OTL Logfile: Code:
OTL logfile created on: 01.03.2011 16:08:54 - Run 2
OTL by OldTimer - Version 3.2.22.1 Folder = C:\Users\????\Desktop\MFTools
64bit- Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
4,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 63,00% Memory free
10,00 Gb Paging File | 8,00 Gb Available in Paging File | 82,00% Paging File free
Paging file location(s): [Binary data over 100 bytes]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 454,83 Gb Total Space | 356,94 Gb Free Space | 78,48% Space Free | Partition Type: NTFS
Computer Name: NILGÜN-VAIO | User Name: ???? | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Users\Nilgün\Desktop\MFTools\OTL.exe (OldTimer Tools)
PRC - C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe (Lavasoft Limited)
PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
PRC - C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe (Nokia)
PRC - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe (Nokia)
PRC - C:\Program Files (x86)\Lingoes\Translator2\Lingoes.exe (Lingoes Project)
PRC - C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe (Nokia)
PRC - C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe (Sony Corporation)
PRC - C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe (Acronis)
PRC - C:\Program Files (x86)\PC Connectivity Solution\Transports\NclRSSrv.exe (Nokia)
PRC - C:\Program Files (x86)\IncrediMail\bin\IMApp.exe (IncrediMail, Ltd.)
PRC - C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe (Acronis)
PRC - C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe (Acronis)
PRC - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe (Sony Corporation)
PRC - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe (Sony Corporation)
PRC - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe (Sony Corporation)
PRC - C:\Program Files (x86)\Sony\VAIO Event Service\VESMgrSub.exe (Sony Corporation)
PRC - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Intel Corporation)
PRC - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe (Intel Corporation)
PRC - c:\Program Files (x86)\Common Files\McAfee\McProxy\McProxy.exe (McAfee, Inc.)
PRC - C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.)
PRC - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe (Safer Networking Ltd.)
PRC - C:\Program Files (x86)\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe (Adobe Systems Incorporated)
PRC - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe (Nero AG)
PRC - C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe (ArcSoft, Inc.)
========== Modules (SafeList) ==========
MOD - C:\Users\Nilgün\Desktop\MFTools\OTL.exe (OldTimer Tools)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd\comctl32.dll (Microsoft Corporation)
MOD - C:\Program Files (x86)\Lingoes\Translator2\opentext2.dll ()
MOD - C:\Program Files (x86)\IncrediMail\bin\B4ImApp.dll (Babylon Ltd.)
========== Win32 Services (SafeList) ==========
SRV:64bit: - (yksvc) -- C:\Windows\SysNative\yk62x64.dll (Marvell)
SRV:64bit: - (VUAgent) -- C:\Program Files\Sony\VAIO Update 5\VUAgent.exe (Sony Corporation)
SRV:64bit: - (VSNService) -- C:\Program Files\Sony\VAIO Smart Network\VSNService.exe (Sony Corporation)
SRV:64bit: - (VAIO Power Management) -- C:\Program Files\Sony\VAIO Power Management\SPMService.exe (Sony Corporation)
SRV:64bit: - (VcmINSMgr) -- C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe (Sony Corporation)
SRV:64bit: - (VcmIAlzMgr) -- C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe (Sony Corporation)
SRV:64bit: - (VcmXmlIfHelper) -- C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe (Sony Corporation)
SRV - (Lavasoft Ad-Aware Service) -- C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe (Lavasoft Limited)
SRV - (AntiVirSchedulerService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
SRV - (AntiVirService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
SRV - (ServiceLayer) -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe (Nokia)
SRV - (VAIO Event Service) -- C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe (Sony Corporation)
SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
SRV - (ACDaemon) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (ArcSoft Inc.)
SRV - (afcdpsrv) -- C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe (Acronis)
SRV - (FLEXnet Licensing Service) -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Macrovision Europe Ltd.)
SRV - (AcrSch2Svc) -- C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe (Acronis)
SRV - (SOHPlMgr) -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHPlMgr.exe (Sony Corporation)
SRV - (SOHDms) -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe (Sony Corporation)
SRV - (SOHDs) -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe (Sony Corporation)
SRV - (SOHDBSvr) -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDBSvr.exe (Sony Corporation)
SRV - (SOHCImp) -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe (Sony Corporation)
SRV - (Vcsw) -- C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe (Sony Corporation)
SRV - (VAIO Entertainment TV Device Arbitration Service) -- C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe (Sony Corporation)
SRV - (VzCdbSvc) -- C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe (Sony Corporation)
SRV - (VCFw) -- C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe (Sony Corporation)
SRV - (btwdins) -- C:\Programme\WIDCOMM\Bluetooth Software\btwdins.exe (Broadcom Corporation.)
SRV - (Roxio Upnp Server 10) -- C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe (Sonic Solutions)
SRV - (Roxio UPnP Renderer 10) -- C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe (Sonic Solutions)
SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (IAANTMON) Intel(R) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe (Intel Corporation)
SRV - (McShield) -- C:\Programme\McAfee\VirusScan\Mcshield.exe (McAfee, Inc.)
SRV - (McSysmon) -- C:\Program Files (x86)\McAfee\VirusScan\mcsysmon.exe (McAfee, Inc.)
SRV - (McProxy) -- c:\Program Files (x86)\Common Files\McAfee\McProxy\McProxy.exe (McAfee, Inc.)
SRV - (SBSDWSCService) -- C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe (Safer Networking Ltd.)
SRV - (AdobeActiveFileMonitor7.0) -- C:\Program Files (x86)\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe (Adobe Systems Incorporated)
SRV - (Nero BackItUp Scheduler 4.0) -- C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe (Nero AG)
SRV - (uCamMonitor) -- C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe (ArcSoft, Inc.)
========== Driver Services (SafeList) ==========
DRV:64bit: - (NETw5s64) Intel(R) -- C:\Windows\SysNative\drivers\NETw5s64.sys (Intel Corporation)
DRV:64bit: - (yukonw7) -- C:\Windows\SysNative\drivers\yk62x64.sys (Marvell)
DRV:64bit: - (NVHDA) -- C:\Windows\SysNative\drivers\nvhda64v.sys (NVIDIA Corporation)
DRV:64bit: - (btwavdt) -- C:\Windows\SysNative\drivers\btwavdt.sys (Broadcom Corporation.)
