Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Werde auf andere Seiten gelenkt! (Google)

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 27.06.2011, 23:02   #1
Jonas_
 
Werde auf andere Seiten gelenkt! (Google) - Standard

Werde auf andere Seiten gelenkt! (Google)



Hallo Trojaner-Board Community,

ich habe selber gelesen, dass viele Personen das gleiche Problem haben wie ich: sie werden nach der Google Suche von einem beliebigen Begriff nach anklicken des Suchergebnisses auf eine VÖLLIG andere Website geleitet. Ich selber hatte noch nie so ein Problem und muss sagen, dass ich, obwohl ich selbst von mir sage, im Bereich Computer nicht auf den Kopf gefallen zu sein, im Moment ziemlich überfordert bin.

Am 26.07.2011 hat mein Virenprogramm (Antivir) folgendes gefunden:

Zitat:
Die Datei 'C:\Windows\assembly\GAC_32\Desktop.ini'
enthielt einen Virus oder unerwünschtes Programm 'BDS/ZAccess.bn.1' [backdoor].
Durchgeführte Aktion(en):
Beim Versuch eine Sicherungskopie der Datei anzulegen ist ein Fehler aufgetreten und die Datei wurde nicht gelöscht. Fehlernummer: 26003.
Die Datei konnte nicht gelöscht werden!
Es wird versucht die Aktion mit Hilfe der ARK Library durchzuführen.
Die Datei konnte nicht ins Quarantäneverzeichnis verschoben werden!
Die Datei konnte nicht gelöscht werden!
Zitat:
In der Datei 'C:\Windows\assembly\GAC_32\Desktop.ini'
wurde ein Virus oder unerwünschtes Programm 'BDS/ZAccess.bn.1' [backdoor] gefunden.
Ausgeführte Aktion: Zugriff verweigern
Zitat:
Die Datei 'C:\Windows\assembly\GAC_32\Desktop.ini'
enthielt einen Virus oder unerwünschtes Programm 'BDS/ZAccess.bn.1' [backdoor].
Durchgeführte Aktion(en):
Die Datei konnte nicht gelöscht werden!
Es wird versucht die Aktion mit Hilfe der ARK Library durchzuführen.
Die Datei konnte nicht gelöscht werden!
Die Datei wurde zum Löschen nach einem Neustart markiert.
Da bei allen drei Meldungen gesagt wurde, dass die Datei nicht gelöscht werden konnte, gehe ich davon aus, dass sie weiterhin vorhanden sind. Manuell kann ich sie auch nicht löschen, dass sie im Angegebenen Pfad nicht auffindbar sind.

Mit OTL habe ich bereits einen Scan gemacht.

Ich kann leider nur die Extras.txt als Archiv anhängen. Die OTL.txt ist zu groß.

Ich hoffe mir kann bei meinem Problem weitergeholfen werden.

Mit freundlichen Grüßen,
Jonas

Geändert von Jonas_ (27.06.2011 um 23:29 Uhr)

Alt 28.06.2011, 10:04   #2
kira
/// Helfer-Team
 
Werde auf andere Seiten gelenkt! (Google) - Standard

Werde auf andere Seiten gelenkt! (Google)



Hallo und Herzlich Willkommen!

Bevor wir unsere Zusammenarbeit beginnen, [Bitte Vollständig lesen]:
Zitat:
  • "Fernbehandlungen/Fernhilfe" und die damit verbundenen Haftungsrisken:
    - da die Fehlerprüfung und Handlung werden über große Entfernungen durchgeführt, besteht keine Haftung unsererseits für die daraus entstehenden Folgen.
    - also, jede Haftung für die daraus entstandene Schäden wird ausgeschlossen, ANWEISUNGEN UND DEREN BEFOLGUNG, ERFOLGT AUF DEINE EIGENE VERANTWORTUNG!
  • Charakteristische Merkmale/Profilinformationen:
    - aus der verwendeten Loglisten oder Logdateien - wie z.B. deinen Realnamen, Seriennummer in Programm etc)- kannst Du herauslöschen oder durch [X] ersetzen
  • Die Systemprüfung und Bereinigung:
    - kann einige Zeit in Anspruch nehmen (je nach Art der Infektion), kann aber sogar so stark kompromittiert sein, so dass eine wirkungsvolle technische Säuberung ist nicht mehr möglich bzw Du es neu installieren musst
  • Ich empfehle Dir die Anweisungen erst einmal komplett durchzulesen, bevor du es anwendest, weil wenn du etwas falsch machst, kann es wirklich gefährlich werden. Wenn du meinen Anweisungen Schritt für Schritt folgst, kann eigentlich nichts schief gehen.
  • Innerhalb der Betreuungszeit:
    - ohne Abspräche bitte nicht auf eigene Faust handeln!- bei Problemen nachfragen.
  • Die Reihenfolge:
    - genau so wie beschrieben bitte einhalten, nicht selbst die Reihenfolge wählen!
  • GECRACKTE SOFTWARE werden hier nicht geduldet!!!!
  • Ansonsten unsere Forumsregeln:
    - Bitte erst lesen, dann posten!-> Für alle Hilfesuchenden! Was muss ich vor der Eröffnung eines Themas beachten?
  • Alle Logfile mit einem vBCode Tag eingefügen, das bietet hier eine gute Übersicht, erleichtert mir die Arbeit! Falls das Logfile zu groß, teile es in mehrere Teile auf.

Sobald Du diesen Einführungstext gelesen hast, kannst Du beginnen
Zitat:
Wenn ein System kompromittiert wurde, ist das System nicht mehr vertrauenswürdig
Eine Neuinstallation garantiert die rückstandsfreie Entfernung der Infektion - Lesestoff: "Hilfe: Ich wurde das Opfer eines Hackerangriffs. Was soll ich tun?" - Säubern eines gefährdeten Systems
Falls du doch für die Systemreinigung entscheidest - Ein System zu bereinigen kann ein paar Tage dauern (je nach Art der Infektion), kann aber sogar so stark kompromittiert sein, so dass eine wirkungsvolle technische Säuberung ist nicht mehr möglich bzw Du es neu installieren musst::

Für Vista und Win7:
Wichtig: Alle Befehle bitte als Administrator ausführen! rechte Maustaste auf die Eingabeaufforderung und "als Administrator ausführen" auswählen
Auf der angewählten Anwendung einen Rechtsklick (rechte Maustaste) und "Als Administrator ausführen" wählen!

1.
Lade Dir Malwarebytes Anti-Malware von→ malwarebytes.org
  • Installieren und per Doppelklick starten.
  • Deutsch einstellen und gleich mal die Datenbanken zu aktualisieren - online updaten
  • "Komplett Scan durchführen" wählen (überall Haken setzen)
  • wenn der Scanvorgang beendet ist, klicke auf "Zeige Resultate"
  • Alle Funde - falls MBAM meldet in C:\System Volume Information - den Haken bitte entfernen - markieren und auf "Löschen" - "Ausgewähltes entfernen") klicken.
  • Poste das Ergebnis hier in den Thread - den Bericht findest Du unter "Scan-Berichte"
eine bebilderte Anleitung findest Du hier: Anleitung/virus-protect.org

2.
erneut einen Scan mit OTL:
  • Doppelklick auf die OTL.exe
  • Vista und Windows 7 User: Rechtsklick auf die OTL.exe und "als Administrator ausführen" wählen.
  • Oben findest Du ein Kästchen mit Ausgabe.
    Wähle bitte Standard-Ausgabe
  • Unter Extra-Registrierung wähle bitte Benutze SafeList.
  • Mache Häckchen bei LOP- und Purity-Prüfung.
  • Klicke nun auf Scan links oben.
  • Wenn der Scan beendet wurde werden zwei Logfiles erstellt.
    Du findest die Logfiles auf Deinem Desktop => OTL.txt und Extras.txt
  • Poste die Logfiles in Code-Tags hier in den Thread.

3.
Bitte Versteckte - und Systemdateien sichtbar machen den Link hier anklicken:
System-Dateien und -Ordner unter XP und Vista sichtbar machen
Am Ende unserer Arbeit, kannst wieder rückgängig machen!

4.
→ Lade Dir HJTscanlist.zip herunter
→ entpacke die Datei auf deinem Desktop
→ Bei WindowsXP Home musst vor dem Scan zusätzlich tasklist.zip installieren
→ per Doppelklick starten
→ Wähle dein Betriebsystem aus - bei Win7 wähle Vista
→ Wenn Du gefragt wirst, die Option "Einstellung" (1) - scanlist" wählen
→ Nach kurzer Zeit sollte sich Dein Editor öffnen und die Datei hjtscanlist.txt präsentieren
→ Bitte kopiere den Inhalt hier in Deinen Thread.
** Falls es klappt auf einmal nicht, kannst den Text in mehrere Teile teilen und so posten

5.
Ich würde gerne noch all deine installierten Programme sehen:
Lade dir das Tool Ccleaner herunter
Download
installieren (Software-Lizenzvereinbarung lesen, falls angeboten wird "Füge CCleaner Yahoo! Toolbar hinzu" abwählen)→ starten→ falls nötig - unter Options settings-> "german" einstellen
dann klick auf "Extra (um die installierten Programme auch anzuzeigen)→ weiter auf "Als Textdatei speichern..."
wird eine Textdatei (*.txt) erstellt, kopiere dazu den Inhalt und füge ihn da ein

Zitat:
Damit dein Thread übersichtlicher und schön lesbar bleibt, am besten nutze den Code-Tags für deinen Post:
→ vor dein Log schreibst Du (also am Anfang des Logfiles):[code]
hier kommt dein Logfile rein - z.B hjtsanlist o. sonstiges
→ dahinter - also am Ende der Logdatei: [/code]
** Möglichst nicht ins internet gehen, kein Online-Banking, File-sharing, Chatprogramme usw
gruß
kira
__________________

__________________

Alt 28.06.2011, 10:52   #3
Jonas_
 
Werde auf andere Seiten gelenkt! (Google) - Standard

Werde auf andere Seiten gelenkt! (Google)



Malwarebytes:


Code:
ATTFilter
Malwarebytes' Anti-Malware 1.51.0.1200
www.malwarebytes.org

Datenbank Version: 6966

Windows 6.1.7601 Service Pack 1
Internet Explorer 8.0.7601.17514

28.06.2011 11:50:52
mbam-log-2011-06-28 (11-50-52).txt

Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|E:\|F:\|G:\|H:\|)
Durchsuchte Objekte: 330310
Laufzeit: 33 Minute(n), 35 Sekunde(n)

Infizierte Speicherprozesse: 0
Infizierte Speichermodule: 0
Infizierte Registrierungsschlüssel: 0
Infizierte Registrierungswerte: 0
Infizierte Dateiobjekte der Registrierung: 0
Infizierte Verzeichnisse: 0
Infizierte Dateien: 0

Infizierte Speicherprozesse:
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule:
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel:
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungswerte:
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung:
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse:
(Keine bösartigen Objekte gefunden)

Infizierte Dateien:
(Keine bösartigen Objekte gefunden)
         
__________________

Alt 28.06.2011, 11:00   #4
Jonas_
 
Werde auf andere Seiten gelenkt! (Google) - Standard

Werde auf andere Seiten gelenkt! (Google)



OTL erster Teil:

Code:
ATTFilter
OTL logfile created on: 28.06.2011 11:54:24 - Run 3
OTL by OldTimer - Version 3.2.24.1     Folder = C:\Users\Jonas\Desktop
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
4,00 Gb Total Physical Memory | 2,04 Gb Available Physical Memory | 50,93% Memory free
8,00 Gb Paging File | 5,82 Gb Available in Paging File | 72,77% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 48,73 Gb Total Space | 17,87 Gb Free Space | 36,67% Space Free | Partition Type: NTFS
Drive D: | 184,05 Gb Total Space | 108,25 Gb Free Space | 58,81% Space Free | Partition Type: NTFS
Drive G: | 931,28 Gb Total Space | 931,19 Gb Free Space | 99,99% Space Free | Partition Type: FAT32
Drive H: | 7,39 Gb Total Space | 0,01 Gb Free Space | 0,10% Space Free | Partition Type: FAT32
 
Computer Name: JOHNNY | User Name: Jonas | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
========== Processes (SafeList) ==========
 
PRC - [2011.06.27 23:43:48 | 000,579,072 | ---- | M] (OldTimer Tools) -- C:\Users\Jonas\Desktop\OTL.exe
PRC - [2011.05.29 09:11:22 | 001,047,656 | ---- | M] (Malwarebytes Corporation) -- D:\Programem\Malwarebytes' Anti-Malware\mbam.exe
PRC - [2011.04.27 11:46:08 | 000,136,360 | ---- | M] (Avira GmbH) -- D:\Programme\Avira\AntiVir Desktop\sched.exe
PRC - [2011.04.05 00:58:10 | 000,818,784 | ---- | M] ( ) -- D:\Programme\Miranda\miranda32.exe
PRC - [2011.03.21 20:56:16 | 001,230,704 | ---- | M] () -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
PRC - [2011.03.19 15:35:52 | 000,269,480 | ---- | M] (Avira GmbH) -- D:\Programme\Avira\AntiVir Desktop\avguard.exe
PRC - [2010.12.17 18:34:11 | 000,075,136 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe
PRC - [2010.11.21 14:07:23 | 000,281,768 | ---- | M] (Avira GmbH) -- D:\Programme\Avira\AntiVir Desktop\avgnt.exe
PRC - [2010.10.27 21:21:54 | 001,155,072 | ---- | M] (Last.fm) -- D:\Programme\Last.fm\LastFM.exe
PRC - [2009.04.17 10:09:46 | 000,935,208 | ---- | M] (Nero AG) -- C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
 
 
========== Modules (SafeList) ==========
 
MOD - [2011.06.27 23:43:48 | 000,579,072 | ---- | M] (OldTimer Tools) -- C:\Users\Jonas\Desktop\OTL.exe
MOD - [2010.11.20 13:55:09 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
 
 
========== Win32 Services (SafeList) ==========
 
SRV:64bit: - [2009.08.18 03:36:20 | 000,203,264 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2009.07.14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2011.04.27 11:46:08 | 000,136,360 | ---- | M] (Avira GmbH) [Auto | Running] -- D:\Programme\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2011.03.19 15:35:52 | 000,269,480 | ---- | M] (Avira GmbH) [Auto | Running] -- D:\Programme\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2010.12.17 18:34:11 | 000,075,136 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2010.06.25 19:07:20 | 000,117,264 | ---- | M] (CACE Technologies, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\WinPcap\rpcapd.exe -- (rpcapd) Remote Packet Capture Protocol v.0 (experimental)
SRV - [2010.05.06 11:30:22 | 000,357,456 | ---- | M] (Logitech, Inc.) [On_Demand | Stopped] -- C:\Programme\Common Files\LogiShrd\Bluetooth\LBTServ.exe -- (LBTServ)
SRV - [2010.03.18 14:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009.06.10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009.04.17 10:09:46 | 000,935,208 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe -- (Nero BackItUp Scheduler 4.0)
 
 
========== Driver Services (SafeList) ==========
 
DRV:64bit: - [2011.05.13 13:55:39 | 000,254,528 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:64bit: - [2011.05.10 08:06:08 | 000,051,712 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2011.05.04 23:20:42 | 000,314,016 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\atksgt.sys -- (atksgt)
DRV:64bit: - [2011.05.04 23:20:41 | 000,043,680 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\lirsgt.sys -- (lirsgt)
DRV:64bit: - [2011.04.20 03:22:32 | 000,306,176 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2011.03.30 20:46:44 | 000,114,704 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2011.03.11 08:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011.03.11 08:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010.12.07 15:37:35 | 000,033,344 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV:64bit: - [2010.11.26 14:25:07 | 000,083,120 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\avgntflt.sys -- (avgntflt)
DRV:64bit: - [2010.11.20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.11.20 13:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010.11.20 13:03:42 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2010.06.25 19:07:26 | 000,035,344 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\npf.sys -- (NPF)
DRV:64bit: - [2010.05.06 11:21:46 | 000,125,456 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV:64bit: - [2010.03.18 11:00:00 | 000,063,568 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LHidFilt.Sys -- (LHidFilt)
DRV:64bit: - [2010.03.02 14:35:01 | 000,116,568 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avipbb.sys -- (avipbb)
DRV:64bit: - [2010.02.18 09:18:24 | 000,046,136 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdiox64.sys -- (amdiox64)
DRV:64bit: - [2009.08.18 04:48:48 | 006,037,504 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (atikmdag)
DRV:64bit: - [2009.08.18 04:48:48 | 006,037,504 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2009.08.13 23:10:18 | 000,073,984 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xusb21.sys -- (xusb21)
DRV:64bit: - [2009.07.14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.06.10 22:38:56 | 000,000,308 | ---- | M] () [File_System | On_Demand | Running] -- C:\Windows\SysNative\wbem\ntfs.mof -- (Ntfs)
DRV:64bit: - [2009.06.10 22:35:42 | 000,187,392 | ---- | M] (Realtek Corporation                                            ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2009.06.10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009.05.18 14:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2007.08.23 07:29:52 | 000,147,584 | ---- | M] (Cherry GmbH) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Ch64USB.sys -- (Ch64USB)
DRV:64bit: - [2005.03.29 02:30:38 | 000,008,192 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ASACPI.sys -- (MTsensor)
 
========== Standard Registry (SafeList) ==========
 
 
========== Internet Explorer ==========
 
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
 
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.conduit.com?SearchSource=10&ctid=CT2269050
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 96 A4 26 E7 15 96 CB 01  [binary data]
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
 
FF - HKLM\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\html5video [2011.02.26 22:57:22 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{6904342A-8307-11DF-A508-4AE2DFD72085}: C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\wpa [2011.02.26 22:57:23 | 000,000,000 | ---D | M]
 
 
O1 HOSTS File: ([2009.06.10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O2 - BHO: (DivX HiQ) - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O4:64bit: - HKLM..\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.)
O4 - HKLM..\Run: [avgnt] D:\Programme\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\RunOnce: [Malwarebytes' Anti-Malware] D:\Programem\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Low Rights present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8:64bit: - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Jonas\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm ()
O8:64bit: - Extra context menu item: Nach Microsoft &Excel exportieren - D:\Programme\Microsoft Office\OFFICE11\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Jonas\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm ()
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - D:\Programme\Microsoft Office\OFFICE11\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: Recherchieren - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Programme\Microsoft Office\OFFICE11\REFIEBAR.DLL (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000001 -  File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000002 -  File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000003 -  File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000004 -  File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000005 -  File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000006 -  File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000007 -  File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000008 -  File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000009 -  File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000010 -  File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 -  File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 -  File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 -  File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 -  File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 -  File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 -  File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 -  File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 -  File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 -  File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 -  File not found
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.178.1
O18:64bit: - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\msdaipp - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\wlpg {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - Reg Error: Key error. File not found
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\PROGRA~2\COMMON~1\MICROS~1\WEBCOM~1\11\OWC11.DLL (Microsoft Corporation)
O18:64bit: - Protocol\Filter\text/xml {807553E5-5146-11D5-A672-00B0D022E945} - Reg Error: Key error. File not found
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) -  File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) -  File not found
O20:64bit: - Winlogon\Notify\LBTWlgn: DllName - Reg Error: Key error. - c:\Programme\Common Files\LogiShrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{aba432dd-7d4f-11e0-a6d0-90e6bab972ac}\Shell - "" = AutoRun
O33 - MountPoints2\{aba432dd-7d4f-11e0-a6d0-90e6bab972ac}\Shell\AutoRun\command - "" = F:\Start.exe
O33 - MountPoints2\E\Shell - "" = AutoRun
O33 - MountPoints2\E\Shell\AutoRun\command - "" = E:\Autorun.exe
O34 - HKLM BootExecute: (autocheck autochk *) -  File not found
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
 
