Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Avasoft Virus wie entfernen ?

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 20.03.2013, 16:32   #1
avasoftvirus
 
Avasoft Virus wie entfernen ? - Standard

Avasoft Virus wie entfernen ?



Ich hatte plötzlich ein Fenster von Avasoft laufen wo dann zig Fehler angezeigt wurden.
Ich konnte diese Fenster nicht schließen und musst im Abgesicherten starten.

Jetzt ist auf dem Desktop (siehe Anhang) eine Verknüpfung zu AvaSoft.

Anschließend habe ich Malware AntiMalware heruntergeladen und durchlaufen lassen.
Im Anhang befindet sich der Befund.

Außerdem befinden sich seit dem Neustart die zwei desktop.ini Dateien auf dem Desktop, siehe Anhang.

Außrdem im Anhang die Extra.txt . OTL muss ich hier reinkopieren, da die Datei zu groß ist und daher nicht hochgeladen werden kann
Gmer speichert nicht ab :/OTL Logfile:
Code:
ATTFilter
OTL logfile created on: 20.03.2013 17:08:44 - Run 2
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\Pc2\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
3,92 Gb Total Physical Memory | 2,80 Gb Available Physical Memory | 71,35% Memory free
7,83 Gb Paging File | 6,83 Gb Available in Paging File | 87,13% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 448,39 Gb Total Space | 404,54 Gb Free Space | 90,22% Space Free | Partition Type: NTFS
 
Computer Name: PC2-VAIO | User Name: Pc2 | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
========== Processes (SafeList) ==========
 
PRC - C:\Users\Pc2\Downloads\OTL(1).exe (OldTimer Tools)
PRC - C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
 
 
========== Modules (No Company Name) ==========
 
MOD - C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ()
 
 
========== Services (SafeList) ==========
 
SRV:64bit: - (mfevtp) -- C:\Windows\SysNative\mfevtps.exe (McAfee, Inc.)
SRV:64bit: - (mfefire) -- C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe ()
SRV:64bit: - (McShield) -- C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe ()
SRV:64bit: - (MSK80Service) -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe (McAfee, Inc.)
SRV:64bit: - (McProxy) -- C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe (McAfee, Inc.)
SRV:64bit: - (McOobeSv) -- C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe (McAfee, Inc.)
SRV:64bit: - (McNASvc) -- C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe (McAfee, Inc.)
SRV:64bit: - (McNaiAnn) -- C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe (McAfee, Inc.)
SRV:64bit: - (mcmscsvc) -- C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe (McAfee, Inc.)
SRV:64bit: - (McMPFSvc) -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe (McAfee, Inc.)
SRV:64bit: - (McAfee SiteAdvisor Service) -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe (McAfee, Inc.)
SRV:64bit: - (AMD External Events Utility) -- C:\Windows\SysNative\atiesrxx.exe (AMD)
SRV:64bit: - (SampleCollector) -- C:\Program Files\Sony\VAIO Care\VCPerfService.exe (Sony Corporation)
SRV - (MozillaMaintenance) -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation)
SRV - (FLEXnet Licensing Service) -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Macrovision Europe Ltd.)
SRV - (AdobeARMservice) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
SRV - (McODS) -- C:\Programme\mcafee\virusscan\mcods.exe (McAfee, Inc.)
SRV - (0067121361664798mcinstcleanup) -- C:\Windows\Temp\0067121361664798mcinst.exe (McAfee, Inc.)
SRV - (VUAgent) -- C:\Programme\Sony\VAIO Update 5\VUAgent.exe (Sony Corporation)
SRV - (VSNService) -- C:\Programme\Sony\VAIO Smart Network\VSNService.exe (Sony Corporation)
SRV - (UNS) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation)
SRV - (LMS) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation)
SRV - (VAIO Event Service) -- C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe (Sony Corporation)
SRV - (BBSvc) -- C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE (Microsoft Corporation.)
SRV - (SeaPort) -- C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE (Microsoft Corporation)
SRV - (uCamMonitor) -- C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe (ArcSoft, Inc.)
SRV - (SOHCImp) -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe (Sony Corporation)
SRV - (SOHDs) -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe (Sony Corporation)
SRV - (VcmXmlIfHelper) -- C:\Programme\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe (Sony Corporation)
SRV - (VcmIAlzMgr) -- C:\Programme\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe (Sony Corporation)
SRV - (VcmINSMgr) -- C:\Programme\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe (Sony Corporation)
SRV - (VAIO Power Management) -- C:\Programme\Sony\VAIO Power Management\SPMService.exe (Sony Corporation)
SRV - (VCService) -- C:\Programme\Sony\VAIO Care\VCService.exe (Sony Corporation)
SRV - (SpfService) -- C:\Programme\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe (Sony Corporation)
SRV - (VCFw) -- C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe (Sony Corporation)
SRV - (EvtEng) -- C:\Programme\Intel\WiFi\bin\EvtEng.exe (Intel(R) Corporation)
SRV - (MyWiFiDHCPDNS) -- C:\Programme\Intel\WiFi\bin\PanDhcpDns.exe ()
SRV - (RegSrvc) -- C:\Programme\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel(R) Corporation)
SRV - (PMBDeviceInfoProvider) -- c:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe (Sony Corporation)
SRV - (IAStorDataMgrSvc) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation)
SRV - (AdobeActiveFileMonitor9.0) -- c:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe (Adobe Systems Incorporated)
SRV - (wlcrasvc) -- C:\Programme\Windows Live\Mesh\wlcrasvc.exe (Microsoft Corporation)
SRV - (wlidsvc) -- C:\Programme\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.)
SRV - (McAWFwk) -- c:\Programme\mcafee\msc\McAWFwk.exe (McAfee, Inc.)
SRV - (btwdins) -- C:\Programme\WIDCOMM\Bluetooth Software\btwdins.exe (Broadcom Corporation.)
SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
SRV - (ACDaemon) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (ArcSoft Inc.)
SRV - (osppsvc) -- C:\Programme\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Microsoft Corporation)
SRV - (sftvsa) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation)
SRV - (sftlist) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation)
SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
 
 
========== Driver Services (SafeList) ==========
 
DRV:64bit: - (cfwids) -- C:\Windows\SysNative\drivers\cfwids.sys (McAfee, Inc.)
DRV:64bit: - (mfewfpk) -- C:\Windows\SysNative\drivers\mfewfpk.sys (McAfee, Inc.)
DRV:64bit: - (mferkdet) -- C:\Windows\SysNative\drivers\mferkdet.sys (McAfee, Inc.)
DRV:64bit: - (mfehidk) -- C:\Windows\SysNative\drivers\mfehidk.sys (McAfee, Inc.)
DRV:64bit: - (mfefirek) -- C:\Windows\SysNative\drivers\mfefirek.sys (McAfee, Inc.)
DRV:64bit: - (mfeavfk) -- C:\Windows\SysNative\drivers\mfeavfk.sys (McAfee, Inc.)
DRV:64bit: - (mfeapfk) -- C:\Windows\SysNative\drivers\mfeapfk.sys (McAfee, Inc.)
DRV:64bit: - (HipShieldK) -- C:\Windows\SysNative\drivers\HipShieldK.sys (McAfee, Inc.)
DRV:64bit: - (intelkmd) -- C:\Windows\SysNative\drivers\igdpmd64.sys (Intel Corporation)
DRV:64bit: - (amdkmdag) -- C:\Windows\SysNative\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV:64bit: - (amdkmdap) -- C:\Windows\SysNative\drivers\atikmpag.sys (Advanced Micro Devices, Inc.)
DRV:64bit: - (IntcDAud) -- C:\Windows\SysNative\drivers\IntcDAud.sys (Intel(R) Corporation)
DRV:64bit: - (btwrchid) -- C:\Windows\SysNative\drivers\btwrchid.sys (Broadcom Corporation.)
DRV:64bit: - (btwampfl) -- C:\Windows\SysNative\drivers\btwampfl.sys (Broadcom Corporation.)
DRV:64bit: - (btwavdt) -- C:\Windows\SysNative\drivers\btwavdt.sys (Broadcom Corporation.)
DRV:64bit: - (btwaudio) -- C:\Windows\SysNative\drivers\btwaudio.sys (Broadcom Corporation.)
DRV:64bit: - (btwl2cap) -- C:\Windows\SysNative\drivers\btwl2cap.sys (Broadcom Corporation.)
DRV:64bit: - (iaStor) -- C:\Windows\SysNative\drivers\iaStor.sys (Intel Corporation)
DRV:64bit: - (MEIx64) -- C:\Windows\SysNative\drivers\HECIx64.sys (Intel Corporation)
DRV:64bit: - (nusb3xhc) -- C:\Windows\SysNative\drivers\nusb3xhc.sys (Renesas Electronics Corporation)
DRV:64bit: - (nusb3hub) -- C:\Windows\SysNative\drivers\nusb3hub.sys (Renesas Electronics Corporation)
DRV:64bit: - (RSPCIESTOR) -- C:\Windows\SysNative\drivers\RtsPStor.sys (Realtek Semiconductor Corp.)
DRV:64bit: - (RTL8167) -- C:\Windows\SysNative\drivers\Rt64win7.sys (Realtek                                            )
DRV:64bit: - (NETwNs64) -- C:\Windows\SysNative\drivers\NETwNs64.sys (Intel Corporation)
DRV:64bit: - (ApfiltrService) -- C:\Windows\SysNative\drivers\Apfiltr.sys (Alps Electric Co., Ltd.)
DRV:64bit: - (wdkmd) -- C:\Windows\SysNative\drivers\WDKMD.sys (Intel Corporation)
DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation)
DRV:64bit: - (sdbus) -- C:\Windows\SysNative\drivers\sdbus.sys (Microsoft Corporation)
DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:64bit: - (TsUsbGD) -- C:\Windows\SysNative\drivers\TsUsbGD.sys (Microsoft Corporation)
DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:64bit: - (SFEP) -- C:\Windows\SysNative\drivers\SFEP.sys (Sony Corporation)
DRV:64bit: - (PxHlpa64) -- C:\Windows\SysNative\drivers\PxHlpa64.sys (Sonic Solutions)
DRV:64bit: - (Sftvol) -- C:\Windows\SysNative\drivers\Sftvollh.sys (Microsoft Corporation)
DRV:64bit: - (Sftredir) -- C:\Windows\SysNative\drivers\Sftredirlh.sys (Microsoft Corporation)
DRV:64bit: - (Sftplay) -- C:\Windows\SysNative\drivers\Sftplaylh.sys (Microsoft Corporation)
DRV:64bit: - (Sftfs) -- C:\Windows\SysNative\drivers\Sftfslh.sys (Microsoft Corporation)
DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
DRV:64bit: - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation)
DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
DRV:64bit: - (athr) -- C:\Windows\SysNative\drivers\athrx.sys (Atheros Communications, Inc.)
DRV:64bit: - (e1yexpress) -- C:\Windows\SysNative\drivers\e1y60x64.sys (Intel Corporation)
DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV:64bit: - (ArcSoftKsUFilter) -- C:\Windows\SysNative\drivers\ArcSoftKsUFilter.sys (ArcSoft, Inc.)
DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation)
 
