rendered paste bodyOTL logfile created on: 5/5/2011 1:57:35 PM - Run 2
OTL by OldTimer - Version 3.2.22.3 Folder = D:\Users\-\Downloads
Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000409 | Country: Netherlands | Language: NLD | Date Format: dd/MM/yy
3.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 43.00% Memory free
6.00 Gb Paging File | 4.00 Gb Available in Paging File | 59.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = D: | %SystemRoot% = D:\Windows | %ProgramFiles% = D:\Program Files
Drive C: | 819.20 Gb Total Space | 694.10 Gb Free Space | 84.73% Space Free | Partition Type: NTFS
Drive D: | 97.66 Gb Total Space | 72.59 Gb Free Space | 74.33% Space Free | Partition Type: NTFS
Computer Name: _MEMO | User Name: - | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
[color=#E56717]========== Processes (SafeList) ==========[/color]
PRC - [2011/05/05 00:44:27 | 000,580,608 | ---- | M] (OldTimer Tools) -- D:\Users\-\Downloads\OTL.exe
PRC - [2011/05/01 16:05:55 | 000,924,632 | ---- | M] (Mozilla Corporation) -- D:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2011/04/10 19:30:23 | 000,399,736 | ---- | M] (BitTorrent, Inc.) -- D:\Program Files\uTorrent\uTorrent.exe
PRC - [2011/04/10 19:30:19 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- D:\Program Files\Java\jre6\bin\javaw.exe
PRC - [2011/04/01 10:31:39 | 002,271,608 | ---- | M] (TeamViewer GmbH) -- D:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe
PRC - [2011/03/31 04:42:50 | 023,360,040 | ---- | M] (Dropbox, Inc.) -- D:\Users\-\AppData\Roaming\Dropbox\bin\Dropbox.exe
PRC - [2011/03/24 13:24:38 | 000,024,296 | ---- | M] (SANDBOXIE L.T.D) -- D:\Program Files\Sandboxie\SandboxieRpcSs.exe
PRC - [2011/03/24 13:24:38 | 000,018,664 | ---- | M] (SANDBOXIE L.T.D) -- D:\Program Files\Sandboxie\SandboxieDcomLaunch.exe
PRC - [2011/03/24 13:24:36 | 000,409,320 | ---- | M] (SANDBOXIE L.T.D) -- D:\Program Files\Sandboxie\SbieCtrl.exe
PRC - [2011/03/24 13:24:34 | 000,072,936 | ---- | M] (SANDBOXIE L.T.D) -- D:\Program Files\Sandboxie\SbieSvc.exe
PRC - [2011/03/22 08:36:20 | 002,421,384 | ---- | M] (mobile concepts GmbH) -- D:\Program Files\S.A.D\CyberGhost VPN\CGVPNCliService.exe
PRC - [2011/02/06 22:06:46 | 000,099,840 | ---- | M] () -- D:\Program Files\Rainmeter\Rainmeter.exe
PRC - [2011/01/13 04:01:28 | 006,129,496 | ---- | M] (Logitech Inc.) -- D:\Program Files\Logitech\Vid HD\Vid.exe
PRC - [2011/01/06 20:02:54 | 000,423,424 | ---- | M] (ScreenSnaprApp) -- D:\Program Files\ScreenSnapr\ScreenSnapr.exe
PRC - [2010/12/20 18:08:58 | 000,363,344 | ---- | M] (Malwarebytes Corporation) -- D:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2010/12/20 18:08:56 | 000,443,728 | ---- | M] (Malwarebytes Corporation) -- D:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2009/10/31 07:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) -- D:\Windows\explorer.exe
PRC - [2009/10/14 13:36:56 | 002,793,304 | ---- | M] () -- D:\Program Files\Logitech\Logitech WebCam Software\LWS.exe
PRC - [2009/10/14 13:34:18 | 000,560,472 | ---- | M] () -- D:\Program Files\Common Files\logishrd\LQCVFX\COCIManager.exe
PRC - [2009/10/07 01:47:34 | 000,154,136 | ---- | M] (Logitech Inc.) -- D:\Program Files\Common Files\logishrd\LVMVFM\LVPrcSrv.exe
PRC - [2009/07/14 03:14:42 | 000,049,152 | ---- | M] (Microsoft Corporation) -- D:\Windows\System32\taskhost.exe
[color=#E56717]========== Modules (SafeList) ==========[/color]
MOD - [2011/05/05 00:44:27 | 000,580,608 | ---- | M] (OldTimer Tools) -- D:\Users\-\Downloads\OTL.exe
MOD - [2010/08/21 07:21:32 | 001,680,896 | ---- | M] (Microsoft Corporation) -- D:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd\comctl32.dll
[color=#E56717]========== Win32 Services (SafeList) ==========[/color]
SRV - [2011/04/10 20:53:39 | 001,343,400 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- D:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc)
SRV - [2011/04/01 10:31:39 | 002,271,608 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- D:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe -- (TeamViewer6)
SRV - [2011/03/24 13:24:34 | 000,072,936 | ---- | M] (SANDBOXIE L.T.D) [Auto | Running] -- D:\Program Files\Sandboxie\SbieSvc.exe -- (SbieSvc)
SRV - [2011/03/22 08:36:20 | 002,421,384 | ---- | M] (mobile concepts GmbH) [On_Demand | Running] -- D:\Program Files\S.A.D\CyberGhost VPN\CGVPNCliService.exe -- (CGVPNCliSrvc)
SRV - [2010/12/20 18:08:58 | 000,363,344 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- D:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2010/06/25 19:07:20 | 000,117,264 | ---- | M] (CACE Technologies, Inc.) [On_Demand | Stopped] -- D:\Program Files\WinPcap\rpcapd.exe -- (rpcapd) Remote Packet Capture Protocol v.0 (experimental)
SRV - [2009/10/07 01:47:34 | 000,154,136 | ---- | M] (Logitech Inc.) [Auto | Running] -- D:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe -- (LVPrcSrv)
SRV - [2009/07/14 03:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- D:\Windows\System32\sensrsvc.dll -- (SensrSvc)
SRV - [2009/07/14 03:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- D:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc)
SRV - [2009/07/14 03:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- D:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
DRV - [2011/04/25 00:14:38 | 000,225,856 | ---- | M] (QFX Software Corporation) [Kernel | On_Demand | Running] -- D:\Windows\System32\drivers\keyscrambler.sys -- (KeyScrambler)
DRV - [2011/03/24 13:24:30 | 000,126,696 | ---- | M] (SANDBOXIE L.T.D) [Kernel | On_Demand | Running] -- D:\Program Files\Sandboxie\SbieDrv.sys -- (SbieDrv)
DRV - [2011/02/23 08:27:00 | 010,468,360 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- D:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
DRV - [2010/12/20 18:08:40 | 000,020,952 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- D:\Windows\System32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2010/06/25 19:07:14 | 000,035,088 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- D:\Windows\System32\drivers\npf.sys -- (NPF)
DRV - [2010/06/15 18:40:08 | 000,027,752 | ---- | M] (TamoSoft) [Kernel | System | Running] -- D:\Windows\System32\drivers\tsvp.sys -- (TsVp)
DRV - [2010/04/29 15:27:09 | 000,041,576 | ---- | M] (TamoSoft) [Kernel | On_Demand | Running] -- D:\Windows\System32\drivers\tscomm.sys -- (TSCOMM)
DRV - [2010/04/21 14:14:05 | 000,020,072 | ---- | M] (TamoSoft) [Kernel | On_Demand | Stopped] -- D:\Windows\System32\drivers\tsvlb.sys -- (TsVlb)
DRV - [2010/04/01 13:33:08 | 000,019,560 | ---- | M] (TamoSoft) [Kernel | On_Demand | Stopped] -- D:\Windows\System32\drivers\cv2k1.sys -- (CV2K1)
DRV - [2010/02/25 16:51:02 | 000,025,216 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Running] -- D:\Windows\System32\drivers\tap0901.sys -- (tap0901)
DRV - [2009/10/07 01:46:36 | 000,025,752 | ---- | M] () [Kernel | On_Demand | Running] -- D:\Windows\System32\drivers\LVPr2Mon.sys -- (LVPr2Mon)
DRV - [2009/07/14 03:19:10 | 000,175,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- D:\Windows\system32\DRIVERS\vmbus.sys -- (vmbus)
DRV - [2009/07/14 03:19:10 | 000,040,896 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- D:\Windows\system32\DRIVERS\vmstorfl.sys -- (storflt)
DRV - [2009/07/14 03:19:10 | 000,028,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- D:\Windows\system32\DRIVERS\storvsc.sys -- (storvsc)
DRV - [2009/07/14 01:28:47 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- D:\Windows\system32\DRIVERS\vms3cap.sys -- (s3cap)
DRV - [2009/07/14 01:28:45 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- D:\Windows\system32\DRIVERS\VMBusHID.sys -- (VMBusHID)
DRV - [2009/07/14 00:02:52 | 000,347,264 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- D:\Windows\System32\drivers\nvm62x32.sys -- (NVENETFD)
DRV - [2007/10/12 02:00:44 | 000,041,752 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- D:\Windows\System32\drivers\LVUSBSta.sys -- (LVUSBSta)
DRV - [2007/10/12 01:56:22 | 000,490,776 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- D:\Windows\System32\drivers\LV561AV.SYS -- (PID_0928) Logitech QuickCam Express(PID_0928)
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
[color=#E56717]========== Internet Explorer ==========[/color]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://nl.msn.com/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = nl
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = A0 BF F5 5F 41 04 CC 01 [binary data]
IE - HKCU\..\URLSearchHook: {87775fdb-6972-41f9-ae51-8326e38cb206} - Reg Error: Key error. File not found
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
[color=#E56717]========== FireFox ==========[/color]
FF - prefs.js..browser.startup.homepage: "http://www.google.com"
FF - prefs.js..network.proxy.type: 0
FF - HKLM\software\mozilla\Mozilla Firefox 4.0\extensions\\Components: D:\Program Files\Mozilla Firefox\components [2011/05/01 16:05:59 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 4.0\extensions\\Plugins: D:\Program Files\Mozilla Firefox\plugins [2011/04/23 20:13:15 | 000,000,000 | ---D | M]
[2011/04/10 23:16:23 | 000,000,000 | ---D | M] (No name found) -- D:\Users\-\AppData\Roaming\Mozilla\Extensions
[2011/05/05 04:17:09 | 000,000,000 | ---D | M] (No name found) -- D:\Users\-\AppData\Roaming\Mozilla\Firefox\Profiles\e9to9777.default\extensions
[2011/04/30 04:17:39 | 000,000,000 | ---D | M] (HyperCam Toolbar) -- D:\Users\-\AppData\Roaming\Mozilla\Firefox\Profiles\e9to9777.default\extensions\{75656794-AB59-4712-BFBC-5D816D56F3BC}
[2011/04/22 03:42:31 | 000,000,000 | ---D | M] (ZoneAlarm Security Community Toolbar) -- D:\Users\-\AppData\Roaming\Mozilla\Firefox\Profiles\e9to9777.default\extensions\{91da5e8a-3318-4f8c-b67e-5964de3ab546}
[2011/04/11 01:34:32 | 000,000,000 | ---D | M] ("DVDVideoSoft Menu") -- D:\Users\-\AppData\Roaming\Mozilla\Firefox\Profiles\e9to9777.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}
[2011/04/28 13:22:46 | 000,000,000 | ---D | M] (KeyScrambler) -- D:\Users\-\AppData\Roaming\Mozilla\Firefox\Profiles\e9to9777.default\extensions\keyscrambler@qfx.software.corporation
[2011/05/05 04:14:16 | 000,000,000 | ---D | M] (LastPass) -- D:\Users\-\AppData\Roaming\Mozilla\Firefox\Profiles\e9to9777.default\extensions\support@lastpass.com
[2011/03/23 21:42:20 | 000,000,939 | ---- | M] () -- D:\Users\-\AppData\Roaming\Mozilla\Firefox\Profiles\e9to9777.default\searchplugins\conduit.xml
[2011/04/23 20:17:11 | 000,000,000 | ---D | M] (No name found) -- D:\Program Files\Mozilla Firefox\extensions
[2011/04/10 19:30:34 | 000,000,000 | ---D | M] (Java Console) -- D:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
File not found (No name found) --
[2011/05/01 16:05:54 | 000,142,296 | ---- | M] (Mozilla Foundation) -- D:\Program Files\Mozilla Firefox\components\browsercomps.dll
[2011/05/01 16:05:56 | 000,002,252 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\bing.xml
[2011/05/01 16:05:56 | 000,001,892 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\bolcom-nl.xml
[2011/05/01 16:05:56 | 000,004,558 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\marktplaats-nl.xml
[2011/05/01 16:05:56 | 000,001,111 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\vandale-nl.xml
[2011/05/01 16:05:56 | 000,001,049 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\wikipedia-nl.xml
O1 HOSTS File: ([2009/06/10 23:39:37 | 000,000,824 | ---- | M]) - D:\Windows\System32\drivers\etc\hosts
O2 - BHO: (KeyScramblerBHO Class) - {2B9F5787-88A5-4945-90E7-C4B18563BC5E} - D:\Program Files\KeyScrambler\KeyScramblerIE.dll (QFX Software Corporation)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (LastPass Browser Helper Object) - {95D9ECF5-2A4D-4550-BE49-70D42F71296E} - D:\Program Files\LastPass\LPBar.dll (LastPass)
O2 - BHO: (SMTTB2009 Class) - {FCBCCB87-9224-4B8D-B117-F56D924BEB18} - D:\Program Files\HyperCam Toolbar\tbcore3.dll ()
O3 - HKLM\..\Toolbar: (HyperCam Toolbar) - {338B4DFE-2E2C-4338-9E41-E176D497299E} - D:\Program Files\HyperCam Toolbar\tbcore3.dll ()
O3 - HKLM\..\Toolbar: (LastPass Toolbar) - {9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - D:\Program Files\LastPass\LPBar.dll (LastPass)
O3 - HKLM\..\Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {87775FDB-6972-41F9-AE51-8326E38CB206} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
O4 - HKLM..\Run: [LogitechQuickCamRibbon] D:\Program Files\Logitech\Logitech WebCam Software\LWS.exe ()
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] D:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware (reboot)] D:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
O4 - HKCU..\Run: [Logitech Vid] D:\Program Files\Logitech\Vid HD\Vid.exe (Logitech Inc.)
