Hallo lieber Markusg,
habe das Programm Malwarebytes noch einmal installiert und festgestellt, daß die Log-Datei doch noch vorhanden ist. Hier ist sie:
Malwarebytes' Anti-Malware 1.50.1.1100
Malwarebytes : Free anti-malware, anti-virus and spyware removal download
Datenbank Version: 5363
Windows 6.0.6000
Internet Explorer 7.0.6000.17037
28.04.2011 12:48:40
mbam-log-2011-04-28 (12-48-40).txt
Art des Suchlaufs: Quick-Scan
Durchsuchte Objekte: 143894
Laufzeit: 8 Minute(n), 25 Sekunde(n)
Infizierte Speicherprozesse: 0
Infizierte Speichermodule: 0
Infizierte Registrierungsschlüssel: 0
Infizierte Registrierungswerte: 0
Infizierte Dateiobjekte der Registrierung: 1
Infizierte Verzeichnisse: 0
Infizierte Dateien: 0
Infizierte Speicherprozesse:
(Keine bösartigen Objekte gefunden)
Infizierte Speichermodule:
(Keine bösartigen Objekte gefunden)
Infizierte Registrierungsschlüssel:
(Keine bösartigen Objekte gefunden)
Infizierte Registrierungswerte:
(Keine bösartigen Objekte gefunden)
Infizierte Dateiobjekte der Registrierung:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr (PUM.Hijack.TaskManager) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
Infizierte Verzeichnisse:
(Keine bösartigen Objekte gefunden)
Infizierte Dateien:
(Keine bösartigen Objekte gefunden)
Und hier ist die OTL-Log-Datei:OTL Logfile: Code:
OTL logfile created on: 05.05.2011 17:42:28 - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\Gerd Fischer\Desktop
Windows Vista Home Premium Edition (Version = 6.0.6000) - Type = NTWorkstation
Internet Explorer (Version = 7.0.6000.17037)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
1.014,00 Mb Total Physical Memory | 213,00 Mb Available Physical Memory | 21,00% Memory free
2,00 Gb Paging File | 1,00 Gb Available in Paging File | 52,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 83,85 Gb Total Space | 31,90 Gb Free Space | 38,05% Space Free | Partition Type: NTFS
Drive H: | 232,88 Gb Total Space | 212,92 Gb Free Space | 91,43% Space Free | Partition Type: NTFS
Computer Name: NOTEBOOK | User Name: Gerd Fischer | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days
========== Processes (SafeList) ==========
PRC - [2011.05.05 17:31:32 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\Gerd Fischer\Desktop\OTL.exe
PRC - [2011.04.19 07:55:30 | 000,235,168 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\System32\Macromed\Flash\FlashUtil10p_ActiveX.exe
PRC - [2010.11.24 04:21:18 | 000,130,000 | R--- | M] (Symantec Corporation) -- C:\Program Files\Norton AntiVirus\Engine\18.5.0.125\ccSvcHst.exe
PRC - [2008.12.11 11:28:14 | 002,923,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2008.07.14 12:42:22 | 000,409,600 | R--- | M] () -- C:\Program Files\Common Files\AVerMedia\Service\AVerScheduleService.exe
PRC - [2008.06.06 10:45:23 | 000,352,256 | R--- | M] (AVerMedia) -- C:\Program Files\Common Files\AVerMedia\Service\AVerRemote.exe
PRC - [2008.05.10 14:36:08 | 000,029,984 | ---- | M] (Nuance Communications, Inc.) -- C:\Program Files\PaperPort\pptd40nt.exe
PRC - [2007.06.15 13:45:20 | 000,469,112 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\Wireless Switch Setting Utility\Switcher.exe
PRC - [2007.02.13 16:19:48 | 000,182,392 | ---- | M] (Sony Corporation) -- C:\Program Files\sony\VAIO Event Service\VESMgr.exe
PRC - [2007.02.13 16:19:48 | 000,100,472 | ---- | M] (Sony Corporation) -- C:\Program Files\sony\VAIO Event Service\VESMgrSub.exe
PRC - [2007.02.09 11:54:42 | 000,923,768 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\VAIO Power Management\SPMgr.exe
PRC - [2007.01.22 21:39:32 | 000,321,656 | ---- | M] (Sony Corporation) -- C:\Program Files\sony\ISB Utility\ISBMgr.exe
PRC - [2007.01.12 07:52:25 | 000,118,784 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\Apoint\Apoint.exe
PRC - [2007.01.12 07:52:24 | 000,040,960 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\Apoint\Apntex.exe
PRC - [2007.01.12 07:52:23 | 000,042,544 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\Apoint\ApMsgFwd.exe
PRC - [2006.11.28 20:27:46 | 000,274,432 | ---- | M] (Sony Corporation) -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
PRC - [2006.11.28 20:09:58 | 000,135,168 | ---- | M] (Sony Corporation) -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
PRC - [2006.11.28 20:09:46 | 000,172,032 | ---- | M] (Sony Corporation) -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
PRC - [1998.02.05 19:16:18 | 000,024,576 | ---- | M] () -- C:\Windows\System32\NILaunch.exe
========== Modules (SafeList) ==========
MOD - [2011.05.05 17:31:32 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\Gerd Fischer\Desktop\OTL.exe
