Hey ich hab seit paar Tagen das Problem, dass meine Browser seltsame Seiten öffnen, vorallem wenn ich Google nutze. Von irgendwelchen Shopseiten, wo Uhren verkauft werden bis hin zu fake-facebookseiten bei den ich Kreditnummer, usw. angeben soll?!?
Zudem scheint mein Internet irgendwie darunter zu leiden, hab seltsamerweise mehr mals am Tag zeitweise phasen wo es kaum noch surfbar ist. Hatte in der Zeit auch 2 mal den "GVU-Virus"
Hab ihn mir wohl auf irgendwelchen unseriösen Seiten eingefangen
ich hab mal hijackthis& OTL mal scanen lassen:
hijackthis:
Code:
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:14:09, on 16.07.2012
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v9.00 (9.00.8112.16447)
Boot mode: Normal
Running processes:
C:\Users\Emir\AppData\Roaming\Geviat\ohipb.exe
C:\Users\Emir\AppData\Local\RockMelt\Update\1.2.189.1\RockMeltCrashHandler.exe
C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe
C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe
C:\Windows\AsScrPro.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\Steam\steam.exe
C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe
C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.76\deploy\LoLLauncher.exe
C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.0.171\deploy\LolClient.exe
C:\Program Files (x86)\Windows Media Player\wmplayer.exe
C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_3_300_262.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_3_300_262.exe
C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe
C:\Windows\SysWOW64\DllHost.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://asus.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: MB2 - {013a635f-e3aa-4371-b682-ece95ca974b0} - C:\Program Files (x86)\MB2\prxtbMB2.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
O2 - BHO: BittorrentBar_DE - {64ead72b-ffd4-4e01-aa3a-4c71665d73e4} - C:\Program Files (x86)\BittorrentBar_DE\prxtbBitt.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll
O2 - BHO: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O3 - Toolbar: MB2 Toolbar - {013a635f-e3aa-4371-b682-ece95ca974b0} - C:\Program Files (x86)\MB2\prxtbMB2.dll
O3 - Toolbar: BittorrentBar_DE Toolbar - {64ead72b-ffd4-4e01-aa3a-4c71665d73e4} - C:\Program Files (x86)\BittorrentBar_DE\prxtbBitt.dll
O4 - HKLM\..\Run: [UpdateLBPShortCut] "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
O4 - HKLM\..\Run: [UpdateP2GoShortCut] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files (x86)\BitTorrent\BitTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [RockMelt Update] "C:\Users\Emir\AppData\Local\RockMelt\Update\RockMeltUpdate.exe" /c
O4 - HKCU\..\Run: [Microsoft Firewall 2.9] C:\Users\Emir\AppData\Roaming\WMPRWISE.EXE
O4 - HKCU\..\Run: [Lasuqedap] C:\Users\Emir\AppData\Roaming\Geviat\ohipb.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Google Update] "C:\Users\Emir\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [NetLimiter] C:\Program Files\NetLimiter 3\NLClientApp.exe /tray
O4 - Global Startup: FancyStart daemon.lnk = ?
O4 - Global Startup: SRS Premium Sound.lnk = ?
O9 - Extra button: In Blog veröffentlichen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: In Windows Live Writer in Blog veröffentliche&n - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{FEBD8399-6917-49C2-833A-ABB912C92871}: NameServer = 62.109.123.196 213.191.74.18
O23 - Service: ADSM Service (ADSMService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NetLimiter 3 Service (nlsvc) - Locktime Software - C:\Program Files\NetLimiter 3\nlsvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10351 bytes
Code:
OTL logfile created on: 16.07.2012 22:20:27 - Run 1
OTL by OldTimer - Version 3.2.54.0 Folder = C:\Users\Emir\Desktop
64bit- Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
4,00 Gb Total Physical Memory | 2,26 Gb Available Physical Memory | 56,59% Memory free
8,00 Gb Paging File | 6,02 Gb Available in Paging File | 75,22% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 283,44 Gb Total Space | 133,42 Gb Free Space | 47,07% Space Free | Partition Type: NTFS
Drive F: | 5,61 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF
Computer Name: EMIR-PC | User Name: Emir | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
[color=#E56717]========== Processes (SafeList) ==========[/color]
PRC - C:\Users\Emir\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Users\Emir\AppData\Roaming\Geviat\ohipb.exe ()
PRC - C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation)
PRC - C:\Users\Emir\AppData\Local\RockMelt\Update\1.2.189.1\RockMeltCrashHandler.exe (Google Inc.)
PRC - C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.76\deploy\LoLLauncher.exe ()
PRC - C:\Program Files (x86)\Steam\steam.exe (Valve Corporation)
PRC - C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe ()
PRC - C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.0.171\deploy\LolClient.exe (Adobe Systems Inc.)
PRC - C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe ()
PRC - C:\Windows\AsScrPro.exe (ASUS)
PRC - C:\Program Files (x86)\ASUS\ATK Hotkey\HControl.exe (ASUS)
PRC - C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe ()
PRC - C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe ()
PRC - C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe (ASUS)
PRC - C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe (ASUS)
PRC - C:\Program Files (x86)\ASUS\ATK Hotkey\ATKOSD.exe (ASUS)
PRC - C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe (ASUS)
PRC - C:\Program Files (x86)\ASUS\SmartLogon\smartlogon.exe (ASUS)
PRC - C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe (ASUS)
PRC - C:\Program Files (x86)\ASUS\ATK Hotkey\WDC.exe (ASUS)
PRC - C:\Program Files (x86)\ASUS\ATK Hotkey\KBFiltr.exe (ASUS)
PRC - C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe (CyberLink)
PRC - C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe (ASUSTek Computer Inc.)
PRC - C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe ()
PRC - C:\Program Files\ATKGFNEX\GFNEXSrv.exe ()
PRC - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe (Rocket Division Software)
[color=#E56717]========== Modules (No Company Name) ==========[/color]
MOD - C:\Users\Emir\AppData\Roaming\Geviat\ohipb.exe ()
MOD - C:\Program Files (x86)\Steam\bin\libcef.dll ()
MOD - C:\Program Files (x86)\Steam\bin\chromehtml.DLL ()
MOD - C:\Program Files (x86)\Steam\bin\avformat-53.dll ()
MOD - C:\Program Files (x86)\Steam\bin\avutil-51.dll ()
MOD - C:\Program Files (x86)\Steam\bin\avcodec-53.dll ()
MOD - C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.76\deploy\LoLLauncher.exe ()
MOD - C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe ()
MOD - C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe ()
MOD - C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe ()
MOD - C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe ()
MOD - \\.\globalroot\systemroot\syswow64\mswsock.dll ()
MOD - C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll ()
MOD - C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll ()
MOD - C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe ()
MOD - C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt.dll ()
MOD - C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt1.dll ()
[color=#E56717]========== Win32 Services (SafeList) ==========[/color]
SRV:64bit: - (nlsvc) -- C:\Program Files\NetLimiter 3\nlsvc.exe (Locktime Software)
SRV:64bit: - (AMD External Events Utility) -- C:\Windows\SysNative\atiesrxx.exe (AMD)
SRV:64bit: - (AFBAgent) -- C:\Windows\SysNative\FBAgent.exe (ASUSTeK Computer Inc.)
