This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

Lag Spikes

9 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

The problem started just a few days ago. While im playing online it suddenly starts to spike, like delay. Though the ping and fps are the same.
I spoke to the ISP and they have no idea. Could it be some hardware? I havent changed anything. I even tried to reinstall windows, nothing works!!

To explain more closly, when I click with the mouse to move the character, it moves fine forth and back a few times. But then all of a sudden, there is a delay for a seccond, or two.

Here is the OTL.Txt

OTL logfile created on: 2011-09-21 20:41:24 - Run 1
OTL by OldTimer - Version 3.2.29.1 Folder = C:\Users\Jessicaärsexig\Downloads
64bit-Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 0000041d | Country: Sverige | Language: SVE | Date Format: yyyy-MM-dd

5,99 Gb Total Physical Memory | 4,20 Gb Available Physical Memory | 70,17% Memory free
12,09 Gb Paging File | 10,32 Gb Available in Paging File | 85,39% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 683,56 Gb Total Space | 638,24 Gb Free Space | 93,37% Space Free | Partition Type: NTFS
Drive H: | 3,68 Gb Total Space | 3,41 Gb Free Space | 92,49% Space Free | Partition Type: FAT32

Computer Name: JESSICAÄRSEX-PC | User Name: Jessicaärsexig | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - C:\Users\Jessicaärsexig\Downloads\OTL.exe (OldTimer Tools)
PRC - C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe (Lavasoft Limited)
PRC - C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe (Lavasoft Limited)
PRC - C:\Program Files (x86)\Personal\bin\Personal.exe (Technology Nexus AB)
PRC - C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10w_ActiveX.exe (Adobe Systems, Inc.)


========== Modules (No Company Name) ==========


========== Win32 Services (SafeList) ==========

SRV:64bit: - (AMD External Events Utility) – C:\Windows\SysNative\atiesrxx.exe (AMD)
SRV:64bit: - (AERTFilters) – C:\Windows\SysNative\AERTSr64.exe (Andrea Electronics Corporation)
SRV:64bit: - (WinDefend) – C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (Lavasoft Ad-Aware Service) – C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe (Lavasoft Limited)
SRV - (clr_optimization_v2.0.50727_32) – C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)


========== Driver Services (SafeList) ==========

DRV:64bit: - (Lbd) – C:\Windows\SysNative\DRIVERS\Lbd.sys (Lavasoft AB)
DRV:64bit: - (atikmdag) – C:\Windows\SysNative\DRIVERS\atikmdag.sys (ATI Technologies Inc.)
DRV:64bit: - (amdkmdag) – C:\Windows\SysNative\DRIVERS\atikmdag.sys (ATI Technologies Inc.)
DRV:64bit: - (amdkmdap) – C:\Windows\SysNative\DRIVERS\atikmpag.sys (Advanced Micro Devices, Inc.)
DRV:64bit: - (e1yexpress) Intel® – C:\Windows\SysNative\DRIVERS\e1y60x64.sys (Intel Corporation)
DRV - (Lavasoft Kernexplorer) – C:\Program Files (x86)\Lavasoft\Ad-Aware\kernexplorer64.sys ()


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://se.msn.com/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = sv
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = AC 72 BB AD BD 77 CC 01 [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@se.nexus/Personal: C:\Program Files (x86)\Personal\bin\np_prsnl.dll (Technology Nexus AB)



O1 HOSTS File: ([2006-09-18 23:37:24 | 000,000,761 | —- | M]) - C:\Windows\SysNative\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Windows\RAVCpl64.exe (Realtek Semiconductor)
O4:64bit: - HKLM..\Run: [Skytel] Skytel.exe File not found
O4:64bit: - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKCU..\Run: [WindowsWelcomeCenter] C:\Windows\SysWow64\oobefldr.dll (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O9 - Extra Button: Click to call with Skype - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Click to call with Skype - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {49312E18-AA92-4CC2-BB97-55DEA7BCADD6} https://support.dell.com/systemprofiler/SysProExe.CAB (WMI Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shoc…ash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2996FA30-A90D-4AFB-BFE0-9687CFBC1425}: DhcpNameServer = 192.168.0.1
O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) -C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) -C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Windows\Web\Wallpaper\img17.jpg
O24 - Desktop BackupWallPaper: C:\Windows\Web\Wallpaper\img17.jpg
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{d7f58b66-e378-11e0-a2b8-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{d7f58b66-e378-11e0-a2b8-806e6f6e6963}\Shell\AutoRun\command - "" = D:\autoRcd.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (lsdelete)
O35:64bit: - HKLM\..comfile [open] – "%1" %*
O35:64bit: - HKLM\..exefile [open] – "%1" %*
O35 - HKLM\..comfile [open] – "%1" %*
O35 - HKLM\..exefile [open] – "%1" %*
O37:64bit: - HKLM\…com [@ = comfile] – "%1" %*
O37:64bit: - HKLM\…exe [@ = exefile] – "%1" %*
O37 - HKLM\…com [@ = comfile] – "%1" %*
O37 - HKLM\…exe [@ = exefile] – "%1" %*


Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

========== Files/Folders - Created Within 30 Days ==========

[2011-09-21 18:12:22 | 000,000,000 | —D | C] – C:\ProgramData\Sun
[2011-09-21 18:12:21 | 000,000,000 | —D | C] – C:\Program Files (x86)\Common Files\Java
[2011-09-21 18:11:46 | 000,472,808 | —- | C] (Sun Microsystems, Inc.) – C:\Windows\SysWow64\deployJava1.dll
[2011-09-21 18:11:46 | 000,157,472 | —- | C] (Sun Microsystems, Inc.) – C:\Windows\SysWow64\javaws.exe
[2011-09-21 18:11:46 | 000,145,184 | —- | C] (Sun Microsystems, Inc.) – C:\Windows\SysWow64\javaw.exe
[2011-09-21 18:11:46 | 000,145,184 | —- | C] (Sun Microsystems, Inc.) – C:\Windows\SysWow64\java.exe
[2011-09-21 18:11:28 | 000,000,000 | —D | C] – C:\Program Files (x86)\Java
[2011-09-21 17:51:41 | 000,055,384 | —- | C] (Sunbelt Software) – C:\Windows\SysNative\drivers\SBREDrv.sys
[2011-09-21 17:50:36 | 000,069,376 | —- | C] (Lavasoft AB) – C:\Windows\SysNative\drivers\Lbd.sys
[2011-09-21 17:50:36 | 000,000,000 | —D | C] – C:\Windows\SysNative\DRVSTORE
[2011-09-21 17:50:30 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
[2011-09-21 17:50:30 | 000,000,000 | —D | C] – C:\ProgramData\Lavasoft
[2011-09-21 17:50:30 | 000,000,000 | —D | C] – C:\Program Files (x86)\Lavasoft
[2011-09-21 16:10:36 | 000,000,000 | —D | C] – C:\Users\Jessicaärsexig\AppData\Roaming\Personal
[2011-09-21 16:10:23 | 000,000,000 | —D | C] – C:\Program Files (x86)\Personal
[2011-09-21 16:10:23 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BankID Security Application 4.18.1
[2011-09-21 13:04:02 | 000,000,000 | —D | C] – C:\Users\Jessicaärsexig\AppData\Roaming\Skype
[2011-09-21 13:03:44 | 000,000,000 | R–D | C] – C:\Program Files (x86)\Skype
[2011-09-21 13:03:44 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2011-09-21 13:03:42 | 000,000,000 | —D | C] – C:\ProgramData\Skype
[2011-09-21 09:47:21 | 000,000,000 | —D | C] – C:\Program Files (x86)\Windows Portable Devices
[2011-09-21 09:47:20 | 000,000,000 | —D | C] – C:\Program Files\Windows Portable Devices
[2011-09-21 09:45:33 | 000,037,888 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\BthMtpContextHandler.dll
[2011-09-21 09:45:33 | 000,034,816 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WPDShextAutoplay.exe
[2011-09-21 09:45:33 | 000,030,208 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\WPDShextAutoplay.exe
[2011-09-21 09:45:32 | 002,727,936 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wpdshext.dll
[2011-09-21 09:45:32 | 000,573,440 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wpd_ci.dll
[2011-09-21 09:45:32 | 000,453,120 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\PortableDeviceApi.dll
[2011-09-21 09:45:32 | 000,433,152 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WPDSp.dll
[2011-09-21 09:45:32 | 000,350,208 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\WPDSp.dll
[2011-09-21 09:45:32 | 000,218,624 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\PortableDeviceWMDRM.dll
[2011-09-21 09:45:32 | 000,214,528 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\PortableDeviceTypes.dll
[2011-09-21 09:45:32 | 000,196,608 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\PortableDeviceWMDRM.dll
[2011-09-21 09:45:32 | 000,113,152 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\PortableDeviceClassExtension.dll
[2011-09-21 09:45:32 | 000,110,080 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WPDShServiceObj.dll
[2011-09-21 09:45:32 | 000,100,864 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\PortableDeviceClassExtension.dll
[2011-09-21 09:45:32 | 000,077,824 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\PortableDeviceConnectApi.dll
[2011-09-21 09:45:32 | 000,060,928 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\PortableDeviceConnectApi.dll
[2011-09-21 09:44:56 | 000,004,096 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\oleaccrc.dll
[2011-09-21 09:44:56 | 000,004,096 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\oleaccrc.dll
[2011-09-21 09:44:55 | 000,736,256 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\UIAutomationCore.dll
[2011-09-21 09:44:55 | 000,555,520 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\UIAutomationCore.dll
[2011-09-21 09:44:55 | 000,315,904 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\oleacc.dll
[2011-09-21 09:42:56 | 001,555,968 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\DWrite.dll
[2011-09-21 09:42:56 | 000,479,744 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\XpsGdiConverter.dll
[2011-09-21 09:42:56 | 000,288,768 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\XpsGdiConverter.dll
[2011-09-21 09:42:55 | 001,210,880 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\kernel32.dll
[2011-09-21 09:42:53 | 000,180,736 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\xmllite.dll
[2011-09-21 09:41:41 | 001,653,760 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\XpsPrint.dll
[2011-09-21 09:41:41 | 000,876,032 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\XpsPrint.dll
[2011-09-21 09:41:37 | 004,240,384 | —- | C] (Microsoft) – C:\Windows\SysWow64\GameUXLegacyGDFs.dll
[2011-09-21 09:41:37 | 004,240,384 | —- | C] (Microsoft) – C:\Windows\SysNative\GameUXLegacyGDFs.dll
[2011-09-21 09:41:37 | 001,927,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\gameux.dll
[2011-09-21 09:41:37 | 001,696,256 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\gameux.dll
[2011-09-21 09:41:37 | 000,032,256 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\Apphlpdm.dll
[2011-09-21 09:41:37 | 000,028,672 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\Apphlpdm.dll
[2011-09-20 23:07:29 | 000,000,000 | —D | C] – C:\Windows\Panther
[2011-09-20 23:07:14 | 000,000,000 | -HSD | C] – C:\Boot
[2011-09-20 22:25:52 | 000,000,000 | —D | C] – C:\Windows\SysWow64\spool
[2011-09-20 19:50:58 | 000,000,000 | —D | C] – C:\Users\Jessicaärsexig\Documents\Vuze Downloads
[2011-09-20 17:50:12 | 000,367,104 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\html.iec
[2011-09-20 17:50:12 | 000,176,640 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ieui.dll
[2011-09-20 17:50:12 | 000,162,304 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\msrating.dll
[2011-09-20 17:50:12 | 000,086,528 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\iesysprep.dll
[2011-09-20 17:50:12 | 000,076,800 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\SetIEInstalledDate.exe
[2011-09-20 17:50:12 | 000,074,752 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2011-09-20 17:50:12 | 000,063,488 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\tdc.ocx
[2011-09-20 17:50:12 | 000,048,640 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mshtmler.dll
[2011-09-20 17:50:11 | 003,695,416 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ieapfltr.dat
[2011-09-20 17:50:11 | 001,427,456 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\inetcpl.cpl
[2011-09-20 17:50:11 | 000,716,800 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\jscript.dll
[2011-09-20 17:50:11 | 000,434,176 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ieapfltr.dll
[2011-09-20 17:50:11 | 000,267,776 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ieaksie.dll
[2011-09-20 17:50:11 | 000,231,936 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\url.dll
[2011-09-20 17:50:11 | 000,227,840 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ieaksie.dll
[2011-09-20 17:50:11 | 000,222,208 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\msls31.dll
[2011-09-20 17:50:11 | 000,197,120 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\msrating.dll
[2011-09-20 17:50:11 | 000,163,840 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ieakui.dll
[2011-09-20 17:50:11 | 000,163,840 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ieakui.dll
[2011-09-20 17:50:11 | 000,152,064 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wextract.exe
[2011-09-20 17:50:11 | 000,150,528 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\iexpress.exe
[2011-09-20 17:50:11 | 000,142,848 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ieUnatt.exe
[2011-09-20 17:50:11 | 000,130,560 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ieakeng.dll
[2011-09-20 17:50:11 | 000,123,392 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\occache.dll
[2011-09-20 17:50:11 | 000,118,784 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\iepeers.dll
[2011-09-20 17:50:11 | 000,114,176 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\advpack.dll
[2011-09-20 17:50:11 | 000,114,176 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\admparse.dll
[2011-09-20 17:50:11 | 000,110,592 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\IEAdvpack.dll
[2011-09-20 17:50:11 | 000,101,888 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\admparse.dll
[2011-09-20 17:50:11 | 000,089,088 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\RegisterIEPKEYs.exe
[2011-09-20 17:50:11 | 000,078,848 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\inseng.dll
[2011-09-20 17:50:11 | 000,074,752 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\iesetup.dll
[2011-09-20 17:50:11 | 000,074,240 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ie4uinit.exe
[2011-09-20 17:50:11 | 000,072,704 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mshtmled.dll
[2011-09-20 17:50:11 | 000,066,048 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\icardie.dll
[2011-09-20 17:50:11 | 000,054,272 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\pngfilt.dll
[2011-09-20 17:50:11 | 000,031,744 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\iernonce.dll
[2011-09-20 17:50:11 | 000,023,552 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\licmgr10.dll
[2011-09-20 17:50:11 | 000,012,288 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mshta.exe
[2011-09-20 17:50:11 | 000,010,752 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\msfeedssync.exe
[2011-09-20 17:50:10 | 003,695,416 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ieapfltr.dat
[2011-09-20 17:50:10 | 002,303,488 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\jscript9.dll
[2011-09-20 17:50:10 | 001,492,992 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\inetcpl.cpl
[2011-09-20 17:50:10 | 000,818,176 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\jscript.dll
[2011-09-20 17:50:10 | 000,697,344 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\msfeeds.dll
[2011-09-20 17:50:10 | 000,603,648 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\vbscript.dll
[2011-09-20 17:50:10 | 000,534,528 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ieapfltr.dll
[2011-09-20 17:50:10 | 000,452,608 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dxtmsft.dll
[2011-09-20 17:50:10 | 000,448,512 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\html.iec
[2011-09-20 17:50:10 | 000,282,112 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dxtrans.dll
[2011-09-20 17:50:10 | 000,248,320 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ieui.dll
[2011-09-20 17:50:10 | 000,237,056 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\url.dll
[2011-09-20 17:50:10 | 000,173,056 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ieUnatt.exe
[2011-09-20 17:50:10 | 000,165,888 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\iexpress.exe
[2011-09-20 17:50:10 | 000,160,256 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wextract.exe
[2011-09-20 17:50:10 | 000,160,256 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ieakeng.dll
[2011-09-20 17:50:10 | 000,149,504 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\occache.dll
[2011-09-20 17:50:10 | 000,145,920 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\iepeers.dll
[2011-09-20 17:50:10 | 000,136,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\advpack.dll
[2011-09-20 17:50:10 | 000,135,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\IEAdvpack.dll
[2011-09-20 17:50:10 | 000,111,616 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\iesysprep.dll
[2011-09-20 17:50:10 | 000,103,936 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\inseng.dll
[2011-09-20 17:50:10 | 000,096,256 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mshtmled.dll
[2011-09-20 17:50:10 | 000,091,648 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\SetIEInstalledDate.exe
[2011-09-20 17:50:10 | 000,089,088 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ie4uinit.exe
[2011-09-20 17:50:10 | 000,085,504 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\iesetup.dll
[2011-09-20 17:50:10 | 000,082,432 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\icardie.dll