 
========== Standard Registry (SafeList) ==========
 
 
========== Internet Explorer ==========
 
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&form=SNYEDF&pc=MASE&src=IE-SearchBox
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&form=SNYEDF&pc=MASE&src=IE-SearchBox
 
 
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>
 
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>
 
 
 
IE - HKU\S-1-5-21-3870066073-16922091-365829341-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.sony.eu/vaioportal
IE - HKU\S-1-5-21-3870066073-16922091-365829341-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.sony.eu/vaioportal
IE - HKU\S-1-5-21-3870066073-16922091-365829341-1000\..\URLSearchHook: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.)
IE - HKU\S-1-5-21-3870066073-16922091-365829341-1000\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-3870066073-16922091-365829341-1000\..\SearchScopes\{2C42B726-1DB3-44C5-AA49-EABB6A126B1B}: "URL" = hxxp://de.shopping.com/?linkin_id=8056363
IE - HKU\S-1-5-21-3870066073-16922091-365829341-1000\..\SearchScopes\{4D037460-A3C9-415E-A50C-7B1FA582486F}: "URL" = hxxp://services.zinio.com/search?s={searchTerms}&rf=sonyslices
IE - HKU\S-1-5-21-3870066073-16922091-365829341-1000\..\SearchScopes\{6295AD58-BE35-4CFE-B933-7F893C262724}: "URL" = hxxp://rover.ebay.com/rover/1/707-37276-16609-21/4?satitle={searchTerms}
IE - HKU\S-1-5-21-3870066073-16922091-365829341-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-3870066073-16922091-365829341-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>
 
========== FireFox ==========
 
FF - prefs.js..extensions.enabledAddons: %7B08eaf605-03f5-44b1-a86d-e1ce89872ac3%7D:14
FF - prefs.js..extensions.enabledAddons: toolbar%40seomoz.org:2.38
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:19.0.2
FF - prefs.js..network.proxy.http: "85.25.109.152"
FF - prefs.js..network.proxy.http_port: 3128
FF - prefs.js..network.proxy.type: 0
FF - user.js - File not found
 
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_6_602_168.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF:64bit: - HKLM\Software\MozillaPlugins\@mcafee.com/MSC,version=10: c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_168.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@mcafee.com/MSC,version=10: c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL ()
FF - HKLM\Software\MozillaPlugins\@mcafee.com/SAFFPlugin: C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
 
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{4ED1F68A-5463-4931-9384-8FFF5ED91D92}: C:\Program Files (x86)\McAfee\SiteAdvisor [2013.03.20 16:16:25 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 19.0.2\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013.03.08 09:59:43 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 19.0.2\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 17.0.3\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2013.03.08 13:14:42 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 17.0.3\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\msktbird@mcafee.com: C:\Program Files\McAfee\MSK [2013.02.26 14:40:37 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 19.0.2\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013.03.08 09:59:43 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 19.0.2\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
 
[2013.02.24 01:18:47 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Pc2\AppData\Roaming\mozilla\Extensions
[2013.03.14 12:27:16 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Pc2\AppData\Roaming\mozilla\Firefox\Profiles\8iopxcvi.default\extensions
[2013.03.14 12:27:16 | 000,720,272 | ---- | M] () (No name found) -- C:\Users\Pc2\AppData\Roaming\mozilla\firefox\profiles\8iopxcvi.default\extensions\toolbar@seomoz.org.xpi
[2013.03.11 22:41:23 | 000,015,205 | ---- | M] () (No name found) -- C:\Users\Pc2\AppData\Roaming\mozilla\firefox\profiles\8iopxcvi.default\extensions\{08eaf605-03f5-44b1-a86d-e1ce89872ac3}.xpi
[2013.02.24 01:33:45 | 000,817,280 | ---- | M] () (No name found) -- C:\Users\Pc2\AppData\Roaming\mozilla\firefox\profiles\8iopxcvi.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2013.03.08 09:59:39 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions
[2013.03.08 09:59:43 | 000,263,064 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2013.02.16 05:15:47 | 000,001,392 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml
[2013.02.16 05:15:47 | 000,002,465 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2013.02.16 05:15:47 | 000,001,153 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml
[2013.02.16 05:15:47 | 000,006,805 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml
[2013.02.16 05:15:47 | 000,001,178 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-de.xml
[2013.02.16 05:15:47 | 000,001,105 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml
 
O1 HOSTS File: ([2009.06.10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (McAfee Phishing Filter) - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\PROGRA~1\mcafee\msk\MSKAPB~1.DLL File not found
O2:64bit: - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
O2:64bit: - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.)
O2 - BHO: (McAfee Phishing Filter) - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\Programme\mcafee\msk\mskapbho.dll ()
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.)
O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3:64bit: - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.)
O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.)
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O3 - HKU\S-1-5-21-3870066073-16922091-365829341-1000\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [Apoint] C:\Programme\Apoint\Apoint.exe (Alps Electric Co., Ltd.)
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor)
O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: []  File not found
O4 - HKLM..\Run: [Acrobat Assistant 8.0] c:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
O4 - HKLM..\Run: [Adobe Acrobat Speed Launcher] c:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [ISBMgr.exe] C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe (Sony Corporation)
O4 - HKLM..\Run: [mcui_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.)
O4 - HKLM..\Run: [PMBVolumeWatcher] c:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe (Sony Corporation)
O4 - HKLM..\Run: [StartCCC] c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [VAIO Boot Manager] C:\Program Files (x86)\Sony\VAIO Boot Manager\StartUpProcessDelayTool.exe (Sony Corporation)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKLM..\RunOnce: [ Malwarebytes Anti-Malware ] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\RunOnce: [ Malwarebytes Anti-Malware  (cleanup)] C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\cleanup.dll (Malwarebytes Corporation)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O8:64bit: - Extra context menu item: An vorhandene PDF-Datei anfügen - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: In Adobe PDF konvertieren - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Linkziel an vorhandene PDF-Datei anhängen - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Linkziel in Adobe PDF konvertieren - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: An vorhandene PDF-Datei anfügen - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: In Adobe PDF konvertieren - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Linkziel an vorhandene PDF-Datei anhängen - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Linkziel in Adobe PDF konvertieren - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000008 [] - C:\Programme\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Programme\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16:64bit: - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16:64bit: - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A791EFC9-BBCF-42F6-8F36-8451F5BDAF7D}: DhcpNameServer = 192.168.1.1
O18:64bit: - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.)
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.)
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.)
O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
O18:64bit: - Protocol\Filter\application/x-mfe-ipt {3EF5086B-5478-4598-A054-786C45D75692} - c:\Programme\mcafee\msc\McSnIePl64.dll (McAfee, Inc.)
O18 - Protocol\Filter\application/x-mfe-ipt {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll (McAfee, Inc.)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
 