========== Files/Folders - Created Within 30 Days ==========
 
[2011.06.28 11:20:11 | 000,000,000 | ---D | C] -- C:\Programme\CCleaner
[2011.06.28 11:18:57 | 003,216,552 | ---- | C] (Piriform Ltd) -- C:\Users\Jonas\Desktop\ccsetup308.exe
[2011.06.28 11:14:59 | 000,039,984 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
[2011.06.28 11:14:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011.06.28 10:33:02 | 000,000,000 | ---D | C] -- C:\Users\Jonas\AppData\Roaming\Malwarebytes
[2011.06.28 10:32:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2011.06.28 10:32:43 | 000,025,912 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2011.06.28 10:31:51 | 009,435,312 | ---- | C] (Malwarebytes Corporation                                    ) -- C:\Users\Jonas\Desktop\mbam-setup-1.51.0.1200.exe
[2011.06.27 23:43:49 | 000,579,072 | ---- | C] (OldTimer Tools) -- C:\Users\Jonas\Desktop\OTL.exe
[2011.06.26 14:14:06 | 000,000,000 | ---D | C] -- C:\Windows\system64
[2011.06.20 00:34:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2011.06.20 00:33:49 | 000,157,472 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaws.exe
[2011.06.20 00:33:49 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaw.exe
[2011.06.20 00:33:49 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\java.exe
[2011.06.20 00:33:45 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\SPReview
[2011.06.20 00:31:44 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\EventProviders
[2011.06.19 02:54:00 | 001,942,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dfshim.dll
[2011.06.19 02:54:00 | 000,048,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netfxperf.dll
[2011.06.19 02:53:54 | 001,130,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dfshim.dll
[2011.06.19 02:53:51 | 003,715,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstscax.dll
[2011.06.19 02:53:51 | 001,838,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10warp.dll
[2011.06.19 02:53:51 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys
[2011.06.19 02:53:51 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbRedirectionGroupPolicyExtension.dll
[2011.06.19 02:53:49 | 003,215,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll
[2011.06.19 02:53:46 | 001,171,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10warp.dll
[2011.06.19 02:53:46 | 000,954,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc40.dll
[2011.06.19 02:53:46 | 000,954,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc40u.dll
[2011.06.19 02:53:46 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tssrvlic.dll
[2011.06.19 02:53:45 | 001,109,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorets.dll
[2011.06.19 02:53:44 | 000,629,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pmcsnap.dll
[2011.06.19 02:53:43 | 014,633,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmp.dll
[2011.06.19 02:53:43 | 002,314,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tquery.dll
[2011.06.19 02:53:42 | 002,223,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssrch.dll
[2011.06.19 02:53:42 | 001,731,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll
[2011.06.19 02:53:41 | 004,120,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mf.dll
[2011.06.19 02:53:41 | 003,205,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mmcndmgr.dll
[2011.06.19 02:53:41 | 000,485,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_isv.dll
[2011.06.19 02:53:40 | 003,008,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xpsservices.dll
[2011.06.19 02:53:40 | 000,488,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc.dll
[2011.06.19 02:53:40 | 000,423,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_isv.dll
[2011.06.19 02:53:40 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_isv.exe
[2011.06.19 02:53:40 | 000,359,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate.exe
[2011.06.19 02:53:39 | 001,219,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rpcrt4.dll
[2011.06.19 02:53:39 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc.dll
[2011.06.19 02:53:39 | 000,327,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_isv.exe
[2011.06.19 02:53:38 | 000,322,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate.exe
[2011.06.19 02:53:38 | 000,238,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ppcsnap.dll
[2011.06.19 02:53:38 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PushPrinterConnections.exe
[2011.06.19 02:53:37 | 002,086,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ole32.dll
[2011.06.19 02:53:36 | 000,263,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwizui.dll
[2011.06.19 02:53:35 | 003,207,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mf.dll
[2011.06.19 02:53:35 | 001,866,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ExplorerFrame.dll
[2011.06.19 02:53:35 | 001,556,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RacEngn.dll
[2011.06.19 02:53:35 | 001,340,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\diagperf.dll
[2011.06.19 02:53:35 | 001,197,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskschd.dll
[2011.06.19 02:53:34 | 001,753,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vssapi.dll
[2011.06.19 02:53:34 | 001,334,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CertEnroll.dll
[2011.06.19 02:53:34 | 001,326,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\NaturalLanguage6.dll
[2011.06.19 02:53:33 | 003,860,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UIRibbon.dll
[2011.06.19 02:53:33 | 001,401,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssrch.dll
[2011.06.19 02:53:33 | 000,299,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mcupdate_GenuineIntel.dll
[2011.06.19 02:53:32 | 011,410,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmp.dll
[2011.06.19 02:53:31 | 003,027,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVCORE.DLL
[2011.06.19 02:53:31 | 000,295,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationHost.exe
[2011.06.19 02:53:31 | 000,099,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationHostProxy.dll
[2011.06.19 02:53:30 | 000,598,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spinstall.exe
[2011.06.19 02:53:30 | 000,320,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationHost.exe
[2011.06.19 02:53:30 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spreview.exe
[2011.06.19 02:53:30 | 000,274,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpdd.dll
[2011.06.19 02:53:30 | 000,162,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpudd.dll
[2011.06.19 02:53:30 | 000,109,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationHostProxy.dll
[2011.06.19 02:53:29 | 003,957,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinSAT.exe
[2011.06.19 02:53:29 | 001,975,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CertEnroll.dll
[2011.06.19 02:53:29 | 001,888,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVDECOD.DLL
[2011.06.19 02:53:29 | 001,548,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tquery.dll
[2011.06.19 02:53:28 | 002,067,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d9.dll
[2011.06.19 02:53:28 | 001,115,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RacEngn.dll
[2011.06.19 02:53:28 | 000,867,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SearchFolder.dll
[2011.06.19 02:53:27 | 005,066,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AuthFWSnapin.dll
[2011.06.19 02:53:27 | 005,066,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AuthFWSnapin.dll
[2011.06.19 02:53:27 | 001,161,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kernel32.dll
[2011.06.19 02:53:26 | 003,391,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dbgeng.dll
[2011.06.19 02:53:26 | 001,632,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dwmcore.dll
[2011.06.19 02:53:25 | 001,456,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll
[2011.06.19 02:53:25 | 000,079,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdvgumd32.dll
[2011.06.19 02:53:24 | 001,493,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ExplorerFrame.dll
[2011.06.19 02:53:24 | 000,958,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\actxprxy.dll
[2011.06.19 02:53:24 | 000,750,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TSWorkspace.dll
[2011.06.19 02:53:23 | 001,447,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2011.06.19 02:53:23 | 001,116,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstsc.exe
[2011.06.19 02:53:23 | 000,784,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gpprefcl.dll
[2011.06.19 02:53:23 | 000,419,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KernelBase.dll
[2011.06.19 02:53:22 | 001,244,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imapi2fs.dll
[2011.06.19 02:53:22 | 000,695,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netlogon.dll
[2011.06.19 02:53:22 | 000,244,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sqmapi.dll
[2011.06.19 02:53:21 | 001,900,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\setupapi.dll
[2011.06.19 02:53:21 | 001,828,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d9.dll
[2011.06.19 02:53:21 | 001,212,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\propsys.dll
[2011.06.19 02:53:21 | 000,787,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d11.dll
[2011.06.19 02:53:20 | 001,927,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\authui.dll
[2011.06.19 02:53:20 | 001,281,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\werconcpl.dll
[2011.06.19 02:53:20 | 000,720,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbc32.dll
[2011.06.19 02:53:20 | 000,505,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\taskschd.dll
[2011.06.19 02:53:20 | 000,464,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskeng.exe
[2011.06.19 02:53:20 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PushPrinterConnections.exe
[2011.06.19 02:53:19 | 001,049,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstsc.exe
[2011.06.19 02:53:19 | 001,008,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\user32.dll
[2011.06.19 02:53:19 | 000,376,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\netio.sys
[2011.06.19 02:53:18 | 001,796,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certmgr.dll
[2011.06.19 02:53:18 | 000,395,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\webio.dll
[2011.06.19 02:53:18 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wer.dll
[2011.06.19 02:53:18 | 000,342,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certcli.dll
[2011.06.19 02:53:18 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scavengeui.dll
[2011.06.19 02:53:18 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\LSCSHostPolicy.dll
[2011.06.19 02:53:17 | 001,371,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dwmcore.dll
[2011.06.19 02:53:17 | 000,955,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\localspl.dll
[2011.06.19 02:53:17 | 000,758,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PortableDeviceApi.dll
[2011.06.19 02:53:17 | 000,457,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdrm.dll
[2011.06.19 02:53:17 | 000,448,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shlwapi.dll
[2011.06.19 02:53:17 | 000,299,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsmf.dll
[2011.06.19 02:53:17 | 000,210,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncsi.dll
[2011.06.19 02:53:16 | 002,652,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netshell.dll
[2011.06.19 02:53:16 | 001,509,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdtctm.dll
[2011.06.19 02:53:16 | 000,573,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbc32.dll
[2011.06.19 02:53:16 | 000,519,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netcfgx.dll
[2011.06.19 02:53:16 | 000,479,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appmgr.dll
[2011.06.19 02:53:16 | 000,390,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winlogon.exe
[2011.06.19 02:53:16 | 000,299,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpshell.exe
[2011.06.19 02:53:16 | 000,295,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\framedynos.dll
[2011.06.19 02:53:16 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tcpmonui.dll
[2011.06.19 02:53:15 | 001,572,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\quartz.dll
[2011.06.19 02:53:15 | 001,328,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\quartz.dll
[2011.06.19 02:53:15 | 000,800,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\usp10.dll
[2011.06.19 02:53:15 | 000,658,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxgi.dll
[2011.06.19 02:53:15 | 000,597,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\TSWorkspace.dll
[2011.06.19 02:53:15 | 000,594,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\comdlg32.dll
[2011.06.19 02:53:15 | 000,481,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpps.dll
[2011.06.19 02:53:15 | 000,343,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsm.exe
[2011.06.19 02:53:15 | 000,342,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\apphelp.dll
[2011.06.19 02:53:15 | 000,297,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ws2_32.dll
[2011.06.19 02:53:14 | 002,543,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpdshext.dll
[2011.06.19 02:53:14 | 002,055,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Query.dll
[2011.06.19 02:53:14 | 000,897,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\azroles.dll
[2011.06.19 02:53:14 | 000,270,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tsmf.dll
[2011.06.19 02:53:14 | 000,266,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QAGENT.DLL
[2011.06.19 02:53:14 | 000,091,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3api.dll
[2011.06.19 02:53:13 | 002,522,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dbgeng.dll
[2011.06.19 02:53:13 | 001,098,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Vault.dll
[2011.06.19 02:53:13 | 000,778,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssvp.dll
[2011.06.19 02:53:13 | 000,758,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\samsrv.dll
[2011.06.19 02:53:13 | 000,751,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\win32spl.dll
[2011.06.19 02:53:13 | 000,653,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lpksetup.exe
[2011.06.19 02:53:13 | 000,345,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cmd.exe
[2011.06.19 02:53:13 | 000,281,600 | ---- | C] (Microsoft) -- C:\Windows\SysNative\DShowRdpFilter.dll
[2011.06.19 02:53:12 | 000,522,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d11.dll
[2011.06.19 02:53:12 | 000,210,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpclip.exe
[2011.06.19 02:53:11 | 001,619,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVDECOD.DLL
[2011.06.19 02:53:11 | 001,363,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Query.dll
[2011.06.19 02:53:11 | 001,190,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecs.dll
[2011.06.19 02:53:11 | 000,584,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\gpprefcl.dll
[2011.06.19 02:53:11 | 000,582,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sxs.dll
[2011.06.19 02:53:11 | 000,406,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netcfgx.dll
[2011.06.19 02:53:11 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\webio.dll
[2011.06.19 02:53:10 | 001,808,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pnidui.dll
[2011.06.19 02:53:10 | 000,584,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ipsmsnap.dll
[2011.06.19 02:53:10 | 000,473,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskcomp.dll
[2011.06.19 02:53:10 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfds.dll
[2011.06.19 02:53:10 | 000,312,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Wldap32.dll
[2011.06.19 02:53:10 | 000,272,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mcbuilder.exe
[2011.06.19 02:53:10 | 000,252,928 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\DShowRdpFilter.dll
[2011.06.19 02:53:10 | 000,240,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cscobj.dll
[2011.06.19 02:53:10 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\hgprint.dll
[2011.06.19 02:53:10 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\upnp.dll
[2011.06.19 02:53:09 | 002,151,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mmcndmgr.dll
[2011.06.19 02:53:09 | 001,792,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\authui.dll
[2011.06.19 02:53:09 | 001,158,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\webservices.dll
[2011.06.19 02:53:09 | 000,732,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imapi2fs.dll
[2011.06.19 02:53:09 | 000,341,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdrm.dll
[2011.06.19 02:53:09 | 000,167,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpendp.dll
[2011.06.19 02:53:09 | 000,049,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netfxperf.dll
[2011.06.19 02:53:08 | 000,933,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sqlsrv32.dll
[2011.06.19 02:53:08 | 000,547,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PortableDeviceApi.dll
[2011.06.19 02:53:08 | 000,403,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gdi32.dll
[2011.06.19 02:53:08 | 000,345,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fveapi.dll
[2011.06.19 02:53:08 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll
[2011.06.19 02:53:08 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsta.dll
[2011.06.19 02:53:08 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dot3api.dll
[2011.06.19 02:53:07 | 001,555,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certmgr.dll
[2011.06.19 02:53:07 | 001,441,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlanpref.dll
[2011.06.19 02:53:07 | 001,243,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMNetMgr.dll
[2011.06.19 02:53:07 | 001,009,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mcmde.dll
[2011.06.19 02:53:07 | 000,695,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapi.dll
[2011.06.19 02:53:07 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSNP.ax
[2011.06.19 02:53:07 | 000,285,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\schtasks.exe
[2011.06.19 02:53:07 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mcbuilder.exe
[2011.06.19 02:53:07 | 000,183,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prncache.dll
[2011.06.19 02:53:06 | 001,712,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xpsservices.dll
[2011.06.19 02:53:06 | 000,630,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\evr.dll
[2011.06.19 02:53:06 | 000,409,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\photowiz.dll
[2011.06.19 02:53:06 | 000,263,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vpnike.dll
[2011.06.19 02:53:06 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wintrust.dll
[2011.06.19 02:53:06 | 000,169,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tspubwmi.dll
[2011.06.19 02:53:06 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\userenv.dll
[2011.06.19 02:53:05 | 002,262,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SyncCenter.dll
[2011.06.19 02:53:05 | 001,082,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppobjs.dll
[2011.06.19 02:53:05 | 001,024,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpmde.dll
[2011.06.19 02:53:05 | 000,412,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2011.06.19 02:53:05 | 000,302,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cmd.exe
[2011.06.19 02:53:05 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AudioSes.dll
[2011.06.19 02:53:05 | 000,279,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\framedyn.dll
[2011.06.19 02:53:04 | 002,072,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMPEncEn.dll
[2011.06.19 02:53:04 | 000,605,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpeffects.dll
[2011.06.19 02:53:04 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2011.06.19 02:53:04 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfreadwrite.dll
[2011.06.19 02:53:04 | 000,200,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tscfgwmi.dll
[2011.06.19 02:53:04 | 000,178,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpinit.exe
[2011.06.19 02:53:03 | 000,551,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\localsec.dll
[2011.06.19 02:53:03 | 000,503,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imapi2.dll
[2011.06.19 02:53:03 | 000,501,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinSATAPI.dll
[2011.06.19 02:53:03 | 000,492,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\win32spl.dll
[2011.06.19 02:53:03 | 000,324,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netdiagfx.dll
[2011.06.19 02:53:03 | 000,298,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bcryptprimitives.dll
[2011.06.19 02:53:03 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfds.dll
[2011.06.19 02:53:03 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\stobject.dll
[2011.06.19 02:53:03 | 000,244,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vmicsvc.exe
[2011.06.19 02:53:03 | 000,206,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\framedynos.dll
[2011.06.19 02:53:03 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\credui.dll
[2011.06.19 02:53:03 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fde.dll
[2011.06.19 02:53:03 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdd.dll
[2011.06.19 02:53:03 | 000,140,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpendp.dll
[2011.06.19 02:53:02 | 000,762,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\azroles.dll
[2011.06.19 02:53:02 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\biocpl.dll
[2011.06.19 02:53:02 | 000,498,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cscui.dll
[2011.06.19 02:53:02 | 000,253,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tcpipcfg.dll
[2011.06.19 02:53:02 | 000,244,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spp.dll
[2011.06.19 02:53:02 | 000,223,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QSHVHOST.DLL
[2011.06.19 02:53:02 | 000,166,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetpp.dll
[2011.06.19 02:53:02 | 000,165,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netid.dll
[2011.06.19 02:53:02 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ncsi.dll
[2011.06.19 02:53:02 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\davclnt.dll
[2011.06.19 02:53:01 | 002,755,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\themeui.dll
[2011.06.19 02:53:01 | 002,746,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gameux.dll
[2011.06.19 02:53:01 | 001,050,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\printui.dll
[2011.06.19 02:53:01 | 000,571,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mspbda.dll
[2011.06.19 02:53:01 | 000,378,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msinfo32.exe
[2011.06.19 02:53:01 | 000,339,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\appmgr.dll
[2011.06.19 02:53:01 | 000,303,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scansetting.dll
[2011.06.19 02:53:01 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\credui.dll
[2011.06.19 02:53:00 | 000,552,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdri.dll
[2011.06.19 02:53:00 | 000,477,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PhotoScreensaver.scr
[2011.06.19 02:53:00 | 000,337,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\conhost.exe
[2011.06.19 02:53:00 | 000,307,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wusa.exe
[2011.06.19 02:53:00 | 000,145,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IPHLPAPI.DLL
[2011.06.19 02:53:00 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aitagent.exe
[2011.06.19 02:53:00 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\splwow64.exe
[2011.06.19 02:52:59 | 000,934,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FirewallControlPanel.dll
[2011.06.19 02:52:59 | 000,854,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dbghelp.dll
[2011.06.19 02:52:59 | 000,625,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mscms.dll
[2011.06.19 02:52:59 | 000,577,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AdmTmpl.dll
[2011.06.19 02:52:59 | 000,508,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxgi.dll
[2011.06.19 02:52:59 | 000,442,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winspool.drv
[2011.06.19 02:52:59 | 000,229,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsRasterService.dll
[2011.06.19 02:52:59 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfreadwrite.dll
[2011.06.19 02:52:59 | 000,187,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rpchttp.dll
[2011.06.19 02:52:59 | 000,172,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wintrust.dll
[2011.06.19 02:52:59 | 000,144,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\basecsp.dll
[2011.06.19 02:52:58 | 003,211,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msi.dll
[2011.06.19 02:52:58 | 000,488,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\evr.dll
[2011.06.19 02:52:58 | 000,418,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppwinob.dll
[2011.06.19 02:52:58 | 000,405,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wisptis.exe
[2011.06.19 02:52:58 | 000,305,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\taskcomp.dll
[2011.06.19 02:52:58 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ocsetup.exe
[2011.06.19 02:52:57 | 001,031,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcore.dll
[2011.06.19 02:52:57 | 000,780,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ci.dll
[2011.06.19 02:52:57 | 000,778,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sqlsrv32.dll
[2011.06.19 02:52:57 | 000,776,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\calc.exe
[2011.06.19 02:52:57 | 000,459,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DXP.dll
[2011.06.19 02:52:57 | 000,348,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eapp3hst.dll
[2011.06.19 02:52:57 | 000,335,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WinSATAPI.dll
[2011.06.19 02:52:57 | 000,207,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cfgmgr32.dll
[2011.06.19 02:52:57 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ocsetapi.dll
[2011.06.19 02:52:56 | 002,983,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIRibbon.dll
[2011.06.19 02:52:56 | 000,850,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mmsys.cpl
[2011.06.19 02:52:56 | 000,509,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntshrui.dll
[2011.06.19 02:52:56 | 000,303,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eapphost.dll
[2011.06.19 02:52:56 | 000,264,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\upnp.dll
[2011.06.19 02:52:56 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mprapi.dll
[2011.06.19 02:52:56 | 000,148,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\t2embed.dll
[2011.06.19 02:52:56 | 000,128,000 | ---- | C] (Microsoft) -- C:\Windows\SysNative\Robocopy.exe
[2011.06.19 02:52:56 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\thumbcache.dll
[2011.06.19 02:52:56 | 000,078,720 | ---- | C] (Hewlett-Packard Company) -- C:\Windows\SysNative\drivers\HpSAMD.sys
[2011.06.19 02:52:55 | 002,494,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netshell.dll
[2011.06.19 02:52:55 | 001,457,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DxpTaskSync.dll
[2011.06.19 02:52:55 | 001,160,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSMPEG2ENC.DLL
[2011.06.19 02:52:55 | 000,658,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PerfCenterCPL.dll
[2011.06.19 02:52:55 | 000,263,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\hal.dll
[2011.06.19 02:52:55 | 000,232,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scecli.dll
[2011.06.19 02:52:55 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ie4uinit.exe
[2011.06.19 02:52:55 | 000,128,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dwmredir.dll
[2011.06.19 02:52:54 | 002,851,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\themeui.dll
[2011.06.19 02:52:54 | 000,675,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DXPTaskRingtone.dll
[2011.06.19 02:52:54 | 000,568,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scrptadm.dll
[2011.06.19 02:52:54 | 000,429,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\puiobj.dll
[2011.06.19 02:52:54 | 000,235,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\onex.dll
[2011.06.19 02:52:54 | 000,179,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Classpnp.sys
[2011.06.19 02:52:54 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
[2011.06.19 02:52:54 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prncache.dll
[2011.06.19 02:52:54 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msasn1.dll
[2011.06.19 02:52:53 | 002,341,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msi.dll
[2011.06.19 02:52:53 | 001,363,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wdc.dll
[2011.06.19 02:52:53 | 000,932,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\printui.dll
[2011.06.19 02:52:53 | 000,352,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpeffects.dll
[2011.06.19 02:52:53 | 000,243,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll
[2011.06.19 02:52:53 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aaclient.dll
[2011.06.19 02:52:53 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\net1.exe
[2011.06.19 02:52:53 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rpchttp.dll
[2011.06.19 02:52:52 | 001,120,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sdengin2.dll
[2011.06.19 02:52:52 | 000,799,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msftedit.dll
[2011.06.19 02:52:52 | 000,475,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlangpui.dll
[2011.06.19 02:52:52 | 000,406,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scesrv.dll
[2011.06.19 02:52:52 | 000,246,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scansetting.dll
[2011.06.19 02:52:51 | 002,621,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wucltux.dll
[2011.06.19 02:52:51 | 002,504,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVCORE.DLL
[2011.06.19 02:52:51 | 001,689,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netcenter.dll
[2011.06.19 02:52:51 | 000,691,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\VAN.dll
[2011.06.19 02:52:51 | 000,483,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\StructuredQuery.dll
[2011.06.19 02:52:51 | 000,462,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wiadefui.dll
[2011.06.19 02:52:51 | 000,411,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlangpui.dll
[2011.06.19 02:52:51 | 000,273,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SndVol.exe
[2011.06.19 02:52:51 | 000,239,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dskquoui.dll
[2011.06.19 02:52:51 | 000,213,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MMDevAPI.dll
[2011.06.19 02:52:51 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\aaclient.dll
[2011.06.19 02:52:51 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\regapi.dll
[2011.06.19 02:52:51 | 000,080,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\davclnt.dll
[2011.06.19 02:52:51 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\samcli.dll
[2011.06.19 02:52:51 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wscapi.dll
[2011.06.19 02:52:50 | 002,311,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wpdshext.dll
[2011.06.19 02:52:50 | 001,750,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pnidui.dll
[2011.06.19 02:52:50 | 000,782,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\webservices.dll
[2011.06.19 02:52:50 | 000,515,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\timedate.cpl
[2011.06.19 02:52:50 | 000,464,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scrptadm.dll
[2011.06.19 02:52:50 | 000,340,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srchadmin.dll
[2011.06.19 02:52:50 | 000,248,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wksprt.exe
[2011.06.19 02:52:50 | 000,167,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QSHVHOST.DLL
[2011.06.19 02:52:50 | 000,124,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fde.dll
[2011.06.19 02:52:50 | 000,112,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\consent.exe
[2011.06.19 02:52:50 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\t2embed.dll
[2011.06.19 02:52:50 | 000,107,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QUTIL.DLL
[2011.06.19 02:52:50 | 000,088,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\setupcl.exe
[2011.06.19 02:52:49 | 002,146,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SyncCenter.dll
[2011.06.19 02:52:49 | 000,726,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appwiz.cpl
[2011.06.19 02:52:49 | 000,684,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TabletPC.cpl
[2011.06.19 02:52:49 | 000,560,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapi.dll
[2011.06.19 02:52:49 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rastls.dll
[2011.06.19 02:52:49 | 000,225,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netdiagfx.dll
[2011.06.19 02:52:49 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskhost.exe
[2011.06.19 02:52:49 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wscapi.dll
[2011.06.19 02:52:48 | 000,332,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\hgcpl.dll
[2011.06.19 02:52:48 | 000,300,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msconfig.exe
[2011.06.19 02:52:48 | 000,215,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netiohlp.dll
[2011.06.19 02:52:48 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cscobj.dll
[2011.06.19 02:52:48 | 000,134,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WinSCard.dll
[2011.06.19 02:52:48 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mimefilt.dll
[2011.06.19 02:52:47 | 001,538,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2011.06.19 02:52:47 | 000,830,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSMPEG2ENC.DLL
[2011.06.19 02:52:47 | 000,826,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpcore.dll
[2011.06.19 02:52:47 | 000,726,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AuxiliaryDisplayCpl.dll
[2011.06.19 02:52:47 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\clusapi.dll
[2011.06.19 02:52:47 | 000,166,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\basecsp.dll
[2011.06.19 02:52:47 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\winsta.dll
[2011.06.19 02:52:47 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fdeploy.dll
[2011.06.19 02:52:47 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsmproxy.dll
[2011.06.19 02:52:47 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbGDCoInstaller.dll
[2011.06.19 02:52:46 | 002,576,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\gameux.dll
[2011.06.19 02:52:46 | 000,633,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\riched20.dll
[2011.06.19 02:52:46 | 000,630,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DXPTaskRingtone.dll
[2011.06.19 02:52:46 | 000,392,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imapi2.dll
[2011.06.19 02:52:46 | 000,372,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mtxclu.dll
[2011.06.19 02:52:46 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2011.06.19 02:52:46 | 000,118,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dnscmmc.dll
[2011.06.19 02:52:44 | 000,186,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\logoncli.dll
[2011.06.19 02:52:44 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RpcRtRemote.dll
[2011.06.19 02:52:43 | 002,250,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SensorsCpl.dll
[2011.06.19 02:52:43 | 002,193,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\themecpl.dll
[2011.06.19 02:52:43 | 001,624,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPEncEn.dll
[2011.06.19 02:52:43 | 000,666,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssvp.dll
[2011.06.19 02:52:43 | 000,486,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\powercpl.dll
[2011.06.19 02:52:43 | 000,359,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eudcedit.exe
[2011.06.19 02:52:43 | 000,357,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sharemediacpl.dll
[2011.06.19 02:52:43 | 000,199,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\onex.dll
[2011.06.19 02:52:43 | 000,090,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nci.dll
[2011.06.19 02:52:43 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\hbaapi.dll
[2011.06.19 02:52:42 | 001,077,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Narrator.exe
[2011.06.19 02:52:42 | 000,777,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\autochk.exe
[2011.06.19 02:52:42 | 000,668,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autochk.exe
[2011.06.19 02:52:42 | 000,658,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autofmt.exe
[2011.06.19 02:52:42 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\comctl32.dll
[2011.06.19 02:52:42 | 000,355,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Faultrep.dll
[2011.06.19 02:52:42 | 000,232,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppcomapi.dll
[2011.06.19 02:52:42 | 000,188,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netjoin.dll
[2011.06.19 02:52:42 | 000,167,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msutb.dll
[2011.06.19 02:52:42 | 000,166,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netiohlp.dll
[2011.06.19 02:52:42 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cabview.dll
[2011.06.19 02:52:42 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IPHLPAPI.DLL
[2011.06.19 02:52:42 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll
[2011.06.19 02:52:42 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vpnikeapi.dll
[2011.06.19 02:52:42 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\proquota.exe
[2011.06.19 02:52:41 | 000,793,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\autoconv.exe
[2011.06.19 02:52:41 | 000,763,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\autofmt.exe
[2011.06.19 02:52:41 | 000,679,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autoconv.exe
[2011.06.19 02:52:41 | 000,611,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpd_ci.dll
[2011.06.19 02:52:41 | 000,455,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nshipsec.dll
[2011.06.19 02:52:41 | 000,441,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\powercpl.dll
[2011.06.19 02:52:41 | 000,400,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ipsmsnap.dll
[2011.06.19 02:52:41 | 000,303,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msinfo32.exe
[2011.06.19 02:52:41 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\srchadmin.dll
[2011.06.19 02:52:41 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eapphost.dll
[2011.06.19 02:52:41 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AudioSes.dll
[2011.06.19 02:52:41 | 000,181,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tcpipcfg.dll
[2011.06.19 02:52:41 | 000,179,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\schtasks.exe
[2011.06.19 02:52:41 | 000,168,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bcdsrv.dll
[2011.06.19 02:52:41 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shsetup.dll
[2011.06.19 02:52:41 | 000,126,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\audiodg.exe
[2011.06.19 02:52:41 | 000,116,224 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\SysNative\fms.dll
[2011.06.19 02:52:41 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\regapi.dll
[2011.06.19 02:52:41 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mimefilt.dll
[2011.06.19 02:52:40 | 001,466,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2011.06.19 02:52:40 | 001,264,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sdclt.exe
[2011.06.19 02:52:40 | 000,905,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mmsys.cpl
[2011.06.19 02:52:40 | 000,665,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AuxiliaryDisplayCpl.dll
[2011.06.19 02:52:40 | 000,414,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlanui.dll
[2011.06.19 02:52:40 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msihnd.dll
[2011.06.19 02:52:40 | 000,222,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wwanconn.dll
[2011.06.19 02:52:40 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\framedyn.dll
[2011.06.19 02:52:40 | 000,171,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\scsiport.sys
[2011.06.19 02:52:40 | 000,156,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prntvpt.dll
[2011.06.19 02:52:40 | 000,155,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscorier.dll
[2011.06.19 02:52:40 | 000,154,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mscorier.dll
[2011.06.19 02:52:40 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpsign.exe
[2011.06.19 02:52:39 | 001,227,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wdc.dll
[2011.06.19 02:52:39 | 001,066,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Display.dll
[2011.06.19 02:52:39 | 000,957,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mblctr.exe
[2011.06.19 02:52:39 | 000,861,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fontext.dll
[2011.06.19 02:52:39 | 000,749,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\batmeter.dll
[2011.06.19 02:52:39 | 000,624,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qedit.dll
[2011.06.19 02:52:39 | 000,478,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\timedate.cpl
[2011.06.19 02:52:39 | 000,211,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mprddm.dll
[2011.06.19 02:52:39 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSNP.ax
[2011.06.19 02:52:39 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QAGENT.DLL
[2011.06.19 02:52:39 | 000,117,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netid.dll
[2011.06.19 02:52:39 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidclass.sys
[2011.06.19 02:52:39 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\rdpvideominiport.sys
[2011.06.19 02:52:38 | 001,326,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanpref.dll
[2011.06.19 02:52:38 | 001,202,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DiagCpl.dll
[2011.06.19 02:52:38 | 001,003,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMNetMgr.dll
[2011.06.19 02:52:38 | 000,933,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Vault.dll
[2011.06.19 02:52:38 | 000,372,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rastls.dll
[2011.06.19 02:52:38 | 000,346,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\untfs.dll
[2011.06.19 02:52:38 | 000,307,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scesrv.dll
[2011.06.19 02:52:38 | 000,223,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpsrcwp.dll
[2011.06.19 02:52:38 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nci.dll
[2011.06.19 02:52:38 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rtutils.dll
[2011.06.19 02:52:38 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
[2011.06.19 02:52:37 | 002,217,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bootres.dll
[2011.06.19 02:52:37 | 000,812,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpccpl.dll
[2011.06.19 02:52:37 | 000,625,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\usercpl.dll
[2011.06.19 02:52:37 | 000,433,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MCEWMDRMNDBootstrap.dll
[2011.06.19 02:52:37 | 000,250,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ksproxy.ax
[2011.06.19 02:52:37 | 000,098,816 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\Robocopy.exe
[2011.06.19 02:52:37 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WSTPager.ax
[2011.06.19 02:52:36 | 001,400,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DxpTaskSync.dll
[2011.06.19 02:52:36 | 001,040,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Display.dll
[2011.06.19 02:52:36 | 000,227,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\taskmgr.exe
[2011.06.19 02:52:36 | 000,225,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SndVolSSO.dll
[2011.06.19 02:52:36 | 000,211,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rasppp.dll
[2011.06.19 02:52:36 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dot3cfg.dll
[2011.06.19 02:52:36 | 000,052,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\winhv.sys
[2011.06.19 02:52:35 | 000,416,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prnfldr.dll
[2011.06.19 02:52:35 | 000,352,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\termmgr.dll
[2011.06.19 02:52:35 | 000,324,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\puiobj.dll
[2011.06.19 02:52:35 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mtxclu.dll
[2011.06.19 02:52:35 | 000,279,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxdiagn.dll
         

Alt 28.06.2011, 11:01   #5
Jonas_
 
Werde auf andere Seiten gelenkt! (Google) - Standard

Werde auf andere Seiten gelenkt! (Google)



OTL zweiter Teil:

Code:
ATTFilter
[2011.06.19 02:52:35 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskmgr.exe
[2011.06.19 02:52:35 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssphtb.dll
[2011.06.19 02:52:35 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shdocvw.dll
[2011.06.19 02:52:35 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsRasterService.dll
[2011.06.19 02:52:35 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\hbaapi.dll
[2011.06.19 02:52:34 | 000,403,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\untfs.dll
[2011.06.19 02:52:34 | 000,300,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pdh.dll
[2011.06.19 02:52:34 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eudcedit.exe
[2011.06.19 02:52:34 | 000,268,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSAC3ENC.DLL
[2011.06.19 02:52:34 | 000,155,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ataport.sys
[2011.06.19 02:52:34 | 000,127,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\logoncli.dll
[2011.06.19 02:52:34 | 000,115,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WPDShServiceObj.dll
[2011.06.19 02:52:34 | 000,111,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shsetup.dll
[2011.06.19 02:52:34 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\proquota.exe
[2011.06.19 02:52:33 | 003,745,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\accessibilitycpl.dll
[2011.06.19 02:52:33 | 002,202,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SensorsCpl.dll
[2011.06.19 02:52:33 | 000,856,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\FirewallControlPanel.dll
[2011.06.19 02:52:33 | 000,649,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\appwiz.cpl
[2011.06.19 02:52:33 | 000,416,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wiadefui.dll
[2011.06.19 02:52:33 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sppcomapi.dll
[2011.06.19 02:52:33 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rasppp.dll
[2011.06.19 02:52:33 | 000,149,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorekmts.dll
[2011.06.19 02:52:33 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cabview.dll
[2011.06.19 02:52:32 | 002,157,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\themecpl.dll
[2011.06.19 02:52:32 | 000,413,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PhotoScreensaver.scr
[2011.06.19 02:52:32 | 000,366,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\zipfldr.dll
[2011.06.19 02:52:32 | 000,349,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\slui.exe
[2011.06.19 02:52:32 | 000,335,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msieftp.dll
[2011.06.19 02:52:32 | 000,312,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\hgcpl.dll
[2011.06.19 02:52:32 | 000,233,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\defaultlocationcpl.dll
[2011.06.19 02:52:32 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\FWPUCLNT.DLL
[2011.06.19 02:52:32 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dnscmmc.dll
[2011.06.19 02:52:31 | 000,828,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fontext.dll
[2011.06.19 02:52:31 | 000,769,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sud.dll
[2011.06.19 02:52:31 | 000,508,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DeviceCenter.dll
[2011.06.19 02:52:31 | 000,481,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscms.dll
[2011.06.19 02:52:31 | 000,429,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\localsec.dll
[2011.06.19 02:52:31 | 000,268,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mprddm.dll
[2011.06.19 02:52:31 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scecli.dll
[2011.06.19 02:52:31 | 000,104,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Mpeg2Data.ax
[2011.06.19 02:52:31 | 000,080,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscories.dll
[2011.06.19 02:52:30 | 002,146,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\networkmap.dll
[2011.06.19 02:52:30 | 001,065,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptui.dll
[2011.06.19 02:52:30 | 000,780,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ActionCenter.dll
[2011.06.19 02:52:30 | 000,600,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PerfCenterCPL.dll
[2011.06.19 02:52:30 | 000,600,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\usercpl.dll
[2011.06.19 02:52:30 | 000,503,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srcore.dll
[2011.06.19 02:52:30 | 000,410,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanui.dll
[2011.06.19 02:52:30 | 000,373,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\intl.cpl
[2011.06.19 02:52:30 | 000,366,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qdvd.dll
[2011.06.19 02:52:30 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskbarcpl.dll
[2011.06.19 02:52:30 | 000,221,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\OnLineIDCpl.dll
[2011.06.19 02:52:30 | 000,220,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SndVolSSO.dll
[2011.06.19 02:52:30 | 000,172,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\twext.dll
[2011.06.19 02:52:30 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\psisrndr.ax
[2011.06.19 02:52:29 | 001,644,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netcenter.dll
[2011.06.19 02:52:29 | 000,898,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\OobeFldr.dll
[2011.06.19 02:52:29 | 000,740,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\batmeter.dll
[2011.06.19 02:52:29 | 000,701,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dsuiext.dll
[2011.06.19 02:52:29 | 000,638,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\VAN.dll
[2011.06.19 02:52:29 | 000,514,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdvd.dll
[2011.06.19 02:52:29 | 000,509,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qedit.dll
[2011.06.19 02:52:29 | 000,472,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\azroleui.dll
[2011.06.19 02:52:29 | 000,346,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bcdedit.exe
[2011.06.19 02:52:29 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SndVol.exe
[2011.06.19 02:52:29 | 000,154,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\uxlib.dll
[2011.06.19 02:52:29 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\recovery.dll
[2011.06.19 02:52:29 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prntvpt.dll
[2011.06.19 02:52:29 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cca.dll
[2011.06.19 02:52:29 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\isoburn.exe
[2011.06.19 02:52:29 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpwsx.dll
[2011.06.19 02:52:29 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\w32tm.exe
[2011.06.19 02:52:28 | 003,727,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\accessibilitycpl.dll
[2011.06.19 02:52:28 | 000,762,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sdcpl.dll
[2011.06.19 02:52:28 | 000,721,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bthprops.cpl
[2011.06.19 02:52:28 | 000,516,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\main.cpl
[2011.06.19 02:52:28 | 000,419,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\systemcpl.dll
[2011.06.19 02:52:28 | 000,352,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwizeng.dll
[2011.06.19 02:52:28 | 000,345,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MediaMetadataHandler.dll
[2011.06.19 02:52:28 | 000,327,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\zipfldr.dll
[2011.06.19 02:52:28 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\azroleui.dll
[2011.06.19 02:52:28 | 000,304,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\efscore.dll
[2011.06.19 02:52:28 | 000,238,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\recdisc.exe
[2011.06.19 02:52:28 | 000,226,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSAC3ENC.DLL
[2011.06.19 02:52:28 | 000,200,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\syncui.dll
[2011.06.19 02:52:28 | 000,196,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\VBICodec.ax
[2011.06.19 02:52:28 | 000,193,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netplwiz.dll
[2011.06.19 02:52:28 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fdeploy.dll
[2011.06.19 02:52:28 | 000,058,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tzutil.exe
[2011.06.19 02:52:28 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\httpapi.dll
[2011.06.19 02:52:28 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sisbkup.dll
[2011.06.19 02:52:27 | 002,130,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\networkmap.dll
[2011.06.19 02:52:27 | 001,003,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cryptui.dll
[2011.06.19 02:52:27 | 000,549,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ActionCenterCPL.dll
[2011.06.19 02:52:27 | 000,460,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certcli.dll
[2011.06.19 02:52:27 | 000,451,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shwebsvc.dll
[2011.06.19 02:52:27 | 000,414,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlanmsm.dll
[2011.06.19 02:52:27 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Faultrep.dll
[2011.06.19 02:52:27 | 000,207,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sysclass.dll
[2011.06.19 02:52:27 | 000,186,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\adsldp.dll
[2011.06.19 02:52:27 | 000,184,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fvecpl.dll
[2011.06.19 02:52:27 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netjoin.dll
[2011.06.19 02:52:27 | 000,155,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\autoplay.dll
[2011.06.19 02:52:27 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncryptui.dll
[2011.06.19 02:52:27 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
[2011.06.19 02:52:26 | 000,755,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sud.dll
[2011.06.19 02:52:26 | 000,744,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ActionCenter.dll
[2011.06.19 02:52:26 | 000,445,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwizeng.dll
[2011.06.19 02:52:26 | 000,421,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\termmgr.dll
[2011.06.19 02:52:26 | 000,395,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prnfldr.dll
[2011.06.19 02:52:26 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wusa.exe
[2011.06.19 02:52:26 | 000,312,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MCEWMDRMNDBootstrap.dll
[2011.06.19 02:52:26 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msieftp.dll
[2011.06.19 02:52:26 | 000,295,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\photowiz.dll
[2011.06.19 02:52:26 | 000,266,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MediaMetadataHandler.dll
[2011.06.19 02:52:26 | 000,240,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MFPlay.dll
[2011.06.19 02:52:26 | 000,218,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\OnLineIDCpl.dll
[2011.06.19 02:52:26 | 000,185,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vdsutil.dll
[2011.06.19 02:52:26 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AuxiliaryDisplayServices.dll
[2011.06.19 02:52:26 | 000,097,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2011.06.19 02:52:26 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ksxbar.ax
[2011.06.19 02:52:25 | 000,641,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msscp.dll
[2011.06.19 02:52:25 | 000,474,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sysmon.ocx
[2011.06.19 02:52:25 | 000,389,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sysmon.ocx
[2011.06.19 02:52:25 | 000,313,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ReAgent.dll
[2011.06.19 02:52:25 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rstrui.exe
[2011.06.19 02:52:25 | 000,279,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sethc.exe
[2011.06.19 02:52:25 | 000,271,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iprtrmgr.dll
[2011.06.19 02:52:25 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\defaultlocationcpl.dll
[2011.06.19 02:52:25 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SmartcardCredentialProvider.dll
[2011.06.19 02:52:25 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbccp32.dll
[2011.06.19 02:52:25 | 000,129,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntlanman.dll
[2011.06.19 02:52:25 | 000,082,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3cfg.dll
[2011.06.19 02:52:25 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ftp.exe
[2011.06.19 02:52:24 | 000,692,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\bthprops.cpl
[2011.06.19 02:52:24 | 000,446,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sqlcese30.dll
[2011.06.19 02:52:24 | 000,428,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shwebsvc.dll
[2011.06.19 02:52:24 | 000,345,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\intl.cpl
[2011.06.19 02:52:24 | 000,333,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ssText3d.scr
[2011.06.19 02:52:24 | 000,321,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\unimdm.tsp
[2011.06.19 02:52:24 | 000,319,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbcjt32.dll
[2011.06.19 02:52:24 | 000,282,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iTVData.dll
[2011.06.19 02:52:24 | 000,281,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iprtrmgr.dll
[2011.06.19 02:52:24 | 000,212,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbctrac.dll
[2011.06.19 02:52:24 | 000,205,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\efscore.dll
[2011.06.19 02:52:24 | 000,148,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ifsutil.dll
[2011.06.19 02:52:24 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2011.06.19 02:52:24 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2011.06.19 02:52:24 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UserAccountControlSettings.dll
[2011.06.19 02:52:24 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpd3d.dll
[2011.06.19 02:52:24 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wwanprotdim.dll
[2011.06.19 02:52:24 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsgqec.dll
[2011.06.19 02:52:24 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2011.06.19 02:52:24 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sisbkup.dll
[2011.06.19 02:52:23 | 000,781,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmdrmsdk.dll
[2011.06.19 02:52:23 | 000,738,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpmde.dll
[2011.06.19 02:52:23 | 000,537,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ActionCenterCPL.dll
[2011.06.19 02:52:23 | 000,495,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drmmgrtn.dll
[2011.06.19 02:52:23 | 000,484,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DeviceCenter.dll
[2011.06.19 02:52:23 | 000,159,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\syncui.dll
[2011.06.19 02:52:23 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\autoplay.dll
[2011.06.19 02:52:23 | 000,128,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srvcli.dll
[2011.06.19 02:52:23 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntlanman.dll
[2011.06.19 02:52:23 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\slwga.dll
[2011.06.19 02:52:22 | 000,859,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\OobeFldr.dll
[2011.06.19 02:52:22 | 000,656,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nshwfp.dll
[2011.06.19 02:52:22 | 000,473,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\riched20.dll
[2011.06.19 02:52:22 | 000,410,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\systemcpl.dll
[2011.06.19 02:52:22 | 000,344,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntprint.dll
[2011.06.19 02:52:22 | 000,297,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntprint.dll
[2011.06.19 02:52:22 | 000,270,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sethc.exe
[2011.06.19 02:52:22 | 000,255,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wavemsp.dll
[2011.06.19 02:52:22 | 000,225,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DevicePairingFolder.dll
[2011.06.19 02:52:22 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dskquoui.dll
[2011.06.19 02:52:22 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bcdboot.exe
[2011.06.19 02:52:22 | 000,173,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\powercfg.cpl
[2011.06.19 02:52:22 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SmartcardCredentialProvider.dll
[2011.06.19 02:52:22 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\NAPHLPR.DLL
[2011.06.19 02:52:22 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nslookup.exe
[2011.06.19 02:52:22 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WSTPager.ax
[2011.06.19 02:52:22 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\acppage.dll
[2011.06.19 02:52:22 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rtutils.dll
[2011.06.19 02:52:21 | 001,672,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\networkexplorer.dll
[2011.06.19 02:52:21 | 000,743,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\blackbox.dll
[2011.06.19 02:52:21 | 000,270,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srrstr.dll
[2011.06.19 02:52:21 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\activeds.dll
[2011.06.19 02:52:21 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ksproxy.ax
[2011.06.19 02:52:21 | 000,182,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpsrcwp.dll
[2011.06.19 02:52:21 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netplwiz.dll
[2011.06.19 02:52:21 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\NAPHLPR.DLL
[2011.06.19 02:52:21 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppnp.dll
[2011.06.19 02:52:21 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\migisol.dll
[2011.06.19 02:52:21 | 000,093,696 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\SysWow64\fms.dll
[2011.06.19 02:52:20 | 001,133,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdosys.dll
[2011.06.19 02:52:20 | 000,805,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cdosys.dll
[2011.06.19 02:52:20 | 000,606,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dfrgui.exe
[2011.06.19 02:52:20 | 000,592,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msftedit.dll
[2011.06.19 02:52:20 | 000,346,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nshipsec.dll
[2011.06.19 02:52:20 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ReAgent.dll
[2011.06.19 02:52:20 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wavemsp.dll
[2011.06.19 02:52:20 | 000,217,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinSCard.dll
[2011.06.19 02:52:20 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationSettings.exe
[2011.06.19 02:52:20 | 000,153,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\remotepg.dll
[2011.06.19 02:52:20 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kstvtune.ax
[2011.06.19 02:52:20 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cabinet.dll
[2011.06.19 02:52:20 | 000,086,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\isoburn.exe
[2011.06.19 02:52:20 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wkscli.dll
[2011.06.19 02:52:20 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\httpapi.dll
[2011.06.19 02:52:19 | 000,840,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\blackbox.dll
[2011.06.19 02:52:19 | 000,685,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dsuiext.dll
[2011.06.19 02:52:19 | 000,636,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmdrmdev.dll
[2011.06.19 02:52:19 | 000,594,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wvc.dll
[2011.06.19 02:52:19 | 000,586,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dfrgui.exe
[2011.06.19 02:52:19 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanmsm.dll
[2011.06.19 02:52:19 | 000,358,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpdxm.dll
[2011.06.19 02:52:19 | 000,333,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3ui.dll
[2011.06.19 02:52:19 | 000,293,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wsqmcons.exe
[2011.06.19 02:52:19 | 000,197,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ocsetup.exe
[2011.06.19 02:52:19 | 000,178,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuwebv.dll
[2011.06.19 02:52:19 | 000,164,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuwebv.dll
[2011.06.19 02:52:19 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\net1.exe
[2011.06.19 02:52:19 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wsnmp32.dll
[2011.06.19 02:52:19 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ftp.exe
[2011.06.19 02:52:19 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tzutil.exe
[2011.06.19 02:52:19 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WerFaultSecure.exe
[2011.06.19 02:52:18 | 000,899,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Bubbles.scr
[2011.06.19 02:52:18 | 000,444,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wvc.dll
[2011.06.19 02:52:18 | 000,438,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AdmTmpl.dll
[2011.06.19 02:52:18 | 000,406,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wimgapi.dll
[2011.06.19 02:52:18 | 000,281,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\unimdm.tsp
[2011.06.19 02:52:18 | 000,258,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dxgmms1.sys
[2011.06.19 02:52:18 | 000,209,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstask.dll
[2011.06.19 02:52:18 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfps.dll
[2011.06.19 02:52:18 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\twext.dll
[2011.06.19 02:52:18 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mapistub.dll
[2011.06.19 02:52:18 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mapi32.dll
[2011.06.19 02:52:18 | 000,040,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wtsapi32.dll
[2011.06.19 02:52:18 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbRedirectionGroupPolicyControl.exe
[2011.06.19 02:52:17 | 001,911,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\OpcServices.dll
[2011.06.19 02:52:17 | 000,497,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\main.cpl
[2011.06.19 02:52:17 | 000,363,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\diskraid.exe
[2011.06.19 02:52:17 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qasf.dll
[2011.06.19 02:52:17 | 000,195,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2011.06.19 02:52:17 | 000,190,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qcap.dll
[2011.06.19 02:52:17 | 000,182,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFPlatform.dll
[2011.06.19 02:52:17 | 000,180,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ifsutil.dll
[2011.06.19 02:52:17 | 000,153,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2011.06.19 02:52:17 | 000,118,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\uxlib.dll
[2011.06.19 02:52:17 | 000,113,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setupugc.exe
[2011.06.19 02:52:17 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\unimdmat.dll
[2011.06.19 02:52:17 | 000,051,200 | ---- | C] (Twain Working Group) -- C:\Windows\twain_32.dll
[2011.06.19 02:52:17 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iscsium.dll
[2011.06.19 02:52:17 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\slwga.dll
[2011.06.19 02:52:16 | 000,616,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmdrmsdk.dll
[2011.06.19 02:52:16 | 000,573,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10level9.dll
[2011.06.19 02:52:16 | 000,294,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsAnytimeUpgradeResults.exe
[2011.06.19 02:52:16 | 000,293,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ssText3d.scr
[2011.06.19 02:52:16 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\audiodev.dll
[2011.06.19 02:52:16 | 000,242,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Mystify.scr
[2011.06.19 02:52:16 | 000,241,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Ribbons.scr
[2011.06.19 02:52:16 | 000,230,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\clusapi.dll
[2011.06.19 02:52:16 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpencom.dll
[2011.06.19 02:52:16 | 000,172,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\perfmon.exe
[2011.06.19 02:52:16 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpshell.dll
[2011.06.19 02:52:16 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msvfw32.dll
[2011.06.19 02:52:16 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nslookup.exe
[2011.06.19 02:52:16 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mciavi32.dll
[2011.06.19 02:52:16 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imgutil.dll
[2011.06.19 02:52:16 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\muifontsetup.dll
[2011.06.19 02:52:15 | 001,087,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dbghelp.dll
[2011.06.19 02:52:15 | 000,623,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSAPI.dll
[2011.06.19 02:52:15 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msscp.dll
[2011.06.19 02:52:15 | 000,327,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wimserv.exe
[2011.06.19 02:52:15 | 000,276,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\diskraid.exe
[2011.06.19 02:52:15 | 000,254,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qasf.dll
[2011.06.19 02:52:15 | 000,213,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ActionQueue.dll
[2011.06.19 02:52:15 | 000,211,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DevicePairingFolder.dll
[2011.06.19 02:52:15 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpencom.dll
[2011.06.19 02:52:15 | 000,157,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\perfmon.exe
[2011.06.19 02:52:15 | 000,125,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inseng.dll
[2011.06.19 02:52:15 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tlscsp.dll
[2011.06.19 02:52:15 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\umb.dll
[2011.06.19 02:52:15 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\NAPCRYPT.DLL
[2011.06.19 02:52:15 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\acppage.dll
[2011.06.19 02:52:15 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AzSqlExt.dll
[2011.06.19 02:52:15 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netutils.dll
[2011.06.19 02:52:14 | 000,402,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drmmgrtn.dll
[2011.06.19 02:52:14 | 000,337,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\raschap.dll
[2011.06.19 02:52:14 | 000,318,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\raschap.dll
[2011.06.19 02:52:14 | 000,215,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpdwcn.dll
[2011.06.19 02:52:14 | 000,202,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\input.dll
[2011.06.19 02:52:14 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\remotepg.dll
[2011.06.19 02:52:14 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wiavideo.dll
[2011.06.19 02:52:14 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QUTIL.DLL
[2011.06.19 02:52:14 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\bfsvc.exe
[2011.06.19 02:52:14 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\runonce.exe
[2011.06.19 02:52:14 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\NAPCRYPT.DLL
[2011.06.19 02:52:13 | 001,232,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMADMOD.DLL
[2011.06.19 02:52:13 | 001,111,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\onexui.dll
[2011.06.19 02:52:13 | 000,666,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVSDECD.DLL
[2011.06.19 02:52:13 | 000,299,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpdxm.dll
[2011.06.19 02:52:13 | 000,219,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iTVData.dll
[2011.06.19 02:52:13 | 000,190,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vdsbas.dll
[2011.06.19 02:52:13 | 000,174,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ocsetapi.dll
[2011.06.19 02:52:13 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MdSched.exe
[2011.06.19 02:52:13 | 000,133,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Kswdmcap.ax
[2011.06.19 02:52:13 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccp32.dll
[2011.06.19 02:52:13 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UserAccountControlSettings.dll
[2011.06.19 02:52:13 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PrintIsolationProxy.dll
[2011.06.19 02:52:13 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vpnikeapi.dll
[2011.06.19 02:52:13 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\syssetup.dll
[2011.06.19 02:52:12 | 000,395,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nltest.exe
[2011.06.19 02:52:12 | 000,242,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eapp3hst.dll
[2011.06.19 02:52:12 | 000,238,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstask.dll
[2011.06.19 02:52:12 | 000,232,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bitsadmin.exe
[2011.06.19 02:52:12 | 000,210,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxdiagn.dll
[2011.06.19 02:52:12 | 000,198,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wpdwcn.dll
[2011.06.19 02:52:12 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MFPlay.dll
[2011.06.19 02:52:12 | 000,160,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vdsbas.dll
[2011.06.19 02:52:12 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\rmcast.sys
[2011.06.19 02:52:12 | 000,096,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
[2011.06.19 02:52:12 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\logagent.exe
[2011.06.19 02:52:12 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2011.06.19 02:52:12 | 000,050,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\runonce.exe
[2011.06.19 02:52:11 | 000,527,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmdrmnet.dll
[2011.06.19 02:52:11 | 000,507,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmdrmdev.dll
[2011.06.19 02:52:11 | 000,489,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10level9.dll
[2011.06.19 02:52:11 | 000,431,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WPDSp.dll
[2011.06.19 02:52:11 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssphtb.dll
[2011.06.19 02:52:11 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\bitsadmin.exe
[2011.06.19 02:52:11 | 000,181,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qcap.dll
[2011.06.19 02:52:11 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shacct.dll
[2011.06.19 02:52:11 | 000,124,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QSVRMGMT.DLL
[2011.06.19 02:52:11 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_ssp_isv.dll
[2011.06.19 02:52:11 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shacct.dll
[2011.06.19 02:52:11 | 000,105,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpshell.dll
[2011.06.19 02:52:11 | 000,104,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\logman.exe
[2011.06.19 02:52:11 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wudriver.dll
[2011.06.19 02:52:11 | 000,087,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wudriver.dll
[2011.06.19 02:52:11 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tabcal.exe
[2011.06.19 02:52:11 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vss_ps.dll
[2011.06.19 02:52:11 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cscapi.dll
[2011.06.19 02:52:11 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\lsmproxy.dll
[2011.06.19 02:52:10 | 001,160,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\OpcServices.dll
[2011.06.19 02:52:10 | 000,978,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMSPDMOD.DLL
[2011.06.19 02:52:10 | 000,878,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Bubbles.scr
[2011.06.19 02:52:10 | 000,435,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PortableDeviceStatus.dll
[2011.06.19 02:52:10 | 000,350,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WPDSp.dll
[2011.06.19 02:52:10 | 000,325,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msnetobj.dll
[2011.06.19 02:52:10 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sqlcese30.dll
[2011.06.19 02:52:10 | 000,250,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qdv.dll
[2011.06.19 02:52:10 | 000,236,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pdh.dll
[2011.06.19 02:52:10 | 000,224,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PortableDeviceSyncProvider.dll
[2011.06.19 02:52:10 | 000,183,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PortableDeviceSyncProvider.dll
[2011.06.19 02:52:10 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mprapi.dll
[2011.06.19 02:52:10 | 000,137,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CscMig.dll
[2011.06.19 02:52:10 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_ssp.dll
[2011.06.19 02:52:10 | 000,098,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2011.06.19 02:52:10 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\kstvtune.ax
[2011.06.19 02:52:10 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\logman.exe
[2011.06.19 02:52:10 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spbcd.dll
[2011.06.19 02:52:10 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ncryptui.dll
[2011.06.19 02:52:10 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\unimdmat.dll
[2011.06.19 02:52:10 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpd3d.dll
[2011.06.19 02:52:10 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vmictimeprovider.dll
[2011.06.19 02:52:10 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iscsium.dll
[2011.06.19 02:52:09 | 000,427,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PortableDeviceStatus.dll
[2011.06.19 02:52:09 | 000,392,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMPhoto.dll
[2011.06.19 02:52:09 | 000,318,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPhoto.dll
[2011.06.19 02:52:09 | 000,313,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dot3ui.dll
[2011.06.19 02:52:09 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Mystify.scr
[2011.06.19 02:52:09 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Ribbons.scr
[2011.06.19 02:52:09 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbctrac.dll
[2011.06.19 02:52:09 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\powercfg.cpl
[2011.06.19 02:52:09 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\desk.cpl
[2011.06.19 02:52:09 | 000,121,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fphc.dll
[2011.06.19 02:52:09 | 000,099,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QSVRMGMT.DLL
[2011.06.19 02:52:09 | 000,089,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\amstream.dll
[2011.06.19 02:52:09 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\olethk32.dll
[2011.06.19 02:52:09 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mapistub.dll
[2011.06.19 02:52:09 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mapi32.dll
[2011.06.19 02:52:09 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Mpeg2Data.ax
[2011.06.19 02:52:09 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2011.06.19 02:52:09 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\takeown.exe
[2011.06.19 02:52:09 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PnPUnattend.exe
[2011.06.19 02:52:09 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tsgqec.dll
[2011.06.19 02:52:09 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\utildll.dll
[2011.06.19 02:52:08 | 001,148,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IMJP10.IME
[2011.06.19 02:52:08 | 000,902,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMADMOD.DLL
[2011.06.19 02:52:08 | 000,541,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVSDECD.DLL
[2011.06.19 02:52:08 | 000,436,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmdrmnet.dll
[2011.06.19 02:52:08 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sqmapi.dll
[2011.06.19 02:52:08 | 000,155,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imagehlp.dll
[2011.06.19 02:52:08 | 000,153,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\VBICodec.ax
[2011.06.19 02:52:08 | 000,144,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\EhStorAPI.dll
[2011.06.19 02:52:08 | 000,115,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dot3msm.dll
[2011.06.19 02:52:08 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wiavideo.dll
[2011.06.19 02:52:08 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Kswdmcap.ax
[2011.06.19 02:52:08 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fphc.dll
[2011.06.19 02:52:08 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\avifil32.dll
[2011.06.19 02:52:08 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netapi32.dll
[2011.06.19 02:52:08 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\takeown.exe
[2011.06.19 02:52:08 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shimgvw.dll
[2011.06.19 02:52:08 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\HotStartUserAgent.dll
[2011.06.19 02:52:07 | 000,681,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFx.dll
[2011.06.19 02:52:07 | 000,283,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdv.dll
[2011.06.19 02:52:07 | 000,265,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msnetobj.dll
[2011.06.19 02:52:07 | 000,226,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFHost.exe
[2011.06.19 02:52:07 | 000,128,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\EhStorAPI.dll
[2011.06.19 02:52:07 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sppinst.dll
[2011.06.19 02:52:07 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cmstp.exe
[2011.06.19 02:52:07 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\QCLIPROV.DLL
[2011.06.19 02:52:07 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisrndr.ax
[2011.06.19 02:52:07 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MSDvbNP.ax
[2011.06.19 02:52:07 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\QCLIPROV.DLL
[2011.06.19 02:52:07 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CertPolEng.dll
[2011.06.19 02:52:07 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WavDest.dll
[2011.06.19 02:52:07 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\djoin.exe
[2011.06.19 02:52:07 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nrpsrv.dll
[2011.06.19 02:52:06 | 000,739,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMSPDMOD.DLL
[2011.06.19 02:52:06 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msorcl32.dll
[2011.06.19 02:52:06 | 000,166,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\diskpart.exe
[2011.06.19 02:52:06 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iscsicli.exe
[2011.06.19 02:52:06 | 000,143,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mydocs.dll
[2011.06.19 02:52:06 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setupcln.dll
[2011.06.19 02:52:06 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mobsync.exe
[2011.06.19 02:52:06 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cmstp.exe
[2011.06.19 02:52:06 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fdProxy.dll
[2011.06.19 02:52:06 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MuiUnattend.exe
[2011.06.19 02:52:06 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cca.dll
[2011.06.19 02:52:06 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\g711codc.ax
[2011.06.19 02:52:06 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vfwwdm32.dll
[2011.06.19 02:52:06 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wsnmp32.dll
[2011.06.19 02:52:06 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MultiDigiMon.exe
[2011.06.19 02:52:06 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuauclt.exe
[2011.06.19 02:52:06 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pdhui.dll
[2011.06.19 02:52:06 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\relog.exe
[2011.06.19 02:52:06 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AzSqlExt.dll
[2011.06.19 02:52:06 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sscore.dll
[2011.06.19 02:52:05 | 000,306,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_ssp.exe
[2011.06.19 02:52:05 | 000,305,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_ssp_isv.exe
[2011.06.19 02:52:05 | 000,194,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\itircl.dll
[2011.06.19 02:52:05 | 000,144,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iscsicli.exe
[2011.06.19 02:52:05 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mydocs.dll
[2011.06.19 02:52:05 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\diskpart.exe
[2011.06.19 02:52:05 | 000,130,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\BdeHdCfg.exe
[2011.06.19 02:52:05 | 000,128,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\desk.cpl
[2011.06.19 02:52:05 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dot3msm.dll
[2011.06.19 02:52:05 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\amstream.dll
[2011.06.19 02:52:05 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rastapi.dll
[2011.06.19 02:52:05 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spbcd.dll
[2011.06.19 02:52:05 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\browcli.dll
[2011.06.19 02:52:05 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wkscli.dll
[2011.06.19 02:52:05 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbisurf.ax
[2011.06.19 02:52:05 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\relog.exe
[2011.06.19 02:52:05 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdmo.dll
[2011.06.19 02:52:05 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netiougc.exe
[2011.06.19 02:52:05 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netbtugc.exe
[2011.06.19 02:52:05 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\BWUnpairElevated.dll
[2011.06.19 02:52:04 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\itircl.dll
[2011.06.19 02:52:04 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp_isv.dll
[2011.06.19 02:52:04 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp.dll
[2011.06.19 02:52:04 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\resutils.dll
[2011.06.19 02:52:04 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CertPolEng.dll
[2011.06.19 02:52:04 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\syssetup.dll
[2011.06.19 02:52:03 | 001,027,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IMJP10.IME
[2011.06.19 02:52:03 | 000,434,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSTIFF.dll
[2011.06.19 02:52:03 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ksxbar.ax
[2011.06.19 02:52:03 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapp.exe
[2011.06.19 02:52:02 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpps.dll
[2011.06.19 02:52:02 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eappgnui.dll
[2011.06.19 02:52:02 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qprocess.exe
[2011.06.19 02:52:01 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mciqtz32.dll
[2011.06.19 02:52:01 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\choice.exe
[2011.06.19 02:52:00 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imagehlp.dll
[2011.06.19 02:52:00 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\findstr.exe
[2011.06.19 02:52:00 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapp.exe
[2011.06.19 02:52:00 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WerFaultSecure.exe
[2011.06.19 02:51:59 | 001,080,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\onexui.dll
[2011.06.19 02:51:59 | 000,280,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp.exe
[2011.06.19 02:51:59 | 000,278,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp_isv.exe
[2011.06.19 02:51:59 | 000,145,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppc.dll
[2011.06.19 02:51:59 | 000,101,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mobsync.exe
[2011.06.19 02:51:59 | 000,094,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eappgnui.dll
[2011.06.19 02:51:59 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tlscsp.dll
[2011.06.19 02:51:59 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\findstr.exe
[2011.06.19 02:51:59 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\luainstall.dll
[2011.06.19 02:51:59 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mciqtz32.dll
[2011.06.19 02:51:59 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\chglogon.exe
[2011.06.19 02:51:59 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ReAgentc.exe
[2011.06.19 02:51:58 | 000,121,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sppc.dll
[2011.06.19 02:51:58 | 000,082,944 | ---- | C] (Radius Inc.) -- C:\Windows\SysWow64\iccvid.dll
[2011.06.19 02:51:58 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\manage-bde.exe
[2011.06.19 02:51:58 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cabinet.dll
[2011.06.19 02:51:58 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetmib1.dll
[2011.06.19 02:51:58 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSDvbNP.ax
[2011.06.19 02:51:58 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\repair-bde.exe
[2011.06.19 02:51:58 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wdiasqmmodule.dll
[2011.06.19 02:51:58 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shimgvw.dll
[2011.06.19 02:51:58 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\schedcli.dll
[2011.06.19 02:51:58 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qappsrv.exe
[2011.06.19 02:51:58 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spopk.dll
[2011.06.19 02:51:58 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spopk.dll
[2011.06.19 02:51:58 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\muifontsetup.dll
[2011.06.19 02:51:57 | 000,147,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RDPENCDD.dll
[2011.06.19 02:51:57 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFCoinstaller.dll
[2011.06.19 02:51:57 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\luainstall.dll
[2011.06.19 02:51:57 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\unlodctr.exe
[2011.06.19 02:51:57 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\profprov.dll
[2011.06.19 02:51:57 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdmo.dll
[2011.06.19 02:51:57 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\chgport.exe
[2011.06.19 02:51:56 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vmicres.dll
[2011.06.19 02:51:56 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbcconf.dll
[2011.06.19 02:51:56 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetmib1.dll
[2011.06.19 02:51:56 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\g711codc.ax
[2011.06.19 02:51:56 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vmstorfltres.dll
[2011.06.19 02:51:56 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vbisurf.ax
[2011.06.19 02:51:56 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tskill.exe
[2011.06.19 02:51:56 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tscon.exe
[2011.06.19 02:51:56 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsdiscon.exe
[2011.06.19 02:51:56 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rwinsta.exe
[2011.06.19 02:51:56 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdprefdrvapi.dll
[2011.06.19 02:51:56 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\logoff.exe
[2011.06.19 02:51:56 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\chgusr.exe
[2011.06.19 02:51:56 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fixmapi.exe
[2011.06.19 02:51:55 | 001,164,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIRibbonRes.dll
[2011.06.19 02:51:55 | 001,164,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UIRibbonRes.dll
[2011.06.19 02:51:55 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vmbusres.dll
[2011.06.19 02:51:55 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSMON.dll
[2011.06.19 02:51:55 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\browcli.dll
[2011.06.19 02:51:55 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbcconf.dll
[2011.06.19 02:51:55 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wups.dll
[2011.06.19 02:51:55 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\LogonUI.exe
[2011.06.19 02:51:55 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\tdi.sys
[2011.06.19 02:51:55 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\elsTrans.dll
[2011.06.19 02:51:55 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TRAPI.dll
[2011.06.19 02:51:55 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shadow.exe
[2011.06.19 02:51:55 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\perfts.dll
[2011.06.19 02:51:55 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe
[2011.06.19 02:51:54 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\napdsnap.dll
[2011.06.19 02:51:54 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dsauth.dll
[2011.06.19 02:51:54 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdprefdrvapi.dll
[2011.06.19 02:51:54 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\elsTrans.dll
[2011.06.19 02:51:54 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSUNATD.exe
[2011.06.19 02:51:54 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\reset.exe
[2011.06.19 02:51:54 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\change.exe
[2011.06.19 02:51:54 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\query.exe
[2011.06.19 02:51:54 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2011.06.19 02:51:53 | 000,457,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imkr80.ime
[2011.06.19 02:51:53 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\napdsnap.dll
[2011.06.19 02:51:53 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbrpm.sys
[2011.06.19 02:51:53 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dsauth.dll
[2011.06.19 02:51:53 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cscdll.dll
[2011.06.19 02:51:53 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bitsperf.dll
[2011.06.19 02:51:53 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\TRAPI.dll
[2011.06.19 02:51:53 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\bitsperf.dll
[2011.06.19 02:51:53 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\schedcli.dll
[2011.06.19 02:51:52 | 000,482,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
[2011.06.19 02:51:52 | 000,430,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imkr80.ime
[2011.06.19 02:51:52 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups2.dll
[2011.06.19 02:51:52 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups.dll
[2011.06.19 02:51:52 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shgina.dll
[2011.06.19 02:51:52 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wsdchngr.dll
[2011.06.19 02:51:52 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wsdchngr.dll
[2011.06.19 02:51:52 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shgina.dll
[2011.06.19 02:51:52 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sscore.dll
[2011.06.19 02:51:52 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\riched32.dll
[2011.06.19 02:51:51 | 000,361,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64win.dll
[2011.06.19 02:51:51 | 000,032,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\USBCAMD2.sys
[2011.06.19 02:51:51 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wshirda.dll
[2011.06.19 02:51:50 | 000,386,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2011.06.19 02:51:50 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64cpu.dll
[2011.06.19 02:51:49 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vmbuspipe.dll
[2011.06.19 02:51:49 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wshirda.dll
[2011.06.19 02:51:49 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\riched32.dll
[2011.06.19 02:51:49 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcfgex.dll
[2011.06.19 02:51:49 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwmp.dll
[2011.06.19 02:51:48 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\VmbusCoinstaller.dll
[2011.06.19 02:51:48 | 000,129,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\VmdCoinstall.dll
[2011.06.19 02:51:48 | 000,128,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IcCoinstall.dll
[2011.06.19 02:51:48 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\C_ISCII.DLL
[2011.06.19 02:51:48 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shunimpl.dll
[2011.06.19 02:51:48 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\C_ISCII.DLL
[2011.06.19 02:51:48 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwmp.dll
[2011.06.19 02:51:48 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdxm.ocx
[2011.06.19 02:51:48 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxmasf.dll
[2011.06.19 02:51:48 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-ums-l1-1-0.dll
[2011.06.19 02:51:47 | 012,625,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmploc.DLL
[2011.06.19 02:51:47 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmploc.DLL
[2011.06.19 02:51:47 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shunimpl.dll
[2011.06.19 02:51:47 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTUQ.DLL
[2011.06.19 02:51:47 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTUF.DLL
[2011.06.19 02:51:47 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDSG.DLL
[2011.06.19 02:51:47 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kbdlk41a.dll
[2011.06.19 02:51:47 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDGKL.DLL
[2011.06.19 02:51:47 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTUQ.DLL
[2011.06.19 02:51:47 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTUF.DLL
[2011.06.19 02:51:47 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDSG.DLL
[2011.06.19 02:51:47 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDSF.DLL
[2011.06.19 02:51:47 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDPO.DLL
[2011.06.19 02:51:47 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDNEPR.DLL
[2011.06.19 02:51:47 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\kbdlk41a.dll
[2011.06.19 02:51:47 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINTAM.DLL
[2011.06.19 02:51:47 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINBEN.DLL
[2011.06.19 02:51:47 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDGR1.DLL
[2011.06.19 02:51:47 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDGR1.DLL
[2011.06.19 02:51:47 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDGKL.DLL
[2011.06.19 02:51:47 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdxm.ocx
[2011.06.19 02:51:47 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxmasf.dll
[2011.06.19 02:51:46 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDCZ1.DLL
[2011.06.19 02:51:46 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDCZ1.DLL
[2011.06.19 02:51:46 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDUS.DLL
[2011.06.19 02:51:46 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDUGHR1.DLL
[2011.06.19 02:51:46 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTAJIK.DLL
[2011.06.19 02:51:46 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDMON.DLL
[2011.06.19 02:51:46 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDLT1.DLL
[2011.06.19 02:51:46 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINTAM.DLL
[2011.06.19 02:51:46 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINORI.DLL
[2011.06.19 02:51:46 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINMAR.DLL
[2011.06.19 02:51:46 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINKAN.DLL
[2011.06.19 02:51:46 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINHIN.DLL
[2011.06.19 02:51:46 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINBEN.DLL
[2011.06.19 02:51:46 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDUS.DLL
[2011.06.19 02:51:46 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDUGHR1.DLL
[2011.06.19 02:51:46 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTURME.DLL
[2011.06.19 02:51:46 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTAJIK.DLL
[2011.06.19 02:51:46 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDMON.DLL
[2011.06.19 02:51:46 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDMAORI.DLL
[2011.06.19 02:51:46 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDLT1.DLL
[2011.06.19 02:51:46 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDINTEL.DLL
[2011.06.19 02:51:46 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDGEO.DLL
[2011.06.19 02:51:46 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDGEO.DLL
[2011.06.19 02:51:46 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDBULG.DLL
[2011.06.19 02:51:46 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDBLR.DLL
[2011.06.19 02:51:45 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nlsbres.dll
[2011.06.19 02:51:45 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTURME.DLL
[2011.06.19 02:51:45 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDSF.DLL
[2011.06.19 02:51:45 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDPO.DLL
[2011.06.19 02:51:45 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDNEPR.DLL
[2011.06.19 02:51:45 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDMAORI.DLL
[2011.06.19 02:51:45 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINTEL.DLL
[2011.06.19 02:51:45 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINORI.DLL
[2011.06.19 02:51:45 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINMAR.DLL
[2011.06.19 02:51:45 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINKAN.DLL
[2011.06.19 02:51:45 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDINHIN.DLL
[2011.06.19 02:51:45 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDBULG.DLL
[2011.06.19 02:51:45 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDBLR.DLL
[2011.06.19 02:51:45 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDBASH.DLL
[2011.06.19 02:51:45 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDBASH.DLL
[2011.06.19 02:51:45 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dpnaddr.dll
[2011.06.19 02:51:45 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dpnaddr.dll
[2011.06.19 02:51:44 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nlsbres.dll
[2011.06.19 02:51:44 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\BlbEvents.dll
[2011.06.19 02:51:44 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pifmgr.dll
[2011.06.19 02:51:44 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pifmgr.dll
[2011.06.19 02:51:44 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwizres.dll
[2011.06.19 02:51:44 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwizres.dll
[2011.06.19 02:51:23 | 000,209,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PkgMgr.exe
[2011.06.19 02:51:23 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wdscore.dll
[2011.06.19 02:51:16 | 000,323,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drvstore.dll
[2011.06.19 02:51:16 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dpx.dll
[2011.06.19 02:49:14 | 000,529,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wbemcomn.dll
[2011.06.19 02:49:14 | 000,524,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmicmiplugin.dll
[2011.06.19 02:49:05 | 000,933,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SmiEngine.dll
[2011.06.19 02:49:02 | 000,199,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PkgMgr.exe
[2011.06.19 02:48:50 | 000,422,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drvstore.dll
[2011.06.19 02:48:50 | 000,399,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dpx.dll
[2011.06.15 14:05:14 | 000,288,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\FWPKCLNT.SYS
[2011.06.15 13:43:37 | 000,702,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2011.06.15 13:43:36 | 000,599,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeeds.dll
[2011.06.15 13:43:34 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2011.06.15 13:43:34 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2011.06.15 13:42:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2011.06.15 13:42:31 | 000,000,000 | ---D | C] -- C:\Programme\iTunes
[2011.06.15 13:42:31 | 000,000,000 | ---D | C] -- C:\Programme\iPod
[2011.06.15 13:41:15 | 000,321,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1core.dll
[2011.06.15 13:41:15 | 000,219,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10_1core.dll
[2011.06.15 13:41:15 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1.dll
[2011.06.15 13:41:15 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10_1.dll
[2011.06.15 13:41:08 | 000,861,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleaut32.dll
[2011.05.30 17:32:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Canon
[2011.05.30 17:32:39 | 000,000,000 | ---D | C] -- C:\ProgramData\ZoomBrowser
[2011.05.30 17:32:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
[2011.05.30 17:31:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Canon
[2011.05.29 21:46:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Symantec
[2011.05.29 21:46:25 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security Scan
[2011.05.29 21:46:25 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\NSSx64
[2011.05.29 21:46:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Norton Security Scan
[2011.05.29 21:46:25 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\NSSx64\0301010.006
[2011.05.29 21:46:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Norton
[2011.05.29 21:46:23 | 000,000,000 | ---D | C] -- C:\ProgramData\NortonInstaller
[2011.05.29 21:46:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NortonInstaller
[2011.05.29 12:02:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
[2011.05.29 12:02:10 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI
[2011.05.29 12:01:09 | 000,000,000 | ---D | C] -- C:\Programme\ATI Technologies
[2011.05.29 11:58:52 | 000,000,000 | ---D | C] -- C:\ATI
[1 C:\Users\Jonas\AppData\Local\*.tmp files -> C:\Users\Jonas\AppData\Local\*.tmp -> ]
 
========== Files - Modified Within 30 Days ==========
 
[2011.06.28 11:52:01 | 000,001,108 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011.06.28 11:30:01 | 000,001,120 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3793214032-3665191566-2873153956-1001UA.job
[2011.06.28 11:19:05 | 003,216,552 | ---- | M] (Piriform Ltd) -- C:\Users\Jonas\Desktop\ccsetup308.exe
[2011.06.28 11:18:33 | 000,002,097 | ---- | M] () -- C:\Users\Jonas\Desktop\hjtscanlist.zip
[2011.06.28 11:14:59 | 000,000,736 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011.06.28 10:32:18 | 009,435,312 | ---- | M] (Malwarebytes Corporation                                    ) -- C:\Users\Jonas\Desktop\mbam-setup-1.51.0.1200.exe
[2011.06.28 10:30:57 | 000,014,016 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011.06.28 10:30:57 | 000,014,016 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011.06.28 10:25:51 | 000,001,104 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011.06.28 10:25:47 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011.06.28 10:25:36 | 3220,574,208 | -HS- | M] () -- C:\hiberfil.sys
[2011.06.27 23:43:48 | 000,579,072 | ---- | M] (OldTimer Tools) -- C:\Users\Jonas\Desktop\OTL.exe
[2011.06.27 19:15:39 | 001,507,104 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011.06.27 19:15:39 | 000,657,428 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
[2011.06.27 19:15:39 | 000,618,714 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011.06.27 19:15:39 | 000,130,818 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
[2011.06.27 19:15:39 | 000,107,034 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011.06.26 13:30:00 | 000,001,068 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3793214032-3665191566-2873153956-1001Core.job
[2011.06.20 03:31:09 | 000,286,816 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2011.06.20 00:43:25 | 000,152,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msclmd.dll
[2011.06.20 00:43:24 | 000,175,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msclmd.dll
[2011.06.17 22:05:30 | 001,526,060 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2011.06.15 18:37:16 | 000,002,399 | ---- | M] () -- C:\Users\Jonas\Desktop\Google Chrome.lnk
[2011.06.05 13:36:55 | 000,018,960 | ---- | M] (Logitech, Inc.) -- C:\Windows\SysNative\drivers\LNonPnP.sys
[2011.06.05 13:36:50 | 000,000,000 | ---- | M] () -- C:\Users\Jonas\AppData\Local\{DB0B7733-6C53-435D-80D9-DD02B5F16E9D}
[2011.05.30 06:12:10 | 000,000,448 | -H-- | M] () -- C:\Windows\tasks\Norton Security Scan for Jonas.job
[1 C:\Users\Jonas\AppData\Local\*.tmp files -> C:\Users\Jonas\AppData\Local\*.tmp -> ]
 
========== Files Created - No Company Name ==========
 
[2011.06.28 11:18:41 | 000,002,097 | ---- | C] () -- C:\Users\Jonas\Desktop\hjtscanlist.zip
[2011.06.28 11:14:59 | 000,000,736 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011.06.20 03:34:56 | 000,001,547 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
[2011.06.19 02:53:46 | 000,095,744 | ---- | C] () -- C:\Windows\SysNative\RDVGHelper.exe
[2011.06.19 02:53:31 | 000,347,904 | ---- | C] () -- C:\Windows\SysNative\systemsf.ebd
[2011.06.19 02:51:59 | 000,010,429 | ---- | C] () -- C:\Windows\SysNative\ScavengeSpace.xml
[2011.06.19 02:51:42 | 000,105,559 | ---- | C] () -- C:\Windows\SysWow64\RacRules.xml
[2011.06.19 02:51:42 | 000,105,559 | ---- | C] () -- C:\Windows\SysNative\RacRules.xml
[2011.06.19 02:51:23 | 000,001,041 | ---- | C] () -- C:\Windows\SysWow64\tcpbidi.xml
[2011.06.19 02:51:22 | 000,146,389 | ---- | C] () -- C:\Windows\SysWow64\printmanagement.msc
[2011.06.05 13:36:31 | 000,000,000 | ---- | C] () -- C:\Users\Jonas\AppData\Local\{DB0B7733-6C53-435D-80D9-DD02B5F16E9D}
[2011.05.29 21:46:29 | 000,000,448 | -H-- | C] () -- C:\Windows\tasks\Norton Security Scan for Jonas.job
[2011.05.29 21:46:25 | 000,000,172 | ---- | C] () -- C:\Windows\SysNative\drivers\NSSx64\0301010.006\isolate.ini
[2011.05.25 20:00:54 | 000,045,286 | ---- | C] () -- C:\Users\Jonas\AppData\Roaming\room_v3.dat
[2011.05.05 01:28:10 | 000,059,904 | ---- | C] () -- C:\Windows\SysWow64\OVDecode.dll
[2011.03.26 20:02:29 | 000,046,742 | ---- | C] () -- C:\Users\Jonas\AppData\Roaming\room.dat
[2011.03.17 19:51:44 | 000,003,929 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2011.03.11 23:29:14 | 000,000,594 | ---- | C] () -- C:\Windows\War3Unin.dat
[2010.12.16 22:53:22 | 000,215,128 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2010.12.16 22:53:21 | 000,075,136 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2010.12.07 15:22:47 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2010.12.07 14:38:15 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2010.11.02 09:40:18 | 000,093,004 | -H-- | C] () -- C:\Windows\SysWow64\mlfcache.dat
[2010.08.18 19:41:03 | 001,526,060 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2010.08.17 20:14:37 | 000,000,400 | ---- | C] () -- C:\Windows\ODBC.INI
[2010.07.20 21:52:26 | 000,021,840 | ---- | C] () -- C:\Windows\SysWow64\SIntfNT.dll
[2010.07.20 21:52:26 | 000,017,212 | ---- | C] () -- C:\Windows\SysWow64\SIntf32.dll
[2010.07.20 21:52:26 | 000,012,067 | ---- | C] () -- C:\Windows\SysWow64\SIntf16.dll
[2010.07.20 21:41:22 | 000,031,930 | ---- | C] () -- C:\Windows\DIIUnin.dat
[2010.06.25 19:03:12 | 000,053,299 | ---- | C] () -- C:\Windows\SysWow64\pthreadVC.dll
[2009.07.14 07:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009.07.14 04:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009.07.14 04:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009.07.14 02:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009.07.14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009.07.13 23:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009.06.10 23:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2008.10.22 05:29:06 | 000,173,550 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
[2003.02.20 17:53:42 | 000,005,702 | ---- | C] () -- C:\Windows\SysWow64\OUTLPERF.INI
 