[2011-09-20 17:50:10 | 000,076,800 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\tdc.ocx
[2011-09-20 17:50:10 | 000,065,024 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\pngfilt.dll
[2011-09-20 17:50:10 | 000,049,664 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\imgutil.dll
[2011-09-20 17:50:10 | 000,048,640 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mshtmler.dll
[2011-09-20 17:50:10 | 000,039,936 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\iernonce.dll
[2011-09-20 17:50:10 | 000,030,720 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\licmgr10.dll
[2011-09-20 17:50:10 | 000,010,752 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\msfeedssync.exe
[2011-09-20 17:49:27 | 003,548,672 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mf.dll
[2011-09-20 17:49:27 | 002,873,344 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mf.dll
[2011-09-20 17:49:27 | 001,257,984 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\MFH264Dec.dll
[2011-09-20 17:49:27 | 000,979,456 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\MFH264Dec.dll
[2011-09-20 17:49:27 | 000,428,544 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\MFHEAACdec.dll
[2011-09-20 17:49:27 | 000,377,344 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mfmp4src.dll
[2011-09-20 17:49:27 | 000,357,376 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\MFHEAACdec.dll
[2011-09-20 17:49:27 | 000,345,088 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mfreadwrite.dll
[2011-09-20 17:49:27 | 000,302,592 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mfmp4src.dll
[2011-09-20 17:49:27 | 000,261,632 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mfreadwrite.dll
[2011-09-20 17:49:27 | 000,195,072 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mfps.dll
[2011-09-20 17:49:27 | 000,098,816 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mfps.dll
[2011-09-20 17:49:27 | 000,034,304 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mfpmp.exe
[2011-09-20 17:49:26 | 002,002,944 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\d3d10warp.dll
[2011-09-20 17:49:26 | 001,204,224 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\shdocvw.dll
[2011-09-20 17:49:26 | 000,834,048 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\d2d1.dll
[2011-09-20 17:49:26 | 000,748,544 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\stobject.dll
[2011-09-20 17:49:26 | 000,566,272 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\d3d10level9.dll
[2011-09-20 17:49:26 | 000,278,528 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mfplat.dll
[2011-09-20 17:49:26 | 000,231,936 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\XpsRasterService.dll
[2011-09-20 17:49:26 | 000,209,920 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mfplat.dll
[2011-09-20 17:49:25 | 003,068,416 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\xpsservices.dll
[2011-09-20 17:49:25 | 001,554,432 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\xpsservices.dll
[2011-09-20 17:49:25 | 001,461,760 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\OpcServices.dll
[2011-09-20 17:49:25 | 001,268,224 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\d3d10.dll
[2011-09-20 17:49:25 | 001,032,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\printfilterpipelinesvc.exe
[2011-09-20 17:49:25 | 000,847,360 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\OpcServices.dll
[2011-09-20 17:49:25 | 000,625,152 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dxgi.dll
[2011-09-20 17:49:25 | 000,366,592 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\winspool.drv
[2011-09-20 17:49:25 | 000,327,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\d3d10_1core.dll
[2011-09-20 17:49:25 | 000,287,232 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\d3d10core.dll
[2011-09-20 17:49:25 | 000,196,096 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\d3d10_1.dll
[2011-09-20 17:49:25 | 000,135,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\XpsRasterService.dll
[2011-09-20 17:49:25 | 000,047,104 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\cdd.dll
[2011-09-20 17:49:25 | 000,035,840 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\printfilterpipelineprxy.dll
[2011-09-20 17:47:16 | 000,449,024 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WMPhoto.dll
[2011-09-20 17:47:16 | 000,369,664 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\WMPhoto.dll
[2011-09-20 17:47:16 | 000,328,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dxdiag.exe
[2011-09-20 17:47:16 | 000,262,656 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dxdiagn.dll
[2011-09-20 17:47:16 | 000,252,928 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\dxdiag.exe
[2011-09-20 17:47:16 | 000,195,584 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\dxdiagn.dll
[2011-09-20 17:47:15 | 001,209,856 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WindowsCodecs.dll
[2011-09-20 17:47:15 | 000,792,576 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\d3d11.dll
[2011-09-20 17:47:15 | 000,519,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\d3d11.dll
[2011-09-20 17:47:15 | 000,411,648 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\PhotoMetadataHandler.dll
[2011-09-20 17:47:15 | 000,321,024 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\PhotoMetadataHandler.dll
[2011-09-20 17:47:15 | 000,245,248 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WindowsCodecsExt.dll
[2011-09-20 17:25:14 | 000,278,528 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WinFXDocObj.exe
[2011-09-20 17:25:14 | 000,208,384 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\WinFXDocObj.exe
[2011-09-20 17:21:02 | 001,942,856 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dfshim.dll
[2011-09-20 17:21:02 | 001,130,824 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\dfshim.dll
[2011-09-20 17:21:02 | 000,320,352 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\PresentationHost.exe
[2011-09-20 17:21:02 | 000,295,264 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\PresentationHost.exe
[2011-09-20 17:21:02 | 000,109,912 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\PresentationHostProxy.dll
[2011-09-20 17:21:02 | 000,099,176 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\PresentationHostProxy.dll
[2011-09-20 17:21:02 | 000,049,472 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\netfxperf.dll
[2011-09-20 17:21:02 | 000,048,960 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\netfxperf.dll
[2011-09-20 17:20:33 | 000,294,912 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\browserchoice.exe
[2011-09-20 17:09:56 | 000,000,000 | —D | C] – C:\Users\Jessicaärsexig\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Heroes of Newerth
[2011-09-20 17:09:56 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Heroes of Newerth
[2011-09-20 17:09:55 | 000,000,000 | —D | C] – C:\Users\Jessicaärsexig\Documents\Heroes of Newerth
[2011-09-20 17:09:44 | 004,379,984 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\D3DX9_40.dll
[2011-09-20 17:09:44 | 002,036,576 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\D3DCompiler_40.dll
[2011-09-20 17:09:44 | 000,452,440 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\d3dx10_40.dll
[2011-09-20 17:09:44 | 000,081,768 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\xinput1_3.dll
[2011-09-20 17:08:13 | 000,847,360 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\oleaut32.dll
[2011-09-20 17:08:01 | 000,085,504 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\csrsrv.dll
[2011-09-20 17:08:00 | 000,317,952 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\MP4SDECD.DLL
[2011-09-20 17:08:00 | 000,295,424 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\MP4SDECD.DLL
[2011-09-20 17:07:49 | 013,426,688 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wmp.dll
[2011-09-20 17:07:46 | 010,627,072 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wmp.dll
[2011-09-20 17:07:44 | 008,147,968 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wmploc.DLL
[2011-09-20 17:07:44 | 008,147,456 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wmploc.DLL
[2011-09-20 17:07:37 | 000,000,000 | —D | C] – C:\Program Files (x86)\Heroes of Newerth
[2011-09-20 17:07:36 | 000,466,944 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\odbc32.dll
[2011-09-20 17:07:36 | 000,413,696 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\odbc32.dll
[2011-09-20 17:07:31 | 000,456,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\shlwapi.dll
[2011-09-20 17:07:28 | 000,991,104 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\winresume.efi
[2011-09-20 17:07:28 | 000,979,840 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\winresume.exe
[2011-09-20 17:07:27 | 001,076,608 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\winload.efi
[2011-09-20 17:07:27 | 001,063,296 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\winload.exe
[2011-09-20 17:07:27 | 000,020,864 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\kdusb.dll
[2011-09-20 17:07:27 | 000,018,816 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\kd1394.dll
[2011-09-20 17:07:27 | 000,017,792 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\kdcom.dll
[2011-09-20 17:07:21 | 000,633,856 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\comctl32.dll
[2011-09-20 17:07:20 | 000,954,752 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mfc40.dll
[2011-09-20 17:07:20 | 000,954,288 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mfc40u.dll
[2011-09-20 17:06:57 | 000,017,920 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\netevent.dll
[2011-09-20 17:06:57 | 000,017,920 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\netevent.dll
[2011-09-20 17:06:57 | 000,012,288 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\sscore.dll
[2011-09-20 17:06:57 | 000,009,728 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\sscore.dll
[2011-09-20 17:06:49 | 002,425,344 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mstscax.dll
[2011-09-20 17:06:49 | 002,067,968 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mstscax.dll
[2011-09-20 17:06:48 | 000,731,136 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mstsc.exe
[2011-09-20 17:06:48 | 000,677,888 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mstsc.exe
[2011-09-20 17:06:33 | 000,367,616 | —- | C] (Adobe Systems Incorporated) – C:\Windows\SysNative\atmfd.dll
[2011-09-20 17:06:33 | 000,292,864 | —- | C] (Adobe Systems Incorporated) – C:\Windows\SysWow64\atmfd.dll
[2011-09-20 17:06:33 | 000,096,256 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\fontsub.dll
[2011-09-20 17:06:32 | 000,072,704 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\fontsub.dll
[2011-09-20 17:06:32 | 000,048,128 | —- | C] (Adobe Systems) – C:\Windows\SysNative\atmlib.dll
[2011-09-20 17:06:32 | 000,034,304 | —- | C] (Adobe Systems) – C:\Windows\SysWow64\atmlib.dll
[2011-09-20 17:06:30 | 001,915,904 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ole32.dll
[2011-09-20 17:06:27 | 001,398,784 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mfc42.dll
[2011-09-20 17:06:27 | 001,360,384 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mfc42u.dll
[2011-09-20 17:06:26 | 001,162,240 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mfc42u.dll
[2011-09-20 17:06:26 | 001,136,640 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mfc42.dll
[2011-09-20 17:06:24 | 000,189,952 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\t2embed.dll
[2011-09-20 17:06:24 | 000,157,184 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\t2embed.dll
[2011-09-20 17:06:21 | 001,585,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ntdll.dll
[2011-09-20 17:06:18 | 000,000,000 | —D | C] – C:\Users\Jessicaärsexig\AppData\Local\Spotify
[2011-09-20 17:06:16 | 000,087,552 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\consent.exe
[2011-09-20 17:06:16 | 000,000,000 | —D | C] – C:\Users\Jessicaärsexig\AppData\Roaming\Spotify
[2011-09-20 17:06:11 | 000,559,616 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\EncDec.dll
[2011-09-20 17:06:11 | 000,429,056 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\EncDec.dll
[2011-09-20 17:06:11 | 000,416,768 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\sbe.dll
[2011-09-20 17:06:11 | 000,322,560 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\sbe.dll
[2011-09-20 17:06:11 | 000,226,816 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mpg2splt.ax
[2011-09-20 17:06:11 | 000,210,944 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\sbeio.dll