DRV:64bit: - (avipbb) -- C:\Windows\SysNative\drivers\avipbb.sys (Avira GmbH)
DRV:64bit: - (avgntflt) -- C:\Windows\SysNative\drivers\avgntflt.sys (Avira GmbH)
DRV:64bit: - (USBAAPL64) -- C:\Windows\SysNative\drivers\usbaapl64.sys (Apple, Inc.)
DRV:64bit: - (PxHlpa64) -- C:\Windows\SysNative\drivers\PxHlpa64.sys (Sonic Solutions)
DRV:64bit: - (Lbd) -- C:\Windows\SysNative\drivers\Lbd.sys (Lavasoft AB)
DRV:64bit: - (sptd) -- C:\Windows\SysNative\drivers\sptd.sys ()
DRV:64bit: - (afcdp) -- C:\Windows\SysNative\drivers\afcdp.sys (Acronis)
DRV:64bit: - (tdrpman251) Acronis Try&Decide and Restore Points filter (build 251) -- C:\Windows\SysNative\drivers\tdrpm251.sys (Acronis)
DRV:64bit: - (timounter) -- C:\Windows\SysNative\drivers\timntr.sys (Acronis)
DRV:64bit: - (snapman) -- C:\Windows\SysNative\drivers\snapman.sys (Acronis)
DRV:64bit: - (oodivdh) -- C:\Windows\SysNative\drivers\oodivdh.sys (O&O Software GmbH)
DRV:64bit: - (oodivd) -- C:\Windows\SysNative\drivers\oodivd.sys (O&O Software GmbH)
DRV:64bit: - (oodisrh) -- C:\Windows\SysNative\drivers\oodisrh.sys (O&O Software GmbH)
DRV:64bit: - (oodisr) -- C:\Windows\SysNative\drivers\oodisr.sys (O&O Software GmbH)
DRV:64bit: - (sdbus) -- C:\Windows\SysNative\drivers\sdbus.sys (Microsoft Corporation)
DRV:64bit: - (btwrchid) -- C:\Windows\SysNative\drivers\btwrchid.sys (Broadcom Corporation.)
DRV:64bit: - (btwaudio) -- C:\Windows\SysNative\drivers\btwaudio.sys (Broadcom Corporation.)
DRV:64bit: - (btwl2cap) -- C:\Windows\SysNative\drivers\btwl2cap.sys (Broadcom Corporation.)
DRV:64bit: - (SynTP) -- C:\Windows\SysNative\drivers\SynTP.sys (Synaptics Incorporated)
DRV:64bit: - (JMCR_CFS) -- C:\Windows\SysNative\drivers\jmcr_cfs.sys (JMicron Technology Corporation)
DRV:64bit: - (risdptsk) -- C:\Windows\SysNative\drivers\risdsn64.sys (REDC)
DRV:64bit: - (rimsptsk) -- C:\Windows\SysNative\drivers\rimssn64.sys (REDC)
DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
DRV:64bit: - (61883) -- C:\Windows\SysNative\drivers\61883.sys (Microsoft Corporation)
DRV:64bit: - (Avc) -- C:\Windows\SysNative\drivers\avc.sys (Microsoft Corporation)
DRV:64bit: - (MSDV) -- C:\Windows\SysNative\drivers\msdv.sys (Microsoft Corporation)
DRV:64bit: - (iaStor) -- C:\Windows\SysNative\drivers\iaStor.sys (Intel Corporation)
DRV:64bit: - (SFEP) -- C:\Windows\SysNative\drivers\SFEP.sys (Sony Corporation)
DRV:64bit: - (SrvHsfV92) -- C:\Windows\SysNative\drivers\VSTDPV6.SYS (Conexant Systems, Inc.)
DRV:64bit: - (SrvHsfWinac) -- C:\Windows\SysNative\drivers\VSTCNXT6.SYS (Conexant Systems, Inc.)
DRV:64bit: - (SrvHsfHDA) -- C:\Windows\SysNative\drivers\VSTAZL6.SYS (Conexant Systems, Inc.)
DRV:64bit: - (Ntfs) -- C:\Windows\SysNative\wbem\ntfs.mof ()
DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV:64bit: - (netw5v64) Intel(R) -- C:\Windows\SysNative\drivers\NETw5v64.sys (Intel Corporation)
DRV:64bit: - (Point64) -- C:\Windows\SysNative\drivers\point64k.sys (Microsoft Corporation)
DRV:64bit: - (ArcSoftKsUFilter) -- C:\Windows\SysNative\drivers\ArcSoftKsUFilter.sys (ArcSoft, Inc.)
DRV:64bit: - (mfehidk) -- C:\Windows\SysNative\drivers\mfehidk.sys (McAfee, Inc.)
DRV:64bit: - (mfeavfk) -- C:\Windows\SysNative\drivers\mfeavfk.sys (McAfee, Inc.)
DRV:64bit: - (mfesmfk) -- C:\Windows\SysNative\drivers\mfesmfk.sys (McAfee, Inc.)
DRV:64bit: - (mferkdk) -- C:\Windows\SysNative\drivers\mferkdk.sys (McAfee, Inc.)
DRV:64bit: - (MPFP) -- C:\Windows\SysNative\drivers\Mpfp.sys (McAfee, Inc.)
DRV:64bit: - (pccsmcfd) -- C:\Windows\SysNative\drivers\pccsmcfdx64.sys (Nokia)
DRV - (Lavasoft Kernexplorer) -- C:\Program Files (x86)\Lavasoft\Ad-Aware\kernexplorer64.sys ()
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\URLSearchHook: {e7f88e02-0c78-48a1-86d2-82d8865de2df} - C:\Program Files (x86)\Oryte_Games_1.9\tbOry2.dll (Conduit Ltd.)
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-484552633-2301324986-2533605579-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=SVEA&bmod=EU01
IE - HKU\S-1-5-21-484552633-2301324986-2533605579-1001\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKU\S-1-5-21-484552633-2301324986-2533605579-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.conduit.com/?searchsource=10&ctid=ct2476266
IE - HKU\S-1-5-21-484552633-2301324986-2533605579-1001\..\URLSearchHook: {e7f88e02-0c78-48a1-86d2-82d8865de2df} - C:\Program Files (x86)\Oryte_Games_1.9\tbOry2.dll (Conduit Ltd.)