========== LOP Check ==========
 
[2010.12.15 13:52:11 | 000,000,000 | ---D | M] -- C:\Users\Jonas\AppData\Roaming\Beat Hazard
[2010.12.28 23:01:30 | 000,000,000 | ---D | M] -- C:\Users\Jonas\AppData\Roaming\bizarre creations
[2011.05.13 13:57:03 | 000,000,000 | ---D | M] -- C:\Users\Jonas\AppData\Roaming\DAEMON Tools Lite
[2011.04.10 12:53:33 | 000,000,000 | ---D | M] -- C:\Users\Jonas\AppData\Roaming\DVDVideoSoftIEHelpers
[2010.07.25 16:34:39 | 000,000,000 | ---D | M] -- C:\Users\Jonas\AppData\Roaming\flatball
[2010.10.25 14:39:14 | 000,000,000 | ---D | M] -- C:\Users\Jonas\AppData\Roaming\Leadertech
[2010.10.22 00:03:51 | 000,000,000 | ---D | M] -- C:\Users\Jonas\AppData\Roaming\LolClient
[2010.11.23 11:59:38 | 000,000,000 | ---D | M] -- C:\Users\Jonas\AppData\Roaming\Rainmeter
[2011.05.18 17:11:40 | 000,000,000 | ---D | M] -- C:\Users\Jonas\AppData\Roaming\TS3Client
[2011.05.04 23:25:22 | 000,000,000 | ---D | M] -- C:\Users\Jonas\AppData\Roaming\Ubisoft
[2011.05.30 12:37:49 | 000,032,640 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
 
========== Purity Check ==========
 
 

< End of report >
         


Geändert von Jonas_ (28.06.2011 um 11:14 Uhr)

Alt 28.06.2011, 11:13   #6
Jonas_
 
Werde auf andere Seiten gelenkt! (Google) - Standard

Werde auf andere Seiten gelenkt! (Google)



OTL Extras:

Code:
ATTFilter
OTL Extras logfile created on: 28.06.2011 11:54:24 - Run 3
OTL by OldTimer - Version 3.2.24.1     Folder = C:\Users\Jonas\Desktop
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
4,00 Gb Total Physical Memory | 2,04 Gb Available Physical Memory | 50,93% Memory free
8,00 Gb Paging File | 5,82 Gb Available in Paging File | 72,77% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 48,73 Gb Total Space | 17,87 Gb Free Space | 36,67% Space Free | Partition Type: NTFS
Drive D: | 184,05 Gb Total Space | 108,25 Gb Free Space | 58,81% Space Free | Partition Type: NTFS
Drive G: | 931,28 Gb Total Space | 931,19 Gb Free Space | 99,99% Space Free | Partition Type: FAT32
Drive H: | 7,39 Gb Total Space | 0,01 Gb Free Space | 0,10% Space Free | Partition Type: FAT32
 
Computer Name: JOHNNY | User Name: Jonas | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
========== Extra Registry (SafeList) ==========
 
 
========== File Associations ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
 
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
 
========== Shell Spawning ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %* File not found
cmdfile [open] -- "%1" %* File not found
comfile [open] -- "%1" %* File not found
exefile [open] -- "%1" %* File not found
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- "D:\Programme\Microsoft Office\OFFICE11\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "D:\Programme\Microsoft Office\OFFICE11\msohtmed.exe" /p %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %* File not found
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1" File not found
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l File not found
scrfile [open] -- "%1" /S File not found
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 File not found
Directory [AddToPlaylistVLC] -- "D:\Programme\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "D:\Programme\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- "D:\Programme\Microsoft Office\OFFICE11\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "D:\Programme\Microsoft Office\OFFICE11\msohtmed.exe" /p %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "D:\Programme\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "D:\Programme\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 
========== Security Center Settings ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01  [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
 
========== Firewall Settings ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0
 
========== Authorized Applications List ==========
 
 
========== HKEY_LOCAL_MACHINE Uninstall List ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{0E3DAF3D-FF69-345A-A99E-1FED304CA083}" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
"{0E543634-7E25-4B8F-8D5B-97880E5E5088}" = Bonjour
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_iP4300" = Canon iP4300
"{1B8ABA62-74F0-47ED-B18C-A43128E591B8}" = Windows Live ID Sign-in Assistant
"{28D73032-5DAA-4F83-B154-85105DBCCB92}" = iTunes
"{4044201A-8576-2999-1166-96C5593F3CFF}" = ATI Catalyst Install Manager
"{439760BC-7737-4386-9B1D-A90A3E8A22EA}" = Apple Mobile Device Support
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{8338783A-0968-3B85-AFC7-BAAE0A63DC50}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{A116AC61-8223-C019-9F66-2FEBA27A9ABE}" = ccc-utility64
"{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}" = Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053
"{D07A61E5-A59C-433C-BCBD-22025FA2287B}" = Windows Live Language Selector
"{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"CCleaner" = CCleaner
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile DEU Language Pack" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
"SP6" = Logitech SetPoint 6.15
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"WinRAR archiver" = WinRAR
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0513EE35-E0FB-4166-B663-BD1AE3A803DE}" = Anno 1404
"{08A1400E-E040-1C31-2E90-49ADACDCE8FF}" = Catalyst Control Center Graphics Light
"{08B3869E-D282-424C-9AFC-870E04A4BA14}" = Rockstar Games Social Club
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{18F04681-FCB2-602E-DB5E-302F65268FBE}" = ccc-core-static
"{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{20400dbd-e6db-45b8-9b6b-1dd7033818ec}" = Nero InfoTool
"{2348b586-c9ae-46ce-936c-a68e9426e214}" = Nero StartSmart Help
"{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java(TM) 6 Update 26
"{3060F83F-3A04-DCD1-3BC4-35EC73164AF1}" = CCC Help English
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{33cf58f5-48d8-4575-83d6-96f574e4d83a}" = Nero DriveSpeed
"{37B33B16-2535-49E7-8990-32668708A0A3}" = Windows Live UX Platform Language Pack
"{3AC8457C-0385-4BEA-A959-E095F05D6D67}" = Battlefield: Bad Company™ 2
"{3bc996da-ba53-487d-9955-0eb04602d148}" = Nero 9 Essentials
"{3D3AFDE9-A3F1-4F1C-434A-9BC75604CE9D}" = Catalyst Control Center Graphics Full Existing
"{3D9CF3CA-3AB0-4A82-9853-D7C43FD1D775}" = ANNO 1404
"{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = eReg
"{3FEA6CD1-EA13-4CE7-A74E-A74A4A0A7B5C}" = FIFA 11
"{418D5410-7A7B-315F-0CF9-A76BC6C131DC}" = Catalyst Control Center InstallProxy
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime
"{579BA58C-F33D-4970-9953-B94B43768AC3}" = Grand Theft Auto IV
"{59E4543A-D49D-4489-B445-473D763C79AF}" = Microsoft Games for Windows - LIVE Redistributable
"{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053
"{662E830F-830E-1644-9469-607CA1814F4F}" = Catalyst Control Center Core Implementation
"{6804F085-58B9-8E92-CB0F-769F730F0185}" = Catalyst Control Center Graphics Previews Common
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{6AFCA4E1-9B78-3640-8F72-A7BF33448200}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7748ac8c-18e3-43bb-959b-088faea16fb2}" = Nero StartSmart
"{7829db6f-a066-4e40-8912-cb07887c20bb}" = Nero BurnRights
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{869200db-287a-4dc0-b02b-2b6787fbcd4c}" = Nero DiscSpeed
"{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
"{8CDA6D95-78B3-B62C-4E25-2E24883749E1}" = Catalyst Control Center Graphics Previews Vista
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{90110407-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AC76BA86-7AD7-1031-7B44-A94000000001}" = Adobe Reader 9.4.4 - Deutsch
"{AE7D5AF6-E561-4711-BC5A-E2CE7AFD8CA7}_is1" = Silent Hill Homecoming
"{B113D18C-67B0-4FB7-B329-E89B66194AE6}" = Windows Live Fotogalerie
"{b2ec4a38-b545-4a00-8214-13fe0e915e6d}" = Advertising Center
"{B3575D00-27EF-49C2-B9E0-14B3D954E992}" = Apple Application Support
"{B3FED300-806C-11E0-A0D0-B8AC6F97B88E}" = Google Earth
"{bd5ca0da-71ad-43da-b19e-6eee0c9adc9a}" = Nero ControlCenter
"{C2AB7DC4-489E-4BE9-887A-52262FBADBE0}" = Windows Live Photo Common
"{C41300B9-185D-475E-BFEC-39EF732F19B1}" = Apple Software Update
"{cc019e3f-59d2-4486-8d4b-878105b62a71}" = Nero DiscSpeed
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D48818BC-744E-A732-BA1B-59043861F445}" = Catalyst Control Center Graphics Full New
"{D6987225-AECA-91BC-FA4B-9A2D812BF9D3}" = Catalyst Control Center HydraVision Full
"{dba84796-8503-4ff0-af57-1747dd9a166d}" = Nero Online Upgrade
"{DD9E3191-A37E-8A0D-D5A6-5D3C5A8AACBF}" = Skins
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E4E88B54-4777-4659-967A-2EED1E6AFD83}" = Windows Live Movie Maker
"{e5c7d048-f9b4-4219-b323-8bdb01a2563d}" = Nero DriveSpeed
"{e8a80433-302b-4ff1-815d-fcc8eac482ff}" = Nero Installer
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F1CBC6F7-D82D-4DC5-B81C-9A14F418593A}_is1" = WC3Banlist
"{f4041dce-3fe1-4e18-8a9e-9de65231ee36}" = Nero ControlCenter
"{f6bdd7c5-89ed-4569-9318-469aa9732572}" = Nero BurnRights
"{F78AC3C0-578C-49AB-BD4E-3107A6036A13}" = Tom Clancy's Ghost Recon Advanced Warfighter® 2
"{F95E4EE0-0C6E-4273-B6B9-91FD6F071D76}" = Windows Live Essentials
"{fbcdfd61-7dcf-4e71-9226-873ba0053139}" = Nero InfoTool
"Adobe Flash Player ActiveX" = Adobe Flash Player ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus
"Blur(TM)_is1" = Blur(TM)
"CameraWindowDC8" = Canon Utilities CameraWindow DC 8
"CameraWindowLauncher" = Canon Utilities CameraWindow
"CANON iMAGE GATEWAY Task" = CANON iMAGE GATEWAY Task for ZoomBrowser EX
"Canon Internet Library for ZoomBrowser EX" = Canon Internet Library for ZoomBrowser EX
"Canon MOV Decoder" = Canon MOV Decoder
"Canon MOV Encoder" = Canon MOV Encoder
"DAEMON Tools Lite" = DAEMON Tools Lite
"Diablo II" = Diablo II
"DivX Setup.divx.com" = DivX Setup
"Fraps" = Fraps (remove only)
"Garena" = Garena 2010
"Hamachi" = Hamachi 1.0.3.0
"HijackThis" = HijackThis 2.0.2
"hon" = Heroes of Newerth
"LastFM_is1" = Last.fm 1.5.4.27091
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware Version 1.51.0.1200
"MovieEditTask" = Canon MovieEdit Task for ZoomBrowser EX
"MovieUploaderForYouTube" = Canon Utilities Movie Uploader for YouTube
"MyCamera" = Canon Utilities MyCamera
"NSS" = Norton Security Scan
"PhotoStitch" = Canon Utilities PhotoStitch
"PunkBusterSvc" = PunkBuster Services
"Uninstall_is1" = Uninstall 1.0.0.1
"VLC media player" = VLC media player 1.1.4
"Warkeys" = Warkeys 1.17.1.0b
"WinLiveSuite" = Windows Live Essentials
"WinPcapInst" = WinPcap 4.1.2
"ZoomBrowser EX" = Canon Utilities ZoomBrowser EX
"ZoomBrowser EX Memory Card Utility" = Canon ZoomBrowser EX Memory Card Utility
 
========== HKEY_CURRENT_USER Uninstall List ==========
 
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome
 
========== Last 10 Event Log Errors ==========
 
[ Application Events ]
Error - 22.05.2011 13:00:00 | Computer Name = Johnny | Source = Windows Backup | ID = 4103
Description = 
 
Error - 29.05.2011 12:50:18 | Computer Name = Johnny | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: uninst1.exe, Version: 0.0.0.0, Zeitstempel:
 0x4433860b  Name des fehlerhaften Moduls: gentee.dll, Version: 0.0.0.0, Zeitstempel:
 0x450fc8a6  Ausnahmecode: 0xc0000005  Fehleroffset: 0x00006304  ID des fehlerhaften Prozesses:
 0x1220  Startzeit der fehlerhaften Anwendung: 0x01cc1e207c4f924e  Pfad der fehlerhaften
 Anwendung: C:\Users\Jonas\AppData\Local\Temp\uninst1.exe  Pfad des fehlerhaften Moduls:
 C:\Users\Jonas\AppData\Local\Temp\gentee01\gentee.dll  Berichtskennung: bb9ff209-8a13-11e0-a843-90e6bab972ac
 
Error - 29.05.2011 13:00:00 | Computer Name = Johnny | Source = Windows Backup | ID = 4103
Description = 
 
Error - 15.06.2011 07:33:33 | Computer Name = Johnny | Source = Windows Backup | ID = 4103
Description = 
 
Error - 15.06.2011 13:10:03 | Computer Name = Johnny | Source = .NET Runtime Optimization Service | ID = 1101
Description = 
 
Error - 15.06.2011 13:10:09 | Computer Name = Johnny | Source = .NET Runtime Optimization Service | ID = 1101
Description = 
 
Error - 19.06.2011 13:00:01 | Computer Name = Johnny | Source = Windows Backup | ID = 4103
Description = 
 
Error - 19.06.2011 18:33:38 | Computer Name = Johnny | Source = VSS | ID = 12305
Description = 
 
Error - 19.06.2011 21:34:53 | Computer Name = Johnny | Source = ESENT | ID = 215
Description = WinMail (3352) WindowsMail0: Die Sicherung wurde abgebrochen, weil
 sie vom Client angehalten wurde, oder weil die Verbindung mit dem Client unterbrochen
 wurde.
 
Error - 19.06.2011 21:34:58 | Computer Name = Johnny | Source = ESENT | ID = 215
Description = WinMail (3572) WindowsMail0: Die Sicherung wurde abgebrochen, weil
 sie vom Client angehalten wurde, oder weil die Verbindung mit dem Client unterbrochen
 wurde.
 
[ System Events ]
Error - 27.06.2011 18:17:32 | Computer Name = Johnny | Source = atikmdag | ID = 43029
Description = Display is not active
 
Error - 27.06.2011 18:46:48 | Computer Name = Johnny | Source = atikmdag | ID = 43029
Description = Display is not active
 
Error - 27.06.2011 18:46:55 | Computer Name = Johnny | Source = atikmdag | ID = 43029
Description = Display is not active
 
Error - 27.06.2011 18:51:01 | Computer Name = Johnny | Source = atikmdag | ID = 43029
Description = Display is not active
 
Error - 27.06.2011 18:54:47 | Computer Name = Johnny | Source = atikmdag | ID = 43029
Description = Display is not active
 
Error - 28.06.2011 04:25:47 | Computer Name = Johnny | Source = atikmdag | ID = 52236
Description = CPLIB :: General - Invalid Parameter
 
Error - 28.06.2011 04:25:47 | Computer Name = Johnny | Source = atikmdag | ID = 43029
Description = Display is not active
 
Error - 28.06.2011 04:25:50 | Computer Name = Johnny | Source = Service Control Manager | ID = 7000
Description = Der Dienst "Windows-Firewallautorisierungstreiber" wurde aufgrund 
folgenden Fehlers nicht gestartet:   %%183
 
Error - 28.06.2011 04:25:50 | Computer Name = Johnny | Source = Service Control Manager | ID = 7001
Description = Der Dienst "Windows-Firewall" ist vom Dienst "Windows-Firewallautorisierungstreiber"
 abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:   %%183
 
Error - 28.06.2011 04:26:23 | Computer Name = Johnny | Source = Service Control Manager | ID = 7024
Description = Der Dienst "Heimnetzgruppen-Listener" wurde mit folgendem dienstspezifischem
 Fehler beendet: %%-2147023143.
 
 
< End of report >
         
--- --- ---

Alt 28.06.2011, 11:17   #7
Jonas_
 
Werde auf andere Seiten gelenkt! (Google) - Standard

Werde auf andere Seiten gelenkt! (Google)



HJTScanlist.txt erster Teil:

Code:
ATTFilter
 
                        $$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$ 
                        º                                    º 
                                    hjtscanlist v2.0              
                        º                                    º 
                        $$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$ 

Microsoft Windows [Version 6.1.7601]
 
 
C:

  28.06.2011 11:20     C:\Program Files --------- 8192   
  28.06.2011 10:32     C:\ProgramData --------- 8192   
  28.06.2011 10:31     C:\System Volume Information --------- 8192   
       C:\pagefile.sys ---------    
       C:\hiberfil.sys ---------    
  26.06.2011 14:14     C:\Windows --------- 28672   
  20.06.2011 00:34     C:\Config.Msi --------- 0   
  30.05.2011 17:32     C:\Program Files (x86) --------- 12288   
  29.05.2011 11:58     C:\ATI --------- 0   
  29.05.2011 11:43     C:\$Recycle.Bin --------- 0   
  07.12.2010 14:50     C:\Recovery --------- 0   
  07.12.2010 14:50     C:\Programme --------- 0   
  07.12.2010 14:50     C:\Dokumente und Einstellungen --------- 0   
  29.08.2010 23:35     C:\Users --------- 4096   
  14.07.2009 05:20     C:\PerfLogs --------- 0   
----------------------------------------

 
C:\Windows

  28.06.2011 11:56     C:\Windows\WindowsUpdate.log --------- 1403143   
  28.06.2011 10:25     C:\Windows\setupact.log --------- 182229   
  28.06.2011 10:25     C:\Windows\bootstat.dat --------- 67584   
  20.06.2011 12:06     C:\Windows\PFRO.log --------- 22178   
  15.06.2011 19:18     C:\Windows\win.ini --------- 499   
  05.06.2011 13:36     C:\Windows\LkmdfCoInst.log --------- 2114   
  14.05.2011 23:38     C:\Windows\DirectX.log --------- 292895   
  14.05.2011 23:38     C:\Windows\DIFx.log --------- 1328   
  03.05.2011 16:15     C:\Windows\IE9_main.log --------- 2673   
  25.03.2011 00:00     C:\Windows\War3Unin.dat --------- 594   
  25.02.2011 08:19     C:\Windows\explorer.exe --------- 2871808   
  07.12.2010 20:24     C:\Windows\DXError.log --------- 366   
  07.12.2010 15:22     C:\Windows\nsreg.dat --------- 0   
  07.12.2010 14:38     C:\Windows\DtcInstall.log --------- 3806   
  07.12.2010 14:38     C:\Windows\TSSysprep.log --------- 5767   
  07.12.2010 14:38     C:\Windows\ativpsrm.bin --------- 0   
  20.11.2010 15:25     C:\Windows\splwow64.exe --------- 67072   
  20.11.2010 15:24     C:\Windows\bfsvc.exe --------- 71168   
  20.11.2010 14:21     C:\Windows\twain_32.dll --------- 51200   
  12.11.2010 15:24     C:\Windows\MEMORY.DMP --------- 319197006   
  10.11.2010 02:28     C:\Windows\WLXPGSS.SCR --------- 301936   
  25.10.2010 14:39     C:\Windows\LDPINST.LOG --------- 7708   
  01.09.2010 13:10     C:\Windows\ODBC.INI --------- 400   
  05.08.2010 23:35     C:\Windows\msxml4-KB973688-enu.LOG --------- 283542   
  05.08.2010 23:35     C:\Windows\msxml4-KB954430-enu.LOG --------- 286744   
  20.07.2010 21:54     C:\Windows\DIIUnin.dat --------- 31930   
  20.07.2010 21:41     C:\Windows\DIIUnin.pif --------- 2829   
  20.07.2010 21:41     C:\Windows\DIIUnin.exe --------- 102400   
  14.07.2009 06:54     C:\Windows\WindowsShell.Manifest --------- 749   
  14.07.2009 06:51     C:\Windows\setuperr.log --------- 0   
  14.07.2009 03:39     C:\Windows\write.exe --------- 10240   
  14.07.2009 03:39     C:\Windows\regedit.exe --------- 427008   
  14.07.2009 03:39     C:\Windows\notepad.exe --------- 193536   
  14.07.2009 03:39     C:\Windows\hh.exe --------- 16896   
  14.07.2009 03:39     C:\Windows\HelpPane.exe --------- 733696   
  14.07.2009 03:39     C:\Windows\fveupdate.exe --------- 15360   
  14.07.2009 03:14     C:\Windows\winhlp32.exe --------- 9728   
  14.07.2009 03:14     C:\Windows\twunk_32.exe --------- 31232   
  14.07.2009 01:06     C:\Windows\mib.bin --------- 43131   
  17.06.2009 08:53     C:\Windows\atiogl.xml --------- 18333   
  10.06.2009 23:41     C:\Windows\twunk_16.exe --------- 49680   
  10.06.2009 23:41     C:\Windows\twain.dll --------- 94784   
  10.06.2009 23:08     C:\Windows\system.ini --------- 219   
  10.06.2009 22:52     C:\Windows\WMSysPr9.prx --------- 316640   
  10.06.2009 22:36     C:\Windows\msdfmap.ini --------- 1405   
  10.06.2009 22:31     C:\Windows\Ultimate.xml --------- 51867   
  10.06.2009 22:31     C:\Windows\Starter.xml --------- 48201   
  21.03.2003 21:18     C:\Windows\War3Unin.exe --------- 126976   
----------------------------------------

 
C:\Windows\System

----------------------------------------

 
C:\Windows\System32

 28.06.2011 12:07     C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 --------- 14016  
 28.06.2011 12:07     C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 --------- 14016  
 28.06.2011 10:42     C:\Windows\system32\config --------- 32768  
 28.06.2011 10:32     C:\Windows\system32\drivers --------- 65536  
 27.06.2011 19:15     C:\Windows\system32\perfc009.dat --------- 107034  
 27.06.2011 19:15     C:\Windows\system32\perfh009.dat --------- 618714  
 27.06.2011 19:15     C:\Windows\system32\perfh007.dat --------- 657428  
 27.06.2011 19:15     C:\Windows\system32\perfc007.dat --------- 130818  
 27.06.2011 19:15     C:\Windows\system32\PerfStringBackup.INI --------- 1507104  
 26.06.2011 13:51     C:\Windows\system32\Tasks --------- 4096  
 20.06.2011 08:13     C:\Windows\system32\catroot --------- 4096  
 20.06.2011 08:13     C:\Windows\system32\catroot2 --------- 32768  
 20.06.2011 03:33     C:\Windows\system32\DriverStore --------- 4096  
 20.06.2011 03:31     C:\Windows\system32\FNTCACHE.DAT --------- 286816  
 20.06.2011 03:25     C:\Windows\system32\da-DK --------- 0  
 20.06.2011 03:25     C:\Windows\system32\de-DE --------- 327680  
 20.06.2011 03:25     C:\Windows\system32\oobe --------- 4096  
 20.06.2011 03:25     C:\Windows\system32\migration --------- 0  
 20.06.2011 03:25     C:\Windows\system32\AdvancedInstallers --------- 0  
 20.06.2011 03:25     C:\Windows\system32\Setup --------- 0  
 20.06.2011 03:25     C:\Windows\system32\cs-CZ --------- 0  
 20.06.2011 03:25     C:\Windows\system32\manifeststore --------- 0  
 20.06.2011 03:25     C:\Windows\system32\es-ES --------- 0  
 20.06.2011 03:25     C:\Windows\system32\sppui --------- 0  
 20.06.2011 03:25     C:\Windows\system32\wbem --------- 65536  
 20.06.2011 03:25     C:\Windows\system32\migwiz --------- 4096  
 20.06.2011 03:25     C:\Windows\system32\Dism --------- 4096  
 20.06.2011 03:24     C:\Windows\system32\Boot --------- 0  
 20.06.2011 00:43     C:\Windows\system32\msclmd.dll --------- 175616  
 20.06.2011 00:33     C:\Windows\system32\SPReview --------- 0  
 20.06.2011 00:31     C:\Windows\system32\EventProviders --------- 0  
 15.06.2011 19:18     C:\Windows\system32\MRT.exe --------- 49454024  
 28.05.2011 07:32     C:\Windows\system32\mshtml.dll --------- 9001984  
 28.05.2011 05:30     C:\Windows\system32\mshtml.tlb --------- 1638912  
 28.05.2011 05:06     C:\Windows\system32\win32k.sys --------- 3135488  
 24.05.2011 19:14     C:\Windows\system32\MpSigStub.exe --------- 270720  
 20.05.2011 01:55     C:\Windows\system32\NDF --------- 0  
 15.05.2011 02:20     C:\Windows\system32\wfp --------- 0  
 15.05.2011 02:18     C:\Windows\system32\LogFiles --------- 4096  
 10.05.2011 08:06     C:\Windows\system32\usbaaplrc.dll --------- 4517664  
 03.05.2011 07:29     C:\Windows\system32\inetcomm.dll --------- 976896  
 29.04.2011 07:52     C:\Windows\system32\msfeeds.dll --------- 702464  
 29.04.2011 07:51     C:\Windows\system32\iertutil.dll --------- 2443776  
 23.04.2011 00:08     C:\Windows\system32\wininet.dll --------- 1188864  
 23.04.2011 00:08     C:\Windows\system32\urlmon.dll --------- 1492992  
 23.04.2011 00:04     C:\Windows\system32\jsproxy.dll --------- 64512  
 23.04.2011 00:04     C:\Windows\system32\ieui.dll --------- 247808  
 23.04.2011 00:04     C:\Windows\system32\ieframe.dll --------- 12262400  
 20.04.2011 04:09     C:\Windows\system32\atiapfxx.blb --------- 165296  
 20.04.2011 04:09     C:\Windows\system32\atiapfxx.exe --------- 151552  
 20.04.2011 04:07     C:\Windows\system32\aticfx64.dll --------- 795648  
 20.04.2011 03:40     C:\Windows\system32\atiumd6v.dll --------- 1222656  
 20.04.2011 03:27     C:\Windows\system32\coinst.dll --------- 58880  
 20.04.2011 03:22     C:\Windows\system32\atig6pxx.dll --------- 14848  
 20.04.2011 03:22     C:\Windows\system32\atiglpxx.dll --------- 12800  
 20.04.2011 03:22     C:\Windows\system32\atig6txx.dll --------- 39936  
 20.04.2011 03:21     C:\Windows\system32\atiuxp64.dll --------- 40960  
 20.04.2011 03:21     C:\Windows\system32\atiu9p64.dll --------- 38912  
 19.04.2011 22:10     C:\Windows\system32\OVDecode64.dll --------- 61952  
 19.04.2011 22:10     C:\Windows\system32\OpenCL.dll --------- 53760  
 19.04.2011 22:10     C:\Windows\system32\amdocl64.dll --------- 16116224  
 09.04.2011 09:02     C:\Windows\system32\ntoskrnl.exe --------- 5562240  
 09.04.2011 08:58     C:\Windows\system32\poqexec.exe --------- 142336  
 07.04.2011 15:34     C:\Windows\system32\CanonIJ Uninstaller Information --------- 0  
 06.04.2011 16:26     C:\Windows\system32\dnssd.dll --------- 96544  
 06.04.2011 16:26     C:\Windows\system32\dnssdX.dll --------- 237856  
 06.04.2011 16:26     C:\Windows\system32\jdns_sd.dll --------- 69408  
 06.04.2011 16:26     C:\Windows\system32\dns-sd.exe --------- 119584  
 17.03.2011 19:51     C:\Windows\system32\atipblag.dat --------- 3929  
 12.03.2011 14:08     C:\Windows\system32\XpsPrint.dll --------- 1465344  
 11.03.2011 08:34     C:\Windows\system32\mfc42u.dll --------- 1359872  
 11.03.2011 08:34     C:\Windows\system32\mfc42.dll --------- 1395712  
 11.03.2011 08:33     C:\Windows\system32\esent.dll --------- 2565632  
 11.03.2011 08:30     C:\Windows\system32\fsutil.exe --------- 96768  
 03.03.2011 08:24     C:\Windows\system32\dnsrslvr.dll --------- 183296  
 03.03.2011 08:24     C:\Windows\system32\dnsapi.dll --------- 357888  
 03.03.2011 08:21     C:\Windows\system32\dnscacheugc.exe --------- 30208  
 25.02.2011 08:22     C:\Windows\system32\oleaut32.dll --------- 861696  
 24.02.2011 08:15     C:\Windows\system32\XpsGdiConverter.dll --------- 476160  
 19.02.2011 14:05     C:\Windows\system32\FntCache.dll --------- 1139200  
 19.02.2011 14:04     C:\Windows\system32\DWrite.dll --------- 1544192  
 19.02.2011 14:04     C:\Windows\system32\d2d1.dll --------- 902656  
 19.02.2011 14:03     C:\Windows\system32\atmlib.dll --------- 46080  
 19.02.2011 11:00     C:\Windows\system32\atmfd.dll --------- 367616  
 18.02.2011 12:56     C:\Windows\system32\vbscript.dll --------- 613376  
 18.02.2011 12:54     C:\Windows\system32\jscript.dll --------- 919040  
 18.02.2011 12:51     C:\Windows\system32\prevhost.exe --------- 31232  
 12.02.2011 13:34     C:\Windows\system32\FXSCOVER.exe --------- 267776  
 05.02.2011 19:10     C:\Windows\system32\winload.efi --------- 642944  
 05.02.2011 19:10     C:\Windows\system32\kdusb.dll --------- 20352  
 05.02.2011 19:10     C:\Windows\system32\kd1394.dll --------- 19328  
 05.02.2011 19:10     C:\Windows\system32\kdcom.dll --------- 17792  
 05.02.2011 19:06     C:\Windows\system32\winresume.exe --------- 518672  
 05.02.2011 19:06     C:\Windows\system32\winload.exe --------- 605552  
 05.02.2011 19:06     C:\Windows\system32\winresume.efi --------- 566208  
 17.01.2011 13:09     C:\Windows\system32\d3d10_1.dll --------- 197120  
 07.01.2011 15:02     C:\Windows\system32\mfc100enu.dll --------- 55120  
 07.01.2011 15:02     C:\Windows\system32\mfc100esn.dll --------- 63824  
 07.01.2011 15:02     C:\Windows\system32\mfc100ita.dll --------- 62288  
 07.01.2011 15:02     C:\Windows\system32\mfc100deu.dll --------- 64336  
----------------------------------------