MOD - [2006.11.02 11:38:57 | 001,648,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll
========== Win32 Services (SafeList) ==========
SRV - [2010.11.24 04:21:18 | 000,130,000 | R--- | M] (Symantec Corporation) [Unknown | Running] -- C:\Program Files\Norton AntiVirus\Engine\18.5.0.125\ccSvcHst.exe -- (NAV)
SRV - [2008.07.14 12:42:22 | 000,409,600 | R--- | M] () [Auto | Running] -- C:\Program Files\Common Files\AVerMedia\Service\AVerScheduleService.exe -- (AVerScheduleService)
SRV - [2008.06.08 19:03:22 | 000,265,912 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\mpsvc.dll -- (WinDefend)
SRV - [2008.06.06 10:45:23 | 000,352,256 | R--- | M] (AVerMedia) [Auto | Running] -- C:\Program Files\Common Files\AVerMedia\Service\AVerRemote.exe -- (AVerRemote)
SRV - [2007.02.13 16:19:48 | 000,182,392 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files\sony\VAIO Event Service\VESMgr.exe -- (VAIO Event Service)
SRV - [2007.01.24 17:56:24 | 000,075,320 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Sony Shared\AvLib\SSScsiSV.exe -- (SSScsiSV)
SRV - [2007.01.24 17:56:20 | 000,112,184 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Sony Shared\AvLib\SsBeSvc.exe -- (SonicStage Back-End Service)
SRV - [2007.01.16 15:05:00 | 002,523,136 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\sony\VAIO Media Integrated Server\VMISrv.exe -- (VAIOMediaPlatform-IntegratedServer-AppServer)
SRV - [2007.01.16 15:05:00 | 001,089,536 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe -- (VAIOMediaPlatform-UCLS-UPnP) VAIO Media Content Collection (UPnP)
SRV - [2007.01.16 15:05:00 | 001,089,536 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe -- (VAIOMediaPlatform-IntegratedServer-UPnP) VAIO Media Integrated Server (UPnP)
SRV - [2007.01.10 17:51:06 | 000,745,472 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\sony\VAIO Media Integrated Server\UCLS.exe -- (VAIOMediaPlatform-UCLS-AppServer)
SRV - [2007.01.10 11:43:24 | 000,073,728 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe -- (VAIO Entertainment TV Device Arbitration Service)
SRV - [2007.01.08 18:06:40 | 000,397,312 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe -- (VAIOMediaPlatform-UCLS-HTTP) VAIO Media Content Collection (HTTP)
SRV - [2007.01.08 18:06:40 | 000,397,312 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe -- (VAIOMediaPlatform-IntegratedServer-HTTP) VAIO Media Integrated Server (HTTP)
SRV - [2007.01.08 18:01:34 | 000,491,520 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\sony\VAIO Media Integrated Server\Platform\VmGateway.exe -- (VAIOMediaPlatform-Mobile-Gateway)
SRV - [2006.12.14 03:21:20 | 000,045,056 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Sony Shared\AvLib\MSCSPTISRV.exe -- (MSCSPTISRV)
SRV - [2006.12.14 03:02:08 | 000,069,632 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Sony Shared\AvLib\SPTISRV.exe -- (SPTISRV)
SRV - [2006.12.14 02:46:16 | 000,057,344 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files\Common Files\Sony Shared\AvLib\PACSPTISVR.exe -- (PACSPTISVR)
SRV - [2006.11.28 20:27:46 | 000,274,432 | ---- | M] (Sony Corporation) [On_Demand | Running] -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe -- (Vcsw)
SRV - [2006.11.28 20:09:58 | 000,135,168 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe -- (VzFw)
SRV - [2006.11.28 20:09:46 | 000,172,032 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe -- (VzCdbSvc)
========== Driver Services (SafeList) ==========
DRV - [2011.05.03 09:35:28 | 001,393,144 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_18.1.0.37\Definitions\VirusDefs\20110502.018\navex15.sys -- (NAVEX15)
DRV - [2011.05.03 09:35:28 | 000,371,248 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys -- (eeCtrl)
DRV - [2011.05.03 09:35:28 | 000,102,448 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv)
DRV - [2011.05.03 09:35:28 | 000,086,136 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_18.1.0.37\Definitions\VirusDefs\20110502.018\naveng.sys -- (NAVENG)
DRV - [2011.05.03 09:24:51 | 000,126,512 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\SYMEVENT.SYS -- (SymEvent)
DRV - [2011.04.30 01:44:12 | 000,802,936 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_18.1.0.37\Definitions\BASHDefs\20110430.001\BHDrvx86.sys -- (BHDrvx86)
DRV - [2011.03.14 20:58:33 | 000,353,912 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_18.1.0.37\Definitions\IPSDefs\20110429.002\IDSvix86.sys -- (IDSVix86)
DRV - [2010.12.01 07:23:59 | 000,330,360 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\system32\drivers\NAV\1205000.07D\SYMTDIV.SYS -- (SYMTDIv)
