27.02.2007 17:08    C:\Users\Jonas\AppData\Local\Temp\_is24A3.exe --------- 456416 
 27.02.2007 17:08    C:\Users\Jonas\AppData\Local\Temp\_is33E.exe --------- 456416 
 27.02.2007 17:08    C:\Users\Jonas\AppData\Local\Temp\_is5BE6.exe --------- 456416 
 27.02.2007 17:08    C:\Users\Jonas\AppData\Local\Temp\_is78E7.exe --------- 456416 
 27.02.2007 17:08    C:\Users\Jonas\AppData\Local\Temp\_isA392.exe --------- 456416 
 27.02.2007 17:08    C:\Users\Jonas\AppData\Local\Temp\_isB432.exe --------- 456416 
 18.09.2006 21:31    C:\Users\Jonas\AppData\Local\Temp\Catalyst.bmp --------- 57656 
 19.05.2001 11:04    C:\Users\Jonas\AppData\Local\Temp\d2l_Install.exe --------- 397312 
 06.04.2000 07:00    C:\Users\Jonas\AppData\Local\Temp\binkw32.dll --------- 263168 
----------------------------------------

 
C:\Program Files

 28.06.2011 11:20    C:\Program Files\CCleaner --------- 0 
 20.06.2011 03:27    C:\Program Files\Windows Sidebar --------- 4096 
 20.06.2011 03:27    C:\Program Files\Windows Mail --------- 4096 
 20.06.2011 03:27    C:\Program Files\DVD Maker --------- 0 
 20.06.2011 03:27    C:\Program Files\Internet Explorer --------- 4096 
 20.06.2011 03:27    C:\Program Files\Windows Portable Devices --------- 0 
 20.06.2011 03:27    C:\Program Files\Windows Media Player --------- 4096 
 20.06.2011 03:27    C:\Program Files\Windows Journal --------- 0 
 20.06.2011 03:27    C:\Program Files\Windows Photo Viewer --------- 0 
 20.06.2011 03:27    C:\Program Files\Windows Defender --------- 4096 
 15.06.2011 13:42    C:\Program Files\iTunes --------- 0 
 15.06.2011 13:42    C:\Program Files\iPod --------- 0 
 29.05.2011 18:46    C:\Program Files\DivX --------- 0 
 29.05.2011 12:02    C:\Program Files\ATI Technologies --------- 0 
 29.05.2011 11:59    C:\Program Files\Common Files --------- 4096 
 27.04.2011 01:34    C:\Program Files\Bonjour --------- 0 
 07.04.2011 15:34    C:\Program Files\CanonBJ --------- 0 
 07.12.2010 15:21    C:\Program Files\Mozilla Firefox --------- 0 
 07.12.2010 15:09    C:\Program Files\ATI --------- 0 
 07.12.2010 14:50    C:\Program Files\Windows NT --------- 4096 
 07.12.2010 14:50    C:\Program Files\Gemeinsame Dateien --------- 0 
 25.10.2010 14:38    C:\Program Files\Logitech --------- 0 
 14.07.2009 20:18    C:\Program Files\Microsoft Games --------- 0 
 14.07.2009 07:32    C:\Program Files\MSBuild --------- 0 
 14.07.2009 07:32    C:\Program Files\Reference Assemblies --------- 0 
 14.07.2009 07:09    C:\Program Files\Uninstall Information --------- 0 
 14.07.2009 06:54    C:\Program Files\desktop.ini --------- 174 
----------------------------------------

 
C:\ProgramData\..

Jonas   
All Users   
Default User   
Default   
AppData   
Public   
desktop.ini   
----------------------------------------

 
C:\Windows\system32\drivers\etc\hosts


----------------------------------------

 

Abbildname                    PID Sitzungsname      Sitz.-Nr. Speichernutzung
========================= ======== ================ =========== ===============
System Idle Process              0 Services                  0            24 K
System                          4 Services                  0        2.260 K
smss.exe                      272 Services                  0        1.148 K
csrss.exe                      368 Services                  0        6.536 K
wininit.exe                    436 Services                  0        6.084 K
csrss.exe                      472 Console                    1        8.864 K
services.exe                  520 Services                  0        10.696 K
lsass.exe                      540 Services                  0        12.696 K
lsm.exe                        548 Services                  0        4.312 K
winlogon.exe                  688 Console                    1        7.076 K
svchost.exe                    720 Services                  0        10.040 K
svchost.exe                    824 Services                  0        9.108 K
atiesrxx.exe                  876 Services                  0        4.256 K
svchost.exe                    944 Services                  0        23.924 K
svchost.exe                    980 Services                  0      194.024 K
svchost.exe                    116 Services                  0        47.288 K
svchost.exe                  1044 Services                  0        17.260 K
atieclxx.exe                  1072 Console                    1        5.428 K
svchost.exe                  1248 Services                  0        27.180 K
spoolsv.exe                  1364 Services                  0        15.616 K
taskhost.exe                  1468 Console                    1        9.832 K
sched.exe                    1488 Services                  0        2.020 K
dwm.exe                      1564 Console                    1        32.644 K
explorer.exe                  1596 Console                    1        72.404 K
svchost.exe                  1724 Services                  0        7.452 K
SetPoint.exe                  1928 Console                    1        16.760 K
avguard.exe                  2008 Services                  0        15.892 K
AppleMobileDeviceService.    2036 Services                  0        8.496 K
mDNSResponder.exe            1148 Services                  0        7.136 K
svchost.exe                  1504 Services                  0        16.372 K
avshadow.exe                  1788 Services                  0        4.068 K
conhost.exe                  1840 Services                  0        2.584 K
NBService.exe                1420 Services                  0        7.792 K
PnkBstrA.exe                  2076 Services                  0        5.268 K
svchost.exe                  2148 Services                  0        5.356 K
WLIDSVC.EXE                  2192 Services                  0        16.628 K
sidebar.exe                  2576 Console                    1        27.816 K
WLIDSVCM.EXE                  2732 Services                  0        3.240 K
avgnt.exe                    2788 Console                    1        2.960 K
KHALMNPR.exe                  2804 Console                    1        10.024 K
DivXUpdate.exe                2836 Console                    1        14.616 K
MOM.exe                      2856 Console                    1        8.752 K
iTunesHelper.exe              2868 Console                    1        13.228 K
jusched.exe                  2900 Console                    1        4.284 K
SearchIndexer.exe              508 Services                  0        25.008 K
svchost.exe                  3228 Services                  0        6.456 K
WUDFHost.exe                  3460 Services                  0        5.940 K
iPodService.exe              3632 Services                  0        7.656 K
CCC.exe                      3808 Console                    1        18.244 K
wmpnetwk.exe                  3924 Services                  0        6.900 K
svchost.exe                  3344 Services                  0        17.336 K
iTunes.exe                    3996 Console                    1        79.876 K
LastFM.exe                    4552 Console                    1        24.728 K
AppleMobileDeviceHelper.e    4608 Console                    1        10.552 K
conhost.exe                  4660 Console                    1        3.324 K
distnoted.exe                4708 Console                    1        5.380 K
conhost.exe                  4724 Console                    1        3.328 K
svchost.exe                  4380 Services                  0        36.984 K
svchost.exe                    676 Services                  0        4.068 K
chrome.exe                    4764 Console                    1      115.596 K
chrome.exe                    3108 Console                    1        32.628 K
chrome.exe                    3100 Console                    1        18.304 K
chrome.exe                    3660 Console                    1        43.692 K
miranda32.exe                2632 Console                    1        16.048 K
WmiPrvSE.exe                  632 Services                  0        6.424 K
sppsvc.exe                    4856 Services                  0        8.252 K
cmd.exe                      3432 Console                    1        3.924 K
conhost.exe                  3356 Console                    1        5.620 K
SearchFilterHost.exe          3972 Services                  0        6.652 K
dllhost.exe                  2720 Console                    1        5.824 K
tasklist.exe                  3372 Console                    1        5.532 K

 
***** Ende des Scans 28.06.2011 um 12:13:28,90 ***


Jonas_ 28.06.2011 11:20

CCleaner install.txt:

Code:

Adobe Flash Player 10 Plugin        Adobe Systems Incorporated        07.12.2010        6,00MB        10.1.102.64
Adobe Flash Player ActiveX        Adobe Systems Incorporated        21.07.2010                9.0.124.0
Adobe Reader 9.4.4 - Deutsch        Adobe Systems Incorporated        26.04.2011        167,9MB        9.4.4
ANNO 1404        Ubisoft        08.05.2011                1.01.0000
Apple Application Support        Apple Inc.        14.06.2011        51,0MB        1.5.2
Apple Mobile Device Support        Apple Inc.        14.06.2011        22,7MB        3.4.1.2
Apple Software Update        Apple Inc.        06.12.2010        2,26MB        2.1.2.120
ATI Catalyst Install Manager        ATI Technologies, Inc.        14.05.2011        22,5MB        3.0.825.0
Avira AntiVir Personal - Free Antivirus        Avira GmbH        25.06.2011        61,8MB        10.0.0.650
Battlefield: Bad Company™ 2        Electronic Arts        15.12.2010        5.869MB        1.0.0.0
Blur(TM)                27.12.2010               
Bonjour        Apple Inc.        26.04.2011        1,75MB        2.0.5.0
CANON iMAGE GATEWAY Task for ZoomBrowser EX        Canon Inc.        29.05.2011                1.7.2.11
Canon Internet Library for ZoomBrowser EX        Canon Inc.        29.05.2011                1.6.3.9
Canon iP4300                06.04.2011               
Canon MOV Decoder        Canon Inc.        29.05.2011                1.5.0.7
Canon MOV Encoder        Canon Inc.        29.05.2011                1.3.0.3
Canon MovieEdit Task for ZoomBrowser EX        Canon Inc.        29.05.2011                3.4.0.8
Canon Utilities CameraWindow        Canon Inc.        29.05.2011                7.4.0.7
Canon Utilities CameraWindow DC 8        Canon Inc.        29.05.2011                8.1.0.11
Canon Utilities Movie Uploader for YouTube        Canon Inc.        29.05.2011                1.0.0.11
Canon Utilities MyCamera        Canon Inc.        29.05.2011                7.3.0.5
Canon Utilities PhotoStitch        Canon Inc.        29.05.2011                3.1.22.46
Canon Utilities ZoomBrowser EX        Canon Inc.        29.05.2011                6.5.0.14
Canon ZoomBrowser EX Memory Card Utility        Canon Inc.        29.05.2011                1.3.0.4
CCleaner        Piriform        27.06.2011                3.08
DAEMON Tools Lite        DT Soft Ltd        12.05.2011                4.40.2.0131
Diablo II                19.07.2010               
DivX Setup        DivX, LLC        28.05.2011                2.5.0.11
FIFA 11        Electronic Arts        26.12.2010        6.262MB        1.0.0.0
Fraps (remove only)                21.07.2010               
Garena 2010        Garena Online Pte Ltd.        20.07.2010                2010
Google Chrome        Google Inc.        23.07.2010                12.0.742.100
Google Earth        Google        25.05.2011        84,6MB        6.0.3.2197
Grand Theft Auto IV        Rockstar Games        12.05.2011                1.00.0000
Hamachi 1.0.3.0                06.12.2010               
Heroes of Newerth        S2 Games        27.05.2011                2.0.26
HijackThis 2.0.2        TrendMicro        26.06.2011                2.0.2
iTunes        Apple Inc.        14.06.2011        145,0MB        10.3.1.55
Java(TM) 6 Update 26        Sun Microsystems, Inc.        24.07.2010        94,5MB        6.0.260
Last.fm 1.5.4.27091        Last.fm        30.10.2010               
Logitech SetPoint 6.15        Logitech        24.10.2010        39,1MB        6.15.25
Malwarebytes' Anti-Malware Version 1.51.0.1200        Malwarebytes Corporation        27.06.2011        13,8MB        1.51.0.1200
Microsoft .NET Framework 4 Client Profile        Microsoft Corporation        23.11.2010        38,8MB        4.0.30319
Microsoft .NET Framework 4 Client Profile DEU Language Pack        Microsoft Corporation        23.11.2010        2,94MB        4.0.30319
Microsoft Games for Windows - LIVE Redistributable        Microsoft Corporation        12.05.2011        32,6MB        2.0.672.0
Microsoft Office Professional Edition 2003        Microsoft Corporation        14.06.2011        542MB        11.0.8173.0
Microsoft SQL Server 2005 Compact Edition [ENU]        Microsoft Corporation        07.04.2011        1,70MB        3.1.0000
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053        Microsoft Corporation        07.04.2011        0,25MB        8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable        Microsoft Corporation        14.06.2011        0,29MB        8.0.61001
Microsoft Visual C++ 2005 Redistributable (x64)        Microsoft Corporation        21.07.2010        0,69MB        8.0.61000
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175        Microsoft Corporation        19.05.2011        0,57MB        8.0.51011
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570        Microsoft Corporation        19.05.2011        0,77MB        9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570        Microsoft Corporation        19.05.2011        0,58MB        9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17        Microsoft Corporation        06.12.2010        0,25MB        9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148        Microsoft Corporation        06.12.2010        0,77MB        9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161        Microsoft Corporation        14.06.2011        0,77MB        9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729        Microsoft Corporation        26.12.2010        0,23MB        9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17        Microsoft Corporation        11.12.2010        0,23MB        9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148        Microsoft Corporation        06.12.2010        0,58MB        9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161        Microsoft Corporation        14.06.2011        0,59MB        9.0.30729.6161
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319        Microsoft Corporation        19.05.2011        15,1MB        10.0.30319
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319        Microsoft Corporation        19.05.2011        11,0MB        10.0.30319
MSXML 4.0 SP2 (KB954430)        Microsoft Corporation        04.08.2010        1,28MB        4.20.9870.0
MSXML 4.0 SP2 (KB973688)        Microsoft Corporation        04.08.2010        1,33MB        4.20.9876.0
Nero 9 Essentials        Nero AG        03.08.2010               
Norton Security Scan        Symantec Corporation        28.05.2011                3.1.1.6
Pando Media Booster        Pando Networks Inc.        20.10.2010        5,47MB        2.3.4.3
PunkBuster Services        Even Balance, Inc.        15.12.2010                0.988
QuickTime        Apple Inc.        26.12.2010        73,7MB        7.69.80.9
Rockstar Games Social Club        Rockstar Games        12.05.2011                1.00.0000
Silent Hill Homecoming        Konami        12.05.2011               
TeamSpeak 3 Client        TeamSpeak Systems GmbH        06.12.2010               
Tom Clancy's Ghost Recon Advanced Warfighter® 2        UBISOFT        13.05.2011                1.00.0000
Uninstall 1.0.0.1                09.04.2011        10,9MB       
VLC media player 1.1.4        VideoLAN        25.09.2010                1.1.4
Warkeys 1.17.1.0b                12.11.2010                1.17.1.0b
WC3Banlist        Knarf        09.04.2011                3.0
Windows Live Essentials        Microsoft Corporation        08.04.2011                15.4.3508.1109
WinPcap 4.1.2        CACE Technologies        27.04.2011                4.1.0.2001
WinRAR                06.12.2010


