Code:
OTL logfile created on: 6/30/2011 4:20:01 PM - Run 1
OTL by OldTimer - Version 3.2.24.2 Folder = C:\Users\nik\Desktop\HijackThis
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000409 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
3.85 Gb Total Physical Memory | 2.66 Gb Available Physical Memory | 68.95% Memory free
7.71 Gb Paging File | 6.26 Gb Available in Paging File | 81.27% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 112.00 Gb Total Space | 66.25 Gb Free Space | 59.16% Space Free | Partition Type: NTFS
Drive D: | 165.99 Gb Total Space | 109.59 Gb Free Space | 66.02% Space Free | Partition Type: NTFS
Drive F: | 3.73 Gb Total Space | 3.71 Gb Free Space | 99.45% Space Free | Partition Type: FAT
Computer Name: NIK-LAPTOP | User Name: nik | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011/06/30 16:17:50 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\nik\Desktop\HijackThis\OTL.exe
PRC - [2011/06/29 23:48:24 | 000,388,608 | ---- | M] (Trend Micro Inc.) -- C:\Users\nik\Desktop\HijackThis\HiJackThis204.exe
PRC - [2011/06/28 11:47:58 | 000,273,544 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
PRC - [2011/06/06 12:55:28 | 000,064,952 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2011/03/31 16:48:36 | 001,540,096 | ---- | M] (Nokia) -- C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer.exe
PRC - [2011/03/31 14:38:26 | 000,140,288 | ---- | M] (Nokia) -- C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
PRC - [2011/03/30 00:17:08 | 000,066,560 | ---- | M] (Nalpeiron Ltd.) -- C:\Windows\SysWOW64\nlssrv32.exe
PRC - [2011/03/28 16:15:04 | 000,136,360 | ---- | M] (Avira GmbH) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
PRC - [2011/03/28 16:14:56 | 000,281,768 | ---- | M] (Avira GmbH) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
PRC - [2011/03/28 16:14:56 | 000,269,480 | ---- | M] (Avira GmbH) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
PRC - [2011/03/22 20:37:06 | 000,074,752 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files (x86)\Winamp\winampa.exe
PRC - [2011/03/21 20:56:16 | 001,230,704 | ---- | M] () -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
PRC - [2011/03/21 13:21:24 | 000,632,832 | ---- | M] (Nokia) -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
PRC - [2010/06/08 09:39:00 | 000,847,360 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files (x86)\Samsung\Easy Display Manager\dmhkcore.exe
PRC - [2010/05/06 08:44:44 | 001,749,504 | ---- | M] (SAMSUNG Electronics) -- C:\Program Files (x86)\Samsung\Samsung Support Center\SSCKbdHk.exe
PRC - [2010/04/27 16:39:38 | 000,243,544 | ---- | M] (Microsoft Corp.) -- C:\Program Files (x86)\MSN Toolbar\Platform\5.0.1449.0\mswinext.exe
PRC - [2010/02/10 16:29:52 | 000,719,360 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files (x86)\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe
PRC - [2010/01/19 04:34:48 | 002,201,192 | ---- | M] (SEC) -- C:\Program Files (x86)\Samsung\Samsung Recovery Solution 4\WCScheduler.exe
PRC - [2009/03/05 11:54:50 | 000,311,296 | ---- | M] () -- C:\Windows\SysWOW64\Rezip.exe
PRC - [2007/09/02 13:58:52 | 000,495,616 | ---- | M] () -- C:\Program Files (x86)\RocketDock\RocketDock.exe
========== Modules (SafeList) ==========
MOD - [2011/06/30 16:17:50 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\nik\Desktop\HijackThis\OTL.exe
MOD - [2010/11/20 13:55:09 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
========== Win32 Services (SafeList) ==========
SRV:64bit: - [2010/09/22 11:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
SRV:64bit: - [2010/07/07 20:50:56 | 000,203,264 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2009/07/14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\mpsvc.dll -- (WinDefend)
SRV - [2011/06/06 12:55:28 | 000,064,952 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2011/03/30 00:17:08 | 000,066,560 | ---- | M] (Nalpeiron Ltd.) [Auto | Running] -- C:\Windows\SysWOW64\nlssrv32.exe -- (nlsX86cc)
SRV - [2011/03/28 16:15:04 | 000,136,360 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2011/03/28 16:14:56 | 000,269,480 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2011/03/21 13:21:24 | 000,632,832 | ---- | M] (Nokia) [On_Demand | Running] -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2010/08/20 22:08:46 | 000,036,352 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files (x86)\OpenVPN\bin\openvpnserv.exe -- (OpenVPNService)
SRV - [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/06/10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009/03/05 11:54:50 | 000,311,296 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\Rezip.exe -- (Rezip)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2011/04/01 17:07:25 | 000,116,568 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avipbb.sys -- (avipbb)
DRV:64bit: - [2011/04/01 17:07:25 | 000,083,120 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\avgntflt.sys -- (avgntflt)
DRV:64bit: - [2010/12/02 15:14:26 | 000,009,216 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser_lowerfltjx64.sys -- (UsbserFilt)
DRV:64bit: - [2010/12/02 15:14:24 | 000,009,216 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser_lowerfltx64.sys -- (upperdev)
DRV:64bit: - [2010/12/02 15:14:22 | 000,027,136 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ccdcmbox64.sys -- (nmwcdc)
DRV:64bit: - [2010/12/02 15:14:18 | 000,019,968 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ccdcmbx64.sys -- (nmwcd)
DRV:64bit: - [2010/11/20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/11/20 15:32:47 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010/11/20 15:32:46 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2010/11/20 13:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010/11/20 12:43:57 | 000,032,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser)
DRV:64bit: - [2010/08/20 22:08:46 | 000,030,720 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tap0901.sys -- (tap0901)
DRV:64bit: - [2010/07/07 21:30:10 | 007,195,648 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2010/07/07 20:15:44 | 000,265,728 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2010/06/10 21:45:38 | 001,605,632 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:64bit: - [2010/04/27 09:57:04 | 000,540,696 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2010/04/01 02:25:14 | 000,136,192 | ---- | M] (ELAN Microelectronics Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ETD.sys -- (ETD)
DRV:64bit: - [2010/03/31 02:35:26 | 000,013,824 | ---- | M] (SAMSUNG ELECTRONICS) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\SABI.sys -- (SABI)
DRV:64bit: - [2010/02/27 02:32:12 | 000,158,976 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Impcd.sys -- (Impcd)
DRV:64bit: - [2010/01/29 09:33:38 | 000,116,736 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV:64bit: - [2009/09/28 11:22:00 | 000,395,264 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\yk62x64.sys -- (yukonw7)
DRV:64bit: - [2009/07/14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/07/14 02:39:20 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WSDPrint.sys -- (WSDPrintDevice)
DRV:64bit: - [2009/07/14 02:35:32 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\serscan.sys -- (StillCam)
DRV:64bit: - [2009/06/10 22:38:56 | 000,000,308 | ---- | M] () [File_System | On_Demand | Running] -- C:\Windows\SysNative\wbem\ntfs.mof -- (Ntfs)
DRV:64bit: - [2009/06/10 22:37:05 | 006,108,416 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2009/06/10 22:35:42 | 000,187,392 | ---- | M] (Realtek Corporation ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2009/06/10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2008/08/28 12:44:42 | 000,025,600 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pccsmcfdx64.sys -- (pccsmcfd)
DRV - [2011/01/04 10:32:21 | 000,015,144 | ---- | M] (Windows (R) 2003 DDK 3790 provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\rtport.sys -- (rtport)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://samsung.msn.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://samsung.msn.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.google.com/ig"
FF - prefs.js..extensions.enabledItems: firebug@software.joehewitt.com:1.6.0
FF - prefs.js..extensions.enabledItems: firefox@tvunetworks.com:2
FF - prefs.js..extensions.enabledItems: 5
FF - prefs.js..extensions.enabledItems: 3
FF - prefs.js..extensions.enabledItems: 1
FF - prefs.js..extensions.enabledItems: {46551EC9-40F0-4e47-8E18-8E5CF550CFB8}:1.0.11
FF - prefs.js..extensions.enabledItems: {6AC85730-7D0F-4de0-B3FA-21142DD85326}:2.5.2.1
FF - prefs.js..extensions.enabledItems: {6F0976E6-26F3-4AFE-BBEC-9E99E27E4DF3}:1.4.10
FF - prefs.js..extensions.enabledItems: {88ce39f5-1e54-477c-809d-93d411720f0c}:1.3
FF - prefs.js..extensions.enabledItems: {9fb7d178-155a-4318-9173-1a8eaaea7fe4}:2.1.10
FF - prefs.js..extensions.enabledItems: {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.8.1
FF - prefs.js..extensions.enabledItems: {df4e4df5-5cb7-46b0-9aef-6c784c3249f8}:1.1.0
FF - prefs.js..extensions.enabledItems: {ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a}:1.4.1
FF - prefs.js..extensions.enabledItems: {EF522540-89F5-46b9-B6FE-1829E2B572C6}:4.9.4
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {AB2CE124-6272-4b12-94A9-7303C7397BD1}:4.2.0.5198
FF - prefs.js..extensions.enabledItems: {A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}:7.3.4.48