========== Files/Folders - Created Within 30 Days ==========
 
[2013.03.20 16:34:34 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\Malwarebytes
[2013.03.20 16:34:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2013.03.20 16:34:25 | 000,024,176 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2013.03.20 16:34:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2013.03.20 16:34:24 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2013.03.20 16:34:16 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Local\Programs
[2013.03.20 16:26:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
[2013.03.20 16:13:06 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AVASoft Professional Antivirus
[2013.03.16 13:29:40 | 000,000,000 | ---D | C] -- C:\Users\Pc2\Documents\.Backup.03
[2013.03.15 15:51:02 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Local\ArcSoft
[2013.03.15 15:50:55 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\ArcSoft
[2013.03.13 20:19:02 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\MAGIX
[2013.03.13 20:18:43 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Local\Xara
[2013.03.13 20:18:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MAGIX
[2013.03.13 20:18:25 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\MAGIX Services
[2013.03.13 20:18:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\MAGIX Services
[2013.03.13 20:18:25 | 000,000,000 | ---D | C] -- C:\ProgramData\MAGIX
[2013.03.13 20:18:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MAGIX
[2013.03.12 20:45:22 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\Scribus
[2013.03.12 20:44:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Package Cache
[2013.03.12 20:40:14 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\inkscape
[2013.03.12 20:26:28 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\XnView
[2013.03.08 18:38:18 | 000,000,000 | ---D | C] -- C:\Users\Pc2\Desktop\Backlinks
[2013.03.08 15:29:32 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\Nvu
[2013.03.08 15:29:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nvu
[2013.03.08 15:29:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Nvu
[2013.03.08 15:21:59 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CoffeeCup Software
[2013.03.08 15:21:03 | 000,000,000 | ---D | C] -- C:\Users\Pc2\Documents\CoffeeCup Software
[2013.03.08 15:20:23 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\CoffeeCup Software
[2013.03.08 13:14:49 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\Thunderbird
[2013.03.08 13:14:49 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Local\Thunderbird
[2013.03.08 13:14:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Thunderbird
[2013.03.08 09:59:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2013.03.07 21:47:18 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\hdbADS
[2013.03.07 19:47:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\phase5
[2013.03.07 19:47:13 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Phase 5 HTML-Editor
[2013.03.07 19:45:18 | 000,000,000 | ---D | C] -- C:\ProgramData\FLEXnet
[2013.03.05 11:55:55 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\FileZilla
[2013.03.05 11:55:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
[2013.03.05 11:55:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FileZilla FTP Client
[2013.02.26 16:36:27 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Local\Microsoft Help
[2013.02.26 16:36:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Help
[2013.02.26 10:56:02 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Local\Macromedia
[2013.02.26 10:55:43 | 000,691,568 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2013.02.26 10:55:43 | 000,071,024 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2013.02.26 10:55:38 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Macromed
[2013.02.25 17:22:10 | 000,000,000 | ---D | C] -- C:\ProgramData\VirtualizedApplications
[2013.02.25 15:11:26 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Local\SoftGrid Client
[2013.02.25 15:11:25 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\SoftGrid Client
[2013.02.25 15:11:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (Deutsch)
[2013.02.25 15:10:43 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2013.02.25 15:10:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\DESIGNER
[2013.02.25 15:10:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Application Virtualization Client
[2013.02.25 15:10:14 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\TP
[2013.02.24 23:26:50 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\skypePM
[2013.02.24 23:25:59 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\Skype
[2013.02.24 21:39:59 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Local\P5
[2013.02.24 21:25:02 | 000,000,000 | ---D | C] -- C:\Users\Pc2\P5JavaClientSettings
[2013.02.24 10:23:46 | 000,196,440 | ---- | C] (McAfee, Inc.) -- C:\Windows\SysNative\drivers\HipShieldK.sys
[2013.02.24 10:14:52 | 000,000,000 | ---D | C] -- C:\Users\Pc2\4.0
[2013.02.24 10:14:52 | 000,000,000 | ---D | C] -- C:\Users\Pc2\.tfo4
[2013.02.24 10:03:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FLV Player
[2013.02.24 01:18:43 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\Mozilla
[2013.02.24 01:18:43 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Local\Mozilla
[2013.02.24 01:18:38 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service
[2013.02.24 01:18:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla
[2013.02.24 01:16:12 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\Intel Corporation
[2013.02.24 01:15:58 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\ATI
[2013.02.24 01:15:58 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Local\ATI
[2013.02.24 01:15:58 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI
[2013.02.24 01:15:06 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\Adobe
[2013.02.24 01:15:02 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Local\Broadcom
[2013.02.24 01:15:02 | 000,000,000 | ---D | C] -- C:\Users\Pc2\Documents\Bluetooth-Exchange-Ordner
[2013.02.24 01:14:55 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Local\Adobe
[2013.02.24 01:14:29 | 000,000,000 | R--D | C] -- C:\Users\Pc2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
[2013.02.24 01:14:29 | 000,000,000 | R--D | C] -- C:\Users\Pc2\Searches
[2013.02.24 01:14:29 | 000,000,000 | R--D | C] -- C:\Users\Pc2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2013.02.24 01:14:20 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\Identities
[2013.02.24 01:14:17 | 000,000,000 | R--D | C] -- C:\Users\Pc2\Contacts
[2013.02.24 01:14:12 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Local\VirtualStore
[2013.02.24 01:14:02 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\VAIO Startup Setting Tool
[2013.02.24 01:14:00 | 000,000,000 | ---D | C] -- C:\Windows\pss
[2013.02.24 01:13:44 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\Sony Corporation
[2013.02.24 01:13:08 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\Intel
[2013.02.24 01:13:07 | 000,000,000 | --SD | C] -- C:\Users\Pc2\AppData\Roaming\Microsoft
[2013.02.24 01:13:07 | 000,000,000 | R--D | C] -- C:\Users\Pc2\Videos
[2013.02.24 01:13:07 | 000,000,000 | R--D | C] -- C:\Users\Pc2\Saved Games
[2013.02.24 01:13:07 | 000,000,000 | R--D | C] -- C:\Users\Pc2\Pictures
[2013.02.24 01:13:07 | 000,000,000 | R--D | C] -- C:\Users\Pc2\Music
[2013.02.24 01:13:07 | 000,000,000 | R--D | C] -- C:\Users\Pc2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
[2013.02.24 01:13:07 | 000,000,000 | R--D | C] -- C:\Users\Pc2\Links
[2013.02.24 01:13:07 | 000,000,000 | R--D | C] -- C:\Users\Pc2\Favorites
[2013.02.24 01:13:07 | 000,000,000 | R--D | C] -- C:\Users\Pc2\Downloads
[2013.02.24 01:13:07 | 000,000,000 | R--D | C] -- C:\Users\Pc2\Documents
[2013.02.24 01:13:07 | 000,000,000 | R--D | C] -- C:\Users\Pc2\Desktop
[2013.02.24 01:13:07 | 000,000,000 | R--D | C] -- C:\Users\Pc2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
[2013.02.24 01:13:07 | 000,000,000 | -HSD | C] -- C:\Users\Pc2\Vorlagen
[2013.02.24 01:13:07 | 000,000,000 | -HSD | C] -- C:\Users\Pc2\AppData\Local\Verlauf
[2013.02.24 01:13:07 | 000,000,000 | -HSD | C] -- C:\Users\Pc2\AppData\Local\Temporary Internet Files
[2013.02.24 01:13:07 | 000,000,000 | -HSD | C] -- C:\Users\Pc2\Startmenü
[2013.02.24 01:13:07 | 000,000,000 | -HSD | C] -- C:\Users\Pc2\SendTo
[2013.02.24 01:13:07 | 000,000,000 | -HSD | C] -- C:\Users\Pc2\Recent
[2013.02.24 01:13:07 | 000,000,000 | -HSD | C] -- C:\Users\Pc2\Netzwerkumgebung
[2013.02.24 01:13:07 | 000,000,000 | -HSD | C] -- C:\Users\Pc2\Lokale Einstellungen
[2013.02.24 01:13:07 | 000,000,000 | -HSD | C] -- C:\Users\Pc2\Documents\Eigene Videos
[2013.02.24 01:13:07 | 000,000,000 | -HSD | C] -- C:\Users\Pc2\Documents\Eigene Musik
[2013.02.24 01:13:07 | 000,000,000 | -HSD | C] -- C:\Users\Pc2\Eigene Dateien
[2013.02.24 01:13:07 | 000,000,000 | -HSD | C] -- C:\Users\Pc2\Documents\Eigene Bilder
[2013.02.24 01:13:07 | 000,000,000 | -HSD | C] -- C:\Users\Pc2\Druckumgebung
[2013.02.24 01:13:07 | 000,000,000 | -HSD | C] -- C:\Users\Pc2\Cookies
[2013.02.24 01:13:07 | 000,000,000 | -HSD | C] -- C:\Users\Pc2\AppData\Local\Anwendungsdaten
[2013.02.24 01:13:07 | 000,000,000 | -HSD | C] -- C:\Users\Pc2\Anwendungsdaten
[2013.02.24 01:13:07 | 000,000,000 | -H-D | C] -- C:\Users\Pc2\AppData
[2013.02.24 01:13:07 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Local\Temp
[2013.02.24 01:13:07 | 000,000,000 | ---D | C] -- C:\Users\Pc2\Roaming
[2013.02.24 01:13:07 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Local\Microsoft
[2013.02.24 01:13:07 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\Media Center Programs
[2013.02.24 01:13:07 | 000,000,000 | ---D | C] -- C:\Users\Pc2\AppData\Roaming\Macromedia
[2013.02.24 01:12:27 | 000,000,000 | -HSD | C] -- C:\ProgramData\Vorlagen
[2013.02.24 01:12:27 | 000,000,000 | -HSD | C] -- C:\Programme
[2013.02.24 01:12:27 | 000,000,000 | -HSD | C] -- C:\Program Files\Gemeinsame Dateien
[2013.02.24 01:12:27 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Videos
[2013.02.24 01:12:27 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Musik
[2013.02.24 01:12:27 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Bilder
[2013.02.24 01:12:26 | 000,000,000 | -HSD | C] -- C:\ProgramData\Startmenü
[2013.02.24 01:12:26 | 000,000,000 | -HSD | C] -- C:\ProgramData\Favoriten
[2013.02.24 01:12:26 | 000,000,000 | -HSD | C] -- C:\Dokumente und Einstellungen
[2013.02.24 01:12:26 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumente
[2013.02.24 01:12:26 | 000,000,000 | -HSD | C] -- C:\ProgramData\Anwendungsdaten
[2013.02.24 01:07:18 | 000,000,000 | -H-D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Care
[2013.02.24 01:06:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Corporation
[2013.02.24 01:06:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Intel Corporation
[2013.02.24 01:06:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Intel Corporation
[2013.02.24 01:04:59 | 000,000,000 | ---D | C] -- C:\VAIO Sample Contents
[2013.02.24 01:04:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
[2013.02.24 01:03:49 | 000,000,000 | R--D | C] -- C:\Program Files (x86)\Skype
[2013.02.24 01:03:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2013.02.24 01:03:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype
[2013.02.24 01:03:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Skype
[2013.02.24 01:03:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Nascom
[2013.02.24 01:03:34 | 066,145,323 | ---- | C] (Axialis Software) -- C:\Windows\SysNative\VAIO S Series - Summer 2011.scr
[2013.02.24 01:03:24 | 002,475,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_42.dll
[2013.02.24 01:03:24 | 001,892,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_42.dll
[2013.02.24 01:03:07 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PlayStation Extras
[2013.02.24 01:02:38 | 000,000,000 | -H-D | C] -- C:\SPLASH.000
[2013.02.24 01:02:20 | 000,000,000 | -H-D | C] -- C:\SPLASH.SYS
[2013.02.24 01:02:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Downloaded Installations
[2013.02.24 00:57:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSXML 4.0
[2013.02.24 00:57:01 | 005,073,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_35.dll
[2013.02.24 00:57:00 | 003,927,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_30.dll
[2013.02.24 00:57:00 | 002,388,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_30.dll
[2013.02.24 00:56:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PMB
[2013.02.24 00:55:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Office
[2013.02.24 00:52:03 | 000,527,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_7.dll
[2013.02.24 00:52:03 | 000,518,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_7.dll
[2013.02.24 00:52:03 | 000,077,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_5.dll
[2013.02.24 00:52:03 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_5.dll
[2013.02.24 00:52:02 | 002,526,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_43.dll
[2013.02.24 00:52:02 | 002,106,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_43.dll
[2013.02.24 00:52:02 | 001,907,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dcsx_43.dll
[2013.02.24 00:52:02 | 001,868,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dcsx_43.dll
[2013.02.24 00:52:02 | 000,511,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_43.dll