[2011-09-20 17:06:11 | 000,177,664 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mpg2splt.ax
[2011-09-20 17:06:11 | 000,153,088 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\sbeio.dll
[2011-09-20 17:06:10 | 004,699,536 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ntoskrnl.exe
[2011-09-20 17:06:07 | 000,316,928 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\msshsq.dll
[2011-09-20 17:06:01 | 000,451,072 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\winsrv.dll
[2011-09-20 17:05:59 | 001,251,840 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\sdclt.exe
[2011-09-20 17:05:58 | 000,621,568 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\usp10.dll
[2011-09-20 17:05:57 | 000,655,872 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\taskschd.dll
[2011-09-20 17:05:57 | 000,500,224 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wmicmiplugin.dll
[2011-09-20 17:05:56 | 000,410,112 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\taskcomp.dll
[2011-09-20 17:05:56 | 000,352,768 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\taskschd.dll
[2011-09-20 17:05:56 | 000,270,336 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\taskcomp.dll
[2011-09-20 17:05:56 | 000,267,776 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\taskeng.exe
[2011-09-20 17:05:46 | 001,090,048 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wmpmde.dll
[2011-09-20 17:05:46 | 000,867,328 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wmpmde.dll
[2011-09-20 17:01:20 | 000,000,000 | —D | C] – C:\Users\Jessicaärsexig\AppData\Roaming\Azureus
[2011-09-20 17:00:48 | 000,000,000 | —D | C] – C:\Program Files (x86)\Vuze
[2011-09-20 16:58:39 | 000,221,696 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dnsapi.dll
[2011-09-20 16:58:39 | 000,028,672 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dnscacheugc.exe
[2011-09-20 16:58:39 | 000,025,088 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\dnscacheugc.exe
[2011-09-20 16:58:11 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PS3 Media Server
[2011-09-20 16:58:10 | 000,000,000 | —D | C] – C:\ProgramData\PMS
[2011-09-20 16:58:04 | 000,000,000 | —D | C] – C:\Program Files (x86)\PS3 Media Server
[2011-09-20 16:50:58 | 000,000,000 | —D | C] – C:\Users\Jessicaärsexig\AppData\Roaming\ATI
[2011-09-20 16:50:58 | 000,000,000 | —D | C] – C:\Users\Jessicaärsexig\AppData\Local\ATI
[2011-09-20 16:50:58 | 000,000,000 | —D | C] – C:\ProgramData\ATI
[2011-09-20 16:48:41 | 000,000,000 | —D | C] – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
[2011-09-20 16:48:25 | 000,000,000 | —D | C] – C:\Program Files (x86)\ATI Technologies
[2011-09-20 16:47:17 | 000,000,000 | —D | C] – C:\Program Files\ATI Technologies
[2011-09-20 16:47:14 | 000,000,000 | —D | C] – C:\Program Files\ATI
[2011-09-20 16:46:34 | 004,286,464 | —- | C] (ATI Technologies Inc. ) – C:\Windows\SysWow64\atiumdag.dll
[2011-09-20 16:46:34 | 004,056,576 | —- | C] (Advanced Micro Devices, Inc. ) – C:\Windows\SysWow64\atiumdva.dll
[2011-09-20 16:46:34 | 000,902,656 | —- | C] (ATI Technologies Inc.) – C:\Windows\SysNative\Ati2evxx.exe
[2011-09-20 16:46:34 | 000,462,848 | —- | C] (Advanced Micro Devices, Inc.) – C:\Windows\SysNative\ATIDEMGX.dll
[2011-09-20 16:46:34 | 000,423,424 | —- | C] (ATI Technologies, Inc.) – C:\Windows\SysNative\atipdl64.dll
[2011-09-20 16:46:34 | 000,366,080 | —- | C] (Advanced Micro Devices, Inc.) – C:\Windows\SysNative\atiadlxx.dll
[2011-09-20 16:46:34 | 000,296,448 | —- | C] (ATI Technologies Inc.) – C:\Windows\SysNative\Ati2evxx.dll
[2011-09-20 16:46:34 | 000,120,320 | —- | C] (AMD) – C:\Windows\SysNative\atitmm64.dll
[2011-09-20 16:46:34 | 000,059,392 | —- | C] (ATI Technologies, Inc.) – C:\Windows\SysNative\atiedu64.dll
[2011-09-20 16:29:43 | 000,000,000 | —D | C] – C:\Users\Jessicaärsexig\AppData\Roaming\Macromedia
[2011-09-20 16:29:42 | 000,000,000 | —D | C] – C:\Users\Jessicaärsexig\AppData\Roaming\Adobe
[2011-09-20 16:29:41 | 000,404,640 | —- | C] (Adobe Systems Incorporated) – C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2011-09-20 16:29:40 | 000,000,000 | —D | C] – C:\Windows\SysWow64\Macromed
[2011-09-20 15:52:19 | 000,000,000 | —D | C] – C:\Windows\SysWow64\Dell
[2011-09-20 15:05:51 | 002,621,440 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wucltux.dll
[2011-09-20 15:05:51 | 000,057,560 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wuauclt.exe
[2011-09-20 15:05:51 | 000,043,744 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wups2.dll
[2011-09-20 15:05:36 | 000,053,248 | —- | C] (Windows XP Bundled build C-Centric Single User) – C:\Windows\SysWow64\CSVer.dll
[2011-09-20 15:05:36 | 000,000,000 | —D | C] – C:\Program Files (x86)\Intel
[2011-09-20 15:05:34 | 000,700,640 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wuapi.dll
[2011-09-20 15:05:34 | 000,575,704 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wuapi.dll
[2011-09-20 15:05:34 | 000,098,816 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wudriver.dll
[2011-09-20 15:05:34 | 000,087,552 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wudriver.dll
[2011-09-20 15:05:34 | 000,038,112 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wups.dll
[2011-09-20 15:05:34 | 000,035,552 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wups.dll
[2011-09-20 15:05:25 | 000,000,000 | —D | C] – C:\Intel
[2011-09-20 15:05:20 | 000,185,416 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wuwebv.dll
[2011-09-20 15:05:20 | 000,171,608 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wuwebv.dll
[2011-09-20 15:05:20 | 000,036,864 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wuapp.exe
[2011-09-20 15:05:20 | 000,033,792 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wuapp.exe
[2011-09-20 15:04:30 | 000,335,488 | —- | C] (Intel Corporation) – C:\Windows\SysNative\PROUnstl.exe
[2011-09-20 15:04:06 | 000,316,544 | —- | C] (Intel Corporation) – C:\Windows\SysNative\drivers\e1y60x64.sys
[2011-09-20 15:04:06 | 000,121,440 | —- | C] (Intel Corporation) – C:\Windows\SysNative\e1000msg.dll
[2011-09-20 15:04:06 | 000,057,464 | —- | C] (Intel Corporation) – C:\Windows\SysNative\NicInstQ.dll
[2011-09-20 15:04:06 | 000,036,472 | —- | C] (Intel Corporation) – C:\Windows\SysNative\NicCo26.dll
[2011-09-20 15:03:06 | 000,000,000 | —D | C] – C:\Windows\SysWow64\RTCOM
[2011-09-20 15:02:49 | 000,525,792 | —- | C] (Microsoft Corporation) – C:\Windows\DIFxAPI.dll
[2011-09-20 15:02:48 | 006,475,808 | —- | C] (Realtek Semiconductor) – C:\Windows\RAVCpl64.exe
[2011-09-20 15:02:48 | 001,393,696 | —- | C] (Realtek Semiconductor Corp.) – C:\Windows\RtlUpd64.exe
[2011-09-20 15:02:48 | 001,389,088 | —- | C] (Realtek Semiconductor Corp.) – C:\Windows\SysNative\RtkAPO64.dll
[2011-09-20 15:02:48 | 000,883,232 | —- | C] (Realtek Semiconductor Corp.) – C:\Windows\SysNative\RtPgEx64.dll
[2011-09-20 15:02:48 | 000,605,216 | —- | C] (Realtek Semiconductor Corp.) – C:\Windows\SysNative\RTSnMg64.cpl
[2011-09-20 15:02:48 | 000,567,808 | —- | C] (Creative Technology Ltd.) – C:\Windows\SysNative\CTAPO64.dll
[2011-09-20 15:02:48 | 000,513,536 | —- | C] (SRS Labs, Inc.) – C:\Windows\SysNative\SRSTSX64.dll
[2011-09-20 15:02:48 | 000,497,152 | —- | C] (Creative Technology Ltd.) – C:\Windows\SysWow64\CTAPO32.dll
[2011-09-20 15:02:48 | 000,368,672 | —- | C] (Realtek Semiconductor Corp.) – C:\Windows\SysNative\RtkApi64.dll
[2011-09-20 15:02:48 | 000,159,744 | —- | C] (Andrea Electronics Corporation) – C:\Windows\SysNative\AERTAC64.dll
[2011-09-20 15:02:48 | 000,150,528 | —- | C] (SRS Labs, Inc.) – C:\Windows\SysNative\SRSWOW64.dll
[2011-09-20 15:02:48 | 000,099,840 | —- | C] (Andrea Electronics Corporation) – C:\Windows\SysNative\AERTAR64.dll
[2011-09-20 15:02:48 | 000,088,576 | —- | C] (Andrea Electronics Corporation) – C:\Windows\SysNative\AERTSr64.exe
[2011-09-20 15:02:48 | 000,077,824 | —- | C] (Creative Technology Ltd.) – C:\Windows\SysNative\DaisyWrp.dll
[2011-09-20 15:02:48 | 000,053,760 | —- | C] (Creative Technology Ltd.) – C:\Windows\SysNative\ppChain.dll
[2011-09-20 15:02:48 | 000,050,208 | —- | C] (Realtek Semiconductor Corp.) – C:\Windows\SysNative\RCoInst64.dll
[2011-09-20 15:02:48 | 000,000,000 | -H-D | C] – C:\Program Files (x86)\InstallShield Installation Information
[2011-09-20 15:02:48 | 000,000,000 | —D | C] – C:\Program Files (x86)\Realtek
[2011-09-20 15:02:46 | 000,528,384 | —- | C] (Realtek Semiconductor Corp.) – C:\Windows\RtlExUpd.dll
[2011-09-20 15:02:46 | 000,319,488 | —- | C] (Realtek Semiconductor Corp.) – C:\Windows\HideWin.exe
[2011-09-20 15:02:43 | 000,000,000 | —D | C] – C:\Program Files (x86)\Common Files\InstallShield
[2011-09-20 15:02:39 | 000,000,000 | —D | C] – C:\dell
[2011-09-20 14:59:20 | 000,000,000 | —D | C] – C:\Windows\SysWow64\vmm32
[2011-09-20 14:59:20 | 000,000,000 | —D | C] – C:\Program Files (x86)\Dell
[2011-09-20 14:59:03 | 000,000,000 | -HSD | C] – C:\Windows\Installer
[2011-09-20 14:54:59 | 000,000,000 | R–D | C] – C:\Users\Jessicaärsexig\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
[2011-09-20 14:54:59 | 000,000,000 | R–D | C] – C:\Users\Jessicaärsexig\Searches
[2011-09-20 14:54:59 | 000,000,000 | R–D | C] – C:\Users\Jessicaärsexig\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2011-09-20 14:54:49 | 000,000,000 | —D | C] – C:\Users\Jessicaärsexig\AppData\Roaming\Identities
[2011-09-20 14:54:46 | 000,000,000 | R–D | C] – C:\Users\Jessicaärsexig\Contacts
[2011-09-20 14:54:45 | 000,000,000 | —D | C] – C:\Users\Jessicaärsexig\AppData\Local\VirtualStore
[2011-09-20 14:54:40 | 000,000,000 | –SD | C] – C:\Users\Jessicaärsexig\AppData\Roaming\Microsoft
[2011-09-20 14:54:40 | 000,000,000 | R–D | C] – C:\Users\Jessicaärsexig\Videos
[2011-09-20 14:54:40 | 000,000,000 | R–D | C] – C:\Users\Jessicaärsexig\Saved Games
[2011-09-20 14:54:40 | 000,000,000 | R–D | C] – C:\Users\Jessicaärsexig\Pictures
[2011-09-20 14:54:40 | 000,000,000 | R–D | C] – C:\Users\Jessicaärsexig\Music
[2011-09-20 14:54:40 | 000,000,000 | R–D | C] – C:\Users\Jessicaärsexig\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
[2011-09-20 14:54:40 | 000,000,000 | R–D | C] – C:\Users\Jessicaärsexig\Links
[2011-09-20 14:54:40 | 000,000,000 | R–D | C] – C:\Users\Jessicaärsexig\Favorites
[2011-09-20 14:54:40 | 000,000,000 | R–D | C] – C:\Users\Jessicaärsexig\Downloads
[2011-09-20 14:54:40 | 000,000,000 | R–D | C] – C:\Users\Jessicaärsexig\Documents
[2011-09-20 14:54:40 | 000,000,000 | R–D | C] – C:\Users\Jessicaärsexig\Desktop
[2011-09-20 14:54:40 | 000,000,000 | R–D | C] – C:\Users\Jessicaärsexig\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
[2011-09-20 14:54:40 | 000,000,000 | -HSD | C] – C:\Users\Jessicaärsexig\AppData\Local\Temporary Internet Files
[2011-09-20 14:54:40 | 000,000,000 | -HSD | C] – C:\Users\Jessicaärsexig\Templates
[2011-09-20 14:54:40 | 000,000,000 | -HSD | C] – C:\Users\Jessicaärsexig\Start Menu
[2011-09-20 14:54:40 | 000,000,000 | -HSD | C] – C:\Users\Jessicaärsexig\SendTo
[2011-09-20 14:54:40 | 000,000,000 | -HSD | C] – C:\Users\Jessicaärsexig\Recent
[2011-09-20 14:54:40 | 000,000,000 | -HSD | C] – C:\Users\Jessicaärsexig\PrintHood
[2011-09-20 14:54:40 | 000,000,000 | -HSD | C] – C:\Users\Jessicaärsexig\NetHood
[2011-09-20 14:54:40 | 000,000,000 | -HSD | C] – C:\Users\Jessicaärsexig\Documents\My Videos
[2011-09-20 14:54:40 | 000,000,000 | -HSD | C] – C:\Users\Jessicaärsexig\Documents\My Pictures
[2011-09-20 14:54:40 | 000,000,000 | -HSD | C] – C:\Users\Jessicaärsexig\Documents\My Music
[2011-09-20 14:54:40 | 000,000,000 | -HSD | C] – C:\Users\Jessicaärsexig\My Documents
[2011-09-20 14:54:40 | 000,000,000 | -HSD | C] – C:\Users\Jessicaärsexig\Local Settings
[2011-09-20 14:54:40 | 000,000,000 | -HSD | C] – C:\Users\Jessicaärsexig\AppData\Local\History
[2011-09-20 14:54:40 | 000,000,000 | -HSD | C] – C:\Users\Jessicaärsexig\Cookies
[2011-09-20 14:54:40 | 000,000,000 | -HSD | C] – C:\Users\Jessicaärsexig\Application Data
[2011-09-20 14:54:40 | 000,000,000 | -HSD | C] – C:\Users\Jessicaärsexig\AppData\Local\Application Data
[2011-09-20 14:54:40 | 000,000,000 | -H-D | C] – C:\Users\Jessicaärsexig\AppData
[2011-09-20 14:54:40 | 000,000,000 | —D | C] – C:\Users\Jessicaärsexig\AppData\Local\Temp
[2011-09-20 14:54:40 | 000,000,000 | —D | C] – C:\Users\Jessicaärsexig\AppData\Local\Microsoft
[2011-09-20 14:54:40 | 000,000,000 | —D | C] – C:\Users\Jessicaärsexig\AppData\Roaming\Media Center Programs
[2011-09-20 13:19:34 | 000,000,000 | —D | C] – C:\Windows\Debug
[2011-09-20 13:13:22 | 000,000,000 | —D | C] – C:\Windows\SoftwareDistribution
[2011-09-20 13:08:23 | 000,000,000 | -HSD | C] – C:\System Volume Information