 
C:\Windows\Prefetch

 28.06.2011 12:13     C:\Windows\Prefetch\CMD.EXE-4A81B364.pf --------- 7540  
 28.06.2011 12:13     C:\Windows\Prefetch\CONHOST.EXE-1F3E9D7E.pf --------- 17070  
 28.06.2011 12:12     C:\Windows\Prefetch\DLLHOST.EXE-5E46FA0D.pf --------- 102580  
 28.06.2011 12:12     C:\Windows\Prefetch\DLLHOST.EXE-ECB71776.pf --------- 23400  
 28.06.2011 12:12     C:\Windows\Prefetch\SPPSVC.EXE-B0F8131B.pf --------- 37914  
 28.06.2011 12:12     C:\Windows\Prefetch\WMIPRVSE.EXE-5CEC779C.pf --------- 206988  
 28.06.2011 12:12     C:\Windows\Prefetch\MMC.EXE-F5DC4F82.pf --------- 53616  
 28.06.2011 12:12     C:\Windows\Prefetch\CONTROL.EXE-817F8F1D.pf --------- 34326  
 28.06.2011 12:08     C:\Windows\Prefetch\AVWSC.EXE-F5DE2BC0.pf --------- 70310  
 28.06.2011 12:07     C:\Windows\Prefetch\AgGlFgAppHistory.db --------- 2053593  
 28.06.2011 12:07     C:\Windows\Prefetch\AgGlFaultHistory.db --------- 662310  
 28.06.2011 12:07     C:\Windows\Prefetch\AgGlGlobalHistory.db --------- 4077511  
 28.06.2011 12:07     C:\Windows\Prefetch\AgRobust.db --------- 1124024  
 28.06.2011 12:05     C:\Windows\Prefetch\TASKHOST.EXE-7238F31D.pf --------- 162116  
 28.06.2011 11:58     C:\Windows\Prefetch\NOTEPAD.EXE-86E0E9B9.pf --------- 21170  
 28.06.2011 11:57     C:\Windows\Prefetch\WINRAR.EXE-2B27F2F4.pf --------- 58752  
 28.06.2011 11:57     C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-77482212.pf --------- 16682  
 28.06.2011 11:57     C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-0CB8CADE.pf --------- 542816  
 28.06.2011 11:57     C:\Windows\Prefetch\SVCHOST.EXE-80F4A784.pf --------- 1422350  
 28.06.2011 11:56     C:\Windows\Prefetch\AUDIODG.EXE-BDFD3029.pf --------- 250582  
 28.06.2011 11:55     C:\Windows\Prefetch\CHROME.EXE-49D31D03.pf --------- 122300  
 28.06.2011 11:53     C:\Windows\Prefetch\OTL.EXE-F137DAD9.pf --------- 461310  
 28.06.2011 11:52     C:\Windows\Prefetch\TASKENG.EXE-48D4E289.pf --------- 652842  
 28.06.2011 11:52     C:\Windows\Prefetch\GOOGLEUPDATE.EXE-B95715F5.pf --------- 46070  
 28.06.2011 11:51     C:\Windows\Prefetch\NOTEPAD.EXE-1605FA5B.pf --------- 25250  
 28.06.2011 11:50     C:\Windows\Prefetch\RUNDLL32.EXE-55A11A68.pf --------- 237120  
 28.06.2011 11:30     C:\Windows\Prefetch\GOOGLEUPDATE.EXE-D64C51EE.pf --------- 37318  
 28.06.2011 11:20     C:\Windows\Prefetch\CCLEANER64.EXE-779BD542.pf --------- 304232  
 28.06.2011 11:20     C:\Windows\Prefetch\PING.EXE-371F41E2.pf --------- 24148  
 28.06.2011 11:20     C:\Windows\Prefetch\CCSETUP308.EXE-8E3067C8.pf --------- 270194  
 28.06.2011 11:19     C:\Windows\Prefetch\MBAM.EXE-3A8F83D4.pf --------- 132926  
 28.06.2011 11:19     C:\Windows\Prefetch\DLLHOST.EXE-76936ED5.pf --------- 188524  
 28.06.2011 11:15     C:\Windows\Prefetch\REGSVR32.EXE-D5170E12.pf --------- 27332  
 28.06.2011 11:14     C:\Windows\Prefetch\MBAMGUI.EXE-061530D5.pf --------- 14636  
 28.06.2011 11:14     C:\Windows\Prefetch\REGSVR32.EXE-8461DBEE.pf --------- 19802  
 28.06.2011 11:14     C:\Windows\Prefetch\MBAM-SETUP-1.51.0.1200.TMP-D0137D9B.pf --------- 53246  
 28.06.2011 11:14     C:\Windows\Prefetch\MBAM-SETUP-1.51.0.1200.EXE-14D3FD3A.pf --------- 21978  
 28.06.2011 11:07     C:\Windows\Prefetch\_IU14D2N.TMP-0CA55611.pf --------- 49464  
 28.06.2011 11:07     C:\Windows\Prefetch\UNINS000.EXE-918B77EC.pf --------- 28582  
 28.06.2011 11:07     C:\Windows\Prefetch\MBAMGUI.EXE-21232495.pf --------- 14624  
 28.06.2011 11:07     C:\Windows\Prefetch\MBAM.EXE-D66D7994.pf --------- 187796  
 28.06.2011 11:06     C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-3793214032-3665191566-2873153956-1001.db --------- 1184618  
 28.06.2011 11:06     C:\Windows\Prefetch\AgGlUAD_S-1-5-21-3793214032-3665191566-2873153956-1001.db --------- 2310716  
 28.06.2011 11:03     C:\Windows\Prefetch\MIRANDA32.EXE-31FA1977.pf --------- 332572  
 28.06.2011 10:40     C:\Windows\Prefetch\DLLHOST.EXE-E7777CC4.pf --------- 23124  
 28.06.2011 10:39     C:\Windows\Prefetch\RUNDLL32.EXE-A3E35360.pf --------- 166804  
 28.06.2011 10:38     C:\Windows\Prefetch\WERMGR.EXE-0F2AC88C.pf --------- 13106  
 28.06.2011 10:36     C:\Windows\Prefetch\SPLWOW64.EXE-297C4568.pf --------- 139386  
 28.06.2011 10:36     C:\Windows\Prefetch\WINWORD.EXE-D42E9C44.pf --------- 187442  
 28.06.2011 10:34     C:\Windows\Prefetch\WSQMCONS.EXE-118B52B7.pf --------- 5290  
 28.06.2011 10:32     C:\Windows\Prefetch\MBAM-SETUP-1.51.0.1200.TMP-1012D5B1.pf --------- 53428  
 28.06.2011 10:31     C:\Windows\Prefetch\WUAUCLT.EXE-70318591.pf --------- 32024  
 28.06.2011 10:31     C:\Windows\Prefetch\MPAS-D_BD1.EXE-97E29C40.pf --------- 17714  
 28.06.2011 10:31     C:\Windows\Prefetch\MPMINISIGSTUB.EXE-E61DDB4B.pf --------- 6108  
 28.06.2011 10:31     C:\Windows\Prefetch\MPSIGSTUB.EXE-6CB27A06.pf --------- 26224  
 28.06.2011 10:31     C:\Windows\Prefetch\IPODSCROBBLER.EXE-112A9B89.pf --------- 42312  
 28.06.2011 10:31     C:\Windows\Prefetch\SVCHOST.EXE-7CFEDEA3.pf --------- 17946  
 28.06.2011 10:31     C:\Windows\Prefetch\VSSVC.EXE-B8AFC319.pf --------- 103112  
 28.06.2011 10:31     C:\Windows\Prefetch\SVCHOST.EXE-E2C2633A.pf --------- 16482  
 28.06.2011 10:30     C:\Windows\Prefetch\TRUSTEDINSTALLER.EXE-3CC531E5.pf --------- 663698  
 28.06.2011 10:29     C:\Windows\Prefetch\WMIADAP.EXE-F8DFDFA2.pf --------- 52932  
 28.06.2011 10:29     C:\Windows\Prefetch\WMIPRVSE.EXE-1628051C.pf --------- 58258  
 28.06.2011 10:28     C:\Windows\Prefetch\SVCHOST.EXE-05F624AB.pf --------- 9082  
 28.06.2011 10:28     C:\Windows\Prefetch\GOOGLECRASHHANDLER.EXE-8001F7AE.pf --------- 23266  
 28.06.2011 10:28     C:\Windows\Prefetch\MSCORSVW.EXE-57D17DAF.pf --------- 45734  
 28.06.2011 10:28     C:\Windows\Prefetch\MSCORSVW.EXE-C3C515BD.pf --------- 21016  
 28.06.2011 10:27     C:\Windows\Prefetch\ReadyBoot --------- 0  
 28.06.2011 10:26     C:\Windows\Prefetch\SVCHOST.EXE-C871F054.pf --------- 46496  
 28.06.2011 10:26     C:\Windows\Prefetch\WMPNETWK.EXE-D9F2A96F.pf --------- 92478  
 28.06.2011 10:26     C:\Windows\Prefetch\IPODSERVICE.EXE-37C43D64.pf --------- 206214  
 28.06.2011 10:26     C:\Windows\Prefetch\WMPNSCFG.EXE-FC0D39BF.pf --------- 35612  
 28.06.2011 03:48     C:\Windows\Prefetch\PfSvPerfStats.bin --------- 584  
 28.06.2011 03:30     C:\Windows\Prefetch\MPCMDRUN.EXE-F401FBB4.pf --------- 27314  
 28.06.2011 01:32     C:\Windows\Prefetch\LPREMOVE.EXE-284EF282.pf --------- 2388  
 28.06.2011 01:25     C:\Windows\Prefetch\RUNDLL32.EXE-411A328D.pf --------- 228988  
 28.06.2011 01:22     C:\Windows\Prefetch\SVCHOST.EXE-7AC6742A.pf --------- 16996  
 28.06.2011 01:22     C:\Windows\Prefetch\DEFRAG.EXE-588F90AD.pf --------- 17756  
 28.06.2011 01:22     C:\Windows\Prefetch\Layout.ini --------- 1627416  
 28.06.2011 00:43     C:\Windows\Prefetch\NOTEPAD.EXE-D8414F97.pf --------- 22338  
 28.06.2011 00:28     C:\Windows\Prefetch\PREVHOST.EXE-4F1C4E0F.pf --------- 23736  
 28.06.2011 00:17     C:\Windows\Prefetch\HON.EXE-2B7DA407.pf --------- 209748  
 28.06.2011 00:10     C:\Windows\Prefetch\DLLHOST.EXE-5FD5BD9D.pf --------- 23486  
 28.06.2011 00:10     C:\Windows\Prefetch\TS3CLIENT_WIN64.EXE-FF0943AF.pf --------- 250652  
 27.06.2011 23:55     C:\Windows\Prefetch\AVCENTER.EXE-EBE30B94.pf --------- 132240  
 27.06.2011 23:42     C:\Windows\Prefetch\HELPPANE.EXE-FEDC965B.pf --------- 135620  
 27.06.2011 23:41     C:\Windows\Prefetch\VDS.EXE-6E7946F9.pf --------- 33116  
 27.06.2011 23:41     C:\Windows\Prefetch\WBENGINE.EXE-28FD7E8B.pf --------- 24066  
 27.06.2011 23:41     C:\Windows\Prefetch\RSTRUI.EXE-2D50C58D.pf --------- 118254  
 27.06.2011 23:41     C:\Windows\Prefetch\VDSLDR.EXE-6B089E8B.pf --------- 18616  
 27.06.2011 23:24     C:\Windows\Prefetch\HIJACKTHIS.EXE-07C49778.pf --------- 50408  
 27.06.2011 23:23     C:\Windows\Prefetch\AVSCAN.EXE-5922A648.pf --------- 192808  
 27.06.2011 23:21     C:\Windows\Prefetch\SDCLT.EXE-E10B972A.pf --------- 7042  
 27.06.2011 23:19     C:\Windows\Prefetch\TASKMGR.EXE-5F5F473D.pf --------- 45166  
 27.06.2011 23:19     C:\Windows\Prefetch\LOGONUI.EXE-09140401.pf --------- 56370  
 27.06.2011 23:17     C:\Windows\Prefetch\WUDFHOST.EXE-AFFEF87C.pf --------- 240150  
 27.06.2011 19:54     C:\Windows\Prefetch\PING.EXE-7E94E73E.pf --------- 23924  
 27.06.2011 19:54     C:\Windows\Prefetch\SDIAGNHOST.EXE-8D72177C.pf --------- 151214  
 27.06.2011 19:54     C:\Windows\Prefetch\W32TM.EXE-1101AF41.pf --------- 15406  
 27.06.2011 19:54     C:\Windows\Prefetch\CSC.EXE-BE9AC2DF.pf --------- 52866  
 27.06.2011 19:54     C:\Windows\Prefetch\CVTRES.EXE-2B9D810D.pf --------- 12358  
 27.06.2011 19:54     C:\Windows\Prefetch\RUNDLL32.EXE-B49E1152.pf --------- 3342  
 27.06.2011 19:13     C:\Windows\Prefetch\APPLEMOBILEDEVICEHELPER.EXE-EDD411E2.pf --------- 48090  
 27.06.2011 19:13     C:\Windows\Prefetch\LASTFM.EXE-48295092.pf --------- 191114  
 27.06.2011 19:13     C:\Windows\Prefetch\ITUNES.EXE-C082D25E.pf --------- 261528  
 27.06.2011 19:12     C:\Windows\Prefetch\SNDVOL.EXE-5D4CC7D6.pf --------- 37372  
 27.06.2011 19:06     C:\Windows\Prefetch\CCC.EXE-B637C9BF.pf --------- 223498  
 27.06.2011 17:37     C:\Windows\Prefetch\DLLHOST.EXE-97229F6A.pf --------- 18410  
 27.06.2011 17:33     C:\Windows\Prefetch\MSFEEDSSYNC.EXE-6E6FBDF4.pf --------- 45684  
 27.06.2011 12:59     C:\Windows\Prefetch\DLLHOST.EXE-4F28A26F.pf --------- 94490  
 27.06.2011 12:43     C:\Windows\Prefetch\JAVAWS.EXE-446541A7.pf --------- 27172  
 27.06.2011 12:43     C:\Windows\Prefetch\JAVAW.EXE-95D02C48.pf --------- 94192  
 27.06.2011 12:42     C:\Windows\Prefetch\SC.EXE-945D79AE.pf --------- 8468  
 27.06.2011 12:42     C:\Windows\Prefetch\RUNDLL32.EXE-0CF9BF08.pf --------- 55384  
 27.06.2011 12:42     C:\Windows\Prefetch\DINOTIFY.EXE-35A869D6.pf --------- 17492  
 27.06.2011 12:42     C:\Windows\Prefetch\DRVINST.EXE-4CB4314A.pf --------- 63382  
 27.06.2011 02:12     C:\Windows\Prefetch\RUNDLL32.EXE-81144448.pf --------- 28398  
 27.06.2011 02:12     C:\Windows\Prefetch\RUNDLL32.EXE-D860C57B.pf --------- 35956  
 26.06.2011 20:58     C:\Windows\Prefetch\LULNCHR.EXE-F5999604.pf --------- 69688  
 26.06.2011 20:58     C:\Windows\Prefetch\LOGITECHUPDATE.EXE-656A2776.pf --------- 28914  
 22.06.2011 19:40     C:\Windows\Prefetch\NTOSBOOT-B00DFAAD.pf --------- 2701378  
 20.06.2011 03:36     C:\Windows\Prefetch\AgCx_SC4.db --------- 343491  
 07.12.2010 14:37     C:\Windows\Prefetch\AgAppLaunch.db --------- 334168  
 23.07.2010 19:28     C:\Windows\Prefetch\AgCx_SC1.db --------- 508532  
 23.07.2010 19:27     C:\Windows\Prefetch\AgCx_SC1.db.trx --------- 4688  
----------------------------------------

 
C:\Windows\Tasks

 28.06.2011 11:52     C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job --------- 1108  
 28.06.2011 11:30     C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3793214032-3665191566-2873153956-1001UA.job --------- 1120  
 28.06.2011 10:25     C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job --------- 1104  
 28.06.2011 10:25     C:\Windows\Tasks\SA.DAT --------- 6  
 26.06.2011 13:30     C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3793214032-3665191566-2873153956-1001Core.job --------- 1068  
 30.05.2011 12:37     C:\Windows\Tasks\SCHEDLGU.TXT --------- 32640  
 30.05.2011 06:12     C:\Windows\Tasks\Norton Security Scan for Jonas.job --------- 448  
----------------------------------------

 
C:\Windows\Temp

 28.06.2011 10:31     C:\Windows\Temp\MpSigStub.log --------- 343996  
 28.06.2011 10:25     C:\Windows\Temp\{E9C1E0AC-C9B2-4c85-94DE-9C1518918D02}.tlb --------- 3596  
 28.06.2011 10:25     C:\Windows\Temp\{E9C1E0AC-C9B2-4c85-94DE-9C1518918D12}.tlb --------- 3596  
 28.06.2011 03:29     C:\Windows\Temp\MpCmdRun.log --------- 173230  
 27.06.2011 13:15     C:\Windows\Temp\fwtsqmfile13.sqm --------- 608  
 26.06.2011 16:21     C:\Windows\Temp\fwtsqmfile12.sqm --------- 608  
 24.06.2011 15:09     C:\Windows\Temp\fwtsqmfile11.sqm --------- 608  
 24.06.2011 03:43     C:\Windows\Temp\fwtsqmfile10.sqm --------- 608  
 23.06.2011 03:59     C:\Windows\Temp\fwtsqmfile09.sqm --------- 608  
 22.06.2011 04:34     C:\Windows\Temp\TMP000000343B240804FD540AB2 --------- 524288  
 21.06.2011 19:29     C:\Windows\Temp\fwtsqmfile08.sqm --------- 608  
 21.06.2011 10:29     C:\Windows\Temp\fwtsqmfile07.sqm --------- 608  
 21.06.2011 04:12     C:\Windows\Temp\fwtsqmfile06.sqm --------- 608  
 20.06.2011 03:29     C:\Windows\Temp\TMP000003430F80BA55AA76049F --------- 524288  
 17.06.2011 22:12     C:\Windows\Temp\fwtsqmfile05.sqm --------- 608  
 16.06.2011 03:12     C:\Windows\Temp\fwtsqmfile04.sqm --------- 608  
 16.06.2011 03:12     C:\Windows\Temp\TMP00000104D967A601DDC9F204 --------- 524288  
 15.06.2011 19:18     C:\Windows\Temp\dd_vcredistUI6FCC.txt --------- 18688  
 15.06.2011 19:18     C:\Windows\Temp\dd_vcredistMSI6FCC.txt --------- 442204  
 15.06.2011 19:17     C:\Windows\Temp\dd_vcredistUI6F23.txt --------- 18784  
 15.06.2011 19:17     C:\Windows\Temp\dd_vcredistMSI6F23.txt --------- 432362  
 15.06.2011 19:14     C:\Windows\Temp\KB2518870_20110615_191026226.html --------- 59422  
 15.06.2011 19:14     C:\Windows\Temp\KB2518870_20110615_191026226-Microsoft .NET Framework 4 Client Profile DEU Language Pack-MSP1.txt --------- 3949134  
 15.06.2011 19:13     C:\Windows\Temp\KB2518870_20110615_191026226-Microsoft .NET Framework 4 Client Profile-MSP0.txt --------- 10716414  
 15.06.2011 19:10     C:\Windows\Temp\KB2518870_10.0.30319 --------- 0  
 15.06.2011 19:10     C:\Windows\Temp\dd_clwireg.txt --------- 14684  
 15.06.2011 19:10     C:\Windows\Temp\KB2478663_20110615_190255838.html --------- 58244  
 15.06.2011 19:10     C:\Windows\Temp\KB2478663_20110615_190255838-Microsoft .NET Framework 4 Client Profile DEU Language Pack-MSP1.txt --------- 2047778  
 15.06.2011 19:09     C:\Windows\Temp\KB2478663_20110615_190255838-Microsoft .NET Framework 4 Client Profile-MSP0.txt --------- 10030382  
 15.06.2011 19:02     C:\Windows\Temp\KB2478663_10.0.30319 --------- 0  
 05.06.2011 13:36     C:\Windows\Temp\DMIFCB5.tmp --------- 0  
 05.06.2011 13:36     C:\Windows\Temp\DMIFC48.tmp --------- 0  
 05.06.2011 13:36     C:\Windows\Temp\kmdf01009.inf --------- 388  
 05.06.2011 13:36     C:\Windows\Temp\WdfCoInstaller01009.dll --------- 1721576  
 05.06.2011 13:36     C:\Windows\Temp\GUR5688.tmp --------- 0  
 31.05.2011 16:55     C:\Windows\Temp\fwtsqmfile03.sqm --------- 608  
 30.05.2011 16:26     C:\Windows\Temp\fwtsqmfile02.sqm --------- 608  
 30.05.2011 07:13     C:\Windows\Temp\fwtsqmfile19.sqm --------- 608  
 27.05.2011 20:09     C:\Windows\Temp\fwtsqmfile18.sqm --------- 608  
 26.05.2011 22:14     C:\Windows\Temp\fwtsqmfile17.sqm --------- 608  
 26.05.2011 13:50     C:\Windows\Temp\isE427.tmp --------- 0  
 26.05.2011 13:50     C:\Windows\Temp\isC0EE.tmp --------- 0  
 26.05.2011 13:50     C:\Windows\Temp\._msige60 --------- 24576  
 25.05.2011 14:44     C:\Windows\Temp\fwtsqmfile16.sqm --------- 608  
 24.05.2011 14:07     C:\Windows\Temp\fwtsqmfile15.sqm --------- 608  
 23.05.2011 22:31     C:\Windows\Temp\fwtsqmfile01.sqm --------- 608  
 21.05.2011 09:36     C:\Windows\Temp\TMP000000243971F7D4687A89C3 --------- 524288  
 20.05.2011 02:06     C:\Windows\Temp\Microsoft Visual C++ 2010  x86 Redistributable Setup_20110520_020644105.html --------- 94548  
 20.05.2011 02:06     C:\Windows\Temp\Microsoft Visual C++ 2010  x86 Redistributable Setup_20110520_020644105-Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319-MSP0.txt --------- 332514  
 20.05.2011 02:06     C:\Windows\Temp\Microsoft Visual C++ 2010  x86 Redistributable Setup_20110520_020644105-MSI_vc_red.msi.txt --------- 368690  
 20.05.2011 02:06     C:\Windows\Temp\Microsoft Visual C++ 2010  x86 Redistributable Setup_10.0.30319 --------- 0  
 20.05.2011 02:06     C:\Windows\Temp\Microsoft Visual C++ 2010  x64 Redistributable Setup_20110520_020632888.html --------- 99778  
 20.05.2011 02:06     C:\Windows\Temp\Microsoft Visual C++ 2010  x64 Redistributable Setup_20110520_020632888-Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319-MSP0.txt --------- 307594  
 20.05.2011 02:06     C:\Windows\Temp\Microsoft Visual C++ 2010  x64 Redistributable Setup_20110520_020632888-MSI_vc_red.msi.txt --------- 347718  
 20.05.2011 02:06     C:\Windows\Temp\Microsoft Visual C++ 2010  x64 Redistributable Setup_10.0.30319 --------- 0  
 20.05.2011 02:06     C:\Windows\Temp\dd_vcredistUI6ADD.txt --------- 11666  
 20.05.2011 02:06     C:\Windows\Temp\dd_vcredistMSI6ADD.txt --------- 431126  
 20.05.2011 02:06     C:\Windows\Temp\dd_vcredistUI6A71.txt --------- 11602  
 20.05.2011 02:06     C:\Windows\Temp\dd_vcredistMSI6A71.txt --------- 417242  
 20.05.2011 01:52     C:\Windows\Temp\fwtsqmfile00.sqm --------- 608  
 20.05.2011 01:47     C:\Windows\Temp\fwtsqmfile14.sqm --------- 608  
 15.05.2011 01:11     C:\Windows\Temp\GUR6A46.exe --------- 0  
 15.05.2011 01:11     C:\Windows\Temp\GUR6A46.tmp --------- 0  
 15.05.2011 01:00     C:\Windows\Temp\TMP000000C95AF12B17EFFCC8ED --------- 524288  
 13.05.2011 15:35     C:\Windows\Temp\TMP000000015375B6914CCF3C5C --------- 524288  
 12.05.2011 23:29     C:\Windows\Temp\TMP0000014139844B829EFE53D3 --------- 524288  
 11.05.2011 00:17     C:\Windows\Temp\TMP00000030AE0E0AE24A4D05CB --------- 524288  
 10.05.2011 16:10     C:\Windows\Temp\TMP00000092532167984BC5EE05 --------- 524288  
 09.05.2011 01:39     C:\Windows\Temp\TMP00000024B6C001FFA8BD63F0 --------- 524288  
 27.04.2011 11:46     C:\Windows\Temp\AVSETUP_4db7e5ef --------- 0  
 19.04.2011 22:59     C:\Windows\Temp\BITB3CB.tmp --------- 0  
 19.04.2011 22:59     C:\Windows\Temp\GURB357.tmp --------- 0  
 19.04.2011 22:54     C:\Windows\Temp\BIT3DFD.tmp --------- 0  
 19.04.2011 22:52     C:\Windows\Temp\GUR863F.tmp --------- 0  
 15.04.2011 20:10     C:\Windows\Temp\KB2446708_20110415_200715318.html --------- 55340  
 15.04.2011 20:10     C:\Windows\Temp\KB2446708_20110415_200715318-Microsoft .NET Framework 4 Client Profile-MSP0.txt --------- 9156478  
 15.04.2011 20:07     C:\Windows\Temp\KB2446708_10.0.30319 --------- 0  
 09.04.2011 00:45     C:\Windows\Temp\TMP00000081DEEC52DCDA204502 --------- 524288  
 08.04.2011 16:52     C:\Windows\Temp\dd_ATL80SP1_KB973923UI3FA6.txt --------- 11652  
 08.04.2011 16:52     C:\Windows\Temp\dd_ATL80SP1_KB973923MSI3FA6.txt --------- 539360  
 07.04.2011 15:28     C:\Windows\Temp\CDM --------- 0  
 04.03.2011 15:25     C:\Windows\Temp\MPInstrumentation --------- 0  
 08.01.2011 20:52     C:\Windows\Temp\TMP00000117505A5A978AA19247 --------- 524288  
 03.01.2011 05:33     C:\Windows\Temp\TMP0000014FA2451F0D684A5626 --------- 524288  
 29.12.2010 00:39     C:\Windows\Temp\TMP0000003DA12646CE02E98D21 --------- 524288  
 24.12.2010 00:37     C:\Windows\Temp\dmiwu --------- 0  
 07.12.2010 14:53     C:\Windows\Temp\debug.log --------- 3635  
 07.12.2010 14:50     C:\Windows\Temp\RarSFX0 --------- 4096  
 07.12.2010 14:38     C:\Windows\Temp\DMIE0DC.tmp --------- 0  
 25.11.2010 09:12     C:\Windows\Temp\KB2160841_20101125_081025417.html --------- 55180  
 25.11.2010 09:12     C:\Windows\Temp\KB2160841_20101125_081025417-Microsoft .NET Framework 4 Client Profile-MSP0.txt --------- 4775522  
 25.11.2010 09:10     C:\Windows\Temp\KB2160841_10.0.30319 --------- 0  
 25.10.2010 14:39     C:\Windows\Temp\lnonpnpsamp.log --------- 0  
 10.11.2009 18:51     C:\Windows\Temp\DMI5D8C.tmp --------- 0  
 14.10.2009 07:09     C:\Windows\Temp\FXSAPIDebugLogFile.txt --------- 0  
 14.10.2009 07:09     C:\Windows\Temp\FXSTIFFDebugLogFile.txt --------- 0  
 14.10.2009 07:06     C:\Windows\Temp\TS_BFF8.tmp --------- 262144  
 14.10.2009 07:06     C:\Windows\Temp\TS_BE71.tmp --------- 524288  
 14.10.2009 07:06     C:\Windows\Temp\TS_B3E1.tmp --------- 786432  
 14.10.2009 07:06     C:\Windows\Temp\TS_B343.tmp --------- 262144  
 14.10.2009 07:06     C:\Windows\Temp\TS_B268.tmp --------- 262144  
 14.10.2009 07:06     C:\Windows\Temp\TS_B10F.tmp --------- 262144  
 14.10.2009 07:06     C:\Windows\Temp\TS_AE6E.tmp --------- 458752  
 14.10.2009 07:06     C:\Windows\Temp\TS_ADC1.tmp --------- 327680  
 14.10.2009 07:06     C:\Windows\Temp\TS_AAF1.tmp --------- 262144  
 14.10.2009 07:06     C:\Windows\Temp\DMI5B4A.tmp --------- 0  
 10.06.2009 23:07     C:\Windows\Temp\FirstUX --------- 0  
----------------------------------------