IE - HKU\S-1-5-21-484552633-2301324986-2533605579-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-484552633-2301324986-2533605579-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "MyStart Search"
FF - prefs.js..browser.search.selectedEngine: "MyStart Search"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "hxxp://www.internetcologne.de/"
FF - prefs.js..extensions.enabledItems: {635abd67-4fe9-1b23-4f01-e679fa7484c1}:2.1.1.20091029021655
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.3
FF - prefs.js..extensions.enabledItems: DTToolbar@toolbarnet.com:1.1.2.0185
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: bkmrksync@nokia.com:1.0.0.736
FF - prefs.js..extensions.enabledItems: support@predictad.com:1.11
FF - prefs.js..extensions.enabledItems: personas@christopher.beard:1.6.1
FF - prefs.js..extensions.enabledItems: testpilot@labs.mozilla.com:1.0.6
FF - prefs.js..keyword.URL: "hxxp://mystart.incredimail.com/?loc=ff_address_bar_im2_test_v2&search="
FF - HKLM\software\mozilla\Firefox\Extensions\\support@predictad.com: C:\Program Files (x86)\AutocompletePro\support@predictad.com [2010.06.29 09:19:07 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\bkmrksync@nokia.com: C:\Program Files (x86)\Nokia\Nokia PC Suite 7\bkmrksync\ [2011.02.12 20:07:04 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011.02.23 08:41:48 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011.02.23 08:41:48 | 000,000,000 | ---D | M]
[2009.12.17 20:14:34 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Nilgün\AppData\Roaming\mozilla\Extensions
[2011.02.28 14:53:10 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Nilgün\AppData\Roaming\mozilla\Firefox\Profiles\yjism3e0.default\extensions
[2011.02.23 08:41:46 | 000,000,000 | ---D | M] (Yahoo! Toolbar) -- C:\Users\Nilgün\AppData\Roaming\mozilla\Firefox\Profiles\yjism3e0.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
[2011.02.23 08:41:45 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Users\Nilgün\AppData\Roaming\mozilla\Firefox\Profiles\yjism3e0.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
[2011.02.23 08:41:46 | 000,000,000 | ---D | M] ("DAEMON Tools Toolbar") -- C:\Users\Nilgün\AppData\Roaming\mozilla\Firefox\Profiles\yjism3e0.default\extensions\DTToolbar@toolbarnet.com
[2011.02.23 08:41:46 | 000,000,000 | ---D | M] (Personas) -- C:\Users\Nilgün\AppData\Roaming\mozilla\Firefox\Profiles\yjism3e0.default\extensions\personas@christopher.beard
[2011.02.26 20:26:21 | 000,000,000 | ---D | M] (Feedback) -- C:\Users\Nilgün\AppData\Roaming\mozilla\Firefox\Profiles\yjism3e0.default\extensions\testpilot@labs.mozilla.com
[2011.02.28 14:53:08 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2010.05.03 14:08:32 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010.06.29 09:19:07 | 000,000,000 | ---D | M] ("AutocompletePro - Your handy search suggestions tool") -- C:\PROGRAM FILES (X86)\AUTOCOMPLETEPRO\SUPPORT@PREDICTAD.COM
[2011.02.12 20:07:04 | 000,000,000 | ---D | M] (PC Sync 2 Synchronisation Extension) -- C:\PROGRAM FILES (X86)\NOKIA\NOKIA PC SUITE 7\BKMRKSYNC
File not found (No name found) -- C:\USERS\NILGüN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YJISM3E0.DEFAULT\EXTENSIONS\{635ABD67-4FE9-1B23-4F01-E679FA7484C1}
File not found (No name found) -- C:\USERS\NILGüN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YJISM3E0.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}
File not found (No name found) -- C:\USERS\NILGüN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YJISM3E0.DEFAULT\EXTENSIONS\DTTOOLBAR@TOOLBARNET.COM
File not found (No name found) -- C:\USERS\NILGüN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YJISM3E0.DEFAULT\EXTENSIONS\PERSONAS@CHRISTOPHER.BEARD
File not found (No name found) -- C:\USERS\NILGüN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YJISM3E0.DEFAULT\EXTENSIONS\TESTPILOT@LABS.MOZILLA.COM
[2010.05.03 14:08:25 | 000,411,368 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll
[2006.09.26 12:03:14 | 000,098,304 | ---- | M] (Zylom) -- C:\Program Files (x86)\Mozilla Firefox\plugins\npzylomgamesplayer.dll
[2010.12.03 19:14:08 | 000,001,392 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\amazondotcom-de.xml
[2010.12.03 19:14:08 | 000,002,344 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\eBay-de.xml
[2010.12.03 19:14:08 | 000,006,805 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\leo_ende_de.xml
[2010.12.03 19:14:08 | 000,001,178 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\wikipedia-de.xml
[2010.12.03 19:14:08 | 000,001,105 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\yahoo-de.xml
O1 HOSTS File: ([2011.02.25 16:09:29 | 000,430,182 | R--- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 www.007guard.com
O1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1 www.008k.com
O1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1 www.00hq.com
O1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1 www.032439.com
O1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1 www.0scan.com
O1 - Hosts: 127.0.0.1 0scan.com
O1 - Hosts: 127.0.0.1 1000gratisproben.com
O1 - Hosts: 127.0.0.1 www.1000gratisproben.com
O1 - Hosts: 127.0.0.1 1001namen.com
O1 - Hosts: 127.0.0.1 www.1001namen.com
O1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1 www.100888290cs.com
O1 - Hosts: 127.0.0.1 www.100sexlinks.com
O1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1 www.10sek.com
O1 - Hosts: 127.0.0.1 www.1-2005-search.com
O1 - Hosts: 127.0.0.1 1-2005-search.com
O1 - Hosts: 127.0.0.1 123fporn.info
O1 - Hosts: 14806 more lines...
O2:64bit: - BHO: (scriptproxy) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Programme\McAfee\VirusScan\scriptsn.dll (McAfee, Inc.)
O2:64bit: - BHO: (Windows Live ID-Anmelde-Hilfsprogramm) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O2:64bit: - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O2:64bit: - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Programme\Google\GoogleToolbarNotifier\5.6.6209.1142\swg64.dll (Google Inc.)
O2 - BHO: (no name) - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - No CLSID value found.
O2 - BHO: (Canon Easy-WebPrint EX BHO) - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (scriptproxy) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\McAfee\VirusScan\scriptsn.dll (McAfee, Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.6.6209.1142\swg.dll (Google Inc.)
O2 - BHO: (Oryte Games 1.9 Toolbar) - {e7f88e02-0c78-48a1-86d2-82d8865de2df} - C:\Program Files (x86)\Oryte_Games_1.9\tbOry2.dll (Conduit Ltd.)
O3:64bit: - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3:64bit: - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll ()
O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKLM\..\Toolbar: (Canon Easy-WebPrint EX) - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
O3 - HKLM\..\Toolbar: (Oryte Games 1.9 Toolbar) - {e7f88e02-0c78-48a1-86d2-82d8865de2df} - C:\Program Files (x86)\Oryte_Games_1.9\tbOry2.dll (Conduit Ltd.)
O3:64bit: - HKU\S-1-5-21-484552633-2301324986-2533605579-1001\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3:64bit: - HKU\S-1-5-21-484552633-2301324986-2533605579-1001\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll ()
O3 - HKU\S-1-5-21-484552633-2301324986-2533605579-1001\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKU\S-1-5-21-484552633-2301324986-2533605579-1001\..\Toolbar\WebBrowser: (Canon Easy-WebPrint EX) - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
O3 - HKU\S-1-5-21-484552633-2301324986-2533605579-1001\..\Toolbar\WebBrowser: (Oryte Games 1.9 Toolbar) - {E7F88E02-0C78-48A1-86D2-82D8865DE2DF} - C:\Program Files (x86)\Oryte_Games_1.9\tbOry2.dll (Conduit Ltd.)
O4:64bit: - HKLM..\Run: [Acronis Scheduler2 Service] C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe (Acronis)
O4:64bit: - HKLM..\Run: [CanonSolutionMenu] C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe (CANON INC.)
O4:64bit: - HKLM..\Run: [IAAnotif] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IntelliPoint] C:\Program Files\Microsoft IntelliPoint\ipoint.exe (Microsoft Corporation)
O4:64bit: - HKLM..\Run: [NvCplDaemon] C:\Windows\SysNative\NvCpl.dll (NVIDIA Corporation)
O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Programme\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [TrueImageMonitor.exe] C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe (Acronis)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-484552633-2301324986-2533605579-1001..\Run: [IncrediMail] C:\Program Files (x86)\IncrediMail\bin\IncMail.exe (IncrediMail, Ltd.)
O4 - HKU\S-1-5-21-484552633-2301324986-2533605579-1001..\Run: [Lingoes] C:\Program Files (x86)\Lingoes\Translator2\Lingoes.exe (Lingoes Project)
O4 - HKU\S-1-5-21-484552633-2301324986-2533605579-1001..\Run: [PC Suite Tray] C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe (Nokia)
O4 - HKU\S-1-5-21-484552633-2301324986-2533605579-1001..\Run: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] File not found
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Low Rights present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKU\S-1-5-21-484552633-2301324986-2533605579-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8:64bit: - Extra context menu item: Bild an &Bluetooth-Gerät senden... - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8:64bit: - Extra context menu item: Seite an &Bluetooth-Gerät senden... - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O8 - Extra context menu item: Bild an &Bluetooth-Gerät senden... - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Seite an &Bluetooth-Gerät senden... - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9:64bit: - Extra Button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9:64bit: - Extra 'Tools' menuitem : @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: Senden an Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : Senden an &Bluetooth-Gerät... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries\000000000010 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000010 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 81.173.194.76 192.168.0.1
O18:64bit: - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - Winlogon\Notify\VESWinlogon: DllName - VESWinlogon.dll - C:\Windows\SysWow64\VESWinlogon.dll (Sony Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (lsdelete) - File not found
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011.02.27 19:12:59 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2011.02.27 19:11:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ERUNT
[2011.02.27 19:11:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ERUNT
[2011.02.27 19:03:02 | 000,000,000 | ---D | C] -- C:\Users\Nilgün\Desktop\MFTools
[2011.02.25 22:16:53 | 000,000,000 | ---D | C] -- C:\Users\Nilgün\AppData\Roaming\PCFix
[2011.02.24 11:30:28 | 000,000,000 | ---D | C] -- C:\Users\Nilgün\AppData\Roaming\Protector Suite
[2011.02.24 11:15:28 | 000,504,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imapi2.dll
[2011.02.24 11:15:28 | 000,392,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\imapi2.dll
[2011.02.24 11:00:47 | 000,000,000 | ---D | C] -- C:\Click to Disc
[2011.02.24 10:27:44 | 000,000,000 | ---D | C] -- C:\Update
[2011.02.24 09:23:37 | 000,000,000 | ---D | C] -- C:\Users\Nilgün\Mozila Fav
[2011.02.23 10:03:13 | 000,000,000 | ---D | C] -- C:\Programme\OO Software
[2011.02.23 08:55:54 | 000,000,000 | ---D | C] -- C:\Programme\PC Beschleunigen
[2011.02.23 07:42:02 | 000,662,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsPrint.dll
[2011.02.23 07:42:02 | 000,442,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsPrint.dll
[2011.02.23 07:42:01 | 000,475,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsGdiConverter.dll
[2011.02.23 07:42:01 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsGdiConverter.dll
[2011.02.22 12:55:39 | 000,000,000 | ---D | C] -- C:\Users\Nilgün\AppData\Roaming\Malwarebytes
[2011.02.22 12:52:29 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