========== Files - Modified Within 30 Days ==========

[2011-09-21 20:42:07 | 000,690,960 | —- | M] () – C:\Windows\SysNative\PerfStringBackup.INI
[2011-09-21 20:42:07 | 000,586,980 | —- | M] () – C:\Windows\SysNative\perfh009.dat
[2011-09-21 20:42:07 | 000,101,052 | —- | M] () – C:\Windows\SysNative\perfc009.dat
[2011-09-21 20:34:59 | 000,002,592 | -H– | M] () – C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011-09-21 20:34:59 | 000,002,592 | -H– | M] () – C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011-09-21 20:34:53 | 000,067,584 | –S- | M] () – C:\Windows\bootstat.dat
[2011-09-21 18:11:32 | 000,472,808 | —- | M] (Sun Microsystems, Inc.) – C:\Windows\SysWow64\deployJava1.dll
[2011-09-21 18:11:32 | 000,157,472 | —- | M] (Sun Microsystems, Inc.) – C:\Windows\SysWow64\javaws.exe
[2011-09-21 18:11:32 | 000,145,184 | —- | M] (Sun Microsystems, Inc.) – C:\Windows\SysWow64\javaw.exe
[2011-09-21 18:11:32 | 000,145,184 | —- | M] (Sun Microsystems, Inc.) – C:\Windows\SysWow64\java.exe
[2011-09-21 17:51:41 | 000,055,384 | —- | M] (Sunbelt Software) – C:\Windows\SysNative\drivers\SBREDrv.sys
[2011-09-21 17:51:40 | 000,016,432 | —- | M] () – C:\Windows\SysNative\lsdelete.exe
[2011-09-21 17:50:43 | 000,000,967 | —- | M] () – C:\Users\Public\Desktop\Ad-Aware.lnk
[2011-09-21 16:10:23 | 000,001,922 | —- | M] () – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\BankID Security Application.lnk
[2011-09-21 13:03:44 | 000,001,890 | —- | M] () – C:\Users\Public\Desktop\Skype.lnk
[2011-09-21 09:49:09 | 000,228,928 | —- | M] () – C:\Windows\SysNative\FNTCACHE.DAT
[2011-09-21 09:46:57 | 000,000,000 | -H– | M] () – C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_07_00.Wdf
[2011-09-21 09:01:24 | 000,000,973 | —- | M] () – C:\Users\Jessicaärsexig\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2011-09-20 23:07:15 | 000,008,192 | R-S- | M] () – C:\BOOTSECT.BAK
[2011-09-20 17:50:19 | 000,008,798 | —- | M] () – C:\Windows\SysWow64\icrav03.rat
[2011-09-20 17:50:19 | 000,008,798 | —- | M] () – C:\Windows\SysNative\icrav03.rat
[2011-09-20 17:50:19 | 000,001,988 | —- | M] () – C:\Windows\SysWow64\ticrf.rat
[2011-09-20 17:50:19 | 000,001,988 | —- | M] () – C:\Windows\SysNative\ticrf.rat
[2011-09-20 17:50:12 | 000,367,104 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\html.iec
[2011-09-20 17:50:12 | 000,176,640 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\ieui.dll
[2011-09-20 17:50:12 | 000,162,304 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\msrating.dll
[2011-09-20 17:50:12 | 000,086,528 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\iesysprep.dll
[2011-09-20 17:50:12 | 000,076,800 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\SetIEInstalledDate.exe
[2011-09-20 17:50:12 | 000,074,752 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2011-09-20 17:50:12 | 000,063,488 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\tdc.ocx
[2011-09-20 17:50:12 | 000,048,640 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\mshtmler.dll
[2011-09-20 17:50:11 | 003,695,416 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\ieapfltr.dat
[2011-09-20 17:50:11 | 001,427,456 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\inetcpl.cpl
[2011-09-20 17:50:11 | 000,716,800 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\jscript.dll
[2011-09-20 17:50:11 | 000,434,176 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\ieapfltr.dll
[2011-09-20 17:50:11 | 000,267,776 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\ieaksie.dll
[2011-09-20 17:50:11 | 000,231,936 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\url.dll
[2011-09-20 17:50:11 | 000,227,840 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\ieaksie.dll
[2011-09-20 17:50:11 | 000,222,208 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\msls31.dll
[2011-09-20 17:50:11 | 000,197,120 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\msrating.dll
[2011-09-20 17:50:11 | 000,163,840 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\ieakui.dll
[2011-09-20 17:50:11 | 000,163,840 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\ieakui.dll
[2011-09-20 17:50:11 | 000,152,064 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\wextract.exe
[2011-09-20 17:50:11 | 000,150,528 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\iexpress.exe
[2011-09-20 17:50:11 | 000,142,848 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\ieUnatt.exe
[2011-09-20 17:50:11 | 000,130,560 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\ieakeng.dll
[2011-09-20 17:50:11 | 000,123,392 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\occache.dll
[2011-09-20 17:50:11 | 000,118,784 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\iepeers.dll
[2011-09-20 17:50:11 | 000,114,176 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\advpack.dll
[2011-09-20 17:50:11 | 000,114,176 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\admparse.dll
[2011-09-20 17:50:11 | 000,110,592 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\IEAdvpack.dll
[2011-09-20 17:50:11 | 000,101,888 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\admparse.dll
[2011-09-20 17:50:11 | 000,089,088 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\RegisterIEPKEYs.exe
[2011-09-20 17:50:11 | 000,078,848 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\inseng.dll
[2011-09-20 17:50:11 | 000,074,752 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\iesetup.dll
[2011-09-20 17:50:11 | 000,074,240 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\ie4uinit.exe
[2011-09-20 17:50:11 | 000,072,822 | —- | M] () – C:\Windows\SysWow64\ieuinit.inf
[2011-09-20 17:50:11 | 000,072,704 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\mshtmled.dll
[2011-09-20 17:50:11 | 000,066,048 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\icardie.dll
[2011-09-20 17:50:11 | 000,054,272 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\pngfilt.dll
[2011-09-20 17:50:11 | 000,031,744 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\iernonce.dll
[2011-09-20 17:50:11 | 000,023,552 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\licmgr10.dll
[2011-09-20 17:50:11 | 000,012,288 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\mshta.exe
[2011-09-20 17:50:11 | 000,010,752 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\msfeedssync.exe
[2011-09-20 17:50:10 | 003,695,416 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\ieapfltr.dat
[2011-09-20 17:50:10 | 002,303,488 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\jscript9.dll
[2011-09-20 17:50:10 | 001,492,992 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\inetcpl.cpl
[2011-09-20 17:50:10 | 000,818,176 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\jscript.dll
[2011-09-20 17:50:10 | 000,697,344 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\msfeeds.dll
[2011-09-20 17:50:10 | 000,603,648 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\vbscript.dll
[2011-09-20 17:50:10 | 000,534,528 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\ieapfltr.dll
[2011-09-20 17:50:10 | 000,452,608 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\dxtmsft.dll
[2011-09-20 17:50:10 | 000,448,512 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\html.iec
[2011-09-20 17:50:10 | 000,282,112 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\dxtrans.dll
[2011-09-20 17:50:10 | 000,248,320 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\ieui.dll
[2011-09-20 17:50:10 | 000,237,056 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\url.dll
[2011-09-20 17:50:10 | 000,173,056 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\ieUnatt.exe
[2011-09-20 17:50:10 | 000,165,888 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\iexpress.exe
[2011-09-20 17:50:10 | 000,160,256 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\wextract.exe
[2011-09-20 17:50:10 | 000,160,256 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\ieakeng.dll
[2011-09-20 17:50:10 | 000,149,504 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\occache.dll
[2011-09-20 17:50:10 | 000,145,920 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\iepeers.dll
[2011-09-20 17:50:10 | 000,136,192 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\advpack.dll
[2011-09-20 17:50:10 | 000,135,168 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\IEAdvpack.dll
[2011-09-20 17:50:10 | 000,111,616 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\iesysprep.dll
[2011-09-20 17:50:10 | 000,103,936 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\inseng.dll
[2011-09-20 17:50:10 | 000,096,256 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\mshtmled.dll
[2011-09-20 17:50:10 | 000,091,648 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\SetIEInstalledDate.exe
[2011-09-20 17:50:10 | 000,089,088 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\ie4uinit.exe
[2011-09-20 17:50:10 | 000,085,504 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\iesetup.dll
[2011-09-20 17:50:10 | 000,082,432 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\icardie.dll
[2011-09-20 17:50:10 | 000,076,800 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\tdc.ocx
[2011-09-20 17:50:10 | 000,072,822 | —- | M] () – C:\Windows\SysNative\ieuinit.inf
[2011-09-20 17:50:10 | 000,065,024 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\pngfilt.dll
[2011-09-20 17:50:10 | 000,049,664 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\imgutil.dll
[2011-09-20 17:50:10 | 000,048,640 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\mshtmler.dll
[2011-09-20 17:50:10 | 000,039,936 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\iernonce.dll
[2011-09-20 17:50:10 | 000,030,720 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\licmgr10.dll
[2011-09-20 17:50:10 | 000,010,752 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\msfeedssync.exe
[2011-09-20 17:49:27 | 003,548,672 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\mf.dll
[2011-09-20 17:49:27 | 002,873,344 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\mf.dll
[2011-09-20 17:49:27 | 001,257,984 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\MFH264Dec.dll
[2011-09-20 17:49:27 | 000,979,456 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\MFH264Dec.dll
[2011-09-20 17:49:27 | 000,428,544 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\MFHEAACdec.dll
[2011-09-20 17:49:27 | 000,377,344 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\mfmp4src.dll
[2011-09-20 17:49:27 | 000,357,376 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\MFHEAACdec.dll
[2011-09-20 17:49:27 | 000,345,088 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\mfreadwrite.dll
[2011-09-20 17:49:27 | 000,302,592 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\mfmp4src.dll
[2011-09-20 17:49:27 | 000,261,632 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\mfreadwrite.dll
[2011-09-20 17:49:27 | 000,195,072 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\mfps.dll
[2011-09-20 17:49:27 | 000,098,816 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\mfps.dll
[2011-09-20 17:49:27 | 000,034,304 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\mfpmp.exe
[2011-09-20 17:49:26 | 002,002,944 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\d3d10warp.dll
[2011-09-20 17:49:26 | 001,204,224 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\shdocvw.dll
[2011-09-20 17:49:26 | 000,834,048 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\d2d1.dll
[2011-09-20 17:49:26 | 000,748,544 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\stobject.dll
[2011-09-20 17:49:26 | 000,566,272 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\d3d10level9.dll
[2011-09-20 17:49:26 | 000,278,528 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\mfplat.dll
[2011-09-20 17:49:26 | 000,231,936 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\XpsRasterService.dll
[2011-09-20 17:49:26 | 000,209,920 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\mfplat.dll
[2011-09-20 17:49:25 | 003,068,416 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\xpsservices.dll
[2011-09-20 17:49:25 | 001,554,432 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\xpsservices.dll
[2011-09-20 17:49:25 | 001,461,760 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\OpcServices.dll
[2011-09-20 17:49:25 | 001,268,224 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\d3d10.dll
[2011-09-20 17:49:25 | 001,032,192 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\printfilterpipelinesvc.exe
[2011-09-20 17:49:25 | 000,847,360 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\OpcServices.dll
[2011-09-20 17:49:25 | 000,625,152 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\dxgi.dll
[2011-09-20 17:49:25 | 000,366,592 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\winspool.drv
[2011-09-20 17:49:25 | 000,327,680 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\d3d10_1core.dll
[2011-09-20 17:49:25 | 000,287,232 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\d3d10core.dll
[2011-09-20 17:49:25 | 000,196,096 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\d3d10_1.dll
[2011-09-20 17:49:25 | 000,135,680 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\XpsRasterService.dll
[2011-09-20 17:49:25 | 000,047,104 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\cdd.dll
[2011-09-20 17:49:25 | 000,035,840 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\printfilterpipelineprxy.dll
[2011-09-20 17:47:16 | 000,449,024 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\WMPhoto.dll
[2011-09-20 17:47:16 | 000,369,664 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\WMPhoto.dll
[2011-09-20 17:47:16 | 000,328,192 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\dxdiag.exe
[2011-09-20 17:47:16 | 000,262,656 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\dxdiagn.dll
[2011-09-20 17:47:16 | 000,252,928 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\dxdiag.exe
[2011-09-20 17:47:16 | 000,195,584 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\dxdiagn.dll
[2011-09-20 17:47:16 | 000,003,584 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\drivers\en-US\dxgkrnl.sys.mui
[2011-09-20 17:47:15 | 001,209,856 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\WindowsCodecs.dll
[2011-09-20 17:47:15 | 000,792,576 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\d3d11.dll
[2011-09-20 17:47:15 | 000,519,680 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\d3d11.dll
[2011-09-20 17:47:15 | 000,411,648 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\PhotoMetadataHandler.dll
[2011-09-20 17:47:15 | 000,321,024 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\PhotoMetadataHandler.dll
[2011-09-20 17:47:15 | 000,245,248 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\WindowsCodecsExt.dll
[2011-09-20 17:01:07 | 000,001,687 | —- | M] () – C:\Users\Jessicaärsexig\Application Data\Microsoft\Internet Explorer\Quick Launch\Vuze.lnk
[2011-09-20 16:50:09 | 000,000,000 | —- | M] () – C:\Windows\ativpsrm.bin
[2011-09-20 16:29:41 | 000,404,640 | —- | M] (Adobe Systems Incorporated) – C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2011-09-20 16:27:42 | 000,000,732 | —- | M] () – C:\Users\Jessicaärsexig\AppData\Local\d3d9caps64.dat
[2011-09-20 15:02:51 | 000,525,792 | —- | M] (Microsoft Corporation) – C:\Windows\DIFxAPI.dll
[2011-09-20 15:02:46 | 000,319,488 | —- | M] (Realtek Semiconductor Corp.) – C:\Windows\HideWin.exe
[2011-09-20 13:16:15 | 000,048,744 | —- | M] () – C:\Windows\SysNative\license.rtf
[2011-09-20 13:15:20 | 000,000,000 | -H– | M] () – C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_00_00.Wdf

