Windows Vista: BKA Virus sperrt Bildschirm Hallo,
habe seit ein paar Tagen den BKA Virus.
Nach dem Hochfahren des Rechners sperrt er direkt meinen Bildschirm und ich kann nichts mehr machen...
Habe mir OTL-CD gebootet und den Scan ausgeführt.
Hoffe es kann jemand helfen.
OTL.txt: Code:
OTL logfile created on: 3/31/2014 2:26:31 PM - Run
OTLPE by OldTimer - Version 3.1.48.0 Folder = X:\Programs\OTLPE
Windows Vista (TM) Home Premium Service Pack 1 (Version = 6.0.6001) - Type = System
Internet Explorer (Version = 8.0.6001.19088)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 79.00% Memory free
2.00 Gb Paging File | 1.00 Gb Available in Paging File | 94.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 97.74 Gb Total Space | 1.24 Gb Free Space | 1.27% Space Free | Partition Type: NTFS
Drive I: | 191.56 Gb Total Space | 179.08 Gb Free Space | 93.49% Space Free | Partition Type: NTFS
Drive J: | 963.70 Mb Total Space | 712.72 Mb Free Space | 73.96% Space Free | Partition Type: FAT
Drive X: | 284.12 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
Computer Name: REATOGO | User Name: SYSTEM
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days
Using ControlSet: ControlSet001
========== Win32 Services (SafeList) ==========
SRV - [2014/03/24 06:53:10 | 000,348,448 | ---- | M] () [Auto] -- C:\Program Files\Mega Browse\updateMegaBrowse.exe -- (Update Mega Browse)
SRV - [2014/03/24 06:51:17 | 000,151,552 | ---- | M] () [Auto] -- C:\ProgramData\a4lwg7jr.gsa -- (Winmgmt)
SRV - [2014/03/24 06:22:43 | 000,348,448 | ---- | M] () [Auto] -- C:\Program Files\Mega Browse\bin\utilMegaBrowse.exe -- (Util Mega Browse)
SRV - [2014/03/18 12:00:57 | 001,005,056 | ---- | M] () [Auto] -- C:\Users\Lukas\AppData\Roaming\BupSystem\bup.exe -- (bupService)
SRV - [2014/03/17 10:35:04 | 000,807,800 | ---- | M] (Spigot, Inc.) [Auto] -- C:\Program Files\Application Updater\ApplicationUpdater.exe -- (Application Updater)
SRV - [2014/03/16 12:38:54 | 000,257,416 | ---- | M] (Adobe Systems Incorporated) [On_Demand] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014/03/16 12:34:25 | 000,496,640 | ---- | M] (Cherished Technololgy LIMITED) [Auto] -- C:\ProgramData\WPM\wprotectmanager.exe -- (Wpm)
SRV - [2014/03/16 12:31:31 | 000,195,072 | ---- | M] () [Auto] -- C:\Program Files\Re-markit-soft\Re-markit157.exe -- (Re-markit)
SRV - [2014/03/10 10:39:48 | 000,011,776 | ---- | M] () [Auto] -- C:\Program Files\NewPlayer\NewPlayerUpdaterService.exe -- (NewPlayerUpdaterService)
SRV - [2014/03/03 09:32:36 | 002,454,816 | ---- | M] (Conduit) [Auto] -- C:\Program Files\SearchProtect\Main\bin\CltMngSvc.exe -- (CltMngSvc)
SRV - [2014/02/26 10:31:52 | 000,209,408 | ---- | M] () [Auto] -- C:\Program Files\V-bates\ExtensionUpdaterService.exe -- (V-bates Updater)
SRV - [2014/02/26 02:44:20 | 000,508,016 | ---- | M] (Cherished Technololgy LIMITED) [Auto] -- C:\ProgramData\IePluginService\PluginService.exe -- (IePluginService)
SRV - [2014/02/18 09:47:06 | 000,036,392 | ---- | M] (Just Develop It) [Auto] -- C:\Program Files\MyPC Backup\BackupStack.exe -- (BackupStack) Computer Backup (MyPC Backup)
SRV - [2014/02/18 06:40:11 | 000,440,400 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2014/02/18 06:39:59 | 001,017,424 | ---- | M] (Avira Operations GmbH & Co. KG) [Disabled] -- C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE -- (AntiVirWebService)
SRV - [2014/02/18 06:39:54 | 000,440,400 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2014/02/17 06:24:32 | 002,919,232 | R--- | M] (Iminent) [Auto] -- C:\Program Files\Common Files\Umbrella\Umbrella.exe -- (SProtection)
SRV - [2014/02/17 06:24:32 | 000,425,792 | R--- | M] () [Auto] -- C:\Program Files\Iminent\WinkHandler.exe -- (WinkHandler)
SRV - [2014/02/10 19:33:12 | 000,055,440 | ---- | M] (GenTechnologies Apps, LLC) [Auto] -- C:\ProgramData\MovieMode\MovieModeService.exe -- (MovieMode)
SRV - [2014/01/27 16:45:12 | 000,546,112 | ---- | M] () [Auto] -- C:\Program Files\Level Quality Watcher\v1.01\levelqualitywatcher32.exe -- (Level Quality Watcher)
SRV - [2014/01/25 22:57:28 | 000,084,328 | ---- | M] (SafeApp Software, LLC) [Auto] -- C:\Program Files\Registry Helper\RegistryHelperService.exe -- (Registry Helper Service)
SRV - [2014/01/15 20:39:44 | 000,235,696 | ---- | M] (McAfee, Inc.) [On_Demand] -- C:\Program Files\McAfee Security Scan\3.8.141\McCHSvc.exe -- (McComponentHostService)
SRV - [2013/08/30 04:51:16 | 001,740,600 | ---- | M] (TuneUp Software) [Auto] -- C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe -- (TuneUp.UtilitiesSvc)
SRV - [2013/08/14 09:19:22 | 000,039,056 | ---- | M] () [Auto] -- C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe -- (RealNetworks Downloader Resolver Service)
SRV - [2012/07/27 16:51:26 | 000,063,960 | ---- | M] (Adobe Systems Incorporated) [Auto] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2012/01/23 13:19:32 | 001,858,048 | ---- | M] (MAGIX AG) [Auto] -- C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe -- (Fabs)
SRV - [2011/12/11 18:00:00 | 000,122,000 | ---- | M] (Seiko Epson Corporation) [Auto] -- C:\Windows\System32\escsvc.exe -- (EpsonScanSvc)
SRV - [2011/04/26 08:54:12 | 002,702,848 | ---- | M] (MAGIX®) [On_Demand] -- C:\Program Files\Common Files\MAGIX Services\Database\bin\fbserver.exe -- (FirebirdServerMAGIXInstance)
SRV - [2010/09/06 03:16:58 | 000,095,568 | ---- | M] (Devguru Co., Ltd.) [Auto] -- C:\Windows\System32\dgdersvc.exe -- (dgdersvc)
SRV - [2010/09/06 03:11:32 | 000,217,088 | ---- | M] (Teruten) [Auto] -- C:\Windows\System32\FsUsbExService.Exe -- (FsUsbExService)
SRV - [2009/05/14 11:07:14 | 000,759,048 | ---- | M] (ABBYY) [Auto] -- C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe -- (ABBYY.Licensing.FineReader.Sprint.9.0)
SRV - [2009/05/04 07:16:49 | 000,009,728 | ---- | M] (Deutsche Telekom AG) [Auto] -- C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe -- (Netzmanager Service)
SRV - [2009/02/25 08:28:39 | 000,408,696 | ---- | M] (Norman ASA) [Auto] -- C:\Program Files\Norman\Npm\Bin\Zanda.exe -- (Norman ZANDA)
SRV - [2009/01/20 03:24:01 | 000,126,008 | ---- | M] (Norman ASA) [Auto] -- C:\Program Files\Norman\npm\bin\nvoy.exe -- (NVOY)
SRV - [2008/05/13 05:49:00 | 000,203,896 | ---- | M] (Norman ASA) [On_Demand] -- C:\Program Files\Norman\Npm\bin\NJEEVES.EXE -- (Norman NJeeves)
SRV - [2008/04/25 09:23:36 | 000,303,104 | ---- | M] (Fujitsu Siemens Computers) [Auto] -- C:\Program Files\Fujitsu Siemens Computers\SystemDiagnostics\OnlineDiagnostic\TestManager\TestHandler.exe -- (TestHandler)
SRV - [2008/01/20 22:23:32 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2007/11/21 06:17:02 | 000,017,408 | ---- | M] () [Auto] -- C:\Program Files\Hercules\Audio\DJ Console Series\HerculesDJControlMP3.EXE -- (HerculesDJControlMP3)
SRV - [2007/11/21 04:59:54 | 000,150,584 | ---- | M] (Norman ASA) [Auto] -- C:\Program Files\Norman\Npm\Bin\Elogsvc.exe -- (eLoggerSvc6)
SRV - [2007/09/18 06:41:18 | 000,154,680 | ---- | M] (Norman ASA) [On_Demand] -- C:\Program Files\Norman\Npm\bin\NVCSCHED.EXE -- (NVCScheduler)
SRV - [2007/06/05 08:20:32 | 000,177,704 | ---- | M] () [Auto] -- C:\Windows\System32\PSIService.exe -- (ProtexisLicensing)
SRV - [2006/12/19 12:23:20 | 000,094,208 | ---- | M] (SEIKO EPSON CORPORATION) [Auto] -- C:\Program Files\Common Files\EPSON\EBAPI\eEBSvc.exe -- (EpsonBidirectionalService)
SRV - [2006/07/24 06:02:12 | 000,086,016 | ---- | M] (Olivetti) [Auto] -- C:\Program Files\Olivetti\ANY_WAY\olMntrService.exe -- (olMntrService)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand] -- -- (RTL8187B)
DRV - File not found [Kernel | On_Demand] -- -- (PDNSp50)
DRV - File not found [Kernel | On_Demand] -- -- (PDNMp50)
DRV - File not found [Kernel | On_Demand] -- -- (pccsmcfd)
DRV - File not found [Kernel | On_Demand] -- -- (NwlnkFwd)
DRV - File not found [Kernel | On_Demand] -- -- (NwlnkFlt)
DRV - File not found [Kernel | System] -- -- (netfilter)
DRV - File not found [Kernel | On_Demand] -- -- (IpInIp)
DRV - [2014/03/24 06:53:08 | 000,055,232 | ---- | M] (StdLib) [Kernel | System] -- C:\Windows\System32\drivers\tStLib.sys -- (tStLib)
DRV - [2013/12/17 08:14:07 | 000,135,648 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System] -- C:\Windows\System32\drivers\avipbb.sys -- (avipbb)
DRV - [2013/12/17 08:14:07 | 000,090,400 | ---- | M] (Avira Operations GmbH & Co. KG) [File_System | Auto] -- C:\Windows\System32\drivers\avgntflt.sys -- (avgntflt)
DRV - [2013/10/01 09:35:36 | 000,037,352 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System] -- C:\Windows\System32\drivers\avkmgr.sys -- (avkmgr)
DRV - [2013/08/21 14:53:42 | 000,012,320 | ---- | M] (TuneUp Software) [Kernel | On_Demand] -- C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesDriver32.sys -- (TuneUpUtilitiesDrv)
DRV - [2013/07/29 15:13:31 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System] -- C:\Windows\System32\drivers\ssmdrv.sys -- (ssmdrv)
DRV - [2010/09/06 03:16:58 | 000,018,120 | ---- | M] (Devguru Co., Ltd) [Kernel | On_Demand] -- C:\Windows\System32\drivers\dgderdrv.sys -- (dgderdrv)
DRV - [2010/09/06 03:11:32 | 000,036,640 | ---- | M] () [Kernel | On_Demand] -- C:\Windows\System32\FsUsbExDisk.Sys -- (FsUsbExDisk)
DRV - [2009/10/02 04:32:10 | 000,124,416 | ---- | M] (© Guillemot R&D, 2009. All rights reserved.) [Kernel | On_Demand] -- C:\Windows\System32\drivers\HDJMidi.sys -- (HDJMidi)
DRV - [2009/10/02 04:32:06 | 000,127,488 | ---- | M] (© Guillemot R&D, 2009. All rights reserved.) [Kernel | On_Demand] -- C:\Windows\System32\drivers\HDJBulk.sys -- (Bulk)
DRV - [2008/11/03 15:51:10 | 000,022,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\Windows\System32\drivers\usbsermpt.sys -- (usbsermpt)
DRV - [2008/07/18 03:09:52 | 000,148,192 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand] -- C:\Windows\System32\drivers\RtHDMIV.sys -- (RTHDMIAzAudService)
DRV - [2008/06/24 16:53:32 | 003,844,608 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand] -- C:\Windows\System32\drivers\atikmdag.sys -- (atikmdag)
DRV - [2008/05/29 09:44:52 | 000,014,352 | ---- | M] (ATI Technologies Inc.) [Kernel | Boot] -- C:\Windows\System32\drivers\AtiPcie.sys -- (AtiPcie) ATI PCI Express (3GIO)
DRV - [2008/05/27 07:55:54 | 000,173,576 | ---- | M] (AMD Technologies Inc.) [Kernel | Disabled] -- C:\Windows\system32\drivers\ahcix86s.sys -- (ahcix86s)
DRV - [2008/05/02 07:59:40 | 000,122,368 | ---- | M] (Realtek Corporation ) [Kernel | On_Demand] -- C:\Windows\System32\drivers\Rtlh86.sys -- (RTL8169)
DRV - [2008/04/03 08:58:46 | 000,076,688 | ---- | M] (JMicron Technology Corp.) [Kernel | Disabled] -- C:\Windows\system32\drivers\jraid.sys -- (JRAID)
DRV - [2007/10/11 21:40:14 | 000,010,632 | ---- | M] (Advanced Micro Devices) [Kernel | Boot] -- C:\Windows\System32\drivers\amdide.sys -- (amdide)
DRV - [2006/06/29 19:42:59 | 001,965,872 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\Windows\System32\drivers\VX1000.sys -- (VX1000)
========== Standard Registry (All) ==========
========== Internet Explorer ==========
IE - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.awesomehp.com/?type=hp&ts=1394987567&from=tugs&uid=WDCXWD3200AAJS-07B4A0_WD-WMAT1159928999289
IE - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1394987567&from=tugs&uid=WDCXWD3200AAJS-07B4A0_WD-WMAT1159928999289&q={searchTerms}
IE - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htm
IE - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.awesomehp.com/web/?type=ds&ts=1394987567&from=tugs&uid=WDCXWD3200AAJS-07B4A0_WD-WMAT1159928999289&q={searchTerms}
IE - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.awesomehp.com/?type=hp&ts=1394987567&from=tugs&uid=WDCXWD3200AAJS-07B4A0_WD-WMAT1159928999289
IE - HKLM\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKLM\..\URLSearchHook: {66b103a7-d772-4fcd-ace4-16f79a9056e0} - C:\Program Files\appbarioDE_1\prxtbappb.dll (Conduit Ltd.)