kira 29.06.2011 07:55

1.
Hinweise zum Einsatz von Freeware-Version Avira AntiVir Personal:
Hier klicken zum Weiterlesen► http://www.pc-sicherheit.net/antivir...blue-t955.html
Zitat:

Das Toolbar ist natürlich abwählbar, aber Du wirst eventuell immer wieder aufgefordert (z.B bei jedem Update), es erneut zu überlegen bzw das Toolbar doch zu installieren. Da die Ask Toolbar einen schlechten Ruf hat (Adware ), würde ich nicht empfehlen es zu installieren.
Wenn dich das wirklich so sehr nervt und kein Geld für Antiviren-Lösung investieren willst, kannst auf einen andere kostenlosen Virenscanner umsteigen wie z.B der kostenlose Sicherheitslösung Security Essentials von Microsoft

2.
Deine Javaversion ist nicht aktuell!
Da aufgrund alter Sicherheitslücken ist Java sehr anfällig, deinstalliere zunächst alle vorhandenen Java-Versionen:
→ Systemsteuerung → Software → deinstallieren...
→ Rechner neu aufstarten
→ Downloade nun die Offline-Version von Java Version 6 Update 24 von Oracle herunter
Achte darauf, eventuell angebotene Toolbars abwählen (den Haken bei der Toolbar entfernen)!

3.
Fixen mit OTL
  • Starte die OTL.exe.
  • Vista und Windows 7 User: Rechtsklick auf die OTL.exe und "als Administrator ausführen" wählen.
  • Kopiere folgendes Skript:
Code:

:OTL
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.conduit.com?SearchSource=10&ctid=CT2269050
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Low Rights present
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{aba432dd-7d4f-11e0-a6d0-90e6bab972ac}\Shell - "" = AutoRun
O33 - MountPoints2\{aba432dd-7d4f-11e0-a6d0-90e6bab972ac}\Shell\AutoRun\command - "" = F:\Start.exe
O33 - MountPoints2\E\Shell - "" = AutoRun
O33 - MountPoints2\E\Shell\AutoRun\command - "" = E:\Autorun.exe
:Commands
[purity]
[emptytemp]


4.
reinige dein System mit Ccleaner:
  • "Cleaner"→ "Analysieren"→ Klick auf den Button "Start CCleaner"
  • "Registry""Fehler suchen"→ "Fehler beheben"→ "Alle beheben"
  • Starte dein System neu auf

Besteht dein Problem immer noch? wenn ja bitte genaue Angabe -> Wann und wie wird "falsche Seite" angezeigt? Während des surfens? oder ansonsten auch?

Jonas_ 30.06.2011 00:31

hat sich erledigt, habe mein System formatiert.

Trotzdem danke für die Hilfe!

kira 30.06.2011 08:37

Ändere deine Passworte und Zugangsdaten! - von einem sauberen System aus
- Alle Passwörter, die auf dem kompromittierten System verwendet wurden (also z.B. Login-, Mail- oder Website-Passwörter, aber auch die PIN für das Online-Banking) sofort ändern (► am besten von einem anderen, nicht-infizierten Rechner aus! )
Tipps:
Die sichere Passwort-Wahl - (sollte man eigentlich regelmäßigen Abständen ca. alle 3-5 Monate ändern)
auch noch hier unter: Sicheres Kennwort (Password)