========== Files Created - No Company Name ==========

[2011-09-21 18:54:24 | 000,016,432 | —- | C] () – C:\Windows\SysNative\lsdelete.exe
[2011-09-21 17:50:43 | 000,000,967 | —- | C] () – C:\Users\Public\Desktop\Ad-Aware.lnk
[2011-09-21 16:10:23 | 000,001,922 | —- | C] () – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\BankID Security Application.lnk
[2011-09-21 13:03:44 | 000,001,890 | —- | C] () – C:\Users\Public\Desktop\Skype.lnk
[2011-09-21 09:46:57 | 000,000,000 | -H– | C] () – C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_07_00.Wdf
[2011-09-20 23:07:15 | 000,008,192 | R-S- | C] () – C:\BOOTSECT.BAK
[2011-09-20 23:07:14 | 000,333,257 | RHS- | C] () – C:\bootmgr
[2011-09-20 17:50:11 | 000,072,822 | —- | C] () – C:\Windows\SysWow64\ieuinit.inf
[2011-09-20 17:50:10 | 000,072,822 | —- | C] () – C:\Windows\SysNative\ieuinit.inf
[2011-09-20 17:06:17 | 000,000,834 | —- | C] () – C:\Users\Jessicaärsexig\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
[2011-09-20 17:01:07 | 000,001,687 | —- | C] () – C:\Users\Jessicaärsexig\Application Data\Microsoft\Internet Explorer\Quick Launch\Vuze.lnk
[2011-09-20 17:01:07 | 000,001,687 | —- | C] () – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vuze.lnk
[2011-09-20 16:50:09 | 000,000,000 | —- | C] () – C:\Windows\ativpsrm.bin
[2011-09-20 16:46:35 | 000,019,392 | —- | C] () – C:\Windows\SysNative\drivers\ativvpxx.vp
[2011-09-20 16:46:35 | 000,002,096 | —- | C] () – C:\Windows\SysNative\drivers\ativpkxx.vp
[2011-09-20 16:46:35 | 000,002,096 | —- | C] () – C:\Windows\SysNative\drivers\ativokxx.vp
[2011-09-20 16:46:34 | 003,107,788 | —- | C] () – C:\Windows\SysWow64\atiumdva.dat
[2011-09-20 16:46:34 | 003,107,788 | —- | C] () – C:\Windows\SysNative\atiumd6a.dat
[2011-09-20 16:46:34 | 000,655,825 | —- | C] () – C:\Windows\SysNative\drivers\ativcaxx.cpa
[2011-09-20 16:46:34 | 000,090,112 | —- | C] () – C:\Windows\SysNative\atibrtmon.exe
[2011-09-20 16:46:34 | 000,002,096 | —- | C] () – C:\Windows\SysNative\drivers\ativdkxx.vp
[2011-09-20 16:46:34 | 000,000,929 | —- | C] () – C:\Windows\SysNative\drivers\ativcaxx.vp
[2011-09-20 15:04:30 | 000,001,904 | —- | C] () – C:\Windows\SysNative\SetupBD.din
[2011-09-20 15:04:06 | 000,002,723 | —- | C] () – C:\Windows\SysNative\e1y60x64.din
[2011-09-20 15:03:32 | 000,000,553 | —- | C] () – C:\Windows\USetup.iss
[2011-09-20 15:02:48 | 000,672,800 | —- | C] () – C:\Windows\SysNative\RTCOM64.dll
[2011-09-20 15:00:56 | 000,000,973 | —- | C] () – C:\Users\Jessicaärsexig\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2011-09-20 14:55:04 | 000,000,949 | —- | C] () – C:\Users\Jessicaärsexig\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
[2011-09-20 14:55:00 | 000,000,979 | —- | C] () – C:\Users\Jessicaärsexig\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2011-09-20 14:54:58 | 000,000,974 | —- | C] () – C:\Users\Jessicaärsexig\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
[2011-09-20 14:54:46 | 000,000,915 | —- | C] () – C:\Users\Jessicaärsexig\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk
[2011-09-20 14:54:41 | 000,000,732 | —- | C] () – C:\Users\Jessicaärsexig\AppData\Local\d3d9caps64.dat
[2011-09-20 14:54:40 | 000,000,258 | —- | C] () – C:\Users\Jessicaärsexig\Application Data\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk
[2011-09-20 14:54:40 | 000,000,240 | —- | C] () – C:\Users\Jessicaärsexig\Application Data\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk
[2011-09-20 13:15:20 | 000,000,000 | -H– | C] () – C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_00_00.Wdf
[2011-03-17 17:51:46 | 000,003,929 | —- | C] () – C:\Windows\SysWow64\atipblag.dat
[2009-04-11 18:23:17 | 000,368,640 | —- | C] () – C:\Windows\SysWow64\msjetoledb40.dll
[2009-04-11 18:22:30 | 000,018,904 | —- | C] () – C:\Windows\SysWow64\StructuredQuerySchemaTrivial.bin
[2009-04-11 18:22:29 | 000,107,612 | —- | C] () – C:\Windows\SysWow64\StructuredQuerySchema.bin
[2009-04-11 18:22:25 | 000,117,248 | —- | C] () – C:\Windows\SysWow64\EhStorAuthn.dll
[2008-01-21 04:50:05 | 000,060,124 | —- | C] () – C:\Windows\SysWow64\tcpmon.ini
[2006-11-02 17:37:05 | 000,067,584 | –S- | C] () – C:\Windows\bootstat.dat
[2006-11-02 14:37:14 | 000,215,943 | —- | C] () – C:\Windows\SysWow64\dssec.dat
[2006-11-02 14:24:17 | 000,000,741 | —- | C] () – C:\Windows\SysWow64\NOISE.DAT
[2006-11-02 14:18:17 | 000,673,088 | —- | C] () – C:\Windows\SysWow64\mlang.dat
[2006-11-02 11:47:54 | 000,043,131 | —- | C] () – C:\Windows\mib.bin

========== LOP Check ==========

[2011-09-21 18:18:11 | 000,000,000 | —D | M] – C:\Users\Jessicaärsexig\AppData\Roaming\Azureus
[2011-09-21 16:10:37 | 000,000,000 | —D | M] – C:\Users\Jessicaärsexig\AppData\Roaming\Personal
[2011-09-21 19:54:40 | 000,000,000 | —D | M] – C:\Users\Jessicaärsexig\AppData\Roaming\Spotify
[2011-09-21 20:34:00 | 000,008,574 | —- | M] () – C:\Windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========



========== Custom Scans ==========


< %SYSTEMDRIVE%\*.* >
[2011-09-21 20:34:44 | 000,000,220 | —- | M] () – C:\aaw7boot.log
[2009-04-11 18:23:29 | 000,333,257 | RHS- | M] () – C:\bootmgr
[2011-09-20 23:07:15 | 000,008,192 | R-S- | M] () – C:\BOOTSECT.BAK
[2005-09-23 00:39:38 | 000,894,976 | —- | M] (Microsoft Corporation) – C:\msdia80.dll
[2011-09-21 20:34:44 | 2451,845,119 | -HS- | M] () – C:\pagefile.sys

< %systemroot%\Fonts\*.com >
[2006-11-02 17:06:41 | 000,026,040 | —- | M] () – C:\Windows\Fonts\GlobalMonospace.CompositeFont
[2006-11-02 17:06:41 | 000,026,489 | —- | M] () – C:\Windows\Fonts\GlobalSansSerif.CompositeFont
[2006-11-02 17:06:41 | 000,029,779 | —- | M] () – C:\Windows\Fonts\GlobalSerif.CompositeFont
[2009-04-11 18:26:01 | 000,037,665 | —- | M] () – C:\Windows\Fonts\GlobalUserInterface.CompositeFont

< %systemroot%\Fonts\*.dll >

< %systemroot%\Fonts\*.ini >
[2006-09-18 23:35:48 | 000,000,065 | —- | M] () – C:\Windows\Fonts\desktop.ini

< %systemroot%\Fonts\*.ini2 >

< %systemroot%\Fonts\*.exe >

< %systemroot%\system32\spool\prtprocs\w32x86\*.* >

< %systemroot%\REPAIR\*.bak1 >

< %systemroot%\REPAIR\*.ini >

< %systemroot%\system32\*.jpg >

< %systemroot%\*.jpg >

< %systemroot%\*.png >

< %systemroot%\*.scr >

< %systemroot%\*._sy >

< %APPDATA%\Adobe\Update\*.* >

< %ALLUSERSPROFILE%\Favorites\*.* >

< %APPDATA%\Microsoft\*.* >

< %PROGRAMFILES%\*.* >
[2008-01-21 05:21:59 | 000,000,174 | -HS- | M] () – C:\Program Files (x86)\desktop.ini