SRV:64bit: - (ATKGFNEXSrv) -- C:\Program Files\ATKGFNEX\GFNEXSrv.exe ()
SRV - (Steam Client Service) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation)
SRV - (MozillaMaintenance) -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation)
SRV - (TuneUp.UtilitiesSvc) -- C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe (TuneUp Software)
SRV - (GS In-Game Service) -- C:\Program Files (x86)\GameTracker\GSInGameService.exe (ClanServers Hosting LLC)
SRV - (BBSvc) -- C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE (Microsoft Corporation.)
SRV - (BBUpdate) -- C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE (Microsoft Corporation)
SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
SRV - (McComponentHostService) -- C:\Program Files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe (McAfee, Inc.)
SRV - (OberonGameConsoleService) -- C:\Program Files (x86)\Asus\Game Park\GameConsole\OberonGameConsoleService.exe ()
SRV - (ASLDRService) -- C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe (ASUS)
SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (ADSMService) -- C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe (ASUSTek Computer Inc.)
SRV - (StarWindServiceAE) -- C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe (Rocket Division Software)
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
DRV:64bit: - (dtsoftbus01) -- C:\Windows\SysNative\drivers\dtsoftbus01.sys (DT Soft Ltd)
DRV:64bit: - (sptd) -- C:\Windows\SysNative\drivers\sptd.sys (Duplex Secure Ltd.)
DRV:64bit: - (vmm) -- C:\Windows\SysNative\Treiber\VMM.sys (Microsoft Corporation)
DRV:64bit: - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation)
DRV:64bit: - (NLNdisPT) -- C:\Windows\SysNative\drivers\nlndis.sys (Locktime Software)
DRV:64bit: - (NLNdisMP) -- C:\Windows\SysNative\drivers\nlndis.sys (Locktime Software)
DRV:64bit: - (nltdi) -- C:\Program Files\NetLimiter 3\nltdi.sys (Locktime Software)
DRV:64bit: - (AsDsm) -- C:\Windows\SysNative\drivers\AsDsm.sys (ASUSTek Computer Inc)
DRV:64bit: - (athr) -- C:\Windows\SysNative\drivers\athrx.sys (Atheros Communications, Inc.)
DRV:64bit: - (atikmdag) -- C:\Windows\SysNative\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV:64bit: - (kbfiltr) -- C:\Windows\SysNative\drivers\kbfiltr.sys ( )
DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
DRV:64bit: - (VIAHdAudAddService) -- C:\Windows\SysNative\drivers\viahduaa.sys (VIA Technologies, Inc.)
DRV:64bit: - (lullaby) -- C:\Windows\SysNative\drivers\lullaby.sys (Windows (R) Win 7 DDK provider)
DRV:64bit: - (ETD) -- C:\Windows\SysNative\drivers\ETD.sys (ELAN Microelectronic Corp.)
DRV:64bit: - (SiSGbeLH) -- C:\Windows\SysNative\drivers\SiSG664.sys (Silicon Integrated Systems Corp.)
DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV:64bit: - (usbfilter) -- C:\Windows\SysNative\drivers\usbfilter.sys (Advanced Micro Devices)
DRV:64bit: - (RTL8167) -- C:\Windows\SysNative\drivers\Rt64win7.sys (Realtek )
DRV:64bit: - (SNP2UVC) USB2.0 PC Camera (SNP2UVC) -- C:\Windows\SysNative\drivers\snp2uvc.sys ()
DRV:64bit: - (MTsensor) -- C:\Windows\SysNative\drivers\ATK64AMD.sys (ASUS)
DRV:64bit: - (AtiPcie) AMD PCI Express (3GIO) -- C:\Windows\SysNative\drivers\AtiPcie.sys (Advanced Micro Devices Inc.)
DRV:64bit: - (mcdbus) -- C:\Windows\SysNative\drivers\mcdbus.sys (MagicISO, Inc.)
DRV:64bit: - (fssfltr) -- C:\Windows\SysNative\drivers\fssfltr.sys (Microsoft Corporation)
DRV:64bit: - (WimFltr) -- C:\Windows\SysNative\drivers\WimFltr.sys (Microsoft Corporation)
DRV:64bit: - (ASMMAP64) -- C:\Program Files\ATKGFNEX\ASMMAP64.sys ()
DRV:64bit: - (VPCNetS2) -- C:\Windows\SysNative\drivers\VMNetSrv.sys (Microsoft Corporation)
DRV - (TuneUpUtilitiesDrv) -- C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys (TuneUp Software)
DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation)
DRV - (mcdbus) -- C:\Windows\SysWOW64\drivers\mcdbus.sys (MagicISO, Inc.)
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
[color=#E56717]========== Internet Explorer ==========[/color]
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=MAAU&src=IE-SearchBox
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\URLSearchHook: {013a635f-e3aa-4371-b682-ece95ca974b0} - C:\Program Files (x86)\MB2\prxtbMB2.dll (Conduit Ltd.)
IE - HKLM\..\URLSearchHook: {64ead72b-ffd4-4e01-aa3a-4c71665d73e4} - C:\Program Files (x86)\BittorrentBar_DE\prxtbBitt.dll (Conduit Ltd.)
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=MAAU&src=IE-SearchBox
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = Preserve
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://asus.msn.com
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
[color=#E56717]========== FireFox ==========[/color]
FF - prefs.js..browser.search.defaultthis.engineName: "BittorrentBar_DE Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2849855&SearchSource=3&q={searchTerms}"
FF - prefs.js..browser.search.selectedEngine: "BittorrentBar_DE Customized Web Search"
FF - prefs.js..browser.startup.homepage: "about:home"
FF - prefs.js..keyword.URL: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2849855&SearchSource=2&q="
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_3_300_262.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_262.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.4.1: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.4.1: C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.3: C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8051.1204: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\@veetle.com/veetleCorePlugin,version=0.9.19: C:\Program Files (x86)\Veetle\plugins\npVeetle.dll (Veetle Inc)
FF - HKLM\Software\MozillaPlugins\@veetle.com/veetlePlayerPlugin,version=0.9.18: C:\Program Files (x86)\Veetle\Player\npvlc.dll (Veetle Inc)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.1: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKCU\Software\MozillaPlugins\@onlive.com/OnLiveGameClientDetector,version=1.0.0: C:\Program Files (x86)\OnLive\Plugin\npolgdet.dll (OnLive)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Emir\AppData\Local\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Emir\AppData\Local\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@us-w1.rockmelt.com/RockMelt Update;version=8: C:\Users\Emir\AppData\Local\RockMelt\Update\1.2.189.1\npRockMeltOneClick8.dll (RockMelt Inc.)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2012.04.28 22:18:08 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012.06.17 12:44:18 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2012.04.28 22:18:08 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012.06.17 12:44:18 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2012.04.28 22:18:08 | 000,000,000 | ---D | M]
[2012.03.31 01:19:31 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Emir\AppData\Roaming\mozilla\Extensions
[2012.06.29 20:23:54 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Emir\AppData\Roaming\mozilla\Firefox\Profiles\71c4y8z3.default\extensions
[2012.04.18 02:02:18 | 000,000,935 | ---- | M] () -- C:\Users\Emir\AppData\Roaming\Mozilla\Firefox\Profiles\71c4y8z3.default\searchplugins\conduit.xml
[2012.04.29 10:05:13 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions
[2012.06.29 20:23:54 | 000,743,305 | ---- | M] () (No name found) -- C:\USERS\EMIR\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\71C4Y8Z3.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI
[2012.06.17 12:44:18 | 000,085,472 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2012.03.13 07:23:34 | 000,001,392 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml
[2012.03.13 07:06:36 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2012.03.13 07:23:34 | 000,001,153 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml
[2012.03.13 07:23:34 | 000,006,805 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml
[2012.03.13 07:23:34 | 000,001,178 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-de.xml
[2012.03.13 07:23:34 | 000,001,105 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml
[color=#E56717]========== Chrome ==========[/color]
CHR - homepage:
CHR - default_search_provider: Conduit (Enabled)
CHR - default_search_provider: search_url = http://search.conduit.com/Results.aspx?q={searchTerms}&SearchSource=49&ctid=CT2849855
CHR - default_search_provider: suggest_url = http://search.conduit.com/
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\Emir\AppData\Local\Google\Chrome\Application\20.0.1132.57\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\Emir\AppData\Local\Google\Chrome\Application\20.0.1132.57\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Emir\AppData\Local\Google\Chrome\Application\20.0.1132.57\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Emir\AppData\Local\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_262.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: DivX VOD Helper Plug-in (Enabled) = C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll
CHR - plugin: DivX Plus Web Player (Enabled) = C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
CHR - plugin: Microsoft Office Live Plug-in for Firefox (Enabled) = C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll
CHR - plugin: OnLive Game Client Detector (Enabled) = C:\Program Files (x86)\OnLive\Plugin\npolgdet.dll
CHR - plugin: Java(TM) Platform SE 7 U4 (Enabled) = C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll
CHR - plugin: Java Deployment Toolkit 7.0.40.255 (Enabled) = C:\Windows\SysWOW64\npDeployJava1.dll
CHR - plugin: Pando Web Plugin (Enabled) = C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
CHR - plugin: Veetle TV Player (Enabled) = C:\Program Files (x86)\Veetle\Player\npvlc.dll
CHR - plugin: Veetle TV Core (Enabled) = C:\Program Files (x86)\Veetle\plugins\npVeetle.dll
CHR - plugin: VLC Web Plugin (Enabled) = C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
CHR - plugin: Windows Live\u00AE Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: Google Update (Enabled) = C:\Users\Emir\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: RockMelt Update (Enabled) = C:\Users\Emir\AppData\Local\RockMelt\Update\1.2.189.1\npRockMeltOneClick8.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
O1 HOSTS File: ([2009.06.10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (Windows Live Family Safety Browser Helper Class) - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll (Microsoft Corporation)
O2:64bit: - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (MB2 Toolbar) - {013a635f-e3aa-4371-b682-ece95ca974b0} - C:\Program Files (x86)\MB2\prxtbMB2.dll (Conduit Ltd.)
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
O2 - BHO: (BittorrentBar_DE Toolbar) - {64ead72b-ffd4-4e01-aa3a-4c71665d73e4} - C:\Program Files (x86)\BittorrentBar_DE\prxtbBitt.dll (Conduit Ltd.)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll (Oracle Corporation)
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (MB2 Toolbar) - {013a635f-e3aa-4371-b682-ece95ca974b0} - C:\Program Files (x86)\MB2\prxtbMB2.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (BittorrentBar_DE Toolbar) - {64ead72b-ffd4-4e01-aa3a-4c71665d73e4} - C:\Program Files (x86)\BittorrentBar_DE\prxtbBitt.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (MB2 Toolbar) - {013A635F-E3AA-4371-B682-ECE95CA974B0} - C:\Program Files (x86)\MB2\prxtbMB2.dll (Conduit Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (BittorrentBar_DE Toolbar) - {64EAD72B-FFD4-4E01-AA3A-4C71665D73E4} - C:\Program Files (x86)\BittorrentBar_DE\prxtbBitt.dll (Conduit Ltd.)
O4:64bit: - HKLM..\Run: [EeeStorageBackup] C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe ()
O4:64bit: - HKLM..\Run: [ETDWare] C:\Program Files\Elantech\ETDCtrl.exe (ELAN Microelectronic Corp.)
O4 - HKLM..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe (ASUS)
O4 - HKLM..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe (ASUS)
O4 - HKLM..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe (VIA)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [UpdateLBPShortCut] C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [UpdateP2GoShortCut] C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKCU..\Run: [BitTorrent] C:\Program Files (x86)\BitTorrent\BitTorrent.exe (BitTorrent, Inc.)