DRV - [2010.11.23 06:08:31 | 000,509,560 | ---- | M] (Symantec Corporation) [File_System | System | Running] -- C:\Windows\system32\drivers\NAV\1205000.07D\SRTSP.SYS -- (SRTSP)
DRV - [2010.11.23 06:08:31 | 000,050,168 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\system32\drivers\NAV\1205000.07D\SRTSPX.SYS -- (SRTSPX) Symantec Real Time Storage Protection (PEL)
DRV - [2010.11.18 04:59:55 | 000,652,336 | ---- | M] (Symantec Corporation) [File_System | Boot | Running] -- C:\Windows\system32\drivers\NAV\1205000.07D\SYMEFA.SYS -- (SymEFA)
DRV - [2010.11.16 03:45:33 | 000,136,312 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\system32\drivers\NAV\1205000.07D\Ironx86.SYS -- (SymIRON)
DRV - [2010.10.21 04:28:36 | 000,340,016 | ---- | M] (Symantec Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\drivers\NAV\1205000.07D\SYMDS.SYS -- (SymDS)
DRV - [2010.05.28 20:24:32 | 001,870,848 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\athr.sys -- (athr)
DRV - [2010.01.07 17:45:09 | 000,110,304 | ---- | M] (Protect Software GmbH) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\ACEDRV09.sys -- (ACEDRV09)
DRV - [2009.10.22 16:11:14 | 000,057,800 | ---- | M] (FTDI Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ftdibus.sys -- (FTDIBUS)
DRV - [2009.09.10 23:52:54 | 000,104,512 | ---- | M] (SlySoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AnyDVD.sys -- (AnyDVD)
DRV - [2008.06.11 04:15:32 | 000,292,992 | ---- | M] (AVerMedia TECHNOLOGIES, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\AVerAF15DMBTH.sys -- (AVerAF15DMBTH)
DRV - [2007.04.23 13:29:00 | 000,812,544 | ---- | M] (Texas Instruments) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ti21sony.sys -- (ti21sony)
DRV - [2007.02.06 07:54:39 | 000,027,520 | ---- | M] (Sony Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\SonyNC.sys -- (SNC)
DRV - [2007.01.24 12:28:35 | 001,786,880 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\NETw3v32.sys -- (NETw3v32) Intel(R)
DRV - [2007.01.12 07:52:24 | 000,140,800 | ---- | M] (Alps Electric Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Apfiltr.sys -- (ApfiltrService)
DRV - [2007.01.10 13:09:12 | 000,008,192 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\XAudio.sys -- (XAudio)
DRV - [2006.11.02 03:50:52 | 000,128,104 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\WimFltr.sys -- (WimFltr)
DRV - [2006.10.18 12:56:30 | 000,010,216 | ---- | M] (Sony Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\DMICall.sys -- (DMICall)
DRV - [2006.10.09 14:03:56 | 000,017,152 | ---- | M] (Deutsche Telekom AG, Marmiko IT-Solutions GmbH) [Kernel | On_Demand | Stopped] -- C:\PROGRA~1\COMMON~1\MARMIK~1\MInfraIS\MIINPazX.SYS -- (MIINPazX)
DRV - [2006.10.09 13:46:44 | 000,017,536 | ---- | M] (Deutsche Telekom AG AG, Marmiko IT-Solutions GmbH) [Kernel | On_Demand | Stopped] -- C:\PROGRA~1\T-Online\T-ONLI~1\BASIS-~1\Basis1\MTOnlPktAlyX.SYS -- (MTOnlPktAlyX)
DRV - [2006.05.11 12:33:14 | 000,037,312 | ---- | M] (DeTeWe Systems GmbH) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\detewecp.sys -- (DETEWECP)
DRV - [2005.12.07 17:53:22 | 000,976,100 | ---- | M] (DeTeWe Berlin) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\Capi20.sys -- (CAPI20)
DRV - [2005.10.10 21:29:02 | 000,034,841 | ---- | M] (DeTeWe Berlin) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ulisa.sys -- (ulisa) Telekom ISDN-Adapter (USB)
DRV - [2000.07.12 03:05:00 | 000,026,402 | ---- | M] (In-System Design, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ISD200.SYS -- (ISD200)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Club VAIO | Welcome
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [Binary data over 100 bytes]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = file:///C:/Users/Gerd%20Fischer/Website/home.html
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 2
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = localhost
========== FireFox ==========
FF - HKLM\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_18.1.0.37\IPSFFPlgn\ [2011.05.03 09:26:02 | 000,000,000 | ---D | M]
[2009.12.09 13:59:30 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Gerd Fischer\AppData\Roaming\mozilla\Extensions
[2009.12.09 13:59:30 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Gerd Fischer\AppData\Roaming\mozilla\Extensions\{1286c9cb-a8d2-e589-73c7-ece17e786864}
O1 HOSTS File: ([2011.05.04 09:21:28 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Symantec Intrusion Prevention) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton AntiVirus\Engine\18.5.0.125\IPS\IPSBHO.DLL (Symantec Corporation)
O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll (Google Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll (Google Inc.)