[2013.02.24 00:52:02 | 000,470,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_43.dll
[2013.02.24 00:52:02 | 000,276,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx11_43.dll
[2013.02.24 00:52:02 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx11_43.dll
[2013.02.24 00:52:02 | 000,239,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_7.dll
[2013.02.24 00:52:02 | 000,176,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_7.dll
[2013.02.24 00:52:01 | 002,401,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_43.dll
[2013.02.24 00:52:01 | 001,998,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_43.dll
[2013.02.24 00:50:28 | 000,212,480 | ---- | C] (Eastman Kodak) -- C:\Windows\SysWow64\PCDLIB32.DLL
[2013.02.24 00:50:25 | 000,055,808 | ---- | C] (ArcSoft, Inc.) -- C:\Windows\System\ArcSoftKsUFilter.dll
[2013.02.24 00:50:25 | 000,019,968 | ---- | C] (ArcSoft, Inc.) -- C:\Windows\SysNative\drivers\ArcSoftKsUFilter.sys
[2013.02.24 00:50:16 | 000,000,000 | ---D | C] -- C:\ProgramData\ArcSoft
[2013.02.24 00:50:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft Webcam Suite
[2013.02.24 00:50:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\ArcSoft
[2013.02.24 00:50:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ArcSoft
[2013.02.24 00:48:08 | 000,000,000 | ---D | C] -- C:\ProgramData\SmartSound Software Inc
[2013.02.24 00:48:08 | 000,000,000 | ---D | C] -- C:\ProgramData\eSellerate
[2013.02.24 00:48:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SmartSound Software
[2013.02.24 00:43:01 | 000,055,856 | ---- | C] (Sonic Solutions) -- C:\Windows\SysNative\drivers\PxHlpa64.sys
[2013.02.24 00:43:01 | 000,010,224 | ---- | C] (Sonic Solutions) -- C:\Windows\SysNative\drivers\cdralw2k.sys
[2013.02.24 00:43:01 | 000,010,224 | ---- | C] (Sonic Solutions) -- C:\Windows\SysNative\drivers\cdr4_xp.sys
[2013.02.24 00:42:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Sonic Shared
[2013.02.24 00:42:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\PX Storage Engine
[2013.02.24 00:39:14 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Macromed
[2013.02.24 00:39:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe AIR
[2013.02.24 00:38:20 | 000,052,568 | R--- | C] (Adobe Systems Inc) -- C:\Windows\SysNative\AdobePDF.dll
[2013.02.24 00:38:20 | 000,024,416 | R--- | C] (Adobe Systems Inc.) -- C:\Windows\SysNative\AdobePDFUI.dll
[2013.02.24 00:35:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Macrovision Shared
[2013.02.24 00:34:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe
[2013.02.24 00:34:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe
[2013.02.24 00:34:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Adobe
[2013.02.24 00:33:27 | 000,000,000 | ---D | C] -- C:\Windows\en
[2013.02.24 00:32:20 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
[2013.02.24 00:32:18 | 000,000,000 | ---D | C] -- C:\Windows\uk
[2013.02.24 00:32:14 | 000,000,000 | ---D | C] -- C:\Windows\tr
[2013.02.24 00:32:11 | 000,000,000 | ---D | C] -- C:\Windows\sv
[2013.02.24 00:32:08 | 000,000,000 | ---D | C] -- C:\Windows\sk
[2013.02.24 00:32:05 | 000,000,000 | ---D | C] -- C:\Windows\ru
[2013.02.24 00:32:01 | 000,000,000 | ---D | C] -- C:\Windows\ro
[2013.02.24 00:31:58 | 000,000,000 | ---D | C] -- C:\Windows\pt-pt
[2013.02.24 00:31:55 | 000,000,000 | ---D | C] -- C:\Windows\pl
[2013.02.24 00:31:52 | 000,000,000 | ---D | C] -- C:\Windows\no
[2013.02.24 00:31:49 | 000,000,000 | ---D | C] -- C:\Windows\it
[2013.02.24 00:31:45 | 000,000,000 | ---D | C] -- C:\Windows\hu
[2013.02.24 00:31:42 | 000,000,000 | ---D | C] -- C:\Windows\el
[2013.02.24 00:31:39 | 000,000,000 | ---D | C] -- C:\Windows\de
[2013.02.24 00:31:35 | 000,000,000 | ---D | C] -- C:\Windows\fr
[2013.02.24 00:31:32 | 000,000,000 | ---D | C] -- C:\Windows\fi
[2013.02.24 00:31:28 | 000,000,000 | ---D | C] -- C:\Windows\nl
[2013.02.24 00:31:25 | 000,000,000 | ---D | C] -- C:\Windows\da
[2013.02.24 00:31:21 | 000,000,000 | ---D | C] -- C:\Windows\cs
[2013.02.24 00:31:19 | 000,000,000 | ---D | C] -- C:\Windows\bg
[2013.02.24 00:31:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
[2013.02.24 00:27:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Windows Live
[2013.02.24 00:26:45 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2013.02.24 00:26:41 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Live
[2013.02.24 00:26:28 | 000,523,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_42.dll
[2013.02.24 00:26:28 | 000,515,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_5.dll
[2013.02.24 00:26:28 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_42.dll
[2013.02.24 00:26:28 | 000,069,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_3.dll
[2013.02.24 00:26:25 | 004,398,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_32.dll
[2013.02.24 00:26:25 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_32.dll
[2013.02.24 00:26:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
[2013.02.24 00:26:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Silverlight
[2013.02.24 00:25:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Windows Live
[2013.02.24 00:24:19 | 000,000,000 | ---D | C] -- C:\temp
[2013.02.24 00:24:19 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft
[2013.02.24 00:23:49 | 000,000,000 | ---D | C] -- C:\_FS_SWRINFO
[2013.02.24 00:23:48 | 000,000,000 | ---D | C] -- C:\Documentation
[2013.02.24 00:22:47 | 000,000,000 | ---D | C] -- C:\Windows\Sonysys
[2013.02.24 00:21:35 | 000,010,288 | ---- | C] (McAfee, Inc.) -- C:\Windows\SysNative\drivers\mfeclnk.sys
[2013.02.24 00:21:32 | 000,182,312 | ---- | C] (McAfee, Inc.) -- C:\Windows\SysNative\mfevtps.exe
[2013.02.24 00:21:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\mcafee.com
[2013.02.24 00:21:25 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\mcafee
[2013.02.24 00:21:24 | 000,000,000 | ---D | C] -- C:\Program Files\mcafee.com
[2013.02.24 00:21:24 | 000,000,000 | ---D | C] -- C:\Program Files\mcafee
[2013.02.24 00:21:24 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\McAfee
[2013.02.24 00:21:24 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\mcafee
[2013.02.24 00:21:21 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee
[2013.02.24 00:20:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun
[2013.02.24 00:20:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2013.02.24 00:20:53 | 000,472,808 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\deployJava1.dll
[2013.02.24 00:20:53 | 000,153,376 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaws.exe
[2013.02.24 00:20:53 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaw.exe
[2013.02.24 00:20:53 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\java.exe
[2013.02.24 00:20:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Java
[2013.02.24 00:20:45 | 000,521,448 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysNative\deployJava1.dll
[2013.02.24 00:20:45 | 000,189,216 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysNative\javaws.exe
[2013.02.24 00:20:45 | 000,171,808 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysNative\javaw.exe
[2013.02.24 00:20:45 | 000,171,808 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysNative\java.exe
[2013.02.24 00:20:41 | 000,000,000 | ---D | C] -- C:\Program Files\Java
[2013.02.24 00:20:33 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Sony Shared
[2013.02.24 00:20:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Sony Shared
[2013.02.24 00:20:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Sony
[2013.02.24 00:18:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Roaming
[2013.02.24 00:17:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless
[2013.02.24 00:17:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Intel
[2013.02.24 00:17:21 | 000,000,000 | ---D | C] -- C:\Program Files\Intel
[2013.02.24 00:17:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Cisco
[2013.02.24 00:17:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Renesas Electronics
[2013.02.24 00:16:55 | 000,000,000 | ---D | C] -- C:\Program Files\Apoint
[2013.02.24 00:16:50 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\sda
[2013.02.24 00:16:46 | 009,888,360 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysWow64\RtsPStorIcon.dll
[2013.02.24 00:16:46 | 000,329,832 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\drivers\RtsPStor.sys
[2013.02.24 00:16:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\postureAgent
[2013.02.24 00:16:17 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Intel
[2013.02.24 00:16:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Intel
[2013.02.24 00:16:06 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ATI Technologies
[2013.02.24 00:16:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\ATI Technologies
[2013.02.24 00:16:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ATI Stream SDK v2
[2013.02.24 00:16:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ATI Stream
[2013.02.24 00:16:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
[2013.02.24 00:15:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ATI Technologies
[2013.02.24 00:15:21 | 000,000,000 | ---D | C] -- C:\Program Files\ATI
[2013.02.24 00:14:06 | 000,425,064 | ---- | C] (Realtek                                            ) -- C:\Windows\SysNative\drivers\Rt64win7.sys
[2013.02.24 00:14:06 | 000,107,552 | ---- | C] (Realtek Semiconductor Corporation) -- C:\Windows\SysNative\RTNUninst64.dll
[2013.02.24 00:13:05 | 000,344,616 | ---- | C] (Broadcom Corporation.) -- C:\Windows\SysNative\drivers\btwampfl.sys
[2013.02.24 00:13:05 | 000,135,720 | ---- | C] (Broadcom Corporation.) -- C:\Windows\SysNative\drivers\btwavdt.sys
[2013.02.24 00:13:05 | 000,102,952 | ---- | C] (Broadcom Corporation.) -- C:\Windows\SysNative\drivers\btwaudio.sys
[2013.02.24 00:13:05 | 000,039,464 | ---- | C] (Broadcom Corporation.) -- C:\Windows\SysNative\drivers\btwl2cap.sys
[2013.02.24 00:13:05 | 000,021,544 | ---- | C] (Broadcom Corporation.) -- C:\Windows\SysNative\drivers\btwrchid.sys
[2013.02.24 00:12:34 | 000,000,000 | ---D | C] -- C:\Program Files\WIDCOMM
[2013.02.24 00:12:06 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\RTCOM
[2013.02.24 00:12:06 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek
[2013.02.24 00:11:54 | 002,651,240 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkAPO64.dll
[2013.02.24 00:11:54 | 002,580,824 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\WavesGUILib.dll
[2013.02.24 00:11:54 | 002,197,264 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioEQ.dll
[2013.02.24 00:11:54 | 002,051,176 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtPgEx64.dll
[2013.02.24 00:11:54 | 001,770,328 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioRealtek.dll
[2013.02.24 00:11:54 | 001,716,368 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEP64A.dll
[2013.02.24 00:11:54 | 001,239,656 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTCOM64.dll
[2013.02.24 00:11:54 | 001,146,984 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTSnMg64.cpl
[2013.02.24 00:11:54 | 000,618,600 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkApi64.dll
[2013.02.24 00:11:54 | 000,518,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSX64.dll
[2013.02.24 00:11:54 | 000,477,800 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RCoRes64.dat
[2013.02.24 00:11:54 | 000,419,472 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EED64A.dll
[2013.02.24 00:11:54 | 000,372,936 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEP64A.dll
[2013.02.24 00:11:54 | 000,341,336 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO30.dll
[2013.02.24 00:11:54 | 000,338,336 | ---- | C] (Fortemedia Corporation) -- C:\Windows\SysNative\FMAPO64.dll
[2013.02.24 00:11:54 | 000,334,680 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxVolumeSDAPO.dll
[2013.02.24 00:11:54 | 000,332,392 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtlCPAPI64.dll
[2013.02.24 00:11:54 | 000,318,808 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO20.dll
[2013.02.24 00:11:54 | 000,307,920 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DHT64.dll
[2013.02.24 00:11:54 | 000,307,920 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DAA64.dll
[2013.02.24 00:11:54 | 000,220,496 | ---- | C] (Virage Logic Corporation / Sonic Focus) -- C:\Windows\SysNative\SFNHK64.dll
[2013.02.24 00:11:54 | 000,211,184 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSH64.dll
[2013.02.24 00:11:54 | 000,201,928 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEED64A.dll
[2013.02.24 00:11:54 | 000,198,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSHP64.dll
[2013.02.24 00:11:54 | 000,155,888 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSWOW64.dll
[2013.02.24 00:11:54 | 000,149,608 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkCfg64.dll
[2013.02.24 00:11:54 | 000,125,584 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEL64A.dll
[2013.02.24 00:11:54 | 000,120,208 | ---- | C] (Sony Corporation) -- C:\Windows\SysNative\SFSS_APO.dll
[2013.02.24 00:11:54 | 000,106,640 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEA64A.dll
[2013.02.24 00:11:54 | 000,099,016 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEL64A.dll
[2013.02.24 00:11:54 | 000,081,232 | ---- | C] (Virage Logic Corporation / Sonic Focus) -- C:\Windows\SysNative\SFCOM64.dll
[2013.02.24 00:11:54 | 000,080,488 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RCoInst64.dll