< %APPDATA%\Update\*.* >

< %systemroot%\*. /mp /s >

< %systemroot%\System32\config\*.sav >

< %PROGRAMFILES%\bak. /s >

< %systemroot%\system32\bak. /s >

< %ALLUSERSPROFILE%\Start Menu\*.lnk /x >

< %systemroot%\system32\config\systemprofile\*.dat /x >

< %systemroot%\*.config >

< %systemroot%\system32\*.db >

< %PROGRAMFILES%\Internet Explorer\*.dat >

< %APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x >
[2011-09-21 09:01:24 | 000,000,221 | -HS- | M] () – C:\Users\Jessicaärsexig\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\desktop.ini

< %USERPROFILE%\Desktop\*.exe >

< %PROGRAMFILES%\Common Files\*.* >

< %systemroot%\*.src >

< %systemroot%\install\*.* >

< %systemroot%\system32\DLL\*.* >

< %systemroot%\system32\HelpFiles\*.* >

< %systemroot%\system32\rundll\*.* >

< %systemroot%\winn32\*.* >

< %systemroot%\Java\*.* >

< %systemroot%\system32\test\*.* >

< %systemroot%\system32\Rundll32\*.* >

< %systemroot%\AppPatch\Custom\*.* >

< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >

< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >

< End of report >



And the Extras.Txt

OTL Extras logfile created on: 2011-09-21 20:41:24 - Run 1
OTL by OldTimer - Version 3.2.29.1 Folder = C:\Users\Jessicaärsexig\Downloads
64bit-Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 0000041d | Country: Sverige | Language: SVE | Date Format: yyyy-MM-dd

5,99 Gb Total Physical Memory | 4,20 Gb Available Physical Memory | 70,17% Memory free
12,09 Gb Paging File | 10,32 Gb Available in Paging File | 85,39% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 683,56 Gb Total Space | 638,24 Gb Free Space | 93,37% Space Free | Partition Type: NTFS
Drive H: | 3,68 Gb Total Space | 3,41 Gb Free Space | 92,49% Space Free | Partition Type: FAT32

Computer Name: JESSICAÄRSEX-PC | User Name: Jessicaärsexig | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\]
.url[@ = InternetShortcut] – C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\]
.cpl [@ = cplfile] – C:\Windows\SysWow64\control.exe (Microsoft Corporation)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command]
batfile [open] – "%1" %*
cmdfile [open] – "%1" %*
comfile [open] – "%1" %*
exefile [open] – "%1" %*
helpfile [open] – Reg Error: Key error.
htmlfile – Reg Error: Key error.
htmlfile [print] – rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
inffile [install] – %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] – "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] – "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] – "%1" %*
regfile [merge] – Reg Error: Key error.
scrfile [config] – "%1"
scrfile [install] – rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] – "%1" /S
txtfile – Reg Error: Key error.
Unknown [openas] – %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] – cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] – %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] – %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command]
batfile [open] – "%1" %*
cmdfile [open] – "%1" %*
comfile [open] – "%1" %*
cplfile [cplopen] – %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] – "%1" %*
helpfile [open] – Reg Error: Key error.
htmlfile – Reg Error: Key error.
htmlfile [print] – rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
inffile [install] – %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] – "%1" %*
regfile [merge] – Reg Error: Key error.
scrfile [config] – "%1"
scrfile [install] – rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] – "%1" /S
txtfile – Reg Error: Key error.
Unknown [openas] – %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] – cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] – %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] – %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] – %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = 9F 9E 16 8C DC 5B C8 01 [binary data]
"VistaSp2" = 40 B5 B2 99 C4 BA C9 01 [binary data]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\S-1-5-21-2771798817-3813899672-2687139618-1000]
"EnableNotifications" = 0
"EnableNotificationsRef" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"oobe_av" = 1

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{88E66672-61FC-464C-A8D5-D4B251F9B407}" = protocol=6 | dir=in | app=c:\program files (x86)\vuze\azureus.exe |
"{8C96F2A4-391D-4313-B7C5-A2F3FD042E19}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{CB5CA99D-8A19-4F57-BD13-F066719F388E}" = protocol=17 | dir=in | app=c:\program files (x86)\vuze\azureus.exe |
"TCP Query User{003E1026-9B36-4B19-8835-92F863B99A06}C:\users\jessicaärsexig\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\jessicaärsexig\appdata\roaming\spotify\spotify.exe |
"TCP Query User{5B59D874-D17C-43CC-9240-5231718940DD}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |
"UDP Query User{35E064FE-1FEF-49F0-B16E-86F293ACA932}C:\users\jessicaärsexig\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\jessicaärsexig\appdata\roaming\spotify\spotify.exe |
"UDP Query User{6C91BDB5-AA96-49EB-9131-39F3CB790331}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{7161A7B4-14D2-EA79-8030-5ABD1BAA1662}" = ATI Catalyst Install Manager
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{EA0F68A4-CC52-D061-C239-CC54377E9B79}" = ccc-utility64
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"PROSet" = Intel® Network Connections Drivers

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0DF30031-F15F-FD36-D9F8-EBC23B901894}" = Catalyst Control Center Graphics Light
"{26A24AE4-039D-4CA4-87B4-2F83216026FF}" = Java™ 6 Update 26
"{385DD1DD-65AA-408D-8E70-74601C2DB7E6}" = Ad-Aware
"{3921564E-11A7-27AC-8D6F-D5FCA33DD083}" = Skins
"{3E9016D4-5AD8-3A77-5A75-8C89C68992CD}" = Catalyst Control Center Graphics Previews Vista
"{42929F0F-CE14-47AF-9FC7-FF297A603021}" = Dell Resource CD
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{69724AEA-DC5F-BF91-A2B3-9B97422173BC}" = ccc-core-static
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Click to Call with Skype
"{B88A3C98-CB4D-E3C2-DE49-EDAF1DC55CC1}" = CCC Help English
"{B9C73F69-63B7-552D-72D8-3C22B6B1A3E7}" = Catalyst Control Center Graphics Full New
"{CFC1C90B-E9A4-F656-BCA2-2A71ECCBD8F5}" = Catalyst Control Center Graphics Full Existing
"{D6F879CC-59D6-4D4B-AE9B-D761E48D25ED}" = Skype™ 5.3
"{E01A8BFE-96AB-FEA3-4A3B-EEF9849D1E24}" = Catalyst Control Center Graphics Previews Common
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F569596C-049F-BF15-E0A9-B7605D9B181E}" = Catalyst Control Center Core Implementation
"8461-7759-5462-8226" = Vuze
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"hon" = Heroes of Newerth
"Personal" = BankID Security Application 4.18.1
"PS3 Media Server" = PS3 Media Server

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Spotify" = Spotify

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 2011-09-20 07:21:08 | Computer Name = Jessicaärsex-PC | Source = Windows Search Service Profile Notification | ID = 2
Description =

Error - 2011-09-20 11:09:44 | Computer Name = Jessicaärsex-PC | Source = System Restore | ID = 8193
Description =

Error - 2011-09-20 11:30:36 | Computer Name = Jessicaärsex-PC | Source = MsiInstaller | ID = 11935
Description =

Error - 2011-09-20 11:37:17 | Computer Name = Jessicaärsex-PC | Source = EventSystem | ID = 4621
Description =

Error - 2011-09-20 15:20:58 | Computer Name = Jessicaärsex-PC | Source = EventSystem | ID = 4621
Description =

Error - 2011-09-20 16:24:45 | Computer Name = Jessicaärsex-PC | Source = EventSystem | ID = 4621
Description =

[ System Events ]
Error - 2011-09-20 09:07:44 | Computer Name = Jessicaärsex-PC | Source = Microsoft-Windows-Servicing | ID = 4375
Description =

Error - 2011-09-20 09:07:44 | Computer Name = Jessicaärsex-PC | Source = Microsoft-Windows-Servicing | ID = 4375
Description =

Error - 2011-09-20 09:07:44 | Computer Name = Jessicaärsex-PC | Source = Microsoft-Windows-Servicing | ID = 4385
Description =

Error - 2011-09-20 09:07:44 | Computer Name = Jessicaärsex-PC | Source = Microsoft-Windows-Servicing | ID = 4375
Description =

Error - 2011-09-20 09:07:44 | Computer Name = Jessicaärsex-PC | Source = Microsoft-Windows-Servicing | ID = 4385
Description =

Error - 2011-09-20 09:07:44 | Computer Name = Jessicaärsex-PC | Source = Microsoft-Windows-Servicing | ID = 4375
Description =

Error - 2011-09-20 09:07:44 | Computer Name = Jessicaärsex-PC | Source = Microsoft-Windows-Servicing | ID = 4385
Description =

Error - 2011-09-20 09:07:44 | Computer Name = Jessicaärsex-PC | Source = Microsoft-Windows-Servicing | ID = 4385
Description =

Error - 2011-09-20 11:31:32 | Computer Name = Jessicaärsex-PC | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description =

Error - 2011-09-21 14:33:56 | Computer Name = Jessicaärsex-PC | Source = DCOM | ID = 10010
Description =


< End of report >


Thanks alot!!
Hello Hagerstrom and :welcome:

My name is JonTom

  • Malware Logs can sometimes take a lot of time to research and interpret.
  • Please be patient while I try to assist with your problem. If at any time you do not understand what is required, please ask for further explanation.
  • Please note that there is no "Quick Fix" to modern malware infections and we may need to use several different approaches to get your system clean.
  • Read every reply you receive carefully and thoroughly before carrying out the instructions. You may also find it helpful to print out the instructions you receive, as in some instances you may have to disconnect your computer from the Internet.
  • PLEASE NOTE: If you do not reply after 5 days your thread will be closed.

But then all of a sudden, there is a delay for a seccond, or two.

Are you experiencing any other problems besides the response delay (popups, redirects, bad image error messages etc)?

Please run the following scan while I take a look at your logs:


  • aswMBR


  • Download aswMBR.exe to your desktop.
  • Double click the aswMBR.exe to run it.
  • Click the "Scan" button to start scan.

[external image: Posted Image]

  • On completion of the scan click save log, save it to your desktop and post in your next reply.

[external image: Posted Image]
Hi JonTom! Thanks alot for your reply I cant say i've noticed some other problem. Though some applikations dont run as smooth as they used to. The computer sometimes acts if its "lagging" if I can put it that way. Otherwise, I cant run the program!!! I get a bluescreen as soon as I push "scan". What the ****?!
Hello Hagerstrom

I have never heard that happen with aswMBR before.

If you are not experiencing any browser redirections there is no need to worry about aswMBR.

Lets proceed as follows:

Please make sure that OTL is located on your Desktop then work your way through the following steps:


  • P2P Programs


    • P2P programs are a major source of Malware infections.
    • From your log I see you have Vuze. We do not pass judgment on file-sharing, however we must inform you that engaging in this activity and having this kind of software installed on your system will always make you more susceptible to Malware infections.
    • The use of P2P programs may be contributing to your current situation, and you would certainly be doing yourself a favour by removing them.
    • If you wish to keep the program(s), please do not use them until your computer is cleaned.
    • Information regarding the risk of using these programs can be found from here and here.
    • It is strongly recommend that you uninstall any P2P programs you have on your system.
    • To do this, Click on the "Windows Orb" (bottom left hand corner of your screen), then on "Computer" and then on the "Uninstall or Change a Program" tab.
    • A list of currently installed programs will be displayed.
    • Find the "Vuze"program, click on it once and then click on the "Uninstall" button.
    • If you are prompted to re-boot your computer to complete the uninstall please do so.