O4 - HKCU..\Run: [SandboxieControl] D:\Program Files\Sandboxie\SbieCtrl.exe (SANDBOXIE L.T.D)
O4 - HKCU..\Run: [uTorrent] D:\Program Files\uTorrent\uTorrent.exe (BitTorrent, Inc.)
O4 - HKCU..\Run: [Xvid] D:\Program Files\Xvid\CheckUpdate.exe ()
O4 - Startup: D:\Users\-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = D:\Users\-\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O8 - Extra context menu item: Free YouTube Download - D:\Users\-\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm ()
O8 - Extra context menu item: Free YouTube to MP3 Converter - D:\Users\-\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm ()
O9 - Extra Button: LastPass - {43699cd0-e34f-11de-8a39-0800200c9a66} - D:\Program Files\LastPass\LPBar.dll (LastPass)
O9 - Extra 'Tools' menuitem : &KeyScrambler Options - {5C106A59-CC3C-4caa-81A4-6D909B5ACE23} - D:\Program Files\KeyScrambler\KeyScramblerIE.dll (QFX Software Corporation)
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (explorer.exe) - D:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - D:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O22 - SharedTaskScheduler: {E31004D1-A431-41B8-826F-E902F9D95C81} - Windows DreamScene - D:\Windows\System32\DreamScene.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 23:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2009/06/10 23:42:20 | 000,000,024 | ---- | M] () - D:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - File not found
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found
MsConfig - State: "startup" - 2
MsConfig - State: "bootini" - 2
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: HelpSvc - Service
SafeBootMin: NTDS - File not found
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: sacsvr - Service
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: vmms - Service
SafeBootMin: WinDefend - D:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: HelpSvc - Service
SafeBootNet: Messenger - Service
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: NTDS - File not found
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: rdsessmgr - Service
SafeBootNet: sacsvr - Service
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: vmms - Service
SafeBootNet: WinDefend - D:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SafeBootNet: WudfUsbccidDriver - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - Java (Sun)
ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 12.0
ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
ActiveX: {3C3901C5-3455-3E0A-A214-0B093A5070A6} - .NET Framework
ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6
ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7
ActiveX: {7C028AF8-F614-47B3-82DA-BA94E41B1089} - .NET Framework
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - D:\Windows\System32\ie4uinit.exe -BaseSettings
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - D:\Windows\system32\Rundll32.exe D:\Windows\system32\mscories.dll,Install
ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - %SystemRoot%\system32\unregmp2.exe /ShowWMP
ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - D:\Windows\System32\ie4uinit.exe -UserIconConfig
ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - "D:\Windows\System32\rundll32.exe" "D:\Windows\System32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
Drivers32: msacm.l3acm - D:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: MSVideo - D:\Windows\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: MSVideo8 - D:\Windows\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - D:\Windows\System32\iccvid.dll (Radius Inc.)
Drivers32: VIDC.I420 - D:\Windows\System32\lvcodec2.dll (Logitech Inc.)
Drivers32: vidc.XVID - D:\Windows\System32\xvidvfw.dll ()
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
[2011/05/05 04:14:15 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LastPass
[2011/05/05 04:14:14 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\LastPass
[2011/05/05 04:14:14 | 000,000,000 | ---D | C] -- D:\Program Files\LastPass
[2011/05/05 00:55:11 | 000,000,000 | ---D | C] -- D:\Windows\Minidump
[2011/05/05 00:12:23 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\S.A.D
[2011/05/04 16:43:36 | 000,000,000 | ---D | C] -- D:\Users\-\Documents\CommView
[2011/05/04 16:43:33 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\CommView
[2011/05/04 12:47:38 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xvid
[2011/05/04 12:47:37 | 000,000,000 | ---D | C] -- D:\Program Files\Xvid
[2011/05/01 02:02:02 | 000,000,000 | ---D | C] -- D:\Users\-\Documents\RSBuddy
[2011/04/30 19:02:36 | 000,000,000 | ---D | C] -- D:\ProgramData\IObit
[2011/04/30 18:37:46 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\IObit
[2011/04/30 18:37:44 | 000,000,000 | ---D | C] -- D:\Program Files\IObit
[2011/04/30 04:17:34 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HyperCam 2
[2011/04/29 04:13:40 | 000,000,000 | ---D | C] -- D:\Users\Public\Documents\microsoft
[2011/04/28 16:32:56 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\QFX Software
[2011/04/28 16:32:56 | 000,000,000 | ---D | C] -- D:\ProgramData\QFX Software
[2011/04/28 13:22:32 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeyScrambler
[2011/04/28 13:22:29 | 000,225,856 | ---- | C] (QFX Software Corporation) -- D:\Windows\System32\drivers\keyscrambler.sys
[2011/04/28 13:22:29 | 000,000,000 | ---D | C] -- D:\Program Files\KeyScrambler
[2011/04/28 12:22:36 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\Windows Live Writer
[2011/04/28 12:22:36 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Local\Windows Live Writer
[2011/04/28 02:36:19 | 000,000,000 | ---D | C] -- D:\Users\-\.jagex_cache_32
[2011/04/27 17:41:58 | 000,000,000 | ---D | C] -- D:\Program Files\Microsoft.NET
[2011/04/27 14:52:20 | 000,000,000 | ---D | C] -- D:\Windows\pss
[2011/04/27 13:03:19 | 000,000,000 | ---D | C] -- D:\Program Files\Microsoft CAPICOM 2.1.0.2
[2011/04/27 13:01:13 | 000,381,440 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\iedkcs32.dll
[2011/04/27 13:01:12 | 001,638,912 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\mshtml.tlb
[2011/04/27 13:01:12 | 000,606,208 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\mstime.dll
[2011/04/27 13:01:12 | 000,599,040 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\msfeeds.dll
[2011/04/27 13:01:12 | 000,386,048 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\html.iec
[2011/04/27 13:01:12 | 000,185,856 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\iepeers.dll
[2011/04/27 13:01:12 | 000,176,640 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\ieui.dll
[2011/04/27 13:01:12 | 000,064,512 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\msfeedsbs.dll
[2011/04/27 13:01:12 | 000,048,128 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\jsproxy.dll
[2011/04/27 13:01:12 | 000,044,544 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\licmgr10.dll
[2011/04/27 13:01:12 | 000,012,800 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\msfeedssync.exe
[2011/04/27 13:01:06 | 002,331,136 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\win32k.sys
[2011/04/27 13:01:05 | 000,294,912 | ---- | C] (Adobe Systems Incorporated) -- D:\Windows\System32\atmfd.dll
[2011/04/27 13:01:05 | 000,191,488 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\FXSCOVER.exe
[2011/04/27 13:01:05 | 000,028,672 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\dnscacheugc.exe
[2011/04/27 13:01:04 | 000,716,800 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\jscript.dll
[2011/04/27 13:01:04 | 000,428,032 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\vbscript.dll
[2011/04/27 13:01:04 | 000,034,304 | ---- | C] (Adobe Systems) -- D:\Windows\System32\atmlib.dll
[2011/04/27 13:01:03 | 001,137,664 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\mfc42.dll
[2011/04/27 13:01:02 | 001,164,288 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\mfc42u.dll
[2011/04/26 01:29:38 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScreenSnapr
[2011/04/26 01:29:38 | 000,000,000 | ---D | C] -- D:\Program Files\ScreenSnapr
[2011/04/25 23:11:53 | 000,000,000 | ---D | C] -- D:\Windows\System32\DRVSTORE
[2011/04/25 23:11:21 | 000,000,000 | ---D | C] -- D:\Program Files\Microsoft Sync Framework
[2011/04/25 23:10:13 | 000,000,000 | ---D | C] -- D:\Program Files\Microsoft SQL Server Compact Edition
[2011/04/25 23:09:24 | 000,000,000 | ---D | C] -- D:\Program Files\Microsoft
[2011/04/25 23:09:08 | 000,000,000 | ---D | C] -- D:\Program Files\Windows Live SkyDrive
[2011/04/25 23:09:02 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
[2011/04/25 23:08:32 | 000,000,000 | ---D | C] -- D:\Windows\PCHEALTH
[2011/04/25 22:33:48 | 000,000,000 | ---D | C] -- D:\Users\-\Documents\Mijn ontvangen bestanden
[2011/04/25 22:17:16 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Local\{14E13BC0-D1F5-436E-94B6-ACA0F4686F5F}
[2011/04/25 22:11:05 | 000,515,416 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAudio2_5.dll
[2011/04/25 22:11:05 | 000,453,456 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx10_42.dll
[2011/04/25 22:11:05 | 000,069,464 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAPOFX1_3.dll
[2011/04/25 22:10:48 | 003,426,072 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_32.dll
[2011/04/25 22:10:29 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
[2011/04/25 22:10:04 | 000,000,000 | ---D | C] -- D:\Program Files\Microsoft Silverlight
[2011/04/25 22:09:42 | 002,983,424 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\UIRibbon.dll
[2011/04/25 22:09:42 | 001,164,800 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\UIRibbonRes.dll
[2011/04/25 22:01:42 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Local\Microsoft_Corporation
[2011/04/25 04:30:01 | 000,233,888 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\DreamScene.dll
[2011/04/23 20:00:20 | 002,414,360 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_31.dll
[2011/04/23 20:00:20 | 001,892,184 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DX9_42.dll
[2011/04/23 19:59:25 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\PX Storage Engine
[2011/04/23 19:59:23 | 000,000,000 | ---D | C] -- D:\Program Files\Winamp
[2011/04/23 18:45:09 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\Miranda
[2011/04/23 18:44:56 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Miranda IM
[2011/04/23 18:44:56 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Miranda IM
[2011/04/23 18:44:56 | 000,000,000 | ---D | C] -- D:\Program Files\Miranda IM
[2011/04/21 17:23:48 | 000,000,000 | ---D | C] -- D:\Users\-\Documents\Documents
[2011/04/21 14:09:39 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\CheckPoint
[2011/04/21 14:08:43 | 000,000,000 | ---D | C] -- D:\Program Files\ZoneAlarm_Security
[2011/04/21 14:08:33 | 000,000,000 | ---D | C] -- D:\Program Files\CheckPoint
[2011/04/21 14:07:11 | 000,000,000 | ---D | C] -- D:\Program Files\Zone Labs
[2011/04/21 14:06:40 | 000,000,000 | ---D | C] -- D:\Windows\Internet Logs
[2011/04/21 14:06:40 | 000,000,000 | ---D | C] -- D:\ProgramData\CheckPoint
[2011/04/20 15:17:14 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auto Mouse Click
[2011/04/20 15:17:14 | 000,000,000 | ---D | C] -- D:\Program Files\Auto Mouse Click
[2011/04/20 02:27:12 | 000,000,000 | ---D | C] -- D:\Program Files\HyperCam Toolbar
[2011/04/20 02:27:07 | 000,000,000 | ---D | C] -- D:\Program Files\HyperCam 2
[2011/04/20 00:23:32 | 000,000,000 | ---D | C] -- D:\Program Files\UltraVPN
[2011/04/19 23:02:54 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2011/04/19 23:02:53 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Skype
[2011/04/19 23:01:19 | 000,000,000 | ---D | C] -- D:\Windows\System32\appmgmt
[2011/04/18 20:03:15 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\S.A.D
[2011/04/18 20:03:14 | 000,025,216 | ---- | C] (The OpenVPN Project) -- D:\Windows\System32\drivers\tap0901.sys
[2011/04/18 20:03:12 | 000,000,000 | ---D | C] -- D:\Program Files\S.A.D
[2011/04/16 04:16:17 | 000,000,000 | ---D | C] -- D:\Users\-\Documents\Rainmeter
[2011/04/16 04:16:17 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\Rainmeter
[2011/04/16 04:16:15 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rainmeter
[2011/04/16 04:16:14 | 000,000,000 | ---D | C] -- D:\Program Files\Rainmeter
[2011/04/15 16:29:18 | 000,000,000 | ---D | C] -- D:\Program Files\Dyyno
[2011/04/15 15:45:40 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\mIRC
[2011/04/15 15:45:39 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\mIRC
[2011/04/15 15:45:39 | 000,000,000 | ---D | C] -- D:\Program Files\mIRC
[2011/04/14 18:08:40 | 000,000,000 | ---D | C] -- D:\ProgramData\TamoSoft
[2011/04/14 18:08:27 | 000,000,000 | ---D | C] -- D:\Program Files\CommView
[2011/04/14 17:47:38 | 000,454,656 | ---- | C] (Simon Tatham) -- D:\Users\-\Desktop\putty.exe
[2011/04/13 17:57:34 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap
[2011/04/13 17:57:32 | 000,000,000 | ---D | C] -- D:\Program Files\WinPcap
[2011/04/12 17:10:58 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Local\Adobe
[2011/04/12 17:05:50 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Adobe
[2011/04/12 17:05:50 | 000,000,000 | ---D | C] -- D:\Program Files\Adobe
[2011/04/12 17:04:48 | 000,000,000 | ---D | C] -- D:\ProgramData\Adobe
[2011/04/11 20:25:59 | 000,000,000 | ---D | C] -- D:\ProgramData\Windows Genuine Advantage
[2011/04/11 04:55:48 | 000,000,000 | ---D | C] -- D:\Windows\Panther
[2011/04/11 04:50:03 | 000,000,000 | ---D | C] -- D:\Windows.old
[2011/04/11 04:00:05 | 000,000,000 | ---D | C] -- D:\Windows\SoftwareDistribution
[2011/04/11 03:57:58 | 000,000,000 | ---D | C] -- D:\Windows\Prefetch
[2011/04/11 01:43:25 | 000,000,000 | R--D | C] -- D:\Sandbox
[2011/04/11 01:41:38 | 000,000,000 | ---D | C] -- D:\Windows\Sun
[2011/04/11 01:40:23 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie
[2011/04/11 01:40:22 | 000,000,000 | ---D | C] -- D:\Program Files\Sandboxie
[2011/04/11 01:40:17 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SwiftKit
[2011/04/11 01:40:08 | 000,000,000 | ---D | C] -- D:\ProgramData\SwiftKit
[2011/04/11 01:40:07 | 000,000,000 | ---D | C] -- D:\Program Files\SwiftKit
[2011/04/11 01:34:32 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\DVDVideoSoftIEHelpers
[2011/04/11 01:34:25 | 000,000,000 | ---D | C] -- D:\Users\-\Documents\DVDVideoSoft
[2011/04/11 01:34:10 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
[2011/04/11 01:33:42 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\DVDVideoSoft
[2011/04/11 01:33:36 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\DVDVideoSoft
[2011/04/11 01:33:31 | 000,000,000 | ---D | C] -- D:\Program Files\DVDVideoSoft
[2011/04/11 00:59:16 | 000,000,000 | ---D | C] -- D:\Program Files\Trend Micro
[2011/04/11 00:59:16 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis
[2011/04/11 00:58:39 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2011/04/11 00:58:36 | 000,000,000 | ---D | C] -- D:\Program Files\CCleaner
[2011/04/11 00:53:25 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\Launchy
[2011/04/11 00:49:10 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Local\ZScreen
[2011/04/11 00:49:06 | 000,000,000 | ---D | C] -- D:\Program Files\ZScreen
[2011/04/11 00:42:06 | 000,000,000 | R--D | C] -- D:\Users\-\Dropbox
[2011/04/11 00:40:32 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
[2011/04/11 00:39:36 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\Dropbox
[2011/04/11 00:13:23 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Local\Diagnostics
[2011/04/10 23:27:16 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2011/04/10 23:26:47 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\skypePM
[2011/04/10 23:26:47 | 000,000,000 | ---D | C] -- D:\ProgramData\Skype Extras
[2011/04/10 23:26:15 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\Skype
[2011/04/10 23:26:12 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Local\Google
[2011/04/10 23:26:10 | 000,000,000 | ---D | C] -- D:\Program Files\Google
[2011/04/10 23:26:07 | 000,000,000 | ---D | C] -- D:\Users\-\Documents\botclient
[2011/04/10 23:25:55 | 000,000,000 | R--D | C] -- D:\Program Files\Skype
[2011/04/10 23:25:52 | 000,000,000 | ---D | C] -- D:\ProgramData\Skype
[2011/04/10 23:16:20 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\Mozilla
[2011/04/10 23:00:38 | 000,000,000 | ---D | C] -- D:\Users\-\Documents\My Received Files
[2011/04/10 21:22:41 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Local\Windows Live
[2011/04/10 21:19:36 | 000,161,792 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3d10_1.dll
[2011/04/10 21:19:35 | 003,957,120 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\ntkrnlpa.exe
[2011/04/10 21:19:35 | 003,901,824 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\ntoskrnl.exe
[2011/04/10 21:16:54 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Local\ElevatedDiagnostics
[2011/04/10 21:14:54 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Local\LogiShrd
[2011/04/10 21:14:41 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\Leadertech
[2011/04/10 21:14:35 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
[2011/04/10 21:14:34 | 000,000,000 | ---D | C] -- D:\ProgramData\LogiShrd
[2011/04/10 21:14:33 | 000,000,000 | ---D | C] -- D:\Program Files\Logitech
[2011/04/10 21:07:15 | 000,000,000 | ---D | C] -- D:\Windows\System32\Wat
[2011/04/10 21:02:01 | 000,295,264 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\PresentationHost.exe
[2011/04/10 21:02:01 | 000,099,176 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\PresentationHostProxy.dll
[2011/04/10 21:02:01 | 000,049,472 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\netfxperf.dll
[2011/04/10 20:59:01 | 000,000,000 | ---D | C] -- D:\ProgramData\NVIDIA Corporation
[2011/04/10 20:58:59 | 000,000,000 | ---D | C] -- D:\Program Files\NVIDIA Corporation
[2011/04/10 20:55:59 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\logishrd
[2011/04/10 20:54:57 | 000,293,376 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\browserchoice.exe
[2011/04/10 20:53:46 | 000,190,976 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\drivers\ks.sys
[2011/04/10 20:50:27 | 000,000,000 | ---D | C] -- D:\Users\-\Documents\RSBot
[2011/04/10 20:45:38 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\AVG10
[2011/04/10 20:41:36 | 000,000,000 | -H-D | C] -- D:\ProgramData\Common Files
[2011/04/10 20:40:32 | 000,000,000 | ---D | C] -- D:\ProgramData\AVG10
[2011/04/10 20:40:32 | 000,000,000 | ---D | C] -- D:\Windows\System32\drivers\AVG
[2011/04/10 20:39:41 | 000,000,000 | ---D | C] -- D:\Program Files\AVG
[2011/04/10 20:34:49 | 000,000,000 | ---D | C] -- D:\ProgramData\MFAData
[2011/04/10 20:30:37 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\Malwarebytes
[2011/04/10 20:30:31 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- D:\Windows\System32\drivers\mbamswissarmy.sys
[2011/04/10 20:30:31 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011/04/10 20:30:30 | 000,000,000 | ---D | C] -- D:\ProgramData\Malwarebytes
[2011/04/10 20:30:28 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- D:\Windows\System32\drivers\mbam.sys
[2011/04/10 20:30:28 | 000,000,000 | ---D | C] -- D:\Program Files\Malwarebytes' Anti-Malware
[2011/04/10 19:58:46 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\WinRAR
[2011/04/10 19:58:46 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
[2011/04/10 19:58:46 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
[2011/04/10 19:58:44 | 000,000,000 | ---D | C] -- D:\Program Files\WinRAR
[2011/04/10 19:54:02 | 000,000,000 | ---D | C] -- D:\Users\-\Documents\Mijn gespreksgeschiedenis
[2011/04/10 19:53:47 | 000,000,000 | ---D | C] -- D:\ProgramData\Messenger Plus!