[2011.02.22 12:52:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011.02.22 12:52:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2011.02.22 12:52:25 | 000,024,152 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2011.02.22 12:52:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2011.02.22 10:49:46 | 000,000,000 | ---D | C] -- C:\Users\Nilgün\Prog
[2011.02.21 11:41:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy
[2011.02.21 11:41:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy
[2011.02.21 11:41:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Spybot - Search & Destroy
[2011.02.21 09:16:38 | 000,000,000 | ---D | C] -- C:\Users\????\AppData\Roaming\QuickScan
[2011.02.18 22:20:08 | 000,000,000 | ---D | C] -- C:\Users\????\AppData\Roaming\Avira
[2011.02.18 22:16:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
[2011.02.18 22:16:27 | 000,116,568 | ---- | C] (Avira GmbH) -- C:\Windows\SysNative\drivers\avipbb.sys
[2011.02.18 22:16:27 | 000,083,120 | ---- | C] (Avira GmbH) -- C:\Windows\SysNative\drivers\avgntflt.sys
[2011.02.18 22:16:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Avira
[2011.02.18 21:18:12 | 000,336,896 | ---- | C] (CANON INC.) -- C:\Windows\SysNative\CNMLMA0.DLL
[2011.02.18 21:15:24 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\sdbus.sys
[2011.02.18 20:16:47 | 000,573,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msvcp50.dll
[2011.02.18 20:15:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\F-Secure
[2011.02.18 20:12:36 | 000,000,000 | ---D | C] -- C:\ProgramData\fssg
[2011.02.18 20:11:42 | 000,000,000 | ---D | C] -- C:\ProgramData\f-secure
[2011.02.17 10:46:18 | 006,952,960 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\drivers\NETw5s64.sys
[2011.02.17 10:46:18 | 002,747,904 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\NETw5r64.dll
[2011.02.17 10:46:18 | 000,787,456 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\NETw5c64.dll
[2011.02.17 10:45:05 | 000,592,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ipcoin80.dll
[2011.02.17 10:36:11 | 000,501,536 | ---- | C] (Marvell) -- C:\Windows\SysNative\yk62x64.dll
[2011.02.17 10:36:11 | 000,402,720 | ---- | C] (Marvell) -- C:\Windows\SysNative\drivers\yk62x64.sys
[2011.02.17 10:35:15 | 000,541,216 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvuhda6.exe
[2011.02.17 10:35:15 | 000,084,512 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\drivers\nvhda64v.sys
[2011.02.17 10:35:15 | 000,062,976 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\SysNative\nvapo64v.dll
[2011.02.17 10:35:15 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nvhdap64.dll
[2011.02.17 10:34:20 | 000,036,616 | ---- | C] (IVT Corporation.) -- C:\Windows\SysNative\drivers\btcusb.sys
[2011.02.17 10:34:20 | 000,019,464 | ---- | C] (IVT Corporation.) -- C:\Windows\SysNative\btinstall.dll
[2011.02.17 10:32:33 | 000,132,648 | ---- | C] (Broadcom Corporation.) -- C:\Windows\SysNative\drivers\btwavdt.sys
[2011.02.17 10:29:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Uniblue
[2011.02.17 09:48:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue
[2011.02.17 09:20:49 | 000,000,000 | ---D | C] -- C:\Users\????\AppData\Roaming\Uniblue
[2011.02.17 09:20:11 | 000,000,000 | ---D | C] -- C:\Users\?????AppData\Local\PackageAware
[2011.02.12 20:07:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\PCSuite
[2011.02.12 20:07:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nokia PC Suite
[2011.02.12 20:07:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Nokia
[2011.02.12 20:06:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PC Connectivity Solution
[2011.02.12 19:06:11 | 000,000,000 | ---D | C] -- C:\Users\????\AppData\Roaming\Apple Computer
[2011.02.12 19:06:11 | 000,000,000 | ---D | C] -- C:\Users\????\AppData\Local\Apple Computer
[2011.02.12 19:05:26 | 000,000,000 | ---D | C] -- C:\ProgramData\{93E26451-CD9A-43A5-A2FA-C42392EA4001}
[2011.02.10 07:58:01 | 000,599,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeeds.dll
[2011.02.10 07:58:00 | 000,703,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2011.02.10 07:57:59 | 000,482,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
[2011.02.10 07:57:59 | 000,386,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2011.02.10 07:57:59 | 000,256,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll
[2011.02.10 07:57:59 | 000,185,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2011.02.10 07:57:59 | 000,097,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2011.02.10 07:57:59 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2011.02.10 07:57:59 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll
[2011.02.10 07:57:59 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
[2011.02.10 07:57:59 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2011.02.10 07:57:59 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe
[2011.02.10 07:57:51 | 000,264,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\upnp.dll
[2011.02.10 07:57:51 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\upnp.dll
[2011.02.10 07:57:50 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\davclnt.dll
[2011.02.10 07:57:49 | 000,080,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\davclnt.dll
[2011.02.10 07:57:49 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wscapi.dll
[2011.02.10 07:57:49 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wscapi.dll
[2011.02.10 07:57:49 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\slwga.dll
[2011.02.10 07:57:49 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\slwga.dll