[2013.02.24 00:11:54 | 000,078,160 | ---- | C] (Virage Logic Corporation / Sonic Focus) -- C:\Windows\SysNative\SFAPO64.dll
[2013.02.24 00:11:54 | 000,076,488 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEG64A.dll
[2013.02.24 00:11:54 | 000,074,064 | ---- | C] (Virage Logic Corporation / Sonic Focus) -- C:\Windows\SysWow64\SFCOM.dll
[2013.02.24 00:11:54 | 000,071,824 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEG64A.dll
[2013.02.24 00:11:53 | 001,325,792 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSS2SpeakerDLL64.dll
[2013.02.24 00:11:53 | 001,251,944 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\RtlExUpd.dll
[2013.02.24 00:11:53 | 001,178,336 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSS2HeadphoneDLL64.dll
[2013.02.24 00:11:53 | 001,110,240 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSBoostDLL64.dll
[2013.02.24 00:11:53 | 000,503,520 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSBassEnhancementDLL64.dll
[2013.02.24 00:11:53 | 000,489,696 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSSymmetryDLL64.dll
[2013.02.24 00:11:53 | 000,474,336 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSVoiceClarityDLL64.dll
[2013.02.24 00:11:53 | 000,315,616 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSNeoPCDLL64.dll
[2013.02.24 00:11:53 | 000,268,512 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSLimiterDLL64.dll
[2013.02.24 00:11:53 | 000,265,440 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGainCompensatorDLL64.dll
[2013.02.24 00:11:53 | 000,200,800 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\SysNative\AERTAC64.dll
[2013.02.24 00:11:53 | 000,124,640 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSLFXAPO64.dll
[2013.02.24 00:11:53 | 000,124,128 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGFXAPO64.dll
[2013.02.24 00:11:53 | 000,123,616 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGFXAPONS64.dll
[2013.02.24 00:11:53 | 000,108,960 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\SysNative\AERTAR64.dll
[2013.02.24 00:11:53 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Temp
[2013.02.24 00:11:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Realtek
[2013.02.24 00:11:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\InstallShield
[2013.02.24 00:10:37 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
[2013.02.24 00:10:25 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\InstallShield Installation Information
[2013.02.24 00:09:07 | 000,053,248 | ---- | C] (Windows XP Bundled build C-Centric Single User) -- C:\Windows\SysWow64\CSVer.dll
[2013.02.24 00:09:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Intel
[2013.02.24 00:09:04 | 000,000,000 | ---D | C] -- C:\Intel
[2013.02.24 00:08:51 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2013.02.24 00:06:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Sony Corporation
[2013.02.24 00:01:54 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2013.02.24 00:01:23 | 000,000,000 | ---D | C] -- C:\Program Files\Sony
[2013.02.23 23:59:33 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\XPSViewer
[2013.02.23 23:59:33 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\winrm
[2013.02.23 23:59:33 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\WCN
[2013.02.23 23:59:33 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\drivers\UMDF
[2013.02.23 23:59:33 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\sysprep
[2013.02.23 23:59:33 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\slmgr
[2013.02.23 23:59:33 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Printing_Admin_Scripts
[2013.02.23 23:59:33 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\drivers\UMDF\de-DE
[2013.02.23 23:59:33 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\drivers\de-DE
[2013.02.23 23:59:33 | 000,000,000 | ---D | C] -- C:\Windows\de-DE
[2013.02.23 23:59:33 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\de
[2013.02.23 23:59:33 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\0407
[2013.02.23 23:59:32 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\winrm
[2013.02.23 23:59:31 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\WCN
[2013.02.23 23:59:31 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\slmgr
[2013.02.23 23:59:31 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Printing_Admin_Scripts
[2013.02.23 23:59:31 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\de-DE
[2013.02.23 23:59:31 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\de
[2013.02.23 23:59:31 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0407
[2013.02.23 23:59:03 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\usbrpm.sys.mui
[2013.02.23 23:59:00 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\fvevol.sys.mui
[2013.02.23 23:58:50 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\de-DE\qwavedrv.sys.mui
[2013.02.23 23:58:48 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\nwifi.sys.mui
[2013.02.23 23:58:48 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\qwavedrv.sys.mui
[2013.02.23 23:58:46 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\volsnap.sys.mui
[2013.02.23 23:58:46 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\usbport.sys.mui
[2013.02.23 23:58:46 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\processr.sys.mui
[2013.02.23 23:58:46 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\intelppm.sys.mui
[2013.02.23 23:58:46 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\amdppm.sys.mui
[2013.02.23 23:58:46 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\amdk8.sys.mui
[2013.02.23 23:58:46 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\usbhub.sys.mui
[2013.02.23 23:58:46 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\serial.sys.mui
[2013.02.23 23:58:46 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ohci1394.sys.mui
[2013.02.23 23:58:46 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\1394ohci.sys.mui
[2013.02.23 23:58:46 | 000,011,776 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\SysNative\drivers\de-DE\BrSerId.sys.mui
[2013.02.23 23:58:46 | 000,011,776 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\SysNative\drivers\de-DE\BrSerIb.sys.mui
[2013.02.23 23:58:46 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\i8042prt.sys.mui
[2013.02.23 23:58:46 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\acpi.sys.mui
[2013.02.23 23:58:46 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\battc.sys.mui
[2013.02.23 23:58:46 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\pci.sys.mui
[2013.02.23 23:58:46 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\IPMIDrv.sys.mui
[2013.02.23 23:58:46 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\sermouse.sys.mui
[2013.02.23 23:58:46 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\kbdclass.sys.mui
[2013.02.23 23:58:46 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\vdrvroot.sys.mui
[2013.02.23 23:58:46 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\mouclass.sys.mui
[2013.02.23 23:58:46 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\wacompen.sys.mui
[2013.02.23 23:58:46 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\vhdmp.sys.mui
[2013.02.23 23:58:46 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\tpm.sys.mui
[2013.02.23 23:58:46 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\isapnp.sys.mui
[2013.02.23 23:58:46 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\hdaudbus.sys.mui
[2013.02.23 23:58:46 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\parport.sys.mui
[2013.02.23 23:58:46 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ataport.sys.mui
[2013.02.23 23:58:46 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\umbus.sys.mui
[2013.02.23 23:58:46 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\mssmbios.sys.mui
[2013.02.23 23:58:46 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\mouhid.sys.mui
[2013.02.23 23:58:46 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\vwifibus.sys.mui
[2013.02.23 23:58:46 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ULIAGPKX.SYS.mui
[2013.02.23 23:58:46 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\UAGP35.SYS.mui
[2013.02.23 23:58:46 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\NV_AGP.SYS.mui
[2013.02.23 23:58:46 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\MTConfig.sys.mui
[2013.02.23 23:58:46 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\kbdhid.sys.mui
[2013.02.23 23:58:46 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\GAGP30KX.SYS.mui
[2013.02.23 23:58:46 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\disk.sys.mui
[2013.02.23 23:58:46 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\AGP440.sys.mui
[2013.02.23 23:58:46 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\wd.sys.mui
[2013.02.23 23:58:46 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\cdrom.sys.mui
[2013.02.23 23:58:46 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\amdide.sys.mui
[2013.02.23 23:58:44 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\tcpip.sys.mui
[2013.02.23 23:58:44 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\mpio.sys.mui
[2013.02.23 23:58:44 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\bthport.sys.mui
[2013.02.23 23:58:44 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\msdsm.sys.mui
[2013.02.23 23:58:44 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\pcmcia.sys.mui
[2013.02.23 23:58:44 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\bthpan.sys.mui
[2013.02.23 23:58:44 | 000,004,096 | ---- | C] (SCM Microsystems, Inc.) -- C:\Windows\SysNative\drivers\de-DE\pscr.sys.mui
[2013.02.23 23:58:44 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\tsusbflt.sys.mui
[2013.02.23 23:58:44 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\portcls.sys.mui
[2013.02.23 23:58:44 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\HdAudio.sys.mui
[2013.02.23 23:58:44 | 000,003,584 | ---- | C] (ATI Technologies Inc.) -- C:\Windows\SysNative\drivers\de-DE\atikmdag.sys.mui
[2013.02.23 23:58:44 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\serscan.sys.mui
[2013.02.23 23:58:44 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\rndismpx.sys.mui
[2013.02.23 23:58:44 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\rndismp6.sys.mui
[2013.02.23 23:58:44 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\hidbth.sys.mui
[2013.02.23 23:58:44 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\pnpmem.sys.mui
[2013.02.23 23:58:44 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\Dot4usb.sys.mui
[2013.02.23 23:58:44 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\BTHUSB.SYS.mui
[2013.02.23 23:58:44 | 000,002,560 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\SysNative\drivers\de-DE\BrParwdm.sys.mui
[2013.02.23 23:58:44 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ws2ifsl.sys.mui
[2013.02.23 23:58:44 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\bthenum.sys.mui
[2013.02.23 23:58:41 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\pacer.sys.mui
[2013.02.23 23:58:41 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\rdpwd.sys.mui
[2013.02.23 23:58:39 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\bfe.dll.mui
[2013.02.23 23:58:39 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\modem.sys.mui
[2013.02.23 23:58:39 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ipnat.sys.mui
[2013.02.23 23:58:38 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\afd.sys.mui
[2013.02.23 23:58:38 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\volmgrx.sys.mui
[2013.02.23 23:58:37 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ntfs.sys.mui
[2013.02.23 23:58:37 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\tunnel.sys.mui
[2013.02.23 23:58:37 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\luafv.sys.mui
[2013.02.23 23:58:37 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\de-DE\ndiscap.sys.mui
[2013.02.23 23:58:37 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\rdbss.sys.mui
[2013.02.23 23:58:37 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\srv.sys.mui
[2013.02.23 23:58:37 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\de-DE\scfilter.sys.mui
[2013.02.23 23:58:35 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ndisuio.sys.mui
[2013.02.23 23:58:35 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\partmgr.sys.mui
[2013.02.23 23:58:35 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\mountmgr.sys.mui
[2013.02.23 23:58:33 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\de-DE\tcpip.sys.mui
[2013.02.23 23:58:33 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ndiscap.sys.mui
[2013.02.23 23:58:33 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\RNDISMP.sys.mui
[2013.02.23 23:58:33 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\scfilter.sys.mui
[2013.02.23 23:58:32 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ndis.sys.mui
[2013.02.23 23:58:32 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\fltmgr.sys.mui
[2013.02.23 23:58:32 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\wdf01000.sys.mui
[2013.02.23 23:58:30 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\http.sys.mui
[2013.02.23 23:58:30 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\de-DE\bfe.dll.mui
[2013.02.23 23:58:30 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\de-DE\pacer.sys.mui
[2013.02.23 23:58:30 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\scsiport.sys.mui
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
 