O2 - BHO: (CBrowserHelperObject Object) - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\PROGRA~1\GOOGLE~1\BAE.dll (Your Company Name)
O3 - HKLM\..\Toolbar: (&Google) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll (Google Inc.)
O3 - HKCU\..\Toolbar\ShellBrowser: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No CLSID value found.
O4 - HKLM..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe (Alps Electric Co., Ltd.)
O4 - HKLM..\Run: [googletalk] C:\Program Files\Google\Google Talk\googletalk.exe (Google)
O4 - HKLM..\Run: [IndexSearch] C:\Program Files\PaperPort\IndexSearch.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [ISBMgr.exe] C:\Program Files\Sony\ISB Utility\ISBMgr.exe (Sony Corporation)
O4 - HKLM..\Run: [Net-It Launcher] C:\Windows\System32\NILaunch.exe ()
O4 - HKLM..\Run: [PaperPort PTD] C:\Program Files\PaperPort\pptd40nt.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [PPort11reminder] C:\Program Files\PaperPort\Ereg\Ereg.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [USSShReg] File not found
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKCU..\Run: [ISUSPM Startup] File not found
O4 - Startup: C:\Users\Gerd Fischer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Windows Explorer.lnk = C:\Windows\explorer.exe (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\System32\GPhotos.scr (Google Inc.)
O9 - Extra 'Tools' menuitem : Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\npjpi160.dll (Sun Microsystems, Inc.)
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Domains: holbaurat.de ([www] https in Vertrauenswürdige Sites)
O15 - HKCU\..Trusted Domains: lotto-bayern.de ([www] https in Vertrauenswürdige Sites)
O15 - HKCU\..Trusted Domains: microsoft.com ([go] https in Vertrauenswürdige Sites)
O15 - HKCU\..Trusted Domains: sueddeutsche.de ([sz-magazin] https in Vertrauenswürdige Sites)
O15 - HKCU\..Trusted Domains: t-online.de ([www.baurat.homepage] https in Vertrauenswürdige Sites)
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} hxxp://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab (QuickTime Object)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} hxxp://download.microsoft.com/download/5/b/0/5b0d4654-aa20-495c-b89f-c1c34c691085/LegitCheckControl.cab (Windows Genuine Advantage Validation Tool)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab (Java Plug-in 1.6.0)
O16 - DPF: {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab (Java Plug-in 1.6.0)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab (Java Plug-in 1.6.0)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~1\COMMON~1\System\OLEDB~1\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~1\COMMON~1\System\OLEDB~1\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~1\COMMON~1\System\OLEDB~1\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~1\COMMON~1\System\OLEDB~1\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~1\COMMON~1\System\OLEDB~1\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~1\COMMON~1\System\OLEDB~1\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\PROGRA~1\COMMON~1\System\OLEDB~1\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\VESWinlogon: DllName - VESWinlogon.dll - C:\Windows\System32\VESWinlogon.dll (Sony Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006.09.18 23:43:36 | 000,000,024 | -H-- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\Autorun.exe
O33 - MountPoints2\H\Shell\AutoRun\command - "" = H:\Autorun.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 7 Days ==========
[2011.05.05 17:31:26 | 000,580,608 | ---- | C] (OldTimer Tools) -- C:\Users\Gerd Fischer\Desktop\OTL.exe