O4 - HKCU..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKCU..\Run: [Lasuqedap] C:\Users\Emir\AppData\Roaming\Geviat\ohipb.exe ()
O4 - HKCU..\Run: [Microsoft Firewall 2.9] C:\Users\Emir\AppData\Roaming\WMPRWISE.EXE (ADDBIX)
O4 - HKCU..\Run: [NetLimiter] C:\Program Files\NetLimiter 3\NLClientApp.exe (Locktime Software)
O4 - HKCU..\Run: [RockMelt Update] C:\Users\Emir\AppData\Local\RockMelt\Update\RockMeltUpdate.exe (Google Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - mmswsock.dll File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - mmswsock.dll File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - mmswsock.dll File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - mmswsock.dll File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000005 - mmswsock.dll File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000006 - mmswsock.dll File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000007 - mmswsock.dll File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000008 - mmswsock.dll File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000009 - mmswsock.dll File not found
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000010 - mmswsock.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - %SystemRoot%\system32\pnrpnsp.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - %SystemRoot%\system32\pnrpnsp.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - %SystemRoot%\system32\pnrpnsp.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - %SystemRoot%\system32\pnrpnsp.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - %SystemRoot%\system32\pnrpnsp.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - %SystemRoot%\system32\pnrpnsp.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - %SystemRoot%\system32\pnrpnsp.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - %SystemRoot%\system32\pnrpnsp.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - %SystemRoot%\system32\pnrpnsp.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - %SystemRoot%\system32\pnrpnsp.dll File not found
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16:64bit: - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinstall-1_7_0_03-windows-i586.cab (Java Plug-in 10.3.0)
O16:64bit: - DPF: {CAFEEFAC-0017-0000-0003-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_03-windows-i586.cab (Java Plug-in 1.7.0_03)
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_03-windows-i586.cab (Java Plug-in 1.7.0_03)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 10.4.1)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 10.4.1)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{536DC821-CE72-4124-9D31-A01C11CE6D2C}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{FEBD8399-6917-49C2-833A-ABB912C92871}: NameServer = 62.109.123.196 213.191.74.18
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
O18:64bit: - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O27:64bit: - HKLM IFEO\bittorrent.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\dllfixer.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\gameparkconsole.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\gtlite.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\srspremiumpanel_64.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\unins000.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\uninst.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\bittorrent.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\dllfixer.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\gameparkconsole.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\gtlite.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\srspremiumpanel_64.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\unins000.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\uninst.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008.09.11 01:19:00 | 000,000,058 | R--- | M] () - F:\autorun.inf -- [ UDF ]
O33 - MountPoints2\{113ef192-c8ec-11e1-ae3b-e0cb4e5ed1f1}\Shell - "" = AutoRun
O33 - MountPoints2\{113ef192-c8ec-11e1-ae3b-e0cb4e5ed1f1}\Shell\AutoRun\command - "" = F:\FalloutLauncher.exe -- [2008.09.18 22:39:05 | 007,038,392 | R--- | M] (Bethesda Softworks)
O33 - MountPoints2\{c86c93be-a7cb-11e1-8ebb-e0cb4e5ed1f1}\Shell - "" = AutoRun
O33 - MountPoints2\{c86c93be-a7cb-11e1-8ebb-e0cb4e5ed1f1}\Shell\AutoRun\command - "" = D:\Setup.exe
O33 - MountPoints2\F\Shell - "" = AutoRun
O33 - MountPoints2\F\Shell\AutoRun\command - "" = F:\FalloutLauncher.exe -- [2008.09.18 22:39:05 | 007,038,392 | R--- | M] (Bethesda Softworks)
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
[2012.07.16 22:11:55 | 000,596,480 | ---- | C] (OldTimer Tools) -- C:\Users\Emir\Desktop\OTL.exe
[2012.07.15 23:47:41 | 000,000,000 | ---D | C] -- C:\Users\Emir\AppData\Local\Locktime
[2012.07.15 23:47:33 | 000,000,000 | ---D | C] -- C:\Users\Emir\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NetLimiter 3
[2012.07.15 23:47:17 | 000,000,000 | ---D | C] -- C:\Program Files\NetLimiter 3
[2012.07.15 23:47:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Locktime
[2012.07.11 09:24:15 | 000,096,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2012.07.11 09:24:15 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2012.07.11 09:24:14 | 000,237,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2012.07.11 09:24:14 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2012.07.11 09:24:12 | 000,248,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2012.07.11 09:24:12 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2012.07.11 09:24:12 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2012.07.11 09:24:12 | 000,142,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2012.07.11 09:24:11 | 001,427,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2012.07.11 09:24:10 | 002,311,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2012.07.11 09:24:10 | 001,494,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2012.07.11 09:24:10 | 000,818,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2012.07.11 09:24:10 | 000,716,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2012.07.10 21:45:39 | 000,307,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