========== Files - Modified Within 30 Days ==========
 
[2013.03.20 17:08:12 | 000,083,598 | ---- | M] () -- C:\Users\Pc2\Desktop\Quarantäne.PNG
[2013.03.20 17:07:20 | 000,086,303 | ---- | M] () -- C:\Users\Pc2\Desktop\Malware Antimalware.PNG
[2013.03.20 16:46:22 | 000,048,047 | ---- | M] () -- C:\Users\Pc2\Desktop\Desktop.PNG
[2013.03.20 16:34:26 | 000,001,105 | ---- | M] () -- C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
[2013.03.20 16:27:42 | 000,000,000 | ---- | M] () -- C:\Users\Pc2\defogger_reenable
[2013.03.20 16:23:49 | 001,612,672 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013.03.20 16:23:49 | 000,696,576 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
[2013.03.20 16:23:49 | 000,651,894 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013.03.20 16:23:49 | 000,147,614 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
[2013.03.20 16:23:49 | 000,120,568 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013.03.20 16:19:33 | 000,302,712 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013.03.20 16:19:29 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013.03.20 16:19:22 | 3155,054,592 | -HS- | M] () -- C:\hiberfil.sys
[2013.03.20 16:13:06 | 000,002,066 | ---- | M] () -- C:\Users\Pc2\Desktop\AVASoft Professional Antivirus.lnk
[2013.03.17 13:25:23 | 000,000,030 | ---- | M] () -- C:\Users\Pc2\Documents\index1.php
[2013.03.17 13:24:37 | 000,000,030 | ---- | M] () -- C:\Users\Pc2\Documents\index.php
[2013.03.16 15:05:01 | 020,896,692 | ---- | M] () -- C:\Users\Pc2\Documents\welcome-to-the-system-ebook-v1.0.pdf
[2013.03.16 13:35:38 | 000,004,492 | ---- | M] () -- C:\Users\Pc2\Documents\index.html
[2013.03.13 21:28:55 | 000,006,530 | ---- | M] () -- C:\Users\Pc2\Documents\Founder.web
[2013.03.13 20:18:44 | 000,120,200 | ---- | M] () -- C:\Windows\SysWow64\DLLDEV32i.dll
[2013.03.12 20:42:54 | 000,000,218 | ---- | M] () -- C:\Users\Pc2\AppData\Local\recently-used.xbel
[2013.03.08 15:40:59 | 000,000,013 | ---- | M] () -- C:\Windows\SysWow64\WinSys32.crc
[2013.02.26 14:49:06 | 000,020,992 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013.02.26 14:49:06 | 000,020,992 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013.02.26 10:55:43 | 000,691,568 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2013.02.26 10:55:43 | 000,071,024 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2013.02.25 15:10:47 | 001,639,602 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2013.02.24 23:26:51 | 000,000,056 | -H-- | M] () -- C:\ProgramData\ezsidmv.dat
[2013.02.24 01:18:39 | 000,001,143 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2013.02.24 01:14:08 | 000,000,000 | RH-- | M] () -- C:\Windows\SysWow64\drivers\104D_Sony_VPCSB2L1E.mrk
[2013.02.24 01:14:08 | 000,000,000 | RH-- | M] () -- C:\Windows\SysNative\drivers\104D_Sony_VPCSB2L1E.mrk
[2013.02.24 01:11:50 | 000,159,772 | ---- | M] () -- C:\Windows\SysWow64\license.rtf
[2013.02.24 01:11:50 | 000,159,772 | ---- | M] () -- C:\Windows\SysNative\license.rtf
[2013.02.24 01:06:23 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_WDKMD_01009.Wdf
[2013.02.24 01:05:44 | 000,196,608 | ---- | M] () -- C:\Windows\ocsetup_install_OEMHelpCustomization.etl
[2013.02.24 01:03:35 | 066,145,323 | ---- | M] (Axialis Software) -- C:\Windows\SysNative\VAIO S Series - Summer 2011.scr
[2013.02.24 01:02:39 | 000,000,074 | -H-- | M] () -- C:\splash.idx
[2013.02.24 00:20:50 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\deployJava1.dll
[2013.02.24 00:20:50 | 000,153,376 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaws.exe
[2013.02.24 00:20:50 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaw.exe
[2013.02.24 00:20:50 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\java.exe
[2013.02.24 00:20:42 | 000,521,448 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\SysNative\deployJava1.dll
[2013.02.24 00:20:42 | 000,189,216 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\SysNative\javaws.exe
[2013.02.24 00:20:42 | 000,171,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\SysNative\javaw.exe
[2013.02.24 00:20:42 | 000,171,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\SysNative\java.exe
[2013.02.24 00:19:44 | 000,000,000 | ---- | M] () -- C:\Windows\ativpsrm.bin
[2013.02.24 00:16:56 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_Apfiltr_01009.Wdf
[2013.02.24 00:13:10 | 000,000,834 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
[2013.02.23 23:59:24 | 000,295,922 | ---- | M] () -- C:\Windows\SysNative\perfi007.dat
[2013.02.23 23:59:24 | 000,038,104 | ---- | M] () -- C:\Windows\SysNative\perfd007.dat
[2013.02.23 23:59:03 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\usbrpm.sys.mui
[2013.02.23 23:59:00 | 000,017,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\fvevol.sys.mui
[2013.02.23 23:58:55 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\UMDF\de-DE\WpdMtpDr.dll.mui
[2013.02.23 23:58:50 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\de-DE\qwavedrv.sys.mui
[2013.02.23 23:58:48 | 000,017,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\nwifi.sys.mui
[2013.02.23 23:58:48 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\qwavedrv.sys.mui
[2013.02.23 23:58:46 | 000,028,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\volsnap.sys.mui
[2013.02.23 23:58:46 | 000,025,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\usbport.sys.mui
[2013.02.23 23:58:46 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\processr.sys.mui
[2013.02.23 23:58:46 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\intelppm.sys.mui
[2013.02.23 23:58:46 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\amdppm.sys.mui
[2013.02.23 23:58:46 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\amdk8.sys.mui
[2013.02.23 23:58:46 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\usbhub.sys.mui
[2013.02.23 23:58:46 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\serial.sys.mui
[2013.02.23 23:58:46 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ohci1394.sys.mui
[2013.02.23 23:58:46 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\1394ohci.sys.mui
[2013.02.23 23:58:46 | 000,011,776 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\SysNative\drivers\de-DE\BrSerId.sys.mui
[2013.02.23 23:58:46 | 000,011,776 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\SysNative\drivers\de-DE\BrSerIb.sys.mui
[2013.02.23 23:58:46 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\i8042prt.sys.mui
[2013.02.23 23:58:46 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\acpi.sys.mui
[2013.02.23 23:58:46 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\battc.sys.mui
[2013.02.23 23:58:46 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\pci.sys.mui
[2013.02.23 23:58:46 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\IPMIDrv.sys.mui
[2013.02.23 23:58:46 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\sermouse.sys.mui
[2013.02.23 23:58:46 | 000,005,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\kbdclass.sys.mui
[2013.02.23 23:58:46 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\vdrvroot.sys.mui
[2013.02.23 23:58:46 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\mouclass.sys.mui
[2013.02.23 23:58:46 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\wacompen.sys.mui
[2013.02.23 23:58:46 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\vhdmp.sys.mui
[2013.02.23 23:58:46 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\tpm.sys.mui
[2013.02.23 23:58:46 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\isapnp.sys.mui
[2013.02.23 23:58:46 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\hdaudbus.sys.mui
[2013.02.23 23:58:46 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\parport.sys.mui
[2013.02.23 23:58:46 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ataport.sys.mui
[2013.02.23 23:58:46 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\umbus.sys.mui
[2013.02.23 23:58:46 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\mssmbios.sys.mui
[2013.02.23 23:58:46 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\mouhid.sys.mui
[2013.02.23 23:58:46 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\vwifibus.sys.mui
[2013.02.23 23:58:46 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ULIAGPKX.SYS.mui
[2013.02.23 23:58:46 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\UAGP35.SYS.mui
[2013.02.23 23:58:46 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\NV_AGP.SYS.mui
[2013.02.23 23:58:46 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\MTConfig.sys.mui
[2013.02.23 23:58:46 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\kbdhid.sys.mui
[2013.02.23 23:58:46 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\GAGP30KX.SYS.mui
[2013.02.23 23:58:46 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\disk.sys.mui
[2013.02.23 23:58:46 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\AGP440.sys.mui
[2013.02.23 23:58:46 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\wd.sys.mui
[2013.02.23 23:58:46 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\cdrom.sys.mui
[2013.02.23 23:58:46 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\amdide.sys.mui
[2013.02.23 23:58:44 | 000,051,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\tcpip.sys.mui
[2013.02.23 23:58:44 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\mpio.sys.mui
[2013.02.23 23:58:44 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\bthport.sys.mui
[2013.02.23 23:58:44 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\msdsm.sys.mui
[2013.02.23 23:58:44 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\UMDF\de-DE\WUDFUsbccidDriver.dll.mui
[2013.02.23 23:58:44 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\pcmcia.sys.mui
[2013.02.23 23:58:44 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\bthpan.sys.mui
[2013.02.23 23:58:44 | 000,004,096 | ---- | M] (SCM Microsystems, Inc.) -- C:\Windows\SysNative\drivers\de-DE\pscr.sys.mui
[2013.02.23 23:58:44 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\tsusbflt.sys.mui
[2013.02.23 23:58:44 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\portcls.sys.mui
[2013.02.23 23:58:44 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\HdAudio.sys.mui
[2013.02.23 23:58:44 | 000,003,584 | ---- | M] (ATI Technologies Inc.) -- C:\Windows\SysNative\drivers\de-DE\atikmdag.sys.mui
[2013.02.23 23:58:44 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\serscan.sys.mui
[2013.02.23 23:58:44 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\rndismpx.sys.mui
[2013.02.23 23:58:44 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\rndismp6.sys.mui
[2013.02.23 23:58:44 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\hidbth.sys.mui
[2013.02.23 23:58:44 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\pnpmem.sys.mui
[2013.02.23 23:58:44 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\Dot4usb.sys.mui
[2013.02.23 23:58:44 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\BTHUSB.SYS.mui
[2013.02.23 23:58:44 | 000,002,560 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\SysNative\drivers\de-DE\BrParwdm.sys.mui
[2013.02.23 23:58:44 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ws2ifsl.sys.mui
[2013.02.23 23:58:44 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\bthenum.sys.mui
[2013.02.23 23:58:41 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\pacer.sys.mui
[2013.02.23 23:58:41 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\rdpwd.sys.mui
[2013.02.23 23:58:39 | 000,029,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\bfe.dll.mui
[2013.02.23 23:58:39 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\modem.sys.mui
[2013.02.23 23:58:39 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ipnat.sys.mui
[2013.02.23 23:58:38 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\afd.sys.mui
[2013.02.23 23:58:38 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\volmgrx.sys.mui
[2013.02.23 23:58:37 | 000,072,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ntfs.sys.mui
[2013.02.23 23:58:37 | 000,009,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\tunnel.sys.mui
[2013.02.23 23:58:37 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\luafv.sys.mui
[2013.02.23 23:58:37 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\de-DE\ndiscap.sys.mui
[2013.02.23 23:58:37 | 000,005,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\rdbss.sys.mui
[2013.02.23 23:58:37 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\srv.sys.mui
[2013.02.23 23:58:37 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\de-DE\scfilter.sys.mui
[2013.02.23 23:58:35 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ndisuio.sys.mui
[2013.02.23 23:58:35 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\partmgr.sys.mui
[2013.02.23 23:58:35 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\mountmgr.sys.mui
[2013.02.23 23:58:33 | 000,051,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\de-DE\tcpip.sys.mui
[2013.02.23 23:58:33 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ndiscap.sys.mui
[2013.02.23 23:58:33 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\RNDISMP.sys.mui
[2013.02.23 23:58:33 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\scfilter.sys.mui
[2013.02.23 23:58:32 | 000,041,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ndis.sys.mui
[2013.02.23 23:58:32 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\fltmgr.sys.mui
[2013.02.23 23:58:32 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\wdf01000.sys.mui
[2013.02.23 23:58:30 | 000,044,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\http.sys.mui
[2013.02.23 23:58:30 | 000,029,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\de-DE\bfe.dll.mui
[2013.02.23 23:58:30 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\de-DE\pacer.sys.mui
[2013.02.23 23:58:30 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\scsiport.sys.mui
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
 
========== Files Created - No Company Name ==========
 
[2013.03.20 17:08:12 | 000,083,598 | ---- | C] () -- C:\Users\Pc2\Desktop\Quarantäne.PNG
[2013.03.20 17:07:19 | 000,086,303 | ---- | C] () -- C:\Users\Pc2\Desktop\Malware Antimalware.PNG
[2013.03.20 16:46:22 | 000,048,047 | ---- | C] () -- C:\Users\Pc2\Desktop\Desktop.PNG
[2013.03.20 16:34:26 | 000,001,105 | ---- | C] () -- C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
[2013.03.20 16:27:42 | 000,000,000 | ---- | C] () -- C:\Users\Pc2\defogger_reenable
[2013.03.20 16:13:06 | 000,002,066 | ---- | C] () -- C:\Users\Pc2\Desktop\AVASoft Professional Antivirus.lnk
[2013.03.17 13:25:23 | 000,000,030 | ---- | C] () -- C:\Users\Pc2\Documents\index1.php
[2013.03.17 13:24:37 | 000,000,030 | ---- | C] () -- C:\Users\Pc2\Documents\index.php
[2013.03.16 15:04:28 | 020,896,692 | ---- | C] () -- C:\Users\Pc2\Documents\welcome-to-the-system-ebook-v1.0.pdf
[2013.03.16 13:34:33 | 000,004,492 | ---- | C] () -- C:\Users\Pc2\Documents\index.html
[2013.03.13 21:28:54 | 000,006,530 | ---- | C] () -- C:\Users\Pc2\Documents\Founder.web
[2013.03.12 20:42:54 | 000,000,218 | ---- | C] () -- C:\Users\Pc2\AppData\Local\recently-used.xbel
[2013.03.08 15:22:02 | 000,000,013 | ---- | C] () -- C:\Windows\SysWow64\WinSys32.crc
[2013.03.08 13:14:46 | 000,002,094 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk
[2013.02.24 23:26:51 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2013.02.24 10:36:01 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
[2013.02.24 01:18:39 | 000,001,155 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2013.02.24 01:18:39 | 000,001,143 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2013.02.24 01:14:34 | 000,001,401 | ---- | C] () -- C:\Users\Pc2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
[2013.02.24 01:14:30 | 000,001,435 | ---- | C] () -- C:\Users\Pc2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2013.02.24 01:14:08 | 000,000,000 | RH-- | C] () -- C:\Windows\SysWow64\drivers\104D_Sony_VPCSB2L1E.mrk
[2013.02.24 01:14:08 | 000,000,000 | RH-- | C] () -- C:\Windows\SysNative\drivers\104D_Sony_VPCSB2L1E.mrk
[2013.02.24 01:14:02 | 000,001,957 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music Unlimited powered by Qriocity.lnk
[2013.02.24 01:07:36 | 3155,054,592 | -HS- | C] () -- C:\hiberfil.sys
[2013.02.24 01:07:17 | 000,002,017 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Care.lnk
[2013.02.24 01:06:53 | 000,002,193 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Smart Network.lnk
[2013.02.24 01:06:23 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_WDKMD_01009.Wdf
[2013.02.24 01:06:18 | 000,002,112 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel(R) Wireless Display.lnk
[2013.02.24 01:05:31 | 000,196,608 | ---- | C] () -- C:\Windows\ocsetup_install_OEMHelpCustomization.etl
[2013.02.24 01:05:17 | 000,001,271 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Transfer.lnk
[2013.02.24 01:04:30 | 000,002,068 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Gate.lnk
[2013.02.24 01:04:01 | 000,001,848 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Easy Connect.lnk
[2013.02.24 01:03:55 | 000,002,265 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Data Restore Tool.lnk
[2013.02.24 01:03:08 | 000,001,185 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remote Keyboard.lnk
[2013.02.24 00:56:51 | 000,001,139 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PMB.lnk
[2013.02.24 00:55:25 | 000,002,435 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2010.lnk
[2013.02.24 00:52:04 | 000,001,299 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Gallery.lnk
[2013.02.24 00:47:22 | 000,002,267 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Premiere Elements 9.lnk
[2013.02.24 00:44:35 | 000,001,515 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe ExtendScript Toolkit CS5.lnk
[2013.02.24 00:44:30 | 000,000,997 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Help.lnk
[2013.02.24 00:43:03 | 000,001,892 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop Elements 9.lnk
[2013.02.24 00:35:11 | 000,002,507 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat 9 Standard.lnk
[2013.02.24 00:35:11 | 000,002,465 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Distiller 9.lnk
[2013.02.24 00:31:15 | 000,001,305 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Movie Maker.lnk
[2013.02.24 00:31:08 | 000,001,374 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Photo Gallery.lnk
[2013.02.24 00:29:54 | 000,001,458 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk
[2013.02.24 00:28:01 | 000,002,486 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk
[2013.02.24 00:24:12 | 000,001,151 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Update.lnk
[2013.02.24 00:23:50 | 000,001,991 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Manual.lnk
[2013.02.24 00:23:24 | 000,001,527 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Control Center.lnk
[2013.02.24 00:19:44 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2013.02.24 00:16:56 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_Apfiltr_01009.Wdf
[2013.02.24 00:16:34 | 000,008,192 | ---- | C] () -- C:\Windows\SysNative\drivers\IntelMEFWVer.dll
[2013.02.24 00:15:48 | 000,003,143 | ---- | C] () -- C:\Windows\SysWow64\atipblup.dat
[2013.02.24 00:15:48 | 000,003,143 | ---- | C] () -- C:\Windows\SysNative\atipblup.dat
[2013.02.24 00:14:06 | 000,074,272 | ---- | C] () -- C:\Windows\SysNative\RtNicProp64.dll
[2013.02.24 00:12:37 | 000,000,834 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
[2013.02.24 00:11:56 | 000,002,204 | ---- | C] () -- C:\Windows\SysNative\drivers\RtPCEE3.DAT
[2013.02.24 00:04:37 | 000,001,345 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
[2013.02.24 00:04:33 | 000,001,326 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
[2013.02.24 00:00:00 | 000,295,922 | ---- | C] () -- C:\Windows\SysNative\perfi007.dat
[2013.02.23 23:59:58 | 000,696,576 | ---- | C] () -- C:\Windows\SysNative\perfh007.dat
[2013.02.23 23:59:58 | 000,147,614 | ---- | C] () -- C:\Windows\SysNative\perfc007.dat
[2013.02.23 23:59:58 | 000,038,104 | ---- | C] () -- C:\Windows\SysNative\perfd007.dat
[2011.04.06 10:19:55 | 000,003,143 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2011.04.06 10:19:53 | 000,960,940 | ---- | C] () -- C:\Windows\SysWow64\igkrng600.bin
[2011.04.06 10:19:53 | 000,213,332 | ---- | C] () -- C:\Windows\SysWow64\igfcg600m.bin
[2011.04.06 10:19:52 | 000,145,804 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng600.bin
 