Lesestoff Nr.1:
  • Wie erstelle ich ein eingeschränktes Benutzerkonto?
  • Software immer auf dem neuesten Stand halten!:
    ALLE auf dem System installierten Programme und Treiber, sollten regelmäßig upgedatet werden um Sicherheitslücken zu vermeiden und um das reibungslose Arbeitsabläufe zu erreichen!
  • Ein sicherer Browser als IE z.B. *Ein Wechsel des Standardbrowsers zu...von SETI@home* - Firefox - FirefoxWiki/Einstellungen - Erweiterungen für Firefox - Standardbrowser
  • Sichere eMail Clients z.B. Thunderbird-->Erweiterungen für Mozilla Thunderbird
  • Sichere Paswort - Die sichere Passwort-Wahl - (sollte man eigentlich regelmäßigen Abständen ca. alle 3-5 Monate ändern)
    auch noch hier unter: Sicheres Kennwort (Password)
    Die fünf häufigsten Passwort-Fehler[/b[
  • "Never accept software from strangers" - Installiere grundsätzlich immer nur Programme, die Du auch wirklich benötigst und von denen Du überzeugt bist, dass sie seriös sind.
    Du hast die Wahl!, welche zusätzlichen Komponenten noch installiert werden sollen? -> Bei der Installation immer mitlesen, Sponsoren und Partnerprogramme, Toolbars oder eventuell noch andere extra angebotene Programme möglichst abwählen!
  • NICHT irgendwelche Programme aus dem Netz laden, wenn nicht zu 100% fest steht, dass es sich dabei um saubere Software handelt. Nette Versprechen der Hersteller garantieren noch lange keine einwandfreie Funktionsweise, also vorher blättere die Seiten bei GOOGLE, da kannst Du Dir wertvolle Informationen holen!!!
  • Vorsicht bei der Nutzung fremder Computer und anschliessbare Externe Speichermedien wie Festplatte, USB Sticks, Speicherkarten usw![/color] - IT-Betrüger machen keinen Urlaub!/bsi-fuer-buerger.de - auch zeitweise anschließen und scannen lassen (sehe unter `kostenlose Online-Viren-Scanner`)
  • Webseiten ohne Gültiges Impressum nicht besuchen
  • Lizenzkosten sparen? - Vorsicht bei Dateien/Programmen aus nicht vertrauenswürdigen Quellen! - "full Keygen, Crack, Serial, Warez, keygenerators" etc.
    Sind immer verseucht mit diverse Malware/Schadprogramme/Code, es gibt keine seite wo Viren frei ist. (Man sollte nicht absitlich der Teufel holen;)) Eine weitere höchst unsichere Quelle ist das File-Sharing der sog. (Musik-)Tauschbörsen.
    ► Ausserdem machst Du dich damit strafbar!
  • Nur eine Firewall sowie ein Antiviren Programm verwenden, welche sich immer auf dem aktuellsten Stand befinden sollten!
    Das Installieren von `zuviel` Software beeinträchtigt die Systemleistung und Sicherheit, verlangsamt den Start-Vorgang enorm und belastet den Arbeitsspeicher (weil laufen ja die Programme nebeneinander gleichzeitig, die viel Performance fressen, aber wenig Qualität bringen). Im Laufe der Zeit wird der rechner durch zu viel unnötigen Ballast immer langsamer, und unsicherer. Um so mehr Programme installiert sind, um so häufiger treten Probleme auf, die dann unter Umständen nur schwer lösen können. Dazu kommt noch, das einige Programme große Sicherheitsrisiken mit sich bringen;)
  • Virenscanner
  • BSI für Bürger
  • SETI@home - [Sicherheit] Sicherheitskonzept
  • Entwicklung schädlicher Websites/viruslist.com
  • Brennpunkt: Bilder und Töne
    Gefährliche Bilder, schräge Töne/BSI

** Der gesunde Menschenverstand, Windows und Internet-Software sicher konfigurieren ist der beste Weg zur Sicherheit im Webverkehr ist !!
Zitat:

Da der Bestand der Datenbank wird täglich ergänzt und erweitert bzw werden mit der aktuellen Virendefinition die Informationen über den betroffenen Virus aufgenommen, empfehle ich dir mindestens einmal pro Woche (später genügt es sicherlich einmal im Monat) dein System Online Scannen lassen (immer mit einen anderen Scanner), um eine zweite Meinung einzuholen - Die auf dem Speichermedium gesicherten Daten sollten auch mit einbezogen werden!
(benutzen meist ActiveX und/oder Java): Kostenlose Online Scanner -
Lesestoff Nr.2:
► Kann sich auf Dauer eine Menge Datenmüll ansammeln, sich Fehlermeldungen häufen, der PC ist wahrscheinlich nicht mehr so schnell, wie früher:wünsch Dir alles Gute:)


Alle Zeitangaben in WEZ +1. Es ist jetzt 18:18 Uhr.

Copyright ©2000-2025, Trojaner-Board


Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19