[2012.07.09 14:51:23 | 000,034,656 | ---- | C] (TuneUp Software) -- C:\Windows\SysNative\TURegOpt.exe
[2012.07.09 14:51:20 | 000,025,952 | ---- | C] (TuneUp Software) -- C:\Windows\SysNative\authuitu.dll
[2012.07.09 14:51:20 | 000,021,344 | ---- | C] (TuneUp Software) -- C:\Windows\SysWow64\authuitu.dll
[2012.07.09 14:51:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2012
[2012.07.09 14:50:50 | 000,000,000 | ---D | C] -- C:\Users\Emir\AppData\Roaming\TuneUp Software
[2012.07.09 14:50:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\TuneUp Utilities 2012
[2012.07.09 14:50:29 | 000,000,000 | ---D | C] -- C:\ProgramData\TuneUp Software
[2012.07.09 14:50:18 | 000,000,000 | -HSD | C] -- C:\ProgramData\{32364CEA-7855-4A3C-B674-53D8E9B97936}
[2012.07.09 14:50:18 | 000,000,000 | -H-D | C] -- C:\ProgramData\Common Files
[2012.07.08 15:57:03 | 000,000,000 | ---D | C] -- C:\Users\Emir\AppData\Roaming\AC3Filter
[2012.07.08 15:54:44 | 000,000,000 | ---D | C] -- C:\Users\Emir\AppData\Roaming\dll-files.com
[2012.07.08 15:54:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dll-Files.com Fixer
[2012.07.08 15:54:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Dll-Files.com Fixer
[2012.07.08 15:49:19 | 000,000,000 | ---D | C] -- C:\Users\Emir\Documents\My Games
[2012.07.08 15:49:19 | 000,000,000 | ---D | C] -- C:\Users\Emir\AppData\Local\Fallout3
[2012.07.08 15:33:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Bethesda Softworks
[2012.07.08 15:32:19 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\xlive
[2012.07.08 15:27:18 | 000,000,000 | ---D | C] -- C:\Users\Emir\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MagicDisc
[2012.07.08 15:27:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MagicDisc
[2012.07.08 15:27:13 | 000,255,552 | ---- | C] (MagicISO, Inc.) -- C:\Windows\SysWow64\drivers\mcdbus.sys
[2012.07.08 15:27:13 | 000,255,552 | ---- | C] (MagicISO, Inc.) -- C:\Windows\SysNative\drivers\mcdbus.sys
[2012.07.08 15:27:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MagicDisc
[2012.07.08 15:20:35 | 000,000,000 | ---D | C] -- C:\Users\Emir\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MagicISO
[2012.07.08 15:20:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MagicISO
[2012.07.08 15:20:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MagicISO
[2012.07.08 15:17:59 | 000,283,200 | ---- | C] (DT Soft Ltd) -- C:\Windows\SysNative\drivers\dtsoftbus01.sys
[2012.07.08 12:54:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AC3Filter
[2012.07.08 12:54:44 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AC3Filter
[2012.07.08 10:47:24 | 000,000,000 | ---D | C] -- C:\Users\Emir\AppData\Roaming\runic games
[2012.07.08 10:44:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JoWooD
[2012.07.08 10:44:02 | 000,000,000 | ---D | C] -- C:\Users\Emir\Desktop\F3rar
[2012.07.08 10:43:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\JoWooD
[2012.07.08 02:15:32 | 000,000,000 | ---D | C] -- C:\Users\Emir\Desktop\torch
[2012.07.08 01:24:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
[2012.07.08 01:24:29 | 000,000,000 | ---D | C] -- C:\Users\Emir\AppData\Roaming\DAEMON Tools Lite
[2012.07.08 01:24:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DAEMON Tools Lite
[2012.07.08 01:20:22 | 000,000,000 | ---D | C] -- C:\Users\Emir\Desktop\Torchlight.GERMAN-0x0007
[2012.07.07 21:24:30 | 000,000,000 | ---D | C] -- C:\Users\Emir\Documents\Usenet.nl
[2012.07.07 12:39:03 | 000,000,000 | ---D | C] -- C:\Users\Emir\riotsGamesLogs
[2012.07.06 17:39:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Trend Micro
[2012.07.06 17:39:53 | 000,000,000 | ---D | C] -- C:\Users\Emir\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis
[2012.07.05 09:04:06 | 000,000,000 | ---D | C] -- C:\Users\Emir\AppData\Roaming\Hive Cluster
[2012.07.05 00:12:54 | 000,000,000 | ---D | C] -- C:\Users\Emir\Desktop\greenluma
[2012.07.04 22:05:30 | 000,000,000 | ---D | C] -- C:\Users\Emir\AppData\Roaming\Hazes
[2012.07.04 22:05:30 | 000,000,000 | ---D | C] -- C:\Users\Emir\AppData\Roaming\Geviat
[2012.07.04 22:05:30 | 000,000,000 | ---D | C] -- C:\Users\Emir\AppData\Roaming\Ceiwar
[2012.07.04 15:30:01 | 000,000,000 | -HSD | C] -- C:\Windows\SysWow64\%APPDATA%
[2012.07.04 12:42:31 | 000,000,000 | ---D | C] -- C:\Users\Emir\AppData\Local\ElevatedDiagnostics
[2012.07.04 11:05:18 | 000,000,000 | ---D | C] -- C:\Users\Emir\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The Binding of Isaac
[2012.07.04 11:05:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\The Binding of Isaac
[2012.07.03 19:00:15 | 000,104,448 | -H-- | C] (ADDBIX) -- C:\Users\Emir\AppData\Roaming\WMPRWISE.EXE
[2012.06.29 19:40:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OnLive
[2012.06.29 19:40:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\OnLive
[2012.06.29 19:37:33 | 000,000,000 | ---D | C] -- C:\Users\Emir\Documents\OnLive App
[2012.06.29 19:29:52 | 000,000,000 | ---D | C] -- C:\Users\Emir\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
[2012.06.29 19:29:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe
[2012.06.29 19:29:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Adobe Download Assistant