[2011.02.10 07:57:48 | 000,214,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsrv.dll
[2011.02.10 07:57:46 | 000,265,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dxgmms1.sys
[2011.02.10 07:57:46 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdd.dll
[2011.02.10 07:57:42 | 000,852,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2011.02.10 07:57:42 | 000,716,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2011.02.10 07:57:42 | 000,612,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2011.02.10 07:57:39 | 005,510,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2011.02.10 07:57:39 | 001,739,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll
[2011.02.10 07:57:38 | 003,957,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2011.02.10 07:57:38 | 003,901,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2011.02.10 07:57:37 | 000,366,080 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysNative\atmfd.dll
[2011.02.10 07:57:37 | 000,294,400 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\atmfd.dll
[2011.02.10 07:57:37 | 000,046,080 | ---- | C] (Adobe Systems) -- C:\Windows\SysNative\atmlib.dll
[2011.02.10 07:57:37 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\SysWow64\atmlib.dll
[2011.02.06 10:47:20 | 000,000,000 | ---D | C] -- C:\Users\?????\Neuer Ordner
========== Files - Modified Within 30 Days ==========
[2011.03.01 16:06:40 | 000,001,118 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011.03.01 16:06:09 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2011.03.01 16:06:04 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011.03.01 16:06:00 | 3195,318,272 | -HS- | M] () -- C:\hiberfil.sys
[2011.03.01 16:05:17 | 008,126,464 | ---- | M] () -- C:\Users????\ntuser.dat
[2011.03.01 16:05:09 | 006,240,578 | -H-- | M] () -- C:\Users\?????\AppData\Local\IconCache.db
[2011.03.01 15:31:03 | 000,009,696 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011.03.01 15:31:03 | 000,009,696 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011.03.01 15:30:40 | 001,512,234 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011.03.01 15:30:40 | 000,659,310 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
[2011.03.01 15:30:40 | 000,620,546 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011.03.01 15:30:40 | 000,131,890 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
[2011.03.01 15:30:40 | 000,108,106 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011.03.01 15:28:00 | 000,001,122 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011.02.27 22:03:36 | 000,524,288 | -HS- | M] () -- C:\Users\?????\ntuser.dat{e730be36-429e-11e0-ab3b-0024be3e1a50}.TMContainer00000000000000000002.regtrans-ms
[2011.02.27 22:03:36 | 000,524,288 | -HS- | M] () -- C:\Users\??????\ntuser.dat{e730be36-429e-11e0-ab3b-0024be3e1a50}.TMContainer00000000000000000001.regtrans-ms
[2011.02.27 22:03:36 | 000,065,536 | -HS- | M] () -- C:\Users\?????\ntuser.dat{e730be36-429e-11e0-ab3b-0024be3e1a50}.TM.blf
[2011.02.27 19:44:28 | 008,126,464 | ---- | M] () -- C:\Users\????\ntuser.bak
[2011.02.27 19:11:08 | 000,000,884 | ---- | M] () -- C:\Users\?????\Desktop\NTREGOPT.lnk
[2011.02.27 19:11:08 | 000,000,865 | ---- | M] () -- C:\Users\?????\Desktop\ERUNT.lnk
[2011.02.25 16:09:29 | 000,430,182 | R--- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2011.02.23 08:32:43 | 000,524,288 | -HS- | M] () -- C:\Users\?????\ntuser.dat{5a9c8cb4-3f19-11e0-a7fa-0024be3e1a50}.TMContainer00000000000000000002.regtrans-ms
[2011.02.23 08:32:43 | 000,524,288 | -HS- | M] () -- C:\Users\?????\ntuser.dat{5a9c8cb4-3f19-11e0-a7fa-0024be3e1a50}.TMContainer00000000000000000001.regtrans-ms
[2011.02.23 08:32:43 | 000,065,536 | -HS- | M] () -- C:\Users\?????\ntuser.dat{5a9c8cb4-3f19-11e0-a7fa-0024be3e1a50}.TM.blf
[2011.02.22 13:21:29 | 000,015,292 | ---- | M] () -- C:\Users\Public\Documents\cc_20110222_132120.reg
[2011.02.22 12:52:29 | 000,001,069 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011.02.22 10:17:52 | 000,001,024 | ---- | M] () -- C:\Windows\SysNative\AutoPartNt.let
[2011.02.22 10:16:34 | 003,704,088 | ---- | M] (Acronis) -- C:\Windows\SysNative\AutoPartNt.exe
[2011.02.19 13:38:20 | 000,001,289 | ---- | M] () -- C:\Users\?????\Desktop\Acronis*True*Image*Home.lnk
[2011.02.18 20:21:45 | 000,042,664 | ---- | M] () -- C:\Windows\SysWow64\drivers\fsbts.sys
[2011.02.18 20:16:51 | 001,549,124 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2011.02.18 20:15:34 | 000,573,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msvcp50.dll
[2011.02.17 22:06:09 | 000,524,288 | -HS- | M] () -- C:\Users\?????\ntuser.dat{5a7bad10-3abc-11e0-9fde-00264370aba7}.TMContainer00000000000000000002.regtrans-ms
[2011.02.17 22:06:09 | 000,524,288 | -HS- | M] () -- C:\Users\?????\ntuser.dat{5a7bad10-3abc-11e0-9fde-00264370aba7}.TMContainer00000000000000000001.regtrans-ms
[2011.02.17 22:06:09 | 000,065,536 | -HS- | M] () -- C:\Users\??????\ntuser.dat{5a7bad10-3abc-11e0-9fde-00264370aba7}.TM.blf
[2011.02.17 15:42:49 | 000,524,288 | -HS- | M] () -- C:\Users\??????\ntuser.dat{a5d8b5eb-3aa0-11e0-9191-0024be3e1a50}.TMContainer00000000000000000002.regtrans-ms
[2011.02.17 15:42:49 | 000,524,288 | -HS- | M] () -- C:\Users\?????\ntuser.dat{a5d8b5eb-
3aa0-11e0-9191-0024be3e1a50}.TMContainer00000000000000000001.regtrans-ms
[2011.02.17 15:42:49 | 000,065,536 | -HS- | M] () -- C:\Users\?????\ntuser.dat{a5d8b5eb-3aa0-11e0-9191-0024be3e1a50}.TM.blf
[2011.02.17 13:19:14 | 000,524,288 | -HS- | M] () -- C:\Users\?????\ntuser.dat{a3571dff-3a79-11e0-8fbb-00264370aba7}.TMContainer00000000000000000002.regtrans-ms
[2011.02.17 13:19:14 | 000,524,288 | -HS- | M] () -- C:\Users\?????\ntuser.dat{a3571dff-3a79-11e0-8fbb-00264370aba7}.TMContainer00000000000000000001.regtrans-ms
[2011.02.17 13:19:14 | 000,065,536 | -HS- | M] () -- C:\Users\??????\ntuser.dat{a3571dff-3a79-11e0-8fbb-00264370aba7}.TM.blf
[2011.02.17 10:46:18 | 006,952,960 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\drivers\NETw5s64.sys
[2011.02.17 10:46:18 | 002,747,904 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\NETw5r64.dll
[2011.02.17 10:46:18 | 000,787,456 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\NETw5c64.dll
[2011.02.17 10:45:05 | 000,592,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ipcoin80.dll
[2011.02.17 10:36:11 | 000,501,536 | ---- | M] (Marvell) -- C:\Windows\SysNative\yk62x64.dll
[2011.02.17 10:36:11 | 000,402,720 | ---- | M] (Marvell) -- C:\Windows\SysNative\drivers\yk62x64.sys
[2011.02.17 10:35:15 | 000,541,216 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\NVUNINST.EXE
[2011.02.17 10:35:15 | 000,541,216 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvuhda6.exe
[2011.02.17 10:35:15 | 000,171,520 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcohda6.dll
[2011.02.17 10:35:15 | 000,084,512 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\drivers\nvhda64v.sys
[2011.02.17 10:35:15 | 000,062,976 | ---- | M] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\SysNative\nvapo64v.dll
[2011.02.17 10:35:15 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\nvhdap64.dll
[2011.02.17 10:35:15 | 000,001,481 | ---- | M] () -- C:\Windows\SysNative\nvhda.nvu
[2011.02.17 10:34:20 | 000,036,616 | ---- | M] (IVT Corporation.) -- C:\Windows\SysNative\drivers\btcusb.sys
[2011.02.17 10:34:20 | 000,019,464 | ---- | M] (IVT Corporation.) -- C:\Windows\SysNative\btinstall.dll
[2011.02.17 10:32:33 | 000,132,648 | ---- | M] (Broadcom Corporation.) -- C:\Windows\SysNative\drivers\btwavdt.sys
[2011.02.17 09:33:51 | 000,524,288 | -HS- | M] () -- C:\Users\?????\ntuser.dat{6d71d8e4-3a6b-11e0-8b4d-00264370aba7}.TMContainer00000000000000000002.regtrans-ms
[2011.02.17 09:33:51 | 000,524,288 | -HS- | M] () -- C:\Users\??????\ntuser.dat{6d71d8e4-3a6b-11e0-8b4d-00264370aba7}.TMContainer00000000000000000001.regtrans-ms
[2011.02.17 09:33:51 | 000,065,536 | -HS- | M] () -- C:\Users\?????\ntuser.dat{6d71d8e4-3a6b-11e0-8b4d-00264370aba7}.TM.blf
[2011.02.13 14:02:23 | 000,050,688 | ---- | M] () -- C:\Windows\SysNative\KCDSMSNO.DLL
[2011.02.10 13:49:56 | 002,386,416 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2011.02.08 13:55:21 | 000,016,432 | ---- | M] () -- C:\Windows\SysNative\lsdelete.exe
========== Files Created - No Company Name ==========
[2011.02.27 19:46:00 | 000,524,288 | -HS- | C] () -- C:\Users\??????\ntuser.dat{e730be36-429e-11e0-ab3b-0024be3e1a50}.TMContainer00000000000000000002.regtrans-ms
[2011.02.27 19:46:00 | 000,524,288 | -HS- | C] () -- C:\Users\?????\ntuser.dat{e730be36-429e-11e0-ab3b-0024be3e1a50}.TMContainer00000000000000000001.regtrans-ms
[2011.02.27 19:46:00 | 000,065,536 | -HS- | C] () -- C:\Users\?????\ntuser.dat{e730be36-429e-11e0-ab3b-0024be3e1a50}.TM.blf
[2011.02.27 19:11:08 | 000,000,884 | ---- | C] () -- C:\Users\?????\Desktop\NTREGOPT.lnk
[2011.02.27 19:11:08 | 000,000,865 | ---- | C] () -- C:\Users\?????\Desktop\ERUNT.lnk
[2011.02.24 11:43:12 | 000,002,113 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO-Support für Übertragungen.lnk
[2011.02.24 10:29:13 | 000,001,039 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Update.lnk
[2011.02.23 08:46:56 | 006,240,578 | -H-- | C] () -- C:\Users\?????\AppData\Local\IconCache.db
[2011.02.23 08:25:33 | 000,524,288 | -HS- | C] () -- C:\Users\?????\ntuser.dat{5a9c8cb4-3f19-11e0-a7fa-0024be3e1a50}.TMContainer00000000000000000002.regtrans-ms
[2011.02.23 08:25:33 | 000,524,288 | -HS- | C] () -- C:\Users\?????\ntuser.dat{5a9c8cb4-3f19-11e0-a7fa-0024be3e1a50}.TMContainer00000000000000000001.regtrans-ms
[2011.02.23 08:25:33 | 000,065,536 | -HS- | C] () -- C:\Users\?????\ntuser.dat{5a9c8cb4-3f19-11e0-a7fa-0024be3e1a50}.TM.blf
[2011.02.22 13:21:26 | 000,015,292 | ---- | C] () -- C:\Users\Public\Documents\cc_20110222_132120.reg
[2011.02.22 12:52:29 | 000,001,069 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011.02.19 13:38:20 | 000,001,289 | ---- | C] () -- C:\Users\?????\Desktop\Acronis*True*Image*Home.lnk
[2011.02.18 20:17:22 | 000,042,664 | ---- | C] () -- C:\Windows\SysWow64\drivers\fsbts.sys
[2011.02.17 18:47:28 | 000,524,288 | -HS- | C] () -- C:\Users\?????\ntuser.dat{5a7bad10-3abc-11e0-9fde-00264370aba7}.TMContainer00000000000000000002.regtrans-ms
[2011.02.17 18:47:28 | 000,524,288 | -HS- | C] () -- C:\Users\??????\ntuser.dat{5a7bad10-3abc-11e0-9fde-00264370aba7}.TMContainer00000000000000000001.regtrans-ms
[2011.02.17 18:47:28 | 000,065,536 | -HS- | C] () -- C:\Users\??????\ntuser.dat{5a7bad10-3abc-11e0-9fde-00264370aba7}.TM.blf
[2011.02.17 15:37:49 | 000,524,288 | -HS- | C] () -- C:\Users\Nilgün\ntuser.dat{a5d8b5eb-3aa0-11e0-9191-0024be3e1a50}.TMContainer00000000000000000002.regtrans-ms
[2011.02.17 15:37:49 | 000,524,288 | -HS- | C] () -- C:\Users\?????\ntuser.dat{a5d8b5eb-3aa0-11e0-9191-0024be3e1a50}.TMContainer00000000000000000001.regtrans-ms
[2011.02.17 15:37:49 | 000,065,536 | -HS- | C] () -- C:\Users\?????\ntuser.dat{a5d8b5eb-3aa0-11e0-9191-0024be3e1a50}.TM.blf
[2011.02.17 11:03:56 | 000,524,288 | -HS- | C] () -- C:\Users\??????\ntuser.dat{a3571dff-3a79-11e0-8fbb-00264370aba7}.TMContainer00000000000000000002.regtrans-ms