========== ZeroAccess Check ==========
 
[2009.07.14 05:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2010.11.21 04:23:55 | 014,174,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2010.11.21 04:24:02 | 012,872,192 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 02:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.21 04:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 02:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
 
========== LOP Check ==========
 
[2013.03.08 17:05:01 | 000,000,000 | ---D | M] -- C:\Users\Pc2\AppData\Roaming\CoffeeCup Software
[2013.03.19 12:03:04 | 000,000,000 | ---D | M] -- C:\Users\Pc2\AppData\Roaming\FileZilla
[2013.03.07 21:47:25 | 000,000,000 | ---D | M] -- C:\Users\Pc2\AppData\Roaming\hdbADS
[2013.03.12 20:43:23 | 000,000,000 | ---D | M] -- C:\Users\Pc2\AppData\Roaming\inkscape
[2013.03.13 20:19:08 | 000,000,000 | ---D | M] -- C:\Users\Pc2\AppData\Roaming\MAGIX
[2013.03.10 12:31:45 | 000,000,000 | ---D | M] -- C:\Users\Pc2\AppData\Roaming\Nvu
[2013.03.12 20:59:11 | 000,000,000 | ---D | M] -- C:\Users\Pc2\AppData\Roaming\Scribus
[2013.03.19 23:06:59 | 000,000,000 | ---D | M] -- C:\Users\Pc2\AppData\Roaming\SoftGrid Client
[2013.03.08 13:14:49 | 000,000,000 | ---D | M] -- C:\Users\Pc2\AppData\Roaming\Thunderbird
[2013.02.25 15:11:37 | 000,000,000 | ---D | M] -- C:\Users\Pc2\AppData\Roaming\TP
[2013.03.12 20:27:25 | 000,000,000 | ---D | M] -- C:\Users\Pc2\AppData\Roaming\XnView
 
========== Purity Check ==========
 
 

< End of report >
         
--- --- ---
Angehängte Grafiken
Dateityp: png Desktop.PNG (46,9 KB, 138x aufgerufen)
Dateityp: png Malware Antimalware.PNG (84,3 KB, 142x aufgerufen)
Dateityp: jpg desktop.ini.jpg (54,3 KB, 125x aufgerufen)
Angehängte Dateien
Dateityp: txt Extras.Txt (89,7 KB, 160x aufgerufen)

Geändert von avasoftvirus (20.03.2013 um 16:58 Uhr)

Alt 20.03.2013, 19:16   #2
ryder
/// TB-Ausbilder
 
Avasoft Virus wie entfernen ? - Standard

Avasoft Virus wie entfernen ?





Ich werde dir bei deinem Problem helfen. Eine Bereinigung ist mitunter mit viel Arbeit für Dich (und mich) verbunden. Bevor es los geht, habe ich etwas Lesestoff für dich.

Bitte Lesen:
Regeln für die Bereinigung
Damit die Bereinigung funktioniert bitte ich dich, die folgenden Punkte aufmerksam zu lesen:
  • Bitte arbeite alle Schritte der Reihe nach ab. Gib mir bitte zu jedem Schritt Rückmeldung (Logfile oder Antwort) und zwar gesammelt, wenn du alles erledigt hast, in einer Antwort.
  • Nur Scanns durchführen zu denen Du aufgefordert wirst.
  • Bitte kein Crossposting (posten in mehreren Foren).
  • Installiere oder Deinstalliere während der Bereinigung keine Software, ausser Du wurdest dazu aufgefordert.
  • Lese Dir die Anleitung zuerst vollständig durch. Sollte etwas unklar sein, frage bevor Du beginnst.
  • Poste die Logfiles direkt in deinen Thread (möglichst in Code-Tags - #-Symbol im Editor anklicken). Nicht anhängen oder zippen, außer ich fordere Dich dazu auf, oder das Logfile wäre zu gross. Erschwert mir nämlich das Auswerten.
  • Mache deinen Namen nur dann unkenntlich, wenn es unbedingt sein muss.
  • Beim ersten Anzeichen illegal genutzer Software (Cracks, Patches und Co) wird der Support ohne Diskussion eingestellt.
  • Sollte ich nicht nach 3 Tagen geantwortet haben, dann (und nur dann) schicke mir bitte eine PM.
  • Ich werde dir ganz deutlich mitteilen, dass du "sauber" bist. Bis dahin arbeite bitte gut mit.
  • Hinweis: Ich kann Dir niemals eine Garantie geben, dass ich auch alles finde. Eine Formatierung ist meist der schnellere und immer der sicherste Weg.


Gelesen und verstanden?
Scan mit Combofix
WARNUNG an die MITLESER:
Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!

Downloade dir bitte Combofix vom folgenden Downloadspiegel: Link
  • WICHTIG: Speichere Combofix auf deinem Desktop.
  • Deaktiviere bitte alle deine Antivirensoftware sowie Malware/Spyware Scanner. Diese können Combofix bei der Arbeit stören. Combofix meckert auch manchmal trotzdem noch, das kannst du dann ignorieren, mir aber bitte mitteilen.
  • Starte die Combofix.exe und folge den Anweisungen auf dem Bildschirm.
  • Während Combofix läuft bitte nicht am Computer arbeiten, die Maus bewegen oder ins Combofixfenster klicken!
  • Wenn Combofix fertig ist, wird es ein Logfile erstellen.
  • Bitte poste die C:\Combofix.txt in deiner nächsten Antwort (möglichst in CODE-Tags).
Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten
Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
starte den Rechner einfach neu. Dies sollte das Problem beheben.

__________________

__________________

Alt 20.03.2013, 19:24   #3
avasoftvirus
 
Avasoft Virus wie entfernen ? - Standard

Avasoft Virus wie entfernen ?



Danke in jedem Fall für die Mühe.
Ich formatiere gerade die Festplatte,
ist wie Du sagtest der sicherste Weg.

Danke nochmal.
__________________

Alt 20.03.2013, 20:01   #4
ryder
/// TB-Ausbilder
 
Avasoft Virus wie entfernen ? - Standard

Avasoft Virus wie entfernen ?



Schön, dass wir helfen konnten

Dieses Thema scheint erledigt und wird aus meinen Abos gelöscht. Solltest Du das Thema erneut brauchen schicke mir bitte eine PM.

Jeder andere bitte hier klicken und einen eigenen Thread erstellen

Falls du noch Lob oder Kritik loswerden möchtest, dann gibt es diesen Bereich hier: http://www.trojaner-board.de/lob-kritik-wuensche/
__________________
Digitale Freibeuter gegen Malware!
Keine Hilfe per PM!

Antwort

Themen zu Avasoft Virus wie entfernen ?
abgesicherte, abgesicherten, angezeigt, anhang, antimalware, befindet, bingbar, desktop, fehler, fenster, focus, igdpmd64.sys, index, konnte, laufe, laufen, malware, nicht schließen, otl.txt, plötzlich, schließe, schließen, software, speicher, speichert, starte, verkaufen, verknüpfung, virus, wie entfernen



Ähnliche Themen: Avasoft Virus wie entfernen ?


  1. Babylon toolbar entfernen, BrowserCompanion entfernen, DealPly entfernen, GinyasBrowserCompanions entfernen
    Log-Analyse und Auswertung - 17.12.2014 (9)
  2. VIRUS Entfernen
    Log-Analyse und Auswertung - 20.09.2013 (9)
  3. GVU Virus entfernen
    Plagegeister aller Art und deren Bekämpfung - 11.06.2013 (11)
  4. AVASoft Professional Antivirus
    Log-Analyse und Auswertung - 11.06.2013 (15)
  5. AVASoft Virus - wie entfernen ?
    Plagegeister aller Art und deren Bekämpfung - 18.05.2013 (2)
  6. Rechner sauber nach AVASoft Professional Antivirus (=Trojaner)?
    Log-Analyse und Auswertung - 22.04.2013 (25)
  7. AVASoft Virenscanner Problem....
    Plagegeister aller Art und deren Bekämpfung - 07.04.2013 (17)
  8. Windows XP Pc mit AVASoft Virus befallen
    Plagegeister aller Art und deren Bekämpfung - 04.04.2013 (7)
  9. Avasoft Professional Antivirus-Malware entfernen?
    Plagegeister aller Art und deren Bekämpfung - 03.04.2013 (2)
  10. AVASoft virus auf Notebook
    Plagegeister aller Art und deren Bekämpfung - 01.04.2013 (7)
  11. AVASoft Professional Antivirus entfernen
    Anleitungen, FAQs & Links - 19.03.2013 (2)
  12. S.M.A.R.T HDD Virus entfernen
    Log-Analyse und Auswertung - 11.07.2012 (5)
  13. GVU-Virus entfernen
    Plagegeister aller Art und deren Bekämpfung - 10.07.2012 (1)
  14. GUV-Virus entfernen
    Log-Analyse und Auswertung - 09.07.2012 (3)
  15. Virus entfernen?
    Plagegeister aller Art und deren Bekämpfung - 28.06.2012 (1)
  16. S.M.A.R.T. HDD Virus entfernen
    Log-Analyse und Auswertung - 30.04.2012 (1)
  17. S.M.A.R.T. HDD Virus entfernen
    Log-Analyse und Auswertung - 12.04.2012 (11)

Zum Thema Avasoft Virus wie entfernen ? - Ich hatte plötzlich ein Fenster von Avasoft laufen wo dann zig Fehler angezeigt wurden. Ich konnte diese Fenster nicht schließen und musst im Abgesicherten starten. Jetzt ist auf dem Desktop - Avasoft Virus wie entfernen ?...
Archiv
Du betrachtest: Avasoft Virus wie entfernen ? auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.