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..network.proxy.type: 0
FF - HKLM\software\mozilla\Firefox\Extensions\\{A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}: C:\Program Files (x86)\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\ [2011/05/25 20:16:06 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\html5video [2011/05/27 16:35:36 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{6904342A-8307-11DF-A508-4AE2DFD72085}: C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\wpa [2011/05/27 16:35:37 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\msntoolbar@msn.com: C:\Program Files (x86)\MSN Toolbar\Platform\5.0.1449.0\Firefox [2011/06/15 13:08:20 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{27182e60-b5f3-411c-b545-b44205977502}: C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\firefoxextension\SearchHelperExtension\ [2011/06/16 20:06:29 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2011/06/28 11:48:08 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 5.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011/06/28 11:48:05 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 5.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011/06/28 11:48:19 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Thunderbird 3.1.11\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2011/06/28 11:48:05 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Thunderbird 3.1.11\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins [2011/06/28 11:48:19 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Thunderbird\Extensions\\{CCB7D94B-CA92-4E3F-B79D-ADE0F07ADC74}: C:\Program Files (x86)\Nokia\Nokia Ovi Suite\Connectors\Thunderbird Connector\ThunderbirdExtension\ [2011/05/25 20:16:06 | 000,000,000 | ---D | M]
[2011/05/23 15:23:22 | 000,000,000 | ---D | M] (No name found) -- C:\Users\nik\AppData\Roaming\mozilla\Extensions
[2011/05/23 15:23:22 | 000,000,000 | ---D | M] (No name found) -- C:\Users\nik\AppData\Roaming\mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
[2011/06/28 11:49:28 | 000,000,000 | ---D | M] (No name found) -- C:\Users\nik\AppData\Roaming\mozilla\Firefox\Profiles\58i00bp0.default\extensions
[2011/06/28 08:56:39 | 000,000,000 | ---D | M] (IE Tab 2 (FF 3.6+)) -- C:\Users\nik\AppData\Roaming\mozilla\Firefox\Profiles\58i00bp0.default\extensions\{1BC9BA34-1EED-42ca-A505-6D2F1A935BBB}
[2011/06/24 01:16:37 | 000,000,000 | ---D | M] (Browser Backgrounds) -- C:\Users\nik\AppData\Roaming\mozilla\Firefox\Profiles\58i00bp0.default\extensions\{3e0c7f3a-3f50-4730-beb5-4a9a10e2831c}
[2011/05/23 15:43:59 | 000,000,000 | ---D | M] (ColorZilla) -- C:\Users\nik\AppData\Roaming\mozilla\Firefox\Profiles\58i00bp0.default\extensions\{6AC85730-7D0F-4de0-B3FA-21142DD85326}
[2011/05/23 15:43:59 | 000,000,000 | ---D | M] (Fire.fm) -- C:\Users\nik\AppData\Roaming\mozilla\Firefox\Profiles\58i00bp0.default\extensions\{6F0976E6-26F3-4AFE-BBEC-9E99E27E4DF3}
[2011/05/23 15:43:59 | 000,000,000 | ---D | M] (Subtile) -- C:\Users\nik\AppData\Roaming\mozilla\Firefox\Profiles\58i00bp0.default\extensions\{88ce39f5-1e54-477c-809d-93d411720f0c}
[2011/06/24 01:16:39 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Users\nik\AppData\Roaming\mozilla\Firefox\Profiles\58i00bp0.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
[2011/05/23 15:43:58 | 000,000,000 | ---D | M] (Facemoods) -- C:\Users\nik\AppData\Roaming\mozilla\Firefox\Profiles\58i00bp0.default\extensions\ffxtlbr@Facemoods.com
[2011/05/23 15:43:58 | 000,000,000 | ---D | M] (TVU Web Player) -- C:\Users\nik\AppData\Roaming\mozilla\Firefox\Profiles\58i00bp0.default\extensions\firefox@tvunetworks.com
[2011/06/18 16:59:48 | 000,000,000 | ---D | M] ("Xmarks") -- C:\Users\nik\AppData\Roaming\mozilla\Firefox\Profiles\58i00bp0.default\extensions\foxmarks@kei.com
[2010/06/08 17:39:12 | 000,001,959 | ---- | M] () -- C:\Users\nik\AppData\Roaming\Mozilla\Firefox\Profiles\58i00bp0.default\searchplugins\lastfm.xml
[2011/01/07 23:32:34 | 000,004,140 | ---- | M] () -- C:\Users\nik\AppData\Roaming\Mozilla\Firefox\Profiles\58i00bp0.default\searchplugins\youtube.xml
[2011/06/18 16:52:19 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions
[2011/05/24 19:35:45 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}
[2011/06/08 22:29:28 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
File not found (No name found) --
() (No name found) -- C:\USERS\NIK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\58I00BP0.DEFAULT\EXTENSIONS\{9AA46F4F-4DC7-4C06-97AF-5035170634FE}.XPI
() (No name found) -- C:\USERS\NIK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\58I00BP0.DEFAULT\EXTENSIONS\{9FB7D178-155A-4318-9173-1A8EAAEA7FE4}.XPI
() (No name found) -- C:\USERS\NIK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\58I00BP0.DEFAULT\EXTENSIONS\{D4DD63FA-01E4-46A7-B6B1-EDAB7D6AD389}.XPI
() (No name found) -- C:\USERS\NIK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\58I00BP0.DEFAULT\EXTENSIONS\{DF4E4DF5-5CB7-46B0-9AEF-6C784C3249F8}.XPI
() (No name found) -- C:\USERS\NIK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\58I00BP0.DEFAULT\EXTENSIONS\{EF4E370E-D9F0-4E00-B93E-A4F274CFDD5A}.XPI
() (No name found) -- C:\USERS\NIK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\58I00BP0.DEFAULT\EXTENSIONS\{EF522540-89F5-46B9-B6FE-1829E2B572C6}.XPI
() (No name found) -- C:\USERS\NIK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\58I00BP0.DEFAULT\EXTENSIONS\FINDER@MEINGUTSCHEINCODE.DE.XPI
() (No name found) -- C:\USERS\NIK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\58I00BP0.DEFAULT\EXTENSIONS\PLUGIN@APTURE.COM.XPI
[2011/06/16 06:32:37 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2011/05/04 04:52:23 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll
[2010/01/01 10:00:00 | 000,001,392 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml
[2010/01/01 10:00:00 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2010/01/01 10:00:00 | 000,001,153 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml
[2010/01/01 10:00:00 | 000,006,805 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml
[2010/01/01 10:00:00 | 000,001,178 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-de.xml
[2010/01/01 10:00:00 | 000,001,105 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml
O1 HOSTS File: ([2011/06/18 11:30:09 | 000,001,249 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 3dns.adobe.com 3dns-1.adobe.com 3dns-2.adobe.com 3dns-3.adobe.com 3dns-4.adobe.com activate.adobe.com activate-sea.adobe.com activate-sjc0.adobe.com activate.wip.adobe.com
O1 - Hosts: 127.0.0.1 activate.wip1.adobe.com activate.wip2.adobe.com activate.wip3.adobe.com activate.wip4.adobe.com adobe-dns.adobe.com adobe-dns-1.adobe.com adobe-dns-2.adobe.com adobe-dns-3.adobe.com adobe-dns-4.adobe.com
O1 - Hosts: 127.0.0.1 adobeereg.com practivate.adobe practivate.adobe.com practivate.adobe.newoa practivate.adobe.ntp practivate.adobe.ipp ereg.adobe.com ereg.wip.adobe.com ereg.wip1.adobe.com
O1 - Hosts: 127.0.0.1 ereg.wip2.adobe.com ereg.wip3.adobe.com ereg.wip4.adobe.com hl2rcv.adobe.com wip.adobe.com wip1.adobe.com wip2.adobe.com wip3.adobe.com wip4.adobe.com
O1 - Hosts: 127.0.0.1 www.adobeereg.com wwis-dubc1-vip60.adobe.com www.wip.adobe.com www.wip1.adobe.com
O1 - Hosts: 127.0.0.1 www.wip2.adobe.com www.wip3.adobe.com www.wip4.adobe.com wwis-dubc1-vip60.adobe.com crl.verisign.net CRL.VERISIGN.NET ood.opsource.net
O1 - Hosts: 213.244.185.20 static.pe.studivz.net
O2:64bit: - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - File not found
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O2 - BHO: (DivX HiQ) - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Bing Bar BHO) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\MSN Toolbar\Platform\5.0.1449.0\npwinext.dll (Microsoft Corporation)
O3:64bit: - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - File not found
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (@C:\Program Files (x86)\MSN Toolbar\Platform\5.0.1449.0\npwinext.dll,-100) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\MSN Toolbar\Platform\5.0.1449.0\npwinext.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4:64bit: - HKLM..\Run: [ETDWare] C:\Program Files\Elantech\ETDCtrl.exe (ELAN Microelectronics Corp.)
O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [Bing Bar] C:\Program Files (x86)\MSN Toolbar\Platform\5.0.1449.0\mswinext.exe (Microsoft Corp.)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [NokiaMServer] C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer.exe (Nokia)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [WinampAgent] C:\Program Files (x86)\Winamp\winampa.exe (Nullsoft, Inc.)
O4 - HKCU..\Run: [] File not found
O4 - HKCU..\Run: [ICQ] C:\Program Files (x86)\ICQ7.5\ICQ.exe (ICQ, LLC.)
O4 - HKCU..\Run: [NokiaOviSuite2] C:\Program Files (x86)\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe (Nokia)
O4 - HKCU..\Run: [RocketDock] C:\Program Files (x86)\RocketDock\RocketDock.exe ()
O4 - Startup: C:\Users\nik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\nik\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O4 - Startup: C:\Users\nik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenVPN (Hochschule Esslingen).lnk = C:\Program Files (x86)\OpenVPN\bin\openvpn-gui-1.0.3.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O9 - Extra Button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files (x86)\ICQ7.5\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files (x86)\ICQ7.5\ICQ.exe (ICQ, LLC.)
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000001 - File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000002 - File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000003 - File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000004 - File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000005 - File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000006 - File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000007 - File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000008 - File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000009 - File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000010 - File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000011 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - File not found
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jin...ndows-i586.cab (Java Plug-in 1.6.0_26)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.178.1
O18:64bit: - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - File not found
O18:64bit: - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - File not found
O18:64bit: - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\wlpg {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - Reg Error: Key error. File not found
O18 - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - Reg Error: Key error. File not found
O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - Reg Error: Key error. File not found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18:64bit: - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011/06/30 00:08:18 | 000,000,000 | ---D | C] -- C:\Users\nik\Desktop\HijackThis
[2011/06/29 23:53:17 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{F1BF6DE5-F30C-4F2E-AB95-AC34003FEEED}
[2011/06/29 10:41:12 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{7B0B6431-AEE9-49A4-A32D-56AF0A123FFF}
[2011/06/29 08:45:45 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Roaming\Malwarebytes
[2011/06/29 08:45:34 | 000,039,984 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
[2011/06/29 08:45:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2011/06/29 08:45:27 | 000,025,912 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2011/06/29 08:45:26 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2011/06/29 08:16:54 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drvinst.exe
[2011/06/29 08:16:53 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\devrtl.dll
[2011/06/29 08:16:41 | 002,315,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tquery.dll
[2011/06/29 08:16:41 | 002,223,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssrch.dll
[2011/06/29 08:16:39 | 001,549,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tquery.dll
[2011/06/29 08:16:39 | 001,401,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssrch.dll
[2011/06/29 08:16:39 | 000,249,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SearchProtocolHost.exe
[2011/06/29 08:16:38 | 000,778,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssvp.dll
[2011/06/29 08:16:38 | 000,491,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssph.dll
[2011/06/29 08:16:38 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssph.dll
[2011/06/29 08:16:38 | 000,113,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SearchFilterHost.exe
[2011/06/29 08:16:37 | 000,666,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssvp.dll
[2011/06/29 08:16:37 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssphtb.dll
[2011/06/29 08:16:36 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssphtb.dll
[2011/06/29 08:16:36 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msscntrs.dll
[2011/06/29 08:16:35 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msscntrs.dll
[2011/06/29 08:16:08 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Roaming\Avira
[2011/06/28 22:40:37 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{EFB892E1-4742-408E-A91A-8FFB43FBBAEC}
[2011/06/28 16:12:38 | 000,000,000 | ---D | C] -- C:\Windows\system64
[2011/06/28 11:48:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\xing shared
[2011/06/28 11:48:05 | 000,198,848 | ---- | C] (RealNetworks, Inc.) -- C:\Windows\SysWow64\rmoc3260.dll
[2011/06/28 11:48:00 | 000,006,656 | ---- | C] (RealNetworks, Inc.) -- C:\Windows\SysWow64\pndx5016.dll
[2011/06/28 11:48:00 | 000,005,632 | ---- | C] (RealNetworks, Inc.) -- C:\Windows\SysWow64\pndx5032.dll
[2011/06/28 11:47:59 | 000,272,896 | ---- | C] (Progressive Networks) -- C:\Windows\SysWow64\pncrt.dll
[2011/06/28 11:47:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Real
[2011/06/28 11:47:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Real
[2011/06/28 11:47:19 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Roaming\Real
[2011/06/28 10:40:12 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{6ADCB08E-88FE-41E5-B467-17B01C2BECB9}
[2011/06/27 22:39:47 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{24862D93-562E-44CA-A197-E84309C780D3}
[2011/06/27 09:48:32 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{E72188E2-DAB5-4E23-8EB2-C746F142EBE8}
[2011/06/25 22:46:48 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{C7FAE62D-6797-435B-8DBE-BB126D9DE8AA}
[2011/06/25 19:24:44 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Roaming\PDF Writer
[2011/06/25 19:24:44 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\PDF Writer
[2011/06/25 19:24:44 | 000,000,000 | ---D | C] -- C:\ProgramData\PDF Writer
[2011/06/25 13:04:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Google
[2011/06/25 13:04:04 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\Google
[2011/06/25 10:46:26 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{BB04D784-3EB3-4BEF-9227-7D69886904CB}
[2011/06/24 22:46:01 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{695D382E-87C5-40E3-AE06-07F799B2ED73}
[2011/06/24 10:29:02 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{4B40EF78-97FF-4FFA-94C7-4182107C54D3}
[2011/06/23 22:28:25 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{070502F0-4750-497C-A355-7281E77671E1}
[2011/06/20 14:11:30 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Roaming\PhotoScape
[2011/06/20 14:11:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PhotoScape
[2011/06/20 09:06:11 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{9F77372D-4B6C-4E98-BB00-D7CF55BE4BB9}
[2011/06/19 14:31:26 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{F41C4A3B-F252-4F3F-92CF-3CA324B8F672}
[2011/06/18 23:11:40 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{5E1A7719-5A3C-4254-B109-A7DD4BC584E9}
[2011/06/18 11:11:19 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{1805BBFA-DD97-4F1C-B763-AE080BA44F34}
[2011/06/17 21:35:59 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{5C6C0439-DECE-4D82-9DED-A747AB0248DD}
[2011/06/17 10:20:25 | 000,000,000 | ---D | C] -- C:\Users\nik\Neuer Ordner
[2011/06/17 09:35:24 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{989F6D67-2819-4040-AD34-A39735D8F4E7}
[2011/06/16 13:43:49 | 000,702,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2011/06/16 13:43:49 | 000,599,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeeds.dll
[2011/06/16 13:43:48 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2011/06/16 13:43:48 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2011/06/16 13:43:35 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1.dll
[2011/06/16 13:43:35 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d10_1.dll
[2011/06/16 13:43:33 | 000,861,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleaut32.dll
[2011/06/16 13:34:45 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{E6160DD1-D15E-4EC4-A013-728C70990A4B}
[2011/06/16 09:35:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe
[2011/06/16 09:35:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Adobe
[2011/06/16 00:34:56 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{92AE0D67-C48B-4032-80BE-CD50DCFCA48B}
[2011/06/15 13:08:19 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSN Toolbar
[2011/06/15 13:08:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Bing Bar Installer
[2011/06/15 13:08:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Hewlett-Packard
[2011/06/15 13:07:31 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Roaming\HpUpdate
[2011/06/15 13:06:28 | 000,361,320 | ---- | C] (Hewlett-Packard Co.) -- C:\Windows\SysNative\HPDiscoPM5312.dll
[2011/06/15 13:05:49 | 000,000,000 | ---D | C] -- C:\ProgramData\HP
[2011/06/15 13:05:44 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\HP
[2011/06/15 13:04:34 | 000,000,000 | ---D | C] -- C:\Program Files\HP
[2011/06/15 13:03:58 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\HP
[2011/06/15 12:58:50 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\ElevatedDiagnostics
[2011/06/14 23:31:31 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{1D4FB3E7-69B4-475C-8F3F-DEB09CD08CD1}
[2011/06/14 11:30:56 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{1CE8FAA7-AE7E-4103-BFE5-1D5F55A7F210}
[2011/06/13 23:30:20 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{1F3A0F5A-7D94-45AA-AE83-938BE4982973}
[2011/06/13 14:44:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Nik Software
[2011/06/13 14:44:28 | 000,000,000 | ---D | C] -- C:\Windows\MSSecurityNS
[2011/06/13 14:44:28 | 000,000,000 | ---D | C] -- C:\Windows\MSSecurityNi
[2011/06/13 11:29:52 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{999B69AD-0485-4937-8709-FB09A0C836C0}
[2011/06/12 16:13:02 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{C639DF6D-A53F-41BA-B592-F2A6FE9D8652}
[2011/06/12 03:29:39 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{596C9758-2AF7-4A43-8C9B-0B2E1D682F8B}
[2011/06/11 13:23:15 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{326431B8-9B38-4DA3-90DB-BC7423801B6A}
[2011/06/10 11:46:02 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{8F74F35B-11E7-4EA1-95ED-CAC39DD995D9}
[2011/06/09 19:46:54 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{30602A69-4445-4A6E-A7CB-DF876F9728D6}
[2011/06/08 22:44:31 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{080DD99A-ACFD-42AA-82E7-C96255E4FBE0}
[2011/06/08 22:29:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2011/06/08 22:29:26 | 000,157,472 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaws.exe
[2011/06/08 22:29:26 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaw.exe
[2011/06/08 22:29:26 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\java.exe
[2011/06/08 11:02:39 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\Microsoft Games
[2011/06/08 10:56:09 | 000,000,000 | R--D | C] -- C:\Users\nik\Documents\Scanned Documents
[2011/06/08 10:56:08 | 000,000,000 | ---D | C] -- C:\Users\nik\Documents\Fax
[2011/06/08 10:55:17 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Musik
[2011/06/08 10:44:07 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{4D8AC0D8-5599-4A33-A566-EE2E85A814E6}
[2011/06/07 22:25:02 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{5F70F723-DE00-450A-988E-8746055E0A87}
[2011/06/07 10:24:36 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{21E43171-1ACF-4440-B0FD-4091961EA37C}
[2011/06/06 22:08:41 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{92B535C2-13EA-4D0E-B9AD-F987DA720DEC}
[2011/06/06 19:52:14 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Research
[2011/06/06 17:39:05 | 000,000,000 | ---D | C] -- C:\Users\nik\Documents\Rainmeter
[2011/06/06 17:39:05 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Roaming\Rainmeter
[2011/06/06 17:39:01 | 000,000,000 | ---D | C] -- C:\Program Files\Rainmeter
[2011/06/06 12:21:39 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Roaming\vlc
[2011/06/06 10:08:28 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{46DFA2D0-7046-4EB7-93B5-1D7941CB86AD}
[2011/06/05 19:08:01 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{4D2BAADF-6DF7-4F9A-BC40-ABF7528930E5}
[2011/06/04 23:08:20 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{5572ED37-CEE1-47A7-854F-ABCA7F012344}
[2011/06/04 18:29:34 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\Nik Software
[2011/06/04 18:29:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Nik Software
[2011/06/04 18:29:07 | 000,000,000 | ---D | C] -- C:\Program Files\Nik Software
[2011/06/04 18:17:17 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2011/06/04 18:17:17 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe
[2011/06/04 17:50:29 | 000,000,000 | ---D | C] -- C:\Users\nik\Documents\Vuze Downloads
[2011/06/04 17:48:25 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Roaming\Azureus
[2011/06/04 17:48:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Vuze
[2011/06/04 11:07:58 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{D062DF34-8E27-447F-A20E-C4FC21A15F66}
[2011/06/03 23:07:01 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{42C3B827-87E8-49AF-A0A0-FA990895295E}
[2011/06/03 10:50:52 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{4B7E68E5-F45B-451E-B61E-9AAF87D665D0}
[2011/06/02 22:50:17 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{F79338BE-5983-4783-9F36-9FDB9E2A9C05}
[2011/06/02 11:14:05 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\Diagnostics
[2011/06/02 10:49:42 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{64E16A2A-476C-41F0-A56C-1B422DB54C6B}
[2011/06/01 22:49:09 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{808C5D1A-4D02-46E2-9929-0661D63EC877}
[2011/06/01 09:59:19 | 000,000,000 | ---D | C] -- C:\Users\nik\AppData\Local\{11AF236A-CA07-4FE9-8EAA-CBA22F2C5C22}
========== Files - Modified Within 30 Days ==========
[2011/06/30 16:16:47 | 000,013,936 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011/06/30 16:16:47 | 000,013,936 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011/06/30 16:09:43 | 000,001,100 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011/06/30 16:09:16 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/06/30 16:09:10 | 4137,852,928 | -HS- | M] () -- C:\hiberfil.sys
[2011/06/30 10:09:10 | 000,001,104 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011/06/30 08:22:28 | 000,001,109 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/06/30 00:32:26 | 000,000,284 | ---- | M] () -- C:\Users\nik\Desktop\repair.bat
[2011/06/29 23:54:54 | 001,498,506 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011/06/29 23:54:54 | 000,654,166 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
[2011/06/29 23:54:54 | 000,616,008 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011/06/29 23:54:54 | 000,130,006 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
[2011/06/29 23:54:54 | 000,106,388 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011/06/29 23:51:37 | 000,413,736 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2011/06/28 16:21:42 | 000,023,552 | ---- | M] () -- C:\Users\nik\AppData\Local\WebpageIcons.db
[2011/06/28 11:48:05 | 000,198,848 | ---- | M] (RealNetworks, Inc.) -- C:\Windows\SysWow64\rmoc3260.dll
[2011/06/28 11:48:00 | 000,006,656 | ---- | M] (RealNetworks, Inc.) -- C:\Windows\SysWow64\pndx5016.dll
[2011/06/28 11:48:00 | 000,005,632 | ---- | M] (RealNetworks, Inc.) -- C:\Windows\SysWow64\pndx5032.dll
[2011/06/28 11:47:59 | 000,272,896 | ---- | M] (Progressive Networks) -- C:\Windows\SysWow64\pncrt.dll
[2011/06/28 11:47:57 | 000,499,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msvcp71.dll
[2011/06/28 11:47:57 | 000,348,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msvcr71.dll
[2011/06/27 10:27:16 | 000,016,212 | ---- | M] () -- C:\Users\nik\Documents\hellomobobilBestellung.pdf
[2011/06/25 19:56:50 | 000,780,402 | ---- | M] () -- C:\Users\nik\Desktop\auswahl2.pdf
[2011/06/25 19:41:42 | 000,956,201 | ---- | M] () -- C:\Users\nik\Desktop\auswahl1.pdf
[2011/06/25 12:50:13 | 004,827,104 | ---- | M] () -- C:\Users\nik\Documents\Facebook_Leitfaden_klicksafe.pdf
[2011/06/24 01:26:02 | 000,232,638 | ---- | M] () -- C:\Users\nik\Desktop\Biochemie 2 Klausurfragen zur Vorlesung.pdf
[2011/06/23 23:41:57 | 000,404,640 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2011/06/18 11:30:09 | 000,001,249 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2011/06/17 09:57:08 | 000,001,712 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk
[2011/06/15 18:47:58 | 000,021,503 | ---- | M] () -- C:\Users\nik\Documents\https___klarmobil.custhelp.pdf
[2011/06/14 14:52:14 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_PCCSWpdDriver_01_09_00.Wdf
[2011/05/31 20:14:18 | 000,001,409 | ---- | M] () -- C:\Users\nik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenVPN (Hochschule Esslingen).lnk
========== Files Created - No Company Name ==========
[2011/06/30 08:22:28 | 000,001,109 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/06/30 00:32:49 | 000,000,284 | ---- | C] () -- C:\Users\nik\Desktop\repair.bat
[2011/06/27 10:27:16 | 000,016,212 | ---- | C] () -- C:\Users\nik\Documents\hellomobobilBestellung.pdf
[2011/06/25 19:56:51 | 000,780,402 | ---- | C] () -- C:\Users\nik\Desktop\auswahl2.pdf
[2011/06/25 19:41:42 | 000,956,201 | ---- | C] () -- C:\Users\nik\Desktop\auswahl1.pdf
[2011/06/25 13:04:09 | 000,001,104 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011/06/25 13:04:09 | 000,001,100 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011/06/25 12:50:13 | 004,827,104 | ---- | C] () -- C:\Users\nik\Documents\Facebook_Leitfaden_klicksafe.pdf
[2011/06/24 01:26:01 | 000,232,638 | ---- | C] () -- C:\Users\nik\Desktop\Biochemie 2 Klausurfragen zur Vorlesung.pdf
[2011/06/17 09:57:08 | 000,001,712 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk
[2011/06/16 09:35:51 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
[2011/06/15 18:47:58 | 000,021,503 | ---- | C] () -- C:\Users\nik\Documents\https___klarmobil.custhelp.pdf
[2011/06/15 13:08:25 | 000,001,380 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Default Manager.lnk
[2011/06/15 13:07:37 | 000,000,958 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\I.R.I.S. OCR-Registrierung.lnk
[2011/06/14 14:52:14 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_PCCSWpdDriver_01_09_00.Wdf
[2011/06/04 17:48:11 | 000,001,848 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vuze.lnk
[2011/05/31 20:14:18 | 000,001,409 | ---- | C] () -- C:\Users\nik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenVPN (Hochschule Esslingen).lnk
[2011/05/25 20:24:09 | 000,005,632 | ---- | C] () -- C:\Users\nik\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/05/24 11:44:07 | 000,023,552 | ---- | C] () -- C:\Users\nik\AppData\Local\WebpageIcons.db
[2011/05/23 16:32:07 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2011/05/23 15:06:23 | 000,131,368 | ---- | C] () -- C:\ProgramData\FullRemove.exe
[2011/03/30 00:17:10 | 000,316,928 | ---- | C] () -- C:\Windows\SysWow64\HDREfexProFC32.dll
[2010/11/24 21:19:19 | 000,002,857 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2010/11/24 05:33:24 | 000,307,200 | ---- | C] () -- C:\Windows\SetDisplayResolution.exe
[2010/11/24 05:05:33 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2010/11/24 04:17:52 | 000,002,614 | ---- | C] () -- C:\Windows\HotFixList.ini
[2010/11/24 04:09:43 | 000,311,296 | ---- | C] () -- C:\Windows\SysWow64\Rezip.exe
[2010/03/26 21:04:54 | 000,041,872 | ---- | C] () -- C:\Windows\SysWow64\xfcodec.dll
[2009/07/14 07:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009/07/14 04:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009/07/14 04:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009/07/14 02:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009/07/14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009/07/13 23:59:36 | 000,982,196 | ---- | C] () -- C:\Windows\SysWow64\igkrng500.bin
[2009/07/13 23:59:36 | 000,139,824 | ---- | C] () -- C:\Windows\SysWow64\igfcg500.bin
[2009/07/13 23:59:36 | 000,097,448 | ---- | C] () -- C:\Windows\SysWow64\igfcg500m.bin
[2009/07/13 23:59:35 | 000,417,344 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng500.bin
[2009/07/13 23:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009/06/10 23:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
========== LOP Check ==========
[2011/06/13 17:37:31 | 000,000,000 | ---D | M] -- C:\Users\nik\AppData\Roaming\Azureus
[2011/06/30 08:19:54 | 000,000,000 | ---D | M] -- C:\Users\nik\AppData\Roaming\Dropbox
[2011/05/23 16:26:48 | 000,000,000 | ---D | M] -- C:\Users\nik\AppData\Roaming\GHISLER
[2011/05/29 00:06:23 | 000,000,000 | ---D | M] -- C:\Users\nik\AppData\Roaming\go
[2011/06/24 10:37:30 | 000,000,000 | ---D | M] -- C:\Users\nik\AppData\Roaming\GrooveWalrus
[2011/06/30 08:19:43 | 000,000,000 | ---D | M] -- C:\Users\nik\AppData\Roaming\ICQ
[2011/05/25 10:34:36 | 000,000,000 | ---D | M] -- C:\Users\nik\AppData\Roaming\IrfanView
[2011/05/25 20:22:53 | 000,000,000 | ---D | M] -- C:\Users\nik\AppData\Roaming\Nokia
[2011/05/25 20:22:54 | 000,000,000 | ---D | M] -- C:\Users\nik\AppData\Roaming\Nokia Ovi Suite
[2011/05/25 20:22:17 | 000,000,000 | ---D | M] -- C:\Users\nik\AppData\Roaming\PC Suite
[2011/06/25 19:24:44 | 000,000,000 | ---D | M] -- C:\Users\nik\AppData\Roaming\PDF Writer
[2011/06/25 19:06:19 | 000,000,000 | ---D | M] -- C:\Users\nik\AppData\Roaming\PhotoScape
[2011/06/17 10:16:02 | 000,000,000 | ---D | M] -- C:\Users\nik\AppData\Roaming\Rainmeter
[2011/05/23 15:23:21 | 000,000,000 | ---D | M] -- C:\Users\nik\AppData\Roaming\Thunderbird
[2009/07/14 07:08:49 | 000,025,078 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
< End of report >
und noch der extras log: