|   | Dennisdc | 20.11.2010 20:43 |  
 Bin Froh das es hier Leute gibt die mit den Daten in den Logfiles was anfangen können. Dafür und für die Hilfe schonmal Danke!  
Ich mache Online Banking und auch Einkäufe bei Ebay und Amazon etc.  
Hier das ergebnis des Scans mit OTL.: Extras.txt als anhang OTL.txt war Leider zu Gross.    Code: 
 OTL logfile created on: 20.11.2010 20:18:11 - Run 1OTL by OldTimer - Version 3.2.17.3     Folder = C:\Users\Dennis\Downloads
 64bit- Ultimate Edition  (Version = 6.1.7600) - Type = NTWorkstation
 Internet Explorer (Version = 8.0.7600.16385)
 Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
 4,00 Gb Total Physical Memory | 3,00 Gb Available Physical Memory | 75,00% Memory free
 8,00 Gb Paging File | 7,00 Gb Available in Paging File | 86,00% Paging File free
 Paging file location(s): ?:\pagefile.sys [binary data]
 
 %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
 Drive C: | 109,31 Gb Total Space | 87,47 Gb Free Space | 80,03% Space Free | Partition Type: NTFS
 Drive D: | 149,04 Gb Total Space | 38,61 Gb Free Space | 25,91% Space Free | Partition Type: NTFS
 Drive E: | 356,45 Gb Total Space | 44,12 Gb Free Space | 12,38% Space Free | Partition Type: NTFS
 
 Computer Name: DENNIS-PC | User Name: Dennis | Logged in as Administrator.
 Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
 Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
 ========== Processes (SafeList) ==========
 
 PRC - C:\Users\Dennis\Downloads\OTL.exe (OldTimer Tools)
 PRC - C:\Windows\SysWOW64\PnkBstrA.exe ()
 PRC - E:\Programme\Firefox\firefox.exe (Mozilla Corporation)
 PRC - E:\Programme\Firefox\plugin-container.exe (Mozilla Corporation)
 PRC - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
 PRC - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
 PRC - E:\Programme\Tunngle\TnglCtrl.exe (Tunngle.net GmbH)
 PRC - C:\Program Files (x86)\MOUSE Editor\MouseEditor.exe ()
 
 
 ========== Modules (SafeList) ==========
 
 MOD - C:\Users\Dennis\Downloads\OTL.exe (OldTimer Tools)
 MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc\comctl32.dll (Microsoft Corporation)
 
 
 ========== Win32 Services (SafeList) ==========
 
 SRV:64bit: - (PnkBstrA) -- C:\Windows\SysNative\PnkBstrA.exe File not found
 SRV:64bit: - (UxTuneUp) -- C:\Windows\SysNative\uxtuneup.dll (TuneUp Software)
 SRV:64bit: - (AppMgmt) -- C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
 SRV - (Steam Client Service) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation)
 SRV - (PnkBstrA) -- C:\Windows\SysWOW64\PnkBstrA.exe ()
 SRV - (Stereo Service) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
 SRV - (TuneUp.Defrag) -- E:\Programme\TuneUp Utilities 2010\TuneUpDefragService.exe (TuneUp Software)
 SRV - (TuneUp.UtilitiesSvc) -- E:\Programme\TuneUp Utilities 2010\TuneUpUtilitiesService64.exe (TuneUp Software)
 SRV - (UxTuneUp) -- C:\Windows\SysWOW64\uxtuneup.dll (TuneUp Software)
 SRV - (TunngleService) -- E:\Programme\Tunngle\TnglCtrl.exe (Tunngle.net GmbH)
 SRV - (nTuneService) -- C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneService.exe (NVIDIA)
 SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
 
 
 ========== Driver Services (SafeList) ==========
 
 DRV:64bit: - (sptd) -- C:\Windows\SysNative\drivers\sptd.sys ()
 DRV:64bit: - (tapoas) -- C:\Windows\SysNative\drivers\tapoas.sys (The OpenVPN Project)
 DRV:64bit: - (tap0901t) TAP-Win32 Adapter V9 (Tunngle) -- C:\Windows\SysNative\drivers\tap0901t.sys (Tunngle.net)
 DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
 DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
 DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
 DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
 DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
 DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
 DRV:64bit: - (Ntfs) -- C:\Windows\SysNative\wbem\ntfs.mof ()
 DRV:64bit: - (NVENETFD) -- C:\Windows\SysNative\drivers\nvm62x64.sys (NVIDIA Corporation)
 DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
 DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
 DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
 DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
 DRV:64bit: - (cmuda3) -- C:\Windows\SysNative\drivers\cmudax3.sys (C-Media Inc)
 DRV:64bit: - (NVNET) -- C:\Windows\SysNative\drivers\nvmf6264.sys (NVIDIA Corporation)
 DRV - (TuneUpUtilitiesDrv) -- E:\Programme\TuneUp Utilities 2010\TuneUpUtilitiesDriver64.sys (TuneUp Software)
 
 
 ========== Standard Registry (SafeList) ==========
 
 
 ========== Internet Explorer ==========
 
 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
 
 
 IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
 
 
 IE - HKU\S-1-5-21-3015251605-874073378-3277688687-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
 IE - HKU\S-1-5-21-3015251605-874073378-3277688687-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
 IE - HKU\S-1-5-21-3015251605-874073378-3277688687-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = FC 44 02 C8 76 88 CB 01  [binary data]
 IE - HKU\S-1-5-21-3015251605-874073378-3277688687-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
 ========== FireFox ==========
 
 FF - prefs.js..browser.startup.homepage: "www.google.de"
 FF - prefs.js..extensions.enabledItems: {ACAA314B-EEBA-48e4-AD47-84E31C44796C}:1.0.1
 FF - prefs.js..extensions.enabledItems: battlefieldheroespatcher@ea.com:5.0.31.0
 
 FF - HKLM\software\mozilla\Mozilla Firefox 3.6.10\extensions\\Components: E:\Programme\Firefox\components [2010.10.31 04:00:05 | 000,000,000 | ---D | M]
 FF - HKLM\software\mozilla\Mozilla Firefox 3.6.10\extensions\\Plugins: E:\Programme\Firefox\plugins [2010.11.16 21:59:50 | 000,000,000 | ---D | M]
 
 [2010.11.16 04:49:41 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\mozilla\Extensions
 [2010.11.16 04:49:41 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\mozilla\Extensions\net.openvpn.client
 [2010.11.20 19:50:52 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\mozilla\Firefox\Profiles\pllzjhaj.default\extensions
 [2010.10.18 20:54:03 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Dennis\AppData\Roaming\mozilla\Firefox\Profiles\pllzjhaj.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}
 [2010.11.05 22:29:18 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\mozilla\Firefox\Profiles\pllzjhaj.default\extensions\battlefieldheroespatcher@ea.com
 