[2011.02.17 11:03:56 | 000,524,288 | -HS- | C] () -- C:\Users\?????\ntuser.dat{a3571dff-3a79-11e0-8fbb-00264370aba7}.TMContainer00000000000000000001.regtrans-ms
[2011.02.17 11:03:56 | 000,065,536 | -HS- | C] () -- C:\Users\?????\ntuser.dat{a3571dff-3a79-11e0-8fbb-00264370aba7}.TM.blf
[2011.02.17 10:35:15 | 000,001,481 | ---- | C] () -- C:\Windows\SysNative\nvhda.nvu
[2011.02.17 09:05:44 | 000,524,288 | -HS- | C] () -- C:\Users\?????\ntuser.dat{6d71d8e4-3a6b-11e0-8b4d-00264370aba7}.TMContainer00000000000000000002.regtrans-ms
[2011.02.17 09:05:44 | 000,524,288 | -HS- | C] () -- C:\Users\?????\ntuser.dat{6d71d8e4-3a6b-11e0-8b4d-00264370aba7}.TMContainer00000000000000000001.regtrans-ms
[2011.02.17 09:05:44 | 000,065,536 | -HS- | C] () -- C:\Users\?????\ntuser.dat{6d71d8e4-3a6b-11e0-8b4d-00264370aba7}.TM.blf
[2011.02.13 14:02:23 | 000,050,688 | ---- | C] () -- C:\Windows\SysNative\KCDSMSNO.DLL
[2010.10.17 13:37:43 | 001,549,124 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2010.08.27 11:33:50 | 000,000,025 | ---- | C] () -- C:\Windows\CDEC66SeriesEuro.ini
[2010.07.11 08:06:25 | 000,040,960 | ---- | C] () -- C:\Windows\SysWow64\unM9205.exe
[2010.07.11 08:06:25 | 000,021,201 | ---- | C] () -- C:\Windows\SysWow64\rm9205.exe
[2010.07.01 09:59:51 | 000,004,608 | ---- | C] () -- C:\Users\?????\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.04.02 10:31:29 | 000,000,495 | ---- | C] () -- C:\Windows\cdplayer.ini
[2010.03.08 21:34:17 | 000,000,221 | ---- | C] () -- C:\ProgramData\MusicStation.xml
[2010.02.21 03:48:22 | 000,085,504 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll
[2010.01.17 14:18:32 | 000,000,127 | ---- | C] () -- C:\Users\?????\AppData\Roaming\default.rss
[2010.01.17 14:16:55 | 000,000,069 | ---- | C] () -- C:\Windows\NeroDigital.ini
[2010.01.17 13:34:13 | 000,000,039 | ---- | C] () -- C:\Windows\Irremote.ini
[2010.01.14 10:01:21 | 000,000,017 | ---- | C] () -- C:\Users\?????\AppData\Local\resmon.resmoncfg
[2010.01.06 16:37:49 | 000,000,268 | RH-- | C] () -- C:\ProgramData\Profiles
[2010.01.06 16:37:49 | 000,000,268 | RH-- | C] () -- C:\Users\?????\AppData\Roaming\Printer Icons
[2010.01.06 16:37:49 | 000,000,020 | -H-- | C] () -- C:\ProgramData\PKP_DLdu.DAT
[2010.01.06 16:37:49 | 000,000,012 | RH-- | C] () -- C:\ProgramData\Resources
[2009.12.25 10:58:44 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2009.12.16 18:38:33 | 000,123,440 | ---- | C] () -- C:\Users\?????\AppData\Local\GDIPFONTCACHEV1.DAT
[2009.09.06 10:23:26 | 000,000,000 | ---- | C] () -- C:\Windows\VAIOUpdt.INI
[2009.09.06 10:07:13 | 000,002,835 | ---- | C] () -- C:\Windows\SysWow64\McOEMAppRules.dat
[2009.08.16 09:08:36 | 000,178,176 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2009.07.14 06:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009.07.14 03:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009.07.14 03:35:42 | 000,001,405 | ---- | C] () -- C:\Windows\msdfmap.ini
[2009.07.14 03:34:57 | 000,000,510 | ---- | C] () -- C:\Windows\win.ini
[2009.07.14 03:34:57 | 000,000,219 | ---- | C] () -- C:\Windows\system.ini
[2009.07.14 03:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009.07.14 01:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009.07.14 00:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009.07.13 22:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009.06.10 22:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2009.05.29 14:52:26 | 000,204,800 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2009.05.29 14:47:06 | 000,881,664 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2007.02.05 19:05:26 | 000,000,038 | ---- | C] () -- C:\Windows\AviSplitter.INI
========== LOP Check ==========
[2010.07.11 21:19:38 | 000,000,000 | -HSD | M] -- C:\Users\?????\AppData\Roaming\.#
[2011.01.07 22:51:07 | 000,000,000 | ---D | M] -- C:\Users\?????\AppData\Roaming\Acronis
[2009.12.16 19:31:04 | 000,000,000 | ---D | M] -- C:\Users\?????\AppData\Roaming\BitDefender
[2010.06.16 07:52:00 | 000,000,000 | ---D | M] -- C:\Users\??????\AppData\Roaming\Canon
[2010.02.25 19:48:14 | 000,000,000 | ---D | M] -- C:\Users\?????\AppData\Roaming\DAEMON Tools Lite
[2010.02.09 20:20:48 | 000,000,000 | ---D | M] -- C:\Users\?????\AppData\Roaming\DAEMON Tools Pro
[2010.07.11 08:27:49 | 000,000,000 | ---D | M] -- C:\Users?????\AppData\Roaming\DriverFinder
[2010.02.26 19:38:03 | 000,000,000 | ---D | M] -- C:\Users\?????\AppData\Roaming\Farm Mania
[2010.08.08 11:32:57 | 000,000,000 | ---D | M] -- C:\Users\?????\AppData\Roaming\Lingoes
[2010.01.06 16:54:10 | 000,000,000 | ---D | M] -- C:\Users\?????\AppData\Roaming\Nikon
[2010.06.01 11:54:08 | 000,000,000 | ---D | M] -- C:\Users?????\AppData\Roaming\Nokia
[2010.06.01 11:54:04 | 000,000,000 | ---D | M] -- C:\Users\?????\AppData\Roaming\PC Suite
[2011.02.25 22:18:16 | 000,000,000 | ---D | M] -- C:\Users\?????\AppData\Roaming\PCFix
[2011.02.24 11:30:28 | 000,000,000 | ---D | M] -- C:\Users\?????\AppData\Roaming\Protector Suite
[2011.02.21 09:17:07 | 000,000,000 | ---D | M] -- C:\Users\??????\AppData\Roaming\QuickScan
[2010.03.27 17:18:53 | 000,000,000 | ---D | M] -- C:\Users\???????\AppData\Roaming\Spesoft Audio Converter
[2010.02.09 20:34:44 | 000,000,000 | ---D | M] -- C:\Users\??????\AppData\Roaming\TuneUp Software
[2011.02.28 18:30:09 | 000,000,000 | ---D | M] -- C:\Users\??????\AppData\Roaming\Uniblue
[2011.02.23 08:41:45 | 000,000,000 | ---D | M] -- C:\Users\?????\AppData\Roaming\Win7codecs
[2010.02.26 19:37:50 | 000,000,000 | ---D | M] -- C:\Users\?????\AppData\Roaming\Zylom
[2011.02.08 09:16:30 | 000,032,632 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:456A69E6
< End of report > --- --- ---
Hoffe das bringt was. |