IE - HKLM\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - Reg Error: Key error. File not found
IE - HKLM\..\URLSearchHook: {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVD0.dll (Conduit Ltd.)
IE - HKLM\..\URLSearchHook: {ba14329e-9550-4989-b3f2-9732e92d17cc} - File not found
IE - HKLM\..\URLSearchHook: {cc05a3e3-64c3-4af2-bfc1-af0d66b69065} - C:\Program Files\softonic-de3\prxtbsof0.dll (Conduit Ltd.)
IE - HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
IE - HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com/ig/redirectdomain?brand=FUJD&bmod=FUJD
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\Laura_ON_C\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.awesomehp.com/?type=hp&ts=1394987567&from=tugs&uid=WDCXWD3200AAJS-07B4A0_WD-WMAT1159928999289
IE - HKU\Laura_ON_C\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\system32\blank.htm
IE - HKU\Laura_ON_C\Software\Microsoft\Internet Explorer\Main,Page_Transitions = 1
IE - HKU\Laura_ON_C\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896
IE - HKU\Laura_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://start.iminent.com/?appId=FD270491-55E2-4573-9DA1-BD69265FE522
IE - HKU\Laura_ON_C\Software\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\Laura_ON_C\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKU\Laura_ON_C\..\URLSearchHook: {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVD0.dll (Conduit Ltd.)
IE - HKU\Laura_ON_C\..\URLSearchHook: {B9C767DD-F66A-40B4-8F12-4199A9A4393C} - C:\Program Files\SearchMe Toolbar\IE\8.9\searchmeToolbarIE.dll (Spigot, Inc.)
IE - HKU\Laura_ON_C\..\URLSearchHook: {ba14329e-9550-4989-b3f2-9732e92d17cc} - File not found
IE - HKU\Laura_ON_C\..\URLSearchHook: {cc05a3e3-64c3-4af2-bfc1-af0d66b69065} - C:\Program Files\softonic-de3\prxtbsof0.dll (Conduit Ltd.)
IE - HKU\Laura_ON_C\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\System32\ieframe.dll (Microsoft Corporation)
IE - HKU\Laura_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\Laura_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:13828
IE - HKU\LocalService_ON_C\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\System32\ieframe.dll (Microsoft Corporation)
IE - HKU\Lukas_ON_C\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\system32\blank.htm
IE - HKU\Lukas_ON_C\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896
IE - HKU\Lukas_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.conduit.com?SearchSource=10&CUI=UN74140414544174294&UM=2&ctid=CT3312329&UP=SP54CA924A-95F7-4B4A-B788-69FA3792F4F8&SSPV=
IE - HKU\Lukas_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
IE - HKU\Lukas_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
IE - HKU\Lukas_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 21 27 E0 4A 82 F3 CE 01 [binary data]
IE - HKU\Lukas_ON_C\..\URLSearchHook: {66b103a7-d772-4fcd-ace4-16f79a9056e0} - C:\Program Files\appbarioDE_1\prxtbappb.dll (Conduit Ltd.)
IE - HKU\Lukas_ON_C\..\URLSearchHook: {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - Reg Error: Key error. File not found
IE - HKU\Lukas_ON_C\..\URLSearchHook: {B9C767DD-F66A-40B4-8F12-4199A9A4393C} - C:\Program Files\SearchMe Toolbar\IE\8.9\searchmeToolbarIE.dll (Spigot, Inc.)
IE - HKU\Lukas_ON_C\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\System32\ieframe.dll (Microsoft Corporation)
IE - HKU\Lukas_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\Lukas_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:13828
IE - HKU\NetworkService_ON_C\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\System32\ieframe.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\System32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0: File not found
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.45.2: C:\Program Files\Java\jre7\bin\dtplugin\npdeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@mcafee.com/McAfeeMssPlugin: C:\Program Files\McAfee Security Scan\3.8.141\npMcAfeeMSS.dll (McAfee, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=16.0.3.51: C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlchromebrowserrecordext;version=1.3.3: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlhtml5videoshim;version=1.3.3: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlpepperflashvideoshim;version=1.3.3: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpplugin;version=16.0.3.51: C:\Program Files\Real\RealPlayer\Netscape6\nprpplugin.dll (RealPlayer)
FF - HKLM\Software\MozillaPlugins\@realnetworks.com/npdlplugin;version=1: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009/06/24 19:01:25 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2012/02/09 09:54:41 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{DF153AFF-6948-45d7-AC98-4FC4AF8A08E2}: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ [2013/09/28 15:24:35 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\freegames135@ZulaGames: C:\Users\Lukas\AppData\Roaming\Mozilla\Extensions\freegames135@ZulaGames [2013/12/09 08:14:40 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2013/09/28 15:24:35 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{21EAF666-26B3-4a3c-ABD0-CA2F5A326744}: C:\Program Files\V-bates\Firefox [2014/03/16 13:56:07 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{c7c6f4e1-dfd0-4d7e-ba9f-0c51055de5e1}: C:\Program Files\Re-markit-soft\157.xpi [2014/03/16 12:31:33 | 000,011,556 | ---- | M] ()
[2014/02/18 07:10:18 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
O1 HOSTS File: ([2006/09/18 17:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (Zapp) - {03b42da4-e052-423f-b1f4-98a5faae8111} - C:\Program Files\Zapp\IE\Zapp.dll (Simply Tech LTD.)
O2 - BHO: (MSS+ Identifier) - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.141\McAfeeMSS_IE.dll (McAfee, Inc.)
O2 - BHO: (Lexmark Symbolleiste) - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll ()
O2 - BHO: (IEOptimizer) - {10AD2C61-0898-4348-8600-14A342F22AC3} - C:\Program Files\SavingsBull\IEOptimizer.dll ()
O2 - BHO: (media enhance) - {11111111-1111-1111-1111-110411411150} - C:\Program Files\media enhance\media enhance-bho.dll (freeven)
O2 - BHO: (HQTotalS) - {11111111-1111-1111-1111-110511311172} - C:\Program Files\HQTotalS\HQTotalS-bho.dll (HQplustotalS)
O2 - BHO: (iminent Helper Object) - {112BA211-334C-4A90-90EC-2AD1CDAB287C} - C:\Program Files\IminentToolbar\1.8.28.3\bh\iminent.dll (Iminent)
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (V-bates) - {21EAF666-26B3-4a3c-ABD0-CA2F5A326744} - C:\Program Files\V-bates\Extension32.dll ()
O2 - BHO: (Babylon toolbar helper) - {2EECD738-5844-4a99-B4B6-146BF802613B} - File not found
O2 - BHO: (RealNetworks Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader)
O2 - BHO: (Conduit Engine ) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.)
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
O2 - BHO: (IETabPage Class) - {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} - C:\Program Files\SupTab\SupTab.dll (Thinknice Co. Limited)
O2 - BHO: (Mega Browse) - {4e6cd411-ce62-4584-97ff-6afbcf6900af} - C:\Program Files\Mega Browse\MegaBrowseBHO.dll (Mega Browse)
O2 - BHO: (appbarioDE 1 Toolbar) - {66b103a7-d772-4fcd-ace4-16f79a9056e0} - C:\Program Files\appbarioDE_1\prxtbappb.dll (Conduit Ltd.)
O2 - BHO: (Incredibar.com Helper Object) - {6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99} - File not found
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (XTTBPos00 Class) - {7914D9F0-DD27-4260-9BC1-AE01834B77CA} - C:\Program Files\T-Online\T-Online_Toolbar_2\T-Online_Toolbar_2.0.dll (Deutsche Telekom AG)
O2 - BHO: (no name) - {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - No CLSID value found.
O2 - BHO: (DVDVideoSoftTB Toolbar) - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVD0.dll (Conduit Ltd.)
O2 - BHO: (Easy Photo Print) - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\EPSON Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION)
O2 - BHO: (Babylon IE plugin) - {9CFACCB6-2F3F-4177-94EA-0D2B72D384C1} - File not found
O2 - BHO: (IMinent WebBooster (BHO)) - {A09AB6EB-31B5-454C-97EC-9B294D92EE2A} - C:\Program Files\Iminent\Minibar.InternetExplorer.BHOx86.dll (SIEN)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll (Google Inc.)
O2 - BHO: (SearchMe Toolbar) - {B9C767DD-F66A-40B4-8F12-4199A9A4393C} - C:\Program Files\SearchMe Toolbar\IE\8.9\searchmeToolbarIE.dll (Spigot, Inc.)
O2 - BHO: (Vuze Remote Toolbar) - {ba14329e-9550-4989-b3f2-9732e92d17cc} - File not found
O2 - BHO: (Free Games 135) - {C07DBF44-A0EE-4A65-A273-2E7E1ABFBEF4} - C:\Program Files\Free Games 135\ScriptHost.dll (Zula Games)
O2 - BHO: (softonic-de3 Toolbar) - {cc05a3e3-64c3-4af2-bfc1-af0d66b69065} - C:\Program Files\softonic-de3\prxtbsof0.dll (Conduit Ltd.)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (EpsonToolBandKicker Class) - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll (SEIKO EPSON CORPORATION)
O2 - BHO: (Yontoo Layers) - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - File not found
O3 - HKLM\..\Toolbar: (Zapp) - {03b42da4-e052-423f-b1f4-98a5faae8111} - C:\Program Files\Zapp\IE\Zapp.dll (Simply Tech LTD.)
O3 - HKLM\..\Toolbar: (Lexmark Symbolleiste) - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll ()
O3 - HKLM\..\Toolbar: (Iminent Toolbar) - {1FAFD711-ABF9-4F6A-8130-5166C7371427} - C:\Program Files\IminentToolbar\1.8.28.3\iminentTlbr.dll (Iminent)
O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (T-Online Toolbar 2.0) - {25F97EB4-1C02-45BA-BA0C-E67AACE64D4A} - C:\Program Files\T-Online\T-Online_Toolbar_2\T-Online_Toolbar_2.0.dll (Deutsche Telekom AG)
O3 - HKLM\..\Toolbar: (Conduit Engine ) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (appbarioDE 1 Toolbar) - {66b103a7-d772-4fcd-ace4-16f79a9056e0} - C:\Program Files\appbarioDE_1\prxtbappb.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (DVDVideoSoftTB Toolbar) - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVD0.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Easy Photo Print) - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\EPSON Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION)
O3 - HKLM\..\Toolbar: (Babylon Toolbar) - {98889811-442D-49dd-99D7-DC866BE87DBC} - File not found
O3 - HKLM\..\Toolbar: (SearchMe Toolbar) - {B9C767DD-F66A-40B4-8F12-4199A9A4393C} - C:\Program Files\SearchMe Toolbar\IE\8.9\searchmeToolbarIE.dll (Spigot, Inc.)