 O1 HOSTS File: ([2009.06.10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
 O4:64bit: - HKLM..\Run: [CmPCIaudio] C:\Windows\Syswow64\CMICNFG3.DLL (C-Media Corporation)
 O4:64bit: - HKLM..\Run: [itype] C:\Program Files\Microsoft IntelliType Pro\itype.exe (Microsoft Corporation)
 O4 - HKLM..\Run: [DivXUpdate] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
 O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
 O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
 O4 - HKU\S-1-5-21-3015251605-874073378-3277688687-1001..\Run: [ASRockIES]  File not found
 O4 - HKU\S-1-5-21-3015251605-874073378-3277688687-1001..\Run: [ASRockOCTuner]  File not found
 O4 - HKU\S-1-5-21-3015251605-874073378-3277688687-1001..\Run: [OscarEditor] C:\Program Files (x86)\MOUSE Editor\MouseEditor.exe ()
 O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\SysWow64\mctadmin.exe File not found
 O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\SysWow64\mctadmin.exe File not found
 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
 O8:64bit: - Extra context menu item: Free YouTube to Mp3 Converter - C:\Users\Dennis\AppData\Roaming\DVDVideoSoftIEHelpers\youtubetomp3.htm ()
 O8 - Extra context menu item: Free YouTube to Mp3 Converter - C:\Users\Dennis\AppData\Roaming\DVDVideoSoftIEHelpers\youtubetomp3.htm ()
 O13 - gopher Prefix: missing
 O13 - gopher Prefix: missing
 O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15)
 O16 - DPF: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15)
 O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15)
 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 80.69.100.206 80.69.100.214
 O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
 O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
 O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) -  File not found
 O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
 O20 - HKLM Winlogon: VMApplet - (/pagefile) -  File not found
 O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
 O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
 O32 - HKLM CDRom: AutoRun - 1
 O32 - AutoRun File - [2008.08.15 16:38:46 | 000,000,000 | ---- | M] () - D:\AUTOEXEC.BAT -- [ NTFS ]
 O32 - AutoRun File - [2010.09.14 01:01:49 | 000,000,000 | ---- | M] () - E:\autorun.inf17BE90E4 -- [ NTFS ]
 O34 - HKLM BootExecute: (autocheck autochk *) -  File not found
 O35:64bit: - HKLM\..comfile [open] -- "%1" %*
 O35:64bit: - HKLM\..exefile [open] -- "%1" %*
 O35 - HKLM\..comfile [open] -- "%1" %*
 O35 - HKLM\..exefile [open] -- "%1" %*
 O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
 O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
 O37 - HKLM\...com [@ = comfile] -- "%1" %*
 O37 - HKLM\...exe [@ = exefile] -- "%1" %*
 
 NetSvcs:64bit: UxTuneUp - C:\Windows\SysNative\uxtuneup.dll (TuneUp Software)
 NetSvcs:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
 
 
 SafeBootMin:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
 SafeBootMin:64bit: Base - Driver Group
 SafeBootMin:64bit: Boot Bus Extender - Driver Group
 SafeBootMin:64bit: Boot file system - Driver Group
 SafeBootMin:64bit: File system - Driver Group
 SafeBootMin:64bit: Filter - Driver Group
 SafeBootMin:64bit: HelpSvc - Service
 SafeBootMin:64bit: PCI Configuration - Driver Group
 SafeBootMin:64bit: PNP Filter - Driver Group
 SafeBootMin:64bit: Primary disk - Driver Group
 SafeBootMin:64bit: sacsvr - Service
 SafeBootMin:64bit: SCSI Class - Driver Group
 SafeBootMin:64bit: System Bus Extender - Driver Group
 SafeBootMin:64bit: vmms - Service
 SafeBootMin:64bit: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
 SafeBootMin:64bit: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
 SafeBootMin:64bit: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
 SafeBootMin:64bit: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
 SafeBootMin:64bit: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
 SafeBootMin:64bit: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
 SafeBootMin:64bit: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
 SafeBootMin:64bit: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
 SafeBootMin:64bit: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
 SafeBootMin:64bit: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
 SafeBootMin:64bit: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
 SafeBootMin:64bit: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
 SafeBootMin:64bit: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
 SafeBootMin:64bit: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
 SafeBootMin:64bit: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
 SafeBootMin:64bit: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
 SafeBootMin:64bit: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
 SafeBootMin: Base - Driver Group
 SafeBootMin: Boot Bus Extender - Driver Group
 SafeBootMin: Boot file system - Driver Group
 SafeBootMin: File system - Driver Group
 SafeBootMin: Filter - Driver Group
 SafeBootMin: HelpSvc - Service
 SafeBootMin: PCI Configuration - Driver Group
 SafeBootMin: PNP Filter - Driver Group
 SafeBootMin: Primary disk - Driver Group
 SafeBootMin: sacsvr - Service
 SafeBootMin: SCSI Class - Driver Group
 SafeBootMin: System Bus Extender - Driver Group
 SafeBootMin: vmms - Service
 SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
 SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
 SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
 SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
 SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
 SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
 SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
 SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
 SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
 SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
 SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
 SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
 SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
 SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
 SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
 SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
 SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
 
 SafeBootNet:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
 SafeBootNet:64bit: Base - Driver Group
 SafeBootNet:64bit: Boot Bus Extender - Driver Group
 SafeBootNet:64bit: Boot file system - Driver Group
 SafeBootNet:64bit: File system - Driver Group
 SafeBootNet:64bit: Filter - Driver Group
 SafeBootNet:64bit: HelpSvc - Service
 SafeBootNet:64bit: Messenger - Service
 SafeBootNet:64bit: NDIS Wrapper - Driver Group
 SafeBootNet:64bit: NetBIOSGroup - Driver Group
 SafeBootNet:64bit: NetDDEGroup - Driver Group
 SafeBootNet:64bit: Network - Driver Group
 SafeBootNet:64bit: NetworkProvider - Driver Group
 SafeBootNet:64bit: PCI Configuration - Driver Group
 SafeBootNet:64bit: PNP Filter - Driver Group
 SafeBootNet:64bit: PNP_TDI - Driver Group
 SafeBootNet:64bit: Primary disk - Driver Group
 SafeBootNet:64bit: rdsessmgr - Service
 SafeBootNet:64bit: sacsvr - Service
 SafeBootNet:64bit: SCSI Class - Driver Group
 SafeBootNet:64bit: Streams Drivers - Driver Group
 SafeBootNet:64bit: System Bus Extender - Driver Group
 SafeBootNet:64bit: TDI - Driver Group
 SafeBootNet:64bit: vmms - Service
 SafeBootNet:64bit: WudfUsbccidDriver - Driver
 SafeBootNet:64bit: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
 SafeBootNet:64bit: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
 SafeBootNet:64bit: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
 SafeBootNet:64bit: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
 SafeBootNet:64bit: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
 SafeBootNet:64bit: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
 SafeBootNet:64bit: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
 SafeBootNet:64bit: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
 SafeBootNet:64bit: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
 SafeBootNet:64bit: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
 SafeBootNet:64bit: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
 SafeBootNet:64bit: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
 SafeBootNet:64bit: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
 SafeBootNet:64bit: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
 SafeBootNet:64bit: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
 SafeBootNet:64bit: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
 SafeBootNet:64bit: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
 SafeBootNet:64bit: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
 SafeBootNet:64bit: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
 SafeBootNet:64bit: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
 SafeBootNet:64bit: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
 SafeBootNet:64bit: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
 SafeBootNet: Base - Driver Group
 SafeBootNet: Boot Bus Extender - Driver Group
 SafeBootNet: Boot file system - Driver Group
 SafeBootNet: File system - Driver Group
 SafeBootNet: Filter - Driver Group
 SafeBootNet: HelpSvc - Service
 SafeBootNet: Messenger - Service
 SafeBootNet: NDIS Wrapper - Driver Group
 SafeBootNet: NetBIOSGroup - Driver Group
 SafeBootNet: NetDDEGroup - Driver Group
 SafeBootNet: Network - Driver Group
 SafeBootNet: NetworkProvider - Driver Group
 SafeBootNet: PCI Configuration - Driver Group
 SafeBootNet: PNP Filter - Driver Group
 SafeBootNet: PNP_TDI - Driver Group
 SafeBootNet: Primary disk - Driver Group
 SafeBootNet: rdsessmgr - Service
 SafeBootNet: sacsvr - Service
 SafeBootNet: SCSI Class - Driver Group
 SafeBootNet: Streams Drivers - Driver Group
 SafeBootNet: System Bus Extender - Driver Group
 SafeBootNet: TDI - Driver Group
 SafeBootNet: vmms - Service
 SafeBootNet: WudfUsbccidDriver - Driver
 SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
 SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
 SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
 SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
 SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
 SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
 SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
 SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
 SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
 SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
 SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
 SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
 SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
 SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
 SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
 SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
 SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
 SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
 SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
 SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
 SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
 SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
 