 
C:\Users\Jonas\AppData\Local\Temp

 28.06.2011 12:02     C:\Users\Jonas\AppData\Local\Temp\etilqs_wk7V3IAZfnZb3Gtshb6m --------- 0  
 28.06.2011 11:55     C:\Users\Jonas\AppData\Local\Temp\etilqs_JUkl8vFc7YdwkMO1Xh8W --------- 0  
 28.06.2011 11:16     C:\Users\Jonas\AppData\Local\Temp\~DFD0F98248CDEB89B4.TMP --------- 147456  
 28.06.2011 11:07     C:\Users\Jonas\AppData\Local\Temp\~DF1FC79F42943285EF.TMP --------- 147456  
 28.06.2011 10:33     C:\Users\Jonas\AppData\Local\Temp\~DFFED988C0469DDA9F.TMP --------- 147456  
 28.06.2011 10:33     C:\Users\Jonas\AppData\Local\Temp\~DFD299B029CD796CD8.TMP --------- 147456  
 28.06.2011 10:32     C:\Users\Jonas\AppData\Local\Temp\_iu14D2N.tmp --------- 711728  
 28.06.2011 10:31     C:\Users\Jonas\AppData\Local\Temp\jusched.log --------- 415406  
 28.06.2011 10:26     C:\Users\Jonas\AppData\Local\Temp\etilqs_yWpLwWzJHYJUZLbJPr5d-journal --------- 0  
 28.06.2011 10:26     C:\Users\Jonas\AppData\Local\Temp\etilqs_yWpLwWzJHYJUZLbJPr5d --------- 1024  
 28.06.2011 10:26     C:\Users\Jonas\AppData\Local\Temp\div9F0C.tmp --------- 0  
 28.06.2011 10:26     C:\Users\Jonas\AppData\Local\Temp\{E9C1E0AC-C9B2-4c85-94DE-9C1518918D12}.tlb --------- 3596  
 28.06.2011 10:26     C:\Users\Jonas\AppData\Local\Temp\{E9C1E0AC-C9B2-4c85-94DE-9C1518918D02}.tlb --------- 3596  
 28.06.2011 10:25     C:\Users\Jonas\AppData\Local\Temp\WPDNSE --------- 0  
 28.06.2011 01:47     C:\Users\Jonas\AppData\Local\Temp\div8323.tmp --------- 0  
 27.06.2011 19:05     C:\Users\Jonas\AppData\Local\Temp\div97EB.tmp --------- 0  
 27.06.2011 17:28     C:\Users\Jonas\AppData\Local\Temp\div9DE3.tmp --------- 0  
 27.06.2011 12:43     C:\Users\Jonas\AppData\Local\Temp\hsperfdata_Jonas --------- 0  
 27.06.2011 12:38     C:\Users\Jonas\AppData\Local\Temp\div9A2C.tmp --------- 0  
 26.06.2011 20:58     C:\Users\Jonas\AppData\Local\Temp\div9ECD.tmp --------- 0  
 26.06.2011 16:22     C:\Users\Jonas\AppData\Local\Temp\div9379.tmp --------- 0  
 26.06.2011 14:11     C:\Users\Jonas\AppData\Local\Temp\{02C23D84-6FC1-4704-B7FE-215A2DF3C5B3} --------- 0  
 26.06.2011 14:01     C:\Users\Jonas\AppData\Local\Temp\{929B415C-F55C-4EA1-A97B-8CE4D85249AC} --------- 0  
 26.06.2011 14:00     C:\Users\Jonas\AppData\Local\Temp\7983.rra --------- 81920  
 26.06.2011 14:00     C:\Users\Jonas\AppData\Local\Temp\{F26F831A-927A-4C85-8073-7DC1485571D0} --------- 0  
 26.06.2011 14:00     C:\Users\Jonas\AppData\Local\Temp\{6B0B6469-0893-4556-9183-3EB4EC3F2516} --------- 0  
 26.06.2011 13:51     C:\Users\Jonas\AppData\Local\Temp\ec70.rra --------- 81920  
 26.06.2011 13:51     C:\Users\Jonas\AppData\Local\Temp\{71FAD8A3-EC54-45CD-A286-A900FD9F6012} --------- 0  
 26.06.2011 13:51     C:\Users\Jonas\AppData\Local\Temp\{6842D5CA-96D3-49E6-A9ED-328D99A015AD} --------- 0  
 26.06.2011 13:51     C:\Users\Jonas\AppData\Local\Temp\{41a1b45e-1263-459a-964e-8c4c1ce55470} --------- 0  
 26.06.2011 13:37     C:\Users\Jonas\AppData\Local\Temp\ed5a.rra --------- 81920  
 26.06.2011 13:37     C:\Users\Jonas\AppData\Local\Temp\{79914C67-00AF-4A1C-AAAE-67BE48C0E305} --------- 0  
 26.06.2011 13:37     C:\Users\Jonas\AppData\Local\Temp\{46472DB2-E434-4DA1-8DB7-0A2EF64E4F0E} --------- 0  
 26.06.2011 13:23     C:\Users\Jonas\AppData\Local\Temp\divC2A2.tmp --------- 0  
 26.06.2011 07:15     C:\Users\Jonas\AppData\Local\Temp\div98D5.tmp --------- 0  
 25.06.2011 20:15     C:\Users\Jonas\AppData\Local\Temp\divBCD8.tmp --------- 0  
 25.06.2011 20:12     C:\Users\Jonas\AppData\Local\Temp\divCC14.tmp --------- 0  
 25.06.2011 17:31     C:\Users\Jonas\AppData\Local\Temp\div979E.tmp --------- 0  
 25.06.2011 11:23     C:\Users\Jonas\AppData\Local\Temp\div9923.tmp --------- 0  
 25.06.2011 01:44     C:\Users\Jonas\AppData\Local\Temp\divC773.tmp --------- 0  
 24.06.2011 19:15     C:\Users\Jonas\AppData\Local\Temp\divAB8A.tmp --------- 0  
 24.06.2011 10:51     C:\Users\Jonas\AppData\Local\Temp\div9C8C.tmp --------- 0  
 24.06.2011 02:05     C:\Users\Jonas\AppData\Local\Temp\HoN Mod Manager --------- 0  
 24.06.2011 01:59     C:\Users\Jonas\AppData\Local\Temp\div9887.tmp --------- 0  
 23.06.2011 19:01     C:\Users\Jonas\AppData\Local\Temp\div9E41.tmp --------- 0  
 23.06.2011 12:45     C:\Users\Jonas\AppData\Local\Temp\divC551.tmp --------- 0  
 22.06.2011 19:40     C:\Users\Jonas\AppData\Local\Temp\divA46A.tmp --------- 0  
 22.06.2011 11:46     C:\Users\Jonas\AppData\Local\Temp\divA17C.tmp --------- 0  
 22.06.2011 00:53     C:\Users\Jonas\AppData\Local\Temp\div9D47.tmp --------- 0  
 22.06.2011 00:53     C:\Users\Jonas\AppData\Local\Temp\drm_dialogs.dll --------- 65536  
 21.06.2011 16:42     C:\Users\Jonas\AppData\Local\Temp\div9655.tmp --------- 0  
 21.06.2011 14:14     C:\Users\Jonas\AppData\Local\Temp\divBBCF.tmp --------- 0  
 21.06.2011 10:10     C:\Users\Jonas\AppData\Local\Temp\div8611.tmp --------- 0  
 20.06.2011 18:54     C:\Users\Jonas\AppData\Local\Temp\divD077.tmp --------- 0  
 20.06.2011 12:07     C:\Users\Jonas\AppData\Local\Temp\divA5B0.tmp --------- 0  
 20.06.2011 03:35     C:\Users\Jonas\AppData\Local\Temp\div5F6D.tmp --------- 0  
 20.06.2011 03:35     C:\Users\Jonas\AppData\Local\Temp\e0599c8c86f64c13aa --------- 0  
 20.06.2011 03:34     C:\Users\Jonas\AppData\Local\Temp\wmsetup.log --------- 27719  
 20.06.2011 00:34     C:\Users\Jonas\AppData\Local\Temp\JAUReg.log --------- 895  
 20.06.2011 00:34     C:\Users\Jonas\AppData\Local\Temp\AUCHECK_PARSER.txt --------- 4467  
 20.06.2011 00:33     C:\Users\Jonas\AppData\Local\Temp\java_install_reg.log --------- 12354  
 20.06.2011 00:31     C:\Users\Jonas\AppData\Local\Temp\java_install_sp.log --------- 5522  
 20.06.2011 00:30     C:\Users\Jonas\AppData\Local\Temp\jinstall.cfg --------- 1290  
 19.06.2011 11:37     C:\Users\Jonas\AppData\Local\Temp\div90EA.tmp --------- 0  
 19.06.2011 00:34     C:\Users\Jonas\AppData\Local\Temp\divA811.tmp --------- 0  
 18.06.2011 12:39     C:\Users\Jonas\AppData\Local\Temp\divA65C.tmp --------- 0  
 17.06.2011 20:07     C:\Users\Jonas\AppData\Local\Temp\divAD2F.tmp --------- 0  
 17.06.2011 16:16     C:\Users\Jonas\AppData\Local\Temp\divAF61.tmp --------- 0  
 17.06.2011 11:33     C:\Users\Jonas\AppData\Local\Temp\divB856.tmp --------- 0  
 17.06.2011 11:31     C:\Users\Jonas\AppData\Local\Temp\divD029.tmp --------- 0  
 17.06.2011 00:30     C:\Users\Jonas\AppData\Local\Temp\AdobeARM.log --------- 550632  
 17.06.2011 00:30     C:\Users\Jonas\AppData\Local\Temp\ArmUI.ini --------- 148526  
 16.06.2011 11:10     C:\Users\Jonas\AppData\Local\Temp\divC7A1.tmp --------- 0  
 15.06.2011 23:48     C:\Users\Jonas\AppData\Local\Temp\AUCHECK_CORE.txt --------- 14496  
 15.06.2011 23:43     C:\Users\Jonas\AppData\Local\Temp\div34F4.tmp --------- 0  
 15.06.2011 19:00     C:\Users\Jonas\AppData\Local\Temp\chrome_installer.log --------- 135  
 15.06.2011 14:37     C:\Users\Jonas\AppData\Local\Temp\tmp47104.WMC --------- 0  
 15.06.2011 13:41     C:\Users\Jonas\AppData\Local\Temp\QTInstallCode.log --------- 34223  
 15.06.2011 13:41     C:\Users\Jonas\AppData\Local\Temp\SetupAdminA0.log --------- 85  
 15.06.2011 13:23     C:\Users\Jonas\AppData\Local\Temp\div7E62.tmp --------- 0  
 15.06.2011 13:22     C:\Users\Jonas\AppData\Local\Temp\div90E9.tmp --------- 0  
 05.06.2011 13:36     C:\Users\Jonas\AppData\Local\Temp\div9C0F.tmp --------- 0  
 31.05.2011 12:22     C:\Users\Jonas\AppData\Local\Temp\div99FD.tmp --------- 0  
 31.05.2011 06:46     C:\Users\Jonas\AppData\Local\Temp\divA044.tmp --------- 0  
 30.05.2011 17:34     C:\Users\Jonas\AppData\Local\Temp\divB5B7.tmp --------- 0  
 30.05.2011 17:28     C:\Users\Jonas\AppData\Local\Temp\divC2C1.tmp --------- 0  
 30.05.2011 12:38     C:\Users\Jonas\AppData\Local\Temp\divBDC2.tmp --------- 0  
 30.05.2011 06:12     C:\Users\Jonas\AppData\Local\Temp\divB75C.tmp --------- 0  
 29.05.2011 21:04     C:\Users\Jonas\AppData\Local\Temp\tmp1.data --------- 1675  
 29.05.2011 18:53     C:\Users\Jonas\AppData\Local\Temp\5e85.rra --------- 81920  
 29.05.2011 18:53     C:\Users\Jonas\AppData\Local\Temp\{185EDC76-6340-4A7D-995D-4BCA3EC3C14F} --------- 0  
 29.05.2011 18:53     C:\Users\Jonas\AppData\Local\Temp\{DE7B4DD5-B5DB-4DED-BB15-3231A354E1E1} --------- 0  
 29.05.2011 18:50     C:\Users\Jonas\AppData\Local\Temp\gentee01 --------- 0  
 29.05.2011 18:50     C:\Users\Jonas\AppData\Local\Temp\gentee01.tmp --------- 0  
 29.05.2011 18:50     C:\Users\Jonas\AppData\Local\Temp\uninst1.exe --------- 105472  
 29.05.2011 18:47     C:\Users\Jonas\AppData\Local\Temp\divC18B.tmp --------- 0  
 29.05.2011 18:47     C:\Users\Jonas\AppData\Local\Temp\divFE1E.tmp --------- 0  
 29.05.2011 18:46     C:\Users\Jonas\AppData\Local\Temp\SymCCIS_CheckCriteria.txt --------- 758  
 29.05.2011 18:46     C:\Users\Jonas\AppData\Local\Temp\SCCLog.txt --------- 2603  
 29.05.2011 18:45     C:\Users\Jonas\AppData\Local\Temp\divA2B5.tmp --------- 0  
 29.05.2011 12:04     C:\Users\Jonas\AppData\Local\Temp\divBFD5.tmp --------- 0  
 29.05.2011 11:47     C:\Users\Jonas\AppData\Local\Temp\div927E.tmp --------- 0  
 29.05.2011 11:10     C:\Users\Jonas\AppData\Local\Temp\div95F7.tmp --------- 0  
 29.05.2011 03:13     C:\Users\Jonas\AppData\Local\Temp\div9EEE.tmp --------- 0  
 28.05.2011 17:01     C:\Users\Jonas\AppData\Local\Temp\divB691.tmp --------- 0  
 28.05.2011 10:46     C:\Users\Jonas\AppData\Local\Temp\div90F9.tmp --------- 0  
 28.05.2011 01:40     C:\Users\Jonas\AppData\Local\Temp\divAEF3.tmp --------- 0  
 27.05.2011 13:55     C:\Users\Jonas\AppData\Local\Temp\div9E12.tmp --------- 0  
 27.05.2011 10:26     C:\Users\Jonas\AppData\Local\Temp\div9839.tmp --------- 0  
 27.05.2011 02:43     C:\Users\Jonas\AppData\Local\Temp\div9EBE.tmp --------- 0  
 26.05.2011 13:38     C:\Users\Jonas\AppData\Local\Temp\divA0FF.tmp --------- 0  
 26.05.2011 02:27     C:\Users\Jonas\AppData\Local\Temp\~DF1DECD3AF0B75FC2E.TMP --------- 16384  
 26.05.2011 01:31     C:\Users\Jonas\AppData\Local\Temp\divC206.tmp --------- 0  
 25.05.2011 22:23     C:\Users\Jonas\AppData\Local\Temp\ge3968 --------- 0  
 25.05.2011 17:36     C:\Users\Jonas\AppData\Local\Temp\divA35F.tmp --------- 0  
 25.05.2011 11:19     C:\Users\Jonas\AppData\Local\Temp\div94BF.tmp --------- 0  
 25.05.2011 01:26     C:\Users\Jonas\AppData\Local\Temp\div9684.tmp --------- 0  
 24.05.2011 18:44     C:\Users\Jonas\AppData\Local\Temp\div9C7E.tmp --------- 0  
 24.05.2011 14:14     C:\Users\Jonas\AppData\Local\Temp\div8CB4.tmp --------- 0  
 24.05.2011 14:10     C:\Users\Jonas\AppData\Local\Temp\div88AF.tmp --------- 0  
 24.05.2011 10:19     C:\Users\Jonas\AppData\Local\Temp\div5DD8.tmp --------- 0  
 24.05.2011 09:53     C:\Users\Jonas\AppData\Local\Temp\div9B35.tmp --------- 0  
 23.05.2011 22:36     C:\Users\Jonas\AppData\Local\Temp\div9E7F.tmp --------- 0  
 23.05.2011 19:48     C:\Users\Jonas\AppData\Local\Temp\div8DAE.tmp --------- 0  
 23.05.2011 14:59     C:\Users\Jonas\AppData\Local\Temp\div92DC.tmp --------- 0  
 23.05.2011 11:03     C:\Users\Jonas\AppData\Local\Temp\div8E4A.tmp --------- 0  
 22.05.2011 22:18     C:\Users\Jonas\AppData\Local\Temp\div8EC7.tmp --------- 0  
 22.05.2011 12:22     C:\Users\Jonas\AppData\Local\Temp\div7731.tmp --------- 0  
 21.05.2011 23:17     C:\Users\Jonas\AppData\Local\Temp\div8D41.tmp --------- 0  
 21.05.2011 14:41     C:\Users\Jonas\AppData\Local\Temp\divBE7D.tmp --------- 0  
 21.05.2011 08:40     C:\Users\Jonas\AppData\Local\Temp\div979D.tmp --------- 0  
 20.05.2011 11:13     C:\Users\Jonas\AppData\Local\Temp\div83C0.tmp --------- 0  
 20.05.2011 01:59     C:\Users\Jonas\AppData\Local\Temp\msdtadmin --------- 0  
 20.05.2011 01:48     C:\Users\Jonas\AppData\Local\Temp\div731C.tmp --------- 0  
 19.05.2011 22:59     C:\Users\Jonas\AppData\Local\Temp\div7CEC.tmp --------- 0  
 19.05.2011 11:47     C:\Users\Jonas\AppData\Local\Temp\div9C5D.tmp --------- 0  
 19.05.2011 02:40     C:\Users\Jonas\AppData\Local\Temp\BITB7C9.tmp --------- 589464  
 18.05.2011 16:09     C:\Users\Jonas\AppData\Local\Temp\divA0EF.tmp --------- 0  
 18.05.2011 12:12     C:\Users\Jonas\AppData\Local\Temp\div932A.tmp --------- 0  
 17.05.2011 11:43     C:\Users\Jonas\AppData\Local\Temp\divA736.tmp --------- 0  
 16.05.2011 10:15     C:\Users\Jonas\AppData\Local\Temp\divBAE5.tmp --------- 0  
 15.05.2011 22:55     C:\Users\Jonas\AppData\Local\Temp\~DF1E77D5FF191385D5.TMP --------- 16384  
 15.05.2011 15:14     C:\Users\Jonas\AppData\Local\Temp\divC5AE.tmp --------- 0  
 15.05.2011 02:20     C:\Users\Jonas\AppData\Local\Temp\{DF2BF327-42B0-4EF3-A86D-0ABCA156C7CC} --------- 0  
 15.05.2011 02:20     C:\Users\Jonas\AppData\Local\Temp\{114540CA-B23C-4CB7-A6FD-C01757B8AC94} --------- 0  
 15.05.2011 01:32     C:\Users\Jonas\AppData\Local\Temp\x86 --------- 0  
 15.05.2011 01:32     C:\Users\Jonas\AppData\Local\Temp\amd64 --------- 0  
 15.05.2011 01:22     C:\Users\Jonas\AppData\Local\Temp\divA350.tmp --------- 0  
 15.05.2011 01:11     C:\Users\Jonas\AppData\Local\Temp\div93D5.tmp --------- 0  
 15.05.2011 01:08     C:\Users\Jonas\AppData\Local\Temp\divAB3C.tmp --------- 0  
 15.05.2011 01:02     C:\Users\Jonas\AppData\Local\Temp\divEE63.tmp --------- 0  
 15.05.2011 00:59     C:\Users\Jonas\AppData\Local\Temp\etilqs_HianCNRyaYhsAgKIycOj --------- 0  
 15.05.2011 00:59     C:\Users\Jonas\AppData\Local\Temp\etilqs_2zuB4sYPBNQ9woAbZd5Z --------- 0  
 14.05.2011 23:30     C:\Users\Jonas\AppData\Local\Temp\{4A6AFFEC-BBF5-432F-9F21-7A2DDD353EFA} --------- 0  
 14.05.2011 23:30     C:\Users\Jonas\AppData\Local\Temp\{144FE2F6-212A-493C-87D7-B0F2676BEC68} --------- 0  
 14.05.2011 23:30     C:\Users\Jonas\AppData\Local\Temp\{ADCE8B1A-9026-4735-A9E2-1481645F9145} --------- 0  
 14.05.2011 23:27     C:\Users\Jonas\AppData\Local\Temp\{F0221850-FF19-40A4-9AE1-4A5A1C9C61D1} --------- 0  
 14.05.2011 23:26     C:\Users\Jonas\AppData\Local\Temp\4157.rra --------- 81920  
 14.05.2011 23:26     C:\Users\Jonas\AppData\Local\Temp\{18E0DBB5-46B0-4A4F-861B-AE82441DFAD2} --------- 0  
 14.05.2011 23:26     C:\Users\Jonas\AppData\Local\Temp\{DEF9F5BD-A131-463B-B8FC-3968AF081B58} --------- 0  
 14.05.2011 23:14     C:\Users\Jonas\AppData\Local\Temp\etilqs_6rw5Ma3U2PwrjVaJVTST-journal --------- 0  
 14.05.2011 23:14     C:\Users\Jonas\AppData\Local\Temp\etilqs_6rw5Ma3U2PwrjVaJVTST --------- 1024  
 14.05.2011 10:08     C:\Users\Jonas\AppData\Local\Temp\divB318.tmp --------- 0  
 13.05.2011 23:26     C:\Users\Jonas\AppData\Local\Temp\divE983.tmp --------- 0  
 13.05.2011 17:07     C:\Users\Jonas\AppData\Local\Temp\{FD7A45DE-2322-4BFE-B3F6-D38DAF2570D5} --------- 0  
 13.05.2011 17:06     C:\Users\Jonas\AppData\Local\Temp\{92EC1F15-155E-488F-94B7-5BD00FA40740} --------- 0  
 13.05.2011 17:04     C:\Users\Jonas\AppData\Local\Temp\{D759F5AC-D238-478D-93D6-6FE07EA2756C} --------- 0  
 13.05.2011 17:04     C:\Users\Jonas\AppData\Local\Temp\{A016E8F0-55CE-4514-9A9A-82BAF0691D6F} --------- 0  
 13.05.2011 17:02     C:\Users\Jonas\AppData\Local\Temp\{B0F20845-1856-4B8B-9029-D03E42D650E7} --------- 0  
 13.05.2011 17:02     C:\Users\Jonas\AppData\Local\Temp\{DC30A9F6-4E6F-4005-93D7-6D7065D665BF} --------- 0  
 13.05.2011 16:19     C:\Users\Jonas\AppData\Local\Temp\{814094EC-12F9-46BD-9557-2C083A99BAF9} --------- 0  
 13.05.2011 16:19     C:\Users\Jonas\AppData\Local\Temp\{94A126C8-5F75-4EA0-BA09-32DF405FB907} --------- 0  
 13.05.2011 16:16     C:\Users\Jonas\AppData\Local\Temp\{A6ADD0EA-45C3-4FBC-ABDA-3CBC296CAE1A} --------- 0  
 13.05.2011 16:16     C:\Users\Jonas\AppData\Local\Temp\{F10E7E48-B2E7-49F4-8245-C01606D676DA} --------- 0  
 13.05.2011 15:37     C:\Users\Jonas\AppData\Local\Temp\divB6DF.tmp --------- 0  
 13.05.2011 15:34     C:\Users\Jonas\AppData\Local\Temp\etilqs_l3i4yGmuDB8XXNrGunJn --------- 0  
 13.05.2011 15:32     C:\Users\Jonas\AppData\Local\Temp\divA67B.tmp --------- 0  
 13.05.2011 14:59     C:\Users\Jonas\AppData\Local\Temp\{1da8714c-ba7f-4431-8cec-c9fe4ffb5710} --------- 0  
 13.05.2011 14:43     C:\Users\Jonas\AppData\Local\Temp\{72853573-4BD6-4C3F-9C36-020DA456861A} --------- 0  
 13.05.2011 14:41     C:\Users\Jonas\AppData\Local\Temp\{14F92A26-72EF-4138-BCAD-D2E8D198298C} --------- 0  
 13.05.2011 14:30     C:\Users\Jonas\AppData\Local\Temp\{20894A87-EF72-49B4-ADBA-E6C19C4F9C97} --------- 0  
 13.05.2011 13:59     C:\Users\Jonas\AppData\Local\Temp\{B23BC2B4-F7AB-4B6D-8B51-AC5B6B08B07D} --------- 0  
 13.05.2011 13:59     C:\Users\Jonas\AppData\Local\Temp\{66D66279-54FB-465E-BFD4-FEE8E3F54DE8} --------- 0  
 13.05.2011 12:57     C:\Users\Jonas\AppData\Local\Temp\divB173.tmp --------- 0  
 12.05.2011 18:51     C:\Users\Jonas\AppData\Local\Temp\BFBC2Updater.log --------- 335203  
 12.05.2011 17:09     C:\Users\Jonas\AppData\Local\Temp\{91960ea1-35e2-41fe-94b2-df899cbc9ee1} --------- 0  
 12.05.2011 14:47     C:\Users\Jonas\AppData\Local\Temp\div9829.tmp --------- 0  
 12.05.2011 09:17     C:\Users\Jonas\AppData\Local\Temp\div9DC4.tmp --------- 0  
 12.05.2011 09:15     C:\Users\Jonas\AppData\Local\Temp\etilqs_fJTUWwyl79fXDglBEgYa --------- 0  
 12.05.2011 09:15     C:\Users\Jonas\AppData\Local\Temp\fla8593.tmp --------- 8001717  
 12.05.2011 08:46     C:\Users\Jonas\AppData\Local\Temp\etilqs_4kYusYjd676Jheb3OjYq --------- 0  
 12.05.2011 08:44     C:\Users\Jonas\AppData\Local\Temp\div7CCD.tmp --------- 0  
 11.05.2011 23:01     C:\Users\Jonas\AppData\Local\Temp\div83BF.tmp --------- 0  
 11.05.2011 19:35     C:\Users\Jonas\AppData\Local\Temp\div8CA5.tmp --------- 0  
 11.05.2011 13:21     C:\Users\Jonas\AppData\Local\Temp\divE204.tmp --------- 0  
 11.05.2011 12:03     C:\Users\Jonas\AppData\Local\Temp\etilqs_7flQUDIXUbaHu6v9DAtf --------- 0  
 11.05.2011 11:52     C:\Users\Jonas\AppData\Local\Temp\etilqs_wmQX72Ps831JT4dbWjoC --------- 0  
 11.05.2011 10:39     C:\Users\Jonas\AppData\Local\Temp\fla643F.tmp --------- 3852705  
 11.05.2011 10:37     C:\Users\Jonas\AppData\Local\Temp\div94FF.tmp --------- 0  
 10.05.2011 22:17     C:\Users\Jonas\AppData\Local\Temp\div584C.tmp --------- 0  
 10.05.2011 18:24     C:\Users\Jonas\AppData\Local\Temp\div70AC.tmp --------- 0  
 10.05.2011 08:05     C:\Users\Jonas\AppData\Local\Temp\div560B.tmp --------- 0  
 09.05.2011 23:11     C:\Users\Jonas\AppData\Local\Temp\i4j_nlog_2 --------- 6718  
 09.05.2011 22:49     C:\Users\Jonas\AppData\Local\Temp\div59B3.tmp --------- 0  
 09.05.2011 19:23     C:\Users\Jonas\AppData\Local\Temp\div587B.tmp --------- 0  
 09.05.2011 14:43     C:\Users\Jonas\AppData\Local\Temp\divA9D6.tmp --------- 0  
 09.05.2011 11:37     C:\Users\Jonas\AppData\Local\Temp\{D7F7D7DD-0215-472F-9D20-F16A04F8D710} --------- 0  
 09.05.2011 11:37     C:\Users\Jonas\AppData\Local\Temp\{07FFFC7E-58F3-4108-B746-8336745790A0} --------- 0  
 09.05.2011 11:29     C:\Users\Jonas\AppData\Local\Temp\ubi9DE4.tmp.exe --------- 229621136  
 09.05.2011 11:14     C:\Users\Jonas\AppData\Local\Temp\{08D9BD6B-783F-44BB-8DF1-3ECC2D49F99B} --------- 0  
 09.05.2011 11:11     C:\Users\Jonas\AppData\Local\Temp\div6D42.tmp --------- 0  
 09.05.2011 00:56     C:\Users\Jonas\AppData\Local\Temp\div57DF.tmp --------- 0  
 08.05.2011 17:49     C:\Users\Jonas\AppData\Local\Temp\div70CB.tmp --------- 0  
 08.05.2011 10:32     C:\Users\Jonas\AppData\Local\Temp\div5494.tmp --------- 0  
 07.05.2011 23:54     C:\Users\Jonas\AppData\Local\Temp\div59D2.tmp --------- 0  
 07.05.2011 19:02     C:\Users\Jonas\AppData\Local\Temp\div5A3F.tmp --------- 0  
 07.05.2011 12:23     C:\Users\Jonas\AppData\Local\Temp\div758C.tmp --------- 0  
 06.05.2011 14:31     C:\Users\Jonas\AppData\Local\Temp\div2BFF.tmp --------- 0  
 05.05.2011 20:16     C:\Users\Jonas\AppData\Local\Temp\ge2844 --------- 0  
 05.05.2011 20:01     C:\Users\Jonas\AppData\Local\Temp\div5907.tmp --------- 0  
 05.05.2011 17:18     C:\Users\Jonas\AppData\Local\Temp\jre-6u26-windows-i586-iftw-rv.exe --------- 901408  
 05.05.2011 17:13     C:\Users\Jonas\AppData\Local\Temp\div61CE.tmp --------- 0  
 05.05.2011 10:21     C:\Users\Jonas\AppData\Local\Temp\div6C68.tmp --------- 0  
 04.05.2011 23:21     C:\Users\Jonas\AppData\Local\Temp\{4DE0AEDE-3A77-4A28-BFDF-DEAC7156024B} --------- 0  
 04.05.2011 22:36     C:\Users\Jonas\AppData\Local\Temp\divBFC5.tmp --------- 0  
 04.05.2011 22:34     C:\Users\Jonas\AppData\Local\Temp\etilqs_mIbpfAC0QXt7bz02hkKP --------- 0  
 04.05.2011 20:14     C:\Users\Jonas\AppData\Local\Temp\etilqs_jgQwU1yMqnIKXw6JYCqz --------- 0  
 04.05.2011 20:11     C:\Users\Jonas\AppData\Local\Temp\div9819.tmp --------- 0  
 04.05.2011 14:05     C:\Users\Jonas\AppData\Local\Temp\div9896.tmp --------- 0  
 04.05.2011 07:47     C:\Users\Jonas\AppData\Local\Temp\divA469.tmp --------- 0  
 03.05.2011 16:10     C:\Users\Jonas\AppData\Local\Temp\div8F05.tmp --------- 0  
 03.05.2011 11:26     C:\Users\Jonas\AppData\Local\Temp\div9607.tmp --------- 0  
 03.05.2011 09:25     C:\Users\Jonas\AppData\Local\Temp\div8610.tmp --------- 0
         

Alt 28.06.2011, 11:18   #8
Jonas_
 
Werde auf andere Seiten gelenkt! (Google) - Standard

Werde auf andere Seiten gelenkt! (Google)



HJTScanlist.txt zweiter Teil:

Code:
ATTFilter
 02.05.2011 21:39     C:\Users\Jonas\AppData\Local\Temp\~DFA2A0C473D605D6C0.TMP --------- 16384  
 02.05.2011 20:14     C:\Users\Jonas\AppData\Local\Temp\div88BF.tmp --------- 0  
 02.05.2011 13:32     C:\Users\Jonas\AppData\Local\Temp\divBEEB.tmp --------- 0  
 02.05.2011 08:42     C:\Users\Jonas\AppData\Local\Temp\div926F.tmp --------- 0  
 01.05.2011 22:08     C:\Users\Jonas\AppData\Local\Temp\div8C18.tmp --------- 0  
 01.05.2011 12:27     C:\Users\Jonas\AppData\Local\Temp\div9DD4.tmp --------- 0  
 30.04.2011 11:45     C:\Users\Jonas\AppData\Local\Temp\div8F44.tmp --------- 0  
 30.04.2011 01:31     C:\Users\Jonas\AppData\Local\Temp\divA256.tmp --------- 0  
 29.04.2011 10:40     C:\Users\Jonas\AppData\Local\Temp\divA295.tmp --------- 0  
 28.04.2011 22:15     C:\Users\Jonas\AppData\Local\Temp\divAAAF.tmp --------- 0  
 28.04.2011 13:24     C:\Users\Jonas\AppData\Local\Temp\divC8BA.tmp --------- 0  
 28.04.2011 08:46     C:\Users\Jonas\AppData\Local\Temp\div8D32.tmp --------- 0  
 28.04.2011 00:01     C:\Users\Jonas\AppData\Local\Temp\div8F15.tmp --------- 0  
 27.04.2011 20:10     C:\Users\Jonas\AppData\Local\Temp\pdf24 --------- 0  
 27.04.2011 19:43     C:\Users\Jonas\AppData\Local\Temp\msohtml1 --------- 0  
 27.04.2011 17:35     C:\Users\Jonas\AppData\Local\Temp\div8B5D.tmp --------- 0  
 27.04.2011 10:38     C:\Users\Jonas\AppData\Local\Temp\div9C7D.tmp --------- 0  
 27.04.2011 01:34     C:\Users\Jonas\AppData\Local\Temp\SetupAdminD84.log --------- 85  
 27.04.2011 01:25     C:\Users\Jonas\AppData\Local\Temp\AdobeARM_NotLocked.log --------- 745  
 27.04.2011 01:14     C:\Users\Jonas\AppData\Local\Temp\div8833.tmp --------- 0  
 26.04.2011 16:31     C:\Users\Jonas\AppData\Local\Temp\div8EA8.tmp --------- 0  
 26.04.2011 12:29     C:\Users\Jonas\AppData\Local\Temp\div8D02.tmp --------- 0  
 26.04.2011 01:19     C:\Users\Jonas\AppData\Local\Temp\div823A.tmp --------- 0  
 25.04.2011 19:46     C:\Users\Jonas\AppData\Local\Temp\div893B.tmp --------- 0  
 25.04.2011 15:06     C:\Users\Jonas\AppData\Local\Temp\div8516.tmp --------- 0  
 25.04.2011 12:50     C:\Users\Jonas\AppData\Local\Temp\div9D57.tmp --------- 0  
 24.04.2011 10:45     C:\Users\Jonas\AppData\Local\Temp\div98C6.tmp --------- 0  
 23.04.2011 22:16     C:\Users\Jonas\AppData\Local\Temp\div7B75.tmp --------- 0  
 23.04.2011 17:25     C:\Users\Jonas\AppData\Local\Temp\div6A17.tmp --------- 0  
 23.04.2011 12:05     C:\Users\Jonas\AppData\Local\Temp\div7DA7.tmp --------- 0  
 22.04.2011 17:35     C:\Users\Jonas\AppData\Local\Temp\div7E24.tmp --------- 0  
 22.04.2011 14:14     C:\Users\Jonas\AppData\Local\Temp\div8788.tmp --------- 0  
 22.04.2011 12:48     C:\Users\Jonas\AppData\Local\Temp\ge560 --------- 0  
 22.04.2011 11:15     C:\Users\Jonas\AppData\Local\Temp\div6CA6.tmp --------- 0  
 22.04.2011 10:21     C:\Users\Jonas\AppData\Local\Temp\div89F6.tmp --------- 0  
 21.04.2011 23:06     C:\Users\Jonas\AppData\Local\Temp\div8A26.tmp --------- 0  
 21.04.2011 17:58     C:\Users\Jonas\AppData\Local\Temp\div90BA.tmp --------- 0  
 21.04.2011 11:31     C:\Users\Jonas\AppData\Local\Temp\div8A44.tmp --------- 0  
 20.04.2011 18:52     C:\Users\Jonas\AppData\Local\Temp\divD893.tmp --------- 0  
 20.04.2011 18:52     C:\Users\Jonas\AppData\Local\Temp\divC727.tmp --------- 0  
 20.04.2011 17:59     C:\Users\Jonas\AppData\Local\Temp\divD5E5.tmp --------- 0  
 20.04.2011 17:59     C:\Users\Jonas\AppData\Local\Temp\DivXSetup.exe --------- 913760  
 20.04.2011 14:48     C:\Users\Jonas\AppData\Local\Temp\div8E59.tmp --------- 0  
 20.04.2011 14:43     C:\Users\Jonas\AppData\Local\Temp\Jonas.bmp --------- 31832  
 20.04.2011 14:12     C:\Users\Jonas\AppData\Local\Temp\div9DA5.tmp --------- 0  
 20.04.2011 03:21     C:\Users\Jonas\AppData\Local\Temp\~DF2ACE682E06983771.TMP --------- 16384  
 19.04.2011 23:32     C:\Users\Jonas\AppData\Local\Temp\div7C8E.tmp --------- 0  
 19.04.2011 23:00     C:\Users\Jonas\AppData\Local\Temp\div9404.tmp --------- 0  
 19.04.2011 22:59     C:\Users\Jonas\AppData\Local\Temp\divBAC6.tmp --------- 0  
 19.04.2011 22:59     C:\Users\Jonas\AppData\Local\Temp\BITBAFD.tmp --------- 0  
 19.04.2011 22:59     C:\Users\Jonas\AppData\Local\Temp\GURBA1A.tmp --------- 0  
 19.04.2011 22:56     C:\Users\Jonas\AppData\Local\Temp\divB3E3.tmp --------- 0  
 19.04.2011 22:54     C:\Users\Jonas\AppData\Local\Temp\BIT3DEC.tmp --------- 0  
 19.04.2011 22:52     C:\Users\Jonas\AppData\Local\Temp\divB183.tmp --------- 0  
 19.04.2011 22:52     C:\Users\Jonas\AppData\Local\Temp\GUR8729.tmp --------- 0  
 19.04.2011 14:40     C:\Users\Jonas\AppData\Local\Temp\div8F54.tmp --------- 0  
 19.04.2011 11:12     C:\Users\Jonas\AppData\Local\Temp\div99AF.tmp --------- 0  
 19.04.2011 02:15     C:\Users\Jonas\AppData\Local\Temp\div92AD.tmp --------- 0  
 18.04.2011 19:08     C:\Users\Jonas\AppData\Local\Temp\Word8.0 --------- 0  
 18.04.2011 17:09     C:\Users\Jonas\AppData\Local\Temp\div9423.tmp --------- 0  
 18.04.2011 14:12     C:\Users\Jonas\AppData\Local\Temp\div88BE.tmp --------- 0  
 18.04.2011 09:30     C:\Users\Jonas\AppData\Local\Temp\div8C09.tmp --------- 0  
 17.04.2011 17:32     C:\Users\Jonas\AppData\Local\Temp\div9A3B.tmp --------- 0  
 17.04.2011 09:03     C:\Users\Jonas\AppData\Local\Temp\divA1F9.tmp --------- 0  
 16.04.2011 11:24     C:\Users\Jonas\AppData\Local\Temp\div3C73.tmp --------- 0  
 15.04.2011 18:35     C:\Users\Jonas\AppData\Local\Temp\div869E.tmp --------- 0  
 14.04.2011 17:15     C:\Users\Jonas\AppData\Local\Temp\div869D.tmp --------- 0  
 14.04.2011 12:34     C:\Users\Jonas\AppData\Local\Temp\div8535.tmp --------- 0  
 13.04.2011 22:27     C:\Users\Jonas\AppData\Local\Temp\div8AB1.tmp --------- 0  
 13.04.2011 19:22     C:\Users\Jonas\AppData\Local\Temp\div8787.tmp --------- 0  
 13.04.2011 14:13     C:\Users\Jonas\AppData\Local\Temp\div87D4.tmp --------- 0  
 12.04.2011 22:04     C:\Users\Jonas\AppData\Local\Temp\div92FB.tmp --------- 0  
 12.04.2011 18:00     C:\Users\Jonas\AppData\Local\Temp\div9A1C.tmp --------- 0  
 12.04.2011 15:33     C:\Users\Jonas\AppData\Local\Temp\div972F.tmp --------- 0  
 11.04.2011 21:36     C:\Users\Jonas\AppData\Local\Temp\div71B5.tmp --------- 0  
 11.04.2011 15:05     C:\Users\Jonas\AppData\Local\Temp\div8F53.tmp --------- 0  
 10.04.2011 23:26     C:\Users\Jonas\AppData\Local\Temp\DDMCache --------- 0  
 10.04.2011 22:24     C:\Users\Jonas\AppData\Local\Temp\div8DEC.tmp --------- 0  
 10.04.2011 15:54     C:\Users\Jonas\AppData\Local\Temp\div8C76.tmp --------- 0  
 10.04.2011 12:09     C:\Users\Jonas\AppData\Local\Temp\divA340.tmp --------- 0  
 09.04.2011 23:22     C:\Users\Jonas\AppData\Local\Temp\div8D31.tmp --------- 0  
 09.04.2011 08:40     C:\Users\Jonas\AppData\Local\Temp\div957B.tmp --------- 0  
 09.04.2011 07:47     C:\Users\Jonas\AppData\Local\Temp\div9A4B.tmp --------- 0  
 08.04.2011 20:43     C:\Users\Jonas\AppData\Local\Temp\divD058.tmp --------- 0  
 08.04.2011 16:39     C:\Users\Jonas\AppData\Local\Temp\04081621-00001280-jjp7zu5pwi --------- 0  
 08.04.2011 14:09     C:\Users\Jonas\AppData\Local\Temp\div9378.tmp --------- 0  
 08.04.2011 08:40     C:\Users\Jonas\AppData\Local\Temp\div8C37.tmp --------- 0  
 07.04.2011 22:17     C:\Users\Jonas\AppData\Local\Temp\div9EED.tmp --------- 0  
 07.04.2011 16:50     C:\Users\Jonas\AppData\Local\Temp\div8F34.tmp --------- 0  
 07.04.2011 15:13     C:\Users\Jonas\AppData\Local\Temp\FXSTIFFDebugLogFile.txt --------- 0  
 07.04.2011 14:16     C:\Users\Jonas\AppData\Local\Temp\div88ED.tmp --------- 0  
 07.04.2011 07:33     C:\Users\Jonas\AppData\Local\Temp\div905C.tmp --------- 0  
 06.04.2011 16:47     C:\Users\Jonas\AppData\Local\Temp\div7DC6.tmp --------- 0  
 05.04.2011 22:27     C:\Users\Jonas\AppData\Local\Temp\div8880.tmp --------- 0  
 05.04.2011 17:05     C:\Users\Jonas\AppData\Local\Temp\oPackage --------- 0  
 05.04.2011 13:48     C:\Users\Jonas\AppData\Local\Temp\div3111.tmp --------- 0  
 05.04.2011 13:48     C:\Users\Jonas\AppData\Local\Temp\div1038.tmp --------- 0  
 05.04.2011 12:23     C:\Users\Jonas\AppData\Local\Temp\div83CF.tmp --------- 0  
 04.04.2011 18:15     C:\Users\Jonas\AppData\Local\Temp\div842C.tmp --------- 0  
 04.04.2011 14:29     C:\Users\Jonas\AppData\Local\Temp\div86BB.tmp --------- 0  
 04.04.2011 07:12     C:\Users\Jonas\AppData\Local\Temp\div8B6D.tmp --------- 0  
 04.04.2011 00:21     C:\Users\Jonas\AppData\Local\Temp\div8D7F.tmp --------- 0  
 03.04.2011 22:28     C:\Users\Jonas\AppData\Local\Temp\div7AAB.tmp --------- 0  
 03.04.2011 16:55     C:\Users\Jonas\AppData\Local\Temp\div861F.tmp --------- 0  
 03.04.2011 09:38     C:\Users\Jonas\AppData\Local\Temp\div8A25.tmp --------- 0  
 03.04.2011 00:39     C:\Users\Jonas\AppData\Local\Temp\div8F43.tmp --------- 0  
 02.04.2011 12:20     C:\Users\Jonas\AppData\Local\Temp\div8EA7.tmp --------- 0  
 01.04.2011 18:07     C:\Users\Jonas\AppData\Local\Temp\div99DF.tmp --------- 0  
 01.04.2011 15:18     C:\Users\Jonas\AppData\Local\Temp\div95E8.tmp --------- 0  
 01.04.2011 10:40     C:\Users\Jonas\AppData\Local\Temp\div8E98.tmp --------- 0  
 31.03.2011 21:59     C:\Users\Jonas\AppData\Local\Temp\divAF70.tmp --------- 0  
 31.03.2011 14:43     C:\Users\Jonas\AppData\Local\Temp\div8B2F.tmp --------- 0  
 31.03.2011 07:58     C:\Users\Jonas\AppData\Local\Temp\div91D3.tmp --------- 0  
 30.03.2011 21:34     C:\Users\Jonas\AppData\Local\Temp\div9339.tmp --------- 0  
 30.03.2011 13:50     C:\Users\Jonas\AppData\Local\Temp\div8A92.tmp --------- 0  
 29.03.2011 22:00     C:\Users\Jonas\AppData\Local\Temp\div98C5.tmp --------- 0  
 29.03.2011 14:35     C:\Users\Jonas\AppData\Local\Temp\div94FE.tmp --------- 0  
 29.03.2011 07:04     C:\Users\Jonas\AppData\Local\Temp\div8B7D.tmp --------- 0  
 28.03.2011 21:31     C:\Users\Jonas\AppData\Local\Temp\div695C.tmp --------- 0  
 28.03.2011 15:01     C:\Users\Jonas\AppData\Local\Temp\div7473.tmp --------- 0  
 27.03.2011 22:24     C:\Users\Jonas\AppData\Local\Temp\div8CD3.tmp --------- 0  
 27.03.2011 12:08     C:\Users\Jonas\AppData\Local\Temp\div6FE1.tmp --------- 0  
 27.03.2011 08:55     C:\Users\Jonas\AppData\Local\Temp\divA84F.tmp --------- 0  
 26.03.2011 21:09     C:\Users\Jonas\AppData\Local\Temp\div7AD9.tmp --------- 0  
 26.03.2011 02:07     C:\Users\Jonas\AppData\Local\Temp\divA60E.tmp --------- 0  
 25.03.2011 14:43     C:\Users\Jonas\AppData\Local\Temp\divA6D9.tmp --------- 0  
 24.03.2011 23:05     C:\Users\Jonas\AppData\Local\Temp\div8870.tmp --------- 0  
 24.03.2011 15:41     C:\Users\Jonas\AppData\Local\Temp\divAB5B.tmp --------- 0  
 23.03.2011 21:01     C:\Users\Jonas\AppData\Local\Temp\div6E3C.tmp --------- 0  
 23.03.2011 18:00     C:\Users\Jonas\AppData\Local\Temp\div702F.tmp --------- 0  
 22.03.2011 15:23     C:\Users\Jonas\AppData\Local\Temp\div88DD.tmp --------- 0  
 21.03.2011 22:33     C:\Users\Jonas\AppData\Local\Temp\div82E5.tmp --------- 0  
 21.03.2011 15:37     C:\Users\Jonas\AppData\Local\Temp\div9D67.tmp --------- 0  
 20.03.2011 19:27     C:\Users\Jonas\AppData\Local\Temp\div7F0E.tmp --------- 0  
 20.03.2011 12:09     C:\Users\Jonas\AppData\Local\Temp\div703F.tmp --------- 0  
 20.03.2011 02:25     C:\Users\Jonas\AppData\Local\Temp\div7EB0.tmp --------- 0  
 19.03.2011 20:14     C:\Users\Jonas\AppData\Local\Temp\div8DCD.tmp --------- 0  
 19.03.2011 15:34     C:\Users\Jonas\AppData\Local\Temp\div9433.tmp --------- 0  
 18.03.2011 14:34     C:\Users\Jonas\AppData\Local\Temp\div865E.tmp --------- 0  
 17.03.2011 19:04     C:\Users\Jonas\AppData\Local\Temp\div8239.tmp --------- 0  
 17.03.2011 15:33     C:\Users\Jonas\AppData\Local\Temp\div862F.tmp --------- 0  
 17.03.2011 08:47     C:\Users\Jonas\AppData\Local\Temp\div867D.tmp --------- 0  
 16.03.2011 22:53     C:\Users\Jonas\AppData\Local\Temp\div843C.tmp --------- 0  
 16.03.2011 13:27     C:\Users\Jonas\AppData\Local\Temp\div87B5.tmp --------- 0  
 16.03.2011 12:55     C:\Users\Jonas\AppData\Local\Temp\SetupAdminAE4.log --------- 85  
 16.03.2011 12:41     C:\Users\Jonas\AppData\Local\Temp\divA0A1.tmp --------- 0  
 15.03.2011 21:59     C:\Users\Jonas\AppData\Local\Temp\veetleb --------- 0  
 15.03.2011 18:47     C:\Users\Jonas\AppData\Local\Temp\div8507.tmp --------- 0  
 15.03.2011 15:53     C:\Users\Jonas\AppData\Local\Temp\div8B2E.tmp --------- 0  
 14.03.2011 16:34     C:\Users\Jonas\AppData\Local\Temp\div9481.tmp --------- 0  
 13.03.2011 23:20     C:\Users\Jonas\AppData\Local\Temp\div9858.tmp --------- 0  
 13.03.2011 13:31     C:\Users\Jonas\AppData\Local\Temp\93 Til Infinity.jpg --------- 29533  
 13.03.2011 12:40     C:\Users\Jonas\AppData\Local\Temp\div8832.tmp --------- 0  
 12.03.2011 20:48     C:\Users\Jonas\AppData\Local\Temp\div8FB1.tmp --------- 0  
 12.03.2011 11:43     C:\Users\Jonas\AppData\Local\Temp\div8E3A.tmp --------- 0  
 11.03.2011 23:46     C:\Users\Jonas\AppData\Local\Temp\{E6171303-86B0-45E1-B2AB-A6427198087C} --------- 0  
 11.03.2011 23:29     C:\Users\Jonas\AppData\Local\Temp\{7cc12d56-d2dc-4c75-acd5-8ced7f0e4161} --------- 0  
 11.03.2011 23:12     C:\Users\Jonas\AppData\Local\Temp\div90F8.tmp --------- 0  
 11.03.2011 16:25     C:\Users\Jonas\AppData\Local\Temp\div8B7C.tmp --------- 0  
 10.03.2011 15:34     C:\Users\Jonas\AppData\Local\Temp\div9359.tmp --------- 0  
 09.03.2011 22:54     C:\Users\Jonas\AppData\Local\Temp\divEEE0.tmp --------- 0  
 09.03.2011 12:57     C:\Users\Jonas\AppData\Local\Temp\jar_cache7832675006074081265.tmp --------- 14121  
 09.03.2011 12:34     C:\Users\Jonas\AppData\Local\Temp\div8F72.tmp --------- 0  
 09.03.2011 09:52     C:\Users\Jonas\AppData\Local\Temp\div99DE.tmp --------- 0  
 08.03.2011 16:12     C:\Users\Jonas\AppData\Local\Temp\div8786.tmp --------- 0  
 07.03.2011 22:25     C:\Users\Jonas\AppData\Local\Temp\div8748.tmp --------- 0  
 07.03.2011 16:20     C:\Users\Jonas\AppData\Local\Temp\ge3184 --------- 0  
 07.03.2011 13:27     C:\Users\Jonas\AppData\Local\Temp\div8EE6.tmp --------- 0  
 06.03.2011 11:22     C:\Users\Jonas\AppData\Local\Temp\divA2F2.tmp --------- 0  
 06.03.2011 03:35     C:\Users\Jonas\AppData\Local\Temp\div80D2.tmp --------- 0  
 05.03.2011 17:00     C:\Users\Jonas\AppData\Local\Temp\div8084.tmp --------- 0  
 05.03.2011 13:43     C:\Users\Jonas\AppData\Local\Temp\div866D.tmp --------- 0  
 04.03.2011 18:31     C:\Users\Jonas\AppData\Local\Temp\div8BAB.tmp --------- 0  
 04.03.2011 14:35     C:\Users\Jonas\AppData\Local\Temp\div7F3D.tmp --------- 0  
 04.03.2011 00:04     C:\Users\Jonas\AppData\Local\Temp\div7D69.tmp --------- 0  
 03.03.2011 14:59     C:\Users\Jonas\AppData\Local\Temp\div81FB.tmp --------- 0  
 03.03.2011 09:00     C:\Users\Jonas\AppData\Local\Temp\divA7C3.tmp --------- 0  
 02.03.2011 23:25     C:\Users\Jonas\AppData\Local\Temp\div86EA.tmp --------- 0  
 02.03.2011 12:46     C:\Users\Jonas\AppData\Local\Temp\div68DF.tmp --------- 0  
 02.03.2011 01:12     C:\Users\Jonas\AppData\Local\Temp\9537 --------- 0  
 01.03.2011 23:29     C:\Users\Jonas\AppData\Local\Temp\div87A5.tmp --------- 0  
 28.02.2011 22:58     C:\Users\Jonas\AppData\Local\Temp\div869C.tmp --------- 0  
 28.02.2011 15:48     C:\Users\Jonas\AppData\Local\Temp\div8EB7.tmp --------- 0  
 28.02.2011 08:11     C:\Users\Jonas\AppData\Local\Temp\div815F.tmp --------- 0  
 27.02.2011 12:40     C:\Users\Jonas\AppData\Local\Temp\div6BDC.tmp --------- 0  
 27.02.2011 09:37     C:\Users\Jonas\AppData\Local\Temp\div81AD.tmp --------- 0  
 27.02.2011 01:13     C:\Users\Jonas\AppData\Local\Temp\SPW73F6.tmp --------- 0  
 27.02.2011 01:13     C:\Users\Jonas\AppData\Local\Temp\SPW73F7.tmp --------- 0  
 26.02.2011 23:27     C:\Users\Jonas\AppData\Local\Temp\divEAA9.tmp --------- 0  
 26.02.2011 22:57     C:\Users\Jonas\AppData\Local\Temp\~DFA37D19ADD9EB82CE.TMP --------- 32768  
 26.02.2011 22:57     C:\Users\Jonas\AppData\Local\Temp\divCE24.tmp --------- 0  
 26.02.2011 22:54     C:\Users\Jonas\AppData\Local\Temp\DivXWebPlayerInstaller.exe --------- 911200  
 26.02.2011 22:54     C:\Users\Jonas\AppData\Local\Temp\div4160.tmp --------- 0  
 10.02.2011 02:48     C:\Users\Jonas\AppData\Local\Temp\jre-6u24-windows-i586-iftw-rv.exe --------- 885536  
 01.02.2011 18:40     C:\Users\Jonas\AppData\Local\Temp\SetupAdmin9DC.log --------- 84  
 25.01.2011 23:24     C:\Users\Jonas\AppData\Local\Temp\~DF8241E726105F69F5.TMP --------- 16384  
 09.01.2011 03:54     C:\Users\Jonas\AppData\Local\Temp\Viel.png --------- 123649  
 07.01.2011 21:03     C:\Users\Jonas\AppData\Local\Temp\Fifa 11 OST.jpg --------- 119770  
 07.01.2011 16:04     C:\Users\Jonas\AppData\Local\Temp\~DF06DEF04109326C3C.TMP --------- 16384  
 06.01.2011 01:40     C:\Users\Jonas\AppData\Local\Temp\jre-6u23-windows-i586-iftw-rv.exe --------- 884512  
 05.01.2011 02:22     C:\Users\Jonas\AppData\Local\Temp\~DFC3A3FD1779643161.TMP --------- 16384  
 04.01.2011 01:13     C:\Users\Jonas\AppData\Local\Temp\~DF65384F926AA52F4B.TMP --------- 16384  
 03.01.2011 15:17     C:\Users\Jonas\AppData\Local\Temp\au-descriptor-1.6.0_23-b70.xml --------- 7779  
 29.12.2010 03:58     C:\Users\Jonas\AppData\Local\Temp\tmp73704.WMC --------- 0  
 29.12.2010 00:53     C:\Users\Jonas\AppData\Local\Temp\tmp66432.WMC --------- 0  
 29.12.2010 00:39     C:\Users\Jonas\AppData\Local\Temp\WERE781.tmp.WERInternalMetadata.xml --------- 3500  
 29.12.2010 00:37     C:\Users\Jonas\AppData\Local\Temp\etilqs_MQBduZiiJ2FlhzwIeyt3 --------- 0  
 29.12.2010 00:35     C:\Users\Jonas\AppData\Local\Temp\etilqs_ipfMjQDHcW6eoDEXOwek --------- 0  
 29.12.2010 00:03     C:\Users\Jonas\AppData\Local\Temp\etilqs_QDT5xXi4k0KdffgzSCrf --------- 0  
 29.12.2010 00:03     C:\Users\Jonas\AppData\Local\Temp\WERACE4.tmp.WERInternalMetadata.xml --------- 3622  
 28.12.2010 23:52     C:\Users\Jonas\AppData\Local\Temp\etilqs_6xbBbOksubCe6DKICpxN --------- 0  
 28.12.2010 23:52     C:\Users\Jonas\AppData\Local\Temp\etilqs_XI0I4txfUBiQVRnnKib2 --------- 0  
 28.12.2010 23:01     C:\Users\Jonas\AppData\Local\Temp\is-ERF7R.tmp --------- 0  
 28.12.2010 23:01     C:\Users\Jonas\AppData\Local\Temp\is-69C5M.tmp --------- 0  
 28.12.2010 21:28     C:\Users\Jonas\AppData\Local\Temp\etilqs_twxiHZdaax0FMWciL4Pi-journal --------- 0  
 28.12.2010 21:28     C:\Users\Jonas\AppData\Local\Temp\etilqs_twxiHZdaax0FMWciL4Pi --------- 0  
 27.12.2010 16:08     C:\Users\Jonas\AppData\Local\Temp\dd_vcredistUI7479.txt --------- 14172  
 27.12.2010 16:08     C:\Users\Jonas\AppData\Local\Temp\dd_vcredistMSI7479.txt --------- 502848  
 27.12.2010 12:47     C:\Users\Jonas\AppData\Local\Temp\SetupAdminE60.log --------- 86  
 27.12.2010 12:47     C:\Users\Jonas\AppData\Local\Temp\qtplugin.log --------- 3560  
 23.12.2010 02:12     C:\Users\Jonas\AppData\Local\Temp\{2ea2f98b-fcab-4335-a568-b0af2f32065e} --------- 0  
 23.12.2010 02:12     C:\Users\Jonas\AppData\Local\Temp\{d519989b-ea69-4b68-be01-69a2b33b23d6} --------- 0  
 17.12.2010 21:50     C:\Users\Jonas\AppData\Local\Temp\ge992 --------- 0  
 16.12.2010 18:12     C:\Users\Jonas\AppData\Local\Temp\{410f0d28-3c73-4a44-bd9f-5f7e523d340b} --------- 0  
 16.12.2010 16:32     C:\Users\Jonas\AppData\Local\Temp\pbsAF76.tmp --------- 0  
 13.12.2010 16:23     C:\Users\Jonas\AppData\Local\Temp\Deployment --------- 0  
 12.12.2010 16:14     C:\Users\Jonas\AppData\Local\Temp\dd_vcredistUI6C23.txt --------- 14326  
 12.12.2010 16:13     C:\Users\Jonas\AppData\Local\Temp\dd_vcredistMSI6C23.txt --------- 556612  
 12.12.2010 15:21     C:\Users\Jonas\AppData\Local\Temp\scoped_dir1793 --------- 0  
 12.12.2010 15:21     C:\Users\Jonas\AppData\Local\Temp\scoped_dir17501 --------- 0  
 10.12.2010 00:24     C:\Users\Jonas\AppData\Local\Temp\scoped_dir20580 --------- 0  
 10.12.2010 00:24     C:\Users\Jonas\AppData\Local\Temp\scoped_dir31074 --------- 0  
 09.12.2010 18:10     C:\Users\Jonas\AppData\Local\Temp\scoped_dir17703 --------- 0  
 09.12.2010 18:10     C:\Users\Jonas\AppData\Local\Temp\scoped_dir23386 --------- 0  
 08.12.2010 23:39     C:\Users\Jonas\AppData\Local\Temp\8E4B.dir --------- 0  
 08.12.2010 23:39     C:\Users\Jonas\AppData\Local\Temp\8E4B.tmp --------- 0  
 07.12.2010 20:25     C:\Users\Jonas\AppData\Local\Temp\plugtmp --------- 0  
 07.12.2010 19:59     C:\Users\Jonas\AppData\Local\Temp\FP_PL_PFS_INSTALLER.exe --------- 2568656  
 07.12.2010 19:45     C:\Users\Jonas\AppData\Local\Temp\iTunesPluginWinSetup_3.0.2.0.exe --------- 652459  
 07.12.2010 19:35     C:\Users\Jonas\AppData\Local\Temp\SetupAdminBC8.log --------- 2121909  
 07.12.2010 19:25     C:\Users\Jonas\AppData\Local\Temp\Temp1_Winrar3.93_Final_x32-x64_-Reg-aktiviert.zip --------- 0  
 07.12.2010 19:22     C:\Users\Jonas\AppData\Local\Temp\WLZ9D57.tmp --------- 0  
 07.12.2010 18:21     C:\Users\Jonas\AppData\Local\Temp\scoped_dir1471 --------- 0  
 07.12.2010 18:21     C:\Users\Jonas\AppData\Local\Temp\scoped_dir18266 --------- 0  
 07.12.2010 15:58     C:\Users\Jonas\AppData\Local\Temp\dd_vcredistUI5A12.txt --------- 22874  
 07.12.2010 15:58     C:\Users\Jonas\AppData\Local\Temp\dd_vcredistMSI5A12.txt --------- 395286  
 07.12.2010 15:24     C:\Users\Jonas\AppData\Local\Temp\WmpPluginSetup_2.1.0.6.exe --------- 491523  
 07.12.2010 15:20     C:\Users\Jonas\AppData\Local\Temp\trkF71C.tmp --------- 0  
 07.12.2010 15:20     C:\Users\Jonas\AppData\Local\Temp\WLZB4BE.tmp --------- 0  
 07.12.2010 15:14     C:\Users\Jonas\AppData\Local\Temp\dd_vcredistUI3823.txt --------- 11634  
 07.12.2010 15:14     C:\Users\Jonas\AppData\Local\Temp\dd_vcredistMSI3823.txt --------- 407912  
 07.12.2010 14:54     C:\Users\Jonas\AppData\Local\Temp\FXSAPIDebugLogFile.txt --------- 0  
 07.12.2010 14:54     C:\Users\Jonas\AppData\Local\Temp\Low --------- 0  
 03.12.2010 15:17     C:\Users\Jonas\AppData\Local\Temp\au-descriptor-1.6.0_22-b74.xml --------- 7769  
 27.11.2010 20:09     C:\Users\Jonas\AppData\Local\Temp\Microsoft Visual C++ 2010  x86 Redistributable Setup_20101127_190859749.html --------- 74652  
 27.11.2010 20:09     C:\Users\Jonas\AppData\Local\Temp\Microsoft Visual C++ 2010  x86 Redistributable Setup_20101127_190859749-MSI_vc_red.msi.txt --------- 265486  
 27.11.2010 20:08     C:\Users\Jonas\AppData\Local\Temp\Microsoft Visual C++ 2010  x86 Redistributable Setup_10.0.30319 --------- 0  
 27.11.2010 20:08     C:\Users\Jonas\AppData\Local\Temp\VSDBA79.tmp --------- 0  
 24.11.2010 18:07     C:\Users\Jonas\AppData\Local\Temp\ge1888 --------- 0  
 24.11.2010 12:39     C:\Users\Jonas\AppData\Local\Temp\dd_dotNetFx40LP_Client_x86_x64de_decompression_log.txt --------- 1265  
 24.11.2010 12:39     C:\Users\Jonas\AppData\Local\Temp\Microsoft .NET Framework Client Profile Language Pack Setup_20101124_113834483.html --------- 251246  
 24.11.2010 12:39     C:\Users\Jonas\AppData\Local\Temp\Microsoft .NET Framework Client Profile Language Pack Setup_20101124_113834483-MSI_netfx_CoreLP_x64.msi.txt --------- 2144318  
 24.11.2010 12:38     C:\Users\Jonas\AppData\Local\Temp\Microsoft .NET Framework Client Profile Language Pack Setup_4.0.30319 --------- 0  
 24.11.2010 12:38     C:\Users\Jonas\AppData\Local\Temp\dd_dotNetFx40_Client_x86_x64_decompression_log.txt --------- 1308  
 24.11.2010 12:38     C:\Users\Jonas\AppData\Local\Temp\Microsoft .NET Framework 4 Client Profile Setup_20101124_113540441.html --------- 590526  
 24.11.2010 12:38     C:\Users\Jonas\AppData\Local\Temp\dd_SetupUtility.txt --------- 660  
 24.11.2010 12:38     C:\Users\Jonas\AppData\Local\Temp\Microsoft .NET Framework 4 Client Profile Setup_20101124_113540441-MSI_netfx_Core_x64.msi.txt --------- 7230638  
 24.11.2010 12:35     C:\Users\Jonas\AppData\Local\Temp\Microsoft .NET Framework 4 Client Profile Setup_4.0.30319 --------- 0  
 21.11.2010 20:10     C:\Users\Jonas\AppData\Local\Temp\tmp82626.WMC --------- 0  
 20.11.2010 14:02     C:\Users\Jonas\AppData\Local\Temp\scoped_dir13879 --------- 0  
 20.11.2010 14:02     C:\Users\Jonas\AppData\Local\Temp\scoped_dir20707 --------- 0  
 15.11.2010 21:58     C:\Users\Jonas\AppData\Local\Temp\Adobe --------- 0  
 15.11.2010 21:54     C:\Users\Jonas\AppData\Local\Temp\SetupAdmin1008.log --------- 86  
 15.11.2010 21:45     C:\Users\Jonas\AppData\Local\Temp\iTunesPluginWinSetup_3.0.4.0.exe --------- 662808  
 14.11.2010 12:25     C:\Users\Jonas\AppData\Local\Temp\~DF9EEE1F14E01237D3.TMP --------- 16384  
 12.11.2010 14:57     C:\Users\Jonas\AppData\Local\Temp\etilqs_Z2QqeA7md0g29HIUdKYd --------- 0  
 10.11.2010 16:06     C:\Users\Jonas\AppData\Local\Temp\~DFCB3FFF0B4C85FC39.TMP --------- 16384  
 08.11.2010 21:51     C:\Users\Jonas\AppData\Local\Temp\~DF907D2383E13649D5.TMP --------- 16384  
 06.11.2010 12:57     C:\Users\Jonas\AppData\Local\Temp\Pharoahe Monch - Simon Says (HQ High Quality Uncensored).jpg --------- 3673  
 04.11.2010 22:00     C:\Users\Jonas\AppData\Local\Temp\AMDCatalyst_EXE_Package_Banner_415x82_Oct_2010.bmp --------- 102390  
 03.11.2010 22:09     C:\Users\Jonas\AppData\Local\Temp\Solid-7e63d7722e85a927aea46524bf0e80009554c3f1.FFS --------- 3517  
 03.11.2010 21:30     C:\Users\Jonas\AppData\Local\Temp\~DF92B60416082381DE.TMP --------- 16384  
 03.11.2010 15:48     C:\Users\Jonas\AppData\Local\Temp\~DF73B205E98341A996.TMP --------- 16384  
 03.11.2010 15:17     C:\Users\Jonas\AppData\Local\Temp\au-descriptor-1.6.0_22-b04.xml --------- 7780  
 02.11.2010 19:11     C:\Users\Jonas\AppData\Local\Temp\~DFA30EA4013DED0765.TMP --------- 16384  
 02.11.2010 16:31     C:\Users\Jonas\AppData\Local\Temp\ge2032 --------- 0  
 31.10.2010 19:21     C:\Users\Jonas\AppData\Local\Temp\ge4304 --------- 0  
 31.10.2010 18:27     C:\Users\Jonas\AppData\Local\Temp\ge4672 --------- 0  
 31.10.2010 01:16     C:\Users\Jonas\AppData\Local\Temp\Last.fm-1.5.4.27091.exe --------- 5417632  
 25.10.2010 14:44     C:\Users\Jonas\AppData\Local\Temp\lu --------- 0  
 25.10.2010 14:39     C:\Users\Jonas\AppData\Local\Temp\MSetup_2010-10-25_143914.log --------- 776  
 25.10.2010 14:39     C:\Users\Jonas\AppData\Local\Temp\LuUpdater.log --------- 0  
 25.10.2010 14:38     C:\Users\Jonas\AppData\Local\Temp\Logishrd --------- 0  
 25.10.2010 14:38     C:\Users\Jonas\AppData\Local\Temp\Logitech --------- 0  
 21.10.2010 15:59     C:\Users\Jonas\AppData\Local\Temp\LeagueofLegends.exe.log --------- 13783916  
 21.10.2010 13:45     C:\Users\Jonas\AppData\Local\Temp\~DF550C7B73172231C6.TMP --------- 16384  
 21.10.2010 13:31     C:\Users\Jonas\AppData\Local\Temp\pdoA65D.tmp --------- 0  
 21.10.2010 13:30     C:\Users\Jonas\AppData\Local\Temp\2108c9e8224c7fa081bdfda2a19e3d5f.lock --------- 0  
 21.10.2010 13:30     C:\Users\Jonas\AppData\Local\Temp\swt-win32-3349.dll --------- 139672  
 21.10.2010 01:57     C:\Users\Jonas\AppData\Local\Temp\~DF4BCBBD9639858D85.TMP --------- 16384  
 19.10.2010 14:08     C:\Users\Jonas\AppData\Local\Temp\~DFCF2D65E724082E20.TMP --------- 16384  
 18.10.2010 01:40     C:\Users\Jonas\AppData\Local\Temp\~DF01AE726F7EEDBADF.TMP --------- 16384  
 05.10.2010 22:06     C:\Users\Jonas\AppData\Local\Temp\~DF81FCB579CB1FAA9E.TMP --------- 16384  
 04.10.2010 21:33     C:\Users\Jonas\AppData\Local\Temp\~DF3C4F870D026FC6CB.TMP --------- 16384  
 03.10.2010 21:11     C:\Users\Jonas\AppData\Local\Temp\StructuredQuery.log --------- 2327  
 03.10.2010 21:06     C:\Users\Jonas\AppData\Local\Temp\~DF58CE9ED6244A05FF.TMP --------- 16384  
 29.09.2010 22:58     C:\Users\Jonas\AppData\Local\Temp\~DFCFA64DFB9C500659.TMP --------- 16384  
 28.09.2010 23:48     C:\Users\Jonas\AppData\Local\Temp\~DFCC90394F82748B8D.TMP --------- 16384  
 27.09.2010 14:51     C:\Users\Jonas\AppData\Local\Temp\~DFF2F9594966B7C69A.TMP --------- 16384  
 26.09.2010 23:09     C:\Users\Jonas\AppData\Local\Temp\etilqs_ui4Ep7v9mVhxZtjKnUBJ --------- 0  
 26.09.2010 22:56     C:\Users\Jonas\AppData\Local\Temp\etilqs_E0mflNDVS8rd6IhZdM1C --------- 0  
 23.09.2010 16:40     C:\Users\Jonas\AppData\Local\Temp\ge3384 --------- 0  
 23.09.2010 16:33     C:\Users\Jonas\AppData\Local\Temp\geColladaModelCacheLock --------- 0  
 23.09.2010 16:33     C:\Users\Jonas\AppData\Local\Temp\geIconCacheLock --------- 0  
 23.09.2010 16:33     C:\Users\Jonas\AppData\Local\Temp\isFD15.tmp --------- 0  
 23.09.2010 16:33     C:\Users\Jonas\AppData\Local\Temp\._msige52 --------- 0  
 22.09.2010 14:03     C:\Users\Jonas\AppData\Local\Temp\etilqs_2czkOYDokDlcZJfyEct3 --------- 0  
 22.09.2010 13:46     C:\Users\Jonas\AppData\Local\Temp\etilqs_6fCafBaQhumJNUsNHCei --------- 0  
 17.09.2010 23:53     C:\Users\Jonas\AppData\Local\Temp\~DFAF056923D68C2AD2.TMP --------- 16384  
 15.09.2010 17:50     C:\Users\Jonas\AppData\Local\Temp\tmp79064.WMC --------- 0  
 15.09.2010 15:15     C:\Users\Jonas\AppData\Local\Temp\~DF9064C9E9AADBB765.TMP --------- 16384  
 13.09.2010 20:53     C:\Users\Jonas\AppData\Local\Temp\~DF701348FB1E1A3690.TMP --------- 16384  
 07.09.2010 16:39     C:\Users\Jonas\AppData\Local\Temp\msohtml --------- 0  
 06.09.2010 22:31     C:\Users\Jonas\AppData\Local\Temp\SetupAdmin2B8.log --------- 84  
 02.09.2010 07:52     C:\Users\Jonas\AppData\Local\Temp\BFBC2Game_Data_DFE --------- 0  
 01.09.2010 13:10     C:\Users\Jonas\AppData\Local\Temp\Microsoft Office 2003 Setup(0002).txt --------- 9545  
 01.09.2010 13:10     C:\Users\Jonas\AppData\Local\Temp\Microsoft Office 2003 Setup(0002)_Task(0001).txt --------- 416734  
 01.09.2010 13:09     C:\Users\Jonas\AppData\Local\Temp\offcln11.log --------- 47923  
 18.08.2010 19:41     C:\Users\Jonas\AppData\Local\Temp\outlook logging --------- 0  
 17.08.2010 20:21     C:\Users\Jonas\AppData\Local\Temp\VBE --------- 0  
 17.08.2010 20:16     C:\Users\Jonas\AppData\Local\Temp\Microsoft Office 2003 Setup(0001).txt --------- 9545  
 17.08.2010 20:16     C:\Users\Jonas\AppData\Local\Temp\Microsoft Office 2003 Setup(0001)_Task(0001).txt --------- 414546  
 15.08.2010 16:40     C:\Users\Jonas\AppData\Local\Temp\scoped_dir15119 --------- 0  
 15.08.2010 16:40     C:\Users\Jonas\AppData\Local\Temp\scoped_dir12003 --------- 0  
 12.08.2010 21:44     C:\Users\Jonas\AppData\Local\Temp\tmp87593.WMC --------- 0  
 10.08.2010 20:27     C:\Users\Jonas\AppData\Local\Temp\~DFF7ACA9A7E0178C67.TMP --------- 16384  
 10.08.2010 02:48     C:\Users\Jonas\AppData\Local\Temp\~DF8CF8B13A1F771706.TMP --------- 16384  
 10.08.2010 02:27     C:\Users\Jonas\AppData\Local\Temp\etilqs_BYkSEMYerT6m8soRCYR9 --------- 0  
 10.08.2010 01:11     C:\Users\Jonas\AppData\Local\Temp\etilqs_5uK1bLgIQQUUx41SQgeo-journal --------- 0  
 10.08.2010 01:11     C:\Users\Jonas\AppData\Local\Temp\etilqs_5uK1bLgIQQUUx41SQgeo --------- 0  
 08.08.2010 19:25     C:\Users\Jonas\AppData\Local\Temp\~DF7B55A2A126FA37AF.TMP --------- 16384  
 08.08.2010 17:27     C:\Users\Jonas\AppData\Local\Temp\~DFEDC1CB2AC1818630.TMP --------- 16384  
 08.08.2010 15:22     C:\Users\Jonas\AppData\Local\Temp\~DF264B4D0AA1084E9C.TMP --------- 16384  
 07.08.2010 14:27     C:\Users\Jonas\AppData\Local\Temp\~DF142E604B113259DA.TMP --------- 16384  
 07.08.2010 02:23     C:\Users\Jonas\AppData\Local\Temp\~DFAE1492B193EB4899.TMP --------- 16384  
 04.08.2010 17:32     C:\Users\Jonas\AppData\Local\Temp\Nero Setup (100804 171144).log --------- 333000  
 04.08.2010 17:11     C:\Users\Jonas\AppData\Local\Temp\nro.log --------- 0  
 02.08.2010 20:05     C:\Users\Jonas\AppData\Local\Temp\~DF8E5E40188D2D22BC.TMP --------- 16384  
 31.07.2010 11:49     C:\Users\Jonas\AppData\Local\Temp\scoped_dir15591 --------- 0  
 31.07.2010 11:49     C:\Users\Jonas\AppData\Local\Temp\scoped_dir15384 --------- 0  
 31.07.2010 03:29     C:\Users\Jonas\AppData\Local\Temp\~DFF80920A5E46AB494.TMP --------- 16384  
 31.07.2010 03:19     C:\Users\Jonas\AppData\Local\Temp\scoped_dir13861 --------- 0  
 31.07.2010 03:19     C:\Users\Jonas\AppData\Local\Temp\scoped_dir13833 --------- 0  
 30.07.2010 23:24     C:\Users\Jonas\AppData\Local\Temp\scoped_dir602 --------- 0  
 30.07.2010 23:24     C:\Users\Jonas\AppData\Local\Temp\scoped_dir32737 --------- 0  
 30.07.2010 10:07     C:\Users\Jonas\AppData\Local\Temp\scoped_dir27568 --------- 0  
 30.07.2010 10:07     C:\Users\Jonas\AppData\Local\Temp\scoped_dir8158 --------- 0  
 30.07.2010 01:02     C:\Users\Jonas\AppData\Local\Temp\~DFFF3026DD107876A3.TMP --------- 16384  
 29.07.2010 10:44     C:\Users\Jonas\AppData\Local\Temp\scoped_dir24346 --------- 0  
 29.07.2010 10:44     C:\Users\Jonas\AppData\Local\Temp\scoped_dir28236 --------- 0  
 28.07.2010 23:54     C:\Users\Jonas\AppData\Local\Temp\~DF43662A5B50433505.TMP --------- 16384  
 28.07.2010 21:19     C:\Users\Jonas\AppData\Local\Temp\scoped_dir17127 --------- 0  
 28.07.2010 21:19     C:\Users\Jonas\AppData\Local\Temp\scoped_dir1629 --------- 0  
 28.07.2010 11:09     C:\Users\Jonas\AppData\Local\Temp\scoped_dir13191 --------- 0  
 28.07.2010 11:09     C:\Users\Jonas\AppData\Local\Temp\scoped_dir4771 --------- 0  
 27.07.2010 09:51     C:\Users\Jonas\AppData\Local\Temp\scoped_dir11687 --------- 0  
 27.07.2010 09:51     C:\Users\Jonas\AppData\Local\Temp\scoped_dir10563 --------- 0  
 27.07.2010 00:44     C:\Users\Jonas\AppData\Local\Temp\scoped_dir20913 --------- 0  
 27.07.2010 00:44     C:\Users\Jonas\AppData\Local\Temp\scoped_dir1847 --------- 0  
 27.07.2010 00:29     C:\Users\Jonas\AppData\Local\Temp\dmiwu --------- 0  
 27.07.2010 00:12     C:\Users\Jonas\AppData\Local\Temp\scoped_dir25429 --------- 0  
 27.07.2010 00:12     C:\Users\Jonas\AppData\Local\Temp\scoped_dir28185 --------- 0  
 27.07.2010 00:10     C:\Users\Jonas\AppData\Local\Temp\scoped_dir27839 --------- 0  
 27.07.2010 00:10     C:\Users\Jonas\AppData\Local\Temp\scoped_dir210 --------- 0  
 27.07.2010 00:08     C:\Users\Jonas\AppData\Local\Temp\scoped_dir5668 --------- 0  
 27.07.2010 00:08     C:\Users\Jonas\AppData\Local\Temp\scoped_dir27532 --------- 0  
 26.07.2010 22:21     C:\Users\Jonas\AppData\Local\Temp\scoped_dir18148 --------- 0  
 26.07.2010 22:21     C:\Users\Jonas\AppData\Local\Temp\scoped_dir6420 --------- 0  
 26.07.2010 22:02     C:\Users\Jonas\AppData\Local\Temp\{5ccae45e-625e-4a40-9627-0329e9289047} --------- 0  
 26.07.2010 16:15     C:\Users\Jonas\AppData\Local\Temp\~DFAADC1CDDD7E5FAA4.TMP --------- 16384  
 26.07.2010 03:27     C:\Users\Jonas\AppData\Local\Temp\EADAB6B.exe --------- 22103176  
 26.07.2010 03:26     C:\Users\Jonas\AppData\Local\Temp\EADAB6B.tmp --------- 0  
 25.07.2010 15:48     C:\Users\Jonas\AppData\Local\Temp\jre_setup.log --------- 25598  
 25.07.2010 15:48     C:\Users\Jonas\AppData\Local\Temp\java_install.log --------- 28583  
 25.07.2010 13:53     C:\Users\Jonas\AppData\Local\Temp\EAD90E9.exe --------- 22103176  
 25.07.2010 13:52     C:\Users\Jonas\AppData\Local\Temp\EAD90E9.tmp --------- 0  
 24.07.2010 14:16     C:\Users\Jonas\AppData\Local\Temp\{8326b3a8-14c7-41e6-9ee1-adaf912c0978} --------- 0  
 24.07.2010 14:15     C:\Users\Jonas\AppData\Local\Temp\{bd9f48c7-a3e5-46a9-8981-38d0950928ff} --------- 0  
 24.07.2010 10:19     C:\Users\Jonas\AppData\Local\Temp\EADAD8D.exe --------- 22103176  
 24.07.2010 10:18     C:\Users\Jonas\AppData\Local\Temp\EADAD8D.tmp --------- 0  
 23.07.2010 18:07     C:\Users\Jonas\AppData\Local\Temp\EADA88D.exe --------- 1603584  
 23.07.2010 18:07     C:\Users\Jonas\AppData\Local\Temp\EADA88D.tmp --------- 0  
 23.07.2010 16:32     C:\Users\Jonas\AppData\Local\Temp\~DF0EB43AA306CA20BC.TMP --------- 16384  
 23.07.2010 11:11     C:\Users\Jonas\AppData\Local\Temp\EAD9980.exe --------- 22103176  
 23.07.2010 11:10     C:\Users\Jonas\AppData\Local\Temp\EAD9980.tmp --------- 0  
 23.07.2010 02:01     C:\Users\Jonas\AppData\Local\Temp\EAD9DE3.exe --------- 22103176  
 23.07.2010 02:00     C:\Users\Jonas\AppData\Local\Temp\EAD9DE3.tmp --------- 0  
 22.07.2010 20:30     C:\Users\Jonas\AppData\Local\Temp\EADA801.exe --------- 2564096  
 22.07.2010 20:30     C:\Users\Jonas\AppData\Local\Temp\EADA801.tmp --------- 0  
 22.07.2010 15:49     C:\Users\Jonas\AppData\Local\Temp\Crysis_Data_DFE --------- 0  
 22.07.2010 14:02     C:\Users\Jonas\AppData\Local\Temp\{4c904322-b7f2-40e0-8376-d7e5b6826404} --------- 0  
 22.07.2010 12:49     C:\Users\Jonas\AppData\Local\Temp\{6a9be7a6-0825-4fdb-8263-c183d70637b2} --------- 0  
 21.07.2010 17:27     C:\Users\Jonas\AppData\Local\Temp\{65bb5802-abf2-45b6-88b8-e8eb924629ed} --------- 0  
 21.07.2010 00:49     C:\Users\Jonas\AppData\Local\Temp\{af5acfba-b278-492a-9c08-30e034ea3a3c} --------- 0  
 20.07.2010 22:52     C:\Users\Jonas\AppData\Local\Temp\{3f41d896-1f56-487a-96ca-73510529bc2c} --------- 0  
 20.07.2010 21:56     C:\Users\Jonas\AppData\Local\Temp\{a1795980-ec2b-4b6c-bdde-f07bc12ae2a3} --------- 0  
 20.07.2010 21:56     C:\Users\Jonas\AppData\Local\Temp\{a6ceec84-649b-408f-a380-094d0c28363a} --------- 0  
 20.07.2010 21:41     C:\Users\Jonas\AppData\Local\Temp\Install.log --------- 74  
 20.07.2010 20:16     C:\Users\Jonas\AppData\Local\Temp\OutofProcReport857595.txt --------- 1630  
 20.07.2010 20:10     C:\Users\Jonas\AppData\Local\Temp\{C644412A-BBD9-49B1-AC73-3D8CE9E675C9} --------- 0  
 20.07.2010 20:10     C:\Users\Jonas\AppData\Local\Temp\{9EC6C402-3830-4B04-948A-494A2F2700E8} --------- 0  
 20.07.2010 20:08     C:\Users\Jonas\AppData\Local\Temp\{56D6E3AC-6BAC-4D3C-AACD-21D657832A3D} --------- 0  
 20.07.2010 20:00     C:\Users\Jonas\AppData\Local\Temp\{31ac63d4-4575-4e20-a691-5d02598eb49f} --------- 0  
 26.02.2010 10:45     C:\Users\Jonas\AppData\Local\Temp\devcon.exe --------- 80896  
 18.10.2009 21:17     C:\Users\Jonas\AppData\Local\Temp\avatar --------- 2869  
 27.02.2007 17:08     C:\Users\Jonas\AppData\Local\Temp\_isEA7D.exe --------- 456416  
 27.02.2007 17:08     C:\Users\Jonas\AppData\Local\Temp\_isDB54.exe --------- 456416  
 27.02.2007 17:08     C:\Users\Jonas\AppData\Local\Temp\_isEBE4.exe --------- 456416  
 27.02.2007 17:08     C:\Users\Jonas\AppData\Local\Temp\_is24A3.exe --------- 456416  
 27.02.2007 17:08     C:\Users\Jonas\AppData\Local\Temp\_is33E.exe --------- 456416  
 27.02.2007 17:08     C:\Users\Jonas\AppData\Local\Temp\_is5BE6.exe --------- 456416  
 27.02.2007 17:08     C:\Users\Jonas\AppData\Local\Temp\_is78E7.exe --------- 456416  
 27.02.2007 17:08     C:\Users\Jonas\AppData\Local\Temp\_isA392.exe --------- 456416  
 27.02.2007 17:08     C:\Users\Jonas\AppData\Local\Temp\_isB432.exe --------- 456416  
 18.09.2006 21:31     C:\Users\Jonas\AppData\Local\Temp\Catalyst.bmp --------- 57656  
 19.05.2001 11:04     C:\Users\Jonas\AppData\Local\Temp\d2l_Install.exe --------- 397312  
 06.04.2000 07:00     C:\Users\Jonas\AppData\Local\Temp\binkw32.dll --------- 263168  
----------------------------------------