O3 - HKLM\..\Toolbar: (Vuze Remote Toolbar) - {ba14329e-9550-4989-b3f2-9732e92d17cc} - File not found
O3 - HKLM\..\Toolbar: (softonic-de3 Toolbar) - {cc05a3e3-64c3-4af2-bfc1-af0d66b69065} - C:\Program Files\softonic-de3\prxtbsof0.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (EPSON Web-To-Page) - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll (SEIKO EPSON CORPORATION)
O3 - HKLM\..\Toolbar: (Incredibar Toolbar) - {F9639E4A-801B-4843-AEE3-03D9DA199E77} - File not found
O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKU\Laura_ON_C\..\Toolbar\ShellBrowser: (Lexmark Symbolleiste) - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll ()
O3 - HKU\Laura_ON_C\..\Toolbar\WebBrowser: (Lexmark Symbolleiste) - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll ()
O3 - HKU\Laura_ON_C\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKU\Laura_ON_C\..\Toolbar\WebBrowser: (T-Online Toolbar 2.0) - {25F97EB4-1C02-45BA-BA0C-E67AACE64D4A} - C:\Program Files\T-Online\T-Online_Toolbar_2\T-Online_Toolbar_2.0.dll (Deutsche Telekom AG)
O3 - HKU\Laura_ON_C\..\Toolbar\WebBrowser: (Vuze Remote Toolbar) - {BA14329E-9550-4989-B3F2-9732E92D17CC} - File not found
O3 - HKU\Laura_ON_C\..\Toolbar\WebBrowser: (EPSON Web-To-Page) - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll (SEIKO EPSON CORPORATION)
O3 - HKU\Laura_ON_C\..\Toolbar\WebBrowser: (&Links) - {F2CF5485-4E02-4F68-819C-B92DE9277049} - C:\Windows\System32\ieframe.dll (Microsoft Corporation)
O3 - HKU\Lukas_ON_C\..\Toolbar\ShellBrowser: (Lexmark Symbolleiste) - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll ()
O3 - HKU\Lukas_ON_C\..\Toolbar\WebBrowser: (Lexmark Symbolleiste) - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll ()
O3 - HKU\Lukas_ON_C\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKU\Lukas_ON_C\..\Toolbar\WebBrowser: (T-Online Toolbar 2.0) - {25F97EB4-1C02-45BA-BA0C-E67AACE64D4A} - C:\Program Files\T-Online\T-Online_Toolbar_2\T-Online_Toolbar_2.0.dll (Deutsche Telekom AG)
O3 - HKU\Lukas_ON_C\..\Toolbar\WebBrowser: (Conduit Engine ) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.)
O3 - HKU\Lukas_ON_C\..\Toolbar\WebBrowser: (appbarioDE 1 Toolbar) - {66B103A7-D772-4FCD-ACE4-16F79A9056E0} - C:\Program Files\appbarioDE_1\prxtbappb.dll (Conduit Ltd.)
O3 - HKU\Lukas_ON_C\..\Toolbar\WebBrowser: (DVDVideoSoftTB Toolbar) - {872B5B88-9DB5-4310-BDD0-AC189557E5F5} - C:\Program Files\DVDVideoSoftTB\prxtbDVD0.dll (Conduit Ltd.)
O3 - HKU\Lukas_ON_C\..\Toolbar\WebBrowser: (softonic-de3 Toolbar) - {CC05A3E3-64C3-4AF2-BFC1-AF0D66B69065} - C:\Program Files\softonic-de3\prxtbsof0.dll (Conduit Ltd.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Adobe ARM] C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [Babylon Client] File not found
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [EEventManager] C:\Program Files\Epson Software\Event Manager\EEventManager.exe (SEIKO EPSON CORPORATION)
O4 - HKLM..\Run: [FaxCenterServer] C:\Program Files\Lexmark Fax Solutions\fm3032.exe ()
O4 - HKLM..\Run: [Google EULA Launcher] C:\Program Files\Google\Google EULA\GoogleEULALauncher.exe ( )
O4 - HKLM..\Run: [Google Quick Search Box] C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe (Google Inc.)
O4 - HKLM..\Run: [Hercules DJ Series] C:\Program Files\Hercules\Audio\DJ Console Series\HDJSeriesCPL.exe (Hercules®)
O4 - HKLM..\Run: [Iminent] File not found
O4 - HKLM..\Run: [IminentMessenger] File not found
O4 - HKLM..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe (Nero AG)
O4 - HKLM..\Run: [Norman ZANDA] C:\Program Files\Norman\Npm\Bin\ZLH.EXE (Norman ASA)
O4 - HKLM..\Run: [NPCTray] File not found
O4 - HKLM..\Run: [OlStatusMon] C:\Program Files\Olivetti\ANY_WAY\olDvcStatus.exe (Olivetti)
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [SearchSettings] C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe (Spigot, Inc.)
O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Common Files\Java\Java Update\jusched.exe (Oracle Corporation)
O4 - HKLM..\Run: [TkBellExe] C:\program files\real\realplayer\Update\realsched.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [VX1000] C:\Windows\vVX1000.exe (Microsoft Corporation)
O4 - HKLM..\Run: [WinampAgent] File not found
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKU\.DEFAULT..\Run: [fsc-reg] File not found
O4 - HKU\Laura_ON_C..\Run: [EA Core] File not found
O4 - HKU\Laura_ON_C..\Run: [ehTray.exe] C:\Windows\ehome\ehtray.exe (Microsoft Corporation)
O4 - HKU\Laura_ON_C..\Run: [ICQ] File not found
O4 - HKU\Laura_ON_C..\Run: [KiesTrayAgent] C:\Program Files\Samsung\Kies\KiesTrayAgent.exe (Samsung Electronics Co., Ltd.)
O4 - HKU\Laura_ON_C..\Run: [Laura] File not found
O4 - HKU\Laura_ON_C..\Run: [PC Speed Maximizer] C:\Program Files\PC Speed Maximizer\SPMLauncher.exe (Smart PC Solutions)
O4 - HKU\Laura_ON_C..\Run: [recinfo] File not found
O4 - HKU\Laura_ON_C..\Run: [RGSC] File not found
O4 - HKU\Laura_ON_C..\Run: [SearchProtect] File not found
O4 - HKU\Laura_ON_C..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation)
O4 - HKU\Laura_ON_C..\Run: [T-Online_Software_6\WLAN-Access Finder] C:\Program Files\T-Online\WLAN-Access Finder\ToWLaAcF.exe (Deutsche Telekom AG, Marmiko IT-Solutions GmbH)
O4 - HKU\LocalService_ON_C..\Run: [Sidebar] C:\Program Files\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\LocalService_ON_C..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
O4 - HKU\Lukas_ON_C..\Run: [APISupport] C:\Users\Lukas\AppData\Local\Conduit\APISupport\APISupport.dll (Conduit Ltd.)
O4 - HKU\Lukas_ON_C..\Run: [EPLTarget\P0000000000000000] C:\Windows\System32\spool\DRIVERS\W32X86\3\E_FATIIKE.EXE (SEIKO EPSON CORPORATION)
O4 - HKU\Lukas_ON_C..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation)
O4 - HKU\Lukas_ON_C..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
O4 - HKU\Lukas_ON_C..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\wmpnscfg.exe (Microsoft Corporation)
O4 - HKU\NetworkService_ON_C..\Run: [Sidebar] C:\Program Files\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\NetworkService_ON_C..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
O4 - HKU\.DEFAULT..\RunOnce: [SpUninstallDeleteDir] File not found
O4 - Startup: C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\meine software.lnk = C:\Program Files\T-Home\Meine Software\meine software.exe (Deutsche Telekom AG)
O4 - Startup: C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk = C:\Program Files\MyPC Backup\MyPC Backup.exe (MyPCBackup.com)
O4 - Startup: C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\rj7gwl4a.lnk = X:\I386\SYSTEM32\RUNDLL32.EXE (Microsoft Corporation)
O4 - Startup: C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\StarOffice 8.lnk = C:\Program Files\Sun\StarOffice 8\program\quickstart.exe ()
O4 - Startup: C:\Users\Lukas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\rj7gwl4a.lnk = X:\I386\SYSTEM32\RUNDLL32.EXE (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableVirtualization = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ValidateAdminCodeSignatures = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: scforceoption = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: FilterAdministratorToken = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableUIADesktopToggle = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_TEXT = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_BITMAP = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_OEMTEXT = 7
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIB = 8
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_PALETTE = 9
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_UNICODETEXT = 13
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIBV5 = 17
O7 - HKU\Laura_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\Laura_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutorun = 0
O8 - Extra context menu item: Nach Microsoft E&xel exportieren - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra Button: Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - File not found
O9 - Extra 'Tools' menuitem : Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\Windows\System32\nlaapi.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\Windows\System32\NapiNSP.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\Windows\System32\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Windows\System32\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Windows\System32\winrnr.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000021 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000022 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000023 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000024 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000025 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O13 - gopher Prefix: missing
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.178.1
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\System32\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp - No CLSID value found
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\System32\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\microsoft shared\Information Retrieval\msitss.dll (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\System32\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - AppInit_DLLs: (C:\PROGRA~1\SearchProtect\SearchProtect\bin\SPVC32Loader.dll) - C:\Program Files\SearchProtect\SearchProtect\bin\SPVC32Loader.dll (Conduit)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - C:\Windows\System32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - C:\Windows\System32\sysdm.cpl (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\System32\webcheck.dll (Microsoft Corporation)
O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Component Categories cache daemon - C:\Windows\System32\browseui.dll (Microsoft Corporation)
O24 - Desktop WallPaper:
O24 - Desktop BackupWallPaper:
O29 - HKLM SecurityProviders - (credssp.dll) - C:\Windows\System32\credssp.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:\Windows\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (kerberos) - C:\Windows\System32\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - C:\Windows\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - C:\Windows\System32\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - C:\Windows\System32\wdigest.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (tspkg) - C:\Windows\System32\tspkg.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/03/24 07:06:41 | 000,000,053 | R--- | M] () - X:\AUTORUN.INF -- [ CDFS ]
O33 - MountPoints2\{d82377b9-7160-11df-a7cd-8b974e5617ee}\Shell\AutoRun\command - "" = F:\ContentManager\ContentManagerStarter.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2014/03/27 18:15:42 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2014/03/24 07:41:39 | 000,000,000 | -HSD | C] -- C:\found.000
[2014/03/24 06:53:08 | 000,055,232 | ---- | C] (StdLib) -- C:\Windows\System32\drivers\tStLib.sys
[2014/03/24 06:42:32 | 000,000,000 | ---D | C] -- C:\Users\Lukas\Desktop\Der Herr der Ringe - 2
[2014/03/24 06:31:20 | 000,000,000 | ---D | C] -- C:\Users\Lukas\Desktop\The Best of The Irish Folk Festival Vol.2
[2014/03/24 06:23:36 | 000,000,000 | ---D | C] -- C:\Program Files\SearchMe Toolbar
[2014/03/24 06:23:36 | 000,000,000 | ---D | C] -- C:\Program Files\Application Updater
[2014/03/18 13:10:04 | 000,000,000 | ---D | C] -- C:\Users\Lukas\Desktop\Der Herr der Ringe - 3
[2014/03/18 12:02:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audiograbber
[2014/03/18 12:02:10 | 000,000,000 | ---D | C] -- C:\Program Files\Audiograbber
[2014/03/18 12:01:42 | 000,000,000 | ---D | C] -- C:\Users\Lukas\AppData\Roaming\SimplyTech
[2014/03/18 12:01:41 | 000,000,000 | ---D | C] -- C:\Program Files\Zapp
[2014/03/18 12:01:28 | 000,000,000 | ---D | C] -- C:\temp
[2014/03/18 12:01:22 | 000,000,000 | ---D | C] -- C:\Program Files\SavingsBull
[2014/03/18 12:01:14 | 000,000,000 | ---D | C] -- C:\Program Files\Level Quality Watcher
[2014/03/18 12:01:00 | 000,000,000 | ---D | C] -- C:\Users\Lukas\AppData\Roaming\BupSystem
[2014/03/18 12:00:55 | 000,000,000 | ---D | C] -- C:\Users\Lukas\AppData\Roaming\Security System 2
[2014/03/18 11:41:51 | 000,000,000 | ---D | C] -- C:\Users\Lukas\Desktop\Der Herr der Ringe - 1
[2014/03/18 11:31:36 | 000,000,000 | ---D | C] -- C:\Users\Lukas\Desktop\Album
[2014/03/18 11:24:02 | 000,000,000 | ---D | C] -- C:\Users\Lukas\AppData\Local\MovieMode
[2014/03/16 13:58:27 | 000,000,000 | ---D | C] -- C:\Users\Laura\AppData\Local\MovieMode
[2014/03/16 13:56:55 | 000,000,000 | ---D | C] -- C:\ProgramData\MovieMode
[2014/03/16 13:56:32 | 000,000,000 | ---D | C] -- C:\Users\Laura\AppData\Roaming\mysearchdial
[2014/03/16 13:56:32 | 000,000,000 | ---D | C] -- C:\Program Files\Mysearchdial
[2014/03/16 13:56:07 | 000,000,000 | ---D | C] -- C:\Program Files\V-bates
[2014/03/16 13:02:50 | 000,000,000 | ---D | C] -- C:\Users\Laura\Documents\PC Speed Maximizer
[2014/03/16 13:02:36 | 000,000,000 | ---D | C] -- C:\Users\Laura\AppData\Roaming\PC Speed Maximizer
[2014/03/16 13:00:59 | 000,000,000 | ---D | C] -- C:\Users\Laura\AppData\Local\Tuguu_SL
[2014/03/16 13:00:45 | 000,000,000 | ---D | C] -- C:\Program Files\Uninstaller
[2014/03/16 12:58:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Registry Helper
[2014/03/16 12:58:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Registry Helper
[2014/03/16 12:58:40 | 000,000,000 | ---D | C] -- C:\Program Files\Registry Helper
[2014/03/16 12:57:59 | 000,000,000 | ---D | C] -- C:\Program Files\BringStar
[2014/03/16 12:57:40 | 000,000,000 | ---D | C] -- C:\Program Files\Mega Browse
[2014/03/16 12:57:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Speed Maximizer
[2014/03/16 12:57:06 | 000,954,784 | ---- | C] (AnyProtect.com) -- C:\Users\Laura\AppData\Local\AnyProtectScannerSetup.exe
[2014/03/16 12:57:06 | 000,000,000 | ---D | C] -- C:\Program Files\PC Speed Maximizer
[2014/03/16 12:38:59 | 000,000,000 | ---D | C] -- C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup
[2014/03/16 12:38:54 | 000,692,616 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe
[2014/03/16 12:37:32 | 000,000,000 | ---D | C] -- C:\Program Files\AnyProtectEx
[2014/03/16 12:36:21 | 000,000,000 | ---D | C] -- C:\Users\Laura\AppData\Roaming\VOPackage
[2014/03/16 12:36:21 | 000,000,000 | ---D | C] -- C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage
[2014/03/16 12:34:32 | 000,000,000 | ---D | C] -- C:\ProgramData\IePluginService
[2014/03/16 12:34:30 | 000,000,000 | ---D | C] -- C:\Users\Laura\AppData\Roaming\SupTab
[2014/03/16 12:34:29 | 000,000,000 | ---D | C] -- C:\Program Files\SupTab
[2014/03/16 12:34:25 | 000,000,000 | ---D | C] -- C:\ProgramData\WPM
[2014/03/16 12:34:22 | 000,000,000 | ---D | C] -- C:\Users\Laura\AppData\Local\newplayer
[2014/03/16 12:33:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NewPlayer
[2014/03/16 12:33:42 | 000,000,000 | ---D | C] -- C:\Users\Laura\AppData\Roaming\awesomehp
[2014/03/16 12:33:08 | 000,000,000 | ---D | C] -- C:\Program Files\NewPlayer
[2014/03/16 12:32:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue
[2014/03/16 12:32:45 | 000,000,000 | ---D | C] -- C:\Users\Laura\AppData\Roaming\Uniblue
[2014/03/16 12:32:45 | 000,000,000 | ---D | C] -- C:\Program Files\Uniblue
[2014/03/16 12:32:25 | 000,000,000 | ---D | C] -- C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup
[2014/03/16 12:32:24 | 000,000,000 | ---D | C] -- C:\Program Files\MyPC Backup
[2014/03/16 12:32:21 | 000,000,000 | ---D | C] -- C:\Program Files\media enhance
[2014/03/16 12:31:59 | 000,000,000 | ---D | C] -- C:\Program Files\HQTotalS
[2014/03/16 12:31:33 | 000,000,000 | ---D | C] -- C:\Program Files\Re-markit-soft
[2014/03/16 12:20:50 | 000,000,000 | ---D | C] -- C:\Users\Laura\AppData\Roaming\TuneUp Software
[2014/03/07 11:32:18 | 000,000,000 | ---D | C] -- C:\Users\Lukas\Desktop\Filme
[2014/03/06 12:09:12 | 000,000,000 | ---D | C] -- C:\output
[2014/03/06 12:08:48 | 000,000,000 | ---D | C] -- C:\WAV To MP3
[2014/03/06 12:08:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WAV To MP3
[2014/03/05 13:09:47 | 000,036,664 | ---- | C] (TuneUp Software) -- C:\Windows\System32\TURegOpt.exe
[2014/03/05 13:09:43 | 000,025,400 | ---- | C] (TuneUp Software) -- C:\Windows\System32\authuitu.dll
[2014/03/05 13:09:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014
[2014/03/05 13:09:11 | 000,000,000 | ---D | C] -- C:\Users\Lukas\AppData\Roaming\TuneUp Software
[2014/03/05 13:07:14 | 000,000,000 | ---D | C] -- C:\Program Files\TuneUp Utilities 2014
[2014/03/05 13:06:20 | 000,000,000 | ---D | C] -- C:\ProgramData\TuneUp Software
[2014/03/05 13:05:47 | 000,000,000 | -HSD | C] -- C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
[2014/03/05 13:05:46 | 000,000,000 | -H-D | C] -- C:\ProgramData\Common Files
[2014/03/05 13:03:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
[2014/03/05 13:02:46 | 000,000,000 | ---D | C] -- C:\Users\Lukas\AppData\Roaming\OpenCandy
[2014/03/05 13:02:46 | 000,000,000 | ---D | C] -- C:\Users\Lukas\AppData\Roaming\DVDVideoSoft
[2014/03/05 13:02:46 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DVDVideoSoft
[2011/12/07 15:32:24 | 000,216,064 | ---- | C] ( ) -- C:\Windows\System32\Lagarith.dll
[4 C:\Users\Laura\Documents\*.tmp files -> C:\Users\Laura\Documents\*.tmp -> ]
[4 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ]
[2 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ]
[2 C:\Program Files\*.tmp files -> C:\Program Files\*.tmp -> ]
[1 C:\Users\Laura\AppData\Local\*.tmp files -> C:\Users\Laura\AppData\Local\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2014/03/27 14:00:22 | 000,000,266 | ---- | M] () -- C:\Windows\tasks\SpeedUpMyPC Maintenance.job
[2014/03/27 13:59:34 | 000,003,068 | ---- | M] () -- C:\Windows\tasks\HQTotalS-chromeinstaller.job
[2014/03/27 13:59:34 | 000,002,502 | ---- | M] () -- C:\Windows\tasks\HQTotalS-firefoxinstaller.job
[2014/03/27 13:59:32 | 000,001,478 | ---- | M] () -- C:\Windows\tasks\HQTotalS-updater.job
[2014/03/27 13:59:32 | 000,001,426 | ---- | M] () -- C:\Windows\tasks\media enhance-enabler.job
[2014/03/27 13:59:32 | 000,001,340 | ---- | M] () -- C:\Windows\tasks\HQTotalS-enabler.job
[2014/03/27 13:58:31 | 095,027,928 | ---- | M] () -- C:\ProgramData\rj7gwl4a.bbr
[2014/03/27 13:58:15 | 000,001,564 | ---- | M] () -- C:\Windows\tasks\media enhance-updater.job
[2014/03/27 13:58:14 | 000,003,088 | ---- | M] () -- C:\Windows\tasks\media enhance-chromeinstaller.job
[2014/03/27 13:58:13 | 000,002,342 | ---- | M] () -- C:\Windows\tasks\media enhance-firefoxinstaller.job
[2014/03/27 13:58:05 | 000,001,094 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014/03/27 13:58:03 | 000,000,260 | ---- | M] () -- C:\Windows\tasks\SpeedUpMyPC Startup.job
[2014/03/27 13:58:02 | 000,000,366 | ---- | M] () -- C:\Windows\tasks\Re-markit_wd.job
[2014/03/27 13:58:01 | 000,001,526 | ---- | M] () -- C:\Windows\tasks\media enhance-codedownloader.job
[2014/03/27 13:58:01 | 000,001,440 | ---- | M] () -- C:\Windows\tasks\HQTotalS-codedownloader.job
[2014/03/27 13:58:01 | 000,000,368 | ---- | M] () -- C:\Windows\tasks\Re-markit Update.job
[2014/03/27 13:58:01 | 000,000,282 | ---- | M] () -- C:\Windows\tasks\FF Watcher {57DEB8DA-435C-41E5-AAA9-1BB0A7C138A9}.job
[2014/03/27 13:57:48 | 000,003,216 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2014/03/27 13:57:48 | 000,003,216 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2014/03/27 13:57:46 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2014/03/27 13:57:42 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014/03/24 10:58:23 | 002,074,525 | -H-- | M] () -- C:\Users\Lukas\AppData\Local\IconCache.db
[2014/03/24 09:46:32 | 004,527,821 | -H-- | M] () -- C:\Users\Laura\AppData\Local\IconCache.db
[2014/03/24 09:35:00 | 000,001,098 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/03/24 07:04:51 | 000,000,884 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014/03/24 07:02:54 | 000,000,876 | ---- | M] () -- C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\rj7gwl4a.lnk
[2014/03/24 06:53:08 | 000,055,232 | ---- | M] (StdLib) -- C:\Windows\System32\drivers\tStLib.sys
[2014/03/24 06:51:38 | 000,000,876 | ---- | M] () -- C:\Users\Lukas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\rj7gwl4a.lnk
[2014/03/24 06:51:17 | 000,151,552 | ---- | M] () -- C:\ProgramData\a4lwg7jr.gsa
[2014/03/24 06:50:26 | 001,572,690 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI
[2014/03/24 06:50:26 | 000,676,338 | ---- | M] () -- C:\Windows\System32\perfh007.dat
[2014/03/24 06:50:26 | 000,636,064 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2014/03/24 06:50:26 | 000,146,104 | ---- | M] () -- C:\Windows\System32\perfc007.dat
[2014/03/24 06:50:26 | 000,120,146 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2014/03/18 12:02:11 | 000,000,926 | ---- | M] () -- C:\Users\Public\Desktop\Audiograbber.lnk
[2014/03/18 12:02:11 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audiograbber
[2014/03/18 11:21:03 | 000,000,368 | ---- | M] () -- C:\Windows\tasks\APSnotifierPP1.job
[2014/03/18 11:21:03 | 000,000,366 | ---- | M] () -- C:\Windows\tasks\APSnotifierPP3.job
[2014/03/18 11:21:03 | 000,000,366 | ---- | M] () -- C:\Windows\tasks\APSnotifierPP2.job
[2014/03/16 13:58:03 | 000,000,848 | ---- | M] () -- C:\Users\Laura\Desktop\AnyProtect.lnk
[2014/03/16 13:56:07 | 000,000,045 | ---- | M] () -- C:\user.js
[2014/03/16 13:28:45 | 005,168,012 | ---- | M] () -- C:\Users\Lukas\Desktop\Martin Garrix & Jay Hardway - Wizard (Official Video HD).mp3
[2014/03/16 13:18:16 | 004,439,509 | ---- | M] () -- C:\Users\Lukas\Desktop\David Guetta - Shot Me Down Ft. skylar Grey Trap Remix (Dustin Que).mp3
[2014/03/16 13:13:23 | 007,319,666 | ---- | M] () -- C:\Users\Lukas\Desktop\ENVY - Am I Wrong (Official Video).mp3
[2014/03/16 13:10:49 | 004,638,249 | ---- | M] () -- C:\Users\Lukas\Desktop\Sam Smith - Money On My Mind (Lyric Video).mp3
[2014/03/16 13:09:07 | 005,514,082 | ---- | M] () -- C:\Users\Lukas\Desktop\Rather Be - Clean Bandit feat Jess Glynne Lyrics.mp3
[2014/03/16 12:58:55 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Registry Helper
[2014/03/16 12:57:08 | 000,000,920 | ---- | M] () -- C:\Users\Laura\Desktop\PC Speed Maximizer.lnk
[2014/03/16 12:57:08 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Speed Maximizer
[2014/03/16 12:42:07 | 000,001,442 | ---- | M] () -- C:\Users\Laura\AppData\Roaming\aps.scan.results
[2014/03/16 12:42:07 | 000,000,610 | ---- | M] () -- C:\Users\Laura\AppData\Roaming\aps.scan.quick.results
[2014/03/16 12:42:07 | 000,000,161 | ---- | M] () -- C:\Users\Laura\AppData\Roaming\aps.uninstall.scan.results
[2014/03/16 12:38:54 | 000,692,616 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe
[2014/03/16 12:38:54 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl
[2014/03/16 12:33:53 | 000,000,904 | ---- | M] () -- C:\Users\Public\Desktop\NewPlayer.lnk
[2014/03/16 12:33:53 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NewPlayer
[2014/03/16 12:33:14 | 000,001,135 | ---- | M] () -- C:\Users\Laura\Desktop\Internet Explorer.lnk
[2014/03/16 12:32:52 | 000,000,988 | ---- | M] () -- C:\Users\Laura\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\SpeedUpMyPC.lnk
[2014/03/16 12:32:51 | 000,002,211 | ---- | M] () -- C:\Users\Laura\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2014/03/16 12:32:51 | 000,001,159 | ---- | M] () -- C:\Users\Laura\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2014/03/16 12:32:51 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue
[2014/03/16 12:32:50 | 000,001,760 | ---- | M] () -- C:\Users\Laura\Desktop\Sync Folder.lnk
[2014/03/16 12:32:25 | 000,000,900 | ---- | M] () -- C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk
[2014/03/16 12:32:25 | 000,000,890 | ---- | M] () -- C:\Users\Laura\Desktop\MyPC Backup.lnk
[2014/03/16 12:31:35 | 000,000,306 | RHS- | M] () -- C:\ProgramData\ntuser.pol
[2014/03/16 12:30:40 | 000,000,000 | ---- | M] () -- C:\END
[2014/03/16 12:29:43 | 003,300,988 | ---- | M] () -- C:\Users\Lukas\Desktop\AVICII - Addicted To You (Original) Full Version.mp3
[2014/03/14 18:27:21 | 023,648,998 | ---- | M] () -- C:\Users\Lukas\Desktop\Joseph Capriati - Solar System (Original Mix).mp3
[2014/03/14 18:27:21 | 022,550,596 | ---- | M] () -- C:\Users\Lukas\Desktop\Adam Beyer And Alan Fitzpatrick - Human Reason (Len Faki Remix).mp3
[2014/03/13 11:24:16 | 000,954,784 | ---- | M] (AnyProtect.com) -- C:\Users\Laura\AppData\Local\AnyProtectScannerSetup.exe
[2014/03/08 14:12:04 | 005,210,017 | ---- | M] () -- C:\Users\Lukas\Desktop\[Official Lyrics Video] Dark Horse- Katy Perry ft. Juicy J.mp3
[2014/03/08 14:09:04 | 000,017,408 | ---- | M] () -- C:\Users\Lukas\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2014/03/07 12:00:48 | 002,578,651 | ---- | M] () -- C:\Users\Lukas\Desktop\Kate Nash - Do-Wah-Doo.mp3
[2014/03/06 12:09:41 | 011,359,535 | ---- | M] () -- C:\Users\Lukas\Desktop\kalkbrenner unknown.mp3
[2014/03/06 12:08:49 | 000,000,550 | ---- | M] () -- C:\Users\Public\Desktop\WAV To MP3.lnk
[2014/03/06 12:08:49 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WAV To MP3
[2014/03/06 12:07:24 | 006,853,850 | ---- | M] () -- C:\Users\Lukas\Desktop\Paul Kalkbrenner - Unreleased Mayday 2003.mp3
[2014/03/05 13:09:35 | 000,001,871 | ---- | M] () -- C:\Users\Public\Desktop\TuneUp Utilities 2014.lnk
[2014/03/05 13:09:34 | 000,001,895 | ---- | M] () -- C:\Users\Lukas\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\TuneUp Utilities 2014.lnk
[2014/03/05 13:09:34 | 000,001,883 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014.lnk
[2014/03/05 13:09:34 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014
[2014/03/05 13:06:52 | 095,771,535 | ---- | M] () -- C:\Users\Lukas\Desktop\Paul Kalkbrenner @ Click Hamburg 08.03.2003.mp3
[2014/03/05 13:03:11 | 000,002,113 | ---- | M] () -- C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk
[2014/03/05 13:03:11 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
[2014/03/05 12:28:28 | 010,048,103 | ---- | M] () -- C:\Users\Lukas\Desktop\DC123 - Alan Fitzpatrick - 1992 (Official Video) - Drumcode.mp3
[2014/03/05 12:19:17 | 011,333,328 | ---- | M] () -- C:\Users\Lukas\Desktop\Harvey McKay - Lost (Original Mix) [DRUMCODE].mp3
[2014/03/05 12:16:44 | 011,185,370 | ---- | M] () -- C:\Users\Lukas\Desktop\Harvey McKay - Silk Road - Drumcode - DC124.mp3
[2014/03/05 12:12:57 | 010,345,272 | ---- | M] () -- C:\Users\Lukas\Desktop\Ant Brooks, Matt Sassari - Airglow (Original Mix).mp3
[4 C:\Users\Laura\Documents\*.tmp files -> C:\Users\Laura\Documents\*.tmp -> ]
[4 C:\ProgramData\*.tmp files -> C:\ProgramData\*.tmp -> ]
[2 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ]
[2 C:\Program Files\*.tmp files -> C:\Program Files\*.tmp -> ]
[1 C:\Users\Laura\AppData\Local\*.tmp files -> C:\Users\Laura\AppData\Local\*.tmp -> ]
========== Files Created - No Company Name ==========
[2014/03/24 07:02:54 | 000,000,876 | ---- | C] () -- C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\rj7gwl4a.lnk
[2014/03/24 06:51:38 | 000,000,876 | ---- | C] () -- C:\Users\Lukas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\rj7gwl4a.lnk
[2014/03/24 06:51:27 | 095,027,928 | ---- | C] () -- C:\ProgramData\rj7gwl4a.bbr
[2014/03/24 06:51:17 | 000,151,552 | ---- | C] () -- C:\ProgramData\a4lwg7jr.gsa
[2014/03/18 12:02:11 | 000,000,926 | ---- | C] () -- C:\Users\Public\Desktop\Audiograbber.lnk
[2014/03/18 12:01:42 | 000,033,864 | ---- | C] () -- C:\Windows\Launcher.exe
[2014/03/18 11:33:46 | 007,319,666 | ---- | C] () -- C:\Users\Lukas\Desktop\ENVY - Am I Wrong (Official Video).mp3
[2014/03/18 11:33:17 | 005,514,082 | ---- | C] () -- C:\Users\Lukas\Desktop\Rather Be - Clean Bandit feat Jess Glynne Lyrics.mp3
[2014/03/18 11:33:10 | 003,300,988 | ---- | C] () -- C:\Users\Lukas\Desktop\AVICII - Addicted To You (Original) Full Version.mp3
[2014/03/18 11:33:09 | 005,168,012 | ---- | C] () -- C:\Users\Lukas\Desktop\Martin Garrix & Jay Hardway - Wizard (Official Video HD).mp3
[2014/03/18 11:32:09 | 004,638,249 | ---- | C] () -- C:\Users\Lukas\Desktop\Sam Smith - Money On My Mind (Lyric Video).mp3
[2014/03/18 11:31:56 | 004,439,509 | ---- | C] () -- C:\Users\Lukas\Desktop\David Guetta - Shot Me Down Ft. skylar Grey Trap Remix (Dustin Que).mp3
[2014/03/16 13:59:47 | 000,000,366 | ---- | C] () -- C:\Windows\tasks\APSnotifierPP3.job
[2014/03/16 13:59:44 | 000,000,366 | ---- | C] () -- C:\Windows\tasks\APSnotifierPP2.job
[2014/03/16 13:59:41 | 000,000,368 | ---- | C] () -- C:\Windows\tasks\APSnotifierPP1.job
[2014/03/16 13:56:09 | 000,000,282 | ---- | C] () -- C:\Windows\tasks\FF Watcher {57DEB8DA-435C-41E5-AAA9-1BB0A7C138A9}.job
[2014/03/16 13:56:07 | 000,000,045 | ---- | C] () -- C:\user.js
[2014/03/16 12:57:08 | 000,000,920 | ---- | C] () -- C:\Users\Laura\Desktop\PC Speed Maximizer.lnk
[2014/03/16 12:42:07 | 000,001,442 | ---- | C] () -- C:\Users\Laura\AppData\Roaming\aps.scan.results
[2014/03/16 12:39:07 | 000,000,610 | ---- | C] () -- C:\Users\Laura\AppData\Roaming\aps.scan.quick.results
[2014/03/16 12:39:07 | 000,000,161 | ---- | C] () -- C:\Users\Laura\AppData\Roaming\aps.uninstall.scan.results
[2014/03/16 12:38:59 | 000,000,848 | ---- | C] () -- C:\Users\Laura\Desktop\AnyProtect.lnk
[2014/03/16 12:38:55 | 000,000,884 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014/03/16 12:34:29 | 000,001,564 | ---- | C] () -- C:\Windows\tasks\media enhance-updater.job
[2014/03/16 12:34:29 | 000,001,478 | ---- | C] () -- C:\Windows\tasks\HQTotalS-updater.job
[2014/03/16 12:33:57 | 000,001,426 | ---- | C] () -- C:\Windows\tasks\media enhance-enabler.job
[2014/03/16 12:33:57 | 000,001,340 | ---- | C] () -- C:\Windows\tasks\HQTotalS-enabler.job
[2014/03/16 12:33:53 | 000,000,904 | ---- | C] () -- C:\Users\Public\Desktop\NewPlayer.lnk
[2014/03/16 12:33:48 | 000,000,266 | ---- | C] () -- C:\Windows\tasks\SpeedUpMyPC Maintenance.job
[2014/03/16 12:33:29 | 000,001,526 | ---- | C] () -- C:\Windows\tasks\media enhance-codedownloader.job
[2014/03/16 12:33:27 | 000,000,260 | ---- | C] () -- C:\Windows\tasks\SpeedUpMyPC Startup.job
[2014/03/16 12:33:07 | 000,001,440 | ---- | C] () -- C:\Windows\tasks\HQTotalS-codedownloader.job
[2014/03/16 12:32:52 | 000,002,342 | ---- | C] () -- C:\Windows\tasks\media enhance-firefoxinstaller.job
[2014/03/16 12:32:52 | 000,000,988 | ---- | C] () -- C:\Users\Laura\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\SpeedUpMyPC.lnk
[2014/03/16 12:32:50 | 000,001,760 | ---- | C] () -- C:\Users\Laura\Desktop\Sync Folder.lnk
[2014/03/16 12:32:42 | 000,002,502 | ---- | C] () -- C:\Windows\tasks\HQTotalS-firefoxinstaller.job
[2014/03/16 12:32:25 | 000,000,900 | ---- | C] () -- C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk
[2014/03/16 12:32:25 | 000,000,890 | ---- | C] () -- C:\Users\Laura\Desktop\MyPC Backup.lnk
[2014/03/16 12:32:24 | 000,003,088 | ---- | C] () -- C:\Windows\tasks\media enhance-chromeinstaller.job
[2014/03/16 12:32:02 | 000,003,068 | ---- | C] () -- C:\Windows\tasks\HQTotalS-chromeinstaller.job
[2014/03/16 12:31:47 | 000,000,368 | ---- | C] () -- C:\Windows\tasks\Re-markit Update.job
[2014/03/16 12:31:37 | 000,000,366 | ---- | C] () -- C:\Windows\tasks\Re-markit_wd.job
[2014/03/14 07:10:23 | 022,550,596 | ---- | C] () -- C:\Users\Lukas\Desktop\Adam Beyer And Alan Fitzpatrick - Human Reason (Len Faki Remix).mp3
[2014/03/14 07:08:21 | 023,648,998 | ---- | C] () -- C:\Users\Lukas\Desktop\Joseph Capriati - Solar System (Original Mix).mp3
[2014/03/08 14:11:56 | 005,210,017 | ---- | C] () -- C:\Users\Lukas\Desktop\[Official Lyrics Video] Dark Horse- Katy Perry ft. Juicy J.mp3
[2014/03/07 12:00:36 | 002,578,651 | ---- | C] () -- C:\Users\Lukas\Desktop\Kate Nash - Do-Wah-Doo.mp3
[2014/03/06 12:09:13 | 011,359,535 | ---- | C] () -- C:\Users\Lukas\Desktop\kalkbrenner unknown.mp3
[2014/03/06 12:08:49 | 000,000,550 | ---- | C] () -- C:\Users\Public\Desktop\WAV To MP3.lnk
[2014/03/06 12:07:15 | 006,853,850 | ---- | C] () -- C:\Users\Lukas\Desktop\Paul Kalkbrenner - Unreleased Mayday 2003.mp3
[2014/03/05 13:09:35 | 000,001,871 | ---- | C] () -- C:\Users\Public\Desktop\TuneUp Utilities 2014.lnk
[2014/03/05 13:09:34 | 000,001,895 | ---- | C] () -- C:\Users\Lukas\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\TuneUp Utilities 2014.lnk
[2014/03/05 13:09:34 | 000,001,883 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014.lnk
[2014/03/05 13:04:30 | 095,771,535 | ---- | C] () -- C:\Users\Lukas\Desktop\Paul Kalkbrenner @ Click Hamburg 08.03.2003.mp3
[2014/03/05 13:03:11 | 000,002,113 | ---- | C] () -- C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk
[2014/03/05 12:28:08 | 010,048,103 | ---- | C] () -- C:\Users\Lukas\Desktop\DC123 - Alan Fitzpatrick - 1992 (Official Video) - Drumcode.mp3
[2014/03/05 12:18:58 | 011,333,328 | ---- | C] () -- C:\Users\Lukas\Desktop\Harvey McKay - Lost (Original Mix) [DRUMCODE].mp3
[2014/03/05 12:16:27 | 011,185,370 | ---- | C] () -- C:\Users\Lukas\Desktop\Harvey McKay - Silk Road - Drumcode - DC124.mp3
[2014/03/05 12:12:35 | 010,345,272 | ---- | C] () -- C:\Users\Lukas\Desktop\Ant Brooks, Matt Sassari - Airglow (Original Mix).mp3
[2014/02/10 19:32:54 | 001,152,656 | ---- | C] () -- C:\Windows\System32\MovieMode.48CA2AEFA22D.dll
[2013/09/28 15:43:34 | 002,074,525 | -H-- | C] () -- C:\Users\Lukas\AppData\Local\IconCache.db
[2013/09/01 18:23:50 | 000,039,904 | ---- | C] () -- C:\Windows\System32\DiscHandler.exe
[2013/08/29 23:54:26 | 003,915,776 | ---- | C] () -- C:\Windows\System32\ffmpeg.dll
[2013/08/29 23:53:34 | 000,112,640 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll
[2013/08/29 23:51:58 | 000,099,840 | ---- | C] () -- C:\Windows\System32\ff_wmv9.dll
[2013/08/29 23:51:54 | 000,157,184 | ---- | C] () -- C:\Windows\System32\ff_unrar.dll
[2013/08/29 23:51:50 | 000,147,456 | ---- | C] () -- C:\Windows\System32\ff_libmad.dll
[2013/08/29 23:51:48 | 001,525,760 | ---- | C] () -- C:\Windows\System32\ff_samplerate.dll
[2013/08/29 23:51:48 | 000,211,968 | ---- | C] () -- C:\Windows\System32\ff_libdts.dll
[2013/08/29 23:51:48 | 000,114,688 | ---- | C] () -- C:\Windows\System32\ff_liba52.dll
[2013/08/29 23:51:40 | 000,271,360 | ---- | C] () -- C:\Windows\System32\TomsMoComp_ff.dll
[2013/08/29 23:51:40 | 000,136,704 | ---- | C] () -- C:\Windows\System32\libmpeg2_ff.dll
[2013/07/26 09:24:22 | 006,275,760 | ---- | C] () -- C:\Windows\System32\avcodec-lav-55.dll
[2013/07/26 09:24:22 | 001,239,216 | ---- | C] () -- C:\Windows\System32\avformat-lav-55.dll
[2013/07/26 09:24:22 | 000,394,416 | ---- | C] () -- C:\Windows\System32\swscale-lav-2.dll
[2013/07/26 09:24:22 | 000,288,944 | ---- | C] () -- C:\Windows\System32\avutil-lav-52.dll
[2013/07/26 09:24:22 | 000,235,184 | ---- | C] () -- C:\Windows\System32\avfilter-lav-3.dll
[2013/07/26 09:24:22 | 000,190,640 | ---- | C] () -- C:\Windows\System32\libbluray.dll
[2013/07/26 09:24:22 | 000,150,192 | ---- | C] () -- C:\Windows\System32\avresample-lav-1.dll
[2013/04/14 06:00:06 | 000,150,016 | ---- | C] () -- C:\Windows\System32\mkx.dll
[2013/04/14 06:00:02 | 000,109,568 | ---- | C] () -- C:\Windows\System32\avi.dll
[2013/04/14 05:59:54 | 000,143,872 | ---- | C] () -- C:\Windows\System32\mp4.dll
[2013/04/14 05:59:48 | 000,123,392 | ---- | C] () -- C:\Windows\System32\ogm.dll
[2013/04/14 05:59:36 | 000,113,152 | ---- | C] () -- C:\Windows\System32\dsmux.exe
[2013/04/14 05:59:32 | 000,154,624 | ---- | C] () -- C:\Windows\System32\ts.dll
[2013/04/14 05:59:28 | 000,249,856 | ---- | C] () -- C:\Windows\System32\dxr.dll
[2013/04/14 05:59:12 | 000,097,792 | ---- | C] () -- C:\Windows\System32\avs.dll
[2013/04/14 05:59:10 | 000,137,728 | ---- | C] () -- C:\Windows\System32\mkv2vfr.exe
[2013/04/14 05:59:06 | 000,357,376 | ---- | C] () -- C:\Windows\System32\gdsmux.exe
[2013/04/14 05:59:06 | 000,093,184 | ---- | C] () -- C:\Windows\System32\avss.dll
[2013/04/14 05:58:12 | 000,080,384 | ---- | C] () -- C:\Windows\System32\mkzlib.dll
[2013/04/14 05:58:12 | 000,024,576 | ---- | C] () -- C:\Windows\System32\mkunicode.dll
[2013/02/01 17:31:59 | 000,017,408 | ---- | C] () -- C:\Users\Lukas\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2013/02/01 17:25:32 | 000,000,093 | ---- | C] () -- C:\Users\Lukas\AppData\Local\fusioncache.dat
[2013/02/01 17:25:22 | 000,122,448 | ---- | C] () -- C:\Users\Lukas\AppData\Local\GDIPFONTCACHEV1.DAT
[2012/09/29 18:47:28 | 000,000,178 | ---- | C] () -- C:\Windows\System32\Formats.ini
[2012/07/02 16:11:02 | 000,016,384 | ---- | C] () -- C:\Windows\System32\theowl.dll
[2012/02/02 23:00:58 | 000,139,264 | ---- | C] () -- C:\Windows\System32\TCPClient.dll
[2011/11/06 09:24:59 | 000,175,616 | ---- | C] () -- C:\Windows\System32\unrar.dll
[2011/09/03 09:55:47 | 000,000,164 | ---- | C] () -- C:\ProgramData\{701ACAF9-F102-47c2-8907-36246F4DFB51}
[2011/06/30 06:20:36 | 000,000,306 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2011/06/23 23:58:32 | 000,242,259 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll
[2011/06/23 23:58:04 | 000,877,296 | ---- | C] () -- C:\Windows\System32\xvidcore.dll
[2011/06/15 07:37:00 | 001,108,992 | ---- | C] () -- C:\Windows\System32\phidget21.dll
[2011/05/08 09:55:34 | 000,000,064 | ---- | C] () -- C:\Windows\GPlrLanc.dat
[2011/03/10 09:43:13 | 000,000,141 | ---- | C] () -- C:\Windows\disney.ini
[2011/03/10 09:43:02 | 000,000,185 | ---- | C] () -- C:\Windows\disneysy.ini
[2011/02/11 06:26:20 | 000,237,568 | ---- | C] () -- C:\Windows\System32\OptimFROG.dll
[2010/10/09 04:35:59 | 000,479,744 | ---- | C] () -- C:\Users\Laura\AppData\Local\hhizaaa.exe
[2010/09/06 03:19:40 | 000,974,848 | ---- | C] () -- C:\Windows\System32\cis-2.4.dll
[2010/09/06 03:19:40 | 000,081,920 | ---- | C] () -- C:\Windows\System32\issacapi_bs-2.3.dll
[2010/09/06 03:19:40 | 000,065,536 | ---- | C] () -- C:\Windows\System32\issacapi_pe-2.3.dll
[2010/09/06 03:19:40 | 000,057,344 | ---- | C] () -- C:\Windows\System32\issacapi_se-2.3.dll
[2010/08/27 16:18:51 | 000,000,127 | ---- | C] () -- C:\Windows\System32\MRT.INI
[2010/08/27 14:24:12 | 000,002,243 | ---- | C] () -- C:\Users\Laura\AppData\Local\dydsp_navps.dat
[2010/08/27 14:24:05 | 000,248,725 | ---- | C] () -- C:\Users\Laura\AppData\Local\dydsp_nav.dat
[2010/08/27 14:24:04 | 000,003,226 | ---- | C] () -- C:\Users\Laura\AppData\Local\dydsp.dat
[2010/08/26 19:34:36 | 000,038,912 | ---- | C] () -- C:\Windows\System32\libvout_wrapper_plugin.dll
[2010/08/26 19:34:36 | 000,034,816 | ---- | C] () -- C:\Windows\System32\libvmem_plugin.dll
[2010/08/26 19:34:34 | 000,243,200 | ---- | C] () -- C:\Windows\System32\libswscale_plugin.dll
[2010/08/26 19:34:32 | 000,065,536 | ---- | C] () -- C:\Windows\System32\libstream_out_transcode_plugin.dll
[2010/08/26 19:34:32 | 000,035,840 | ---- | C] () -- C:\Windows\System32\libstream_out_smem_plugin.dll
[2010/08/26 19:34:30 | 000,051,200 | ---- | C] () -- C:\Windows\System32\libps_plugin.dll
[2010/08/26 19:34:30 | 000,040,448 | ---- | C] () -- C:\Windows\System32\libpacketizer_mpegvideo_plugin.dll
[2010/08/26 19:34:30 | 000,037,888 | ---- | C] () -- C:\Windows\System32\libmpeg_audio_plugin.dll
[2010/08/26 19:34:30 | 000,033,280 | ---- | C] () -- C:\Windows\System32\libmux_wav_plugin.dll
[2010/08/26 19:34:30 | 000,031,232 | ---- | C] () -- C:\Windows\System32\libmpgv_plugin.dll
[2010/08/26 19:34:28 | 000,039,424 | ---- | C] () -- C:\Windows\System32\libfilesystem_plugin.dll
[2010/08/26 19:34:28 | 000,035,328 | ---- | C] () -- C:\Windows\System32\libmjpeg_plugin.dll
[2010/08/26 19:34:28 | 000,033,280 | ---- | C] () -- C:\Windows\System32\libmemcpymmx_plugin.dll
[2010/08/26 19:34:22 | 007,124,992 | ---- | C] () -- C:\Windows\System32\libavcodec_plugin.dll
[2010/08/26 19:34:22 | 002,263,552 | ---- | C] () -- C:\Windows\System32\libvlccore.dll
[2010/08/26 19:34:22 | 000,101,376 | ---- | C] () -- C:\Windows\System32\libvlc.dll
[2010/08/26 19:34:22 | 000,088,064 | ---- | C] () -- C:\Windows\System32\libaccess_http_plugin.dll
[2010/08/26 19:34:22 | 000,032,256 | ---- | C] () -- C:\Windows\System32\libau_plugin.dll
[2010/06/07 15:42:02 | 000,000,374 | ---- | C] () -- C:\Windows\cdplayer.ini
[2010/05/20 09:28:54 | 000,434,176 | ---- | C] () -- C:\Users\Laura\AppData\Local\hanit.exe
[2010/05/09 12:33:42 | 000,000,000 | ---- | C] () -- C:\Users\Laura\AppData\Roaming\chrtmp
[2010/05/02 09:55:43 | 004,527,821 | -H-- | C] () -- C:\Users\Laura\AppData\Local\IconCache.db
[2010/04/05 20:05:48 | 000,781,312 | ---- | C] () -- C:\Windows\System32\highgui210.dll
[2010/04/05 20:05:16 | 002,085,888 | ---- | C] () -- C:\Windows\System32\cv210.dll
[2010/04/05 20:04:06 | 002,201,088 | ---- | C] () -- C:\Windows\System32\cxcore210.dll
[2010/03/24 07:15:10 | 000,047,104 | ---- | C] () -- C:\Windows\System32\bass_tak.dll
[2010/02/20 02:24:16 | 000,000,088 | ---- | C] () -- C:\Users\Laura\AppData\Local\demcd.bat
[2010/02/18 14:17:58 | 000,002,996 | ---- | C] () -- C:\Users\Laura\AppData\Local\hxqba_navps.dat
[2010/02/18 14:17:57 | 000,248,100 | ---- | C] () -- C:\Users\Laura\AppData\Local\hxqba_nav.dat
[2010/02/18 14:17:57 | 000,003,333 | ---- | C] () -- C:\Users\Laura\AppData\Local\hxqba.dat
[2010/02/04 08:22:11 | 000,110,592 | ---- | C] () -- C:\Windows\System32\FsUsbExDevice.Dll
[2010/02/04 08:22:11 | 000,036,640 | ---- | C] () -- C:\Windows\System32\FsUsbExDisk.Sys
[2010/02/01 08:00:28 | 000,000,093 | ---- | C] () -- C:\Users\Laura\AppData\Local\fusioncache.dat
[2009/12/29 08:16:52 | 000,000,025 | ---- | C] () -- C:\Windows\CDEC46Euro.ini
[2009/11/15 07:10:36 | 000,000,088 | ---- | C] () -- C:\Users\Laura\AppData\Local\xikbmof.bat
[2009/11/09 14:45:14 | 000,000,614 | ---- | C] () -- C:\Windows\System32\ppa_service.dat
[2009/11/09 14:45:12 | 000,128,000 | ---- | C] () -- C:\Windows\System32\ppa_service.exe
[2009/11/09 14:45:12 | 000,043,008 | ---- | C] () -- C:\Windows\System32\ppa_service.dll
[2009/11/09 07:44:08 | 000,004,096 | ---- | C] () -- C:\Windows\d3dx.dat
[2009/09/18 06:57:39 | 000,120,200 | ---- | C] () -- C:\Windows\System32\DLLDEV32i.dll
[2009/09/18 06:57:09 | 000,006,768 | ---- | C] () -- C:\Windows\mgxoschk.ini
[2009/06/14 10:02:46 | 000,015,498 | ---- | C] () -- C:\Windows\VX1000.ini
[2009/05/30 00:42:00 | 000,309,248 | ---- | C] () -- C:\Windows\System32\sqlite36_engine.dll
[2009/04/13 11:08:35 | 000,000,824 | ---- | C] () -- C:\Windows\eReg.dat
[2009/03/12 12:33:33 | 000,000,680 | ---- | C] () -- C:\Users\Laura\AppData\Local\d3d9caps.dat
[2009/03/11 21:01:00 | 000,023,552 | ---- | C] () -- C:\Windows\System32\DirectCOM.dll
[2009/01/27 19:06:16 | 000,106,605 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2009/01/27 19:06:16 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2009/01/27 12:11:10 | 000,000,088 | RHS- | C] () -- C:\Windows\System32\81095FE524.sys
[2009/01/27 11:34:00 | 000,002,516 | -HS- | C] () -- C:\Windows\System32\KGyGaAvL.sys
[2009/01/20 08:57:38 | 000,000,403 | ---- | C] () -- C:\Windows\ODBC.INI
[2009/01/20 08:57:32 | 000,000,035 | ---- | C] () -- C:\Windows\vbaddin.ini
[2008/12/15 19:30:36 | 000,001,008 | ---- | C] () -- C:\Users\Laura\AppData\Roaming\wklnhst.dat
[2008/11/03 14:49:57 | 000,045,056 | ---- | C] () -- C:\Windows\System32\LXF3PMON.DLL
[2008/11/03 14:49:57 | 000,032,768 | ---- | C] () -- C:\Windows\System32\LXF3FXPU.DLL
[2008/11/03 14:49:37 | 000,053,248 | ---- | C] () -- C:\Windows\System32\lxf3oem.dll
[2008/11/03 14:49:37 | 000,012,288 | ---- | C] () -- C:\Windows\System32\LXF3PMRC.DLL
[2008/11/02 16:25:24 | 000,000,069 | ---- | C] () -- C:\Windows\NeroDigital.ini
[2008/11/02 16:22:16 | 000,059,392 | ---- | C] () -- C:\Users\Laura\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008/11/02 15:30:27 | 000,122,448 | ---- | C] () -- C:\Users\Laura\AppData\Local\GDIPFONTCACHEV1.DAT
[2008/11/02 15:29:42 | 000,000,342 | ---- | C] () -- C:\Windows\{9A3BC157-B94F-4EFD-ABA9-1E56DEB00655}_WiseFW.ini
[2008/10/22 00:29:06 | 000,173,550 | ---- | C] () -- C:\Windows\System32\xlive.dll.cat
[2008/09/18 11:25:46 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2008/09/18 11:10:56 | 003,107,788 | ---- | C] () -- C:\Windows\System32\atiumdva.dat
[2008/09/18 11:10:56 | 000,174,819 | ---- | C] () -- C:\Windows\System32\atiicdxx.dat
[2008/09/18 11:10:56 | 000,159,744 | ---- | C] () -- C:\Windows\System32\atitmmxx.dll
[2008/09/18 11:10:56 | 000,090,112 | ---- | C] () -- C:\Windows\System32\atibrtmon.exe
[2008/09/18 11:10:56 | 000,081,920 | ---- | C] () -- C:\Windows\System32\ATIODE.exe
[2008/09/18 11:10:56 | 000,040,960 | ---- | C] () -- C:\Windows\System32\ATIODCLI.exe
[2008/04/25 09:23:38 | 000,012,288 | ---- | C] () -- C:\Windows\System32\EvOnlDiag.dll
[2008/01/21 03:16:22 | 001,572,690 | ---- | C] () -- C:\Windows\System32\PerfStringBackup.INI
[2008/01/21 03:15:58 | 000,676,338 | ---- | C] () -- C:\Windows\System32\perfh007.dat
[2008/01/21 03:15:58 | 000,290,748 | ---- | C] () -- C:\Windows\System32\perfi007.dat
[2008/01/21 03:15:58 | 000,146,104 | ---- | C] () -- C:\Windows\System32\perfc007.dat
[2008/01/21 03:15:58 | 000,036,916 | ---- | C] () -- C:\Windows\System32\perfd007.dat
[2008/01/20 22:24:38 | 000,060,124 | ---- | C] () -- C:\Windows\System32\tcpmon.ini
[2008/01/20 22:24:29 | 000,368,640 | ---- | C] () -- C:\Windows\System32\msjetoledb40.dll
[2007/10/25 12:26:10 | 000,005,632 | ---- | C] () -- C:\Windows\System32\drivers\StarOpen.sys
[2007/06/05 08:20:32 | 000,177,704 | ---- | C] () -- C:\Windows\System32\PSIService.exe
[2006/11/02 08:57:28 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006/11/02 08:47:37 | 000,413,720 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2006/11/02 08:37:35 | 000,030,808 | ---- | C] () -- C:\Windows\Fonts\GlobalUserInterface.CompositeFont
[2006/11/02 08:37:35 | 000,029,779 | ---- | C] () -- C:\Windows\Fonts\GlobalSerif.CompositeFont
[2006/11/02 08:37:35 | 000,026,489 | ---- | C] () -- C:\Windows\Fonts\GlobalSansSerif.CompositeFont
[2006/11/02 08:37:35 | 000,026,040 | ---- | C] () -- C:\Windows\Fonts\GlobalMonospace.CompositeFont
[2006/11/02 08:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006/11/02 08:34:41 | 000,197,632 | ---- | C] () -- C:\Windows\System32\ir32_32.dll
[2006/11/02 06:33:01 | 000,636,064 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2006/11/02 06:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2006/11/02 06:33:01 | 000,120,146 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2006/11/02 06:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2006/11/02 06:24:31 | 000,001,405 | ---- | C] () -- C:\Windows\msdfmap.ini
[2006/11/02 06:23:31 | 000,000,269 | ---- | C] () -- C:\Windows\win.ini
[2006/11/02 06:23:31 | 000,000,219 | ---- | C] () -- C:\Windows\system.ini
[2006/11/02 06:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2006/11/02 04:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2006/11/02 04:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2006/11/02 03:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006/11/02 03:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
[2006/11/02 03:10:37 | 000,053,536 | ---- | C] () -- C:\Windows\System32\dosx.exe
[2006/11/02 03:10:02 | 000,000,718 | ---- | C] () -- C:\Windows\System32\mscdexnt.exe
[2006/11/02 03:10:00 | 000,002,842 | ---- | C] () -- C:\Windows\System32\redir.exe
[2006/11/02 03:09:59 | 000,069,886 | ---- | C] () -- C:\Windows\System32\edit.com
[2006/11/02 03:09:59 | 000,019,694 | ---- | C] () -- C:\Windows\System32\GRAPHICS.COM
[2006/11/02 03:09:59 | 000,000,882 | ---- | C] () -- C:\Windows\System32\share.exe
[2006/11/02 03:09:59 | 000,000,882 | ---- | C] () -- C:\Windows\System32\fastopen.exe
[2006/11/02 03:09:57 | 000,014,710 | ---- | C] () -- C:\Windows\System32\KB16.COM
[2006/11/02 03:09:56 | 000,007,052 | ---- | C] () -- C:\Windows\System32\nlsfunc.exe
[2006/11/02 03:09:55 | 000,039,274 | ---- | C] () -- C:\Windows\System32\mem.exe
[2006/11/02 03:09:55 | 000,001,131 | ---- | C] () -- C:\Windows\System32\LOADFIX.COM
[2006/11/02 03:09:53 | 000,011,753 | ---- | C] () -- C:\Windows\System32\setver.exe
[2006/11/02 03:09:52 | 000,020,634 | ---- | C] () -- C:\Windows\System32\debug.exe
[2006/11/02 03:09:51 | 000,008,424 | ---- | C] () -- C:\Windows\System32\exe2bin.exe
[2006/11/02 03:09:50 | 000,012,642 | ---- | C] () -- C:\Windows\System32\edlin.exe
[2006/11/02 03:09:49 | 000,050,648 | ---- | C] () -- C:\Windows\System32\COMMAND.COM
[2006/11/02 03:09:49 | 000,012,498 | ---- | C] () -- C:\Windows\System32\append.exe
[2006/11/02 03:09:45 | 000,027,097 | ---- | C] () -- C:\Windows\System32\country.sys
[2006/11/02 03:09:44 | 000,042,809 | ---- | C] () -- C:\Windows\System32\KEY01.SYS
[2006/11/02 03:09:44 | 000,042,537 | ---- | C] () -- C:\Windows\System32\KEYBOARD.SYS
[2006/11/02 03:09:42 | 000,009,029 | ---- | C] () -- C:\Windows\System32\ANSI.SYS
[2006/11/02 03:09:41 | 000,004,768 | ---- | C] () -- C:\Windows\System32\HIMEM.SYS
[2006/11/02 03:09:40 | 000,029,274 | ---- | C] () -- C:\Windows\System32\NTDOS412.SYS
[2006/11/02 03:09:38 | 000,029,370 | ---- | C] () -- C:\Windows\System32\NTDOS411.SYS
[2006/11/02 03:09:35 | 000,029,146 | ---- | C] () -- C:\Windows\System32\NTDOS404.SYS
[2006/11/02 03:09:31 | 000,029,146 | ---- | C] () -- C:\Windows\System32\NTDOS804.SYS
[2006/11/02 03:09:29 | 000,027,866 | ---- | C] () -- C:\Windows\System32\NTDOS.SYS
[2006/11/02 03:09:26 | 000,035,536 | ---- | C] () -- C:\Windows\System32\NTIO412.SYS
[2006/11/02 03:09:24 | 000,035,776 | ---- | C] () -- C:\Windows\System32\NTIO411.SYS
[2006/11/02 03:09:23 | 000,034,672 | ---- | C] () -- C:\Windows\System32\NTIO404.SYS
[2006/11/02 03:09:22 | 000,034,672 | ---- | C] () -- C:\Windows\System32\NTIO804.SYS
[2006/11/02 03:09:20 | 000,033,952 | ---- | C] () -- C:\Windows\System32\NTIO.SYS
[2006/11/02 02:25:08 | 000,013,312 | ---- | C] () -- C:\Windows\System32\win87em.dll
[1999/01/22 14:46:58 | 000,065,536 | ---- | C] () -- C:\Windows\System32\MSRTEDIT.DLL
[1997/06/14 07:56:08 | 000,056,832 | ---- | C] () -- C:\Windows\System32\iyvu9_32.dll
========== LOP Check ==========
[2010/05/02 07:34:50 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\AnvSoft
[2009/06/14 13:03:58 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\Audacity
[2014/03/16 12:33:43 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\awesomehp
[2010/05/13 19:16:19 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\Azureus
[2013/02/01 17:10:38 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\Babylon
[2008/11/17 16:26:23 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\Cornelsen
[2011/09/03 09:54:33 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\Degener
[2011/03/10 10:34:04 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\Desperate Housewives
[2009/11/09 08:50:29 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\DriverCure
[2011/12/05 10:17:52 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\DVDVideoSoft
[2011/04/08 00:20:37 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\DVDVideoSoftIEHelpers
[2013/09/05 14:38:57 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\Epson
[2009/11/08 17:33:25 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\FileZilla
[2010/03/06 14:08:51 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\FreeFLVConverter
[2010/11/14 09:23:26 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\GetRightToGo
[2009/05/06 13:06:02 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\gtk-2.0
[2009/08/11 07:59:34 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\KeyProducer
[2008/11/03 15:04:39 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\Lexmark Productivity Studio
[2014/03/16 13:56:32 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\mysearchdial
[2013/06/05 18:48:43 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\Origin
[2014/03/16 13:02:36 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\PC Speed Maximizer
[2010/02/04 08:27:59 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\PC Suite
[2011/10/13 05:52:53 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\Samsung
[2010/05/13 16:40:21 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\SecondLife
[2014/02/20 12:33:16 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\simplitec
[2014/03/16 12:17:32 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\StarOffice8
[2014/03/16 12:34:30 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\SupTab
[2010/02/01 07:55:35 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\T-Online
[2008/12/15 19:30:37 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\Template
[2011/10/10 07:07:48 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\thriXXX
[2014/03/16 12:20:50 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\TuneUp Software
[2014/03/16 12:32:45 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\Uniblue
[2010/05/10 08:59:27 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\UseNeXT
[2011/10/16 10:17:15 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\Utherverse
[2010/06/08 07:53:17 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\uTorrent
[2010/05/09 12:27:22 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\Verimount
[2014/03/16 12:36:21 | 000,000,000 | ---D | M] -- C:\Users\Laura\AppData\Roaming\VOPackage
[2014/02/18 07:21:35 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Ableton
[2014/03/08 13:56:39 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Audacity
[2013/03/07 12:31:28 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Babylon
[2014/03/18 12:01:18 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\BupSystem
[2014/03/18 11:56:40 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\DVDVideoSoft
[2013/05/04 07:25:49 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Epson
[2013/12/06 18:05:33 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\FlowStone
[2013/12/09 08:14:39 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\freegames135
[2013/06/11 17:31:09 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Image-Line
[2014/02/18 07:10:18 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\IminentToolbar
[2013/03/27 21:27:57 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Lexmark Productivity Studio
[2014/01/30 19:52:43 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\MAGIX
[2014/03/05 13:02:46 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\OpenCandy
[2013/12/06 18:30:18 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Origin
[2013/10/04 13:15:31 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Samsung
[2014/03/18 12:01:11 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Security System 2
[2014/01/30 19:54:53 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\simplitec
[2014/03/18 12:01:42 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\SimplyTech
[2014/03/05 13:09:11 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\TuneUp Software
[2013/12/09 08:12:26 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Windows Net Data
[2014/02/18 07:21:35 | 000,000,000 | ---D | M] -- C:\ProgramData\Ableton
[2008/11/02 15:22:00 | 000,000,000 | -HSD | M] -- C:\ProgramData\Anwendungsdaten
[2006/11/02 09:02:03 | 000,000,000 | -HSD | M] -- C:\ProgramData\Application Data
[2009/03/25 11:19:27 | 000,000,000 | ---D | M] -- C:\ProgramData\Azureus
[2013/06/07 15:48:20 | 000,000,000 | ---D | M] -- C:\ProgramData\Babylon
[2011/06/30 06:20:19 | 000,000,000 | ---D | M] -- C:\ProgramData\BVRP Software
[2014/03/05 13:05:46 | 000,000,000 | -H-D | M] -- C:\ProgramData\Common Files
[2013/12/09 08:13:55 | 000,000,000 | ---D | M] -- C:\ProgramData\Conduit
[2011/09/04 07:26:37 | 000,000,000 | ---D | M] -- C:\ProgramData\Degener
[2006/11/02 09:02:03 | 000,000,000 | -HSD | M] -- C:\ProgramData\Desktop
[2006/11/02 09:02:03 | 000,000,000 | -HSD | M] -- C:\ProgramData\Documents
[2008/11/02 15:22:00 | 000,000,000 | -HSD | M] -- C:\ProgramData\Dokumente
[2009/11/15 14:28:15 | 000,000,000 | ---D | M] -- C:\ProgramData\DriverCure
[2012/02/13 17:41:14 | 000,000,000 | -HSD | M] -- C:\ProgramData\DSS
[2011/06/29 07:12:15 | 000,000,000 | ---D | M] -- C:\ProgramData\EA Core
[2013/06/06 09:58:08 | 000,000,000 | ---D | M] -- C:\ProgramData\EA Logs
[2013/06/05 18:42:54 | 000,000,000 | ---D | M] -- C:\ProgramData\Electronic Arts
[2011/06/30 06:16:45 | 000,000,000 | ---D | M] -- C:\ProgramData\eMule
[2013/05/03 11:55:53 | 000,000,000 | ---D | M] -- C:\ProgramData\EPSON
[2008/11/02 15:22:00 | 000,000,000 | -HSD | M] -- C:\ProgramData\Favoriten
[2006/11/02 09:02:03 | 000,000,000 | -HSD | M] -- C:\ProgramData\Favorites
[2009/01/27 05:32:45 | 000,000,000 | ---D | M] -- C:\ProgramData\fsc
[2010/11/09 14:47:13 | 000,000,000 | ---D | M] -- C:\ProgramData\ICQ
[2014/03/16 12:34:39 | 000,000,000 | ---D | M] -- C:\ProgramData\IePluginService
[2009/01/27 06:24:34 | 000,000,000 | ---D | M] -- C:\ProgramData\Lexmark 2600 Series
[2014/01/30 19:52:43 | 000,000,000 | ---D | M] -- C:\ProgramData\MAGIX
[2014/03/16 13:57:05 | 000,000,000 | ---D | M] -- C:\ProgramData\MovieMode
[2010/02/20 11:22:49 | 000,000,000 | ---D | M] -- C:\ProgramData\Netzmanager
[2013/12/23 15:27:54 | 000,000,000 | ---D | M] -- C:\ProgramData\Oracle
[2013/12/06 18:30:09 | 000,000,000 | ---D | M] -- C:\ProgramData\Origin
[2009/11/09 08:46:30 | 000,000,000 | ---D | M] -- C:\ProgramData\ParetoLogic
[2010/02/04 08:28:00 | 000,000,000 | ---D | M] -- C:\ProgramData\PC Suite
[2014/03/18 11:25:02 | 000,000,000 | ---D | M] -- C:\ProgramData\Registry Helper
[2011/07/01 12:18:07 | 000,000,000 | ---D | M] -- C:\ProgramData\Samsung
[2014/01/30 19:54:53 | 000,000,000 | ---D | M] -- C:\ProgramData\simplitec
[2006/11/02 09:02:03 | 000,000,000 | -HSD | M] -- C:\ProgramData\Start Menu
[2008/11/02 15:22:00 | 000,000,000 | -HSD | M] -- C:\ProgramData\Startmenü
[2010/02/03 07:47:26 | 000,000,000 | ---D | M] -- C:\ProgramData\T-Home
[2010/02/01 07:54:11 | 000,000,000 | ---D | M] -- C:\ProgramData\T-Online
[2013/02/01 17:08:42 | 000,000,000 | ---D | M] -- C:\ProgramData\Tarma Installer
[2014/03/16 13:55:02 | 000,000,000 | ---D | M] -- C:\ProgramData\TEMP
[2006/11/02 09:02:04 | 000,000,000 | -HSD | M] -- C:\ProgramData\Templates
[2009/07/05 12:17:27 | 000,000,000 | ---D | M] -- C:\ProgramData\ThumbnailCache4R
[2014/03/08 13:09:59 | 000,000,000 | ---D | M] -- C:\ProgramData\TuneUp Software
[2013/05/03 10:54:32 | 000,000,000 | ---D | M] -- C:\ProgramData\UDL
[2008/11/02 15:22:00 | 000,000,000 | -HSD | M] -- C:\ProgramData\Vorlagen
[2009/11/16 16:51:21 | 000,000,000 | ---D | M] -- C:\ProgramData\WindowsSearch
[2014/03/16 12:34:29 | 000,000,000 | ---D | M] -- C:\ProgramData\WPM
[2008/11/02 15:30:00 | 000,000,000 | ---D | M] -- C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}
[2010/02/01 09:44:55 | 000,000,000 | -H-D | M] -- C:\ProgramData\{B2EE6530-D038-4C90-9039-001247EB238A}
[2014/03/05 13:05:47 | 000,000,000 | -HSD | M] -- C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
[2014/03/18 11:21:03 | 000,000,368 | ---- | M] () -- C:\Windows\Tasks\APSnotifierPP1.job
[2014/03/18 11:21:03 | 000,000,366 | ---- | M] () -- C:\Windows\Tasks\APSnotifierPP2.job
[2014/03/18 11:21:03 | 000,000,366 | ---- | M] () -- C:\Windows\Tasks\APSnotifierPP3.job
[2014/03/27 13:58:01 | 000,000,282 | ---- | M] () -- C:\Windows\Tasks\FF Watcher {57DEB8DA-435C-41E5-AAA9-1BB0A7C138A9}.job
[2014/03/27 13:59:34 | 000,003,068 | ---- | M] () -- C:\Windows\Tasks\HQTotalS-chromeinstaller.job
[2014/03/27 13:58:01 | 000,001,440 | ---- | M] () -- C:\Windows\Tasks\HQTotalS-codedownloader.job
[2014/03/27 13:59:32 | 000,001,340 | ---- | M] () -- C:\Windows\Tasks\HQTotalS-enabler.job
[2014/03/27 13:59:34 | 000,002,502 | ---- | M] () -- C:\Windows\Tasks\HQTotalS-firefoxinstaller.job
[2014/03/27 13:59:32 | 000,001,478 | ---- | M] () -- C:\Windows\Tasks\HQTotalS-updater.job
[2014/03/27 13:58:14 | 000,003,088 | ---- | M] () -- C:\Windows\Tasks\media enhance-chromeinstaller.job
[2014/03/27 13:58:01 | 000,001,526 | ---- | M] () -- C:\Windows\Tasks\media enhance-codedownloader.job
[2014/03/27 13:59:32 | 000,001,426 | ---- | M] () -- C:\Windows\Tasks\media enhance-enabler.job
[2014/03/27 13:58:13 | 000,002,342 | ---- | M] () -- C:\Windows\Tasks\media enhance-firefoxinstaller.job
[2014/03/27 13:58:15 | 000,001,564 | ---- | M] () -- C:\Windows\Tasks\media enhance-updater.job
[2014/03/27 13:58:01 | 000,000,368 | ---- | M] () -- C:\Windows\Tasks\Re-markit Update.job
[2014/03/27 13:58:02 | 000,000,366 | ---- | M] () -- C:\Windows\Tasks\Re-markit_wd.job
[2014/03/24 10:58:30 | 000,032,516 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2014/03/27 14:00:22 | 000,000,266 | ---- | M] () -- C:\Windows\Tasks\SpeedUpMyPC Maintenance.job
[2014/03/27 13:58:03 | 000,000,260 | ---- | M] () -- C:\Windows\Tasks\SpeedUpMyPC Startup.job
========== Purity Check ==========
========== Files - Unicode (All) ==========
[2013/09/28 14:06:23 | 098,442,955 | ---- | M] ()(C:\Windows\System32\????) -- C:\Windows\System32\⬹᭄—
[2013/09/28 14:06:23 | 098,442,955 | ---- | C] ()(C:\Windows\System32\????) -- C:\Windows\System32\⬹᭄—
========== Alternate Data Streams ==========
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:AD022376
@Alternate Data Stream - 117 bytes -> C:\ProgramData\TEMP:C25C9263
< End of report > |