[2011.05.04 20:26:49 | 000,000,000 | ---D | C] -- C:\Users\Gerd Fischer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinZip
[2011.05.04 20:23:37 | 000,000,000 | ---D | C] -- C:\Users\Gerd Fischer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Canon Scanner
[2011.05.04 20:18:17 | 000,000,000 | ---D | C] -- C:\Users\Gerd Fischer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SoftFox
[2011.05.04 20:14:06 | 000,000,000 | ---D | C] -- C:\Users\Gerd Fischer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoImpact
[2011.05.04 19:40:54 | 000,000,000 | ---D | C] -- C:\Users\Gerd Fischer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hardcopy
[2011.05.04 19:13:11 | 000,000,000 | ---D | C] -- C:\Users\Gerd Fischer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Autodesk
[2011.05.04 19:09:54 | 000,000,000 | ---D | C] -- C:\Users\Gerd Fischer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Adobe
[2011.05.03 09:24:51 | 000,126,512 | ---- | C] (Symantec Corporation) -- C:\Windows\System32\drivers\SYMEVENT.SYS
[2011.05.03 09:24:51 | 000,000,000 | ---D | C] -- C:\Program Files\Symantec
[2011.05.03 09:24:31 | 000,652,336 | ---- | C] (Symantec Corporation) -- C:\Windows\System32\drivers\NAV\1205000.07D\symefa.sys
[2011.05.03 09:24:31 | 000,340,016 | ---- | C] (Symantec Corporation) -- C:\Windows\System32\drivers\NAV\1205000.07D\symds.sys
[2011.05.03 09:24:31 | 000,330,360 | ---- | C] (Symantec Corporation) -- C:\Windows\System32\drivers\NAV\1205000.07D\symtdiv.sys
[2011.05.03 09:24:31 | 000,295,032 | ---- | C] (Symantec Corporation) -- C:\Windows\System32\drivers\NAV\1205000.07D\symnets.sys
[2011.05.03 09:24:31 | 000,050,168 | ---- | C] (Symantec Corporation) -- C:\Windows\System32\drivers\NAV\1205000.07D\srtspx.sys
[2011.05.03 09:24:30 | 000,509,560 | ---- | C] (Symantec Corporation) -- C:\Windows\System32\drivers\NAV\1205000.07D\srtsp.sys
[2011.05.03 09:24:30 | 000,136,312 | ---- | C] (Symantec Corporation) -- C:\Windows\System32\drivers\NAV\1205000.07D\ironx86.sys
[2011.05.03 09:23:22 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\NAV\1205000.07D
[2011.05.03 09:22:52 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\NAV
[2011.05.03 09:22:50 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton AntiVirus
[2011.05.03 09:22:50 | 000,000,000 | ---D | C] -- C:\Program Files\Norton AntiVirus
[2011.05.03 09:17:52 | 000,000,000 | ---D | C] -- C:\Program Files\NortonInstaller
========== Files - Modified Within 7 Days ==========
[2011.05.05 17:35:01 | 000,001,110 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011.05.05 17:31:32 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\Gerd Fischer\Desktop\OTL.exe
[2011.05.05 16:46:51 | 000,003,584 | ---- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011.05.05 16:46:51 | 000,003,584 | ---- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011.05.05 15:49:58 | 000,001,052 | ---- | M] () -- C:\Windows\tasks\Google Software Updater.job
[2011.05.05 15:47:45 | 000,001,106 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011.05.05 15:47:04 | 000,016,384 | ---- | M] () -- C:\Windows\System32\Ikeext.etl
[2011.05.05 15:46:46 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011.05.05 15:46:31 | 1063,444,480 | -HS- | M] () -- C:\hiberfil.sys
[2011.05.04 09:21:28 | 000,000,761 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts
[2011.05.03 09:53:31 | 000,000,306 | RHS- | M] () -- C:\ProgramData\ntuser.pol
[2011.05.03 09:25:47 | 001,683,086 | ---- | M] () -- C:\Windows\System32\drivers\NAV\1205000.07D\Cat.DB