 
C:\Program Files

 28.06.2011 11:20     C:\Program Files\CCleaner --------- 0  
 20.06.2011 03:27     C:\Program Files\Windows Sidebar --------- 4096  
 20.06.2011 03:27     C:\Program Files\Windows Mail --------- 4096  
 20.06.2011 03:27     C:\Program Files\DVD Maker --------- 0  
 20.06.2011 03:27     C:\Program Files\Internet Explorer --------- 4096  
 20.06.2011 03:27     C:\Program Files\Windows Portable Devices --------- 0  
 20.06.2011 03:27     C:\Program Files\Windows Media Player --------- 4096  
 20.06.2011 03:27     C:\Program Files\Windows Journal --------- 0  
 20.06.2011 03:27     C:\Program Files\Windows Photo Viewer --------- 0  
 20.06.2011 03:27     C:\Program Files\Windows Defender --------- 4096  
 15.06.2011 13:42     C:\Program Files\iTunes --------- 0  
 15.06.2011 13:42     C:\Program Files\iPod --------- 0  
 29.05.2011 18:46     C:\Program Files\DivX --------- 0  
 29.05.2011 12:02     C:\Program Files\ATI Technologies --------- 0  
 29.05.2011 11:59     C:\Program Files\Common Files --------- 4096  
 27.04.2011 01:34     C:\Program Files\Bonjour --------- 0  
 07.04.2011 15:34     C:\Program Files\CanonBJ --------- 0  
 07.12.2010 15:21     C:\Program Files\Mozilla Firefox --------- 0  
 07.12.2010 15:09     C:\Program Files\ATI --------- 0  
 07.12.2010 14:50     C:\Program Files\Windows NT --------- 4096  
 07.12.2010 14:50     C:\Program Files\Gemeinsame Dateien --------- 0  
 25.10.2010 14:38     C:\Program Files\Logitech --------- 0  
 14.07.2009 20:18     C:\Program Files\Microsoft Games --------- 0  
 14.07.2009 07:32     C:\Program Files\MSBuild --------- 0  
 14.07.2009 07:32     C:\Program Files\Reference Assemblies --------- 0  
 14.07.2009 07:09     C:\Program Files\Uninstall Information --------- 0  
 14.07.2009 06:54     C:\Program Files\desktop.ini --------- 174  
----------------------------------------

 
C:\ProgramData\.. 

Jonas    
All Users    
Default User    
Default    
AppData    
Public    
desktop.ini    
----------------------------------------

 
C:\Windows\system32\drivers\etc\hosts


----------------------------------------

 

Abbildname                     PID Sitzungsname       Sitz.-Nr. Speichernutzung
========================= ======== ================ =========== ===============
System Idle Process              0 Services                   0            24 K
System                           4 Services                   0         2.260 K
smss.exe                       272 Services                   0         1.148 K
csrss.exe                      368 Services                   0         6.536 K
wininit.exe                    436 Services                   0         6.084 K
csrss.exe                      472 Console                    1         8.864 K
services.exe                   520 Services                   0        10.696 K
lsass.exe                      540 Services                   0        12.696 K
lsm.exe                        548 Services                   0         4.312 K
winlogon.exe                   688 Console                    1         7.076 K
svchost.exe                    720 Services                   0        10.040 K
svchost.exe                    824 Services                   0         9.108 K
atiesrxx.exe                   876 Services                   0         4.256 K
svchost.exe                    944 Services                   0        23.924 K
svchost.exe                    980 Services                   0       194.024 K
svchost.exe                    116 Services                   0        47.288 K
svchost.exe                   1044 Services                   0        17.260 K
atieclxx.exe                  1072 Console                    1         5.428 K
svchost.exe                   1248 Services                   0        27.180 K
spoolsv.exe                   1364 Services                   0        15.616 K
taskhost.exe                  1468 Console                    1         9.832 K
sched.exe                     1488 Services                   0         2.020 K
dwm.exe                       1564 Console                    1        32.644 K
explorer.exe                  1596 Console                    1        72.404 K
svchost.exe                   1724 Services                   0         7.452 K
SetPoint.exe                  1928 Console                    1        16.760 K
avguard.exe                   2008 Services                   0        15.892 K
AppleMobileDeviceService.     2036 Services                   0         8.496 K
mDNSResponder.exe             1148 Services                   0         7.136 K
svchost.exe                   1504 Services                   0        16.372 K
avshadow.exe                  1788 Services                   0         4.068 K
conhost.exe                   1840 Services                   0         2.584 K
NBService.exe                 1420 Services                   0         7.792 K
PnkBstrA.exe                  2076 Services                   0         5.268 K
svchost.exe                   2148 Services                   0         5.356 K
WLIDSVC.EXE                   2192 Services                   0        16.628 K
sidebar.exe                   2576 Console                    1        27.816 K
WLIDSVCM.EXE                  2732 Services                   0         3.240 K
avgnt.exe                     2788 Console                    1         2.960 K
KHALMNPR.exe                  2804 Console                    1        10.024 K
DivXUpdate.exe                2836 Console                    1        14.616 K
MOM.exe                       2856 Console                    1         8.752 K
iTunesHelper.exe              2868 Console                    1        13.228 K
jusched.exe                   2900 Console                    1         4.284 K
SearchIndexer.exe              508 Services                   0        25.008 K
svchost.exe                   3228 Services                   0         6.456 K
WUDFHost.exe                  3460 Services                   0         5.940 K
iPodService.exe               3632 Services                   0         7.656 K
CCC.exe                       3808 Console                    1        18.244 K
wmpnetwk.exe                  3924 Services                   0         6.900 K
svchost.exe                   3344 Services                   0        17.336 K
iTunes.exe                    3996 Console                    1        79.876 K
LastFM.exe                    4552 Console                    1        24.728 K
AppleMobileDeviceHelper.e     4608 Console                    1        10.552 K
conhost.exe                   4660 Console                    1         3.324 K
distnoted.exe                 4708 Console                    1         5.380 K
conhost.exe                   4724 Console                    1         3.328 K
svchost.exe                   4380 Services                   0        36.984 K
svchost.exe                    676 Services                   0         4.068 K
chrome.exe                    4764 Console                    1       115.596 K
chrome.exe                    3108 Console                    1        32.628 K
chrome.exe                    3100 Console                    1        18.304 K
chrome.exe                    3660 Console                    1        43.692 K
miranda32.exe                 2632 Console                    1        16.048 K
WmiPrvSE.exe                   632 Services                   0         6.424 K
sppsvc.exe                    4856 Services                   0         8.252 K
cmd.exe                       3432 Console                    1         3.924 K
conhost.exe                   3356 Console                    1         5.620 K
SearchFilterHost.exe          3972 Services                   0         6.652 K
dllhost.exe                   2720 Console                    1         5.824 K
tasklist.exe                  3372 Console                    1         5.532 K

 
***** Ende des Scans 28.06.2011 um 12:13:28,90 ***
         

Alt 28.06.2011, 11:20   #9
Jonas_
 
Werde auf andere Seiten gelenkt! (Google) - Standard

Werde auf andere Seiten gelenkt! (Google)



CCleaner install.txt:

Code:
ATTFilter
Adobe Flash Player 10 Plugin	Adobe Systems Incorporated	07.12.2010	6,00MB	10.1.102.64
Adobe Flash Player ActiveX	Adobe Systems Incorporated	21.07.2010		9.0.124.0
Adobe Reader 9.4.4 - Deutsch	Adobe Systems Incorporated	26.04.2011	167,9MB	9.4.4
ANNO 1404	Ubisoft	08.05.2011		1.01.0000
Apple Application Support	Apple Inc.	14.06.2011	51,0MB	1.5.2
Apple Mobile Device Support	Apple Inc.	14.06.2011	22,7MB	3.4.1.2
Apple Software Update	Apple Inc.	06.12.2010	2,26MB	2.1.2.120
ATI Catalyst Install Manager	ATI Technologies, Inc.	14.05.2011	22,5MB	3.0.825.0
Avira AntiVir Personal - Free Antivirus	Avira GmbH	25.06.2011	61,8MB	10.0.0.650
Battlefield: Bad Company™ 2	Electronic Arts	15.12.2010	5.869MB	1.0.0.0
Blur(TM)		27.12.2010		
Bonjour	Apple Inc.	26.04.2011	1,75MB	2.0.5.0
CANON iMAGE GATEWAY Task for ZoomBrowser EX	Canon Inc.	29.05.2011		1.7.2.11
Canon Internet Library for ZoomBrowser EX	Canon Inc.	29.05.2011		1.6.3.9
Canon iP4300		06.04.2011		
Canon MOV Decoder	Canon Inc.	29.05.2011		1.5.0.7
Canon MOV Encoder	Canon Inc.	29.05.2011		1.3.0.3
Canon MovieEdit Task for ZoomBrowser EX	Canon Inc.	29.05.2011		3.4.0.8
Canon Utilities CameraWindow	Canon Inc.	29.05.2011		7.4.0.7
Canon Utilities CameraWindow DC 8	Canon Inc.	29.05.2011		8.1.0.11
Canon Utilities Movie Uploader for YouTube	Canon Inc.	29.05.2011		1.0.0.11
Canon Utilities MyCamera	Canon Inc.	29.05.2011		7.3.0.5
Canon Utilities PhotoStitch	Canon Inc.	29.05.2011		3.1.22.46
Canon Utilities ZoomBrowser EX	Canon Inc.	29.05.2011		6.5.0.14
Canon ZoomBrowser EX Memory Card Utility	Canon Inc.	29.05.2011		1.3.0.4
CCleaner	Piriform	27.06.2011		3.08
DAEMON Tools Lite	DT Soft Ltd	12.05.2011		4.40.2.0131
Diablo II		19.07.2010		
DivX Setup	DivX, LLC	28.05.2011		2.5.0.11
FIFA 11	Electronic Arts	26.12.2010	6.262MB	1.0.0.0
Fraps (remove only)		21.07.2010		
Garena 2010	Garena Online Pte Ltd.	20.07.2010		2010
Google Chrome	Google Inc.	23.07.2010		12.0.742.100
Google Earth	Google	25.05.2011	84,6MB	6.0.3.2197
Grand Theft Auto IV	Rockstar Games	12.05.2011		1.00.0000
Hamachi 1.0.3.0		06.12.2010		
Heroes of Newerth	S2 Games	27.05.2011		2.0.26
HijackThis 2.0.2	TrendMicro	26.06.2011		2.0.2
iTunes	Apple Inc.	14.06.2011	145,0MB	10.3.1.55
Java(TM) 6 Update 26	Sun Microsystems, Inc.	24.07.2010	94,5MB	6.0.260
Last.fm 1.5.4.27091	Last.fm	30.10.2010		
Logitech SetPoint 6.15	Logitech	24.10.2010	39,1MB	6.15.25
Malwarebytes' Anti-Malware Version 1.51.0.1200	Malwarebytes Corporation	27.06.2011	13,8MB	1.51.0.1200
Microsoft .NET Framework 4 Client Profile	Microsoft Corporation	23.11.2010	38,8MB	4.0.30319
Microsoft .NET Framework 4 Client Profile DEU Language Pack	Microsoft Corporation	23.11.2010	2,94MB	4.0.30319
Microsoft Games for Windows - LIVE Redistributable	Microsoft Corporation	12.05.2011	32,6MB	2.0.672.0
Microsoft Office Professional Edition 2003	Microsoft Corporation	14.06.2011	542MB	11.0.8173.0
Microsoft SQL Server 2005 Compact Edition [ENU]	Microsoft Corporation	07.04.2011	1,70MB	3.1.0000
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053	Microsoft Corporation	07.04.2011	0,25MB	8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable	Microsoft Corporation	14.06.2011	0,29MB	8.0.61001
Microsoft Visual C++ 2005 Redistributable (x64)	Microsoft Corporation	21.07.2010	0,69MB	8.0.61000
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175	Microsoft Corporation	19.05.2011	0,57MB	8.0.51011
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570	Microsoft Corporation	19.05.2011	0,77MB	9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570	Microsoft Corporation	19.05.2011	0,58MB	9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17	Microsoft Corporation	06.12.2010	0,25MB	9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148	Microsoft Corporation	06.12.2010	0,77MB	9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161	Microsoft Corporation	14.06.2011	0,77MB	9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729	Microsoft Corporation	26.12.2010	0,23MB	9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17	Microsoft Corporation	11.12.2010	0,23MB	9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148	Microsoft Corporation	06.12.2010	0,58MB	9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161	Microsoft Corporation	14.06.2011	0,59MB	9.0.30729.6161
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319	Microsoft Corporation	19.05.2011	15,1MB	10.0.30319
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319	Microsoft Corporation	19.05.2011	11,0MB	10.0.30319
MSXML 4.0 SP2 (KB954430)	Microsoft Corporation	04.08.2010	1,28MB	4.20.9870.0
MSXML 4.0 SP2 (KB973688)	Microsoft Corporation	04.08.2010	1,33MB	4.20.9876.0
Nero 9 Essentials	Nero AG	03.08.2010		
Norton Security Scan	Symantec Corporation	28.05.2011		3.1.1.6
Pando Media Booster	Pando Networks Inc.	20.10.2010	5,47MB	2.3.4.3
PunkBuster Services	Even Balance, Inc.	15.12.2010		0.988
QuickTime	Apple Inc.	26.12.2010	73,7MB	7.69.80.9
Rockstar Games Social Club	Rockstar Games	12.05.2011		1.00.0000
Silent Hill Homecoming	Konami	12.05.2011		
TeamSpeak 3 Client	TeamSpeak Systems GmbH	06.12.2010		
Tom Clancy's Ghost Recon Advanced Warfighter® 2	UBISOFT	13.05.2011		1.00.0000
Uninstall 1.0.0.1		09.04.2011	10,9MB	
VLC media player 1.1.4	VideoLAN	25.09.2010		1.1.4
Warkeys 1.17.1.0b		12.11.2010		1.17.1.0b
WC3Banlist	Knarf	09.04.2011		3.0
Windows Live Essentials	Microsoft Corporation	08.04.2011		15.4.3508.1109
WinPcap 4.1.2	CACE Technologies	27.04.2011		4.1.0.2001
WinRAR		06.12.2010
         

Alt 29.06.2011, 07:55   #10
kira
/// Helfer-Team
 
Werde auf andere Seiten gelenkt! (Google) - Standard

Werde auf andere Seiten gelenkt! (Google)



1.
Hinweise zum Einsatz von Freeware-Version Avira AntiVir Personal:
Hier klicken zum Weiterlesen► http://www.pc-sicherheit.net/antivir...blue-t955.html
Zitat:
Das Toolbar ist natürlich abwählbar, aber Du wirst eventuell immer wieder aufgefordert (z.B bei jedem Update), es erneut zu überlegen bzw das Toolbar doch zu installieren. Da die Ask Toolbar einen schlechten Ruf hat (Adware ), würde ich nicht empfehlen es zu installieren.
Wenn dich das wirklich so sehr nervt und kein Geld für Antiviren-Lösung investieren willst, kannst auf einen andere kostenlosen Virenscanner umsteigen wie z.B der kostenlose Sicherheitslösung Security Essentials von Microsoft

2.
Deine Javaversion ist nicht aktuell!
Da aufgrund alter Sicherheitslücken ist Java sehr anfällig, deinstalliere zunächst alle vorhandenen Java-Versionen:
→ Systemsteuerung → Software → deinstallieren...
→ Rechner neu aufstarten
→ Downloade nun die Offline-Version von Java Version 6 Update 24 von Oracle herunter
Achte darauf, eventuell angebotene Toolbars abwählen (den Haken bei der Toolbar entfernen)!

3.
Fixen mit OTL
  • Starte die OTL.exe.
  • Vista und Windows 7 User: Rechtsklick auf die OTL.exe und "als Administrator ausführen" wählen.
  • Kopiere folgendes Skript:
Code:
ATTFilter
:OTL
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.conduit.com?SearchSource=10&ctid=CT2269050
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Low Rights present
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{aba432dd-7d4f-11e0-a6d0-90e6bab972ac}\Shell - "" = AutoRun
O33 - MountPoints2\{aba432dd-7d4f-11e0-a6d0-90e6bab972ac}\Shell\AutoRun\command - "" = F:\Start.exe
O33 - MountPoints2\E\Shell - "" = AutoRun
O33 - MountPoints2\E\Shell\AutoRun\command - "" = E:\Autorun.exe
:Commands
[purity]
[emptytemp]
         
  • und füge es hier ein:
  • Schließe alle Programme.
  • Klicke auf den Fix Button.
  • Klick auf .
  • OTL verlangt einen Neustart. Bitte zulassen.
  • Nach dem Neustart findest Du ein Textdokument.
    Kopiere den Inhalt hier in Deinen Thread.

4.
reinige dein System mit Ccleaner:
  • "Cleaner"→ "Analysieren"→ Klick auf den Button "Start CCleaner"
  • "Registry""Fehler suchen"→ "Fehler beheben"→ "Alle beheben"
  • Starte dein System neu auf

Besteht dein Problem immer noch? wenn ja bitte genaue Angabe -> Wann und wie wird "falsche Seite" angezeigt? Während des surfens? oder ansonsten auch?
__________________

Warnung!:
Vorsicht beim Rechnungen per Email mit ZIP-Datei als Anhang! Kann mit einen Verschlüsselungs-Trojaner infiziert sein!
Anhang nicht öffnen, in unserem Forum erst nachfragen!

Sichere regelmäßig deine Daten, auf CD/DVD, USB-Sticks oder externe Festplatten, am besten 2x an verschiedenen Orten!
Bitte diese Warnung weitergeben, wo Du nur kannst!

Geändert von kira (29.06.2011 um 08:00 Uhr)

Alt 30.06.2011, 00:31   #11
Jonas_
 
Werde auf andere Seiten gelenkt! (Google) - Standard

Werde auf andere Seiten gelenkt! (Google)



hat sich erledigt, habe mein System formatiert.

Trotzdem danke für die Hilfe!

Alt 30.06.2011, 08:37   #12
kira
/// Helfer-Team
 
Werde auf andere Seiten gelenkt! (Google) - Standard

Werde auf andere Seiten gelenkt! (Google)



Ändere deine Passworte und Zugangsdaten! - von einem sauberen System aus
- Alle Passwörter, die auf dem kompromittierten System verwendet wurden (also z.B. Login-, Mail- oder Website-Passwörter, aber auch die PIN für das Online-Banking) sofort ändern (► am besten von einem anderen, nicht-infizierten Rechner aus! )
Tipps:
Die sichere Passwort-Wahl - (sollte man eigentlich regelmäßigen Abständen ca. alle 3-5 Monate ändern)
auch noch hier unter: Sicheres Kennwort (Password)

Lesestoff Nr.1:
  • Wie erstelle ich ein eingeschränktes Benutzerkonto?
  • Software immer auf dem neuesten Stand halten!:
    ALLE auf dem System installierten Programme und Treiber, sollten regelmäßig upgedatet werden um Sicherheitslücken zu vermeiden und um das reibungslose Arbeitsabläufe zu erreichen!
  • Ein sicherer Browser als IE z.B. *Ein Wechsel des Standardbrowsers zu...von SETI@home* - Firefox - FirefoxWiki/Einstellungen - Erweiterungen für Firefox - Standardbrowser
  • Sichere eMail Clients z.B. Thunderbird-->Erweiterungen für Mozilla Thunderbird
  • Sichere Paswort - Die sichere Passwort-Wahl - (sollte man eigentlich regelmäßigen Abständen ca. alle 3-5 Monate ändern)
    auch noch hier unter: Sicheres Kennwort (Password)
    Die fünf häufigsten Passwort-Fehler[/b[
  • "Never accept software from strangers" - Installiere grundsätzlich immer nur Programme, die Du auch wirklich benötigst und von denen Du überzeugt bist, dass sie seriös sind.
    Du hast die Wahl!, welche zusätzlichen Komponenten noch installiert werden sollen? -> Bei der Installation immer mitlesen, Sponsoren und Partnerprogramme, Toolbars oder eventuell noch andere extra angebotene Programme möglichst abwählen!
  • NICHT irgendwelche Programme aus dem Netz laden, wenn nicht zu 100% fest steht, dass es sich dabei um saubere Software handelt. Nette Versprechen der Hersteller garantieren noch lange keine einwandfreie Funktionsweise, also vorher blättere die Seiten bei GOOGLE, da kannst Du Dir wertvolle Informationen holen!!!
  • Vorsicht bei der Nutzung fremder Computer und anschliessbare Externe Speichermedien wie Festplatte, USB Sticks, Speicherkarten usw![/color] - IT-Betrüger machen keinen Urlaub!/bsi-fuer-buerger.de - auch zeitweise anschließen und scannen lassen (sehe unter `kostenlose Online-Viren-Scanner`)
  • Webseiten ohne Gültiges Impressum nicht besuchen
  • Lizenzkosten sparen? - Vorsicht bei Dateien/Programmen aus nicht vertrauenswürdigen Quellen! - "full Keygen, Crack, Serial, Warez, keygenerators" etc.
    Sind immer verseucht mit diverse Malware/Schadprogramme/Code, es gibt keine seite wo Viren frei ist. (Man sollte nicht absitlich der Teufel holen) Eine weitere höchst unsichere Quelle ist das File-Sharing der sog. (Musik-)Tauschbörsen.
    ► Ausserdem machst Du dich damit strafbar!
  • Nur eine Firewall sowie ein Antiviren Programm verwenden, welche sich immer auf dem aktuellsten Stand befinden sollten!
    Das Installieren von `zuviel` Software beeinträchtigt die Systemleistung und Sicherheit, verlangsamt den Start-Vorgang enorm und belastet den Arbeitsspeicher (weil laufen ja die Programme nebeneinander gleichzeitig, die viel Performance fressen, aber wenig Qualität bringen). Im Laufe der Zeit wird der rechner durch zu viel unnötigen Ballast immer langsamer, und unsicherer. Um so mehr Programme installiert sind, um so häufiger treten Probleme auf, die dann unter Umständen nur schwer lösen können. Dazu kommt noch, das einige Programme große Sicherheitsrisiken mit sich bringen
  • Virenscanner
  • BSI für Bürger
  • SETI@home - [Sicherheit] Sicherheitskonzept
  • Entwicklung schädlicher Websites/viruslist.com
  • Brennpunkt: Bilder und Töne
    Gefährliche Bilder, schräge Töne/BSI

** Der gesunde Menschenverstand, Windows und Internet-Software sicher konfigurieren ist der beste Weg zur Sicherheit im Webverkehr ist !!
Zitat:
Da der Bestand der Datenbank wird täglich ergänzt und erweitert bzw werden mit der aktuellen Virendefinition die Informationen über den betroffenen Virus aufgenommen, empfehle ich dir mindestens einmal pro Woche (später genügt es sicherlich einmal im Monat) dein System Online Scannen lassen (immer mit einen anderen Scanner), um eine zweite Meinung einzuholen - Die auf dem Speichermedium gesicherten Daten sollten auch mit einbezogen werden!
(benutzen meist ActiveX und/oder Java): Kostenlose Online Scanner -
Lesestoff Nr.2:
► Kann sich auf Dauer eine Menge Datenmüll ansammeln, sich Fehlermeldungen häufen, der PC ist wahrscheinlich nicht mehr so schnell, wie früher:wünsch Dir alles Gute
__________________

Warnung!:
Vorsicht beim Rechnungen per Email mit ZIP-Datei als Anhang! Kann mit einen Verschlüsselungs-Trojaner infiziert sein!
Anhang nicht öffnen, in unserem Forum erst nachfragen!

Sichere regelmäßig deine Daten, auf CD/DVD, USB-Sticks oder externe Festplatten, am besten 2x an verschiedenen Orten!
Bitte diese Warnung weitergeben, wo Du nur kannst!

Antwort

Themen zu Werde auf andere Seiten gelenkt! (Google)
antivir, antivir guard, assembly, avira, backdoor, bho, computer, converter, desktop.ini, error, excel, extras.txt, flash player, google, hijack, hijackthis, logfile, mp3, otl.txt, personen, problem, programm, scan, security, server, software, teamspeak, trojaner-board, virus, windows



Ähnliche Themen: Werde auf andere Seiten gelenkt! (Google)


  1. Google leitet auf andere Seiten um....
    Log-Analyse und Auswertung - 25.04.2015 (13)
  2. google öffnet andere seiten
    Plagegeister aller Art und deren Bekämpfung - 24.09.2012 (7)
  3. Google.de nicht erreichbar - andere Seiten sehr langsam - andere normal DNS-Provider Problem oder Trojaner?
    Log-Analyse und Auswertung - 05.09.2012 (2)
  4. Werde bei Google auf andere Seiten geleitet: 95.com oder mediashifting
    Plagegeister aller Art und deren Bekämpfung - 09.01.2012 (21)
  5. Werde auf andere Seiten weitergeleitet anstatt auf die Verlinkung auf die ich geklickt habe
    Plagegeister aller Art und deren Bekämpfung - 21.07.2011 (3)
  6. Werde bei Googlelinks auf andere Seiten geleitet
    Log-Analyse und Auswertung - 21.04.2011 (1)
  7. Email/I-Banking meldet Gozi und werde öfters auf andere Seiten verlinkt (Firefox)
    Log-Analyse und Auswertung - 18.11.2010 (1)
  8. Redirect/Jump Virus in Firefox - werde ständig auf andere Seiten weitergeleitet im Web
    Log-Analyse und Auswertung - 02.11.2010 (25)
  9. Werde bei Google immer auf andere Seite weitergeleitet...
    Log-Analyse und Auswertung - 01.10.2010 (13)
  10. Google leitet auf andere Seiten um, Seiten wollen sich ungefragt öffnen. Gelöst(?) Sicher?
    Plagegeister aller Art und deren Bekämpfung - 26.07.2010 (8)
  11. Ich werde bei Google zu anderen Seiten geleitet
    Log-Analyse und Auswertung - 27.02.2009 (7)
  12. Werde immer auf andere Seiten umgeleitet
    Log-Analyse und Auswertung - 11.02.2009 (9)
  13. (Google-) Links werde auf andere URL geleitet. Bitte um Hilfe...
    Log-Analyse und Auswertung - 03.02.2009 (12)
  14. werde auf andere Seiten umgeleitet
    Log-Analyse und Auswertung - 23.11.2008 (15)
  15. Werde einfach auf andere seiten umgeleitet
    Log-Analyse und Auswertung - 19.11.2008 (0)
  16. Werde auf Genealogie gelenkt
    Mülltonne - 28.02.2008 (0)
  17. Hilfe, ich werde im Internet immer auf andere Seiten umgeleitet!
    Plagegeister aller Art und deren Bekämpfung - 19.05.2007 (1)

Zum Thema Werde auf andere Seiten gelenkt! (Google) - Hallo Trojaner-Board Community, ich habe selber gelesen, dass viele Personen das gleiche Problem haben wie ich: sie werden nach der Google Suche von einem beliebigen Begriff nach anklicken des Suchergebnisses - Werde auf andere Seiten gelenkt! (Google)...
Archiv
Du betrachtest: Werde auf andere Seiten gelenkt! (Google) auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.