 ActiveX:64bit: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 12.0
 ActiveX:64bit: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
 ActiveX:64bit: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
 ActiveX:64bit: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
 ActiveX:64bit: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
 ActiveX:64bit: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
 ActiveX:64bit: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6
 ActiveX:64bit: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
 ActiveX:64bit: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
 ActiveX:64bit: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
 ActiveX:64bit: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
 ActiveX:64bit: {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7
 ActiveX:64bit: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
 ActiveX:64bit: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\System32\ie4uinit.exe -BaseSettings
 ActiveX:64bit: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\system32\Rundll32.exe C:\Windows\system32\mscories.dll,Install
 ActiveX:64bit: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
 ActiveX:64bit: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
 ActiveX:64bit: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
 ActiveX:64bit: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
 ActiveX:64bit: {FEBEF00C-046D-438D-8A88-BF94A6C9E703} - .NET Framework
 ActiveX:64bit: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - %SystemRoot%\system32\unregmp2.exe /ShowWMP
 ActiveX:64bit: >{26923b43-4d38-484f-9b9e-de460746276c} - C:\Windows\System32\ie4uinit.exe -UserIconConfig
 ActiveX:64bit: >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
 ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - Java (Sun)
 ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 12.0
 ActiveX: {25FFAAD0-F4A3-4164-95FF-4461E9F35D51} - .NET Framework
 ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
 ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
 ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles(x86)%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
 ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
 ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
 ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6
 ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
 ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
 ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
 ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
 ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7
 ActiveX: {7C028AF8-F614-47B3-82DA-BA94E41B1089} - .NET Framework
 ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
 ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\SysWOW64\ie4uinit.exe -BaseSettings
 ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install
 ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
 ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
 ActiveX: {D27CDB6E-AE6D-11CF-96B8-444553540000} - Adobe Flash Player
 ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
 ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
 ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - %SystemRoot%\system32\unregmp2.exe /ShowWMP
 ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - C:\Windows\SysWOW64\ie4uinit.exe -UserIconConfig
 ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - "C:\Windows\SysWOW64\rundll32.exe" "C:\Windows\SysWOW64\iedkcs32.dll",BrandIEActiveSetup SIGNUP
 
 Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
 Drivers32:64bit: VIDC.FPS1 - frapsv64.dll (Beepa P/L)
 Drivers32:64bit: VIDC.XFR1 - xfcodec64.dll ()
 Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
 Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
 Drivers32: vidc.DIVX - C:\Windows\SysWow64\DivX.dll (DivX, Inc.)
 Drivers32: VIDC.FPS1 - C:\Windows\SysWow64\frapsvid.dll (Beepa P/L)
 Drivers32: VIDC.XFR1 - C:\Windows\SysWow64\xfcodec.dll ()
 Drivers32: vidc.XVID - C:\Windows\SysWow64\xvidvfw.dll ()
 Drivers32: vidc.yv12 - C:\Windows\SysWow64\DivX.dll (DivX, Inc.)
 