[2011.05.03 09:24:51 | 000,126,512 | ---- | M] (Symantec Corporation) -- C:\Windows\System32\drivers\SYMEVENT.SYS
[2011.05.03 09:24:51 | 000,007,456 | ---- | M] () -- C:\Windows\System32\drivers\SYMEVENT.CAT
[2011.05.03 09:24:51 | 000,000,805 | ---- | M] () -- C:\Windows\System32\drivers\SYMEVENT.INF
[2011.05.03 09:24:36 | 000,002,182 | ---- | M] () -- C:\Users\Public\Desktop\Norton AntiVirus.lnk
[2011.04.28 20:40:11 | 000,001,079 | ---- | M] () -- C:\Users\Gerd Fischer\Desktop\Adobe Reader 8.lnk
[2011.04.28 20:37:56 | 000,000,858 | ---- | M] () -- C:\Users\Gerd Fischer\Desktop\Videograbber 5.0.lnk
[2011.04.28 20:29:48 | 000,000,029 | ---- | M] () -- C:\Windows\standard.sta
========== Files Created - No Company Name ==========
[2011.05.03 09:53:31 | 000,000,306 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2011.05.03 09:24:58 | 001,683,086 | ---- | C] () -- C:\Windows\System32\drivers\NAV\1205000.07D\Cat.DB
[2011.05.03 09:24:51 | 000,007,456 | ---- | C] () -- C:\Windows\System32\drivers\SYMEVENT.CAT
[2011.05.03 09:24:51 | 000,000,805 | ---- | C] () -- C:\Windows\System32\drivers\SYMEVENT.INF
[2011.05.03 09:24:36 | 000,002,182 | ---- | C] () -- C:\Users\Public\Desktop\Norton AntiVirus.lnk
[2011.05.03 09:24:31 | 000,007,877 | ---- | C] () -- C:\Windows\System32\drivers\NAV\1205000.07D\symnetv.cat
[2011.05.03 09:24:31 | 000,007,458 | ---- | C] () -- C:\Windows\System32\drivers\NAV\1205000.07D\symnet.cat
[2011.05.03 09:24:31 | 000,007,456 | ---- | C] () -- C:\Windows\System32\drivers\NAV\1205000.07D\symefa.cat
[2011.05.03 09:24:31 | 000,007,454 | ---- | C] () -- C:\Windows\System32\drivers\NAV\1205000.07D\srtspx.cat
[2011.05.03 09:24:31 | 000,007,450 | ---- | C] () -- C:\Windows\System32\drivers\NAV\1205000.07D\symds.cat
[2011.05.03 09:24:31 | 000,003,374 | ---- | C] () -- C:\Windows\System32\drivers\NAV\1205000.07D\symefa.inf
[2011.05.03 09:24:31 | 000,002,792 | ---- | C] () -- C:\Windows\System32\drivers\NAV\1205000.07D\symds.inf
[2011.05.03 09:24:31 | 000,001,474 | ---- | C] () -- C:\Windows\System32\drivers\NAV\1205000.07D\symnetv.inf
[2011.05.03 09:24:31 | 000,001,446 | ---- | C] () -- C:\Windows\System32\drivers\NAV\1205000.07D\symnet.inf
[2011.05.03 09:24:31 | 000,001,389 | ---- | C] () -- C:\Windows\System32\drivers\NAV\1205000.07D\srtspx.inf
[2011.05.03 09:24:30 | 000,007,528 | ---- | C] () -- C:\Windows\System32\drivers\NAV\1205000.07D\iron.cat
[2011.05.03 09:24:30 | 000,007,450 | ---- | C] () -- C:\Windows\System32\drivers\NAV\1205000.07D\srtsp.cat
[2011.05.03 09:24:30 | 000,001,383 | ---- | C] () -- C:\Windows\System32\drivers\NAV\1205000.07D\srtsp.inf
[2011.05.03 09:24:30 | 000,000,742 | ---- | C] () -- C:\Windows\System32\drivers\NAV\1205000.07D\iron.inf
[2011.05.03 09:24:30 | 000,000,172 | ---- | C] () -- C:\Windows\System32\drivers\NAV\1205000.07D\isolate.ini
[2011.04.28 20:40:11 | 000,001,079 | ---- | C] () -- C:\Users\Gerd Fischer\Desktop\Adobe Reader 8.lnk
[2011.04.28 09:54:17 | 000,000,184 | ---- | C] () -- C:\ProgramData\~25616160
[2011.04.28 09:54:17 | 000,000,144 | ---- | C] () -- C:\ProgramData\~25616160r
[2011.04.28 09:54:01 | 000,000,384 | ---- | C] () -- C:\ProgramData\25616160
[2010.10.22 18:24:05 | 000,001,940 | ---- | C] () -- C:\Users\Gerd Fischer\AppData\Local\{96C87F53-AC72-4604-A9CC-186A49F17F3C}.ini
[2010.01.05 12:37:40 | 000,028,672 | ---- | C] () -- C:\Windows\System32\Util.dll
[2009.12.02 13:24:14 | 000,178,176 | ---- | C] () -- C:\Windows\System32\unrar.dll
[2009.11.05 13:38:33 | 000,000,074 | ---- | C] () -- C:\Windows\hdkctnts.ini
[2009.10.04 11:23:21 | 000,000,000 | ---- | C] () -- C:\Windows\odbcddp.ini
[2009.10.04 11:22:01 | 000,001,053 | ---- | C] () -- C:\Windows\ODBCINST.INI
[2009.09.21 16:34:51 | 000,000,081 | -HS- | C] () -- C:\ProgramData\.zreglib
[2009.07.28 17:20:47 | 000,000,487 | ---- | C] () -- C:\Windows\Capictrl.INI
[2009.06.11 11:31:26 | 000,000,064 | ---- | C] () -- C:\Windows\AVerText.ini
[2009.03.07 18:20:20 | 000,049,152 | R--- | C] () -- C:\Windows\System32\AVerIO.dll
[2009.03.07 18:20:20 | 000,003,456 | R--- | C] () -- C:\Windows\System32\AVerIO.sys
[2009.03.07 18:20:05 | 000,253,952 | R--- | C] () -- C:\Windows\System32\sptlib02.dll
[2009.03.07 18:20:05 | 000,249,856 | R--- | C] () -- C:\Windows\System32\sptlib01.dll
[2009.03.07 18:20:05 | 000,245,760 | R--- | C] () -- C:\Windows\System32\sptlib03.dll
[2009.01.12 15:19:42 | 000,031,864 | ---- | C] () -- C:\Windows\maxlink.ini
[2008.04.16 20:08:05 | 000,163,017 | ---- | C] () -- C:\Windows\hpoins16.dat
[2008.04.16 20:08:04 | 000,005,279 | ---- | C] () -- C:\Windows\hpomdl16.dat
[2008.03.23 17:05:24 | 000,000,148 | ---- | C] () -- C:\Windows\bg_info.ini
[2008.02.04 14:39:24 | 000,302,496 | ---- | C] () -- C:\Windows\INSTWIN4.EXE
[2008.02.04 14:37:05 | 000,190,499 | ---- | C] () -- C:\Windows\INSTBS3.EXE
[2008.02.04 14:29:49 | 000,194,851 | ---- | C] () -- C:\Windows\INSTBS2.EXE
[2007.11.09 18:25:09 | 000,000,055 | ---- | C] () -- C:\Windows\TC.INI
[2007.11.09 18:15:39 | 000,246,784 | ---- | C] () -- C:\Windows\UN160407.EXE
[2007.10.26 20:53:58 | 000,000,031 | ---- | C] () -- C:\Windows\sbewin32.INI
[2007.10.24 15:38:16 | 000,000,790 | ---- | C] () -- C:\Windows\TomCat.INI
[2007.10.24 14:36:11 | 000,000,059 | ---- | C] () -- C:\Windows\WINPHONE.INI
[2007.10.21 11:15:01 | 000,000,542 | ---- | C] () -- C:\Windows\ODBC.INI
[2007.10.14 19:44:52 | 000,087,552 | ---- | C] () -- C:\Windows\System32\cpwmon2k.dll
[2007.10.06 14:32:29 | 000,004,656 | ---- | C] () -- C:\Windows\AMIPRO.INI
[2007.10.06 14:19:33 | 000,004,250 | ---- | C] () -- C:\Windows\AMIVISD.INI
[2007.10.06 14:19:33 | 000,000,403 | ---- | C] () -- C:\Windows\AMIPRO2.INI
[2007.10.03 19:41:36 | 000,003,090 | ---- | C] () -- C:\Windows\AMICALC.INI
[2007.10.03 19:25:26 | 000,023,822 | ---- | C] () -- C:\Windows\AMIOW.INI
[2007.10.03 19:25:26 | 000,008,283 | ---- | C] () -- C:\Windows\AMIDW.INI
[2007.10.03 19:25:26 | 000,006,941 | ---- | C] () -- C:\Windows\AMILABEL.INI
[2007.10.03 19:25:26 | 000,005,909 | ---- | C] () -- C:\Windows\AMIWP.INI
[2007.10.03 19:25:26 | 000,001,993 | ---- | C] () -- C:\Windows\AMIIWP.INI
[2007.10.03 19:25:26 | 000,000,898 | ---- | C] () -- C:\Windows\AMIEQN.INI
[2007.10.03 19:25:25 | 000,011,208 | ---- | C] () -- C:\Windows\AMIENV.DLL
[2007.10.03 19:25:25 | 000,000,478 | ---- | C] () -- C:\Windows\lotus.ini
[2007.10.03 19:25:25 | 000,000,332 | ---- | C] () -- C:\Windows\AMIFONT.INI
[2007.10.03 11:06:07 | 000,003,617 | ---- | C] () -- C:\Windows\pc_fb.ini
[2007.09.23 12:45:58 | 000,004,378 | ---- | C] () -- C:\Windows\ULEAD32.INI
[2007.09.23 12:44:05 | 000,284,160 | ---- | C] () -- C:\Windows\unin0407.exe
[2007.09.16 11:42:24 | 000,000,000 | ---- | C] () -- C:\Windows\Net-It Now! SE.INI
[2007.09.16 11:38:10 | 000,024,576 | ---- | C] () -- C:\Windows\System32\NILaunch.exe
[2007.09.16 11:38:08 | 000,037,888 | ---- | C] () -- C:\Windows\System32\NIUninstall.exe
[2007.09.16 11:37:47 | 000,000,038 | ---- | C] () -- C:\Windows\Approach.ini
[2007.09.16 11:31:06 | 000,000,000 | ---- | C] () -- C:\Windows\winhelp.ini
[2007.09.09 19:58:01 | 000,000,054 | ---- | C] () -- C:\Windows\fpxpress.ini
[2007.09.05 09:50:30 | 000,000,000 | ---- | C] () -- C:\Users\Gerd Fischer\AppData\Roaming\wklnhst.dat
