

- Kod: Zaznacz wszystko
OTS logfile created on: 10.05.2014 17:45:14 - Run 1
OTS by OldTimer - Version 3.1.47.2 Folder = C:\Users\ADA\Desktop
64bit- Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
4,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 58,00% Memory free
8,00 Gb Paging File | 4,00 Gb Available in Paging File | 49,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 452,32 Gb Total Space | 15,45 Gb Free Space | 3,41% Space Free | Partition Type: NTFS
Drive D: | 3,95 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: ADA-VAIO
Current User Name: ADA
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Include 64bit Scans
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
[Processes - Safe List]
ots.exe -> C:\Users\ADA\Desktop\OTS.exe -> [2014.05.10 17:43:13 | 000,646,656 | ---- | M] (OldTimer Tools)
ggurww.exe -> C:\ProgramData\ypgywxh\ggurww.exe -> [2014.05.05 19:08:17 | 000,291,840 | ---- | M] (Faronics Corporation)
cvlisuh.exe -> C:\ProgramData\fruxhv\cvlisuh.exe -> [2014.05.05 17:56:44 | 000,291,840 | ---- | M] (Faronics Corporation)
chrome.exe -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe -> [2014.04.24 02:33:15 | 000,841,032 | ---- | M] (Google Inc.)
kiespdlr.exe -> C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe -> [2014.02.14 21:55:32 | 000,845,120 | ---- | M] (Samsung)
mbamservice.exe -> C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -> [2013.04.04 14:50:32 | 000,701,512 | ---- | M] (Malwarebytes Corporation)
mbamgui.exe -> C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe -> [2013.04.04 14:50:32 | 000,532,040 | ---- | M] (Malwarebytes Corporation)
mbamscheduler.exe -> C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe -> [2013.04.04 14:50:32 | 000,418,376 | ---- | M] (Malwarebytes Corporation)
pnkbstra.exe -> C:\Windows\SysWOW64\PnkBstrA.exe -> [2012.12.19 16:34:56 | 000,076,888 | ---- | M] ()
vcmialzmgr.exe -> C:\Programme\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe -> [2011.05.19 19:15:44 | 000,549,616 | ---- | M] (Sony Corporation)
vcfw.exe -> C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe -> [2011.01.20 12:16:26 | 000,887,000 | ---- | M] (Sony Corporation)
sohcimp.exe -> C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe -> [2010.06.20 21:47:18 | 000,108,400 | ---- | M] (Sony Corporation)
sohds.exe -> C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe -> [2010.06.20 21:47:16 | 000,067,952 | ---- | M] (Sony Corporation)
sohdms.exe -> C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe -> [2010.06.18 07:07:12 | 000,423,280 | ---- | M] (Sony Corporation)
vcminsmgr.exe -> C:\Programme\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe -> [2010.06.09 15:56:02 | 000,384,880 | ---- | M] (Sony Corporation)
pmbdeviceinfoprovider.exe -> C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe -> [2010.06.01 03:01:56 | 000,367,456 | ---- | M] (Sony Corporation)
vesmgr.exe -> C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe -> [2010.05.31 19:18:32 | 000,217,968 | ---- | M] (Sony Corporation)
vesmgrsub.exe -> C:\Program Files (x86)\Sony\VAIO Event Service\VESMgrSub.exe -> [2010.05.31 19:18:32 | 000,120,176 | ---- | M] (Sony Corporation)
isbmgr.exe -> C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe -> [2010.05.31 17:01:52 | 000,673,136 | ---- | M] (Sony Corporation)
iastordatamgrsvc.exe -> C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -> [2010.03.04 05:16:06 | 000,013,336 | ---- | M] (Intel Corporation)
photoshopelementsfileagent.exe -> C:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe -> [2009.10.09 05:45:56 | 000,169,312 | ---- | M] (Adobe Systems Incorporated)
wmiprvse.exe -> C:\Windows\SysWOW64\wbem\WmiPrvSE.exe -> [2009.07.14 03:14:47 | 000,254,976 | ---- | M] (Microsoft Corporation)
ucammonitor.exe -> C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe -> [2008.09.18 10:59:10 | 000,104,960 | ---- | M] (ArcSoft, Inc.)
devsvc.exe -> C:\Program Files (x86)\Common Files\InterVideo\DeviceService\DevSvc.exe -> [2007.03.06 11:35:02 | 000,198,168 | ---- | M] (InterVideo Inc.)
sqlservr.exe -> C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe -> [2002.12.17 18:55:12 | 007,520,337 | ---- | M] (Microsoft Corporation)
[Modules - No Company Name]
ppgooglenaclpluginchrome.dll -> C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.131\ppGoogleNaClPluginChrome.dll -> [2014.04.24 02:33:13 | 000,390,472 | ---- | M] ()
pdf.dll -> C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.131\pdf.dll -> [2014.04.24 02:33:10 | 004,081,480 | ---- | M] ()
libglesv2.dll -> C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.131\libglesv2.dll -> [2014.04.24 02:33:05 | 000,674,632 | ---- | M] ()
libegl.dll -> C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.131\libegl.dll -> [2014.04.24 02:33:04 | 000,093,000 | ---- | M] ()
ffmpegsumo.dll -> C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.131\ffmpegsumo.dll -> [2014.04.24 02:33:03 | 001,647,432 | ---- | M] ()
chrome_elf.dll -> C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.131\chrome_elf.dll -> [2014.04.24 02:33:01 | 000,065,352 | ---- | M] ()
[Win32 Services - Safe List]
64bit-(VUAgent) [On_Demand | Running] -> C:\Program Files\Sony\VAIO Update\VUAgent.exe -> [2013.09.25 01:35:56 | 001,369,136 | ---- | M] (Sony Corporation)
64bit-(VCService) [On_Demand | Stopped] -> C:\Program Files\Sony\VAIO Care\VCService.exe -> [2012.10.12 15:02:44 | 000,054,760 | ---- | M] (Sony Corporation)
64bit-(SampleCollector) [Disabled | Stopped] -> C:\Program Files\Sony\VAIO Care\VCPerfService.exe -> [2012.08.06 14:27:08 | 000,156,672 | ---- | M] ()
64bit-(VcmIAlzMgr) [Auto | Running] -> C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe -> [2011.05.19 19:15:44 | 000,549,616 | ---- | M] (Sony Corporation)
64bit-(VcmXmlIfHelper) [On_Demand | Stopped] -> C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe -> [2011.02.18 22:15:06 | 000,099,104 | ---- | M] (Sony Corporation)
64bit-(SpfService) [On_Demand | Running] -> C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe -> [2011.01.20 12:27:18 | 000,286,936 | ---- | M] (Sony Corporation)
64bit-(RichVideo64) [Auto | Running] -> C:\Program Files\CyberLink\Shared files\RichVideo64.exe -> [2010.08.19 18:43:23 | 000,386,344 | ---- | M] ()
64bit-(VSNService) [Auto | Running] -> C:\Program Files\Sony\VAIO Smart Network\VSNService.exe -> [2010.08.11 08:46:06 | 000,845,312 | ---- | M] (Sony Corporation)
64bit-(VAIO Power Management) [Auto | Running] -> C:\Program Files\Sony\VAIO Power Management\SPMService.exe -> [2010.06.21 18:00:52 | 000,575,856 | ---- | M] (Sony Corporation)
64bit-(VcmINSMgr) [Auto | Running] -> C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe -> [2010.06.09 15:56:02 | 000,384,880 | ---- | M] (Sony Corporation)
(MBAMService) MBAMService [Auto | Running] -> C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -> [2013.04.04 14:50:32 | 000,701,512 | ---- | M] (Malwarebytes Corporation)
(MBAMScheduler) MBAMScheduler [Auto | Running] -> C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe -> [2013.04.04 14:50:32 | 000,418,376 | ---- | M] (Malwarebytes Corporation)
(PnkBstrA) PnkBstrA [Auto | Running] -> C:\Windows\SysWOW64\PnkBstrA.exe -> [2012.12.19 16:34:56 | 000,076,888 | ---- | M] ()
(McComponentHostServiceSony) McAfee Security Scan Component Host Service for Sony [On_Demand | Stopped] -> C:\Program Files (x86)\Sony\MSS\3.0.271\McCHSvc.exe -> [2012.03.30 13:26:52 | 000,237,328 | ---- | M] (McAfee, Inc.)
(VCFw) VAIO Content Folder Watcher [Auto | Running] -> C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe -> [2011.01.20 12:16:26 | 000,887,000 | ---- | M] (Sony Corporation)
(FLEXnet Licensing Service) FLEXnet Licensing Service [On_Demand | Stopped] -> C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -> [2010.07.29 13:22:44 | 000,867,080 | ---- | M] (Acresso Software Inc.)
(SOHCImp) VAIO Media plus Content Importer [Auto | Running] -> C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe -> [2010.06.20 21:47:18 | 000,108,400 | ---- | M] (Sony Corporation)
(SOHDs) VAIO Media plus Device Searcher [Auto | Running] -> C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe -> [2010.06.20 21:47:16 | 000,067,952 | ---- | M] (Sony Corporation)
(SOHDms) VAIO Media plus Digital Media Server [Auto | Running] -> C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe -> [2010.06.18 07:07:12 | 000,423,280 | ---- | M] (Sony Corporation)
(btwdins) Bluetooth Service [Auto | Running] -> C:\Programme\WIDCOMM\Bluetooth Software\btwdins.exe -> [2010.06.08 23:55:14 | 000,952,096 | ---- | M] (Broadcom Corporation.)
(PMBDeviceInfoProvider) PMBDeviceInfoProvider [Auto | Running] -> C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe -> [2010.06.01 03:01:56 | 000,367,456 | ---- | M] (Sony Corporation)
(VAIO Event Service) VAIO Event Service [Auto | Running] -> C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe -> [2010.05.31 19:18:32 | 000,217,968 | ---- | M] (Sony Corporation)
(UNS) Intel(R) Management & Security Application User Notification Service [Auto | Stopped] -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -> [2010.05.28 22:02:57 | 002,320,920 | ---- | M] (Intel Corporation)
(clr_optimization_v4.0.30319_32) Microsoft .NET Framework NGEN v4.0.30319_X86 [Auto | Stopped] -> C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -> [2010.03.18 14:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation)
(ACDaemon) ArcSoft Connect Daemon [On_Demand | Stopped] -> C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe -> [2010.03.18 12:19:26 | 000,113,152 | ---- | M] (ArcSoft Inc.)
(IAStorDataMgrSvc) Intel(R) Rapid Storage Technology [Auto | Running] -> C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -> [2010.03.04 05:16:06 | 000,013,336 | ---- | M] (Intel Corporation)
(AdobeActiveFileMonitor8.0) Adobe Active File Monitor V8 [Auto | Running] -> C:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe -> [2009.10.09 05:45:56 | 000,169,312 | ---- | M] (Adobe Systems Incorporated)
(clr_optimization_v2.0.50727_32) Microsoft .NET Framework NGEN v2.0.50727_X86 [Disabled | Stopped] -> C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -> [2009.06.10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation)
(uCamMonitor) CamMonitor [Auto | Running] -> C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe -> [2008.09.18 10:59:10 | 000,104,960 | ---- | M] (ArcSoft, Inc.)
(Capture Device Service) Capture Device Service [Auto | Running] -> C:\Program Files (x86)\Common Files\InterVideo\DeviceService\DevSvc.exe -> [2007.03.06 11:35:02 | 000,198,168 | ---- | M] (InterVideo Inc.)
(MSSQL$SONY_MEDIAMGR) MSSQL$SONY_MEDIAMGR [Auto | Running] -> C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe -> [2002.12.17 18:55:12 | 007,520,337 | ---- | M] (Microsoft Corporation)
(SQLAgent$SONY_MEDIAMGR) SQLAgent$SONY_MEDIAMGR [On_Demand | Stopped] -> C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE -> [2002.12.17 18:23:30 | 000,311,872 | ---- | M] (Microsoft Corporation)
[Driver Services - Safe List]
64bit-(ssudserd) SAMSUNG Mobile USB Diagnostic Serial Port(DEVGURU Ver.) [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\ssudserd.sys -> [2014.01.22 08:52:12 | 000,206,080 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr))
64bit-(ssudmdm) SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.) [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\ssudmdm.sys -> [2014.01.22 08:52:10 | 000,206,080 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr))
64bit-(dg_ssudbus) SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.) [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\ssudbus.sys -> [2014.01.22 08:52:10 | 000,108,800 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr))
64bit-(MBAMProtector) MBAMProtector [File_System | On_Demand | Running] -> C:\Windows\SysNative\drivers\mbam.sys -> [2013.04.04 14:50:32 | 000,025,928 | ---- | M] (Malwarebytes Corporation)
64bit-(AF15BDA) AF9015 BDA Device [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\AF15BDA.sys -> [2011.10.14 14:35:50 | 000,507,392 | ---- | M] (ITETech )
64bit-(amdsata) amdsata [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\amdsata.sys -> [2011.03.11 08:22:41 | 000,107,904 | ---- | M] (Advanced Micro Devices)
64bit-(amdxata) amdxata [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\amdxata.sys -> [2011.03.11 08:22:40 | 000,027,008 | ---- | M] (Advanced Micro Devices)
64bit-(atikmdag) atikmdag [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\atikmdag.sys -> [2010.10.08 08:55:08 | 006,661,120 | ---- | M] (ATI Technologies Inc.)
64bit-(amdkmdag) amdkmdag [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\atikmdag.sys -> [2010.10.08 08:55:08 | 006,661,120 | ---- | M] (ATI Technologies Inc.)
64bit-(amdkmdap) amdkmdap [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\atikmpag.sys -> [2010.10.08 08:55:08 | 000,195,584 | ---- | M] (Advanced Micro Devices, Inc.)
64bit-(IntcDAud) Intel(R) Display Audio [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\IntcDAud.sys -> [2010.06.24 22:34:53 | 000,271,872 | ---- | M] (Intel(R) Corporation)
64bit-(igfx) igfx [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\igdkmd64.sys -> [2010.06.24 22:33:43 | 010,326,784 | ---- | M] (Intel Corporation)
64bit-(btwrchid) btwrchid [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\btwrchid.sys -> [2010.06.23 22:04:45 | 000,021,544 | ---- | M] (Broadcom Corporation.)
64bit-(btwampfl) Bluetooth AMP USB Filter [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\btwampfl.sys -> [2010.06.23 22:04:43 | 000,342,056 | ---- | M] (Broadcom Corporation.)
64bit-(btwavdt) Bluetooth AVDT Service [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\btwavdt.sys -> [2010.06.23 22:04:43 | 000,135,720 | ---- | M] (Broadcom Corporation.)
64bit-(btwaudio) Bluetooth-Audiogerät [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\btwaudio.sys -> [2010.06.23 22:04:43 | 000,102,952 | ---- | M] (Broadcom Corporation.)
64bit-(btwl2cap) Bluetooth L2CAP Service [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\btwl2cap.sys -> [2010.06.23 22:04:09 | 000,039,464 | ---- | M] (Broadcom Corporation.)
64bit-(risdsnpe) risdsnpe [Kernel | Auto | Running] -> C:\Windows\SysNative\drivers\risdsne64.sys -> [2010.06.23 22:03:07 | 000,078,848 | ---- | M] (REDC)
64bit-(rimspci) rimspci [Kernel | Auto | Running] -> C:\Windows\SysNative\drivers\rimssne64.sys -> [2010.06.23 22:02:59 | 000,094,208 | ---- | M] (REDC)
64bit-(yukonw7) NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\yk62x64.sys -> [2010.05.31 23:36:48 | 000,402,720 | ---- | M] (Marvell)
64bit-(athr) Atheros Extensible Wireless LAN device driver [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\athrx.sys -> [2010.05.31 23:36:41 | 001,573,888 | ---- | M] (Atheros Communications, Inc.)
64bit-(SynTP) Synaptics TouchPad Driver [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\SynTP.sys -> [2010.05.31 23:31:21 | 000,316,464 | ---- | M] (Synaptics Incorporated)
64bit-(RTHDMIAzAudService) Service for HDMI [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\RtHDMIVX.sys -> [2010.05.31 22:10:13 | 000,231,328 | ---- | M] (Realtek Semiconductor Corp.)
64bit-(Impcd) Impcd [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\Impcd.sys -> [2010.05.28 22:03:12 | 000,158,976 | ---- | M] (Intel Corporation)
64bit-(HECIx64) Intel(R) Management Engine Interface [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\HECIx64.sys -> [2010.05.28 22:02:36 | 000,056,344 | ---- | M] (Intel Corporation)
64bit-(usbet) USB 2.0 WebCAM [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\ETdrv.sys -> [2010.04.29 12:20:20 | 000,182,912 | ---- | M] (Etron)
64bit-(SFEP) Sony Firmware Extension Parser [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\SFEP.sys -> [2010.04.26 22:20:29 | 000,012,032 | ---- | M] (Sony Corporation)
64bit-(iaStor) Intel AHCI Controller [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\iaStor.sys -> [2010.03.04 04:51:40 | 000,540,696 | ---- | M] (Intel Corporation)
64bit-(Revoflt) Revoflt [File_System | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\revoflt.sys -> [2009.12.30 10:21:26 | 000,031,800 | ---- | M] (VS Revo Group)
64bit-(sdbus) sdbus [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\sdbus.sys -> [2009.10.10 04:41:20 | 000,109,056 | ---- | M] (Microsoft Corporation)
64bit-(amdsbs) amdsbs [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\amdsbs.sys -> [2009.07.14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.)
64bit-(LSI_SAS2) LSI_SAS2 [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\lsi_sas2.sys -> [2009.07.14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation)
64bit-(HpSAMD) HpSAMD [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\HpSAMD.sys -> [2009.07.14 03:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company)
64bit-(stexstor) stexstor [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\stexstor.sys -> [2009.07.14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology)
64bit-(WSDPrintDevice) WSD-Druckunterstützung durch UMB [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\WSDPrint.sys -> [2009.07.14 02:39:20 | 000,023,040 | ---- | M] (Microsoft Corporation)
64bit-(WSDScan) WSD-Scanunterstützung durch UMB [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\WSDScan.sys -> [2009.07.14 02:35:37 | 000,025,088 | ---- | M] (Microsoft Corporation)
64bit-(ebdrv) Broadcom NetXtreme II 10 GigE VBD [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\evbda.sys -> [2009.06.10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation)
64bit-(b06bdrv) Broadcom NetXtreme II VBD [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\bxvbda.sys -> [2009.06.10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation)
64bit-(b57nd60a) Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0 [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\b57nd60a.sys -> [2009.06.10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation)
64bit-(hcw85cir) Hauppauge Consumer Infrared Receiver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\hcw85cir.sys -> [2009.06.10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.)
64bit-(ArcSoftKsUFilter) ArcSoft Magic-I Visual Effect [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\ArcSoftKsUFilter.sys -> [2009.05.26 14:32:04 | 000,019,968 | ---- | M] (ArcSoft, Inc.)
64bit-(GigasetGenericUSB_x64) GigasetGenericUSB_x64 [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\GigasetGenericUSB_x64.sys -> [2009.02.20 18:09:18 | 000,054,272 | ---- | M] (Siemens Home and Office Communication Devices GmbH & Co. KG)
64bit-(PxHlpa64) PxHlpa64 [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\PxHlpa64.sys -> [2008.06.16 03:00:00 | 000,055,024 | ---- | M] (Sonic Solutions)
64bit-(MarvinBus) Pinnacle Marvin Bus 64 [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\MarvinBus64.sys -> [2005.09.23 23:18:34 | 000,261,120 | ---- | M] (Pinnacle Systems GmbH)
(WIMMount) WIMMount [File_System | On_Demand | Stopped] -> C:\Windows\SysWOW64\drivers\wimmount.sys -> [2009.07.14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation)
(VD_FileDisk) VD_FileDisk [Kernel | System | Stopped] -> C:\Windows\SysWow64\drivers\vd_filedisk.sys -> [2006.01.13 15:00:52 | 000,015,872 | ---- | M] (Flint Incorporation)
(NPPTNT2) NPPTNT2 [Kernel | On_Demand | Stopped] -> C:\Windows\SysWOW64\npptNT2.sys -> [2005.01.01 11:43:08 | 000,004,682 | ---- | M] (INCA Internet Co., Ltd.)
[Registry - Safe List]
< 64bit-Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> ->
HKEY_LOCAL_MACHINE\: Main\\"Start Page" -> http://www.google.com ->
< Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> ->
HKEY_LOCAL_MACHINE\: Main\\"Start Page" -> http://www.google.com ->
< Internet Explorer Settings [HKEY_USERS\.DEFAULT\] > -> ->
HKEY_USERS\.DEFAULT\: "ProxyEnable" -> 0 ->
< Internet Explorer Settings [HKEY_USERS\S-1-5-18\] > -> ->
HKEY_USERS\S-1-5-18\: "ProxyEnable" -> 0 ->
< Internet Explorer Settings [HKEY_USERS\S-1-5-19\] > -> ->
< Internet Explorer Settings [HKEY_USERS\S-1-5-20\] > -> ->
< Internet Explorer Settings [HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\] > -> ->
HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\: Main\\"Default_Page_URL" -> http://www.google.com/ig/redirectdomain?brand=SVEE&bmod=SVEE ->
HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\: Main\\"Default_Search_URL" -> http://www.google.com/ie ->
HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\: Main\\"Search Page" -> http://www.google.com ->
HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\: Main\\"Start Page" -> http://www.google.com ->
HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\: Search\\"Default_Search_URL" -> http://www.google.com/ie ->
HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\: Search\\"SearchAssistant" -> http://www.google.com/ie ->
HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\: SearchURL\\"" -> http://www.google.com/search?q=%s ->
HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\: "ProxyEnable" -> 0 ->
HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\: "ProxyOverride" -> <local> ->
< FireFox Settings [Prefs.js] > -> C:\Users\ADA\AppData\Roaming\Mozilla\FireFox\Profiles\1svcy6jz.default\prefs.js ->
browser.search.defaultengine -> "" ->
browser.search.useDBForOrder -> "" ->
< FireFox Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla
HKLM\software\mozilla\Firefox\Extensions -> ->
HKLM\software\mozilla\Mozilla Firefox 21.0\extensions -> ->
HKLM\software\mozilla\Mozilla Firefox 21.0\extensions\\Components -> C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\COMPONENTS ->
HKLM\software\mozilla\Mozilla Firefox 21.0\extensions\\Plugins -> C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\PLUGINS [C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\PLUGINS] -> [2014.03.24 19:16:58 | 000,000,000 | ---D | M]
< FireFox Extensions [User Folders] > ->
-> C:\Users\ADA\AppData\Roaming\mozilla\Extensions -> [2013.09.22 13:43:57 | 000,000,000 | ---D | M]
-> C:\Users\ADA\AppData\Roaming\mozilla\Extensions\songbird@songbirdnest.com -> [2012.12.22 14:51:22 | 000,000,000 | ---D | M]
-> C:\Users\ADA\AppData\Roaming\mozilla\Firefox\Profiles\1svcy6jz.default\extensions -> [2014.05.07 15:31:13 | 000,000,000 | ---D | M]
"QuickShare Widget" -> C:\Users\ADA\AppData\Roaming\mozilla\Firefox\Profiles\1svcy6jz.default\extensions\{84577da9-6329-4573-a19a-c70f32973c45} -> [2013.05.01 08:30:37 | 000,000,000 | ---D | M]
-> C:\Users\ADA\AppData\Roaming\mozilla\Firefox\Profiles\1svcy6jz.default\extensions\120b8567-cef7-4a3f-bc74-951746209d5b@e3f0d12e-110a-4dac-a277-22ad73cee452.com -> [2014.05.07 19:04:03 | 000,000,000 | ---D | M]
-> C:\Users\ADA\AppData\Roaming\mozilla\Firefox\Profiles\1svcy6jz.default\extensions\quick_start@gmail.com -> [2014.05.07 19:04:03 | 000,000,000 | ---D | M]
-> C:\Users\ADA\AppData\Roaming\mozilla\Firefox\Profiles\1svcy6jz.default\extensions\SupraSavings@jetpack -> [2014.05.07 19:04:02 | 000,000,000 | ---D | M]
-> C:\Users\ADA\AppData\Roaming\mozilla\Firefox\Profiles\1svcy6jz.default\extensions\120b8567-cef7-4a3f-bc74-951746209d5b@e3f0d12e-110a-4dac-a277-22ad73cee452.com\extensionData -> [2014.05.07 19:04:03 | 000,000,000 | ---D | M]
< FireFox SearchPlugins [User Folders] > ->
< FireFox Extensions [Program Folders] > ->
-> C:\Program Files (x86)\mozilla firefox\extensions -> [2013.11.12 20:45:24 | 000,000,000 | ---D | M]
G Data WebFilter -> C:\Program Files (x86)\mozilla firefox\extensions\{9AA46F4F-4DC7-4c06-97AF-5035170633FE} -> [2011.05.16 19:01:05 | 000,000,000 | ---D | M]
-> C:\Program Files (x86)\mozilla firefox\extensions\arcabit@www.arcabit.pl -> [2013.11.12 20:45:24 | 000,000,000 | ---D | M]
-> C:\Program Files (x86)\mozilla firefox\browser\extensions -> [2013.05.30 13:49:24 | 000,000,000 | ---D | M]
Default -> C:\Program Files (x86)\mozilla firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} -> [2013.05.30 13:49:24 | 000,000,000 | ---D | M]
"Plus-HD-9.3" -> C:\USERS\ADA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\1SVCY6JZ.DEFAULT\EXTENSIONS\120B8567-CEF7-4A3F-BC74-951746209D5B@E3F0D12E-110A-4DAC-A277-22AD73CEE452.COM -> [2014.05.07 19:04:03 | 000,000,000 | ---D | M]
< HOSTS File > ([2009.06.10 23:00:26 | 000,000,824 | ---- | M] - 21 lines) -> C:\Windows\SysNative\Drivers\etc\hosts ->
Reset Hosts
< BHO's [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ ->
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} [HKLM] -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [Java(tm) Plug-In SSV Helper] -> [2013.12.18 22:07:55 | 000,462,760 | ---- | M] (Oracle Corporation)
{DBC80044-A445-435b-BC74-9C25C1C588A9} [HKLM] -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [Java(tm) Plug-In 2 SSV Helper] -> [2013.12.18 22:05:14 | 000,171,944 | ---- | M] (Oracle Corporation)
< 64bit-Run [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
"RtHDVBg" -> C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORPCEE3 ] -> [2010.05.31 23:38:47 | 002,040,352 | ---- | M] (Realtek Semiconductor)
"RtHDVCpl" -> C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s] -> [2010.05.31 23:38:57 | 010,775,584 | ---- | M] (Realtek Semiconductor)
< Run [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
"APSDaemon" -> C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe ["C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"] -> [2013.04.21 22:43:52 | 000,059,720 | ---- | M] (Apple Inc.)
"ISBMgr.exe" -> C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe ["C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe"] -> [2010.05.31 17:01:52 | 000,673,136 | ---- | M] (Sony Corporation)
< RunOnce [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce ->
"1afh" -> C:\ProgramData\hcbrhuw\doomi.exe [C:\ProgramData\hcbrhuw\doomi.exe] -> [2014.05.06 12:38:24 | 000,290,816 | ---- | M] (Faronics Corporation)
"f83r" -> C:\ProgramData\nreu\kcfg.exe [C:\ProgramData\nreu\kcfg.exe] -> [2014.05.06 19:20:52 | 000,290,816 | ---- | M] (Faronics Corporation)
"gskd" -> C:\ProgramData\fruxhv\cvlisuh.exe [C:\ProgramData\fruxhv\cvlisuh.exe] -> [2014.05.05 17:56:44 | 000,291,840 | ---- | M] (Faronics Corporation)
"qa52" -> C:\ProgramData\ofk\hreidmx.exe [C:\ProgramData\ofk\hreidmx.exe] -> [2014.05.05 12:59:34 | 000,291,328 | ---- | M] (Faronics Corporation)
< RunOnce [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce ->
"1afh" -> C:\ProgramData\hcbrhuw\doomi.exe [C:\ProgramData\hcbrhuw\doomi.exe] -> [2014.05.06 12:38:24 | 000,290,816 | ---- | M] (Faronics Corporation)
"f83r" -> C:\ProgramData\nreu\kcfg.exe [C:\ProgramData\nreu\kcfg.exe] -> [2014.05.06 19:20:52 | 000,290,816 | ---- | M] (Faronics Corporation)
"gskd" -> C:\ProgramData\fruxhv\cvlisuh.exe [C:\ProgramData\fruxhv\cvlisuh.exe] -> [2014.05.05 17:56:44 | 000,291,840 | ---- | M] (Faronics Corporation)
"qa52" -> C:\ProgramData\ofk\hreidmx.exe [C:\ProgramData\ofk\hreidmx.exe] -> [2014.05.05 12:59:34 | 000,291,328 | ---- | M] (Faronics Corporation)
< Run [HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\] > -> HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
"Google+ Auto Backup" -> ["C:\Users\ADA\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe" /autostart] -> File not found
"KiesAirMessage" -> [C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup] -> File not found
"KiesPDLR.exe" -> C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe Run] -> [2014.02.14 21:55:32 | 000,845,120 | ---- | M] (Samsung)
"samomomx" -> C:\Users\ADA\AppData\Local\Wkspq\kqhfbmomx.exe [C:\Users\ADA\AppData\Local\Wkspq\kqhfbmomx.exe] -> [2014.05.10 17:17:46 | 000,129,536 | -H-- | M] ()
< RunOnce [HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\] > -> HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce ->
"gskd" -> C:\ProgramData\fruxhv\cvlisuh.exe [C:\ProgramData\fruxhv\cvlisuh.exe] -> [2014.05.05 17:56:44 | 000,291,840 | ---- | M] (Faronics Corporation)
< Software Policy Settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer ->
< CurrentVersion Policy Settings - Explorer [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
\\"NoDriveTypeAutoRun" -> [60] -> File not found
< CurrentVersion Policy Settings - System [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System
\\"ConsentPromptBehaviorAdmin" -> [0] -> File not found
\\"ConsentPromptBehaviorUser" -> [3] -> File not found
\\"EnableLUA" -> [0] -> File not found
\\"PromptOnSecureDesktop" -> [0] -> File not found
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats
< CurrentVersion Policy Settings [HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000] > -> HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer ->
HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
\\"NoDriveTypeAutoRun" -> [145] -> File not found
< CurrentVersion Policy Settings [HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000] > -> HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System ->
HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System
< Internet Explorer Menu Extensions [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\MenuExt\ ->
Add to Google Photos Screensa&ver -> C:\Windows\SysWow64\GPhotos.scr [res://C:\Windows\system32\GPhotos.scr/200] -> [2014.01.06 21:23:36 | 004,558,848 | ---- | M] (Google Inc.)
< Internet Explorer Menu Extensions [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\MenuExt\ ->
Add to Google Photos Screensa&ver -> C:\Windows\SysWow64\GPhotos.scr [res://C:\Windows\system32\GPhotos.scr/200] -> [2014.01.06 21:23:36 | 004,558,848 | ---- | M] (Google Inc.)
< Internet Explorer Menu Extensions [HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\] > -> HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\Software\Microsoft\Internet Explorer\MenuExt\ ->
Add to Google Photos Screensa&ver -> C:\Windows\SysWow64\GPhotos.scr [res://C:\Windows\system32\GPhotos.scr/200] -> [2014.01.06 21:23:36 | 004,558,848 | ---- | M] (Google Inc.)
< 64bit-Internet Explorer Extensions [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\ ->
{40525A66-DB98-480D-BCF9-7AF88C1AF438}:{40525A66-DB98-480D-BCF9-7AF88C1AF438} [HKLM] -> Reg Error: Key error. [Button: ArcaVir >>] -> File not found
{40525A66-DB98-480D-BCF9-7AF88C1AF438}:{40525A66-DB98-480D-BCF9-7AF88C1AF438} [HKLM] -> Reg Error: Key error. [Menu: ArcaVir >>] -> File not found
< Internet Explorer Extensions [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\ ->
{E0B8C461-F8FB-49b4-8373-FE32E92528A6}:{BC0E0A5D-AB5A-4fa4-A5FA-280E1D58EEEE} [HKLM] -> C:\Program Files (x86)\Evernote\Evernote3.5\enbar.dll [Button: Add to Evernote] -> [2009.09.16 11:04:04 | 000,184,320 | ---- | M] (Evernote Corporation)
{E0B8C461-F8FB-49b4-8373-FE32E92528A6}:{BC0E0A5D-AB5A-4fa4-A5FA-280E1D58EEEE} [HKLM] -> C:\Program Files (x86)\Evernote\Evernote3.5\enbar.dll [Menu: Add to Evernote] -> [2009.09.16 11:04:04 | 000,184,320 | ---- | M] (Evernote Corporation)
< 64bit-Internet Explorer Plugins [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Plugins\ ->
PluginsPageFriendlyName -> Microsoft ActiveX Gallery ->
PluginsPage -> http://activex.microsoft.com/controls/find.asp?ext=%s&mime=%s ->
< Internet Explorer Plugins [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Plugins\ ->
< 64bit-Default Prefix > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix
"" -> http://
< Default Prefix > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix
"" -> http://
< 64bit-Trusted Sites Domains [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< 64bit-Trusted Sites Ranges [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< Trusted Sites Ranges [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< Trusted Sites Ranges [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< Trusted Sites Ranges [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< Trusted Sites Ranges [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< Trusted Sites Ranges [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\] > -> HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< Trusted Sites Ranges [HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\] > -> HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\ ->
{784797A8-342D-4072-9486-03C8D0F2F0A1} [HKLM] -> http://www.battlefieldheroes.com/static/updater/BFHUpdater_5.0.145.0.cab [Battlefield Heroes Updater] ->
< Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\ ->
DhcpNameServer -> 192.168.2.1 ->
< Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\ ->
{C3FA99C0-6D20-46D3-A571-87208C430CB4}\\DhcpNameServer -> 192.168.2.1 (Atheros AR9285 Wireless Network Adapter) ->
< 64bit-Winlogon settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
64bit-*Shell* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell ->
explorer.exe -> C:\Windows\explorer.exe -> [2011.02.26 08:23:14 | 002,870,272 | ---- | M] (Microsoft Corporation)
*MultiFile Done* -> ->
64bit-*UserInit* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\UserInit ->
C:\Windows\system32\userinit.exe -> C:\Windows\SysNative\userinit.exe -> [2009.07.14 03:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation)
*MultiFile Done* -> ->
64bit-*VMApplet* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\VMApplet ->
SystemPropertiesPerformance.exe -> C:\Windows\SysNative\SystemPropertiesPerformance.exe -> [2009.07.14 03:39:47 | 000,082,432 | ---- | M] (Microsoft Corporation)
/pagefile -> -> File not found
*MultiFile Done* -> ->
< Winlogon settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
*Shell* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell ->
explorer.exe -> C:\Windows\SysWow64\explorer.exe -> [2011.02.26 07:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation)
*MultiFile Done* -> ->
*UserInit* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\UserInit ->
C:\Windows\system32\userinit.exe -> C:\Windows\SysWOW64\userinit.exe -> [2009.07.14 03:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation)
*MultiFile Done* -> ->
*VMApplet* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\VMApplet ->
/pagefile -> -> File not found
*MultiFile Done* -> ->
< Winlogon settings [HKEY_USERS\.DEFAULT] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
*Shell* -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell ->
C:\ProgramData\ypgywxh\ggurww.exe -> C:\ProgramData\ypgywxh\ggurww.exe -> [2014.05.05 19:08:17 | 000,291,840 | ---- | M] (Faronics Corporation)
explorer.exe -> C:\Windows\SysWow64\explorer.exe -> [2011.02.26 07:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation)
*MultiFile Done* -> ->
< Winlogon settings [HKEY_USERS\S-1-5-18] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
*Shell* -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell ->
C:\ProgramData\ypgywxh\ggurww.exe -> C:\ProgramData\ypgywxh\ggurww.exe -> [2014.05.05 19:08:17 | 000,291,840 | ---- | M] (Faronics Corporation)
explorer.exe -> C:\Windows\SysWow64\explorer.exe -> [2011.02.26 07:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation)
*MultiFile Done* -> ->
< Winlogon settings [HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000] > -> HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
*Shell* -> HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell ->
C:\ProgramData\ypgywxh\ggurww.exe -> C:\ProgramData\ypgywxh\ggurww.exe -> [2014.05.05 19:08:17 | 000,291,840 | ---- | M] (Faronics Corporation)
explorer.exe -> C:\Windows\SysWow64\explorer.exe -> [2011.02.26 07:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation)
*MultiFile Done* -> ->
< 64bit-Winlogon\Notify settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ ->
igfxcui -> C:\Windows\SysNative\igfxdev.dll -> [2010.06.24 22:33:58 | 000,269,824 | ---- | M] (Intel Corporation)
< 64bit-SSODL [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad ->
"{E6FB5E20-DE35-11CF-9C87-00AA005127ED}" [HKLM] -> Reg Error: Key error. [WebCheck] -> File not found
< SSODL [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad ->
"{E6FB5E20-DE35-11CF-9C87-00AA005127ED}" [HKLM] -> Reg Error: Key error. [WebCheck] -> File not found
< Vista Active Firewall Rules > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules ->
{04F8C9BF-B5C4-447B-8941-778DA6AED26F} -> lport=rpc-epmap | profile=public | protocol=6 | dir=in | action=allow | name=@firewallapi.dll,-28539 | svc=rpcss |
{207D9AEA-7952-4730-811E-F876E386C808} -> lport=5355 | profile=private | protocol=17 | dir=in | action=allow | name=@firewallapi.dll,-28548 | app=%systemroot%\system32\svchost.exe | svc=dnscache |
{23B25408-2295-4DEE-BD5B-CE31C8E8375D} -> lport=50003 | profile=private | protocol=6 | dir=in | action=allow | name=arcavir communicationport (u) |
{2511794A-A2A6-4CCE-9DF7-7A2A9773A314} -> rport=5355 | profile=public | protocol=17 | dir=out | action=allow | name=@firewallapi.dll,-28550 | app=%systemroot%\system32\svchost.exe | svc=dnscache |
{3B5B8DEE-AEC6-4813-A6C0-7F094FD3C877} -> lport=50243 | profile=public | protocol=6 | dir=in | action=allow | name=akamai netsession interface |
{52D6CFCB-E08F-4D91-96EB-C26261EEC43D} -> rport=5355 | profile=private | protocol=17 | dir=out | action=allow | name=@firewallapi.dll,-28550 | app=%systemroot%\system32\svchost.exe | svc=dnscache |
{61B1F016-3566-4636-9BF0-861204FE4C87} -> rport=137 | profile=public | protocol=17 | dir=out | action=allow | name=@firewallapi.dll,-28523 | app=system |
{7EB44B6D-8BF3-4B50-AEB5-9DFA1C15CE8A} -> lport=5000 | profile=public | protocol=17 | dir=in | action=allow | name=akamai netsession interface |
{9213FE34-AFFD-4384-B61C-11F7E2519830} -> lport=50001 | profile=private | protocol=6 | dir=in | action=allow | name=arcavir communicationport (s) |
{96D7ED9C-396D-4694-8F87-6539D9691DD4} -> lport=1900 | protocol=17 | dir=in | action=allow | name=windows live messenger (ssdp-in) | app=svchost.exe | svc=ssdpsrv |
{9E783B35-F375-4ADC-84A5-0DD5A990B5F3} -> rport=445 | profile=public | protocol=6 | dir=out | action=allow | name=@firewallapi.dll,-28515 | app=system |
{AA679C00-CD17-402A-9A2F-DA65E5EF1990} -> lport=139 | profile=public | protocol=6 | dir=in | action=allow | name=@firewallapi.dll,-28503 | app=system |
{AE788829-0D33-4024-AEA1-5C1BC5136470} -> lport=2869 | protocol=6 | dir=in | action=allow | name=windows live messenger (upnp-in) | app=system |
{AE7B00D7-2A80-41BB-BC62-12E1B067F9D8} -> lport=445 | profile=public | protocol=6 | dir=in | action=allow | name=@firewallapi.dll,-28511 | app=system |
{B5BDF66A-3D14-4951-ABC5-CEFB9EADF3BC} -> rport=139 | profile=public | protocol=6 | dir=out | action=allow | name=@firewallapi.dll,-28507 | app=system |
{B896DD2B-3B48-4595-9447-479A1DC277E1} -> lport=138 | profile=public | protocol=17 | dir=in | action=allow | name=@firewallapi.dll,-28527 | app=system |
{C0D4EA05-69A1-49D9-8569-03864C8DDEC0} -> lport=rpc | profile=public | protocol=6 | dir=in | action=allow | name=@firewallapi.dll,-28535 | app=%systemroot%\system32\spoolsv.exe | svc=spooler |
{C4D08C98-6FC5-47FD-AC34-26052AB14BC2} -> rport=138 | profile=public | protocol=17 | dir=out | action=allow | name=@firewallapi.dll,-28531 | app=system |
{DEBF61CC-75D1-4920-90B3-07108DF171C6} -> lport=137 | profile=public | protocol=17 | dir=in | action=allow | name=@firewallapi.dll,-28519 | app=system |
{FFE2E089-420C-457B-A3E6-40FF5FBBD71F} -> lport=5355 | profile=public | protocol=17 | dir=in | action=allow | name=@firewallapi.dll,-28548 | app=%systemroot%\system32\svchost.exe | svc=dnscache |
< Vista Active Application Exception Rules > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules ->
{0B13B347-5693-4BD3-837C-6049445CE4B8} -> dir=in | action=allow | name=pando media booster | app=null\pando networks\media booster\pmb.exe |
{0BBA2FDD-47A3-40E2-8385-06C31574B7B2} -> dir=in | action=allow | name=vaio media plus digital media server | app=c:\program files (x86)\common files\sony shared\sohlib\sohdms.exe |
{0F53EDA4-5BA6-47DA-B55D-BB0346F5EBE1} -> profile=public | protocol=6 | dir=in | action=allow | name=vaiotransfer.exe | app=c:\program files (x86)\sony\vaio transfer support\vaiotransfer.exe |
{13B71459-1FD3-4147-84FE-30D42912F946} -> profile=public | protocol=1 | dir=in | action=allow | name=@firewallapi.dll,-28543 |
{1623D684-48DB-4943-8C5E-95A38DA2A551} -> profile=public | protocol=17 | dir=in | action=allow | name=muz aod app player | app=c:\windows\syswow64\muzapp.exe |
{1E71CD3C-2050-415F-B5CA-74C2F0623E33} -> dir=in | action=allow | name=windows live sync | app=c:\program files (x86)\windows live\sync\windowslivesync.exe |
{32570F13-1C89-4AEC-ABCF-596E9E78D304} -> profile=public | protocol=58 | dir=out | action=allow | name=@firewallapi.dll,-28546 |
{37901066-E091-4447-980B-2ABEE25A096D} -> profile=public | protocol=6 | dir=in | action=allow | name=pnkbstrb | app=c:\windows\syswow64\pnkbstrb.exe |
{4909991C-B97D-444A-AA0A-E78CF3CC2132} -> dir=in | action=allow | name=webkit | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |
{49CC7EAA-1184-4ED9-92E7-1B8242C6EF2A} -> profile=public | protocol=6 | dir=in | action=allow | name=updatemanagersetup | app=c:\windows\syswow64\msiexec.exe |
{4CB5CA4A-1AC2-415C-8204-F8F8D8C9D8DC} -> profile=public | protocol=6 | dir=in | action=allow | name=muz aod app player | app=c:\windows\syswow64\muzapp.exe |
{5D600F3A-D3C7-4F1C-9922-2153E46CFA73} -> profile=public | protocol=1 | dir=out | action=allow | name=@firewallapi.dll,-28544 |
{629E4ABA-1E8C-4F41-A8CC-39B8226AA2C5} -> profile=public | protocol=17 | dir=in | action=allow | name=updatemanagersetup | app=c:\windows\syswow64\msiexec.exe |
{6F4A14D5-2D1F-416B-A984-316F8F51BD54} -> dir=in | action=allow | name=vaio media plus content importer | app=c:\program files (x86)\common files\sony shared\sohlib\sohcimp.exe |
{6FE90723-25BD-4BCF-968C-94209C18564D} -> dir=in | action=allow | name=skype | app=c:\program files (x86)\skype\phone\skype.exe |
{9659929B-1BF6-4A79-8B3B-867F08B43CDF} -> profile=public | protocol=58 | dir=in | action=allow | name=@firewallapi.dll,-28545 |
{C32141FD-9BAF-45CD-A16A-75A0197043ED} -> dir=in | action=allow | name=vaio media plus device searcher | app=c:\program files (x86)\common files\sony shared\sohlib\sohds.exe |
{C41CE51A-F006-4378-9AC1-2288AEB53877} -> profile=public | protocol=17 | dir=in | action=allow | name=pnkbstrb | app=c:\windows\syswow64\pnkbstrb.exe |
{C70775BF-BE1F-4A3E-A045-4752D7F331AF} -> profile=public | protocol=6 | dir=in | action=allow | name=pnkbstra | app=c:\windows\syswow64\pnkbstra.exe |
{D38E5C1C-A7E5-45CE-B803-4D99038323EE} -> profile=public | protocol=17 | dir=in | action=allow | name=vaiotransfer.exe | app=c:\program files (x86)\sony\vaio transfer support\vaiotransfer.exe |
{F322749B-0724-471A-9F24-91B6132C8A89} -> profile=public | protocol=17 | dir=in | action=allow | name=pnkbstra | app=c:\windows\syswow64\pnkbstra.exe |
{F9E294DD-A887-4BCD-BF22-4F65EF85056A} -> dir=in | action=allow | name=vaio media plus | app=c:\program files (x86)\sony\vaio media plus\vmp.exe |
< SafeBoot AlternateShell [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot ->
< CDROM Autorun Setting [HKEY_LOCAL_MACHINE]> -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom ->
"AutoRun" -> 0 ->
"DisplayName" -> CD-ROM-Laufwerktreiber ->
"ImagePath" -> C:\Windows\SysNative\drivers\cdrom.sys [system32\DRIVERS\cdrom.sys] -> [2009.07.14 01:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation)
< Drives with AutoRun files > -> ->
C:\autoexec.bat [] -> C:\autoexec.bat [ NTFS ] -> [2014.05.06 19:02:07 | 000,000,000 | ---- | M] ()
< MountPoints2 [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2 ->
\{f4cfa7bc-4c23-11e2-b708-c0cb38f2c74e}
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f4cfa7bc-4c23-11e2-b708-c0cb38f2c74e}\shell
\{f4cfa7bc-4c23-11e2-b708-c0cb38f2c74e}\shell\\"" -> [AutoRun] -> File not found
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f4cfa7bc-4c23-11e2-b708-c0cb38f2c74e}\shell\AutoRun\command
\{f4cfa7bc-4c23-11e2-b708-c0cb38f2c74e}\shell\AutoRun\command\\"" -> [E:\PMCsetup.exe] -> File not found
< Registry Shell Spawning - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command ->
64bit-comfile [open] -> "%1" %*
64bit-exefile [open] -> "%1" %*
comfile [open] -> "%1" %* ->
exefile [open] -> "%1" %* ->
< 64bit-File Associations - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>\ ->
.com [@ = comfile] -> "%1" %* ->
.exe [@ = exefile] -> "%1" %* ->
< File Associations - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>\ ->
.com [@ = comfile] -> "%1" %* ->
.exe [@ = exefile] -> "%1" %* ->
[Registry - Additional Scans - Safe List]
< 64bit-File Associations - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>\ ->
.bat [@ = batfile] -> "%1" %* ->
.cmd [@ = cmdfile] -> "%1" %* ->
.com [@ = comfile] -> "%1" %* ->
.exe [@ = exefile] -> "%1" %* ->
.html [@ = ChromeHTML] -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe -> [2014.04.24 02:33:15 | 000,841,032 | ---- | M] (Google Inc.)
.url [@ = InternetShortcut] -> C:\Windows\SysNative\rundll32.exe -> [2009.07.14 03:39:31 | 000,045,568 | ---- | M] (Microsoft Corporation)
.pif [@ = piffile] -> "%1" %* ->
.scr [@ = scrfile] -> "%1" /S ->
< File Associations - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>\ ->
.bat [@ = batfile] -> "%1" %* ->
.cmd [@ = cmdfile] -> "%1" %* ->
.com [@ = comfile] -> "%1" %* ->
.cpl [@ = cplfile] -> C:\Windows\SysWow64\control.exe -> [2009.07.14 03:14:15 | 000,113,152 | ---- | M] (Microsoft Corporation)
.exe [@ = exefile] -> "%1" %* ->
.html [@ = ChromeHTML] -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe -> [2014.04.24 02:33:15 | 000,841,032 | ---- | M] (Google Inc.)
.pif [@ = piffile] -> "%1" %* ->
.scr [@ = scrfile] -> "%1" /S ->
< File Associations - Select to Repair > -> HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\SOFTWARE\Classes\<extension>\ ->
.html [@ = ChromeHTML] -> Reg Error: Key error. -> File not found
< 64bit-Protocol Handlers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ ->
skype4com:{FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} [HKLM] -> Reg Error: Key error.[Reg Error: Key error.] -> File not found
< Protocol Handlers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ ->
skype4com:{FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} [HKLM] -> C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL[IEProtocolHandler Class] -> [2013.02.26 15:38:30 | 001,996,392 | R--- | M] (Skype Technologies)
< 64bit-Security Center Settings > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center ->
64bit-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center
\\"cval" -> [1] -> File not found
64bit-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ -> ->
64bit-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\ -> ->
64bit-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc
\Svc\\"VistaSp1" -> [28 4D B2 76 41 04 CA 01 [binary data]] -> File not found
\Svc\\"AntiVirusOverride" -> [0] -> File not found
\Svc\\"AntiSpywareOverride" -> [0] -> File not found
\Svc\\"FirewallOverride" -> [0] -> File not found
64bit-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol\ -> ->
< Security Center Settings > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\ -> ->
< System Restore User Settings > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore ->
"DisableSR" -> 0 ->
< Windows DomainProfile Firewall Policy Settings > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile
\\"DisableNotifications" -> [0] -> File not found
\\"EnableFirewall" -> [1] -> File not found
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\Logging\ -> ->
< Windows StandardProfile Firewall Policy Settings > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile
\\"DisableNotifications" -> [0] -> File not found
\\"EnableFirewall" -> [1] -> File not found
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\Logging\ -> ->
< Default Protocols [HKEY_LOCAL_MACHINE\] - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults ->
ldap -> 4 = Restricted sites (Not a Default Protocol) ->
news -> 4 = Restricted sites (Not a Default Protocol) ->
nntp -> 4 = Restricted sites (Not a Default Protocol) ->
oecmd -> 4 = Restricted sites (Not a Default Protocol) ->
snews -> 4 = Restricted sites (Not a Default Protocol) ->
< Default Protocols [HKEY_USERS\S-1-5-19\] - Select to Repair > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults ->
@ivt -> @ivt protocol not assigned ->
file -> file protocol not assigned ->
ftp -> ftp protocol not assigned ->
http -> http protocol not assigned ->
https -> https protocol not assigned ->
shell -> shell protocol not assigned ->
< Default Protocols [HKEY_USERS\S-1-5-20\] - Select to Repair > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults ->
@ivt -> @ivt protocol not assigned ->
file -> file protocol not assigned ->
ftp -> ftp protocol not assigned ->
http -> http protocol not assigned ->
https -> https protocol not assigned ->
shell -> shell protocol not assigned ->
< 64bit-Uninstall List [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ ->
{02382870-19C7-3ACD-BBAE-F6E3760947DC} -> Microsoft .NET Framework 4 Extended DEU Language Pack
{0E3DAF3D-FF69-345A-A99E-1FED304CA083} -> Microsoft .NET Framework 4 Client Profile DEU Language Pack
{115B60D5-BBDB-490E-AF2E-064D37A3CE01} -> Media Gallery
{133D3F07-D558-46CE-80E8-F4D75DBBAD63} -> PMB VAIO Edition Plug-in
{202B76AB-1B21-434E-A289-788D767D3A7C} -> Media Gallery
{259FD439-13B0-0136-D0A0-FA89BB05831D} -> ccc-utility64
{436E0B79-2CFB-4E5F-9380-E17C1B25D0C5} -> WIDCOMM Bluetooth Software
{5AFD1F5C-8FDA-413C-AF38-F1E7BD10D72F} -> VAIO Media plus
{5BC83141-83DD-07BE-C940-04B385540F04} -> ATI Catalyst Install Manager
{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1 -> Revo Uninstaller Pro 3.0.8
{6A1CEC80-2445-11E2-A9B0-1040F3E7010F} -> MSVCRT Redists
{6B7DE186-374B-4873-AEC1-7464DA337DD6} -> VU5x64
{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} -> Microsoft Silverlight
{8E34682C-8118-31F1-BC4C-98CD9675E1C2} -> Microsoft .NET Framework 4 Extended
{A3D964A6-411A-4817-9D58-5CB8808F494E} -> VAIO Media plus
{C9608300-11F5-11E0-A64B-0013D3D69929} -> MSVCRT Redists
{D0795B21-0CDA-4a92-AB9E-6E92D8111E44} -> SAMSUNG USB Driver for Mobile Phones
{EC635BC0-0D7C-4CA2-9B87-2A330C298CB2} -> VAIO Care
{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4} -> Microsoft .NET Framework 4 Client Profile
CCleaner -> CCleaner
Microsoft .NET Framework 4 Client Profile -> Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Extended -> Microsoft .NET Framework 4 Extended
Microsoft .NET Framework 4 Extended DEU Language Pack -> Microsoft .NET Framework 4 Extended DEU Language Pack
SynTPDeinstKey -> Synaptics Pointing Device Driver
< Uninstall List [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ ->
"SubEdit-Player" -> "SubEdit-Player"
{07441A52-E208-478A-92B7-5C337CA8C131} -> Remote Play mit PlayStation®3
{07B7598E-1FB8-1A95-7A30-F534A55726B4} -> CCC Help Czech
{08825325-2710-46DB-8336-953EBA682776} -> WebTV
{0899D75A-C2FC-42EA-A702-5B9A5F24EAD5} -> VAIO Smart Network
{0E532C84-4275-41B3-9D81-D4A1A20D8EE7} -> PlayStation(R)Store
{0EDBEB2B-7C8D-42E6-8312-0F84394A3223} -> Windows Media Center Add-in for Silverlight
{111EE7DF-FC45-40C7-98A7-753AC46B12FB} -> QuickTime 7
{159E5135-4BEA-52B7-8CDC-823F1ED6D8A5} -> CCC Help Spanish
{177AF091-7854-4615-8327-AC7518F62782} -> VAIO Media plus
{17DFE37C-064E-4834-AD8F-A4B2B4DF68F8} -> Adobe Photoshop Elements 8.0
{20536917-E2DF-45D9-B41F-9AC0CAFFE48A} -> Media Gallery
{22008CF9-2B54-4022-AFD8-3B7D42C89E6B} -> PMB VAIO Edition Plug-in
{265F0D95-A883-7162-0458-B78085B6B693} -> Catalyst Control Center Graphics Light
{26A24AE4-039D-4CA4-87B4-2F83217045FF} -> Java 7 Update 51
{2F8BA3FD-1FA9-4279-B696-712ABB12F09F} -> SmartSound Quicktracks 5
{2F9D63BE-A891-4E39-AFB3-7402D486800C} -> VAIO Hardware Diagnostics
{339F9B4D-00CB-4C1C-BED8-EC86A9AB602A} -> PMB VAIO Edition Guide
{35111E7A-03B9-25EC-F434-A1CD976907FC} -> CCC Help Chinese Traditional
{3DB5EA77-4A14-4EC9-8BFC-73BC848BDE73} -> Media Gallery
{3E29EE6C-963A-4aae-86C1-DC237C4A49FC} -> Intel(R) Rapid Storage Technology
{427E8AD0-A4B1-D225-836E-CCB6068B490A} -> CCC Help French
{44D25B45-5C0E-2187-6739-E2FA0E8AFE1D} -> CCC Help Portuguese
{4685A344-6718-4923-AA9D-158A0A2E1CFB} -> SmartSound Quicktracks for Premiere Elements 8.0
{46F044A5-CE8B-4196-984E-5BD6525E361D} -> Apple Application Support
{4A03706F-666A-4037-7777-5F2748764D10} -> Java Auto Updater
{4B9DA746-5AE1-4BA0-9087-BDB162242890} -> VAIO Media plus
{4E6DF745-C99E-909F-BCF0-B7C24A51E56E} -> CCC Help Japanese
{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D} -> Skype™ 6.11
{521AAD14-5030-44BB-8B0E-5CE65FCE57E0} -> InterVideo DeviceService
{52F9CDDA-26F6-4499-90E0-6DDDE6D2259C} -> VAIO Media plus
{5449FB4F-1802-4D5B-A6D8-087DB1142147} -> Realtek HDMI Audio Driver for ATI
{547C9EB4-4CA6-402F-9D1B-8BD30DC71E44} -> VAIO Sample Contents
{5736590B-36C7-4881-5EBE-F9B390F00774} -> Catalyst Control Center Core Implementation
{57B955CE-B5D3-495D-AF1B-FAEE0540BFEF} -> VAIO Data Restore Tool
{586509F0-350D-48B5-B763-9CC2F8D96C4C} -> Windows Live Sync
{596BED91-A1D8-4DF1-8CD1-1C777F7588AC} -> VAIO DVD Menu Data
{5A92468F-3ED8-4F96-A9E1-4F176C80EC29} -> VAIO Quick Web Access
{5B80AE2E-759D-11E0-A27D-005056C00008} -> MSVCRT Redists
{5DDAFB4B-C52E-468A-9E23-3B0CEEB671BF} -> VAIO-Support für Übertragungen
{61F569A3-1647-B6F4-08C8-40A011831827} -> CCC Help English
{65153EA5-8B6E-43B6-857B-C6E4FC25798A} -> Intel(R) Management Engine Components
{65B138AE-F636-4D4C-BA5D-A06E21E47C53} -> Remote-Tastatur mit PlayStation 3
{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4} -> Windows Media Player Firefox Plugin
{6A3F204B-323C-7E32-F890-A7308768728D} -> CCC Help Russian
{6CF47FD1-3CF8-4206-BA24-A2B1E43D8CCA} -> IncrediMail
{6FA8BA2C-052B-4072-B8E2-2302C268BE9E} -> VAIO Movie Story Template Data
{7002773F-2A53-E9F2-E161-DB3DDA0F05BE} -> CCC Help Hungarian
{70991E0A-1108-437E-BA7D-085702C670C0} ->
{72042FA6-5609-489F-A8EA-3C2DD650F667} -> VAIO Control Center
{734B6C6C-4740-476F-BB0C-F7AF469EDBB2} -> Remote Play with PlayStation 3
{758C8301-2696-4855-AF45-534B1200980A} -> Samsung Kies
{76DECE17-BCF5-9640-2854-3CA049834A40} -> CCC Help Chinese Standard
{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} -> Apple Software Update
{7A63F0C4-6B2B-694C-ED72-D0670612BC29} -> CCC Help Swedish
{7BB90344-0647-468E-925A-7F69F7983421} -> ArcSoft Magic-i Visual Effects 2
{803E4FA5-A940-4420-B89D-A8BC2E160247} ->
{8211C280-5B02-4E7E-B55F-845A207249BA} -> VAIO Data Restore Tool
{82F09B1C-F602-4552-9C40-5BD5F8EAF750} ->
{855DDD3C-131E-42A8-BCBD-F9581F80CACB} ->
{88001121-87E2-2104-F9F5-ECC15DFCA1E0} -> Catalyst Control Center Graphics Full Existing
{8DE50158-80AA-4FF2-9E9F-0A7C46F71FCD} -> VAIO Media plus
{8EB34C0B-AF54-F265-844C-3E6FA9AE2FCD} -> CCC Help German
{9238E8A4-BEBA-43A3-B926-769BDBF194C5} -> VAIO Media plus Opening Movie
{95140000-0070-0000-0000-0000000FF1CE} -> Microsoft Office 2010
{980A182F-E0A2-4A40-94C1-AE0C1235902E} -> Pando Media Booster
{9BE518E6-ECC6-35A9-88E4-87755C07200F} -> Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
{9C73041C-AB71-995D-EEC7-B4E940F93F36} -> CCC Help Finnish
{9D12A8B5-9D41-4465-BF11-70719EB0CD02} -> VU5x86
{9D318C86-AF4C-409F-A6AC-7183FF4CF424} -> Internet-TV für Windows Media Center
{9FF95DA2-7DA1-4228-93B7-DED7EC02B6B2} -> VAIO Update
{A00F8237-F496-44D2-0001-E3CCF8CD58AE} -> PhotoMizer
{A0E583D1-23F7-4C35-9620-B169D7715E4B} -> Adobe Premiere Elements 8.0
{A20548C1-4B08-C41D-A3A8-FE8C933C2A00} -> Catalyst Control Center InstallProxy
{A2BCA9F1-566C-4805-97D1-7FDC93386723} -> Adobe AIR
{A7C30414-2382-4086-B0D6-01A88ABA21C3} -> VAIO Gate
{A7DA438C-2E43-4C20-BFDA-C1F4A6208558} ->
{A8D53A4E-77A1-E23E-A396-6D9C86A2F273} -> Catalyst Control Center Graphics Full New
{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} -> Google Update Helper
{AC76BA86-7AD7-1031-7B44-AB0000000001} -> Adobe Reader XI (11.0.06) - Deutsch
{B6659DD8-00A7-4A24-BBFB-C1F6982E5D66} -> PlayStation(R)Network Downloader
{B6A98E5F-D6A7-46FB-9E9D-1F7BF443491C} -> PMB
{B7546697-2A80-4256-A24B-1C33163F535B} -> VAIO Gate Default
{B8A2869E-30CA-40C5-9CF8-BD7354E57EF8} -> SmartSound Common Data
{B941F34C-F36A-4A6F-A97C-50B5948E451F} -> VAIO Media plus
{BFF37C6E-D735-4487-390C-271E030AA62C} -> CCC Help Italian
{C2E171F6-9B58-4CE1-7B8B-B69FA04EBAB8} -> Catalyst Control Center Graphics Previews Vista
{C459D829-0FF0-C210-B2BF-83DB63FC1D61} -> CCC Help Korean
{C5529BC1-C2BF-44E8-B62A-01913D70081C} -> Catalyst Control Center - Branding
{C6E893E7-E5EA-4CD5-917C-5443E753FCBD} -> VAIO-Handbuch
{C7477742-DDB4-43E5-AC8D-0259E1E661B1} ->
{C83B7CBB-C736-BF46-9832-7A9D07E9D94C} -> CCC Help Polish
{D23574AC-503C-4974-A4AB-31F9E4B16DA3} -> MAGIX Video deluxe MX Download Version
{D2D23D08-D10E-43D6-883C-78E0B2AC9CC6} -> VU5x86
{D49989B0-7BC2-F7F1-8017-3257F617347A} -> Catalyst Control Center Graphics Previews Common
{D6C630BF-8DBB-4042-8562-DC9A52CB6E7E} -> Intel(R) Turbo Boost Technology Driver
{D6DEC295-88A0-5CFA-0B29-C8FDF091FFD3} -> CCC Help Dutch
{D8FF4505-5977-4116-8DE4-2AF7174E70AC} -> Media Gallery
{DD88F979-FA58-41AC-980C-A6E1A82B61D9} -> VAIO - Media Gallery
{DE8AAC73-6D8D-483E-96EA-CAEDDADB9079} -> ArcSoft WebCam Companion 3
{DF693121-40C0-3020-D655-612E51616423} -> CCC Help Danish
{E09B48B5-E141-427A-AB0C-D3605127224A} -> Microsoft SQL Server Desktop Engine (SONY_MEDIAMGR)
{EBDDC3CC-343A-C0DD-79BA-8A12D0A2CA10} -> CCC Help Turkish
{ECF0D151-BCA0-8E6D-62DB-5D44DB4A3836} -> CCC Help Thai
{ED1674F5-5165-49BF-B546-AE5343111540} -> WebCam
{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} -> Realtek High Definition Audio Driver
{F1B95046-E9DA-CFEC-42A8-C8224646AA32} -> ccc-core-static
{F30FE437-0E45-D409-F629-5D86960A6591} -> CCC Help Norwegian
{F5346614-B7C4-4E94-826A-E2363155233D} -> EasyCleaner
{F5CC9A13-6C57-4948-75A8-3A2C92A3183B} -> Catalyst Control Center Localization All
{F67C14C0-D73E-C55B-E132-B1904A1A709C} -> CCC Help Greek
{F761359C-9CED-45AE-9A51-9D6605CD55C4} -> Evernote
{F7E8DD1D-9BFD-38BB-86A5-BEF313B00C51} -> Catalyst Control Center InstallProxy
{F8A9085D-4C7A-41a9-8A77-C8998A96C421} -> Intel(R) Control Center
{FB77DB0C-6951-47B6-9D80-A0FDBEE0334C} ->
{FE48654B-F9AA-40ED-BEF3-48F3FE2FA847} -> Philips Media Converter
Adobe AIR -> Adobe AIR
Adobe Flash Player ActiveX -> Adobe Flash Player 11 ActiveX
Adobe Flash Player Plugin -> Adobe Flash Player 11 Plugin
Adobe Photoshop Elements 8.0 -> Adobe Photoshop Elements 8.0
Any Video Converter_is1 -> Any Video Converter 3.3.3
Ashampoo Burning Studio 6 FREE_is1 -> Ashampoo Burning Studio 6 FREE v.6.81
AVS Video Editor_is1 -> AVS Video Editor 6
BlazeDTV 6.0_is1 -> BlazeDTV 6.0
DT2 -> Deutsch Translator 2
Eusing Free Registry Cleaner -> Eusing Free Registry Cleaner
FastStone Image Viewer -> FastStone Image Viewer 4.4
Google Chrome -> Google Chrome
IncrediMail -> IncrediMail 2.0
InstallShield_{22008CF9-2B54-4022-AFD8-3B7D42C89E6B} -> VAIO - PMB VAIO Edition Plug-in
InstallShield_{2F8BA3FD-1FA9-4279-B696-712ABB12F09F} -> SmartSound Quicktracks 5
InstallShield_{339F9B4D-00CB-4C1C-BED8-EC86A9AB602A} -> VAIO - PMB VAIO Edition Guide
InstallShield_{4685A344-6718-4923-AA9D-158A0A2E1CFB} -> SmartSound Quicktracks for Premiere Elements 8.0
InstallShield_{6FA8BA2C-052B-4072-B8E2-2302C268BE9E} -> VAIO Movie Story Template Data
InstallShield_{758C8301-2696-4855-AF45-534B1200980A} -> Samsung Kies
InstallShield_{B8A2869E-30CA-40C5-9CF8-BD7354E57EF8} -> SmartSound Common Data
KLiteCodecPack_is1 -> K-Lite Codec Pack 7.0.0 (Standard)
LHTTSGED -> L&H TTS3000 Deutsch
Malwarebytes' Anti-Malware_is1 -> Malwarebytes Anti-Malware wersja 1.75.0.1300
Mozilla Firefox 21.0 (x86 pl) -> Mozilla Firefox 21.0 (x86 pl)
MozillaMaintenanceService -> Mozilla Maintenance Service
Odkurzacz 13.4_is1 -> Odkurzacz
PhotoScape -> PhotoScape
Picasa 3 -> Picasa 3
PremElem80 -> Adobe Premiere Elements 8.0
Revo Uninstaller -> Revo Uninstaller 1.94
splashtop -> VAIO Quick Web Access
TC UP -> Total Commander Ultima Prime 4.7.0.0
VAIO Help and Support ->
Wisdom-soft Set up ScreenHunter 5.1 Free -> Wisdom-soft Set up ScreenHunter 5.1 Free
X-DVD_Player -> X-DVD_Player
ZoomBrowser EX -> Canon Utilities ZoomBrowser EX
< Uninstall List [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ ->
< Uninstall List [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ ->
< Uninstall List [HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\] > -> HKEY_USERS\S-1-5-21-293356991-225826379-2249491693-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ ->
MyFreeCodec -> MyFreeCodec
< EventViewer Logs - Last 10 Errors > -> Event Information -> Description
Application [ Error ] 10.05.2014 11:31:46 Computer Name = ADA-VAIO | Source = Application Error | ID = 1000 -> Description = Name der fehlerhaften Anwendung: PEV.DAT, Version: 0.0.0.0, Zeitstempel: 0x4e06cfe8 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7600.17206, Zeitstempel: 0x50e6605e Ausnahmecode: 0xc0000005 Fehleroffset: 0x0002128b ID des fehlerhaften Prozesses: 0x19f4 Startzeit der fehlerhaften Anwendung: 0x01cf6c64f3f23ce8 Pfad der fehlerhaften Anwendung: C:\Users\ADA\AppData\Local\Temp\nsvBCF9.tmp\PEV.DAT Pfad des fehlerhaften Moduls: C:\Windows\syswow64\KERNELBASE.dll Berichtskennung: 31e61aac-d858-11e3-89b5-544249ee0e87
Application [ Error ] 10.05.2014 11:31:49 Computer Name = ADA-VAIO | Source = Application Error | ID = 1000 -> Description = Name der fehlerhaften Anwendung: PEV.DAT, Version: 0.0.0.0, Zeitstempel: 0x4e06cfe8 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7600.17206, Zeitstempel: 0x50e6605e Ausnahmecode: 0xc0000005 Fehleroffset: 0x0002128b ID des fehlerhaften Prozesses: 0x1a58 Startzeit der fehlerhaften Anwendung: 0x01cf6c64f578465e Pfad der fehlerhaften Anwendung: C:\Users\ADA\AppData\Local\Temp\nsvBCF9.tmp\PEV.DAT Pfad des fehlerhaften Moduls: C:\Windows\syswow64\KERNELBASE.dll Berichtskennung: 336bfd12-d858-11e3-89b5-544249ee0e87
Application [ Error ] 10.05.2014 11:31:52 Computer Name = ADA-VAIO | Source = Application Error | ID = 1000 -> Description = Name der fehlerhaften Anwendung: PEV.DAT, Version: 0.0.0.0, Zeitstempel: 0x4e06cfe8 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7600.17206, Zeitstempel: 0x50e6605e Ausnahmecode: 0xc0000005 Fehleroffset: 0x0002128b ID des fehlerhaften Prozesses: 0x1a3c Startzeit der fehlerhaften Anwendung: 0x01cf6c64f764b444 Pfad der fehlerhaften Anwendung: C:\Users\ADA\AppData\Local\Temp\nsvBCF9.tmp\PEV.DAT Pfad des fehlerhaften Moduls: C:\Windows\syswow64\KERNELBASE.dll Berichtskennung: 3558e029-d858-11e3-89b5-544249ee0e87
Application [ Error ] 10.05.2014 11:31:54 Computer Name = ADA-VAIO | Source = Application Error | ID = 1000 -> Description = Name der fehlerhaften Anwendung: PEV.DAT, Version: 0.0.0.0, Zeitstempel: 0x4e06cfe8 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7600.17206, Zeitstempel: 0x50e6605e Ausnahmecode: 0xc0000005 Fehleroffset: 0x0002128b ID des fehlerhaften Prozesses: 0xb48 Startzeit der fehlerhaften Anwendung: 0x01cf6c64f8a15797 Pfad der fehlerhaften Anwendung: C:\Users\ADA\AppData\Local\Temp\nsvBCF9.tmp\PEV.DAT Pfad des fehlerhaften Moduls: C:\Windows\syswow64\KERNELBASE.dll Berichtskennung: 36947208-d858-11e3-89b5-544249ee0e87
Application [ Error ] 10.05.2014 11:31:55 Computer Name = ADA-VAIO | Source = Application Error | ID = 1000 -> Description = Name der fehlerhaften Anwendung: PEV.DAT, Version: 0.0.0.0, Zeitstempel: 0x4e06cfe8 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7600.17206, Zeitstempel: 0x50e6605e Ausnahmecode: 0xc0000005 Fehleroffset: 0x0002128b ID des fehlerhaften Prozesses: 0x1610 Startzeit der fehlerhaften Anwendung: 0x01cf6c64f968a222 Pfad der fehlerhaften Anwendung: C:\Users\ADA\AppData\Local\Temp\nsvBCF9.tmp\PEV.DAT Pfad des fehlerhaften Moduls: C:\Windows\syswow64\KERNELBASE.dll Berichtskennung: 375cce07-d858-11e3-89b5-544249ee0e87
Application [ Error ] 10.05.2014 11:35:37 Computer Name = ADA-VAIO | Source = Microsoft-Windows-LoadPerf | ID = 3001 -> Description = Die Namenszeichenfolgenwert für den Leistungsindikator in der Registrierung ist falsch formatiert. Die falsch formatierte Zeichenfolge ist "?". Das erste DWORD im Datenbereich enthält den Indexwert für die falsch formatierte Zeichenfolge, während das zweite und dritte DWORD im Datenbereich die letzten gültigen Indexwerte enthalten.
Application [ Error ] 10.05.2014 11:39:36 Computer Name = ADA-VAIO | Source = Application Error | ID = 1000 -> Description = Name der fehlerhaften Anwendung: PEV.DAT, Version: 0.0.0.0, Zeitstempel: 0x4e06cfe8 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7600.17206, Zeitstempel: 0x50e6605e Ausnahmecode: 0xc0000005 Fehleroffset: 0x0002128b ID des fehlerhaften Prozesses: 0x3e4 Startzeit der fehlerhaften Anwendung: 0x01cf6c660b3a59b4 Pfad der fehlerhaften Anwendung: C:\Users\ADA\AppData\Local\Temp\nsx2E23.tmp\PEV.DAT Pfad des fehlerhaften Moduls: C:\Windows\syswow64\KERNELBASE.dll Berichtskennung: 4a0adf14-d859-11e3-9edf-544249ee0e87
Application [ Error ] 10.05.2014 11:39:41 Computer Name = ADA-VAIO | Source = Application Error | ID = 1000 -> Description = Name der fehlerhaften Anwendung: PEV.DAT, Version: 0.0.0.0, Zeitstempel: 0x4e06cfe8 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7600.17206, Zeitstempel: 0x50e6605e Ausnahmecode: 0xc0000005 Fehleroffset: 0x0002128b ID des fehlerhaften Prozesses: 0x11f4 Startzeit der fehlerhaften Anwendung: 0x01cf6c660f161bbb Pfad der fehlerhaften Anwendung: C:\Users\ADA\AppData\Local\Temp\nsx2E23.tmp\PEV.DAT Pfad des fehlerhaften Moduls: C:\Windows\syswow64\KERNELBASE.dll Berichtskennung: 4d0b0af3-d859-11e3-9edf-544249ee0e87
Application [ Error ] 10.05.2014 11:43:37 Computer Name = ADA-VAIO | Source = Microsoft-Windows-LoadPerf | ID = 3001 -> Description = Die Namenszeichenfolgenwert für den Leistungsindikator in der Registrierung ist falsch formatiert. Die falsch formatierte Zeichenfolge ist "?". Das erste DWORD im Datenbereich enthält den Indexwert für die falsch formatierte Zeichenfolge, während das zweite und dritte DWORD im Datenbereich die letzten gültigen Indexwerte enthalten.
Application [ Error ] 10.05.2014 11:47:19 Computer Name = ADA-VAIO | Source = Microsoft-Windows-LoadPerf | ID = 3001 -> Description = Die Namenszeichenfolgenwert für den Leistungsindikator in der Registrierung ist falsch formatiert. Die falsch formatierte Zeichenfolge ist "?". Das erste DWORD im Datenbereich enthält den Indexwert für die falsch formatierte Zeichenfolge, während das zweite und dritte DWORD im Datenbereich die letzten gültigen Indexwerte enthalten.
Media Center [ Error ] 31.01.2011 15:53:09 Computer Name = ADA-VAIO | Source = MCUpdate | ID = 0 -> Description = 20:53:08 - Directory konnte nicht abgerufen werden (Fehler: Der Remotename konnte nicht aufgelöst werden: 'data.tvdownload.microsoft.com')
Media Center [ Error ] 31.01.2011 15:53:28 Computer Name = ADA-VAIO | Source = MCUpdate | ID = 0 -> Description = 20:53:17 - Fehler beim Herstellen der Internetverbindung. 20:53:17 - Serververbindung konnte nicht hergestellt werden..
System [ Error ] 10.05.2014 11:33:21 Computer Name = ADA-VAIO | Source = Service Control Manager | ID = 7026 -> Description = Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: VD_FileDisk
System [ Error ] 10.05.2014 11:34:15 Computer Name = ADA-VAIO | Source = DCOM | ID = 10016 -> Description =
System [ Error ] 10.05.2014 11:35:32 Computer Name = ADA-VAIO | Source = Service Control Manager | ID = 7003 -> Description = Der Dienst "Intel(R) Management & Security Application User Notification Service" ist von folgendem Dienst abhängig: LMS. Dieser Dienst ist eventuell nicht installiert.
System [ Error ] 10.05.2014 11:35:40 Computer Name = ADA-VAIO | Source = Service Control Manager | ID = 7023 -> Description = Der Dienst "WMI-Leistungsadapter" wurde mit folgendem Fehler beendet: %%-2147467259
System [ Error ] 10.05.2014 11:40:38 Computer Name = ADA-VAIO | Source = Application Popup | ID = 1060 -> Description = Aufgrund der Inkompatibilität mit diesem System wurde \SystemRoot\SysWow64\Drivers\VD_FileDisk.SYS nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten.
System [ Error ] 10.05.2014 11:41:19 Computer Name = ADA-VAIO | Source = Service Control Manager | ID = 7026 -> Description = Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: VD_FileDisk
System [ Error ] 10.05.2014 11:42:12 Computer Name = ADA-VAIO | Source = DCOM | ID = 10016 -> Description =
System [ Error ] 10.05.2014 11:43:28 Computer Name = ADA-VAIO | Source = Service Control Manager | ID = 7003 -> Description = Der Dienst "Intel(R) Management & Security Application User Notification Service" ist von folgendem Dienst abhängig: LMS. Dieser Dienst ist eventuell nicht installiert.
System [ Error ] 10.05.2014 11:43:40 Computer Name = ADA-VAIO | Source = Service Control Manager | ID = 7023 -> Description = Der Dienst "WMI-Leistungsadapter" wurde mit folgendem Fehler beendet: %%-2147467259
System [ Error ] 10.05.2014 11:47:22 Computer Name = ADA-VAIO | Source = Service Control Manager | ID = 7023 -> Description = Der Dienst "WMI-Leistungsadapter" wurde mit folgendem Fehler beendet: %%-2147467259
[Files/Folders - Created Within 30 Days]
OTS.exe -> C:\Users\ADA\Desktop\OTS.exe -> [2014.05.10 17:43:10 | 000,646,656 | ---- | C] (OldTimer Tools)
Wkspq -> C:\Users\ADA\AppData\Local\Wkspq -> [2014.05.10 17:17:46 | 000,000,000 | -H-D | C]
Bmxx -> C:\Users\ADA\AppData\Roaming\Bmxx -> [2014.05.09 19:01:22 | 000,000,000 | -H-D | C]
32788R22FWJFW -> C:\32788R22FWJFW -> [2014.05.08 18:33:32 | 000,000,000 | --SD | C]
$RECYCLE.BIN -> C:\$RECYCLE.BIN -> [2014.05.08 18:29:45 | 000,000,000 | -HSD | C]
ComboFix -> C:\ComboFix -> [2014.05.08 18:29:41 | 000,000,000 | --SD | C]
Qoobox -> C:\Qoobox -> [2014.05.08 17:00:08 | 000,000,000 | ---D | C]
erdnt -> C:\Windows\erdnt -> [2014.05.08 16:59:22 | 000,000,000 | ---D | C]
ppmmg -> C:\ProgramData\ppmmg -> [2014.05.08 09:34:53 | 000,000,000 | ---D | C]
jgq -> C:\ProgramData\jgq -> [2014.05.08 09:34:53 | 000,000,000 | ---D | C]
bgsdli -> C:\ProgramData\bgsdli -> [2014.05.08 09:34:51 | 000,000,000 | ---D | C]
zoek_backup -> C:\zoek_backup -> [2014.05.07 20:58:43 | 000,000,000 | ---D | C]
esrmqrp -> C:\ProgramData\esrmqrp -> [2014.05.07 20:24:38 | 000,000,000 | ---D | C]
tatc -> C:\ProgramData\tatc -> [2014.05.07 20:24:36 | 000,000,000 | ---D | C]
xptnsdg -> C:\ProgramData\xptnsdg -> [2014.05.07 19:07:14 | 000,000,000 | ---D | C]
afqcuvs -> C:\ProgramData\afqcuvs -> [2014.05.07 19:06:52 | 000,000,000 | ---D | C]
pkcx -> C:\ProgramData\pkcx -> [2014.05.07 19:06:34 | 000,000,000 | ---D | C]
almagsi -> C:\ProgramData\almagsi -> [2014.05.07 19:06:30 | 000,000,000 | ---D | C]
systweak -> C:\Users\ADA\AppData\Roaming\systweak -> [2014.05.07 15:22:29 | 000,000,000 | ---D | C]
SupraSavings -> C:\Program Files (x86)\SupraSavings -> [2014.05.07 15:17:06 | 000,000,000 | ---D | C]
suprasavings -> C:\Program Files\suprasavings -> [2014.05.07 15:16:54 | 000,000,000 | ---D | C]
SupTab -> C:\Program Files (x86)\SupTab -> [2014.05.07 15:15:42 | 000,000,000 | ---D | C]
IePluginService -> C:\ProgramData\IePluginService -> [2014.05.07 15:15:42 | 000,000,000 | ---D | C]
WPM -> C:\ProgramData\WPM -> [2014.05.07 15:15:41 | 000,000,000 | ---D | C]
bmwpr -> C:\ProgramData\bmwpr -> [2014.05.07 10:08:26 | 000,000,000 | ---D | C]
cotbpks -> C:\ProgramData\cotbpks -> [2014.05.07 10:07:54 | 000,000,000 | ---D | C]
rqlf -> C:\ProgramData\rqlf -> [2014.05.07 10:06:31 | 000,000,000 | ---D | C]
iug -> C:\ProgramData\iug -> [2014.05.07 10:06:30 | 000,000,000 | ---D | C]
Wise Uninstaller -> C:\Users\ADA\AppData\Roaming\Wise Uninstaller -> [2014.05.07 08:33:21 | 000,000,000 | ---D | C]
eCyber -> C:\Users\ADA\AppData\Roaming\eCyber -> [2014.05.06 21:21:28 | 000,000,000 | ---D | C]
iSafeKrnlBoot.sys -> C:\Windows\SysNative\drivers\iSafeKrnlBoot.sys -> [2014.05.06 21:21:08 | 000,043,520 | ---- | C] (Elex do Brasil cenzura!ções Ltda)
log -> C:\Windows\SysNative\log -> [2014.05.06 21:21:08 | 000,000,000 | ---D | C]
iSafe -> C:\Users\ADA\AppData\Roaming\iSafe -> [2014.05.06 21:20:55 | 000,000,000 | ---D | C]
bxjkxy -> C:\ProgramData\bxjkxy -> [2014.05.06 21:13:32 | 000,000,000 | ---D | C]
xtl -> C:\ProgramData\xtl -> [2014.05.06 19:20:52 | 000,000,000 | ---D | C]
nreu -> C:\ProgramData\nreu -> [2014.05.06 19:20:52 | 000,000,000 | ---D | C]
dcrloep -> C:\ProgramData\dcrloep -> [2014.05.06 19:20:49 | 000,000,000 | ---D | C]
Enigma Software Group -> C:\Program Files\Enigma Software Group -> [2014.05.06 19:01:27 | 000,000,000 | ---D | C]
icrf -> C:\ProgramData\icrf -> [2014.05.06 16:01:31 | 000,000,000 | ---D | C]
FRST -> C:\FRST -> [2014.05.06 12:42:00 | 000,000,000 | ---D | C]
hcbrhuw -> C:\ProgramData\hcbrhuw -> [2014.05.06 12:38:24 | 000,000,000 | ---D | C]
tpfei -> C:\ProgramData\tpfei -> [2014.05.06 12:38:23 | 000,000,000 | ---D | C]
tbm -> C:\ProgramData\tbm -> [2014.05.06 12:38:22 | 000,000,000 | ---D | C]
VS Revo Group -> C:\Users\ADA\AppData\Local\VS Revo Group -> [2014.05.06 11:51:02 | 000,000,000 | ---D | C]
VS Revo Group -> C:\ProgramData\VS Revo Group -> [2014.05.06 11:50:58 | 000,000,000 | ---D | C]
Revo Uninstaller Pro -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro -> [2014.05.06 11:50:58 | 000,000,000 | ---D | C]
revoflt.sys -> C:\Windows\SysNative\drivers\revoflt.sys -> [2014.05.06 11:50:57 | 000,031,800 | ---- | C] (VS Revo Group)
VS Revo Group -> C:\Program Files\VS Revo Group -> [2014.05.06 11:50:54 | 000,000,000 | ---D | C]
sqlite3.dll -> C:\Windows\SysWow64\sqlite3.dll -> [2014.05.06 07:25:11 | 000,536,576 | ---- | C] (SQLite Development Team)
AdwCleaner -> C:\AdwCleaner -> [2014.05.06 07:19:11 | 000,000,000 | ---D | C]
ypgywxh -> C:\ProgramData\ypgywxh -> [2014.05.05 19:08:17 | 000,000,000 | ---D | C]
fruxhv -> C:\ProgramData\fruxhv -> [2014.05.05 17:56:44 | 000,000,000 | ---D | C]
ofk -> C:\ProgramData\ofk -> [2014.05.05 12:59:34 | 000,000,000 | ---D | C]
lcaun -> C:\ProgramData\lcaun -> [2014.05.05 12:59:34 | 000,000,000 | ---D | C]
Wipclhqbvc -> C:\Users\ADA\AppData\Roaming\Wipclhqbvc -> [2014.05.05 12:36:54 | 000,000,000 | -H-D | C]
Samsung -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung -> [2014.04.22 17:59:58 | 000,000,000 | ---D | C]
ToniArts -> C:\Program Files (x86)\ToniArts -> [2014.04.22 17:49:32 | 000,000,000 | ---D | C]
EasyCleaner -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EasyCleaner -> [2014.04.22 17:49:31 | 000,000,000 | ---D | C]
SelfMV -> C:\Users\ADA\Documents\SelfMV -> [2014.04.22 17:16:00 | 000,000,000 | ---D | C]
secman.dll -> C:\Windows\SysWow64\secman.dll -> [2014.04.22 17:14:51 | 000,144,664 | ---- | C] (MAPILab Ltd. & Add-in Express Ltd.)
KOMUNIA -> C:\Users\ADA\Desktop\KOMUNIA -> [2014.04.21 20:56:17 | 000,000,000 | ---D | C]
Neuer Ordner -> C:\Users\ADA\Desktop\Neuer Ordner -> [2014.04.20 10:14:42 | 000,000,000 | ---D | C]
Fotos0001 -> C:\Users\ADA\Desktop\Fotos0001 -> [2014.04.15 13:25:39 | 000,000,000 | ---D | C]
2 C:\Windows\*.tmp files -> C:\Windows\*.tmp ->
1 C:\Users\ADA\AppData\Local\*.tmp files -> C:\Users\ADA\AppData\Local\*.tmp ->
[Files/Folders - Modified Within 30 Days]
7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 -> C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 -> [2014.05.10 17:48:38 | 000,013,984 | -H-- | M] ()
7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 -> C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 -> [2014.05.10 17:48:38 | 000,013,984 | -H-- | M] ()
OTS.exe -> C:\Users\ADA\Desktop\OTS.exe -> [2014.05.10 17:43:13 | 000,646,656 | ---- | M] (OldTimer Tools)
PC Optimizer Pro64 startups.job -> C:\Windows\tasks\PC Optimizer Pro64 startups.job -> [2014.05.10 17:41:12 | 000,000,410 | ---- | M] ()
bootstat.dat -> C:\Windows\bootstat.dat -> [2014.05.10 17:40:50 | 000,067,584 | --S- | M] ()
hiberfil.sys -> C:\hiberfil.sys -> [2014.05.10 17:40:39 | 3106,480,128 | -HS- | M] ()
aps.uninstall.scan.results -> C:\Users\ADA\AppData\Roaming\aps.uninstall.scan.results -> [2014.05.07 15:26:06 | 000,000,322 | ---- | M] ()
Revo Uninstaller Pro.lnk -> C:\Users\Public\Desktop\Revo Uninstaller Pro.lnk -> [2014.05.06 22:06:04 | 000,001,121 | ---- | M] ()
autoexec.bat -> C:\autoexec.bat -> [2014.05.06 19:02:07 | 000,000,000 | ---- | M] ()
bookmarks_06.05.2014.html -> C:\Users\ADA\Documents\bookmarks_06.05.2014.html -> [2014.05.06 11:42:21 | 000,075,421 | ---- | M] ()
Lego.Star.Wars.III.The.Clone.Wars.Official.Game.Guide.XBOX360.PS3.Wii.NDS.pdf -> C:\Users\ADA\Desktop\Lego.Star.Wars.III.The.Clone.Wars.Official.Game.Guide.XBOX360.PS3.Wii.NDS.pdf -> [2014.05.02 22:43:08 | 030,286,972 | ---- | M] ()
iSafeKrnlBoot.sys -> C:\Windows\SysNative\drivers\iSafeKrnlBoot.sys -> [2014.04.23 12:19:45 | 000,043,520 | ---- | M] (Elex do Brasil cenzura!ções Ltda)
Samsung Kies (Lite).lnk -> C:\Users\Public\Desktop\Samsung Kies (Lite).lnk -> [2014.04.22 18:02:25 | 000,002,002 | ---- | M] ()
Samsung Kies.lnk -> C:\Users\Public\Desktop\Samsung Kies.lnk -> [2014.04.22 18:02:25 | 000,001,992 | ---- | M] ()
2 C:\Windows\*.tmp files -> C:\Windows\*.tmp ->
1 C:\Users\ADA\AppData\Local\*.tmp files -> C:\Users\ADA\AppData\Local\*.tmp ->
[Files - No Company Name]
aps.uninstall.scan.results -> C:\Users\ADA\AppData\Roaming\aps.uninstall.scan.results -> [2014.05.07 15:23:54 | 000,000,322 | ---- | C] ()
autoexec.bat -> C:\autoexec.bat -> [2014.05.06 19:02:07 | 000,000,000 | ---- | C] ()
Revo Uninstaller Pro.lnk -> C:\Users\Public\Desktop\Revo Uninstaller Pro.lnk -> [2014.05.06 11:50:59 | 000,001,121 | ---- | C] ()
bookmarks_06.05.2014.html -> C:\Users\ADA\Documents\bookmarks_06.05.2014.html -> [2014.05.06 11:42:21 | 000,075,421 | ---- | C] ()
Lego.Star.Wars.III.The.Clone.Wars.Official.Game.Guide.XBOX360.PS3.Wii.NDS.pdf -> C:\Users\ADA\Desktop\Lego.Star.Wars.III.The.Clone.Wars.Official.Game.Guide.XBOX360.PS3.Wii.NDS.pdf -> [2014.05.02 22:37:34 | 030,286,972 | ---- | C] ()
VAIO Update.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Update.lnk -> [2014.04.23 16:00:03 | 000,001,141 | ---- | C] ()
Samsung Kies (Lite).lnk -> C:\Users\Public\Desktop\Samsung Kies (Lite).lnk -> [2014.04.22 18:02:25 | 000,002,002 | ---- | C] ()
Samsung Kies.lnk -> C:\Users\Public\Desktop\Samsung Kies.lnk -> [2014.04.22 18:02:24 | 000,001,992 | ---- | C] ()
mfc45.dll -> C:\Windows\SysWow64\mfc45.dll -> [2014.02.25 17:53:22 | 000,074,703 | ---- | C] ()
MusiccityDownload.exe -> C:\Windows\MusiccityDownload.exe -> [2014.01.23 18:31:12 | 000,030,568 | ---- | C] ()
Windows1569_SettingsRepository.bin -> C:\Users\ADA\AppData\Roaming\Windows1569_SettingsRepository.bin -> [2013.03.13 08:36:30 | 000,000,022 | -HS- | C] ()
90C7D912BE2316.sys -> C:\Windows\90C7D912BE2316.sys -> [2013.03.13 08:36:30 | 000,000,022 | -HS- | C] ()
burnaware.ini -> C:\Users\ADA\AppData\Roaming\burnaware.ini -> [2013.02.25 20:26:19 | 000,000,478 | ---- | C] ()
MPUI.ini -> C:\Users\ADA\AppData\Roaming\MPUI.ini -> [2013.02.12 18:03:43 | 000,000,098 | ---- | C] ()
unrar.dll -> C:\Windows\SysWow64\unrar.dll -> [2013.02.12 13:52:30 | 000,165,376 | ---- | C] ()
cis-2.4.dll -> C:\Windows\SysWow64\cis-2.4.dll -> [2013.02.05 17:52:50 | 000,974,848 | ---- | C] ()
issacapi_bs-2.3.dll -> C:\Windows\SysWow64\issacapi_bs-2.3.dll -> [2013.02.05 17:52:50 | 000,081,920 | ---- | C] ()
issacapi_pe-2.3.dll -> C:\Windows\SysWow64\issacapi_pe-2.3.dll -> [2013.02.05 17:52:50 | 000,065,536 | ---- | C] ()
issacapi_se-2.3.dll -> C:\Windows\SysWow64\issacapi_se-2.3.dll -> [2013.02.05 17:52:50 | 000,057,344 | ---- | C] ()
WORDPAD.INI -> C:\Windows\WORDPAD.INI -> [2012.09.27 12:30:20 | 000,000,193 | ---- | C] ()
PnkBstrB.exe -> C:\Windows\SysWow64\PnkBstrB.exe -> [2012.08.25 21:25:37 | 000,281,120 | ---- | C] ()
PnkBstrA.exe -> C:\Windows\SysWow64\PnkBstrA.exe -> [2012.08.25 21:25:35 | 000,076,888 | ---- | C] ()
UserTile.png -> C:\Users\ADA\AppData\Roaming\UserTile.png -> [2012.06.23 08:00:59 | 000,012,841 | ---- | C] ()
< End of report >