[2011/04/10 19:53:32 | 000,000,000 | ---D | C] -- D:\Program Files\Messenger Plus! Live
[2011/04/10 19:33:00 | 002,614,272 | ---- | C] (Microsoft Corporation) -- D:\Windows\explorer.exe
[2011/04/10 19:33:00 | 000,197,632 | ---- | C] (Intel(R) Corporation) -- D:\Windows\System32\ir32_32.dll
[2011/04/10 19:33:00 | 000,082,944 | ---- | C] (Radius Inc.) -- D:\Windows\System32\iccvid.dll
[2011/04/10 19:32:59 | 000,109,056 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\t2embed.dll
[2011/04/10 19:32:55 | 000,002,048 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\tzres.dll
[2011/04/10 19:32:52 | 000,465,408 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\psisdecd.dll
[2011/04/10 19:32:52 | 000,417,792 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\msdri.dll
[2011/04/10 19:32:52 | 000,204,288 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\MSNP.ax
[2011/04/10 19:32:47 | 000,496,128 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\taskschd.dll
[2011/04/10 19:32:47 | 000,351,232 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\wmicmiplugin.dll
[2011/04/10 19:32:47 | 000,305,152 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\taskcomp.dll
[2011/04/10 19:32:47 | 000,179,712 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\schtasks.exe
[2011/04/10 19:32:44 | 001,037,312 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\lsasrv.dll
[2011/04/10 19:32:41 | 000,037,376 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\rtutils.dll
[2011/04/10 19:32:37 | 000,573,440 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\odbc32.dll
[2011/04/10 19:32:34 | 001,320,960 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\CertEnroll.dll
[2011/04/10 19:32:33 | 000,507,568 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\winload.exe
[2011/04/10 19:32:33 | 000,442,920 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\winresume.exe
[2011/04/10 19:32:32 | 000,067,584 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\asycfilt.dll
[2011/04/10 19:32:29 | 000,954,752 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\mfc40.dll
[2011/04/10 19:32:29 | 000,954,288 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\mfc40u.dll
[2011/04/10 19:32:11 | 012,625,408 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\wmploc.DLL
[2011/04/10 19:32:10 | 000,000,000 | ---D | C] -- D:\Program Files\Sun
[2011/04/10 19:32:09 | 000,026,504 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\drivers\Diskdump.sys
[2011/04/10 19:31:49 | 001,328,640 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\quartz.dll
[2011/04/10 19:31:49 | 000,084,480 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\mciavi32.dll
[2011/04/10 19:31:48 | 000,091,648 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\avifil32.dll
[2011/04/10 19:31:42 | 000,850,432 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\sbe.dll
[2011/04/10 19:31:42 | 000,642,048 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\CPFilters.dll
[2011/04/10 19:31:42 | 000,534,528 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\EncDec.dll
[2011/04/10 19:31:42 | 000,199,680 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\mpg2splt.ax
[2011/04/10 19:31:24 | 000,314,368 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\webio.dll
[2011/04/10 19:31:17 | 000,070,656 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\fontsub.dll
[2011/04/10 19:31:02 | 000,442,880 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XpsPrint.dll
[2011/04/10 19:31:02 | 000,288,256 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XpsGdiConverter.dll
[2011/04/10 19:30:52 | 000,204,288 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\upnp.dll
[2011/04/10 19:30:51 | 000,080,384 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\davclnt.dll
[2011/04/10 19:30:51 | 000,051,200 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\wscapi.dll
[2011/04/10 19:30:51 | 000,014,336 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\slwga.dll
[2011/04/10 19:30:47 | 003,181,568 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\mf.dll
[2011/04/10 19:30:47 | 001,170,944 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3d10warp.dll
[2011/04/10 19:30:47 | 001,074,176 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\DWrite.dll
[2011/04/10 19:30:47 | 000,739,840 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d2d1.dll
[2011/04/10 19:30:47 | 000,000,000 | ---D | C] -- D:\ProgramData\Sun
[2011/04/10 19:30:46 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Java
[2011/04/10 19:30:41 | 000,000,000 | ---D | C] -- D:\Program Files\Conduit
[2011/04/10 19:30:40 | 001,619,456 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\WMVDECOD.DLL
[2011/04/10 19:30:40 | 000,218,624 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3d10_1core.dll
[2011/04/10 19:30:39 | 001,495,040 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\ExplorerFrame.dll
[2011/04/10 19:30:39 | 000,196,608 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\mfreadwrite.dll
[2011/04/10 19:30:39 | 000,135,168 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XpsRasterService.dll
[2011/04/10 19:30:33 | 000,738,816 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\wmpmde.dll
[2011/04/10 19:30:33 | 000,472,808 | ---- | C] (Sun Microsystems, Inc.) -- D:\Windows\System32\deployJava1.dll
[2011/04/10 19:30:33 | 000,157,472 | ---- | C] (Sun Microsystems, Inc.) -- D:\Windows\System32\javaws.exe
[2011/04/10 19:30:33 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- D:\Windows\System32\javaw.exe
[2011/04/10 19:30:33 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- D:\Windows\System32\java.exe
[2011/04/10 19:30:28 | 000,101,760 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\consent.exe
[2011/04/10 19:30:23 | 000,000,000 | ---D | C] -- D:\Program Files\uTorrent
[2011/04/10 19:30:21 | 000,369,152 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\secproc.dll
[2011/04/10 19:30:21 | 000,365,568 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\secproc_isv.dll
[2011/04/10 19:30:21 | 000,324,608 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\RMActivate_isv.exe
[2011/04/10 19:30:21 | 000,320,512 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\RMActivate.exe
[2011/04/10 19:30:21 | 000,085,504 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\secproc_ssp_isv.dll
[2011/04/10 19:30:20 | 000,280,064 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\RMActivate_ssp.exe
[2011/04/10 19:30:20 | 000,277,504 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\RMActivate_ssp_isv.exe
[2011/04/10 19:30:20 | 000,085,504 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\secproc_ssp.dll
[2011/04/10 19:30:17 | 000,000,000 | ---D | C] -- D:\Program Files\Java
[2011/04/10 19:29:06 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\uTorrent
[2011/04/10 19:26:21 | 000,219,008 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\drivers\dxgmms1.sys
[2011/04/10 19:26:21 | 000,107,520 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\cdd.dll
[2011/04/10 19:25:23 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\TeamViewer
[2011/04/10 19:25:18 | 000,000,000 | ---D | C] -- D:\Program Files\TeamViewer
[2011/04/10 19:24:18 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\Macromedia
[2011/04/10 19:24:18 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\Adobe
[2011/04/10 19:23:23 | 000,000,000 | ---D | C] -- D:\Windows\System32\Macromed
[2011/04/10 19:23:12 | 000,000,000 | ---D | C] -- D:\Windows\System32\Adobe
[2011/04/10 19:19:21 | 000,000,000 | ---D | C] -- D:\Users\-\Tracing
[2011/04/10 19:17:29 | 000,000,000 | ---D | C] -- D:\Program Files\Windows Live
[2011/04/10 19:17:13 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Local\Mozilla
[2011/04/10 19:17:09 | 000,000,000 | -HSD | C] -- D:\Windows\Installer
[2011/04/10 19:17:07 | 000,000,000 | ---D | C] -- D:\Program Files\Mozilla Firefox
[2011/04/10 19:14:11 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Windows Live
[2011/04/10 19:12:08 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Local\MigWiz
[2011/04/10 19:11:01 | 000,000,000 | R--D | C] -- D:\Users\-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
[2011/04/10 19:11:01 | 000,000,000 | R--D | C] -- D:\Users\-\Searches
[2011/04/10 19:11:01 | 000,000,000 | R--D | C] -- D:\Users\-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2011/04/10 19:11:01 | 000,000,000 | -H-D | C] -- D:\Users\-\Application Data\Microsoft\Internet Explorer\Quick Launch\User Pinned
[2011/04/10 19:10:49 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\Identities
[2011/04/10 19:10:47 | 000,000,000 | R--D | C] -- D:\Users\-\Contacts
[2011/04/10 19:10:39 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Local\VirtualStore
[2011/04/10 19:10:36 | 000,000,000 | -HSD | C] -- D:\Users\-\AppData\Local\Temporary Internet Files
[2011/04/10 19:10:36 | 000,000,000 | -HSD | C] -- D:\Users\-\Templates
[2011/04/10 19:10:36 | 000,000,000 | -HSD | C] -- D:\Users\-\Start Menu
[2011/04/10 19:10:36 | 000,000,000 | -HSD | C] -- D:\Users\-\SendTo
[2011/04/10 19:10:36 | 000,000,000 | -HSD | C] -- D:\Users\-\Recent
[2011/04/10 19:10:36 | 000,000,000 | -HSD | C] -- D:\Users\-\PrintHood
[2011/04/10 19:10:36 | 000,000,000 | -HSD | C] -- D:\Users\-\NetHood
[2011/04/10 19:10:36 | 000,000,000 | -HSD | C] -- D:\Users\-\Documents\My Videos
[2011/04/10 19:10:36 | 000,000,000 | -HSD | C] -- D:\Users\-\Documents\My Pictures
[2011/04/10 19:10:36 | 000,000,000 | -HSD | C] -- D:\Users\-\Documents\My Music
[2011/04/10 19:10:36 | 000,000,000 | -HSD | C] -- D:\Users\-\My Documents
[2011/04/10 19:10:36 | 000,000,000 | -HSD | C] -- D:\Users\-\Local Settings
[2011/04/10 19:10:36 | 000,000,000 | -HSD | C] -- D:\Users\-\AppData\Local\History
[2011/04/10 19:10:36 | 000,000,000 | -HSD | C] -- D:\Users\-\Cookies
[2011/04/10 19:10:36 | 000,000,000 | -HSD | C] -- D:\Users\-\Application Data
[2011/04/10 19:10:36 | 000,000,000 | -HSD | C] -- D:\Users\-\AppData\Local\Application Data
[2011/04/10 19:10:35 | 000,000,000 | --SD | C] -- D:\Users\-\AppData\Roaming\Microsoft
[2011/04/10 19:10:35 | 000,000,000 | R--D | C] -- D:\Users\-\Videos
[2011/04/10 19:10:35 | 000,000,000 | R--D | C] -- D:\Users\-\Saved Games
[2011/04/10 19:10:35 | 000,000,000 | R--D | C] -- D:\Users\-\Pictures
[2011/04/10 19:10:35 | 000,000,000 | R--D | C] -- D:\Users\-\Music
[2011/04/10 19:10:35 | 000,000,000 | R--D | C] -- D:\Users\-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
[2011/04/10 19:10:35 | 000,000,000 | R--D | C] -- D:\Users\-\Links
[2011/04/10 19:10:35 | 000,000,000 | R--D | C] -- D:\Users\-\Favorites
[2011/04/10 19:10:35 | 000,000,000 | R--D | C] -- D:\Users\-\Downloads
[2011/04/10 19:10:35 | 000,000,000 | R--D | C] -- D:\Users\-\My Documents
[2011/04/10 19:10:35 | 000,000,000 | R--D | C] -- D:\Users\-\Desktop
[2011/04/10 19:10:35 | 000,000,000 | R--D | C] -- D:\Users\-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
[2011/04/10 19:10:35 | 000,000,000 | -H-D | C] -- D:\Users\-\AppData
[2011/04/10 19:10:35 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Local\Temp
[2011/04/10 19:10:35 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Local\Microsoft
[2011/04/10 19:10:35 | 000,000,000 | ---D | C] -- D:\Users\-\AppData\Roaming\Media Center Programs
[2011/04/10 19:08:10 | 000,000,000 | -HSD | C] -- D:\Recovery
[2011/04/10 17:26:32 | 000,000,000 | ---D | C] -- D:\Polat
[2011/04/07 01:58:25 | 000,000,000 | ---D | C] -- D:\Dossies
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
[2011/05/05 13:55:18 | 000,022,080 | -H-- | M] () -- D:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011/05/05 13:55:18 | 000,022,080 | -H-- | M] () -- D:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011/05/05 13:36:00 | 000,001,034 | ---- | M] () -- D:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011/05/05 04:19:54 | 000,000,600 | ---- | M] () -- D:\Users\-\AppData\Local\PUTTY.RND
[2011/05/05 04:14:16 | 000,001,172 | ---- | M] () -- D:\Users\-\Application Data\Microsoft\Internet Explorer\Quick Launch\My LastPass Vault.lnk
[2011/05/05 04:14:15 | 000,001,172 | ---- | M] () -- D:\Users\Public\Desktop\My LastPass Vault.lnk
[2011/05/05 04:08:54 | 000,000,129 | ---- | M] () -- D:\Users\-\jagex_runescape_preferences2.dat
[2011/05/05 03:18:43 | 000,000,034 | ---- | M] () -- D:\Users\-\jagex_runescape_preferences.dat
[2011/05/05 00:55:24 | 000,001,030 | ---- | M] () -- D:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011/05/05 00:55:07 | 000,067,584 | --S- | M] () -- D:\Windows\bootstat.dat
[2011/05/05 00:55:06 | 314,543,150 | ---- | M] () -- D:\Windows\MEMORY.DMP
[2011/05/05 00:55:04 | 2615,857,152 | -HS- | M] () -- D:\hiberfil.sys
[2011/05/04 20:36:22 | 000,001,676 | ---- | M] () -- D:\Windows\Sandboxie.ini
[2011/05/04 19:16:36 | 000,000,013 | ---- | M] () -- D:\Users\-\AppData\Roaming\RSBuddy Login.ini
[2011/05/04 16:43:33 | 000,001,789 | ---- | M] () -- D:\Users\Public\Desktop\CommView.lnk
[2011/05/03 23:46:54 | 000,000,077 | ---- | M] () -- D:\Users\-\AppData\Roaming\RSBuddy_yerkid.ini
[2011/05/03 21:48:39 | 000,000,352 | ---- | M] () -- D:\Users\-\AppData\Roaming\RSBuddy_memogodfather.ini
[2011/05/03 16:36:48 | 004,498,108 | ---- | M] () -- D:\Users\-\Desktop\Ellie Goulding - Lights (Bassnectar Remix).mp3
[2011/05/03 04:17:01 | 000,647,308 | ---- | M] () -- D:\Windows\System32\perfh009.dat
[2011/05/03 04:17:01 | 000,118,438 | ---- | M] () -- D:\Windows\System32\perfc009.dat
[2011/04/30 20:54:07 | 009,550,363 | ---- | M] () -- D:\Users\-\Desktop\Selena Gomez & The Scene - A Year Without Rain.mp3
[2011/04/30 05:51:13 | 004,824,503 | ---- | M] () -- D:\Users\-\Desktop\Eda & Harun ~ Unutamiyorum ~.mp3
[2011/04/30 04:48:30 | 266,977,942 | ---- | M] () -- D:\Users\-\Documents\clip0014.avi
[2011/04/30 04:40:32 | 160,665,916 | ---- | M] () -- D:\Users\-\Documents\clip0012.avi
[2011/04/30 04:32:48 | 012,100,462 | ---- | M] () -- D:\Users\-\Documents\clip0011.avi
[2011/04/30 04:30:57 | 064,389,072 | ---- | M] () -- D:\Users\-\Documents\clip0010.avi
[2011/04/30 04:29:28 | 110,442,444 | ---- | M] () -- D:\Users\-\Documents\clip0009.avi
[2011/04/30 04:17:34 | 000,000,937 | ---- | M] () -- D:\Users\-\Desktop\HyperCam 2.lnk
[2011/04/29 21:31:42 | 000,002,292 | ---- | M] () -- D:\Users\Public\Desktop\Google Chrome.lnk
[2011/04/28 12:34:16 | 000,000,003 | ---- | M] () -- D:\7Loader.TAG
[2011/04/28 11:58:39 | 000,007,611 | ---- | M] () -- D:\Users\-\AppData\Local\Resmon.ResmonCfg
[2011/04/28 02:36:54 | 000,000,117 | ---- | M] () -- D:\Users\-\AppData\Roaming\RSBot_Accounts.ini
[2011/04/27 20:39:25 | 004,532,224 | ---- | M] () -- D:\Users\-\Desktop\Eda & Harun 'İmkansiz Aşk'.mp3
[2011/04/27 15:06:29 | 000,265,720 | ---- | M] () -- D:\Windows\System32\FNTCACHE.DAT
[2011/04/26 17:55:38 | 002,681,658 | ---- | M] () -- D:\Users\-\Desktop\Tomcraft - Loneliness.mp3
[2011/04/25 23:10:13 | 000,000,020 | ---- | M] () -- D:\Windows\põ
[2011/04/25 22:56:12 | 000,000,020 | ---- | M] () -- D:\Windows\d÷
[2011/04/25 22:13:51 | 000,000,020 | ---- | M] () -- D:\Windows\(ùÏ
[2011/04/25 19:24:52 | 000,088,280 | -H-- | M] () -- D:\Windows\System32\mlfcache.dat
[2011/04/25 00:14:38 | 000,225,856 | ---- | M] (QFX Software Corporation) -- D:\Windows\System32\drivers\keyscrambler.sys
[2011/04/23 18:44:56 | 000,000,990 | ---- | M] () -- D:\Users\-\Desktop\Miranda IM.lnk
[2011/04/19 23:02:54 | 000,002,501 | ---- | M] () -- D:\Users\Public\Desktop\Skype.lnk
[2011/04/18 20:03:15 | 000,001,135 | ---- | M] () -- D:\Users\Public\Desktop\CyberGhost VPN.lnk
[2011/04/16 04:16:15 | 000,001,871 | ---- | M] () -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk
[2011/04/16 04:16:15 | 000,001,853 | ---- | M] () -- D:\Users\Public\Desktop\Rainmeter.lnk
[2011/04/15 15:45:40 | 000,000,915 | ---- | M] () -- D:\Users\Public\Desktop\mIRC.lnk
[2011/04/14 17:47:38 | 000,454,656 | ---- | M] (Simon Tatham) -- D:\Users\-\Desktop\putty.exe
[2011/04/13 18:15:21 | 000,650,120 | ---- | M] () -- D:\Windows\System32\drivers\AVG\iavifw.avm
[2011/04/12 18:23:51 | 000,020,023 | ---- | M] () -- D:\Users\-\AppData\Roaming\UserTile.png
[2011/04/11 04:01:55 | 000,042,045 | ---- | M] () -- D:\Windows\System32\license.rtf
[2011/04/11 04:01:07 | 000,000,000 | -H-- | M] () -- D:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2011/04/11 01:40:23 | 000,001,041 | ---- | M] () -- D:\Users\-\Desktop\Sandboxed Web Browser.lnk
[2011/04/11 01:40:23 | 000,001,041 | ---- | M] () -- D:\Users\-\Application Data\Microsoft\Internet Explorer\Quick Launch\Sandboxed Web Browser.lnk
[2011/04/11 01:40:17 | 000,000,971 | ---- | M] () -- D:\Users\-\Desktop\SwiftKit.lnk
[2011/04/11 01:34:27 | 000,001,203 | ---- | M] () -- D:\Users\-\Desktop\DVDVideoSoft Free Studio.lnk
[2011/04/11 00:59:16 | 000,002,943 | ---- | M] () -- D:\Users\-\Desktop\HiJackThis.lnk
[2011/04/11 00:58:39 | 000,000,971 | ---- | M] () -- D:\Users\Public\Desktop\CCleaner.lnk
[2011/04/11 00:42:06 | 000,001,034 | ---- | M] () -- D:\Users\-\Desktop\Dropbox.lnk
[2011/04/11 00:40:39 | 000,001,014 | ---- | M] () -- D:\Users\-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
[2011/04/10 23:27:17 | 000,002,191 | ---- | M] () -- D:\Users\-\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/04/10 23:26:55 | 000,000,056 | -H-- | M] () -- D:\ProgramData\ezsidmv.dat
[2011/04/10 23:15:40 | 000,001,098 | ---- | M] () -- D:\Users\Public\Desktop\Mozilla Firefox.lnk
[2011/04/10 23:06:57 | 000,000,000 | -H-- | M] () -- D:\Users\-\Documents\Default.rdp
[2011/04/10 21:28:56 | 000,001,957 | ---- | M] () -- D:\Users\Public\Desktop\Logitech Vid HD.lnk
[2011/04/10 20:30:31 | 000,001,073 | ---- | M] () -- D:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/04/10 19:30:23 | 000,000,943 | ---- | M] () -- D:\Users\-\Application Data\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk
[2011/04/10 19:30:23 | 000,000,919 | ---- | M] () -- D:\Users\Public\Desktop\µTorrent.lnk
[2011/04/10 19:30:19 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- D:\Windows\System32\deployJava1.dll
[2011/04/10 19:30:19 | 000,157,472 | ---- | M] (Sun Microsystems, Inc.) -- D:\Windows\System32\javaws.exe
[2011/04/10 19:30:19 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- D:\Windows\System32\javaw.exe
[2011/04/10 19:30:19 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- D:\Windows\System32\java.exe
[2011/04/10 19:25:21 | 000,001,126 | ---- | M] () -- D:\Users\Public\Desktop\TeamViewer 6.lnk
[2011/04/10 13:37:13 | 000,000,977 | ---- | M] () -- D:\emoticon.gif
[2011/04/09 01:26:06 | 000,027,078 | ---- | M] () -- D:\KEDlM.jpg
[2011/04/09 00:24:18 | 000,028,110 | ---- | M] () -- D:\Kedim.jpg
[2011/04/08 01:12:07 | 001,134,333 | ---- | M] () -- D:\RSBot-232 (1).jar
[2011/04/07 17:58:59 | 001,131,991 | ---- | M] () -- D:\RSBot-233.jar
[2011/04/07 12:38:58 | 000,009,150 | ---- | M] () -- D:\SMSKILLv1.5.zip
[color=#E56717]========== Files Created - No Company Name ==========[/color]
[2011/05/05 04:14:16 | 000,001,172 | ---- | C] () -- D:\Users\-\Application Data\Microsoft\Internet Explorer\Quick Launch\My LastPass Vault.lnk
[2011/05/05 04:14:15 | 000,001,172 | ---- | C] () -- D:\Users\Public\Desktop\My LastPass Vault.lnk
[2011/05/05 00:55:06 | 314,543,150 | ---- | C] () -- D:\Windows\MEMORY.DMP
[2011/05/04 19:12:26 | 000,000,013 | ---- | C] () -- D:\Users\-\AppData\Roaming\RSBuddy Login.ini
[2011/05/04 16:43:33 | 000,001,789 | ---- | C] () -- D:\Users\Public\Desktop\CommView.lnk
[2011/05/04 12:47:38 | 000,650,752 | ---- | C] () -- D:\Windows\System32\xvidcore.dll
[2011/05/04 12:47:38 | 000,240,640 | ---- | C] () -- D:\Windows\System32\xvidvfw.dll
[2011/05/04 12:47:38 | 000,152,064 | ---- | C] () -- D:\Windows\System32\xvid.ax
[2011/05/03 23:41:55 | 000,000,077 | ---- | C] () -- D:\Users\-\AppData\Roaming\RSBuddy_yerkid.ini
[2011/05/03 16:36:44 | 004,498,108 | ---- | C] () -- D:\Users\-\Desktop\Ellie Goulding - Lights (Bassnectar Remix).mp3
[2011/05/01 02:02:20 | 000,000,352 | ---- | C] () -- D:\Users\-\AppData\Roaming\RSBuddy_memogodfather.ini
[2011/04/30 20:51:48 | 009,550,363 | ---- | C] () -- D:\Users\-\Desktop\Selena Gomez & The Scene - A Year Without Rain.mp3
[2011/04/30 05:51:08 | 004,824,503 | ---- | C] () -- D:\Users\-\Desktop\Eda & Harun ~ Unutamiyorum ~.mp3
[2011/04/30 04:45:09 | 266,977,942 | ---- | C] () -- D:\Users\-\Documents\clip0014.avi
[2011/04/30 04:36:01 | 160,665,916 | ---- | C] () -- D:\Users\-\Documents\clip0012.avi
[2011/04/30 04:32:39 | 012,100,462 | ---- | C] () -- D:\Users\-\Documents\clip0011.avi
[2011/04/30 04:30:11 | 064,389,072 | ---- | C] () -- D:\Users\-\Documents\clip0010.avi
[2011/04/30 04:28:05 | 110,442,444 | ---- | C] () -- D:\Users\-\Documents\clip0009.avi
[2011/04/30 04:17:34 | 000,000,937 | ---- | C] () -- D:\Users\-\Desktop\HyperCam 2.lnk
[2011/04/28 12:34:16 | 000,000,003 | ---- | C] () -- D:\7Loader.TAG
[2011/04/28 11:58:39 | 000,007,611 | ---- | C] () -- D:\Users\-\AppData\Local\Resmon.ResmonCfg
[2011/04/27 20:38:56 | 004,532,224 | ---- | C] () -- D:\Users\-\Desktop\Eda & Harun 'İmkansiz Aşk'.mp3
[2011/04/26 17:55:30 | 002,681,658 | ---- | C] () -- D:\Users\-\Desktop\Tomcraft - Loneliness.mp3
[2011/04/25 23:10:12 | 000,000,020 | ---- | C] () -- D:\Windows\põ
[2011/04/25 22:56:12 | 000,000,020 | ---- | C] () -- D:\Windows\d÷
[2011/04/25 22:13:51 | 000,000,020 | ---- | C] () -- D:\Windows\(ùÏ
[2011/04/25 19:24:52 | 000,088,280 | -H-- | C] () -- D:\Windows\System32\mlfcache.dat
[2011/04/23 18:44:56 | 000,000,990 | ---- | C] () -- D:\Users\-\Desktop\Miranda IM.lnk
[2011/04/19 23:02:54 | 000,002,501 | ---- | C] () -- D:\Users\Public\Desktop\Skype.lnk
[2011/04/18 20:03:15 | 000,001,135 | ---- | C] () -- D:\Users\Public\Desktop\CyberGhost VPN.lnk
[2011/04/16 04:16:15 | 000,001,871 | ---- | C] () -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk
[2011/04/16 04:16:15 | 000,001,853 | ---- | C] () -- D:\Users\Public\Desktop\Rainmeter.lnk
[2011/04/15 15:45:40 | 000,000,915 | ---- | C] () -- D:\Users\Public\Desktop\mIRC.lnk
[2011/04/15 14:55:11 | 000,650,120 | ---- | C] () -- D:\Windows\System32\drivers\AVG\iavifw.avm
[2011/04/14 18:30:41 | 000,000,600 | ---- | C] () -- D:\Users\-\AppData\Local\PUTTY.RND
[2011/04/12 18:23:06 | 000,020,023 | ---- | C] () -- D:\Users\-\AppData\Roaming\UserTile.png
[2011/04/11 04:01:48 | 000,001,345 | ---- | C] () -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
[2011/04/11 04:01:42 | 000,001,326 | ---- | C] () -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
[2011/04/11 04:01:07 | 000,000,000 | -H-- | C] () -- D:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2011/04/11 03:57:22 | 2615,857,152 | -HS- | C] () -- D:\hiberfil.sys
[2011/04/11 01:43:19 | 000,001,041 | ---- | C] () -- D:\Users\-\Desktop\Sandboxed Web Browser.lnk
[2011/04/11 01:43:19 | 000,001,041 | ---- | C] () -- D:\Users\-\Application Data\Microsoft\Internet Explorer\Quick Launch\Sandboxed Web Browser.lnk
[2011/04/11 01:43:16 | 000,001,676 | ---- | C] () -- D:\Windows\Sandboxie.ini
[2011/04/11 01:40:17 | 000,000,971 | ---- | C] () -- D:\Users\-\Desktop\SwiftKit.lnk
[2011/04/11 01:34:27 | 000,001,203 | ---- | C] () -- D:\Users\-\Desktop\DVDVideoSoft Free Studio.lnk
[2011/04/11 00:59:16 | 000,002,943 | ---- | C] () -- D:\Users\-\Desktop\HiJackThis.lnk
[2011/04/11 00:58:39 | 000,000,971 | ---- | C] () -- D:\Users\Public\Desktop\CCleaner.lnk
[2011/04/11 00:42:06 | 000,001,034 | ---- | C] () -- D:\Users\-\Desktop\Dropbox.lnk
[2011/04/11 00:40:39 | 000,001,014 | ---- | C] () -- D:\Users\-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
[2011/04/10 23:27:17 | 000,002,292 | ---- | C] () -- D:\Users\Public\Desktop\Google Chrome.lnk
[2011/04/10 23:27:17 | 000,002,191 | ---- | C] () -- D:\Users\-\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/04/10 23:26:55 | 000,000,056 | -H-- | C] () -- D:\ProgramData\ezsidmv.dat
[2011/04/10 23:26:23 | 000,001,034 | ---- | C] () -- D:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011/04/10 23:26:22 | 000,001,030 | ---- | C] () -- D:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011/04/10 23:15:40 | 000,001,110 | ---- | C] () -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2011/04/10 23:15:40 | 000,001,098 | ---- | C] () -- D:\Users\Public\Desktop\Mozilla Firefox.lnk
[2011/04/10 23:06:57 | 000,000,000 | -H-- | C] () -- D:\Users\-\Documents\Default.rdp
[2011/04/10 21:28:56 | 000,001,957 | ---- | C] () -- D:\Users\Public\Desktop\Logitech Vid HD.lnk
[2011/04/10 21:13:42 | 000,000,117 | ---- | C] () -- D:\Users\-\AppData\Roaming\RSBot_Accounts.ini
[2011/04/10 20:39:03 | 000,000,129 | ---- | C] () -- D:\Users\-\jagex_runescape_preferences2.dat
[2011/04/10 20:38:51 | 000,000,034 | ---- | C] () -- D:\Users\-\jagex_runescape_preferences.dat
[2011/04/10 20:30:31 | 000,001,073 | ---- | C] () -- D:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/04/10 19:30:23 | 000,000,943 | ---- | C] () -- D:\Users\-\Application Data\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk
[2011/04/10 19:30:23 | 000,000,919 | ---- | C] () -- D:\Users\Public\Desktop\µTorrent.lnk
[2011/04/10 19:25:21 | 000,001,138 | ---- | C] () -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 6.lnk
[2011/04/10 19:25:21 | 000,001,126 | ---- | C] () -- D:\Users\Public\Desktop\TeamViewer 6.lnk
[2011/04/10 19:10:35 | 000,000,290 | ---- | C] () -- D:\Users\-\Application Data\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk
[2011/04/10 19:10:35 | 000,000,272 | ---- | C] () -- D:\Users\-\Application Data\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk
[2011/04/10 17:26:41 | 000,009,150 | ---- | C] () -- D:\SMSKILLv1.5.zip
[2011/04/10 17:26:24 | 001,134,333 | ---- | C] () -- D:\RSBot-232 (1).jar
[2011/04/10 17:26:24 | 001,131,991 | ---- | C] () -- D:\RSBot-233.jar
[2011/04/10 17:26:20 | 000,000,977 | ---- | C] () -- D:\emoticon.gif
[2011/04/10 17:26:13 | 000,028,110 | ---- | C] () -- D:\Kedim.jpg
[2011/04/10 17:26:13 | 000,027,078 | ---- | C] () -- D:\KEDlM.jpg
[2010/06/25 19:03:12 | 000,053,299 | ---- | C] () -- D:\Windows\System32\pthreadVC.dll
[2009/10/07 01:46:36 | 000,025,752 | ---- | C] () -- D:\Windows\System32\drivers\LVPr2Mon.sys
[2009/10/07 01:23:08 | 000,013,584 | ---- | C] () -- D:\Windows\System32\drivers\iKeyLFT2.dll
[2009/07/14 06:57:37 | 000,067,584 | --S- | C] () -- D:\Windows\bootstat.dat
[2009/07/14 06:33:53 | 000,265,720 | ---- | C] () -- D:\Windows\System32\FNTCACHE.DAT
[2009/07/14 04:05:48 | 000,647,308 | ---- | C] () -- D:\Windows\System32\perfh009.dat
[2009/07/14 04:05:48 | 000,291,294 | ---- | C] () -- D:\Windows\System32\perfi009.dat
[2009/07/14 04:05:48 | 000,118,438 | ---- | C] () -- D:\Windows\System32\perfc009.dat
[2009/07/14 04:05:48 | 000,031,548 | ---- | C] () -- D:\Windows\System32\perfd009.dat
[2009/07/14 04:05:05 | 000,000,741 | ---- | C] () -- D:\Windows\System32\NOISE.DAT
[2009/07/14 04:04:11 | 000,215,943 | ---- | C] () -- D:\Windows\System32\dssec.dat
[2009/07/14 02:19:49 | 000,066,048 | ---- | C] () -- D:\Windows\System32\PrintBrmUi.exe
[2009/07/14 01:55:01 | 000,043,131 | ---- | C] () -- D:\Windows\mib.bin
[2009/07/14 01:51:43 | 000,073,728 | ---- | C] () -- D:\Windows\System32\BthpanContextHandler.dll
[2009/07/14 01:42:10 | 000,064,000 | ---- | C] () -- D:\Windows\System32\BWContextHandler.dll
[2009/06/10 23:26:10 | 000,673,088 | ---- | C] () -- D:\Windows\System32\mlang.dat
[2007/10/12 01:11:58 | 000,059,500 | ---- | C] () -- D:\Windows\System32\lvcoinst.ini
[color=#E56717]========== Custom Scans ==========[/color]
[color=#A23BEC]< %systemroot%\*. /mp /s >[/color]
[color=#A23BEC]< %systemroot%\system32\*.dll /lockedfiles >[/color]
[2009/07/14 03:15:21 | 000,462,848 | ---- | M] (Microsoft Corporation)[b] Unable to obtain MD5[/b] -- D:\Windows\System32\FirewallAPI.dll
[color=#A23BEC]< %systemroot%\system32\*.exe /lockedfiles >[/color]
[color=#A23BEC]< %systemroot%\Tasks\*.job /lockedfiles >[/color]
[color=#A23BEC]< %systemroot%\system32\drivers\*.sys /lockedfiles >[/color]
[color=#A23BEC]< %systemroot%\System32\config\*.sav >[/color]
[color=#A23BEC]< %systemroot%\system32\*.sys >[/color]
[2009/07/13 23:40:41 | 000,009,029 | ---- | M] () -- D:\Windows\System32\ANSI.SYS
[2009/07/14 03:26:21 | 000,249,408 | ---- | M] (Microsoft Corporation) -- D:\Windows\System32\clfs.sys
[2009/07/13 23:40:44 | 000,027,097 | ---- | M] () -- D:\Windows\System32\country.sys
[2009/07/13 23:40:40 | 000,004,768 | ---- | M] () -- D:\Windows\System32\HIMEM.SYS
[2009/07/13 23:40:43 | 000,042,809 | ---- | M] () -- D:\Windows\System32\KEY01.SYS
[2009/07/13 23:40:43 | 000,042,537 | ---- | M] () -- D:\Windows\System32\KEYBOARD.SYS
[2009/07/13 23:40:23 | 000,027,866 | ---- | M] () -- D:\Windows\System32\NTDOS.SYS
[2009/07/13 23:40:31 | 000,029,146 | ---- | M] () -- D:\Windows\System32\NTDOS404.SYS
[2009/07/13 23:40:35 | 000,029,370 | ---- | M] () -- D:\Windows\System32\NTDOS411.SYS
[2009/07/13 23:40:39 | 000,029,274 | ---- | M] () -- D:\Windows\System32\NTDOS412.SYS
[2009/07/13 23:40:27 | 000,029,146 | ---- | M] () -- D:\Windows\System32\NTDOS804.SYS
[2009/07/13 23:40:11 | 000,033,952 | ---- | M] () -- D:\Windows\System32\NTIO.SYS
[2009/07/13 23:40:15 | 000,034,672 | ---- | M] () -- D:\Windows\System32\NTIO404.SYS
[2009/07/13 23:40:17 | 000,035,776 | ---- | M] () -- D:\Windows\System32\NTIO411.SYS
[2009/07/13 23:40:19 | 000,035,536 | ---- | M] () -- D:\Windows\System32\NTIO412.SYS
[2009/07/13 23:40:13 | 000,034,672 | ---- | M] () -- D:\Windows\System32\NTIO804.SYS
[2011/03/03 05:31:32 | 002,331,136 | ---- | M] (Microsoft Corporation) -- D:\Windows\System32\win32k.sys
[color=#A23BEC]< %systemroot%\system32\drivers\*.dll >[/color]
[2009/10/07 01:23:08 | 000,013,584 | ---- | M] () -- D:\Windows\System32\drivers\iKeyLFT2.dll
[color=#A23BEC]< %systemroot%\system32\drivers\*.ini >[/color]
[color=#A23BEC]< %systemroot%\system32\drivers\*.exe >[/color]
[color=#A23BEC]< %SYSTEMDRIVE%\*.* >[/color]
[2011/04/28 12:34:16 | 000,000,003 | ---- | M] () -- D:\7Loader.TAG
[2010/05/17 00:39:27 | 000,002,841 | -HS- | M] () -- D:\AlbumArtSmall.jpg
[2010/03/05 19:50:12 | 000,011,850 | -HS- | M] () -- D:\AlbumArt_{2325EE90-0438-4555-8F95-3103E8C316F6}_Large.jpg
[2010/03/05 19:50:12 | 000,002,710 | -HS- | M] () -- D:\AlbumArt_{2325EE90-0438-4555-8F95-3103E8C316F6}_Small.jpg
[2010/05/17 00:39:27 | 000,010,497 | -HS- | M] () -- D:\AlbumArt_{28D41AC3-6F3D-4F5E-8A73-D9708AED5FF3}_Large.jpg
[2010/05/17 00:39:27 | 000,002,841 | -HS- | M] () -- D:\AlbumArt_{28D41AC3-6F3D-4F5E-8A73-D9708AED5FF3}_Small.jpg
[2010/03/06 00:40:11 | 000,011,733 | -HS- | M] () -- D:\AlbumArt_{56843EB4-5803-457F-B24A-BC461FF731C9}_Large.jpg
[2010/03/06 00:40:11 | 000,002,720 | -HS- | M] () -- D:\AlbumArt_{56843EB4-5803-457F-B24A-BC461FF731C9}_Small.jpg
[2010/03/21 17:57:59 | 000,012,263 | -HS- | M] () -- D:\AlbumArt_{861F0BF1-584E-4A75-B2A2-3A37335242F2}_Large.jpg
[2010/03/21 17:57:59 | 000,003,012 | -HS- | M] () -- D:\AlbumArt_{861F0BF1-584E-4A75-B2A2-3A37335242F2}_Small.jpg
[2009/06/10 23:42:20 | 000,000,024 | ---- | M] () -- D:\autoexec.bat
[2011/02/27 18:03:33 | 001,443,549 | ---- | M] () -- D:\Backup-(2011-02-27).ipd
[2011/04/07 01:49:43 | 000,000,124 | ---- | M] () -- D:\Blacklist.txt
[2009/06/10 23:42:20 | 000,000,010 | ---- | M] () -- D:\config.sys
[2010/05/17 00:39:27 | 000,000,351 | -HS- | M] () -- D:\desktop.ini
[2011/04/10 13:37:13 | 000,000,977 | ---- | M] () -- D:\emoticon.gif
[2010/05/17 00:39:27 | 000,010,497 | -HS- | M] () -- D:\Folder.jpg
[2011/03/01 21:24:51 | 000,000,201 | ---- | M] () -- D:\Gegevens.txt
[2011/04/10 04:27:31 | 000,000,240 | ---- | M] () -- D:\gmails.txt
[2011/05/02 16:49:21 | 000,000,177 | ---- | M] () -- D:\gpo__@hotmail.com.txt
[2011/05/05 00:55:04 | 2615,857,152 | -HS- | M] () -- D:\hiberfil.sys
[2011/04/09 00:24:18 | 000,028,110 | ---- | M] () -- D:\Kedim.jpg
[2011/04/09 01:26:06 | 000,027,078 | ---- | M] () -- D:\KEDlM.jpg
[2011/05/05 00:55:06 | 3487,813,632 | -HS- | M] () -- D:\pagefile.sys
[2011/04/07 16:07:56 | 000,000,020 | ---- | M] () -- D:\recoders.org.txt
[2011/04/08 01:12:07 | 001,134,333 | ---- | M] () -- D:\RSBot-232 (1).jar
[2011/04/07 17:58:59 | 001,131,991 | ---- | M] () -- D:\RSBot-233.jar
[2011/02/28 19:39:12 | 000,000,284 | ---- | M] () -- D:\Site.txt
[2011/04/07 12:38:58 | 000,009,150 | ---- | M] () -- D:\SMSKILLv1.5.zip
[color=#A23BEC]< %PROGRAMFILES%\*. >[/color]
[2011/04/12 17:05:50 | 000,000,000 | ---D | M] -- D:\Program Files\Adobe
[2011/04/22 03:42:34 | 000,000,000 | ---D | M] -- D:\Program Files\Auto Mouse Click
[2011/04/10 20:39:41 | 000,000,000 | ---D | M] -- D:\Program Files\AVG
[2011/04/11 00:58:39 | 000,000,000 | ---D | M] -- D:\Program Files\CCleaner
[2011/04/21 14:08:33 | 000,000,000 | ---D | M] -- D:\Program Files\CheckPoint
[2011/04/23 19:59:25 | 000,000,000 | ---D | M] -- D:\Program Files\Common Files
[2011/05/04 16:43:36 | 000,000,000 | ---D | M] -- D:\Program Files\CommView
[2011/04/22 03:42:34 | 000,000,000 | ---D | M] -- D:\Program Files\Conduit
[2009/07/14 09:50:29 | 000,000,000 | ---D | M] -- D:\Program Files\DVD Maker
[2011/04/11 01:33:31 | 000,000,000 | ---D | M] -- D:\Program Files\DVDVideoSoft
[2011/04/15 16:29:18 | 000,000,000 | ---D | M] -- D:\Program Files\Dyyno
[2011/04/10 23:27:18 | 000,000,000 | ---D | M] -- D:\Program Files\Google
[2011/04/30 19:11:25 | 000,000,000 | ---D | M] -- D:\Program Files\HyperCam 2
[2011/04/30 04:17:39 | 000,000,000 | ---D | M] -- D:\Program Files\HyperCam Toolbar
[2011/04/28 13:15:10 | 000,000,000 | ---D | M] -- D:\Program Files\Internet Explorer
[2011/04/30 18:37:44 | 000,000,000 | ---D | M] -- D:\Program Files\IObit
[2011/04/10 19:31:23 | 000,000,000 | ---D | M] -- D:\Program Files\Java
[2011/04/28 13:22:32 | 000,000,000 | ---D | M] -- D:\Program Files\KeyScrambler
[2011/05/05 04:14:16 | 000,000,000 | ---D | M] -- D:\Program Files\LastPass
[2011/04/10 22:49:03 | 000,000,000 | ---D | M] -- D:\Program Files\Logitech
[2011/04/10 20:30:31 | 000,000,000 | ---D | M] -- D:\Program Files\Malwarebytes' Anti-Malware
[2011/04/13 17:55:07 | 000,000,000 | ---D | M] -- D:\Program Files\Messenger Plus! Live
[2011/04/25 23:09:24 | 000,000,000 | ---D | M] -- D:\Program Files\Microsoft
[2011/04/27 13:03:19 | 000,000,000 | ---D | M] -- D:\Program Files\Microsoft CAPICOM 2.1.0.2
[2011/05/02 18:18:58 | 000,000,000 | ---D | M] -- D:\Program Files\Microsoft Silverlight
[2011/04/25 23:10:13 | 000,000,000 | ---D | M] -- D:\Program Files\Microsoft SQL Server Compact Edition
[2011/04/25 23:11:21 | 000,000,000 | ---D | M] -- D:\Program Files\Microsoft Sync Framework
[2011/04/27 17:41:58 | 000,000,000 | ---D | M] -- D:\Program Files\Microsoft.NET
[2011/04/23 18:44:56 | 000,000,000 | ---D | M] -- D:\Program Files\Miranda IM
[2011/04/25 17:42:16 | 000,000,000 | ---D | M] -- D:\Program Files\mIRC
[2011/05/01 16:05:59 | 000,000,000 | ---D | M] -- D:\Program Files\Mozilla Firefox
[2009/07/14 06:52:30 | 000,000,000 | ---D | M] -- D:\Program Files\MSBuild
[2011/04/10 20:59:06 | 000,000,000 | ---D | M] -- D:\Program Files\NVIDIA Corporation
[2011/04/28 12:28:08 | 000,000,000 | ---D | M] -- D:\Program Files\Rainmeter
[2009/07/14 06:52:30 | 000,000,000 | ---D | M] -- D:\Program Files\Reference Assemblies
[2011/04/18 20:03:12 | 000,000,000 | ---D | M] -- D:\Program Files\S.A.D
[2011/04/11 01:40:23 | 000,000,000 | ---D | M] -- D:\Program Files\Sandboxie
[2011/04/26 01:29:38 | 000,000,000 | ---D | M] -- D:\Program Files\ScreenSnapr
[2011/04/23 20:17:11 | 000,000,000 | R--D | M] -- D:\Program Files\Skype
[2011/04/10 19:32:10 | 000,000,000 | ---D | M] -- D:\Program Files\Sun
[2011/05/04 20:05:43 | 000,000,000 | ---D | M] -- D:\Program Files\SwiftKit
[2011/04/10 19:25:18 | 000,000,000 | ---D | M] -- D:\Program Files\TeamViewer
[2011/04/11 00:59:16 | 000,000,000 | ---D | M] -- D:\Program Files\Trend Micro
[2011/04/22 03:42:08 | 000,000,000 | ---D | M] -- D:\Program Files\UltraVPN
[2009/07/14 06:53:23 | 000,000,000 | -H-D | M] -- D:\Program Files\Uninstall Information
[2011/04/10 19:30:23 | 000,000,000 | ---D | M] -- D:\Program Files\uTorrent
[2011/04/25 22:44:11 | 000,000,000 | ---D | M] -- D:\Program Files\Winamp
[2009/07/14 06:56:49 | 000,000,000 | ---D | M] -- D:\Program Files\Windows Defender
[2009/07/14 09:50:04 | 000,000,000 | ---D | M] -- D:\Program Files\Windows Journal
[2011/04/25 23:11:52 | 000,000,000 | ---D | M] -- D:\Program Files\Windows Live
[2011/04/25 23:09:08 | 000,000,000 | ---D | M] -- D:\Program Files\Windows Live SkyDrive
[2011/04/10 21:07:29 | 000,000,000 | ---D | M] -- D:\Program Files\Windows Mail
[2011/04/10 21:07:23 | 000,000,000 | ---D | M] -- D:\Program Files\Windows Media Player
[2009/07/14 06:52:30 | 000,000,000 | ---D | M] -- D:\Program Files\Windows NT
[2009/07/14 06:56:49 | 000,000,000 | ---D | M] -- D:\Program Files\Windows Photo Viewer
[2009/07/14 06:52:32 | 000,000,000 | ---D | M] -- D:\Program Files\Windows Portable Devices
[2009/07/14 06:56:49 | 000,000,000 | ---D | M] -- D:\Program Files\Windows Sidebar
[2011/04/30 19:11:25 | 000,000,000 | ---D | M] -- D:\Program Files\WinPcap
[2011/04/10 19:58:46 | 000,000,000 | ---D | M] -- D:\Program Files\WinRAR
[2011/05/04 12:47:47 | 000,000,000 | ---D | M] -- D:\Program Files\Xvid
[2011/04/21 14:07:11 | 000,000,000 | ---D | M] -- D:\Program Files\Zone Labs
[2011/04/30 19:11:25 | 000,000,000 | ---D | M] -- D:\Program Files\ZoneAlarm_Security
[2011/04/11 00:50:41 | 000,000,000 | ---D | M] -- D:\Program Files\ZScreen
[color=#A23BEC]< %appdata%\*.* >[/color]
[2011/04/28 02:36:54 | 000,000,117 | ---- | M] () -- D:\Users\-\AppData\Roaming\RSBot_Accounts.ini
[2011/05/04 19:16:36 | 000,000,013 | ---- | M] () -- D:\Users\-\AppData\Roaming\RSBuddy Login.ini
[2011/05/03 21:48:39 | 000,000,352 | ---- | M] () -- D:\Users\-\AppData\Roaming\RSBuddy_memogodfather.ini
[2011/05/03 23:46:54 | 000,000,077 | ---- | M] () -- D:\Users\-\AppData\Roaming\RSBuddy_yerkid.ini
[2011/04/12 18:23:51 | 000,020,023 | ---- | M] () -- D:\Users\-\AppData\Roaming\UserTile.png
[color=#A23BEC]< MD5 for: AGP440.SYS >[/color]
[2009/07/14 03:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- D:\Windows\System32\drivers\AGP440.sys
[2009/07/14 03:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- D:\Windows\System32\DriverStore\FileRepository\machine.inf_x86_neutral_65848c2d7375a720\AGP440.sys
[2009/07/14 03:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- D:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_b9e9435f20046eeb\AGP440.sys
[color=#A23BEC]< MD5 for: ATAPI.SYS >[/color]
[2009/07/14 03:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- D:\Windows\System32\drivers\atapi.sys
[2009/07/14 03:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- D:\Windows\System32\DriverStore\FileRepository\mshdc.inf_x86_neutral_f64b9c35a3a5be81\atapi.sys
[2009/07/14 03:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- D:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_dd0e7e3d82dd640d\atapi.sys
[color=#A23BEC]< MD5 for: CNGAUDIT.DLL >[/color]
[2009/07/14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- D:\Windows\System32\cngaudit.dll
[2009/07/14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- D:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_e83a414890e8132b\cngaudit.dll
[color=#A23BEC]< MD5 for: DISK.SYS >[/color]
[2009/07/14 03:20:27 | 000,057,424 | ---- | M] (Microsoft Corporation) MD5=565003F326F99802E68CA78F2A68E9FF -- D:\Windows\System32\drivers\disk.sys
[2009/07/14 03:20:27 | 000,057,424 | ---- | M] (Microsoft Corporation) MD5=565003F326F99802E68CA78F2A68E9FF -- D:\Windows\System32\DriverStore\FileRepository\disk.inf_x86_neutral_b431b61a11f8df6c\disk.sys
[2009/07/14 03:20:27 | 000,057,424 | ---- | M] (Microsoft Corporation) MD5=565003F326F99802E68CA78F2A68E9FF -- D:\Windows\winsxs\x86_disk.inf_31bf3856ad364e35_6.1.7600.16385_none_f99cd807d58018cb\disk.sys
[color=#A23BEC]< MD5 for: IASTORV.SYS >[/color]
[2009/07/14 03:20:36 | 000,332,352 | ---- | M] (Intel Corporation) MD5=934AF4D7C5F457B9F0743F4299B77B67 -- D:\Windows\System32\drivers\iaStorV.sys
[2009/07/14 03:20:36 | 000,332,352 | ---- | M] (Intel Corporation) MD5=934AF4D7C5F457B9F0743F4299B77B67 -- D:\Windows\System32\DriverStore\FileRepository\iastorv.inf_x86_neutral_18cccb83b34e1453\iaStorV.sys
[2009/07/14 03:20:36 | 000,332,352 | ---- | M] (Intel Corporation) MD5=934AF4D7C5F457B9F0743F4299B77B67 -- D:\Windows\winsxs\x86_iastorv.inf_31bf3856ad364e35_6.1.7600.16385_none_aee7a89be91b9000\iaStorV.sys
[color=#A23BEC]< MD5 for: NETLOGON.DLL >[/color]
[2009/07/14 03:16:02 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 -- D:\Windows\System32\netlogon.dll
[2009/07/14 03:16:02 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 -- D:\Windows\winsxs\x86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7600.16385_none_fd8e0d66994d7dc8\netlogon.dll
[color=#A23BEC]< MD5 for: NVSTOR.SYS >[/color]
[2009/07/14 03:20:44 | 000,142,416 | ---- | M] (NVIDIA Corporation) MD5=C99F251A5DE63C6F129CF71933ACED0F -- D:\Windows\System32\drivers\nvstor.sys
[2009/07/14 03:20:44 | 000,142,416 | ---- | M] (NVIDIA Corporation) MD5=C99F251A5DE63C6F129CF71933ACED0F -- D:\Windows\System32\DriverStore\FileRepository\nvraid.inf_x86_neutral_5bde3fe2945bce9e\nvstor.sys
[2009/07/14 03:20:44 | 000,142,416 | ---- | M] (NVIDIA Corporation) MD5=C99F251A5DE63C6F129CF71933ACED0F -- D:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.1.7600.16385_none_39b1194b205239d8\nvstor.sys
[color=#A23BEC]< MD5 for: SCECLI.DLL >[/color]
[2009/07/14 03:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- D:\Windows\System32\scecli.dll
[2009/07/14 03:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- D:\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_37e4387f3a6f0483\scecli.dll
[color=#A23BEC]< MD5 for: USBSTOR.SYS >[/color]
[2009/07/14 01:51:19 | 000,074,752 | ---- | M] (Microsoft Corporation) MD5=D8889D56E0D27E57ED4591837FE71D27 -- D:\Windows\System32\drivers\USBSTOR.SYS
[2009/07/14 01:51:19 | 000,074,752 | ---- | M] (Microsoft Corporation) MD5=D8889D56E0D27E57ED4591837FE71D27 -- D:\Windows\System32\DriverStore\FileRepository\usbstor.inf_x86_neutral_83027f5d5b2468d3\USBSTOR.SYS
[2009/07/14 01:51:19 | 000,074,752 | ---- | M] (Microsoft Corporation) MD5=D8889D56E0D27E57ED4591837FE71D27 -- D:\Windows\winsxs\x86_usbstor.inf_31bf3856ad364e35_6.1.7600.16385_none_485ca4d9f926b0b4\USBSTOR.SYS
[color=#A23BEC]< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >[/color]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2011-04-30 19:45:01
[color=#E56717]========== Alternate Data Streams ==========[/color]
@Alternate Data Stream - 12 bytes -> D:\Windows\System32:{DA6227CB-326B-4B4D-9A81-04B61F1538DD}
< End of report >