[2007.09.04 15:31:56 | 000,060,928 | ---- | C] () -- C:\Users\Gerd Fischer\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2007.02.28 03:36:18 | 000,520,192 | ---- | C] () -- C:\Windows\System32\CddbPlaylist2Roxio.dll
[2007.02.28 03:36:16 | 000,204,800 | ---- | C] () -- C:\Windows\System32\CddbFileTaggerRoxio.dll
[2007.02.28 03:35:50 | 000,000,000 | ---- | C] () -- C:\Windows\System32\px.ini
[2007.02.26 21:02:37 | 000,204,800 | ---- | C] () -- C:\Windows\System32\igfxCoIn_v1151.dll
[2007.02.26 21:02:37 | 000,061,440 | ---- | C] () -- C:\Windows\System32\igfxTMM.dll
[2007.02.26 21:02:37 | 000,053,248 | ---- | C] () -- C:\Windows\System32\oemdspif.dll
[2007.02.26 21:02:36 | 000,077,824 | ---- | C] () -- C:\Windows\System32\hccutils.dll
[2007.02.26 18:03:44 | 000,000,000 | ---- | C] () -- C:\Windows\VAIOUpdt.INI
[2007.02.26 12:59:50 | 000,163,840 | ---- | C] () -- C:\Windows\System32\WLANDLL.DLL
[2006.11.02 17:33:31 | 000,698,314 | ---- | C] () -- C:\Windows\System32\perfh007.dat
[2006.11.02 17:33:31 | 000,290,748 | ---- | C] () -- C:\Windows\System32\perfi007.dat
[2006.11.02 17:33:31 | 000,140,292 | ---- | C] () -- C:\Windows\System32\perfc007.dat
[2006.11.02 17:33:31 | 000,036,916 | ---- | C] () -- C:\Windows\System32\perfd007.dat
[2006.11.02 14:57:28 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006.11.02 14:47:37 | 000,436,000 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2006.11.02 14:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006.11.02 12:33:01 | 000,656,850 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2006.11.02 12:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2006.11.02 12:33:01 | 000,121,506 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2006.11.02 12:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2006.11.02 12:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2006.11.02 10:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2006.11.02 10:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2006.11.02 09:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006.11.02 09:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
[2006.11.02 09:22:43 | 000,099,999 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2006.11.02 09:22:43 | 000,018,271 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2006.10.17 07:00:00 | 000,045,056 | ---- | C] () -- C:\Windows\System32\besch.exe
[2006.10.17 07:00:00 | 000,028,672 | ---- | C] () -- C:\Windows\System32\besched.dll
[2006.09.29 16:12:12 | 000,303,104 | ---- | C] () -- C:\Windows\System32\dnt27VC8.dll
[2006.09.24 22:04:42 | 000,090,112 | ---- | C] () -- C:\Windows\System32\dntvmc27VC8.dll
[2006.09.24 22:03:32 | 000,086,016 | ---- | C] () -- C:\Windows\System32\dntvm27VC8.dll
[2006.09.21 14:53:28 | 000,282,679 | ---- | C] () -- C:\Windows\System32\dnt27.dll
[2006.09.21 14:52:24 | 000,077,882 | ---- | C] () -- C:\Windows\System32\dntvmc27.dll
[2006.09.21 14:52:14 | 000,077,881 | ---- | C] () -- C:\Windows\System32\dntvm27.dll
[2005.01.01 22:05:12 | 000,019,968 | ---- | C] () -- C:\Windows\System32\Cpuinf32.dll
[2005.01.01 22:04:06 | 000,532,480 | ---- | C] () -- C:\Windows\System32\CddbPlaylist2Sony.dll
[2003.10.02 01:00:00 | 000,208,896 | ---- | C] () -- C:\Windows\System32\lockout.dll
[2003.10.02 01:00:00 | 000,045,056 | ---- | C] () -- C:\Windows\System32\lockres.dll
[1998.03.18 03:23:00 | 000,096,256 | ---- | C] () -- C:\Windows\System32\nsqlc32.dll
[1998.01.13 03:23:00 | 000,047,104 | ---- | C] () -- C:\Windows\System32\lotrn13.dll
[1997.07.31 00:00:00 | 000,022,016 | ---- | C] () -- C:\Windows\System32\DOCOBJ.DLL
[1997.07.31 00:00:00 | 000,012,288 | ---- | C] () -- C:\Windows\System32\HLINKPRX.DLL
< End of report > --- --- --- |