 CREATERESTOREPOINT
 Restore point Set: OTL Restore Point
 
 ========== Files/Folders - Created Within 30 Days ==========
 
 [2010.11.20 05:53:05 | 000,000,000 | ---D | C] -- C:\Users\Dennis\AppData\Roaming\Malwarebytes
 [2010.11.20 05:52:58 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
 [2010.11.20 05:52:57 | 000,024,664 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
 [2010.11.20 05:52:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
 [2010.11.20 05:32:34 | 000,000,000 | -H-D | C] -- C:\Users\Public\Documents\Server
 [2010.11.16 23:37:31 | 000,000,000 | ---D | C] -- C:\Users\Dennis\Documents\Criterion Games
 [2010.11.16 23:37:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Electronic Arts
 [2010.11.16 23:37:30 | 000,000,000 | ---D | C] -- C:\ProgramData\EA Core
 [2010.11.16 23:27:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Solidshield
 [2010.11.16 04:49:40 | 000,000,000 | ---D | C] -- C:\Users\Dennis\AppData\Roaming\OpenVPN Technologies
 [2010.11.16 04:49:40 | 000,000,000 | ---D | C] -- C:\Users\Dennis\AppData\Local\OpenVPN Technologies
 [2010.11.16 03:28:16 | 000,000,000 | ---D | C] -- C:\Users\Dennis\AppData\Roaming\RealHideIP
 [2010.11.16 03:28:16 | 000,000,000 | ---D | C] -- C:\ProgramData\RealHideIP
 [2010.11.14 15:15:54 | 000,000,000 | ---D | C] -- C:\Users\Dennis\Documents\WBGames
 [2010.11.13 07:11:20 | 000,000,000 | ---D | C] -- C:\Users\Dennis\AppData\Roaming\Media Player Classic
 [2010.11.12 15:22:34 | 000,000,000 | ---D | C] -- C:\Users\Dennis\Documents\Square Enix
 [2010.11.12 02:45:54 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\xlive
 [2010.11.12 02:45:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Games for Windows - LIVE
 [2010.11.11 22:12:32 | 000,000,000 | ---D | C] -- C:\Users\Dennis\Documents\My Games
 [2010.11.09 21:48:57 | 000,000,000 | ---D | C] -- C:\Users\Dennis\AppData\Local\Activision
 [2010.11.09 21:34:54 | 000,527,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_7.dll
 [2010.11.09 21:34:54 | 000,518,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_7.dll
 [2010.11.09 21:34:54 | 000,239,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_7.dll
 [2010.11.09 21:34:54 | 000,176,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_7.dll
 [2010.11.09 21:34:54 | 000,077,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_5.dll
 [2010.11.09 21:34:54 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_5.dll
 [2010.11.09 21:34:53 | 002,526,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_43.dll
 [2010.11.09 21:34:53 | 002,401,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_43.dll
 [2010.11.09 21:34:53 | 002,106,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_43.dll
 [2010.11.09 21:34:53 | 001,998,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_43.dll
 [2010.11.09 21:34:53 | 001,907,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dcsx_43.dll
 [2010.11.09 21:34:53 | 001,868,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dcsx_43.dll
 [2010.11.09 21:34:53 | 000,511,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_43.dll
 [2010.11.09 21:34:53 | 000,470,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_43.dll
 [2010.11.09 21:34:53 | 000,276,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx11_43.dll
 [2010.11.09 21:34:53 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx11_43.dll
 [2010.11.09 21:34:52 | 000,530,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_6.dll
 [2010.11.09 21:34:52 | 000,528,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_6.dll
 [2010.11.09 21:34:52 | 000,517,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_5.dll
 [2010.11.09 21:34:52 | 000,515,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_5.dll
 [2010.11.09 21:34:52 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_6.dll
 [2010.11.09 21:34:52 | 000,176,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_6.dll
 [2010.11.09 21:34:52 | 000,078,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_4.dll
 [2010.11.09 21:34:52 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_4.dll
 [2010.11.09 21:34:52 | 000,024,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_7.dll
 [2010.11.09 21:34:52 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_7.dll
 [2010.11.09 21:34:51 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_5.dll
 [2010.11.09 21:34:51 | 000,176,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_5.dll
 [2010.11.09 21:34:50 | 002,582,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_42.dll
 [2010.11.09 21:34:50 | 001,974,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_42.dll
 [2010.11.09 21:34:49 | 005,554,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dcsx_42.dll
 [2010.11.09 21:34:49 | 005,501,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dcsx_42.dll
 [2010.11.09 21:34:49 | 000,285,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx11_42.dll
 [2010.11.09 21:34:49 | 000,235,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx11_42.dll
 [2010.11.09 21:34:48 | 000,523,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_42.dll
 [2010.11.09 21:34:48 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_42.dll
 [2010.11.09 21:34:47 | 002,475,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_42.dll
 [2010.11.09 21:34:47 | 002,430,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_41.dll
 [2010.11.09 21:34:47 | 001,892,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_42.dll
 [2010.11.09 21:34:47 | 001,846,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_41.dll
 [2010.11.09 21:34:47 | 000,520,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_41.dll
 [2010.11.09 21:34:47 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_41.dll
 [2010.11.09 21:34:45 | 005,425,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_41.dll
 [2010.11.09 21:34:45 | 004,178,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_41.dll
 [2010.11.09 21:34:45 | 000,521,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_4.dll
 [2010.11.09 21:34:45 | 000,517,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_4.dll
 [2010.11.09 21:34:45 | 000,073,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_3.dll
 [2010.11.09 21:34:45 | 000,069,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_3.dll
 [2010.11.09 21:34:44 | 002,605,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_40.dll
 [2010.11.09 21:34:44 | 002,036,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_40.dll
 [2010.11.09 21:34:44 | 000,519,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_40.dll
 [2010.11.09 21:34:44 | 000,452,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_40.dll
 [2010.11.09 21:34:44 | 000,235,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_4.dll
 [2010.11.09 21:34:44 | 000,174,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_4.dll
 [2010.11.09 21:34:44 | 000,024,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_6.dll
 [2010.11.09 21:34:44 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_6.dll
 [2010.11.09 21:34:42 | 005,631,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_40.dll
 [2010.11.09 21:34:42 | 004,379,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_40.dll
 [2010.11.09 21:34:42 | 000,518,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_3.dll
 [2010.11.09 21:34:42 | 000,514,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_3.dll
 [2010.11.09 21:34:42 | 000,513,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_2.dll
 [2010.11.09 21:34:42 | 000,509,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_2.dll
 [2010.11.09 21:34:42 | 000,235,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_3.dll
 [2010.11.09 21:34:42 | 000,175,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_3.dll
 [2010.11.09 21:34:42 | 000,074,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_2.dll
 [2010.11.09 21:34:42 | 000,072,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_1.dll
 [2010.11.09 21:34:42 | 000,070,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_2.dll
 [2010.11.09 21:34:42 | 000,068,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_1.dll
 [2010.11.09 21:34:42 | 000,025,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_5.dll
 [2010.11.09 21:34:42 | 000,023,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_5.dll
 [2010.11.09 21:34:41 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_2.dll
 [2010.11.09 21:34:41 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_2.dll
 [2010.11.09 21:34:40 | 001,942,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_39.dll
 [2010.11.09 21:34:40 | 001,493,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_39.dll
 [2010.11.09 21:34:40 | 000,540,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_39.dll
 [2010.11.09 21:34:40 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_39.dll
 [2010.11.09 21:34:39 | 004,992,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_39.dll
 [2010.11.09 21:34:39 | 003,851,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_39.dll
 [2010.11.09 21:34:39 | 000,511,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_1.dll
 [2010.11.09 21:34:39 | 000,507,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_1.dll
 [2010.11.09 21:34:39 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_1.dll
 [2010.11.09 21:34:39 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_1.dll
 [2010.11.09 21:34:39 | 000,068,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_0.dll
 [2010.11.09 21:34:39 | 000,065,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_0.dll
 [2010.11.09 21:34:38 | 000,028,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_4.dll
 [2010.11.09 21:34:38 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_4.dll
 [2010.11.09 21:34:37 | 001,941,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_38.dll
 [2010.11.09 21:34:37 | 001,491,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_38.dll
 [2010.11.09 21:34:37 | 000,540,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_38.dll
 [2010.11.09 21:34:37 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_38.dll
 [2010.11.09 21:34:36 | 004,991,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_38.dll
 [2010.11.09 21:34:36 | 003,850,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_38.dll
 [2010.11.09 21:34:36 | 000,489,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_0.dll
 [2010.11.09 21:34:36 | 000,479,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_0.dll
 [2010.11.09 21:34:36 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_0.dll
 [2010.11.09 21:34:36 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_0.dll
 [2010.11.09 21:34:36 | 000,028,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_3.dll
 [2010.11.09 21:34:36 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_3.dll
 [2010.11.09 21:34:35 | 001,860,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_37.dll
 [2010.11.09 21:34:35 | 001,420,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_37.dll
 [2010.11.09 21:34:35 | 000,529,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_37.dll
 [2010.11.09 21:34:35 | 000,462,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_37.dll
 [2010.11.09 21:34:34 | 004,910,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_37.dll
 [2010.11.09 21:34:34 | 003,786,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_37.dll
 [2010.11.09 21:34:33 | 002,006,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_36.dll
 [2010.11.09 21:34:33 | 001,374,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_36.dll
 [2010.11.09 21:34:33 | 000,508,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_36.dll
 [2010.11.09 21:34:33 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_36.dll
 [2010.11.09 21:34:33 | 000,411,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_10.dll
 [2010.11.09 21:34:33 | 000,267,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_10.dll
 [2010.11.09 21:34:32 | 005,081,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_36.dll
 [2010.11.09 21:34:32 | 003,734,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_36.dll
 [2010.11.09 21:34:31 | 000,411,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_9.dll
 [2010.11.09 21:34:31 | 000,267,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_9.dll
 [2010.11.09 21:34:30 | 001,985,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_35.dll
 [2010.11.09 21:34:30 | 001,358,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_35.dll
 [2010.11.09 21:34:30 | 000,508,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_35.dll
 [2010.11.09 21:34:30 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_35.dll
 [2010.11.09 21:34:29 | 005,073,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_35.dll
 [2010.11.09 21:34:29 | 003,727,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_35.dll
 [2010.11.09 21:34:28 | 000,409,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_8.dll
 [2010.11.09 21:34:28 | 000,266,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_8.dll
 [2010.11.09 21:34:28 | 000,021,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_2.dll
 [2010.11.09 21:34:28 | 000,017,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_2.dll
 [2010.11.09 21:34:27 | 001,401,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_34.dll
 [2010.11.09 21:34:27 | 001,124,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_34.dll
 [2010.11.09 21:34:27 | 000,506,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_34.dll
 [2010.11.09 21:34:27 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_34.dll
 [2010.11.09 21:34:26 | 004,496,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_34.dll
 [2010.11.09 21:34:26 | 003,497,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_34.dll
 [2010.11.09 21:34:26 | 000,403,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_7.dll
 [2010.11.09 21:34:26 | 000,261,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_7.dll
 [2010.11.09 21:34:26 | 000,107,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xinput1_3.dll
 [2010.11.09 21:34:26 | 000,081,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_3.dll
 [2010.11.09 21:34:25 | 001,400,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_33.dll
 [2010.11.09 21:34:25 | 001,123,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_33.dll
 [2010.11.09 21:34:25 | 000,506,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_33.dll
 [2010.11.09 21:34:25 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_33.dll
 [2010.11.09 21:34:24 | 004,494,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_33.dll
 [2010.11.09 21:34:24 | 003,495,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_33.dll
 [2010.11.09 21:34:24 | 000,393,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_6.dll
 [2010.11.09 21:34:24 | 000,255,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_6.dll
 [2010.11.09 21:34:23 | 000,469,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10.dll
 [2010.11.09 21:34:23 | 000,440,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10.dll
 [2010.11.09 21:34:23 | 000,390,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_5.dll
 [2010.11.09 21:34:23 | 000,251,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_5.dll
 [2010.11.09 21:34:22 | 004,398,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_32.dll
 [2010.11.09 21:34:22 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_32.dll
 [2010.11.09 21:34:21 | 003,977,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_31.dll
 [2010.11.09 21:34:21 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_31.dll
 [2010.11.09 21:34:21 | 000,364,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_4.dll
 [2010.11.09 21:34:21 | 000,237,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_4.dll
 [2010.11.09 21:34:21 | 000,017,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\x3daudio1_1.dll
 [2010.11.09 21:34:21 | 000,015,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\x3daudio1_1.dll
 [2010.11.09 21:34:20 | 000,363,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_3.dll
 [2010.11.09 21:34:20 | 000,236,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_3.dll
 [2010.11.09 21:34:20 | 000,083,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xinput1_2.dll
 [2010.11.09 21:34:20 | 000,062,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_2.dll
 [2010.11.09 21:34:19 | 000,354,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_2.dll
 [2010.11.09 21:34:19 | 000,230,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_2.dll
 [2010.11.09 21:34:18 | 000,083,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xinput1_1.dll
 [2010.11.09 21:34:18 | 000,062,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_1.dll
 [2010.11.09 21:34:17 | 000,352,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_1.dll
 [2010.11.09 21:34:17 | 000,229,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_1.dll
 [2010.11.09 21:34:13 | 003,927,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_30.dll
 [2010.11.09 21:34:13 | 002,388,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_30.dll
 [2010.11.09 21:34:12 | 000,355,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_0.dll
 [2010.11.09 21:34:12 | 000,230,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_0.dll
 [2010.11.09 21:34:12 | 000,016,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\x3daudio1_0.dll
 [2010.11.09 21:34:12 | 000,014,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\x3daudio1_0.dll
 [2010.11.09 21:34:10 | 003,830,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_29.dll
 [2010.11.09 21:34:10 | 002,332,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_29.dll
 [2010.11.09 21:34:09 | 003,815,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_28.dll
 [2010.11.09 21:34:09 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_28.dll
 [2010.11.09 21:34:08 | 003,807,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_27.dll
 [2010.11.09 21:34:08 | 002,319,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_27.dll
 [2010.11.09 21:34:06 | 003,767,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_26.dll
 [2010.11.09 21:34:06 | 002,297,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_26.dll
 [2010.11.09 21:34:04 | 003,823,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_25.dll
 [2010.11.09 21:34:04 | 002,337,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_25.dll
 [2010.11.09 21:34:03 | 003,544,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_24.dll
 [2010.11.09 21:34:03 | 002,222,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_24.dll
 [2010.11.05 22:33:52 | 000,000,000 | ---D | C] -- C:\Users\Dennis\Documents\Battlefield Heroes
 [2010.11.04 05:04:17 | 020,284,008 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvoglv64.dll
 [2010.11.04 05:04:17 | 018,597,480 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcompiler.dll
 [2010.11.04 05:04:17 | 014,899,816 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvoglv32.dll
 [2010.11.04 05:04:17 | 013,019,752 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcompiler.dll
 [2010.11.04 05:04:17 | 012,788,840 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvd3dumx.dll
 [2010.11.04 05:04:17 | 010,023,528 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvd3dum.dll
 [2010.11.04 05:04:17 | 007,491,688 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvwgf2umx.dll
 [2010.11.04 05:04:17 | 006,471,784 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcuda.dll
 [2010.11.04 05:04:17 | 005,473,896 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvwgf2um.dll
 [2010.11.04 05:04:17 | 004,837,480 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcuda.dll
 [2010.11.04 05:04:17 | 003,112,552 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcuvid.dll
 [2010.11.04 05:04:17 | 002,934,888 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcuvenc.dll
 [2010.11.04 05:04:17 | 002,912,360 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcuvid.dll
 [2010.11.04 05:04:17 | 002,666,600 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcuvenc.dll
 [2010.11.04 05:04:17 | 002,161,256 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvapi64.dll
 [2010.11.04 05:04:17 | 001,719,912 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvapi.dll
 [2010.11.04 05:04:17 | 001,500,264 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvdispco642050.dll
 [2010.11.04 05:04:17 | 001,308,776 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvgenco642030.dll
 [2010.11.04 05:04:17 | 000,386,152 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvdecodemft.dll
 [2010.11.04 05:04:17 | 000,319,080 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvdecodemft.dll
 [2010.11.04 05:04:17 | 000,067,176 | ---- | C] (Khronos Group) -- C:\Windows\SysNative\OpenCL.dll
 [2010.11.04 05:04:17 | 000,057,960 | ---- | C] (Khronos Group) -- C:\Windows\SysWow64\OpenCL.dll
 [2010.11.04 05:04:17 | 000,011,240 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\drivers\nvBridge.kmd
 [2010.11.04 04:47:49 | 000,000,000 | ---D | C] -- C:\Users\Dennis\AppData\Local\NVIDIA Corporation
 [2010.10.31 03:43:27 | 000,000,000 | ---D | C] -- C:\Users\Dennis\Documents\Tunngle
 [2010.10.31 03:43:27 | 000,000,000 | ---D | C] -- C:\Users\Dennis\AppData\Roaming\Tunngle
 [2010.10.31 03:43:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Tunngle
 [2010.10.31 03:43:25 | 000,031,232 | ---- | C] (Tunngle.net) -- C:\Windows\SysNative\drivers\tap0901t.sys
 [2010.10.29 22:08:40 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\appmgmt
 [2010.10.29 22:04:55 | 000,000,000 | ---D | C] -- C:\ProgramData\DeviceVM
 [2010.10.29 22:01:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Norton
 [2010.10.29 22:00:21 | 000,000,000 | ---D | C] -- C:\ProgramData\NortonInstaller
 [2010.10.29 22:00:16 | 000,000,000 | -H-D | C] -- C:\ProgramData\{8533ADFA-85F0-4dc1-946A-2A0BA58E78E3}
 [2010.10.29 22:00:15 | 000,000,000 | ---D | C] -- C:\Users\Dennis\AppData\Roaming\DeviceVm
 [2010.10.29 21:54:38 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Creative
 [2010.10.29 21:53:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ASRock Utility
 [2010.10.29 21:53:09 | 000,402,976 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvraiins.dll
 [2010.10.29 21:53:09 | 000,402,976 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvraidco.dll
 [2010.10.29 21:53:09 | 000,018,976 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvRCoPtb.dll
 [2010.10.29 21:53:09 | 000,018,976 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvRCoIt.dll
 [2010.10.29 21:53:09 | 000,018,976 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvRCoFr.dll
 [2010.10.29 21:53:09 | 000,018,976 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvRCoEsm.dll
 [2010.10.29 21:53:09 | 000,018,976 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvRCoEs.dll
 [2010.10.29 21:53:09 | 000,018,976 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvRCoDe.dll
 [2010.10.29 21:53:09 | 000,018,464 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvRCoSv.dll
 [2010.10.29 21:53:09 | 000,018,464 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvRCoRu.dll
 [2010.10.29 21:53:09 | 000,018,464 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvRCoNo.dll
 [2010.10.29 21:53:09 | 000,018,464 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvRCoNl.dll
 [2010.10.29 21:53:09 | 000,018,464 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvRCoFi.dll
 [2010.10.29 21:53:09 | 000,017,952 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvRCoENU.dll
 [2010.10.29 21:53:09 | 000,017,952 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvRCoEng.dll
 [2010.10.29 21:53:09 | 000,016,416 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvRCoKo.dll
 [2010.10.29 21:53:09 | 000,016,416 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvRCoJa.dll
 [2010.10.29 21:53:09 | 000,015,904 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvRCoZht.dll
 [2010.10.29 21:53:09 | 000,015,904 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvRCoZhc.dll
 [2010.10.29 21:53:00 | 000,018,464 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvRCoDa.dll
 [2010.10.29 21:49:36 | 000,339,360 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\drivers\nvmf6264.sys
 [2010.10.27 15:34:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe
 [2010.10.27 15:34:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe
 [2010.10.27 15:34:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Adobe
 [2010.10.27 15:34:22 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee
 [2010.10.27 15:34:20 | 000,000,000 | ---D | C] -- C:\Users\Dennis\AppData\Local\Adobe
 [2010.10.26 04:19:22 | 000,000,000 | ---D | C] -- C:\Users\Dennis\Documents\ArcaniA - Gothic 4
 [2010.10.26 00:06:27 | 000,000,000 | ---D | C] -- C:\Users\Dennis\AppData\Roaming\DAEMON Tools Lite
 [2010.10.26 00:06:23 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Lite
 
 ========== Files - Modified Within 30 Days ==========
 
 [2010.11.20 19:45:26 | 000,014,016 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
 [2010.11.20 19:45:26 | 000,014,016 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
 [2010.11.20 19:44:55 | 001,472,002 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
 [2010.11.20 19:44:55 | 000,643,628 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
 [2010.11.20 19:44:55 | 000,606,992 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
 [2010.11.20 19:44:55 | 000,126,188 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
 [2010.11.20 19:44:55 | 000,103,370 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
 [2010.11.20 19:40:18 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
 [2010.11.20 19:40:14 | 3220,676,608 | -HS- | M] () -- C:\hiberfil.sys
 [2010.11.20 10:39:57 | 000,000,000 | ---- | M] () -- C:\Windows\SysWow64\Access.dat
 [2010.11.20 05:53:00 | 000,000,676 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
 [2010.11.20 05:32:33 | 000,969,216 | ---- | M] () -- C:\Users\Dennis\AppData\Local\4759340.exe
 [2010.11.20 05:17:59 | 000,234,280 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.xtr
 [2010.11.20 05:17:59 | 000,234,280 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.exe
 [2010.11.18 04:56:16 | 000,000,728 | ---- | M] () -- C:\Users\Dennis\Desktop\BlackOpsMP.lnk
 [2010.11.17 21:17:54 | 000,001,112 | ---- | M] () -- C:\Users\Public\Desktop\DivX Plus Player.lnk
 [2010.11.16 21:59:50 | 000,002,014 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader 9.lnk
 [2010.11.12 15:20:57 | 000,000,708 | ---- | M] () -- C:\Users\Public\Desktop\Just Cause 2.lnk
 [2010.11.09 21:33:18 | 000,000,864 | ---- | M] () -- C:\Users\Public\Desktop\Call of Duty - Black Ops.lnk
 [2010.11.08 06:40:42 | 000,001,430 | ---- | M] () -- C:\Users\Dennis\Desktop\OpenHardwareMonitor - Verknüpfung.lnk
 [2010.11.05 22:33:12 | 002,427,248 | ---- | M] () -- C:\Windows\SysWow64\pbsvc_heroes.exe
 [2010.11.05 22:33:12 | 000,075,064 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrA.exe
 [2010.10.31 15:30:02 | 000,277,800 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
 [2010.10.31 03:43:25 | 000,000,628 | ---- | M] () -- C:\Users\Public\Desktop\Tunngle beta.lnk
 [2010.10.29 22:17:10 | 000,000,838 | ---- | M] () -- C:\Users\Public\Desktop\Arcania - Gothic4.lnk
 [2010.10.26 00:07:41 | 000,000,803 | ---- | M] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
 [2010.10.26 00:07:40 | 000,834,544 | ---- | M] () -- C:\Windows\SysNative\drivers\sptd.sys
 [2010.10.22 07:23:18 | 000,067,176 | ---- | M] (Khronos Group) -- C:\Windows\SysNative\OpenCL.dll
 [2010.10.22 07:23:18 | 000,057,960 | ---- | M] (Khronos Group) -- C:\Windows\SysWow64\OpenCL.dll
 [2010.10.22 07:23:17 | 007,491,688 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvwgf2umx.dll
 [2010.10.22 07:23:16 | 020,284,008 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvoglv64.dll
 [2010.10.22 07:23:16 | 005,473,896 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvwgf2um.dll
 [2010.10.22 07:23:15 | 014,899,816 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvoglv32.dll
 [2010.10.22 07:23:15 | 012,788,840 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvd3dumx.dll
 [2010.10.22 07:23:15 | 001,500,264 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvdispco642050.dll
 [2010.10.22 07:23:15 | 001,308,776 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvgenco642030.dll
 [2010.10.22 07:23:15 | 000,386,152 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvdecodemft.dll
 [2010.10.22 07:23:15 | 000,319,080 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvdecodemft.dll
 [2010.10.22 07:23:15 | 000,007,877 | ---- | M] () -- C:\Windows\SysNative\nvinfo.pb
 [2010.10.22 07:23:12 | 010,023,528 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvd3dum.dll
 [2010.10.22 07:23:12 | 006,471,784 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcuda.dll
 [2010.10.22 07:23:12 | 004,837,480 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcuda.dll
 [2010.10.22 07:23:12 | 003,112,552 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcuvid.dll
 [2010.10.22 07:23:12 | 002,934,888 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcuvenc.dll
 [2010.10.22 07:23:12 | 002,912,360 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcuvid.dll
 [2010.10.22 07:23:12 | 002,666,600 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcuvenc.dll
 [2010.10.22 07:23:08 | 018,597,480 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcompiler.dll
 [2010.10.22 07:23:08 | 013,019,752 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcompiler.dll
 [2010.10.22 07:23:07 | 002,161,256 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvapi64.dll
 [2010.10.22 07:23:07 | 001,719,912 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvapi.dll
 [2010.10.22 07:23:07 | 000,011,240 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\drivers\nvBridge.kmd
 
 ========== Files Created - No Company Name ==========
 
 [2010.11.20 05:53:00 | 000,000,676 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
 [2010.11.20 05:32:33 | 000,969,216 | ---- | C] () -- C:\Users\Dennis\AppData\Local\4759340.exe
 [2010.11.18 04:56:16 | 000,000,728 | ---- | C] () -- C:\Users\Dennis\Desktop\BlackOpsMP.lnk
 [2010.11.13 07:17:40 | 000,819,200 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
 [2010.11.13 07:17:40 | 000,077,824 | ---- | C] () -- C:\Windows\SysWow64\xvid.ax
 [2010.11.13 07:17:39 | 000,180,224 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
 [2010.11.12 15:20:57 | 000,000,708 | ---- | C] () -- C:\Users\Public\Desktop\Just Cause 2.lnk
 [2010.11.09 21:33:18 | 000,000,864 | ---- | C] () -- C:\Users\Public\Desktop\Call of Duty - Black Ops.lnk
 [2010.11.08 06:40:42 | 000,001,430 | ---- | C] () -- C:\Users\Dennis\Desktop\OpenHardwareMonitor - Verknüpfung.lnk
 [2010.11.05 22:33:12 | 002,427,248 | ---- | C] () -- C:\Windows\SysWow64\pbsvc_heroes.exe
 [2010.10.31 06:22:34 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\Access.dat
 [2010.10.31 03:43:25 | 000,000,628 | ---- | C] () -- C:\Users\Public\Desktop\Tunngle beta.lnk
 [2010.10.29 22:17:10 | 000,000,838 | ---- | C] () -- C:\Users\Public\Desktop\Arcania - Gothic4.lnk
 [2010.10.29 21:49:37 | 000,702,976 | R--- | C] () -- C:\Windows\SysNative\cohelper.dll
 [2010.10.29 21:49:37 | 000,005,940 | R--- | C] () -- C:\Windows\SysNative\drivers\nvphy.bin
 [2010.10.27 15:34:57 | 000,002,014 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Reader 9.lnk
 [2010.10.26 00:07:41 | 000,000,803 | ---- | C] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
 [2010.10.26 00:07:40 | 000,834,544 | ---- | C] () -- C:\Windows\SysNative\drivers\sptd.sys
 [2010.10.13 17:45:30 | 000,143,360 | R--- | C] () -- C:\Windows\SysWow64\VmixP6.dll
 [2010.10.13 17:45:23 | 000,000,188 | ---- | C] () -- C:\Windows\Cmicnfg3.ini.cfl
 [2010.10.13 17:45:06 | 000,000,121 | ---- | C] () -- C:\Windows\Cmicnfg3.ini.imi
 [2010.10.13 17:45:05 | 000,002,123 | R--- | C] () -- C:\Windows\Cmicnfg3.ini.cfg
 [2010.07.09 20:00:32 | 000,041,872 | ---- | C] () -- C:\Windows\SysWow64\xfcodec.dll
 [2010.04.02 17:17:34 | 000,179,091 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
 [2009.07.14 00:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
 [2009.07.13 22:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
 [2009.05.06 11:58:28 | 000,002,641 | R--- | C] () -- C:\Windows\cmudax3.ini
 [2002.10.15 23:54:04 | 000,153,088 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
 
 ========== LOP Check ==========
 
 [2010.10.26 03:58:05 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\DAEMON Tools Lite
 [2010.10.29 22:08:39 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\DeviceVm
 [2010.10.18 20:53:46 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\DVDVideoSoftIEHelpers
 [2010.11.16 04:49:40 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\OpenVPN Technologies
 [2010.10.13 22:35:55 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\TS3Client
 [2010.10.15 23:47:28 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\TuneUp Software
 [2010.11.08 05:20:16 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Tunngle
 [2009.07.14 06:08:49 | 000,027,090 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
 
 ========== Purity Check ==========
 
 
 
 ========== Custom Scans ==========
 
 
 < %ALLUSERSPROFILE%\Application Data\*. >
 
 < %ALLUSERSPROFILE%\Application Data\*.exe /s >
 
 < %APPDATA%\*. >
 [2010.10.29 22:04:37 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Adobe
 [2010.10.26 03:58:05 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\DAEMON Tools Lite
 [2010.10.29 22:08:39 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\DeviceVm
 [2010.11.18 04:51:00 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\DivX
 [2010.10.18 20:53:46 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\DVDVideoSoftIEHelpers
 [2010.10.13 17:15:30 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Identities
 [2010.10.13 18:22:54 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Macromedia
 [2010.11.20 05:53:05 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Malwarebytes
 [2009.07.14 19:18:19 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Media Center Programs
 [2010.11.13 07:11:28 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Media Player Classic
 [2010.11.13 12:26:36 | 000,000,000 | --SD | M] -- C:\Users\Dennis\AppData\Roaming\Microsoft
 [2010.10.13 17:42:34 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Mozilla
 [2010.11.04 05:20:07 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\NVIDIA
 [2010.11.16 04:49:40 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\OpenVPN Technologies
 [2010.11.16 03:28:17 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\RealHideIP
 [2010.10.13 20:01:52 | 000,000,000 | RH-D | M] -- C:\Users\Dennis\AppData\Roaming\SecuROM
 [2010.10.13 22:35:55 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\TS3Client
 [2010.10.15 23:47:28 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\TuneUp Software
 [2010.11.08 05:20:16 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Tunngle
 [2010.10.20 20:36:37 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\WinRAR
 [2010.11.17 01:41:20 | 000,000,000 | ---D | M] -- C:\Users\Dennis\AppData\Roaming\Xfire
 
 < %APPDATA%\*.exe /s >
 [2010.08.19 23:46:28 | 001,312,120 | ---- | M] (EA Digital Illusions CE AB) -- C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\pllzjhaj.default\extensions\battlefieldheroespatcher@ea.com\platform\WINNT_x86-msvc\plugins\BFHUpdater.exe
 
 < %SYSTEMDRIVE%\*.exe >
 
 
 < MD5 for: AGP440.SYS  >
 [2009.07.14 02:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysWow64\DriverStore\FileRepository\machine.inf_amd64_neutral_9e6bb86c3b39a3e9\AGP440.sys
 [2009.07.14 02:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_1607dee2d861e021\AGP440.sys
 
 < MD5 for: ATAPI.SYS  >
 [2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysWow64\DriverStore\FileRepository\mshdc.inf_amd64_neutral_a69a58a4286f0b22\atapi.sys
 [2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys
 
 < MD5 for: CNGAUDIT.DLL  >
 [2009.07.14 02:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\SysWOW64\cngaudit.dll
 [2009.07.14 02:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\SysWOW64\cngaudit.dll
 [2009.07.14 02:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_e83a414890e8132b\cngaudit.dll
 [2009.07.14 02:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\winsxs\amd64_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_4458dccc49458461\cngaudit.dll
 
 < MD5 for: EXPLORER.EXE  >
 [2009.07.14 02:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_b7fe430bc7ce3761\explorer.exe
 [2009.10.31 06:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\SysWOW64\explorer.exe
 [2009.10.31 06:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\SysWOW64\explorer.exe
 [2009.10.31 06:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_b819b343c7ba6202\explorer.exe
 [2009.08.03 07:19:07 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=700073016DAC1C3D2E7E2CE4223334B6 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_ae84b558ac4eb41c\explorer.exe
 [2009.10.31 07:34:59 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=9AAAEC8DAC27AA17B053E6352AD233AE -- C:\Windows\explorer.exe
 [2009.10.31 07:34:59 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=9AAAEC8DAC27AA17B053E6352AD233AE -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_adc508f19359a007\explorer.exe
 [2009.08.03 06:49:47 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_b8d95faae0af7617\explorer.exe
 [2009.10.31 07:38:38 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=B8EC4BD49CE8F6FC457721BFC210B67F -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_ae46d6aeac7ca7c7\explorer.exe
 [2009.08.03 06:35:50 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_b853c407c78e3ba9\explorer.exe
 [2009.07.14 02:39:10 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=C235A51CB740E45FFA0EBFB9BAFCDA64 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_ada998b9936d7566\explorer.exe
 [2009.10.31 07:00:51 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_b89b8100e0dd69c2\explorer.exe
 [2009.08.03 07:17:37 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=F170B4A061C9E026437B193B4D571799 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_adff19b5932d79ae\explorer.exe
 
 < MD5 for: IASTORV.SYS  >
 [2009.07.14 02:48:04 | 000,410,688 | ---- | M] (Intel Corporation) MD5=D83EFB6FD45DF9D55E9A1AFC63640D50 -- C:\Windows\SysWow64\DriverStore\FileRepository\iastorv.inf_amd64_neutral_18cccb83b34e1453\iaStorV.sys
 [2009.07.14 02:48:04 | 000,410,688 | ---- | M] (Intel Corporation) MD5=D83EFB6FD45DF9D55E9A1AFC63640D50 -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7600.16385_none_0b06441fa1790136\iaStorV.sys
 
 < MD5 for: NETLOGON.DLL  >
 [2009.07.14 02:41:52 | 000,692,736 | ---- | M] (Microsoft Corporation) MD5=956D030D375F207B22FB111E06EF9C35 -- C:\Windows\winsxs\amd64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7600.16385_none_59aca8ea51aaeefe\netlogon.dll
 [2009.07.14 02:16:02 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 -- C:\Windows\SysWOW64\netlogon.dll
 [2009.07.14 02:16:02 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 -- C:\Windows\SysWOW64\netlogon.dll
 [2009.07.14 02:16:02 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 -- C:\Windows\winsxs\wow64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7600.16385_none_6401533c860bb0f9\netlogon.dll
 
 < MD5 for: NVSTOR.SYS  >
 [2009.07.14 02:45:45 | 000,167,488 | ---- | M] (NVIDIA Corporation) MD5=477DC4D6DEB99BE37084C9AC6D013DA1 -- C:\Windows\SysWow64\DriverStore\FileRepository\nvraid.inf_amd64_neutral_5bde3fe2945bce9e\nvstor.sys
 [2009.07.14 02:45:45 | 000,167,488 | ---- | M] (NVIDIA Corporation) MD5=477DC4D6DEB99BE37084C9AC6D013DA1 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7600.16385_none_95cfb4ced8afab0e\nvstor.sys
 
 < MD5 for: SCECLI.DLL  >
 [2009.07.14 02:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\SysWOW64\scecli.dll
 [2009.07.14 02:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\SysWOW64\scecli.dll
 [2009.07.14 02:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9e577e55272d37b4\scecli.dll
 [2009.07.14 02:41:53 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9402d402f2cc75b9\scecli.dll
 
 < MD5 for: USER32.DLL  >
 [2009.07.14 02:41:56 | 001,008,640 | ---- | M] (Microsoft Corporation) MD5=72D7B3EA16946E8F0CF7458150031CC6 -- C:\Windows\winsxs\amd64_microsoft-windows-user32_31bf3856ad364e35_6.1.7600.16385_none_292d5de8870d85d9\user32.dll
 [2009.07.14 02:11:24 | 000,833,024 | ---- | M] (Microsoft Corporation) MD5=E8B0FFC209E504CB7E79FC24E6C085F0 -- C:\Windows\SysWOW64\user32.dll
 [2009.07.14 02:11:24 | 000,833,024 | ---- | M] (Microsoft Corporation) MD5=E8B0FFC209E504CB7E79FC24E6C085F0 -- C:\Windows\SysWOW64\user32.dll
 [2009.07.14 02:11:24 | 000,833,024 | ---- | M] (Microsoft Corporation) MD5=E8B0FFC209E504CB7E79FC24E6C085F0 -- C:\Windows\winsxs\wow64_microsoft-windows-user32_31bf3856ad364e35_6.1.7600.16385_none_3382083abb6e47d4\user32.dll
 
 < MD5 for: USERINIT.EXE  >
 [2009.07.14 02:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\SysWOW64\userinit.exe
 [2009.07.14 02:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\SysWOW64\userinit.exe
 [2009.07.14 02:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe
 [2009.07.14 02:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_381dabbceb60feb2\userinit.exe
 
 < MD5 for: WINLOGON.EXE  >
 [2009.07.14 02:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe
 [2009.10.28 08:01:57 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe
 [2009.10.28 07:24:40 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe
 
 < MD5 for: WS2IFSL.SYS  >
 [2009.07.14 01:10:33 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=6BCC1D7D2FD2453957C5479A32364E52 -- C:\Windows\winsxs\amd64_microsoft-windows-w..rastructure-ws2ifsl_31bf3856ad364e35_6.1.7600.16385_none_ab7b927be17eace8\ws2ifsl.sys
 
 < %systemroot%\system32\drivers\*.sys /lockedfiles >
 
 < %systemroot%\System32\config\*.sav >
 
 < %systemroot%\*. /mp /s >
 
 < %systemroot%\system32\*.dll /lockedfiles >
 
 < End of report >
 |