[2012.06.29 19:26:27 | 000,000,000 | ---D | C] -- C:\Users\Emir\AppData\Roaming\OnLive App
[2012.06.23 10:00:13 | 000,000,000 | ---D | C] -- C:\Users\Emir\AppData\Local\Macromedia
[2012.06.23 04:41:38 | 002,622,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wucltux.dll
[2012.06.23 04:41:38 | 000,057,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuauclt.exe
[2012.06.23 04:41:38 | 000,044,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups2.dll
[2012.06.23 04:41:28 | 000,701,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapi.dll
[2012.06.23 04:41:28 | 000,099,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wudriver.dll
[2012.06.23 04:41:28 | 000,038,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups.dll
[2012.06.23 04:41:22 | 000,186,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuwebv.dll
[2012.06.23 04:41:22 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapp.exe
[2008.08.12 07:45:20 | 000,155,648 | ---- | C] (ASUS) -- C:\Program Files (x86)\Common Files\MSIactionall.dll
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
[2012.07.16 22:26:01 | 000,001,116 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1016914487-319381858-870535725-1000UA.job
[2012.07.16 22:18:00 | 000,000,924 | ---- | M] () -- C:\Windows\tasks\RockMeltUpdateTaskUserS-1-5-21-1016914487-319381858-870535725-1000UA.job
[2012.07.16 22:11:58 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\Emir\Desktop\OTL.exe
[2012.07.16 20:23:27 | 000,005,242 | ---- | M] () -- C:\Users\Emir\Desktop\f972b9201752632.jpg
[2012.07.16 17:26:00 | 000,001,064 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1016914487-319381858-870535725-1000Core.job
[2012.07.16 14:57:25 | 000,010,016 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012.07.16 14:57:25 | 000,010,016 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012.07.16 14:56:14 | 001,526,766 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2012.07.16 14:56:14 | 000,670,454 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
[2012.07.16 14:56:14 | 000,620,964 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2012.07.16 14:56:14 | 000,135,278 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
[2012.07.16 14:56:14 | 000,111,152 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2012.07.16 14:49:28 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012.07.16 14:49:24 | 3220,529,152 | -HS- | M] () -- C:\hiberfil.sys
[2012.07.15 23:49:42 | 000,002,038 | ---- | M] () -- C:\Windows\SysNative\AutoRunFilter.ini
[2012.07.15 23:49:42 | 000,001,429 | ---- | M] () -- C:\Windows\SysNative\ServiceFilter.ini
[2012.07.15 23:49:32 | 000,045,056 | ---- | M] () -- C:\Windows\SysNative\acovcnt.exe
[2012.07.15 23:18:00 | 000,000,872 | ---- | M] () -- C:\Windows\tasks\RockMeltUpdateTaskUserS-1-5-21-1016914487-319381858-870535725-1000Core.job
[2012.07.14 23:57:48 | 000,034,245 | ---- | M] () -- C:\Users\Emir\Desktop\Celo++Abdi+205782_146560162076030_1409535.jpg
[2012.07.14 03:59:34 | 000,000,059 | ---- | M] () -- C:\Users\Emir\AppData\Roaming\GoodnightTimer.ini
[2012.07.14 00:16:55 | 000,020,150 | ---- | M] () -- C:\Users\Emir\Desktop\5wlsx1lh94djm5zs5xig.jpg
[2012.07.14 00:16:51 | 000,462,400 | ---- | M] () -- C:\Users\Emir\Desktop\dsc5630_srgb.jpg
[2012.07.12 20:25:58 | 000,002,356 | ---- | M] () -- C:\Users\Emir\Desktop\Google Chrome.lnk
[2012.07.11 09:33:31 | 000,453,000 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2012.07.10 16:50:48 | 000,065,847 | ---- | M] () -- C:\Users\Emir\Desktop\88300614rb7.png
[2012.07.10 16:50:34 | 000,140,068 | ---- | M] () -- C:\Users\Emir\Desktop\94292936yw5.png
[2012.07.10 16:50:31 | 000,647,083 | ---- | M] () -- C:\Users\Emir\Desktop\aymyp7.png
[2012.07.10 16:44:12 | 000,067,945 | ---- | M] () -- C:\Users\Emir\Desktop\real_madrid_logo.png
[2012.07.10 16:03:04 | 000,033,879 | ---- | M] () -- C:\Users\Emir\Desktop\DownloadData.bin
[2012.07.10 15:36:18 | 104,857,602 | ---- | M] () -- C:\Users\Emir\Desktop\T.w.e.e.Skid.part004.rar
[2012.07.10 15:31:09 | 104,857,602 | ---- | M] () -- C:\Users\Emir\Desktop\T.w.e.e.Skid.part003.rar
[2012.07.10 15:26:13 | 104,857,602 | ---- | M] () -- C:\Users\Emir\Desktop\T.w.e.e.Skid.part002.rar
[2012.07.10 15:20:56 | 000,000,152 | ---- | M] () -- C:\Users\Emir\Desktop\ShiroBPLD.ini
[2012.07.09 18:06:31 | 004,503,728 | ---- | M] () -- C:\ProgramData\nud0repor.pad
[2012.07.09 18:04:10 | 000,000,290 | ---- | M] () -- C:\Windows\tasks\DLL-files.com Fixer_UPDATES.job
[2012.07.09 18:04:10 | 000,000,274 | ---- | M] () -- C:\Windows\tasks\DLL-files.com Fixer_MONTHLY.job
[2012.07.09 14:51:01 | 000,002,211 | ---- | M] () -- C:\Users\Public\Desktop\TuneUp 1-Klick-Wartung.lnk
[2012.07.09 14:51:01 | 000,002,191 | ---- | M] () -- C:\Users\Public\Desktop\TuneUp Utilities 2012.lnk
[2012.07.08 19:05:58 | 000,141,182 | ---- | M] () -- C:\Users\Emir\Desktop\duffynotbuffy.jpg
[2012.07.08 19:03:42 | 000,261,141 | ---- | M] () -- C:\Users\Emir\Desktop\5265539.png
[2012.07.08 19:00:39 | 000,523,224 | ---- | M] () -- C:\Users\Emir\Desktop\render_hikarij728.png
[2012.07.08 15:58:26 | 000,001,771 | ---- | M] () -- C:\Users\Emir\Desktop\FalloutLauncher - Verknüpfung.lnk
[2012.07.08 15:54:34 | 000,002,030 | ---- | M] () -- C:\Users\Emir\Desktop\DLL-Files.com FIXER.lnk
[2012.07.08 15:27:18 | 000,000,955 | ---- | M] () -- C:\Users\Emir\Desktop\MagicDisc.lnk
[2012.07.08 15:20:35 | 000,001,801 | ---- | M] () -- C:\Users\Emir\Desktop\MagicISO.lnk
[2012.07.08 15:17:59 | 000,283,200 | ---- | M] (DT Soft Ltd) -- C:\Windows\SysNative\drivers\dtsoftbus01.sys
[2012.07.08 14:46:59 | 104,857,600 | ---- | M] () -- C:\Users\Emir\Desktop\F.3.G.O.T.Y..E.part42.rar
[2012.07.08 14:39:07 | 104,857,600 | ---- | M] () -- C:\Users\Emir\Desktop\F.3.G.O.T.Y..E.part01.rar
[2012.07.08 10:44:45 | 000,001,078 | ---- | M] () -- C:\Users\Public\Desktop\Torchlight Spielen!.lnk
[2012.07.08 01:24:56 | 000,001,952 | ---- | M] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
[2012.07.08 01:24:30 | 000,560,184 | ---- | M] (Duplex Secure Ltd.) -- C:\Windows\SysNative\drivers\sptd.sys
[2012.07.07 21:16:23 | 000,467,968 | ---- | M] (SoftCoder) -- C:\Users\Emir\Desktop\Xennews-TrialGen.exe
[2012.07.06 17:39:53 | 000,002,971 | ---- | M] () -- C:\Users\Emir\Desktop\HiJackThis.lnk
[2012.07.05 16:19:08 | 000,357,613 | ---- | M] () -- C:\Users\Emir\Desktop\paysafea.png
[2012.07.05 16:18:57 | 000,408,346 | ---- | M] () -- C:\Users\Emir\Desktop\paysafe.png
[2012.07.04 17:00:49 | 000,000,219 | ---- | M] () -- C:\Users\Emir\Desktop\Portal.url
[2012.07.04 15:53:05 | 000,426,184 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2012.07.04 15:53:05 | 000,070,344 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2012.07.04 11:05:18 | 000,001,133 | ---- | M] () -- C:\Users\Emir\Desktop\The Binding of Isaac.lnk
[2012.07.03 20:49:59 | 4074,524,770 | ---- | M] () -- C:\Users\Emir\Desktop\Arena-Tournament.com_2.4.3_r1.rar
[2012.07.03 19:00:15 | 000,104,448 | -H-- | M] (ADDBIX) -- C:\Users\Emir\AppData\Roaming\WMPRWISE.EXE
[2012.06.29 19:29:49 | 000,001,033 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Download Assistant.lnk
[2012.06.25 18:48:06 | 000,696,320 | ---- | M] () -- C:\Users\Emir\Desktop\Shiro Boy`s Premium Link Downloader.exe
[2012.06.23 17:34:17 | 000,000,000 | ---- | M] () -- C:\Users\Emir\Desktop\Zoomhack.exe
[2012.06.23 17:33:47 | 000,000,000 | ---- | M] () -- C:\Users\Emir\Documents\Zoomhack.exe
[2012.06.20 20:11:00 | 042,982,626 | ---- | M] () -- C:\Users\Emir\Desktop\The Binding of Isaac - Wrath of the Lamb.exe
[2012.06.19 15:17:23 | 000,005,120 | ---- | M] () -- C:\Users\Emir\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012.06.17 22:18:02 | 001,202,688 | ---- | M] () -- C:\Windows\SysNative\ac3filter64.acm
[2012.06.17 22:10:08 | 000,965,120 | ---- | M] () -- C:\Windows\SysWow64\ac3filter.acm
[color=#E56717]========== Files Created - No Company Name ==========[/color]
[2012.07.16 20:23:27 | 000,005,242 | ---- | C] () -- C:\Users\Emir\Desktop\f972b9201752632.jpg
[2012.07.14 23:57:48 | 000,034,245 | ---- | C] () -- C:\Users\Emir\Desktop\Celo++Abdi+205782_146560162076030_1409535.jpg
[2012.07.14 00:16:55 | 000,020,150 | ---- | C] () -- C:\Users\Emir\Desktop\5wlsx1lh94djm5zs5xig.jpg
[2012.07.14 00:16:50 | 000,462,400 | ---- | C] () -- C:\Users\Emir\Desktop\dsc5630_srgb.jpg
[2012.07.10 16:50:48 | 000,065,847 | ---- | C] () -- C:\Users\Emir\Desktop\88300614rb7.png
[2012.07.10 16:50:34 | 000,140,068 | ---- | C] () -- C:\Users\Emir\Desktop\94292936yw5.png
[2012.07.10 16:50:31 | 000,647,083 | ---- | C] () -- C:\Users\Emir\Desktop\aymyp7.png
[2012.07.10 16:44:12 | 000,067,945 | ---- | C] () -- C:\Users\Emir\Desktop\real_madrid_logo.png
[2012.07.10 15:33:15 | 104,857,602 | ---- | C] () -- C:\Users\Emir\Desktop\T.w.e.e.Skid.part004.rar
[2012.07.10 15:28:04 | 104,857,602 | ---- | C] () -- C:\Users\Emir\Desktop\T.w.e.e.Skid.part003.rar
[2012.07.10 15:22:48 | 104,857,602 | ---- | C] () -- C:\Users\Emir\Desktop\T.w.e.e.Skid.part002.rar
[2012.07.09 14:51:01 | 000,002,211 | ---- | C] () -- C:\Users\Public\Desktop\TuneUp 1-Klick-Wartung.lnk
[2012.07.09 14:51:01 | 000,002,191 | ---- | C] () -- C:\Users\Public\Desktop\TuneUp Utilities 2012.lnk
[2012.07.09 14:51:00 | 000,002,203 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2012.lnk
[2012.07.08 19:05:58 | 000,141,182 | ---- | C] () -- C:\Users\Emir\Desktop\duffynotbuffy.jpg
[2012.07.08 19:03:42 | 000,261,141 | ---- | C] () -- C:\Users\Emir\Desktop\5265539.png
[2012.07.08 19:00:39 | 000,523,224 | ---- | C] () -- C:\Users\Emir\Desktop\render_hikarij728.png
[2012.07.08 15:58:26 | 000,001,771 | ---- | C] () -- C:\Users\Emir\Desktop\FalloutLauncher - Verknüpfung.lnk
[2012.07.08 15:54:51 | 000,000,290 | ---- | C] () -- C:\Windows\tasks\DLL-files.com Fixer_UPDATES.job
[2012.07.08 15:54:49 | 000,000,274 | ---- | C] () -- C:\Windows\tasks\DLL-files.com Fixer_MONTHLY.job
[2012.07.08 15:54:34 | 000,002,030 | ---- | C] () -- C:\Users\Emir\Desktop\DLL-Files.com FIXER.lnk
[2012.07.08 15:27:18 | 000,000,955 | ---- | C] () -- C:\Users\Emir\Desktop\MagicDisc.lnk
[2012.07.08 15:20:35 | 000,001,801 | ---- | C] () -- C:\Users\Emir\Desktop\MagicISO.lnk
[2012.07.08 14:40:39 | 104,857,600 | ---- | C] () -- C:\Users\Emir\Desktop\F.3.G.O.T.Y..E.part42.rar
[2012.07.08 14:35:31 | 104,857,600 | ---- | C] () -- C:\Users\Emir\Desktop\F.3.G.O.T.Y..E.part01.rar
[2012.07.08 12:54:45 | 001,202,688 | ---- | C] () -- C:\Windows\SysNative\ac3filter64.acm
[2012.07.08 12:54:45 | 000,965,120 | ---- | C] () -- C:\Windows\SysWow64\ac3filter.acm
[2012.07.08 10:44:45 | 000,001,078 | ---- | C] () -- C:\Users\Public\Desktop\Torchlight Spielen!.lnk
[2012.07.08 01:41:07 | 000,033,879 | ---- | C] () -- C:\Users\Emir\Desktop\DownloadData.bin
[2012.07.08 01:24:56 | 000,001,952 | ---- | C] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
[2012.07.07 21:56:50 | 000,000,152 | ---- | C] () -- C:\Users\Emir\Desktop\ShiroBPLD.ini
[2012.07.06 18:18:35 | 004,503,728 | ---- | C] () -- C:\ProgramData\nud0repor.pad
[2012.07.06 17:39:53 | 000,002,971 | ---- | C] () -- C:\Users\Emir\Desktop\HiJackThis.lnk
[2012.07.05 16:19:07 | 000,357,613 | ---- | C] () -- C:\Users\Emir\Desktop\paysafea.png
[2012.07.05 16:18:57 | 000,408,346 | ---- | C] () -- C:\Users\Emir\Desktop\paysafe.png
[2012.07.04 17:00:49 | 000,000,219 | ---- | C] () -- C:\Users\Emir\Desktop\Portal.url
[2012.07.04 15:22:41 | 000,232,960 | ---- | C] () -- C:\Windows\Installer\{b9a3ab46-ee17-bca6-2c65-f27aeff1bb00}\U\00000008.@
[2012.07.04 15:22:40 | 000,095,744 | ---- | C] () -- C:\Windows\Installer\{b9a3ab46-ee17-bca6-2c65-f27aeff1bb00}\U\80000032.@
[2012.07.04 15:22:40 | 000,080,896 | ---- | C] () -- C:\Windows\Installer\{b9a3ab46-ee17-bca6-2c65-f27aeff1bb00}\U\80000064.@
[2012.07.04 15:22:40 | 000,000,804 | ---- | C] () -- C:\Windows\Installer\{b9a3ab46-ee17-bca6-2c65-f27aeff1bb00}\L\00000004.@
[2012.07.04 15:22:39 | 000,016,896 | ---- | C] () -- C:\Windows\Installer\{b9a3ab46-ee17-bca6-2c65-f27aeff1bb00}\U\80000000.@
[2012.07.04 15:22:39 | 000,002,048 | ---- | C] () -- C:\Windows\Installer\{b9a3ab46-ee17-bca6-2c65-f27aeff1bb00}\U\00000004.@
[2012.07.04 15:22:39 | 000,001,632 | ---- | C] () -- C:\Windows\Installer\{b9a3ab46-ee17-bca6-2c65-f27aeff1bb00}\U\000000cb.@
[2012.07.04 12:34:42 | 000,045,056 | ---- | C] () -- C:\Windows\SysNative\acovcnt.exe
[2012.07.04 11:05:18 | 000,001,133 | ---- | C] () -- C:\Users\Emir\Desktop\The Binding of Isaac.lnk
[2012.07.03 20:41:33 | 4074,524,770 | ---- | C] () -- C:\Users\Emir\Desktop\Arena-Tournament.com_2.4.3_r1.rar
[2012.06.29 19:29:49 | 000,001,045 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Download Assistant.lnk
[2012.06.29 19:29:49 | 000,001,033 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Download Assistant.lnk
[2012.06.25 18:48:06 | 000,696,320 | ---- | C] () -- C:\Users\Emir\Desktop\Shiro Boy`s Premium Link Downloader.exe
[2012.06.23 17:34:17 | 000,000,000 | ---- | C] () -- C:\Users\Emir\Desktop\Zoomhack.exe
[2012.06.23 17:33:47 | 000,000,000 | ---- | C] () -- C:\Users\Emir\Documents\Zoomhack.exe
[2012.06.20 20:11:00 | 042,982,626 | ---- | C] () -- C:\Users\Emir\Desktop\The Binding of Isaac - Wrath of the Lamb.exe
[2012.06.08 18:44:01 | 000,000,334 | ---- | C] () -- C:\Users\Emir\SciTE.session
[2012.05.06 17:24:56 | 000,001,456 | ---- | C] () -- C:\Users\Emir\AppData\Local\Adobe Für Web speichern 11.0 Prefs
[2012.04.28 15:18:39 | 000,000,214 | ---- | C] () -- C:\Users\Emir\.swfinfo
[2012.04.26 00:19:40 | 000,000,059 | ---- | C] () -- C:\Users\Emir\AppData\Roaming\GoodnightTimer.ini
[2012.04.21 17:57:11 | 000,000,024 | ---- | C] () -- C:\Windows\ATKPF.ini
[2012.04.04 15:20:45 | 000,005,120 | ---- | C] () -- C:\Users\Emir\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012.03.31 20:41:06 | 000,002,048 | -HS- | C] () -- C:\Windows\Installer\{b9a3ab46-ee17-bca6-2c65-f27aeff1bb00}\@
[2012.03.31 20:41:06 | 000,002,048 | -HS- | C] () -- C:\Users\Emir\AppData\Local\{b9a3ab46-ee17-bca6-2c65-f27aeff1bb00}\@
[2009.12.29 09:54:27 | 000,131,368 | ---- | C] () -- C:\ProgramData\FullRemove.exe
[2009.04.08 20:31:56 | 000,106,496 | ---- | C] () -- C:\Program Files (x86)\Common Files\CPInstallAction.dll
[2008.05.22 18:35:54 | 000,051,962 | ---- | C] () -- C:\Program Files (x86)\Common Files\banner.jpg
[color=#E56717]========== LOP Check ==========[/color]
[2012.04.27 20:23:05 | 000,000,000 | -HSD | M] -- C:\Users\Emir\AppData\Roaming\.#
[2012.07.08 15:57:03 | 000,000,000 | ---D | M] -- C:\Users\Emir\AppData\Roaming\AC3Filter
[2012.04.27 20:21:32 | 000,000,000 | ---D | M] -- C:\Users\Emir\AppData\Roaming\Asus WebStorage
[2012.07.08 13:01:25 | 000,000,000 | ---D | M] -- C:\Users\Emir\AppData\Roaming\BitTorrent
[2012.04.19 21:10:15 | 000,000,000 | ---D | M] -- C:\Users\Emir\AppData\Roaming\BSplayer
[2012.04.10 16:50:40 | 000,000,000 | ---D | M] -- C:\Users\Emir\AppData\Roaming\BSplayer Pro
[2012.07.04 22:05:30 | 000,000,000 | ---D | M] -- C:\Users\Emir\AppData\Roaming\Ceiwar
[2012.06.29 19:29:52 | 000,000,000 | ---D | M] -- C:\Users\Emir\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
[2012.07.08 10:43:06 | 000,000,000 | ---D | M] -- C:\Users\Emir\AppData\Roaming\DAEMON Tools Lite
[2012.07.08 15:54:44 | 000,000,000 | ---D | M] -- C:\Users\Emir\AppData\Roaming\dll-files.com
[2012.04.27 20:21:35 | 000,000,000 | ---D | M] -- C:\Users\Emir\AppData\Roaming\EeeStorageUploader
[2012.04.27 20:22:45 | 000,000,000 | ---D | M] -- C:\Users\Emir\AppData\Roaming\GameConsole
[2012.06.08 20:23:55 | 000,000,000 | ---D | M] -- C:\Users\Emir\AppData\Roaming\GameTracker
[2012.07.04 22:05:30 | 000,000,000 | ---D | M] -- C:\Users\Emir\AppData\Roaming\Geviat
[2012.07.16 22:23:56 | 000,000,000 | ---D | M] -- C:\Users\Emir\AppData\Roaming\Hazes
[2012.07.05 09:04:06 | 000,000,000 | ---D | M] -- C:\Users\Emir\AppData\Roaming\Hive Cluster
[2012.04.21 15:09:26 | 000,000,000 | ---D | M] -- C:\Users\Emir\AppData\Roaming\LolClient
[2012.05.24 12:25:25 | 000,000,000 | ---D | M] -- C:\Users\Emir\AppData\Roaming\LolClient2
[2012.06.29 19:39:57 | 000,000,000 | ---D | M] -- C:\Users\Emir\AppData\Roaming\OnLive App
[2012.07.08 10:47:24 | 000,000,000 | ---D | M] -- C:\Users\Emir\AppData\Roaming\runic games
[2012.05.13 19:42:11 | 000,000,000 | ---D | M] -- C:\Users\Emir\AppData\Roaming\TS3Client
[2012.05.12 22:39:25 | 000,000,000 | ---D | M] -- C:\Users\Emir\AppData\Roaming\ts3overlay
[2012.07.09 14:50:50 | 000,000,000 | ---D | M] -- C:\Users\Emir\AppData\Roaming\TuneUp Software
[2012.06.03 17:06:46 | 000,000,000 | ---D | M] -- C:\Users\Emir\AppData\Roaming\XBMC
[2012.07.09 18:04:10 | 000,000,274 | ---- | M] () -- C:\Windows\Tasks\DLL-files.com Fixer_MONTHLY.job
[2012.07.09 18:04:10 | 000,000,290 | ---- | M] () -- C:\Windows\Tasks\DLL-files.com Fixer_UPDATES.job
[2012.07.15 23:18:00 | 000,000,872 | ---- | M] () -- C:\Windows\Tasks\RockMeltUpdateTaskUserS-1-5-21-1016914487-319381858-870535725-1000Core.job
[2012.07.16 22:18:00 | 000,000,924 | ---- | M] () -- C:\Windows\Tasks\RockMeltUpdateTaskUserS-1-5-21-1016914487-319381858-870535725-1000UA.job
[2009.07.14 07:08:49 | 000,016,010 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[color=#E56717]========== Purity Check ==========[/color]
< End of report >
Ich hoffe jemand is so gütig und hilft mir