      PLEASE NOTE:
    • Even if you are using a P2P program that is deemed safe, it is only the program that is safe. Any files that you receive using a "safe" P2P program may be infected with Malware. The malware writers use P2P file-sharing as a major conduit to spread infected files.

  • Please open OTL


    • Copy and paste the following text written inside of the code box into the Custom Scans/Fixes box located at the bottom of OTL.

      :OTL
      O33 - MountPoints2\{d7f58b66-e378-11e0-a2b8-806e6f6e6963}\Shell - "" = AutoRun
      O33 - MountPoints2\{d7f58b66-e378-11e0-a2b8-806e6f6e6963}\Shell\AutoRun\command - "" = D:\autoRcd.exe
      
      :Commands
      [purity]
      [emptytemp]
      [emptyflash]
      [Reboot]
    • Once you have pasted the information into the Custom Scans/Fixes box, click the "Run Fix" button at the top.
    • Allow the program to run unhindered.
    • Your machine will re-start itself. This is normal.
    • A log will be created after your machine reboots. Please post the contents of the log in your next reply.

  • Please perform the following scan:


    • Please download MalwareBytes AntiMalware by clicking here and save the file (called mbam-setup.exe) to your desktop.

    • Right click on the mbam-setup.exe icon and select "Run as Administrator" to install the program.
    • Follow the prompts during installation and have the Installation Wizzard create a desktop icon.
    • Once installed, double click on the MalwareBytes AntiMalware icon to launch the program.
    • Click on the "Update" tab and then on "Check for Updates".
    • The program will now install the latest Malware definition files.
    • Once complete, click on the "Scanner" tab, select "Perform Quick Scan"and then click on "Scan".
    • Once the program has scanned your computer, a log file will be created in Notepad.
    • Click on "Edit > Select All" then click on "Edit > Copy" to copy the entire contents of the log.


    • If the scan detects any Malware-related objects, make sure that everything is checked, and click "Remove Selected" <– Very Important.
    • When disinfection is completed, a log will open in Notepad and you may be prompted to restart your computer.
    • The log is automatically saved by MBAM and can be viewed by clicking the "Logs" tab.
    • Note: If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts, click OK to either and let MBAM proceed with the disinfection process. If asked to restart your computer, please do so immediately.
    • Come back here to this thread and Paste the log in your next reply.

  • Please run the following scan


    • Note: You will need to use Internet Explorer for this scan.
    • Note for Vista/Windows 7 Users: ESET is compatible but Internet Explorer must be run as Administrator. To do this, right-click on your Internet Explorer icon and select "Run as Administrator".
    • Please disable your real time security programs before performing the scan.


    • Scan your system with Eset Online Scanner
    • Place a check mark in the box YES, I accept the Terms Of Use.
    • Click the [external image: Posted Image] button.
    • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps).
    • Click on [external image: Posted Image] to download the ESET Smart Installer. Save it to your desktop.
    • Double click on the [external image: Posted Image] icon on your desktop.


    • Check [external image: Posted Image]
    • Click the [external image: Posted Image] button.
    • Accept any security warnings from your browser.
    • Check [external image: Posted Image]
    • Make sure that the option to "Remove Found Threats" is UN checked.
    • Push the "Start" button.
    • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
    • When the scan completes, push [external image: Posted Image]
    • Push [external image: Posted Image], and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
    • Push the [external image: Posted Image] button.
    • Push [external image: Posted Image]

  • Security Check


    • Please download Security Check by screen317 from here or here and save the file (called securitycheck.exe) to your desktop.
    • Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box (NOTE: If you are running Vista or Win7 please Right click and select "Run as Administrator"..
    • A Notepad document should open automatically called checkup.txt; please post the contents of that document in your next reply.

    Please the OTL, MBAM, ESET and security check logs in your next reply :)
Hi again!

Here you have the results, seems fine. No problems found regarding these scans.

All processes killed
========== OTL ==========
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d7f58b66-e378-11e0-a2b8-806e6f6e6963}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d7f58b66-e378-11e0-a2b8-806e6f6e6963}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d7f58b66-e378-11e0-a2b8-806e6f6e6963}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d7f58b66-e378-11e0-a2b8-806e6f6e6963}\ not found.
File D:\autoRcd.exe not found.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Jessicaärsexig
->Temp folder emptied: 163461070 bytes
->Temporary Internet Files folder emptied: 138347702 bytes
->Java cache emptied: 0 bytes
->Flash cache emptied: 4161 bytes

User: Public

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 18461898 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 305,00 mb


[EMPTYFLASH]

User: All Users

User: Default

User: Default User

User: Jessicaärsexig
->Flash cache emptied: 0 bytes

User: Public

Total Flash Files Cleaned = 0,00 mb


OTL by OldTimer - Version 3.2.29.1 log created on 09242011_170929

Files\Folders moved on Reboot…
C:\Users\Jessicaärsexig\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YH42LMDB\iframe[1].htm moved successfully.
C:\Users\Jessicaärsexig\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TRHYS7RG\index[2].htm moved successfully.
C:\Users\Jessicaärsexig\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TRHYS7RG\like[1].htm moved successfully.
C:\Users\Jessicaärsexig\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\AntiPhishing\ED8654D5-B9F0-4DD9-B3E8-F8F560086FDF.dat moved successfully.
C:\Users\Jessicaärsexig\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\MSIMGSIZ.DAT moved successfully.

Registry entries deleted on Reboot…





Malwarebytes' Anti-Malware 1.51.2.1300
www.malwarebytes.org

Databasversion: 7790

Windows 6.0.6002 Service Pack 2
Internet Explorer 9.0.8112.16421

2011-09-24 17:17:06
mbam-log-2011-09-24 (17-17-06).txt

Skanningstyp: Snabbskanning
Antal skannade objekt: 172560
Förfluten tid: 1 minut(er), 19 sekund(er)

Infekterade minnesprocesser: 0
Infekterade minnesmoduler: 0
Infekterade registernycklar: 0
Infekterade registervärden: 0
Infekterade registerdataposter: 0
Infekterade mappar: 0
Infekterade filer: 0

Infekterade minnesprocesser:
(Inga skadliga poster hittades)

Infekterade minnesmoduler:
(Inga skadliga poster hittades)

Infekterade registernycklar:
(Inga skadliga poster hittades)

Infekterade registervärden:
(Inga skadliga poster hittades)

Infekterade registerdataposter:
(Inga skadliga poster hittades)

Infekterade mappar:
(Inga skadliga poster hittades)

Infekterade filer:
(Inga skadliga poster hittades)



The ESSET scan ran and had 0 infected files. Didn't get any log.


Results of screen317's Security Check version 0.99.18
Windows Vista (UAC is enabled)
Out of date service pack!!
Internet Explorer 8
``````````````````````````````
Antivirus/Firewall Check:

Windows Firewall Enabled!
WMI entry may not exist for antivirus; attempting automatic update.
```````````````````````````````
Anti-malware/Other Utilities Check:

Ad-Aware
Malwarebytes' Anti-Malware
Java™ 6 Update 26
Adobe Flash Player
````````````````````````````````
Process Check:
objlist.exe by Laurent

Windows Defender MSASCui.exe
Ad-Aware AAWService.exe
Ad-Aware AAWTray.exe
Malwarebytes' Anti-Malware mbamservice.exe
Malwarebytes' Anti-Malware mbamgui.exe
Windows Defender MSASCui.exe
``````````End of Log````````````


Seems as if its clean. But the problem continues.

Thanks alot.
Hello Haggerstrom

Thank you for the logs.

You do not appear to have any of the "typical" symptoms of a malware infection (popups, redirects etc). The MBAM scan is clean, and no ESET log is produced if no infection is found.

The security check log indicates that you are not running with a real time anti virus installed.


  • Security programs


    • You are strongly advised to install an AV. Using your computer without one is just asking for trouble.
    • I have provided links to three trusted programs (just choose one).




    • For a free Firewall try one of the following:
    • Comodo Personal Firewall
    • NOTE: If you use a Third Party AnitiVirus, make sure you uncheck the option to install Comodo AntiVirus when you install Comodo Firewall.



    • IMPORTANT! Please make sure you only have ONE firewall and ONE real-time antivirus installed on your system.


    It does not appear that the problem you have is related to malware - the lag your are experiencing may possibly be related to a video card issue or perhaps a driver that needs updating.

    If you require additional support, please create a thread in our General Hardware forum.

  • Please perform the following cleanup procedure


    • Double click on the OTL.exe icon on your desktop to run the program. (Note: If you are running Vista/Windows 7, right-click on the file and choose Run As Administrator).
    • Once OTL has opened, click on the "CleanUp!" button.
    • Follow any prompts that you receive.

  • Removal of Tools


    • You no longer need aswMBR or Security Check. Please delete them from your machine.

  • Please download and install Vista Service Pack 2

    • Vista SP2 is now available.
    • You can obtain Vista SP2 by clicking here.


    Once you have completed the above steps you should be good to go! If you have any further questions, please feel free to ask.

  • Finally, please take the time to read through the information provided below:

    Enhance your System Security

    • For an excellent list of free anti virus software, free online virus scanners, free spyware detection/removal and free firewalls, click here.

    • IMPORTANT! Please make sure you only have ONE firewall and ONE real-time antivirus installed on your system. When using "on demand" scanners, first update the detection signature files, then disconnect from the internet and disable your resident security program before running the scan.
    • Once complete, remember to re-engage your resident security before going online.

    Web Browsers and Browser Security

    Firefox
    • You can download Firefox from here.

    No-Script
    • If you use Firefox as your default browser, No-Script can provide additional security by preventing malicious scripts from being executed on your system.
    • You can download No-Script by clicking here.

    Internet Explorer
    • The newest version of Internet Explorer is available from here.
    • Please Note: IE9 is not configured to run on XP machines.

    SpywareBlaster
    • If you use Internet Explorer as your default browser, SpywareBlaster would be a valuable addition to your online security.
    • SpywareBlaster prevents malicious ActiveX objects from being downloaded onto your system.
    • You can download SpywareBlaster by clicking here.

    Web of Trust
    • When using search engines, Web of Trust provides you with an easy way of telling the good sites from the bad and is compatible with both Firefox and Internet Explorer.
    • Coloured symbols are displayed next to search results, giving you more confidence in the links you choose to click on: Green (To go), Yellow (Caution) and Red (Stop).
    • You can download Web of Trust by clicking here.

    Keep your Software Updated
    • Outdated software can sometimes have vulnerabilities that are exploitable by malware.
    • Check if there are available updates for your installed software with Secunia's Online Software Inspector by clicking here.

    Passwords
    • Learn how to create strong passwords by clicking here and test the strength of the passwords you already use by clicking here.

    General Reading

    Learn How To Combat Malware
    • Would you like to learn how to fight back against malware and help others? Enroll at the What The Tech (Formerly Tom Coyotes) Malware Classroom by clicking here.

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI