|
Log-Analyse und Auswertung: Ich soll 50€ bezahlen obwohl ich garkein virus drauf habeWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
15.11.2011, 12:50 | #1 |
| Ich soll 50€ bezahlen obwohl ich garkein virus drauf habe Hallo ich bin neu hier und habe ein problem. Wen ich meinem laptop mit dem internet verbinde Kommt nach etwa 5 minuten eune warnung das ich viruse drauf habe und ich soll 50€ bezahlen das sie entfernt werden und ich habe aber kein virus drauf antivir durch laufen lassen und so weiter. Wäre für hilfe sehr dankbar da ich grade mit meinem handy online bin. |
15.11.2011, 13:09 | #2 |
/// Malware-holic | Ich soll 50€ bezahlen obwohl ich garkein virus drauf habe was heißt genau "und so weiter"?
__________________Lade Dir bitte OTL von Oldtimer herunter und speichere es auf Deinem Desktop ( falls noch nicht vorhanden)
nur weil avira nichts anzeigt heißt das nicht dass nichts da ist :-)
__________________ |
15.11.2011, 13:16 | #3 |
| Ich soll 50€ bezahlen obwohl ich garkein virus drauf habe Problem ist diese meldung kommt wen ich mein laptop mit internet verbinde 5minuten danach.
__________________Und dan kann ich nichts mehr machen und muss ihn neu starten aber ich probiere es mal |
15.11.2011, 13:28 | #4 |
| Ich soll 50€ bezahlen obwohl ich garkein virus drauf habe So habe es geschaft es scannt grade werde dan sobald es fertig ist das ergebnis posten |
15.11.2011, 13:29 | #5 |
/// Malware-holic | Ich soll 50€ bezahlen obwohl ich garkein virus drauf habe jo, trenne die internet verbindung während des scans, vllt kommt das fenster dann nicht.
__________________ -Verdächtige mails bitte an uns zur Analyse weiterleiten: markusg.trojaner-board@web.de Weiterleiten Anleitung: http://markusg.trojaner-board.de Mails bitte vorerst nach obiger Anleitung an markusg.trojaner-board@web.de Weiterleiten Wenn Ihr uns unterstützen möchtet |
15.11.2011, 13:33 | #6 |
| Ich soll 50€ bezahlen obwohl ich garkein virus drauf habe OTL Logfile: Code:
ATTFilter OTL logfile created on: 15.11.2011 13:27:14 - Run 1 OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\Incik\Desktop 64bit- Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 4,00 Gb Total Physical Memory | 2,28 Gb Available Physical Memory | 57,17% Memory free 7,99 Gb Paging File | 5,81 Gb Available in Paging File | 72,79% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 421,81 Gb Total Space | 295,44 Gb Free Space | 70,04% Space Free | Partition Type: NTFS Drive D: | 29,00 Gb Total Space | 28,10 Gb Free Space | 96,93% Space Free | Partition Type: NTFS Computer Name: INCIK-PC | User Name: Incik | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Processes (SafeList) ========== PRC - C:\Users\Incik\Desktop\OTL.exe (OldTimer Tools) PRC - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd) PRC - C:\Windows\SysWOW64\PnkBstrA.exe () PRC - C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) PRC - C:\Program Files (x86)\Linkury\Linkury.exe (Linkury) PRC - C:\Program Files (x86)\uTorrent\uTorrent.exe (BitTorrent, Inc.) PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG) PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG) PRC - C:\Program Files (x86)\o2\Mobile Connection Manager\ImpWiFiSvc.exe (Telefónica I+D) PRC - C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) PRC - C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe (Lenovo) PRC - C:\Users\Incik\AppData\Roaming\Microsoft\svhcost.exe () PRC - C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeySupport.exe () ========== Modules (No Company Name) ========== MOD - C:\windows\assembly\GAC_32\System.Data.SQLite\1.0.66.0__db937bc2d44ff139\System.Data.SQLite.dll () MOD - C:\windows\assembly\GAC\Microsoft.mshtml\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.mshtml.dll () MOD - C:\windows\assembly\GAC_MSIL\Interop.SHDocVw\1.1.0.0__84542ff99aed6a4d\Interop.SHDocVw.dll () MOD - C:\Program Files (x86)\Mozilla Firefox\mozjs.dll () MOD - C:\Program Files (x86)\Linkury\Linkury.Resources.FilesManager.dll () MOD - C:\Program Files (x86)\Linkury\Linkury.GUI.Docking.dll () MOD - C:\Program Files (x86)\Linkury\MACTrackBarLib.dll () MOD - C:\windows\assembly\NativeImages_v2.0.50727_32\CustomMarshalers\2e8bbdf2a971ffe1ba403c620989954c\CustomMarshalers.ni.dll () MOD - C:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Services\f28bd40026e640601964b2b0bf38a6f0\System.Web.Services.ni.dll () MOD - C:\windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\c6211b345bc0c618d5669daae118a43a\System.EnterpriseServices.ni.dll () MOD - C:\windows\assembly\NativeImages_v2.0.50727_32\System.Transactions\6b2029e6f8913d6507ec608de3fa605c\System.Transactions.ni.dll () MOD - C:\windows\assembly\NativeImages_v2.0.50727_32\System.Data\86f429e0a23238cf277d464bd0433d86\System.Data.ni.dll () MOD - C:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\ad9c2f4737e1e07fa774af31a7d74235\System.Windows.Forms.ni.dll () MOD - C:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\eba4ec48e3f7f16864c6d96f510fafd9\System.Drawing.ni.dll () MOD - C:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml\155679a9c8991cc33f90d6b27bac1977\System.Xml.ni.dll () MOD - C:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\0bddc91cbf37d143f08f6684b2919566\System.Configuration.ni.dll () MOD - C:\windows\assembly\NativeImages_v2.0.50727_32\System\610374fef100556da252243e673ac64b\System.ni.dll () MOD - C:\windows\assembly\NativeImages_v2.0.50727_32\mscorlib\23bc3936180ff789f44259a211dfc7fc\mscorlib.ni.dll () MOD - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll () MOD - C:\Program Files (x86)\Lenovo\VeriFace\ChooseLang.dll () MOD - C:\Users\Incik\AppData\Roaming\Microsoft\svhcost.exe () MOD - C:\windows\assembly\GAC_MSIL\System.resources\2.0.0.0_de_b77a5c561934e089\System.resources.dll () MOD - C:\windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_de_b77a5c561934e089\mscorlib.resources.dll () MOD - C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeySupport.exe () MOD - C:\Program Files (x86)\Lenovo\Onekey Theater\WindowsApiHookDll32.dll () MOD - C:\Program Files (x86)\Lenovo\Onekey Theater\ActiveDetect32.dll () MOD - C:\windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll () MOD - C:\windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll () MOD - C:\windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll () ========== Win32 Services (SafeList) ========== SRV:64bit: - (UxTuneUp) -- C:\Windows\SysNative\uxtuneup.dll (TuneUp Software) SRV:64bit: - (AMD External Events Utility) -- C:\Windows\SysNative\atiesrxx.exe (AMD) SRV:64bit: - (AMD FUEL Service) -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (Advanced Micro Devices, Inc.) SRV:64bit: - (Lenovo ReadyComm ConnSvc) -- C:\Program Files\Lenovo\ReadyComm\ConnSvc.exe (Lenovo Group Limited) SRV:64bit: - (Lenovo ReadyComm AppSvc) -- C:\Program Files\Lenovo\ReadyComm\AppSvc.exe (Lenovo Group Limited) SRV - (PnkBstrA) -- C:\Windows\SysWOW64\PnkBstrA.exe () SRV - (Steam Client Service) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation) SRV - (AntiVirSchedulerService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) SRV - (AntiVirService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG) SRV - (TuneUp.UtilitiesSvc) -- C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe (TuneUp Software) SRV - (UxTuneUp) -- C:\Windows\SysWOW64\uxtuneup.dll (TuneUp Software) SRV - (TGCM_ImportWiFiSvc) -- C:\Program Files (x86)\o2\Mobile Connection Manager\ImpWiFiSvc.exe (Telefónica I+D) SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation) SRV - (IGRS) -- C:\Program Files (x86)\Lenovo\ReadyComm\common\IGRS.exe (Lenovo Group Limited) SRV - (ReadyComm.DirectRouter) -- C:\windows\SysWow64\IgrsSvcs.exe (Microsoft Corporation) SRV - (PS_MDP) -- C:\windows\SysWow64\IgrsSvcs.exe (Microsoft Corporation) SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation) ========== Driver Services (SafeList) ========== DRV:64bit: - (dtsoftbus01) -- C:\Windows\SysNative\drivers\dtsoftbus01.sys (DT Soft Ltd) DRV:64bit: - (avipbb) -- C:\Windows\SysNative\drivers\avipbb.sys (Avira GmbH) DRV:64bit: - (avgntflt) -- C:\Windows\SysNative\drivers\avgntflt.sys (Avira GmbH) DRV:64bit: - (avkmgr) -- C:\Windows\SysNative\drivers\avkmgr.sys (Avira GmbH) DRV:64bit: - (amdkmdag) -- C:\Windows\SysNative\drivers\atikmdag.sys (ATI Technologies Inc.) DRV:64bit: - (amdkmdap) -- C:\Windows\SysNative\drivers\atikmpag.sys (Advanced Micro Devices, Inc.) DRV:64bit: - (LMIRfsClientNP) -- C:\windows\SysNative\LMIRfsClientNP.dll (LogMeIn, Inc.) DRV:64bit: - (AtiHDAudioService) -- C:\Windows\SysNative\drivers\AtihdW76.sys (Advanced Micro Devices) DRV:64bit: - (LMIRfsDriver) -- C:\Windows\SysNative\drivers\LMIRfsDriver.sys (LogMeIn, Inc.) DRV:64bit: - (lmimirr) -- C:\Windows\SysNative\drivers\lmimirr.sys (LogMeIn, Inc.) DRV:64bit: - (massfilter) -- C:\Windows\SysNative\drivers\massfilter.sys (MBB Incorporated) DRV:64bit: - (usbsmi) -- C:\Windows\SysNative\drivers\SMIksdrv.sys (SMI) DRV:64bit: - (huawei_enumerator) -- C:\Windows\SysNative\drivers\ew_jubusenum.sys (Huawei Technologies Co., Ltd.) DRV:64bit: - (ewusbnet) -- C:\Windows\SysNative\drivers\ewusbnet.sys (Huawei Technologies Co., Ltd.) DRV:64bit: - (hwdatacard) -- C:\Windows\SysNative\drivers\ewusbmdm.sys (Huawei Technologies Co., Ltd.) DRV:64bit: - (ew_hwusbdev) -- C:\Windows\SysNative\drivers\ew_hwusbdev.sys (Huawei Technologies Co., Ltd.) DRV:64bit: - (RSUSBSTOR) -- C:\Windows\SysNative\drivers\RtsUStor.sys (Realtek Semiconductor Corp.) DRV:64bit: - (ZTEusbser6k) -- C:\Windows\SysNative\drivers\ZTEusbser6k.sys (ZTE Incorporated) DRV:64bit: - (ZTEusbnmea) -- C:\Windows\SysNative\drivers\ZTEusbnmea.sys (ZTE Incorporated) DRV:64bit: - (ZTEusbmdm6k) -- C:\Windows\SysNative\drivers\ZTEusbmdm6k.sys (ZTE Incorporated) DRV:64bit: - (L1C) -- C:\Windows\SysNative\drivers\L1C62x64.sys (Atheros Communications, Inc.) DRV:64bit: - (amdiox64) -- C:\Windows\SysNative\drivers\amdiox64.sys (Advanced Micro Devices) DRV:64bit: - (BCM43XX) -- C:\Windows\SysNative\drivers\BCMWL664.SYS (Broadcom Corporation) DRV:64bit: - (AtiHdmiService) -- C:\Windows\SysNative\drivers\AtiHdmi.sys (ATI Technologies, Inc.) DRV:64bit: - (Huawei) -- C:\Windows\SysNative\drivers\ewdcsc.sys (Huawei Tech. Co., Ltd.) DRV:64bit: - (LHDmgr) -- C:\Windows\SysNative\drivers\LhdX64.sys (Lenovo.) DRV:64bit: - (SynTP) -- C:\Windows\SysNative\drivers\SynTP.sys (Synaptics Incorporated) DRV:64bit: - (ACPIVPC) -- C:\Windows\SysNative\drivers\AcpiVpc.sys (Lenovo Corporation) DRV:64bit: - (AtiPcie) AMD PCI Express (3GIO) -- C:\Windows\SysNative\drivers\AtiPcie.sys (Advanced Micro Devices Inc.) DRV:64bit: - (xusb21) -- C:\Windows\SysNative\drivers\xusb21.sys (Microsoft Corporation) DRV:64bit: - (wsvd) -- C:\Windows\SysNative\drivers\wsvd.sys (CyberLink) DRV:64bit: - (wdmirror) -- C:\Windows\SysNative\drivers\WDMirror.sys (Lenovo) DRV:64bit: - (Bridge0) -- C:\Windows\SysNative\drivers\WDBridge.sys (Lenovo) DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices) DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices) DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.) DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation) DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company) DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology) DRV:64bit: - (igfx) -- C:\Windows\SysNative\drivers\igdkmd64.sys (Intel Corporation) DRV:64bit: - (netw5v64) Intel(R) -- C:\Windows\SysNative\drivers\netw5v64.sys (Intel Corporation) DRV:64bit: - (k57nd60a) Broadcom NetLink (TM) -- C:\Windows\SysNative\drivers\k57nd60a.sys (Broadcom Corporation) DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation) DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation) DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation) DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.) DRV:64bit: - (hamachi) -- C:\Windows\SysNative\drivers\hamachi.sys (LogMeIn, Inc.) DRV:64bit: - (massfilter_hs) -- C:\Windows\SysNative\drivers\massfilter_hs.sys (ZTE Incorporated) DRV:64bit: - (WimFltr) -- C:\Windows\SysNative\drivers\WimFltr.sys (Microsoft Corporation) DRV - (TuneUpUtilitiesDrv) -- C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesDriver64.sys (TuneUp Software) DRV - (AODDriver4.01) -- C:\Programme\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys (Advanced Micro Devices) DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = hxxp://start.facemoods.com/?a=ddrnw&s={searchTerms}&f=4 IE - HKLM\..\URLSearchHook: - No CLSID value found IE - HKLM\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - No CLSID value found IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = hxxp://cloud-search.linkury.com/results.htm?cx=partner-pub-7890126930977991:1926905636&cof=FORID:11&q={searchTerms}&sa=Search&siteurl=search.linkury.com IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = hxxp://cloud-search.linkury.com/results.htm?cx=partner-pub-7890126930977991:1926905636&cof=FORID:11&q={searchTerms}&sa=Search&siteurl=search.linkury.com IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Google IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = hxxp://cloud-search.linkury.com/results.htm?cx=partner-pub-7890126930977991:1926905636&cof=FORID:11&q={searchTerms}&sa=Search&siteurl=search.linkury.com IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = hxxp://cloud-search.linkury.com/results.htm?cx=partner-pub-7890126930977991:1926905636&cof=FORID:11&q={searchTerms}&sa=Search&siteurl=search.linkury.com IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 ========== FireFox ========== FF - prefs.js..browser.startup.homepage: "www.google.de" FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\SysWOW64\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@esn.me/esnsonar,version=0.70.0: C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.0\npesnsonar.dll File not found FF - HKLM\Software\MozillaPlugins\@esn.me/esnsonar,version=0.70.4: C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF - HKLM\Software\MozillaPlugins\@esn/esnlaunch,version=1.102.0: C:\Program Files (x86)\Battlelog Web Plugins\1.102.0\npesnlaunch.dll (ESN Social Software AB) FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@ngm.nexoneu.com/NxGame: C:\ProgramData\NexonEU\NGM\npNxGameeu.dll File not found FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll File not found FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=12.0.1.647: C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=12.0.1.647: C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=12.0.1.652: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=12.0.1.652: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=12.0.1.647: C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.) FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Incik\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.) FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Incik\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2011.07.15 15:34:46 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011.11.15 10:23:01 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011.10.22 00:27:47 | 000,000,000 | ---D | M] [2011.11.15 10:23:44 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Incik\AppData\Roaming\mozilla\Extensions [2011.11.15 10:23:01 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions [2011.10.22 00:27:50 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0017-0000-0001-ABCDEFFEDCBA} [2011.11.05 08:10:35 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll [2011.04.15 13:20:18 | 001,034,544 | ---- | M] (BitComet) -- C:\Program Files (x86)\mozilla firefox\plugins\npBitCometAgent.dll [2011.10.22 00:27:29 | 000,611,224 | ---- | M] (Oracle Corporation) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll [2011.11.05 04:38:54 | 000,001,392 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml [2011.07.18 10:46:43 | 000,002,423 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\babylon.xml [2011.11.05 04:32:18 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml [2011.11.05 04:38:54 | 000,001,153 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml [2011.07.30 14:10:23 | 000,002,048 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\fcmdSrch.xml [2011.11.05 04:38:54 | 000,006,805 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml [2011.11.05 04:38:54 | 000,001,178 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-de.xml [2011.11.05 04:38:54 | 000,001,105 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml ========== Chrome ========== CHR - default_search_provider: Linkury Smartbar Search (Enabled) CHR - default_search_provider: search_url = hxxp://cloud-search.linkury.com/results.htm?cx=partner-pub-7890126930977991:5731629158&cof=FORID:11&q={searchTerms}&sa=Search&siteurl=search.linkury.com CHR - default_search_provider: suggest_url = CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Incik\AppData\Local\Google\Chrome\Application\15.0.874.106\gcswf32.dll CHR - plugin: Shockwave Flash (Enabled) = C:\windows\SysWOW64\Macromed\Flash\NPSWF32.dll CHR - plugin: Java Deployment Toolkit 6.0.260.3 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll CHR - plugin: Java(TM) Platform SE 6 U26 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrl.dll CHR - plugin: RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) (Enabled) = C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll CHR - plugin: RealPlayer Version Plugin (Enabled) = C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpjplug.dll CHR - plugin: RealNetworks(tm) RealPlayer Chrome Background Extension Plug-In (32-bit) (Enabled) = C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll CHR - plugin: RealPlayer(tm) HTML5VideoShim Plug-In (32-bit) (Enabled) = C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer CHR - plugin: Native Client (Enabled) = C:\Users\Incik\AppData\Local\Google\Chrome\Application\15.0.874.106\ppGoogleNaClPluginChrome.dll CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\Incik\AppData\Local\Google\Chrome\Application\15.0.874.106\pdf.dll CHR - plugin: Babylon Chrome Plugin (Enabled) = C:\Users\Incik\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.0_0\BabylonChromePI.dll CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll CHR - plugin: BitCometAgent (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npBitCometAgent.dll CHR - plugin: Pando Web Plugin (Enabled) = C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll CHR - plugin: RealJukebox NS Plugin (Enabled) = C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprjplug.dll CHR - plugin: Windows Live\\u0099 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll CHR - plugin: Google Update (Enabled) = C:\Users\Incik\AppData\Local\Google\Update\1.3.21.69\npGoogleUpdate3.dll CHR - plugin: Default Plug-in (Enabled) = default_plugin CHR - Extension: RealPlayer HTML5Video Downloader Extension = C:\Users\Incik\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk\1.4_0\ CHR - Extension: YouTube Shuffle = C:\Users\Incik\AppData\Local\Google\Chrome\User Data\Default\Extensions\kpfbdfbedemcgpggnhlamfdhicoplhkg\0.1.0.6_0\ O1 HOSTS File: ([2011.10.11 10:25:27 | 000,000,934 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts O1 - Hosts: 174.140.167.152 status.wow-europe.com O1 - Hosts: 174.140.167.152 launcher.worldofwarcraft.com O2:64bit: - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) O2:64bit: - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. O3 - HKLM\..\Toolbar: (no name) - {DFEFCDEE-CF1A-4FC8-88AD-48514E463B27} - No CLSID value found. O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found. O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {DFEFCDEE-CF1A-4FC8-88AD-48514E463B27} - No CLSID value found. O4:64bit: - HKLM..\Run: [Energy Management] C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe (Lenovo (Beijing) Limited) O4:64bit: - HKLM..\Run: [EnergyUtility] C:\Program Files (x86)\Lenovo\Energy Management\utility.exe (Lenovo(beijing) Limited) O4:64bit: - HKLM..\Run: [OnekeyStudio] C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeyStudio.exe (Lenovo) O4:64bit: - HKLM..\Run: [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG) O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.) O4 - HKLM..\Run: [VeriFaceManager] C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe (Lenovo) O4 - HKCU..\Run: [{0963F51F-8245-11DF-993F-806E6F6E6963}] C:\Users\Incik\AppData\Roaming\Microsoft\svhcost.exe () O4 - HKCU..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd) O4 - HKCU..\Run: [EADM] C:\Program Files (x86)\Origin\Origin.exe (Electronic Arts) O4 - HKCU..\Run: [Linkury Chrome Smartbar] C:\Program Files (x86)\Linkury\Linkury.exe (Linkury) O4 - HKCU..\Run: [uTorrent] C:\Program Files (x86)\uTorrent\uTorrent.exe (BitTorrent, Inc.) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000008 [] - C:\Programme\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.) O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Programme\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.) O1364bit: - gopher Prefix: missing O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_01-windows-i586.cab (Java Plug-in 10.1.0) O16 - DPF: {CAFEEFAC-0017-0000-0001-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_01-windows-i586.cab (Java Plug-in 1.7.0_01) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_01-windows-i586.cab (Reg Error: Key error.) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_01-windows-i586.cab (Java Plug-in 10.1.0) O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26) O16 - DPF: {CAFEEFAC-0017-0000-0001-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_01-windows-i586.cab (Java Plug-in 1.7.0_01) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_01-windows-i586.cab (Java Plug-in 1.7.0_01) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.178.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{AAF7084D-D449-4E34-BB2F-F2BA7EAB8FF6}: DhcpNameServer = 192.168.178.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{FD218304-C636-4836-922B-83CAA346B365}: DhcpNameServer = 192.168.178.1 O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found O18:64bit: - Protocol\Handler\wlpg - No CLSID value found O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation) O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation) O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation) O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20 - HKLM Winlogon: Shell - (explorer.exe) -C:\windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (userinit.exe) -C:\windows\SysWow64\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O32 - HKLM CDRom: AutoRun - 1 O33 - MountPoints2\{080687ec-db76-11e0-ba69-88ae1d3625f3}\Shell - "" = AutoRun O33 - MountPoints2\{080687ec-db76-11e0-ba69-88ae1d3625f3}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{2ead9dd4-d97d-11e0-ba46-88ae1d3625f3}\Shell - "" = AutoRun O33 - MountPoints2\{2ead9dd4-d97d-11e0-ba46-88ae1d3625f3}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{2ead9de1-d97d-11e0-ba46-88ae1d3625f3}\Shell - "" = AutoRun O33 - MountPoints2\{2ead9de1-d97d-11e0-ba46-88ae1d3625f3}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{3ecafe33-aa5a-11e0-a69f-88ae1d3625f3}\Shell - "" = AutoRun O33 - MountPoints2\{3ecafe33-aa5a-11e0-a69f-88ae1d3625f3}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{3ecafe42-aa5a-11e0-a69f-88ae1d3625f3}\Shell - "" = AutoRun O33 - MountPoints2\{3ecafe42-aa5a-11e0-a69f-88ae1d3625f3}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{3ecafe58-aa5a-11e0-a69f-88ae1d3625f3}\Shell - "" = AutoRun O33 - MountPoints2\{3ecafe58-aa5a-11e0-a69f-88ae1d3625f3}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{3ecafe63-aa5a-11e0-a69f-88ae1d3625f3}\Shell - "" = AutoRun O33 - MountPoints2\{3ecafe63-aa5a-11e0-a69f-88ae1d3625f3}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{3ecafe71-aa5a-11e0-a69f-88ae1d3625f3}\Shell - "" = AutoRun O33 - MountPoints2\{3ecafe71-aa5a-11e0-a69f-88ae1d3625f3}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{41b2ea5a-abb7-11e0-b5ea-001e101fe5e1}\Shell - "" = AutoRun O33 - MountPoints2\{41b2ea5a-abb7-11e0-b5ea-001e101fe5e1}\Shell\AutoRun\command - "" = G:\AutoRun.exe O33 - MountPoints2\{41b2ea67-abb7-11e0-b5ea-001e101fe5e1}\Shell - "" = AutoRun O33 - MountPoints2\{41b2ea67-abb7-11e0-b5ea-001e101fe5e1}\Shell\AutoRun\command - "" = G:\AutoRun.exe O33 - MountPoints2\{4855958c-aba6-11e0-9662-88ae1d3625f3}\Shell - "" = AutoRun O33 - MountPoints2\{4855958c-aba6-11e0-9662-88ae1d3625f3}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\E\Shell - "" = AutoRun O33 - MountPoints2\E\Shell\AutoRun\command - "" = E:\AutoRun.exe O35:64bit: - HKLM\..comfile [open] -- "%1" %* O35:64bit: - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %* O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* ========== Files/Folders - Created Within 30 Days ========== [2011.11.15 13:22:35 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Users\Incik\Desktop\OTL.exe [2011.11.13 21:37:26 | 000,000,000 | ---D | C] -- C:\Users\Incik\AppData\Local\Linkury [2011.11.13 21:37:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Linkury [2011.11.13 21:37:24 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Linkury [2011.11.13 21:36:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite [2011.11.13 21:35:43 | 000,279,616 | ---- | C] (DT Soft Ltd) -- C:\windows\SysNative\drivers\dtsoftbus01.sys [2011.11.13 21:35:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DAEMON Tools Lite [2011.11.13 21:35:18 | 000,000,000 | ---D | C] -- C:\Users\Incik\AppData\Roaming\DAEMON Tools Lite [2011.11.13 21:35:15 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Lite [2011.11.13 21:29:47 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\DAEMON Tools Images [2011.11.13 21:27:33 | 000,000,000 | ---D | C] -- C:\Users\Incik\AppData\Roaming\DAEMON Tools Pro [2011.11.13 21:27:33 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Pro [2011.11.11 00:42:39 | 000,000,000 | ---D | C] -- C:\Users\Incik\AppData\Roaming\ImgBurn [2011.11.11 00:41:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn [2011.11.11 00:41:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ImgBurn [2011.11.11 00:40:14 | 000,000,000 | ---D | C] -- C:\Users\Incik\Desktop\Windows 7 [2011.11.10 18:37:27 | 000,000,000 | ---D | C] -- C:\Users\Incik\AppData\Local\ESN Sonar [2011.11.10 00:42:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 3 [2011.11.10 00:41:48 | 000,527,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAudio2_7.dll [2011.11.10 00:41:48 | 000,518,488 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAudio2_7.dll [2011.11.10 00:41:48 | 000,077,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAPOFX1_5.dll [2011.11.10 00:41:48 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAPOFX1_5.dll [2011.11.10 00:41:47 | 000,239,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine3_7.dll [2011.11.10 00:41:47 | 000,176,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine3_7.dll [2011.11.10 00:41:46 | 002,526,056 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_43.dll [2011.11.10 00:41:46 | 002,106,216 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_43.dll [2011.11.10 00:41:45 | 001,907,552 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dcsx_43.dll [2011.11.10 00:41:45 | 001,868,128 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dcsx_43.dll [2011.11.10 00:41:45 | 000,276,832 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx11_43.dll [2011.11.10 00:41:45 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx11_43.dll [2011.11.10 00:41:44 | 000,511,328 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_43.dll [2011.11.10 00:41:44 | 000,470,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_43.dll [2011.11.10 00:41:43 | 002,401,112 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DX9_43.dll [2011.11.10 00:41:43 | 001,998,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DX9_43.dll [2011.11.10 00:41:42 | 000,530,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAudio2_6.dll [2011.11.10 00:41:42 | 000,528,216 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAudio2_6.dll [2011.11.10 00:41:42 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine3_6.dll [2011.11.10 00:41:42 | 000,176,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine3_6.dll [2011.11.10 00:41:42 | 000,078,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAPOFX1_4.dll [2011.11.10 00:41:42 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAPOFX1_4.dll [2011.11.10 00:41:41 | 000,517,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAudio2_5.dll [2011.11.10 00:41:41 | 000,515,416 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAudio2_5.dll [2011.11.10 00:41:41 | 000,024,920 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\X3DAudio1_7.dll [2011.11.10 00:41:41 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\X3DAudio1_7.dll [2011.11.10 00:41:40 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine3_5.dll [2011.11.10 00:41:40 | 000,176,968 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine3_5.dll [2011.11.10 00:41:39 | 002,582,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_42.dll [2011.11.10 00:41:39 | 001,974,616 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_42.dll [2011.11.10 00:41:37 | 005,554,512 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dcsx_42.dll [2011.11.10 00:41:37 | 005,501,792 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dcsx_42.dll [2011.11.10 00:41:36 | 000,523,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_42.dll [2011.11.10 00:41:36 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_42.dll [2011.11.10 00:41:36 | 000,285,024 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx11_42.dll [2011.11.10 00:41:36 | 000,235,344 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx11_42.dll [2011.11.10 00:41:34 | 002,475,352 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DX9_42.dll [2011.11.10 00:41:34 | 001,892,184 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DX9_42.dll [2011.11.10 00:41:32 | 002,430,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_41.dll [2011.11.10 00:41:32 | 001,846,632 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_41.dll [2011.11.10 00:41:32 | 000,520,544 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_41.dll [2011.11.10 00:41:32 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_41.dll [2011.11.10 00:41:30 | 005,425,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DX9_41.dll [2011.11.10 00:41:30 | 004,178,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DX9_41.dll [2011.11.10 00:41:29 | 000,521,560 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAudio2_4.dll [2011.11.10 00:41:29 | 000,517,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAudio2_4.dll [2011.11.10 00:41:29 | 000,235,352 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine3_4.dll [2011.11.10 00:41:29 | 000,174,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine3_4.dll [2011.11.10 00:41:29 | 000,073,544 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAPOFX1_3.dll [2011.11.10 00:41:29 | 000,069,464 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAPOFX1_3.dll [2011.11.10 00:41:28 | 000,024,920 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\X3DAudio1_6.dll [2011.11.10 00:41:28 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\X3DAudio1_6.dll [2011.11.10 00:41:26 | 002,605,920 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_40.dll [2011.11.10 00:41:26 | 002,036,576 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_40.dll [2011.11.10 00:41:26 | 000,519,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_40.dll [2011.11.10 00:41:26 | 000,452,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_40.dll [2011.11.10 00:41:24 | 005,631,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DX9_40.dll [2011.11.10 00:41:24 | 004,379,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DX9_40.dll [2011.11.10 00:41:23 | 000,518,480 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAudio2_3.dll [2011.11.10 00:41:23 | 000,514,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAudio2_3.dll [2011.11.10 00:41:23 | 000,235,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine3_3.dll [2011.11.10 00:41:23 | 000,175,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine3_3.dll [2011.11.10 00:41:23 | 000,074,576 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAPOFX1_2.dll [2011.11.10 00:41:23 | 000,070,992 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAPOFX1_2.dll [2011.11.10 00:41:23 | 000,025,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\X3DAudio1_5.dll [2011.11.10 00:41:23 | 000,023,376 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\X3DAudio1_5.dll [2011.11.10 00:41:22 | 000,513,544 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAudio2_2.dll [2011.11.10 00:41:22 | 000,509,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAudio2_2.dll [2011.11.10 00:41:22 | 000,072,200 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAPOFX1_1.dll [2011.11.10 00:41:22 | 000,068,616 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAPOFX1_1.dll [2011.11.10 00:41:21 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine3_2.dll [2011.11.10 00:41:21 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine3_2.dll [2011.11.10 00:41:20 | 001,942,552 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_39.dll [2011.11.10 00:41:20 | 001,493,528 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_39.dll [2011.11.10 00:41:20 | 000,540,688 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_39.dll [2011.11.10 00:41:20 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_39.dll [2011.11.10 00:41:18 | 004,992,520 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DX9_39.dll [2011.11.10 00:41:18 | 003,851,784 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DX9_39.dll [2011.11.10 00:41:18 | 000,511,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAudio2_1.dll [2011.11.10 00:41:18 | 000,507,400 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAudio2_1.dll [2011.11.10 00:41:18 | 000,068,104 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAPOFX1_0.dll [2011.11.10 00:41:18 | 000,065,032 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAPOFX1_0.dll [2011.11.10 00:41:17 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine3_1.dll [2011.11.10 00:41:17 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine3_1.dll [2011.11.10 00:41:17 | 000,028,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\X3DAudio1_4.dll [2011.11.10 00:41:17 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\X3DAudio1_4.dll [2011.11.10 00:41:15 | 001,941,528 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_38.dll [2011.11.10 00:41:15 | 001,491,992 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_38.dll [2011.11.10 00:41:15 | 000,540,688 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_38.dll [2011.11.10 00:41:15 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_38.dll [2011.11.10 00:41:14 | 004,991,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DX9_38.dll [2011.11.10 00:41:14 | 003,850,760 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DX9_38.dll [2011.11.10 00:41:13 | 000,489,480 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAudio2_0.dll [2011.11.10 00:41:13 | 000,479,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAudio2_0.dll [2011.11.10 00:41:13 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine3_0.dll [2011.11.10 00:41:13 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine3_0.dll [2011.11.10 00:41:12 | 000,028,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\X3DAudio1_3.dll [2011.11.10 00:41:12 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\X3DAudio1_3.dll [2011.11.10 00:41:11 | 001,860,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_37.dll [2011.11.10 00:41:11 | 001,420,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_37.dll [2011.11.10 00:41:11 | 000,529,424 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_37.dll [2011.11.10 00:41:11 | 000,462,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_37.dll [2011.11.10 00:41:10 | 004,910,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DX9_37.dll [2011.11.10 00:41:10 | 003,786,760 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DX9_37.dll [2011.11.10 00:41:09 | 000,411,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_10.dll [2011.11.10 00:41:09 | 000,267,272 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_10.dll [2011.11.10 00:41:07 | 002,006,552 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_36.dll [2011.11.10 00:41:07 | 001,374,232 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_36.dll [2011.11.10 00:41:07 | 000,508,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_36.dll [2011.11.10 00:41:07 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_36.dll [2011.11.10 00:41:05 | 005,081,608 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_36.dll [2011.11.10 00:41:05 | 003,734,536 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_36.dll [2011.11.10 00:41:05 | 000,411,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_9.dll [2011.11.10 00:41:05 | 000,267,112 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_9.dll [2011.11.10 00:41:03 | 001,985,904 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_35.dll [2011.11.10 00:41:03 | 001,358,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_35.dll [2011.11.10 00:41:03 | 000,508,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_35.dll [2011.11.10 00:41:03 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_35.dll [2011.11.10 00:41:01 | 005,073,256 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_35.dll [2011.11.10 00:41:00 | 000,409,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_8.dll [2011.11.10 00:41:00 | 000,266,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_8.dll [2011.11.10 00:41:00 | 000,021,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\X3DAudio1_2.dll [2011.11.10 00:41:00 | 000,017,928 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\X3DAudio1_2.dll [2011.11.10 00:40:59 | 001,401,200 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_34.dll [2011.11.10 00:40:59 | 001,124,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_34.dll [2011.11.10 00:40:59 | 000,506,728 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_34.dll [2011.11.10 00:40:59 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_34.dll [2011.11.10 00:40:57 | 004,496,232 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_34.dll [2011.11.10 00:40:57 | 003,497,832 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_34.dll [2011.11.10 00:40:56 | 000,403,304 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_7.dll [2011.11.10 00:40:56 | 000,261,480 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_7.dll [2011.11.10 00:40:56 | 000,107,368 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xinput1_3.dll [2011.11.10 00:40:56 | 000,081,768 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xinput1_3.dll [2011.11.10 00:40:55 | 001,400,176 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_33.dll [2011.11.10 00:40:55 | 001,123,696 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_33.dll [2011.11.10 00:40:55 | 000,506,728 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_33.dll [2011.11.10 00:40:55 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_33.dll [2011.11.10 00:40:53 | 004,494,184 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_33.dll [2011.11.10 00:40:53 | 003,495,784 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_33.dll [2011.11.10 00:40:52 | 000,393,576 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_6.dll [2011.11.10 00:40:52 | 000,390,424 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_5.dll [2011.11.10 00:40:52 | 000,255,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_6.dll [2011.11.10 00:40:52 | 000,251,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_5.dll [2011.11.10 00:40:51 | 000,469,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10.dll [2011.11.10 00:40:51 | 000,440,080 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10.dll [2011.11.10 00:40:49 | 000,364,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_4.dll [2011.11.10 00:40:49 | 000,237,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_4.dll [2011.11.10 00:40:49 | 000,017,688 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\x3daudio1_1.dll [2011.11.10 00:40:49 | 000,015,128 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\x3daudio1_1.dll [2011.11.10 00:40:48 | 003,977,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_31.dll [2011.11.10 00:40:48 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_31.dll [2011.11.10 00:40:47 | 000,363,288 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_3.dll [2011.11.10 00:40:47 | 000,354,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_2.dll [2011.11.10 00:40:47 | 000,236,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_3.dll [2011.11.10 00:40:47 | 000,230,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_2.dll [2011.11.10 00:40:47 | 000,083,736 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xinput1_2.dll [2011.11.10 00:40:47 | 000,062,744 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xinput1_2.dll [2011.11.10 00:40:46 | 000,083,664 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xinput1_1.dll [2011.11.10 00:40:46 | 000,062,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xinput1_1.dll [2011.11.10 00:40:45 | 000,352,464 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_1.dll [2011.11.10 00:40:45 | 000,229,584 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_1.dll [2011.11.10 00:40:39 | 003,927,248 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_30.dll [2011.11.10 00:40:39 | 002,388,176 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_30.dll [2011.11.10 00:40:38 | 000,355,536 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_0.dll [2011.11.10 00:40:38 | 000,230,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_0.dll [2011.11.10 00:40:38 | 000,016,592 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\x3daudio1_0.dll [2011.11.10 00:40:38 | 000,014,032 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\x3daudio1_0.dll [2011.11.10 00:40:37 | 003,830,992 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_29.dll [2011.11.10 00:40:37 | 002,332,368 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_29.dll [2011.11.10 00:40:35 | 003,815,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_28.dll [2011.11.10 00:40:35 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_28.dll [2011.11.10 00:40:34 | 003,807,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_27.dll [2011.11.10 00:40:34 | 002,319,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_27.dll [2011.11.10 00:40:33 | 003,767,504 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_26.dll [2011.11.10 00:40:33 | 002,297,552 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_26.dll [2011.11.10 00:40:31 | 003,823,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_25.dll [2011.11.10 00:40:31 | 002,337,488 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_25.dll [2011.11.10 00:40:29 | 003,544,272 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_24.dll [2011.11.10 00:40:29 | 002,222,800 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_24.dll [2011.11.09 21:29:00 | 000,000,000 | ---D | C] -- C:\Users\Incik\AppData\Roaming\Origin [2011.11.09 21:28:56 | 000,000,000 | ---D | C] -- C:\Users\Incik\AppData\Local\Origin [2011.11.09 21:28:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin [2011.11.09 21:28:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Origin [2011.11.09 21:28:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Origin [2011.11.05 20:54:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Blizzard Entertainment [2011.11.03 14:53:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ICQ6Toolbar [2011.11.03 14:53:19 | 000,000,000 | ---D | C] -- C:\ProgramData\ICQ [2011.11.03 13:02:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth [2011.11.03 13:01:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Google [2011.11.03 08:25:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexon [2011.10.29 01:15:06 | 000,000,000 | ---D | C] -- C:\Users\Incik\AppData\Local\{C0161CE2-791A-407B-924F-0DC3C3D2350F} [2011.10.29 01:14:44 | 000,000,000 | ---D | C] -- C:\Users\Incik\AppData\Local\{3A054A76-5EA5-4AE2-8525-76231F8F4898} [2011.10.25 15:08:22 | 000,000,000 | ---D | C] -- C:\Users\Incik\Documents\Battlefield 3 [2011.10.25 10:01:50 | 000,000,000 | ---D | C] -- C:\Users\Incik\Documents\Cross Fire [2011.10.25 10:01:50 | 000,000,000 | ---D | C] -- C:\CFLog [2011.10.24 01:10:56 | 000,000,000 | ---D | C] -- C:\windows\SysNative\Macromed [2011.10.22 17:39:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Solidshield [2011.10.22 11:48:54 | 000,000,000 | ---D | C] -- C:\Users\Incik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Domination [2011.10.22 11:48:38 | 000,000,000 | ---D | C] -- C:\Program Files\Uninstaller [2011.10.22 11:48:37 | 000,000,000 | ---D | C] -- C:\Program Files\saves [2011.10.22 11:48:37 | 000,000,000 | ---D | C] -- C:\Program Files\resources [2011.10.22 11:48:37 | 000,000,000 | ---D | C] -- C:\Program Files\maps [2011.10.22 00:34:06 | 000,627,600 | ---- | C] (Oracle Corporation) -- C:\windows\SysNative\deployJava1.dll [2011.10.22 00:34:06 | 000,252,296 | ---- | C] (Oracle Corporation) -- C:\windows\SysNative\javaws.exe [2011.10.22 00:34:06 | 000,188,808 | ---- | C] (Oracle Corporation) -- C:\windows\SysNative\javaw.exe [2011.10.22 00:34:06 | 000,188,808 | ---- | C] (Oracle Corporation) -- C:\windows\SysNative\java.exe [2011.10.22 00:33:50 | 000,000,000 | ---D | C] -- C:\Program Files\Java [2011.10.22 00:28:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java [2011.10.22 00:27:46 | 000,214,408 | ---- | C] (Oracle Corporation) -- C:\windows\SysWow64\javaws.exe [2011.10.22 00:27:46 | 000,173,960 | ---- | C] (Oracle Corporation) -- C:\windows\SysWow64\javaw.exe [2011.10.22 00:27:46 | 000,173,960 | ---- | C] (Oracle Corporation) -- C:\windows\SysWow64\java.exe [2011.10.21 09:18:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Domination [2011.10.21 09:18:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Domination [2011.10.18 18:44:06 | 000,000,000 | ---D | C] -- C:\Program Files\Mw2 [2011.10.17 02:20:11 | 000,000,000 | ---D | C] -- C:\Users\Incik\AppData\Roaming\Avira [2011.10.17 02:19:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira [2011.10.17 02:19:37 | 000,130,760 | ---- | C] (Avira GmbH) -- C:\windows\SysNative\drivers\avipbb.sys [2011.10.17 02:19:37 | 000,097,312 | ---- | C] (Avira GmbH) -- C:\windows\SysNative\drivers\avgntflt.sys [2011.10.17 02:19:37 | 000,027,760 | ---- | C] (Avira GmbH) -- C:\windows\SysNative\drivers\avkmgr.sys [2011.10.17 02:19:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Avira [2011.10.17 02:19:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Avira [2011.10.16 23:30:25 | 000,000,000 | ---D | C] -- C:\Users\Incik\Documents\Battlefield Play4Free [2011.10.16 21:59:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Desktop [1 C:\windows\SysWow64\*.tmp files -> C:\windows\SysWow64\*.tmp -> ] [1 C:\windows\*.tmp files -> C:\windows\*.tmp -> ] ========== Files - Modified Within 30 Days ========== [2011.11.15 13:22:39 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\Incik\Desktop\OTL.exe [2011.11.15 13:18:55 | 000,001,104 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job [2011.11.15 13:13:00 | 000,001,120 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-3451086374-2100226215-875216342-1001UA.job [2011.11.15 13:06:00 | 000,001,108 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job [2011.11.15 11:39:52 | 000,013,424 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2011.11.15 11:39:52 | 000,013,424 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2011.11.15 10:03:18 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat [2011.11.15 10:03:15 | 3217,211,392 | -HS- | M] () -- C:\hiberfil.sys [2011.11.15 09:39:25 | 000,000,000 | ---- | M] () -- C:\Users\Incik\AppData\Local\{71511D93-F984-45EF-9610-6F1E66E90421} [2011.11.15 09:22:10 | 000,000,000 | ---- | M] () -- C:\Users\Incik\AppData\Local\{72F87259-CFAB-4123-8167-78E21F3DBF6C} [2011.11.15 09:11:39 | 001,613,340 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI [2011.11.15 09:11:39 | 000,697,082 | ---- | M] () -- C:\windows\SysNative\perfh007.dat [2011.11.15 09:11:39 | 000,652,360 | ---- | M] () -- C:\windows\SysNative\perfh009.dat [2011.11.15 09:11:39 | 000,148,346 | ---- | M] () -- C:\windows\SysNative\perfc007.dat [2011.11.15 09:11:39 | 000,121,292 | ---- | M] () -- C:\windows\SysNative\perfc009.dat [2011.11.14 19:58:35 | 000,280,904 | ---- | M] () -- C:\windows\SysWow64\PnkBstrB.xtr [2011.11.14 19:58:35 | 000,280,904 | ---- | M] () -- C:\windows\SysWow64\PnkBstrB.exe [2011.11.14 18:51:03 | 000,280,904 | ---- | M] () -- C:\windows\SysWow64\PnkBstrB.ex0 [2011.11.14 15:13:00 | 000,001,068 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-3451086374-2100226215-875216342-1001Core.job [2011.11.13 21:36:21 | 000,001,910 | ---- | M] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk [2011.11.13 21:35:43 | 000,279,616 | ---- | M] (DT Soft Ltd) -- C:\windows\SysNative\drivers\dtsoftbus01.sys [2011.11.13 00:30:31 | 000,001,625 | ---- | M] () -- C:\Users\Incik\Desktop\Xpadder.ini [2011.11.13 00:30:30 | 000,002,123 | ---- | M] () -- C:\Users\Incik\Desktop\New Profile.xpadderprofile [2011.11.12 08:32:40 | 000,000,939 | ---- | M] () -- C:\Users\Public\Desktop\Origin.lnk [2011.11.11 00:51:33 | 000,000,017 | ---- | M] () -- C:\Users\Incik\AppData\Local\resmon.resmoncfg [2011.11.10 01:19:59 | 001,591,234 | ---- | M] () -- C:\windows\SysWow64\PerfStringBackup.INI [2011.11.10 00:42:32 | 000,001,130 | ---- | M] () -- C:\Users\Public\Desktop\Battlefield 3.lnk [2011.11.10 00:41:51 | 000,075,136 | ---- | M] () -- C:\windows\SysWow64\PnkBstrA.exe [2011.11.09 21:41:25 | 000,000,364 | ---- | M] () -- C:\Users\Incik\Desktop\BF3_German_registry.rar [2011.11.03 08:10:47 | 000,000,235 | ---- | M] () -- C:\windows\SysWow64\nxEuUninstall.bat [2011.10.25 11:35:05 | 000,000,177 | ---- | M] () -- C:\Users\Incik\Desktop\WoW.mfil [2011.10.22 11:48:38 | 000,004,438 | ---- | M] () -- C:\Program Files\.installationinformation [2011.10.22 11:47:24 | 005,641,216 | ---- | M] () -- C:\Users\Incik\Desktop\Domination_install_1.1.0.1(1).exe [2011.10.22 00:33:52 | 000,252,296 | ---- | M] (Oracle Corporation) -- C:\windows\SysNative\javaws.exe [2011.10.22 00:33:52 | 000,188,808 | ---- | M] (Oracle Corporation) -- C:\windows\SysNative\javaw.exe [2011.10.22 00:33:51 | 000,627,600 | ---- | M] (Oracle Corporation) -- C:\windows\SysNative\deployJava1.dll [2011.10.22 00:33:51 | 000,188,808 | ---- | M] (Oracle Corporation) -- C:\windows\SysNative\java.exe [2011.10.22 00:27:27 | 000,214,408 | ---- | M] (Oracle Corporation) -- C:\windows\SysWow64\javaws.exe [2011.10.22 00:27:27 | 000,173,960 | ---- | M] (Oracle Corporation) -- C:\windows\SysWow64\javaw.exe [2011.10.22 00:27:27 | 000,173,960 | ---- | M] (Oracle Corporation) -- C:\windows\SysWow64\java.exe [2011.10.22 00:27:26 | 000,544,656 | ---- | M] (Oracle Corporation) -- C:\windows\SysWow64\deployJava1.dll [2011.10.18 19:53:55 | 000,001,620 | ---- | M] () -- C:\Users\Incik\Desktop\Modern Warefare 2.lnk [2011.10.18 19:12:42 | 000,000,822 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk [2011.10.18 18:50:48 | 000,000,903 | ---- | M] () -- C:\Users\Public\Desktop\µTorrent.lnk [2011.10.17 02:19:57 | 000,001,954 | ---- | M] () -- C:\Users\Public\Desktop\Avira Control Center.lnk [1 C:\windows\SysWow64\*.tmp files -> C:\windows\SysWow64\*.tmp -> ] [1 C:\windows\*.tmp files -> C:\windows\*.tmp -> ] ========== Files Created - No Company Name ========== [2011.11.15 10:23:02 | 000,001,106 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk [2011.11.15 09:39:25 | 000,000,000 | ---- | C] () -- C:\Users\Incik\AppData\Local\{71511D93-F984-45EF-9610-6F1E66E90421} [2011.11.15 09:22:10 | 000,000,000 | ---- | C] () -- C:\Users\Incik\AppData\Local\{72F87259-CFAB-4123-8167-78E21F3DBF6C} [2011.11.13 21:36:21 | 000,001,910 | ---- | C] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk [2011.11.11 00:51:33 | 000,000,017 | ---- | C] () -- C:\Users\Incik\AppData\Local\resmon.resmoncfg [2011.11.11 00:41:53 | 000,001,837 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn.lnk [2011.11.10 00:42:32 | 000,001,130 | ---- | C] () -- C:\Users\Public\Desktop\Battlefield 3.lnk [2011.11.09 21:41:22 | 000,000,364 | ---- | C] () -- C:\Users\Incik\Desktop\BF3_German_registry.rar [2011.11.09 21:28:45 | 000,000,939 | ---- | C] () -- C:\Users\Public\Desktop\Origin.lnk [2011.11.03 13:01:39 | 000,001,108 | ---- | C] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job [2011.11.03 13:01:39 | 000,001,104 | ---- | C] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job [2011.10.25 11:35:05 | 000,000,177 | ---- | C] () -- C:\Users\Incik\Desktop\WoW.mfil [2011.10.24 03:25:43 | 000,001,625 | ---- | C] () -- C:\Users\Incik\Desktop\Xpadder.ini [2011.10.24 03:25:38 | 000,002,123 | ---- | C] () -- C:\Users\Incik\Desktop\New Profile.xpadderprofile [2011.10.22 11:48:38 | 000,004,438 | ---- | C] () -- C:\Program Files\.installationinformation [2011.10.22 11:48:37 | 001,717,301 | ---- | C] () -- C:\Program Files\Domination.jar [2011.10.22 11:48:37 | 000,000,760 | ---- | C] () -- C:\Program Files\SwingGUI.htm [2011.10.22 11:48:37 | 000,000,754 | ---- | C] () -- C:\Program Files\FlashGUI.htm [2011.10.22 11:48:37 | 000,000,675 | ---- | C] () -- C:\Program Files\game.ini [2011.10.22 11:48:37 | 000,000,107 | ---- | C] () -- C:\Program Files\Increment1GUI.sh [2011.10.22 11:48:37 | 000,000,101 | ---- | C] () -- C:\Program Files\CommandLine.sh [2011.10.22 11:48:37 | 000,000,100 | ---- | C] () -- C:\Program Files\SwingGUI.sh [2011.10.22 11:48:37 | 000,000,095 | ---- | C] () -- C:\Program Files\SimpleGUI.sh [2011.10.22 11:48:37 | 000,000,095 | ---- | C] () -- C:\Program Files\FlashGUI.sh [2011.10.22 11:48:37 | 000,000,078 | ---- | C] () -- C:\Program Files\Increment1GUI.cmd [2011.10.22 11:48:37 | 000,000,072 | ---- | C] () -- C:\Program Files\CommandLine.cmd [2011.10.22 11:48:37 | 000,000,071 | ---- | C] () -- C:\Program Files\SwingGUI.cmd [2011.10.22 11:48:37 | 000,000,066 | ---- | C] () -- C:\Program Files\SimpleGUI.cmd [2011.10.22 11:48:37 | 000,000,066 | ---- | C] () -- C:\Program Files\FlashGUI.cmd [2011.10.22 11:48:37 | 000,000,055 | ---- | C] () -- C:\Program Files\run.sh [2011.10.22 11:48:37 | 000,000,026 | ---- | C] () -- C:\Program Files\run.cmd [2011.10.22 11:47:23 | 005,641,216 | ---- | C] () -- C:\Users\Incik\Desktop\Domination_install_1.1.0.1(1).exe [2011.10.18 19:35:17 | 000,001,620 | ---- | C] () -- C:\Users\Incik\Desktop\Modern Warefare 2.lnk [2011.10.18 19:12:42 | 000,000,822 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk [2011.10.18 18:50:48 | 000,000,903 | ---- | C] () -- C:\Users\Public\Desktop\µTorrent.lnk [2011.10.17 02:19:57 | 000,001,954 | ---- | C] () -- C:\Users\Public\Desktop\Avira Control Center.lnk [2011.10.13 21:29:40 | 000,042,392 | ---- | C] () -- C:\windows\SysWow64\xfcodec.dll [2011.09.14 10:47:40 | 000,053,760 | ---- | C] () -- C:\windows\SysWow64\OVDecode.dll [2011.08.12 13:45:52 | 001,591,234 | ---- | C] () -- C:\windows\SysWow64\PerfStringBackup.INI [2011.07.29 20:58:53 | 000,000,600 | ---- | C] () -- C:\Users\Incik\AppData\Roaming\winscp.rnd [2011.07.22 22:39:45 | 000,000,000 | ---- | C] () -- C:\windows\nsreg.dat [2011.07.15 16:45:11 | 000,000,331 | ---- | C] () -- C:\windows\game.ini [2011.07.12 22:15:04 | 000,000,286 | ---- | C] () -- C:\windows\reimage.ini [2011.07.12 04:02:54 | 000,280,904 | ---- | C] () -- C:\windows\SysWow64\PnkBstrB.exe [2011.07.12 04:02:52 | 000,075,136 | ---- | C] () -- C:\windows\SysWow64\PnkBstrA.exe [2011.07.12 04:02:51 | 002,580,552 | ---- | C] () -- C:\windows\SysWow64\pbsvc.exe [2011.07.11 21:58:02 | 000,000,037 | ---- | C] () -- C:\Users\Incik\AppData\Roaming\.dolphinx32wd [2011.07.09 17:28:30 | 000,000,088 | ---- | C] () -- C:\ProgramData\profile.xml [2011.03.20 15:22:58 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat [2011.03.17 18:51:44 | 000,003,929 | ---- | C] () -- C:\windows\SysWow64\atipblag.dat [2010.06.28 01:55:51 | 000,000,512 | ---- | C] () -- C:\windows\previous.bin [2010.06.28 01:55:51 | 000,000,512 | ---- | C] () -- C:\windows\current.bin [2010.06.28 01:48:50 | 000,016,648 | R--- | C] () -- C:\windows\SysWow64\LogAPI.dll [2010.06.28 01:35:57 | 002,110,816 | ---- | C] () -- C:\windows\SysWow64\Apblend.dll [2010.06.28 01:35:57 | 001,171,456 | ---- | C] () -- C:\windows\SysWow64\PicNotify.dll [2010.06.28 01:35:47 | 001,044,480 | ---- | C] () -- C:\windows\SysWow64\3DImageRenderer.dll [2010.06.28 00:53:06 | 000,000,000 | ---- | C] () -- C:\windows\ativpsrm.bin [2009.07.14 06:38:36 | 000,067,584 | --S- | C] () -- C:\windows\bootstat.dat [2009.07.14 03:35:51 | 000,000,741 | ---- | C] () -- C:\windows\SysWow64\NOISE.DAT [2009.07.14 03:34:42 | 000,215,943 | ---- | C] () -- C:\windows\SysWow64\dssec.dat [2009.07.14 01:10:29 | 000,043,131 | ---- | C] () -- C:\windows\mib.bin [2009.07.14 00:42:10 | 000,064,000 | ---- | C] () -- C:\windows\SysWow64\BWContextHandler.dll [2009.07.13 22:59:36 | 000,982,196 | ---- | C] () -- C:\windows\SysWow64\igkrng500.bin [2009.07.13 22:59:36 | 000,139,824 | ---- | C] () -- C:\windows\SysWow64\igfcg500.bin [2009.07.13 22:59:36 | 000,097,448 | ---- | C] () -- C:\windows\SysWow64\igfcg500m.bin [2009.07.13 22:59:35 | 000,417,344 | ---- | C] () -- C:\windows\SysWow64\igcompkrng500.bin [2009.07.13 22:03:59 | 000,364,544 | ---- | C] () -- C:\windows\SysWow64\msjetoledb40.dll [2009.06.10 22:26:10 | 000,673,088 | ---- | C] () -- C:\windows\SysWow64\mlang.dat < End of report > |
15.11.2011, 13:47 | #7 |
| Ich soll 50€ bezahlen obwohl ich garkein virus drauf habe So was kann ich jetzt machen ohne internet bin jetzt wieder mit meinem handy weil er jetzt sofort wen ich mit dem internet verbinde diese meldung gibt |
15.11.2011, 14:01 | #8 |
| Ich soll 50€ bezahlen obwohl ich garkein virus drauf habe Ok jetzt macht der virus oder was auch immer mein ganzen laptop kaputvich habe kein zugrif mehr auf ein paar ordne Was soll ich jetzt machen |
15.11.2011, 14:15 | #9 |
/// Malware-holic | Ich soll 50€ bezahlen obwohl ich garkein virus drauf habe hiho na da haben wir doch schon was. achtung! dieses script sowie evtl. folgende scripts sind nur für den jeweiligen user. wenn ihr probleme habt, eröffnet eigene topics und wartet auf, für euch angepasste scripts. • Starte bitte die OTL.exe • Kopiere nun das Folgende in die Textbox. Code:
ATTFilter :OTL O4 - HKCU..\Run: [{0963F51F-8245-11DF-993F-806E6F6E6963}] C:\Users\Incik\AppData\Roaming\Microsoft\svhcost.exe () :Files C:\Users\Incik\AppData\Roaming\Microsoft\svhcost.exe :Commands [purity] [EMPTYFLASH] [emptytemp] [Reboot] • Schliesse bitte nun alle Programme. • Klicke nun bitte auf den Fix Button. • OTL kann gegebenfalls einen Neustart verlangen. Bitte dies zulassen. • Nach dem Neustart findest Du ein Textdokument, dessen inhalt in deiner nächsten antwort hier reinkopieren. öffne computer, öffne C: dann _OTL dort rechtsklick auf moved files wähle zu moved files.rar oder zip hinzufügen. folge dem link, und lade das archiv im upload channel hoch http://www.trojaner-board.de/54791-a...ner-board.html
__________________ -Verdächtige mails bitte an uns zur Analyse weiterleiten: markusg.trojaner-board@web.de Weiterleiten Anleitung: http://markusg.trojaner-board.de Mails bitte vorerst nach obiger Anleitung an markusg.trojaner-board@web.de Weiterleiten Wenn Ihr uns unterstützen möchtet |
15.11.2011, 14:34 | #11 |
/// Malware-holic | Ich soll 50€ bezahlen obwohl ich garkein virus drauf habe na ausführen sonst läufts ja nicht :-)
__________________ -Verdächtige mails bitte an uns zur Analyse weiterleiten: markusg.trojaner-board@web.de Weiterleiten Anleitung: http://markusg.trojaner-board.de Mails bitte vorerst nach obiger Anleitung an markusg.trojaner-board@web.de Weiterleiten Wenn Ihr uns unterstützen möchtet |
15.11.2011, 14:55 | #12 |
| Ich soll 50€ bezahlen obwohl ich garkein virus drauf habe Ich habe es hochgeladen und habe alles so ausgeführt wie gesagt |
15.11.2011, 15:07 | #13 |
/// Malware-holic | Ich soll 50€ bezahlen obwohl ich garkein virus drauf habe wunderbar. Combofix darf ausschließlich ausgeführt werden, wenn dies von einem Team Mitglied angewiesen wurde! Bitte downloade dir Combofix.exe und speichere es unbedingt auf deinem Desktop.
__________________ -Verdächtige mails bitte an uns zur Analyse weiterleiten: markusg.trojaner-board@web.de Weiterleiten Anleitung: http://markusg.trojaner-board.de Mails bitte vorerst nach obiger Anleitung an markusg.trojaner-board@web.de Weiterleiten Wenn Ihr uns unterstützen möchtet |
15.11.2011, 15:26 | #14 |
| Ich soll 50€ bezahlen obwohl ich garkein virus drauf habe Ok werde ich machen ich lese mir jetzt erstma die anleitung durch und ich danke dir viel mals jetzt kann ich erstma wieder mein laptop ohne probleme benutzen jetzt kommt nicht mehr das problem mit dem geld bezahlen danke danke |
15.11.2011, 15:29 | #15 |
| Ich soll 50€ bezahlen obwohl ich garkein virus drauf habe ich mache am besten anti vir aus also schließe es erstmal wärend der überprüfung |
Themen zu Ich soll 50€ bezahlen obwohl ich garkein virus drauf habe |
5 minuten, 50€ bezahlen, antivir, bezahlen, dankbar, entfern, entfernt, handy, inter, interne, internet, laptop, laufe, laufen, minute, minuten, neu, online, virus, viruse, warnung |