|
Plagegeister aller Art und deren Bekämpfung: failde to save all the components for the file //system 32//00003c92Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
15.02.2012, 17:48 | #16 |
| failde to save all the components for the file //system 32//00003c92 ich darf leider auf der seite nichts posten... Code:
ATTFilter 17:41:50.0383 5464 TDSS rootkit removing tool 2.7.12.0 Feb 11 2012 16:58:52 17:41:50.0524 5464 ============================================================ 17:41:50.0524 5464 Current date / time: 2012/02/15 17:41:50.0524 17:41:50.0524 5464 SystemInfo: 17:41:50.0524 5464 17:41:50.0524 5464 OS Version: 6.1.7601 ServicePack: 1.0 17:41:50.0524 5464 Product type: Workstation 17:41:50.0524 5464 ComputerName: BRINA 17:41:50.0524 5464 UserName: brinamarina 17:41:50.0524 5464 Windows directory: C:\Windows 17:41:50.0524 5464 System windows directory: C:\Windows 17:41:50.0524 5464 Running under WOW64 17:41:50.0524 5464 Processor architecture: Intel x64 17:41:50.0524 5464 Number of processors: 4 17:41:50.0524 5464 Page size: 0x1000 17:41:50.0524 5464 Boot type: Normal boot 17:41:50.0524 5464 ============================================================ 17:41:50.0867 5464 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 17:41:50.0867 5464 \Device\Harddisk0\DR0: 17:41:50.0867 5464 MBR used 17:41:50.0867 5464 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x1FCE800, BlocksNum 0x32000 17:41:50.0867 5464 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x2000800, BlocksNum 0x38385030 17:41:50.0898 5464 Initialize success 17:41:50.0898 5464 ============================================================ 17:42:24.0251 3604 ============================================================ 17:42:24.0251 3604 Scan started 17:42:24.0251 3604 Mode: Manual; SigCheck; TDLFS; 17:42:24.0251 3604 ============================================================ 17:42:24.0781 3604 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys 17:42:24.0891 3604 1394ohci - ok 17:42:25.0015 3604 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys 17:42:25.0047 3604 ACPI - ok 17:42:25.0062 3604 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys 17:42:25.0093 3604 AcpiPmi - ok 17:42:25.0218 3604 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\drivers\adp94xx.sys 17:42:25.0249 3604 adp94xx - ok 17:42:25.0359 3604 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\drivers\adpahci.sys 17:42:25.0390 3604 adpahci - ok 17:42:25.0483 3604 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\drivers\adpu320.sys 17:42:25.0515 3604 adpu320 - ok 17:42:25.0624 3604 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys 17:42:25.0671 3604 AFD - ok 17:42:25.0764 3604 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys 17:42:25.0780 3604 agp440 - ok 17:42:25.0842 3604 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys 17:42:25.0858 3604 aliide - ok 17:42:25.0936 3604 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys 17:42:25.0951 3604 amdide - ok 17:42:25.0998 3604 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\drivers\amdk8.sys 17:42:26.0045 3604 AmdK8 - ok 17:42:26.0326 3604 amdkmdag (b797496bca3bce8020f1cb573e0e5993) C:\Windows\system32\DRIVERS\atikmdag.sys 17:42:26.0591 3604 amdkmdag - ok 17:42:26.0747 3604 amdkmdap (1ba2b45e0fdce093ec27bd11b3194861) C:\Windows\system32\DRIVERS\atikmpag.sys 17:42:26.0794 3604 amdkmdap - ok 17:42:26.0903 3604 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\drivers\amdppm.sys 17:42:26.0950 3604 AmdPPM - ok 17:42:26.0997 3604 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys 17:42:27.0028 3604 amdsata - ok 17:42:27.0121 3604 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\drivers\amdsbs.sys 17:42:27.0137 3604 amdsbs - ok 17:42:27.0246 3604 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys 17:42:27.0262 3604 amdxata - ok 17:42:27.0293 3604 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys 17:42:27.0449 3604 AppID - ok 17:42:27.0558 3604 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\drivers\arc.sys 17:42:27.0574 3604 arc - ok 17:42:27.0605 3604 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\drivers\arcsas.sys 17:42:27.0636 3604 arcsas - ok 17:42:27.0730 3604 ArcSoftKsUFilter (c130bc4a51b1382b2be8e44579ec4c0a) C:\Windows\system32\DRIVERS\ArcSoftKsUFilter.sys 17:42:27.0901 3604 ArcSoftKsUFilter - ok 17:42:27.0964 3604 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys 17:42:28.0104 3604 AsyncMac - ok 17:42:28.0198 3604 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys 17:42:28.0229 3604 atapi - ok 17:42:28.0260 3604 AthBTPort (50f257e19554421b6891e3f998edca90) C:\Windows\system32\DRIVERS\btath_flt.sys 17:42:28.0260 3604 AthBTPort - ok 17:42:28.0354 3604 ATHDFU (4119870b90e1b5e7797d6433d21f9216) C:\Windows\System32\Drivers\AthDfu.sys 17:42:28.0369 3604 ATHDFU - ok 17:42:28.0525 3604 athr (a5e770426d18f8ef332a593f3289da91) C:\Windows\system32\DRIVERS\athrx.sys 17:42:28.0588 3604 athr - ok 17:42:28.0713 3604 avgntflt (aa8f79a1bdfc03b3bc70c44ab00589b4) C:\Windows\system32\DRIVERS\avgntflt.sys 17:42:28.0744 3604 avgntflt - ok 17:42:28.0759 3604 avipbb (852e3c0a60d368c487949e55ad52a47f) C:\Windows\system32\DRIVERS\avipbb.sys 17:42:28.0775 3604 avipbb - ok 17:42:28.0869 3604 avkmgr (248db59fc86de44d2779f4c7fb1a567d) C:\Windows\system32\DRIVERS\avkmgr.sys 17:42:28.0884 3604 avkmgr - ok 17:42:28.0947 3604 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\drivers\bxvbda.sys 17:42:28.0978 3604 b06bdrv - ok 17:42:29.0071 3604 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys 17:42:29.0118 3604 b57nd60a - ok 17:42:29.0227 3604 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys 17:42:29.0305 3604 Beep - ok 17:42:29.0399 3604 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\drivers\blbdrive.sys 17:42:29.0446 3604 blbdrive - ok 17:42:29.0477 3604 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys 17:42:29.0524 3604 bowser - ok 17:42:29.0633 3604 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\drivers\BrFiltLo.sys 17:42:29.0680 3604 BrFiltLo - ok 17:42:29.0773 3604 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\drivers\BrFiltUp.sys 17:42:29.0820 3604 BrFiltUp - ok 17:42:29.0836 3604 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys 17:42:29.0867 3604 Brserid - ok 17:42:29.0961 3604 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys 17:42:30.0023 3604 BrSerWdm - ok 17:42:30.0117 3604 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys 17:42:30.0163 3604 BrUsbMdm - ok 17:42:30.0257 3604 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys 17:42:30.0288 3604 BrUsbSer - ok 17:42:30.0397 3604 BTATH_A2DP (b3bcd755fa9a359d10208cc9f09847cc) C:\Windows\system32\drivers\btath_a2dp.sys 17:42:30.0413 3604 BTATH_A2DP - ok 17:42:30.0429 3604 btath_avdt (9bbba9d6dbdefc8a6542bc7a6ebaf710) C:\Windows\system32\drivers\btath_avdt.sys 17:42:30.0444 3604 btath_avdt - ok 17:42:30.0538 3604 BTATH_BUS (d838dd1bcb328efcfad7a52de9e3cafd) C:\Windows\system32\drivers\btath_bus.sys 17:42:30.0538 3604 BTATH_BUS - ok 17:42:30.0585 3604 BTATH_HCRP (a441b800e04cf8443faf519207563abb) C:\Windows\system32\drivers\btath_hcrp.sys 17:42:30.0600 3604 BTATH_HCRP - ok 17:42:30.0694 3604 BTATH_LWFLT (b16f8429a35bba2a8ef9db2e08675b97) C:\Windows\system32\DRIVERS\btath_lwflt.sys 17:42:30.0709 3604 BTATH_LWFLT - ok 17:42:30.0741 3604 BTATH_RCP (c24231c6bdfe21735930084a22089aab) C:\Windows\system32\drivers\btath_rcp.sys 17:42:30.0756 3604 BTATH_RCP - ok 17:42:30.0850 3604 BtFilter (3632fa4c6b3ce9ec827690deac266d8c) C:\Windows\system32\DRIVERS\btfilter.sys 17:42:30.0865 3604 BtFilter - ok 17:42:30.0897 3604 BthEnum (cf98190a94f62e405c8cb255018b2315) C:\Windows\system32\drivers\BthEnum.sys 17:42:30.0959 3604 BthEnum - ok 17:42:31.0037 3604 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\drivers\bthmodem.sys 17:42:31.0099 3604 BTHMODEM - ok 17:42:31.0146 3604 BthPan (02dd601b708dd0667e1331fa8518e9ff) C:\Windows\system32\DRIVERS\bthpan.sys 17:42:31.0193 3604 BthPan - ok 17:42:31.0302 3604 BTHPORT (64c198198501f7560ee41d8d1efa7952) C:\Windows\System32\Drivers\BTHport.sys 17:42:31.0349 3604 BTHPORT - ok 17:42:31.0458 3604 BTHUSB (f188b7394d81010767b6df3178519a37) C:\Windows\System32\Drivers\BTHUSB.sys 17:42:31.0474 3604 BTHUSB - ok 17:42:31.0521 3604 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys 17:42:31.0599 3604 cdfs - ok 17:42:31.0692 3604 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\drivers\cdrom.sys 17:42:31.0708 3604 cdrom - ok 17:42:31.0755 3604 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\drivers\circlass.sys 17:42:31.0786 3604 circlass - ok 17:42:31.0879 3604 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys 17:42:31.0911 3604 CLFS - ok 17:42:31.0973 3604 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\drivers\CmBatt.sys 17:42:32.0020 3604 CmBatt - ok 17:42:32.0098 3604 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys 17:42:32.0113 3604 cmdide - ok 17:42:32.0191 3604 CNG (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys 17:42:32.0223 3604 CNG - ok 17:42:32.0316 3604 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\drivers\compbatt.sys 17:42:32.0332 3604 Compbatt - ok 17:42:32.0363 3604 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys 17:42:32.0394 3604 CompositeBus - ok 17:42:32.0503 3604 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\drivers\crcdisk.sys 17:42:32.0519 3604 crcdisk - ok 17:42:32.0566 3604 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys 17:42:32.0628 3604 DfsC - ok 17:42:32.0722 3604 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys 17:42:32.0800 3604 discache - ok 17:42:32.0893 3604 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\drivers\disk.sys 17:42:32.0925 3604 Disk - ok 17:42:32.0971 3604 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys 17:42:33.0003 3604 drmkaud - ok 17:42:33.0128 3604 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys 17:42:33.0143 3604 DXGKrnl - ok 17:42:33.0252 3604 e1yexpress (50ad8fc1dc800ff36087994c8f7fdff2) C:\Windows\system32\DRIVERS\e1y60x64.sys 17:42:33.0299 3604 e1yexpress - ok 17:42:33.0486 3604 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\drivers\evbda.sys 17:42:33.0549 3604 ebdrv - ok 17:42:33.0674 3604 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\drivers\elxstor.sys 17:42:33.0705 3604 elxstor - ok 17:42:33.0736 3604 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys 17:42:33.0752 3604 ErrDev - ok 17:42:33.0861 3604 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys 17:42:33.0939 3604 exfat - ok 17:42:34.0032 3604 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys 17:42:34.0110 3604 fastfat - ok 17:42:34.0157 3604 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\drivers\fdc.sys 17:42:34.0157 3604 fdc - ok 17:42:34.0251 3604 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys 17:42:34.0266 3604 FileInfo - ok 17:42:34.0298 3604 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys 17:42:34.0376 3604 Filetrace - ok 17:42:34.0454 3604 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\drivers\flpydisk.sys 17:42:34.0485 3604 flpydisk - ok 17:42:34.0516 3604 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys 17:42:34.0532 3604 FltMgr - ok 17:42:34.0610 3604 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys 17:42:34.0641 3604 FsDepends - ok 17:42:34.0656 3604 Fs_Rec (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys 17:42:34.0672 3604 Fs_Rec - ok 17:42:34.0766 3604 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys 17:42:34.0797 3604 fvevol - ok 17:42:34.0828 3604 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\drivers\gagp30kx.sys 17:42:34.0844 3604 gagp30kx - ok 17:42:34.0953 3604 GEARAspiWDM (e403aacf8c7bb11375122d2464560311) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys 17:42:34.0968 3604 GEARAspiWDM - ok 17:42:35.0000 3604 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys 17:42:35.0062 3604 hcw85cir - ok 17:42:35.0171 3604 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys 17:42:35.0218 3604 HdAudAddService - ok 17:42:35.0312 3604 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys 17:42:35.0374 3604 HDAudBus - ok 17:42:35.0468 3604 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\drivers\HidBatt.sys 17:42:35.0530 3604 HidBatt - ok 17:42:35.0624 3604 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\drivers\hidbth.sys 17:42:35.0670 3604 HidBth - ok 17:42:35.0780 3604 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\drivers\hidir.sys 17:42:35.0811 3604 HidIr - ok 17:42:35.0826 3604 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys 17:42:35.0873 3604 HidUsb - ok 17:42:35.0967 3604 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys 17:42:35.0998 3604 HpSAMD - ok 17:42:36.0029 3604 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys 17:42:36.0092 3604 HTTP - ok 17:42:36.0185 3604 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys 17:42:36.0216 3604 hwpolicy - ok 17:42:36.0248 3604 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\drivers\i8042prt.sys 17:42:36.0263 3604 i8042prt - ok 17:42:36.0357 3604 iaStor (d469b77687e12fe43e344806740b624d) C:\Windows\system32\drivers\iaStor.sys 17:42:36.0388 3604 iaStor - ok 17:42:36.0482 3604 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys 17:42:36.0513 3604 iaStorV - ok 17:42:36.0544 3604 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\drivers\iirsp.sys 17:42:36.0575 3604 iirsp - ok 17:42:36.0794 3604 IntcAzAudAddService (3e3926f4fa7c9162c5c3ec6bf1e4f349) C:\Windows\system32\drivers\RTKVHD64.sys 17:42:36.0856 3604 IntcAzAudAddService - ok 17:42:36.0934 3604 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys 17:42:36.0965 3604 intelide - ok 17:42:36.0996 3604 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\drivers\intelppm.sys 17:42:37.0028 3604 intelppm - ok 17:42:37.0121 3604 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys 17:42:37.0184 3604 IpFilterDriver - ok 17:42:37.0215 3604 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys 17:42:37.0246 3604 IPMIDRV - ok 17:42:37.0355 3604 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys 17:42:37.0433 3604 IPNAT - ok 17:42:37.0542 3604 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys 17:42:37.0574 3604 IRENUM - ok 17:42:37.0683 3604 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys 17:42:37.0698 3604 isapnp - ok 17:42:37.0745 3604 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys 17:42:37.0776 3604 iScsiPrt - ok 17:42:37.0870 3604 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\drivers\kbdclass.sys 17:42:37.0886 3604 kbdclass - ok 17:42:37.0917 3604 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\drivers\kbdhid.sys 17:42:37.0948 3604 kbdhid - ok 17:42:38.0057 3604 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys 17:42:38.0073 3604 KSecDD - ok 17:42:38.0088 3604 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys 17:42:38.0104 3604 KSecPkg - ok 17:42:38.0198 3604 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys 17:42:38.0307 3604 ksthunk - ok 17:42:38.0400 3604 L1C (0e154da6ca9105354a07d0c576804037) C:\Windows\system32\DRIVERS\L1C62x64.sys 17:42:38.0416 3604 L1C - ok 17:42:38.0525 3604 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys 17:42:38.0619 3604 lltdio - ok 17:42:38.0728 3604 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\drivers\lsi_fc.sys 17:42:38.0759 3604 LSI_FC - ok 17:42:38.0775 3604 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\drivers\lsi_sas.sys 17:42:38.0790 3604 LSI_SAS - ok 17:42:38.0900 3604 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\drivers\lsi_sas2.sys 17:42:38.0931 3604 LSI_SAS2 - ok 17:42:38.0962 3604 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\drivers\lsi_scsi.sys 17:42:38.0978 3604 LSI_SCSI - ok 17:42:39.0040 3604 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys 17:42:39.0134 3604 luafv - ok 17:42:39.0243 3604 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\drivers\megasas.sys 17:42:39.0274 3604 megasas - ok 17:42:39.0290 3604 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\drivers\MegaSR.sys 17:42:39.0305 3604 MegaSR - ok 17:42:39.0399 3604 MEIx64 (a6518dcc42f7a6e999bb3bea8fd87567) C:\Windows\system32\drivers\HECIx64.sys 17:42:39.0414 3604 MEIx64 - ok 17:42:39.0461 3604 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys 17:42:39.0539 3604 Modem - ok 17:42:39.0648 3604 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys 17:42:39.0695 3604 monitor - ok 17:42:39.0789 3604 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys 17:42:39.0820 3604 mouclass - ok 17:42:39.0851 3604 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys 17:42:39.0882 3604 mouhid - ok 17:42:39.0992 3604 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys 17:42:40.0023 3604 mountmgr - ok 17:42:40.0101 3604 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys 17:42:40.0132 3604 mpio - ok 17:42:40.0163 3604 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys 17:42:40.0226 3604 mpsdrv - ok 17:42:40.0350 3604 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys 17:42:40.0382 3604 MRxDAV - ok 17:42:40.0428 3604 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys 17:42:40.0460 3604 mrxsmb - ok 17:42:40.0569 3604 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys 17:42:40.0600 3604 mrxsmb10 - ok 17:42:40.0616 3604 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys 17:42:40.0647 3604 mrxsmb20 - ok 17:42:40.0725 3604 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys 17:42:40.0756 3604 msahci - ok 17:42:40.0787 3604 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys 17:42:40.0803 3604 msdsm - ok 17:42:40.0912 3604 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys 17:42:40.0990 3604 Msfs - ok 17:42:41.0099 3604 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys 17:42:41.0193 3604 mshidkmdf - ok 17:42:41.0271 3604 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys 17:42:41.0286 3604 msisadrv - ok 17:42:41.0349 3604 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys 17:42:41.0442 3604 MSKSSRV - ok 17:42:41.0552 3604 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys 17:42:41.0630 3604 MSPCLOCK - ok 17:42:41.0723 3604 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys 17:42:41.0770 3604 MSPQM - ok 17:42:41.0801 3604 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys 17:42:41.0848 3604 MsRPC - ok 17:42:41.0926 3604 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys 17:42:41.0957 3604 mssmbios - ok 17:42:41.0973 3604 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys 17:42:42.0051 3604 MSTEE - ok 17:42:42.0144 3604 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\drivers\MTConfig.sys 17:42:42.0191 3604 MTConfig - ok 17:42:42.0316 3604 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys 17:42:42.0332 3604 Mup - ok 17:42:42.0363 3604 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys 17:42:42.0410 3604 NativeWifiP - ok 17:42:42.0550 3604 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys 17:42:42.0581 3604 NDIS - ok 17:42:42.0675 3604 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys 17:42:42.0768 3604 NdisCap - ok 17:42:42.0878 3604 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys 17:42:42.0924 3604 NdisTapi - ok 17:42:42.0940 3604 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys 17:42:43.0002 3604 Ndisuio - ok 17:42:43.0112 3604 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys 17:42:43.0190 3604 NdisWan - ok 17:42:43.0205 3604 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys 17:42:43.0268 3604 NDProxy - ok 17:42:43.0361 3604 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys 17:42:43.0689 3604 NetBIOS - ok 17:42:44.0110 3604 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys 17:42:44.0157 3604 NetBT - ok 17:42:44.0204 3604 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\drivers\nfrd960.sys 17:42:44.0204 3604 nfrd960 - ok 17:42:44.0297 3604 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys 17:42:44.0375 3604 Npfs - ok 17:42:44.0406 3604 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys 17:42:44.0484 3604 nsiproxy - ok 17:42:44.0640 3604 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys 17:42:44.0687 3604 Ntfs - ok 17:42:44.0781 3604 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys 17:42:44.0843 3604 Null - ok 17:42:44.0874 3604 nusb3hub (158ad24745bd85ba9be3c51c38f48c32) C:\Windows\system32\drivers\nusb3hub.sys 17:42:44.0890 3604 nusb3hub - ok 17:42:44.0984 3604 nusb3xhc (d40a13b2c0891e218f9523b376955db6) C:\Windows\system32\drivers\nusb3xhc.sys 17:42:44.0999 3604 nusb3xhc - ok 17:42:45.0264 3604 nvlddmkm (dd81fbc57ab9134cddc5ce90880bfd80) C:\Windows\system32\DRIVERS\nvlddmkm.sys 17:42:45.0623 3604 nvlddmkm - ok 17:42:45.0732 3604 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys 17:42:45.0748 3604 nvraid - ok 17:42:45.0779 3604 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys 17:42:45.0779 3604 nvstor - ok 17:42:45.0873 3604 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys 17:42:45.0904 3604 nv_agp - ok 17:42:45.0935 3604 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys 17:42:45.0966 3604 ohci1394 - ok 17:42:46.0076 3604 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\drivers\parport.sys 17:42:46.0122 3604 Parport - ok 17:42:46.0232 3604 partmgr (871eadac56b0a4c6512bbe32753ccf79) C:\Windows\system32\drivers\partmgr.sys 17:42:46.0247 3604 partmgr - ok 17:42:46.0278 3604 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys 17:42:46.0294 3604 pci - ok 17:42:46.0388 3604 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys 17:42:46.0403 3604 pciide - ok 17:42:46.0450 3604 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\drivers\pcmcia.sys 17:42:46.0466 3604 pcmcia - ok 17:42:46.0575 3604 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys 17:42:46.0590 3604 pcw - ok 17:42:46.0622 3604 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys 17:42:46.0700 3604 PEAUTH - ok 17:42:46.0824 3604 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys 17:42:46.0902 3604 PptpMiniport - ok 17:42:46.0996 3604 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\drivers\processr.sys 17:42:47.0043 3604 Processor - ok 17:42:47.0168 3604 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys 17:42:47.0230 3604 Psched - ok 17:42:47.0324 3604 PxHlpa64 (87b04878a6d59d6c79251dc960c674c1) C:\Windows\system32\Drivers\PxHlpa64.sys 17:42:47.0339 3604 PxHlpa64 - ok 17:42:47.0417 3604 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\drivers\ql2300.sys 17:42:47.0464 3604 ql2300 - ok 17:42:47.0558 3604 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\drivers\ql40xx.sys 17:42:47.0573 3604 ql40xx - ok 17:42:47.0604 3604 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys 17:42:47.0667 3604 QWAVEdrv - ok 17:42:47.0776 3604 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys 17:42:47.0854 3604 RasAcd - ok 17:42:47.0963 3604 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys 17:42:48.0010 3604 RasAgileVpn - ok 17:42:48.0041 3604 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys 17:42:48.0119 3604 Rasl2tp - ok 17:42:48.0228 3604 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys 17:42:48.0306 3604 RasPppoe - ok 17:42:48.0416 3604 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys 17:42:48.0494 3604 RasSstp - ok 17:42:48.0618 3604 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys 17:42:48.0728 3604 rdbss - ok 17:42:48.0821 3604 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\drivers\rdpbus.sys 17:42:48.0884 3604 rdpbus - ok 17:42:48.0962 3604 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys 17:42:49.0024 3604 RDPCDD - ok 17:42:49.0055 3604 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys 17:42:49.0102 3604 RDPENCDD - ok 17:42:49.0196 3604 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys 17:42:49.0242 3604 RDPREFMP - ok 17:42:49.0258 3604 RDPWD (15b66c206b5cb095bab980553f38ed23) C:\Windows\system32\drivers\RDPWD.sys 17:42:49.0305 3604 RDPWD - ok 17:42:49.0320 3604 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys 17:42:49.0336 3604 rdyboost - ok 17:42:49.0445 3604 RFCOMM (3dd798846e2c28102b922c56e71b7932) C:\Windows\system32\DRIVERS\rfcomm.sys 17:42:49.0508 3604 RFCOMM - ok 17:42:49.0617 3604 rimspci (ff71ecb1b121c6273ec4c45eddbc4fe4) C:\Windows\system32\drivers\rimssne64.sys 17:42:49.0648 3604 rimspci - ok 17:42:49.0679 3604 risdsnpe (e33075c22c14c57095f037253f936bb8) C:\Windows\system32\drivers\risdsnxc64.sys 17:42:49.0726 3604 risdsnpe - ok 17:42:49.0820 3604 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys 17:42:49.0898 3604 rspndr - ok 17:42:50.0007 3604 RTHDMIAzAudService (521e23922b1c252f77412e9454d2e304) C:\Windows\system32\drivers\RtHDMIVX.sys 17:42:50.0038 3604 RTHDMIAzAudService - ok 17:42:50.0085 3604 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys 17:42:50.0100 3604 sbp2port - ok 17:42:50.0194 3604 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys 17:42:50.0272 3604 scfilter - ok 17:42:50.0366 3604 sdbus (111e0ebc0ad79cb0fa014b907b231cf0) C:\Windows\system32\DRIVERS\sdbus.sys 17:42:50.0428 3604 sdbus - ok 17:42:50.0459 3604 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys 17:42:50.0522 3604 secdrv - ok 17:42:50.0615 3604 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\drivers\serenum.sys 17:42:50.0646 3604 Serenum - ok 17:42:50.0678 3604 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\drivers\serial.sys 17:42:50.0709 3604 Serial - ok 17:42:50.0802 3604 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\drivers\sermouse.sys 17:42:50.0849 3604 sermouse - ok 17:42:50.0896 3604 SFEP (286d3889e6ab5589646ff8a63cb928ae) C:\Windows\system32\drivers\SFEP.sys 17:42:50.0912 3604 SFEP - ok 17:42:50.0974 3604 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys 17:42:51.0005 3604 sffdisk - ok 17:42:51.0036 3604 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys 17:42:51.0052 3604 sffp_mmc - ok 17:42:51.0146 3604 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys 17:42:51.0208 3604 sffp_sd - ok 17:42:51.0302 3604 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\drivers\sfloppy.sys 17:42:51.0364 3604 sfloppy - ok 17:42:51.0473 3604 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\drivers\SiSRaid2.sys 17:42:51.0489 3604 SiSRaid2 - ok 17:42:51.0536 3604 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\drivers\sisraid4.sys 17:42:51.0567 3604 SiSRaid4 - ok 17:42:51.0629 3604 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys 17:42:51.0723 3604 Smb - ok 17:42:51.0770 3604 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys 17:42:51.0770 3604 spldr - ok 17:42:51.0879 3604 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys 17:42:51.0926 3604 srv - ok 17:42:52.0050 3604 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys 17:42:52.0113 3604 srv2 - ok 17:42:52.0206 3604 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys 17:42:52.0253 3604 srvnet - ok 17:42:52.0362 3604 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\drivers\stexstor.sys 17:42:52.0378 3604 stexstor - ok 17:42:52.0409 3604 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys 17:42:52.0440 3604 swenum - ok 17:42:52.0550 3604 SynTP (b0c7d4dcf4800df2f2145b500d0161e8) C:\Windows\system32\drivers\SynTP.sys 17:42:52.0582 3604 SynTP - ok 17:42:52.0738 3604 Tcpip (fc62769e7bff2896035aeed399108162) C:\Windows\system32\drivers\tcpip.sys 17:42:52.0800 3604 Tcpip - ok 17:42:52.0956 3604 TCPIP6 (fc62769e7bff2896035aeed399108162) C:\Windows\system32\DRIVERS\tcpip.sys 17:42:53.0003 3604 TCPIP6 - ok 17:42:53.0097 3604 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys 17:42:53.0175 3604 tcpipreg - ok 17:42:53.0268 3604 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys 17:42:53.0346 3604 TDPIPE - ok 17:42:53.0362 3604 TDTCP (e4245bda3190a582d55ed09e137401a9) C:\Windows\system32\drivers\tdtcp.sys 17:42:53.0393 3604 TDTCP - ok 17:42:53.0424 3604 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys 17:42:53.0487 3604 tdx - ok 17:42:53.0580 3604 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\drivers\termdd.sys 17:42:53.0611 3604 TermDD - ok 17:42:53.0721 3604 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys 17:42:53.0799 3604 tssecsrv - ok 17:42:53.0892 3604 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys 17:42:53.0939 3604 TsUsbFlt - ok 17:42:54.0033 3604 TsUsbGD (9cc2ccae8a84820eaecb886d477cbcb8) C:\Windows\system32\drivers\TsUsbGD.sys 17:42:54.0064 3604 TsUsbGD - ok 17:42:54.0095 3604 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys 17:42:54.0173 3604 tunnel - ok 17:42:54.0282 3604 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\drivers\uagp35.sys 17:42:54.0313 3604 uagp35 - ok 17:42:54.0407 3604 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys 17:42:54.0485 3604 udfs - ok 17:42:54.0579 3604 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys 17:42:54.0610 3604 uliagpkx - ok 17:42:54.0703 3604 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\DRIVERS\umbus.sys 17:42:54.0735 3604 umbus - ok 17:42:54.0766 3604 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\drivers\umpass.sys 17:42:54.0813 3604 UmPass - ok 17:42:54.0906 3604 USBAAPL64 (aa33fc47ed58c34e6e9261e4f850b7eb) C:\Windows\system32\Drivers\usbaapl64.sys 17:42:54.0953 3604 USBAAPL64 - ok 17:42:55.0062 3604 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys 17:42:55.0093 3604 usbccgp - ok 17:42:55.0125 3604 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys 17:42:55.0187 3604 usbcir - ok 17:42:55.0296 3604 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\drivers\usbehci.sys 17:42:55.0343 3604 usbehci - ok 17:42:55.0452 3604 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys 17:42:55.0515 3604 usbhub - ok 17:42:55.0624 3604 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\drivers\usbohci.sys 17:42:55.0671 3604 usbohci - ok 17:42:55.0764 3604 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\drivers\usbprint.sys 17:42:55.0827 3604 usbprint - ok 17:42:55.0920 3604 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\DRIVERS\USBSTOR.SYS 17:42:55.0983 3604 USBSTOR - ok 17:42:56.0076 3604 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\drivers\usbuhci.sys 17:42:56.0123 3604 usbuhci - ok 17:42:56.0217 3604 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\Windows\system32\Drivers\usbvideo.sys 17:42:56.0279 3604 usbvideo - ok 17:42:56.0341 3604 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys 17:42:56.0357 3604 vdrvroot - ok 17:42:56.0451 3604 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys 17:42:56.0497 3604 vga - ok 17:42:56.0513 3604 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys 17:42:56.0591 3604 VgaSave - ok 17:42:56.0700 3604 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys 17:42:56.0731 3604 vhdmp - ok 17:42:56.0747 3604 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys 17:42:56.0763 3604 viaide - ok 17:42:56.0841 3604 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys 17:42:56.0872 3604 volmgr - ok 17:42:56.0919 3604 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys 17:42:56.0934 3604 volmgrx - ok 17:42:57.0028 3604 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys 17:42:57.0059 3604 volsnap - ok 17:42:57.0153 3604 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\drivers\vsmraid.sys 17:42:57.0184 3604 vsmraid - ok 17:42:57.0215 3604 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\system32\DRIVERS\vwifibus.sys 17:42:57.0277 3604 vwifibus - ok 17:42:57.0355 3604 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys 17:42:57.0418 3604 vwififlt - ok 17:42:57.0511 3604 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\drivers\wacompen.sys 17:42:57.0558 3604 WacomPen - ok 17:42:57.0667 3604 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys 17:42:57.0745 3604 WANARP - ok 17:42:57.0745 3604 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys 17:42:57.0777 3604 Wanarpv6 - ok 17:42:57.0886 3604 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\drivers\wd.sys 17:42:57.0901 3604 Wd - ok 17:42:57.0948 3604 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys 17:42:57.0995 3604 Wdf01000 - ok 17:42:58.0089 3604 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys 17:42:58.0151 3604 WfpLwf - ok 17:42:58.0167 3604 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys 17:42:58.0182 3604 WIMMount - ok 17:42:58.0276 3604 WinUsb (fe88b288356e7b47b74b13372add906d) C:\Windows\system32\DRIVERS\WinUsb.sys 17:42:58.0338 3604 WinUsb - ok 17:42:58.0447 3604 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys 17:42:58.0479 3604 WmiAcpi - ok 17:42:58.0510 3604 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys 17:42:58.0557 3604 ws2ifsl - ok 17:42:58.0635 3604 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys 17:42:58.0681 3604 WudfPf - ok 17:42:58.0681 3604 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys 17:42:58.0713 3604 WUDFRd - ok 17:42:58.0744 3604 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0 17:42:59.0649 3604 \Device\Harddisk0\DR0 - ok 17:42:59.0680 3604 Boot (0x1200) (f600ce1c3e05e76e3250b12061ebfe37) \Device\Harddisk0\DR0\Partition0 17:42:59.0680 3604 \Device\Harddisk0\DR0\Partition0 - ok 17:42:59.0695 3604 Boot (0x1200) (15e763f8b6717f1ee9aee025234e3f3a) \Device\Harddisk0\DR0\Partition1 17:42:59.0695 3604 \Device\Harddisk0\DR0\Partition1 - ok 17:42:59.0695 3604 ============================================================ 17:42:59.0695 3604 Scan finished 17:42:59.0695 3604 ============================================================ 17:42:59.0711 2624 Detected object count: 0 17:42:59.0711 2624 Actual detected object count: 0 |
15.02.2012, 19:07 | #17 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | failde to save all the components for the file //system 32//00003c92 Dann bitte jetzt CF ausführen:
__________________ComboFix Ein Leitfaden und Tutorium zur Nutzung von ComboFix
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat! Solltest du nach der Ausführung von Combofix Probleme beim Starten von Anwendungen haben und Meldungen erhalten wie Zitat:
__________________ |
15.02.2012, 19:26 | #18 |
| failde to save all the components for the file //system 32//00003c92Code:
ATTFilter ComboFix 12-02-15.01 - brinamarina 15.02.2012 19:14:55.1.4 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.4077.2670 [GMT 1:00] ausgeführt von:: c:\users\brinamarina\Desktop\ComboFix.exe AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C} SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\users\brinamarina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Check c:\users\brinamarina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Check\System Check.lnk c:\users\brinamarina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Check\Uninstall System Check.lnk c:\windows\assembly\tmp\U . . ((((((((((((((((((((((( Dateien erstellt von 2012-01-15 bis 2012-02-15 )))))))))))))))))))))))))))))) . . 2012-02-15 18:18 . 2012-02-15 18:18 -------- d-----w- c:\users\Default\AppData\Local\temp 2012-02-15 17:43 . 2012-02-15 17:43 69000 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{97A9BAC3-1D66-4667-AFC4-204E74E206E0}\offreg.dll 2012-02-15 17:33 . 2012-02-15 17:33 -------- d-----w- c:\program files (x86)\BabylonToolbar 2012-02-15 17:33 . 2012-02-15 17:33 -------- d-----w- c:\users\brinamarina\AppData\Roaming\Babylon 2012-02-15 16:41 . 2012-02-15 16:41 -------- d-----w- c:\program files (x86)\DealPly 2012-02-15 16:41 . 2012-02-15 17:34 -------- d-----w- c:\program files (x86)\BrowserCompanion 2012-02-15 15:49 . 2012-02-15 15:49 -------- d-----w- C:\_OTL 2012-02-15 06:41 . 2012-01-04 10:44 509952 ----a-w- c:\windows\system32\ntshrui.dll 2012-02-15 06:41 . 2012-01-04 08:58 442880 ----a-w- c:\windows\SysWow64\ntshrui.dll 2012-02-15 06:41 . 2011-12-30 06:26 515584 ----a-w- c:\windows\system32\timedate.cpl 2012-02-15 06:41 . 2011-12-30 05:27 478720 ----a-w- c:\windows\SysWow64\timedate.cpl 2012-02-15 06:41 . 2012-01-14 04:06 3145728 ----a-w- c:\windows\system32\win32k.sys 2012-02-14 20:49 . 2012-02-14 20:49 -------- d-----w- c:\program files (x86)\ESET 2012-02-14 20:03 . 2012-02-14 20:03 -------- d-----w- c:\users\brinamarina\AppData\Roaming\Malwarebytes 2012-02-14 20:03 . 2012-02-14 20:03 -------- d-----w- c:\programdata\Malwarebytes 2012-02-14 20:03 . 2012-02-14 20:03 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware 2012-02-14 20:03 . 2011-12-10 14:24 23152 ----a-w- c:\windows\system32\drivers\mbam.sys 2012-02-14 09:49 . 2012-01-17 03:39 8602168 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{97A9BAC3-1D66-4667-AFC4-204E74E206E0}\mpengine.dll 2012-02-13 16:07 . 2006-06-19 12:01 69632 ----a-w- c:\windows\SysWow64\ztvcabinet.dll 2012-02-13 16:07 . 2006-05-25 14:52 162304 ----a-w- c:\windows\SysWow64\ztvunrar36.dll 2012-02-13 16:07 . 2005-08-26 00:50 77312 ----a-w- c:\windows\SysWow64\ztvunace26.dll 2012-02-13 16:07 . 2003-02-02 19:06 153088 ----a-w- c:\windows\SysWow64\UNRAR3.dll 2012-02-13 16:07 . 2002-03-06 00:00 75264 ----a-w- c:\windows\SysWow64\unacev2.dll 2012-02-13 16:07 . 2012-02-13 16:07 -------- d--h--w- c:\program files (x86)\Trojan Remover 2012-02-13 16:07 . 2012-02-13 16:07 -------- d--h--w- c:\users\brinamarina\AppData\Roaming\Simply Super Software 2012-02-13 16:07 . 2012-02-13 16:07 -------- d--h--w- c:\programdata\Simply Super Software 2012-02-13 14:33 . 2012-02-13 15:44 -------- d-----w- c:\users\brinamarina\AppData\Local\ElevatedDiagnostics 2012-02-13 13:02 . 2012-02-13 13:02 16200 ----a-w- c:\windows\stinger.sys 2012-02-13 13:01 . 2012-02-13 14:21 -------- d-----w- c:\program files (x86)\stinger 2012-02-11 02:12 . 2012-02-11 02:12 -------- d--h--w- c:\users\brinamarina\AppData\Local\Ilivid Player 2012-02-11 02:11 . 2012-02-12 02:37 -------- dc-h--w- c:\programdata\{B49A644A-1076-4A3D-B124-DAA7862F2318} 2012-02-11 02:11 . 2012-02-12 02:37 -------- d-----w- c:\program files (x86)\iLivid 2012-02-11 02:11 . 2012-02-12 02:37 -------- d-----w- c:\program files (x86)\Windows iLivid Toolbar 2012-02-06 01:59 . 2012-02-06 01:59 -------- d--h--w- c:\users\brinamarina\AppData\Roaming\Amazon 2012-02-06 01:57 . 2012-02-06 01:57 -------- d-----w- c:\program files (x86)\Amazon 2012-02-01 12:26 . 2012-02-01 12:26 -------- d--h--w- c:\programdata\Qualcomm Atheros 2012-02-01 11:57 . 2011-06-14 01:08 353000 ----a-w- c:\windows\system32\drivers\RtHDMIVX.sys 2012-02-01 11:57 . 2011-06-14 01:08 2813544 ----a-w- c:\windows\system32\RtkHDM64.dll 2012-02-01 11:57 . 2011-06-14 01:08 97624 ----a-w- c:\windows\system32\RTEEL64H.dll 2012-02-01 11:57 . 2011-06-14 01:08 83048 ----a-w- c:\windows\system32\RHCoInst64.dll 2012-02-01 11:57 . 2011-06-14 01:08 78680 ----a-w- c:\windows\system32\RTEEG64H.dll 2012-02-01 11:57 . 2011-06-14 01:08 372056 ----a-w- c:\windows\system32\RTEEP64H.dll 2012-02-01 11:57 . 2011-06-14 01:08 310104 ----a-w- c:\windows\system32\RH3DHT64.dll 2012-02-01 11:57 . 2011-06-14 01:08 310104 ----a-w- c:\windows\system32\RH3DAA64.dll 2012-02-01 11:57 . 2011-06-14 01:08 2185832 ----a-w- c:\windows\system32\RHDMEx64.dll 2012-02-01 11:57 . 2011-06-14 01:08 204120 ----a-w- c:\windows\system32\RTEED64H.dll 2012-02-01 11:56 . 2011-06-21 00:03 2753536 ----a-w- c:\windows\system32\drivers\athrx.sys 2012-02-01 11:56 . 2011-06-21 00:03 2753536 ----a-w- c:\windows\system32\athrx.sys 2012-02-01 11:56 . 2012-02-01 11:56 -------- d-----w- c:\program files (x86)\Atheros WiFi Driver Installation 2012-02-01 11:54 . 2012-02-13 14:21 -------- d-----w- C:\SPLASH.SYS 2012-01-30 00:12 . 2012-01-30 00:12 -------- d--h--w- c:\programdata\{83C3B2FD-37EA-4C06-A228-E9B5E32FF0B1} 2012-01-29 20:22 . 2012-01-29 20:22 -------- d--h--w- c:\users\brinamarina\AppData\Local\PackageAware . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2012-02-15 09:39 . 2011-11-25 10:00 132320 ----a-w- c:\windows\system32\drivers\avipbb.sys 2012-01-26 23:52 . 2010-11-21 03:27 279656 ------w- c:\windows\system32\MpSigStub.exe 2011-12-20 22:20 . 2011-11-02 21:52 414368 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2011-11-19 14:58 . 2012-01-12 10:21 77312 ----a-w- c:\windows\system32\packager.dll 2011-11-19 14:01 . 2012-01-12 10:21 67072 ----a-w- c:\windows\SysWow64\packager.dll . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{00cbb66b-1d3b-46d3-9577-323a336acb50}] 2011-10-27 09:24 225584 ----a-w- c:\program files (x86)\BrowserCompanion\jsloader.dll . [HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{963B125B-8B21-49A2-A3A8-E37092276531}] 2011-10-27 09:24 141104 ----a-w- c:\program files (x86)\BrowserCompanion\updatebhoWin32.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2011-01-12 283160] "StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-01-27 336384] "ISBMgr.exe"="c:\program files (x86)\Sony\ISB Utility\ISBMgr.exe" [2011-02-15 2757312] "PMBVolumeWatcher"="c:\program files (x86)\Sony\PMB\PMBVolumeWatcher.exe" [2010-11-26 648032] "APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2011-11-01 59240] "avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2011-10-19 258512] "iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2011-12-08 421736] "TrojanScanner"="c:\program files (x86)\Trojan Remover\Trjscan.exe" [2010-07-05 1167296] "Browser companion helper"="c:\program files (x86)\BrowserCompanion\BCHelper.exe" [2011-11-29 182576] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa] Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS] @="" . R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] R3 AthBTPort;Atheros Virtual Bluetooth Class;c:\windows\system32\DRIVERS\btath_flt.sys [x] R3 ATHDFU;Atheros Valkyrie USB BootROM;c:\windows\System32\Drivers\AthDfu.sys [x] R3 BBSvc;Bing Bar Update Service;c:\program files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-03-01 183560] R3 BTATH_A2DP;Bluetooth A2DP Audio Driver;c:\windows\system32\drivers\btath_a2dp.sys [x] R3 btath_avdt;Atheros Bluetooth AVDT Service;c:\windows\system32\drivers\btath_avdt.sys [x] R3 BTATH_HCRP;Bluetooth HCRP Server driver;c:\windows\system32\drivers\btath_hcrp.sys [x] R3 BTATH_LWFLT;Bluetooth LWFLT Device;c:\windows\system32\DRIVERS\btath_lwflt.sys [x] R3 BTATH_RCP;Bluetooth AVRCP Device;c:\windows\system32\drivers\btath_rcp.sys [x] R3 BtFilter;BtFilter;c:\windows\system32\DRIVERS\btfilter.sys [x] R3 DCDhcpService;DCDhcpService;c:\program files\Sony\VAIO Smart Network\WFDA\DCDhcpService.exe [2011-07-19 104096] R3 e1yexpress;Intel(R) Gigabit Network Connections Driver;c:\windows\system32\DRIVERS\e1y60x64.sys [x] R3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe [2010-01-15 227232] R3 SOHCImp;VAIO Content Importer;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe [2011-02-21 113824] R3 SOHDs;VAIO Device Searcher;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [2011-02-21 67232] R3 SpfService;VAIO Entertainment Common Service;c:\program files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe [2011-01-20 286936] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x] R3 TsUsbGD;%TsUsbGD.DeviceDesc.Generic%;c:\windows\system32\drivers\TsUsbGD.sys [x] R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys [x] R3 VCFw;VAIO Content Folder Watcher;c:\program files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [2011-01-20 887000] R3 VcmIAlzMgr;VAIO Content Metadata Intelligent Analyzing Manager;c:\program files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe [2011-02-18 546608] R3 VcmINSMgr;VAIO Content Metadata Intelligent Network Service Manager;c:\program files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe [2011-02-18 385336] R3 VcmXmlIfHelper;VAIO Content Metadata XML Interface;c:\program files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe [2011-02-18 99104] R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184] S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys [x] S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys [x] S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x] S2 AdobeActiveFileMonitor9.0;Adobe Active File Monitor V9;c:\program files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe [2010-09-30 169408] S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-09-05 64952] S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x] S2 AntiVirSchedulerService;Avira Planer;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [2011-10-19 86224] S2 Atheros Bt&Wlan Coex Agent;Atheros Bt&Wlan Coex Agent;c:\program files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [2011-04-29 146592] S2 AtherosSvc;AtherosSvc;c:\program files (x86)\Bluetooth Suite\adminservice.exe [2011-04-29 91296] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576] S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-01-12 13336] S2 PMBDeviceInfoProvider;PMBDeviceInfoProvider;c:\program files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe [2010-11-26 398176] S2 rimspci;rimspci;c:\windows\system32\drivers\rimssne64.sys [x] S2 risdsnpe;risdsnpe;c:\windows\system32\drivers\risdsnxc64.sys [x] S2 SampleCollector;VAIO Care Performance Service;c:\program files\Sony\VAIO Care\VCPerfService.exe [2011-01-29 259192] S2 uCamMonitor;CamMonitor;c:\program files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [2011-02-23 105024] S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-02-24 2656280] S2 VAIO Power Management;VAIO Power Management;c:\program files\Sony\VAIO Power Management\SPMService.exe [2011-02-14 550080] S2 VSNService;VSNService;c:\program files\Sony\VAIO Smart Network\VSNService.exe [2011-08-12 971704] S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [x] S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x] S3 ArcSoftKsUFilter;ArcSoft Magic-I Visual Effect;c:\windows\system32\DRIVERS\ArcSoftKsUFilter.sys [x] S3 BTATH_BUS;Atheros Bluetooth Bus;c:\windows\system32\drivers\btath_bus.sys [x] S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys [x] S3 MEIx64;Intel(R) Management Engine Interface;c:\windows\system32\drivers\HECIx64.sys [x] S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\drivers\nusb3hub.sys [x] S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\drivers\nusb3xhc.sys [x] S3 SFEP;Sony Firmware Extension Parser;c:\windows\system32\drivers\SFEP.sys [x] S3 VCService;VCService;c:\program files\Sony\VAIO Care\VCService.exe [2011-02-14 44736] S3 VUAgent;VUAgent;c:\program files\Sony\VAIO Update Common\VUAgent.exe [2011-09-23 1429608] . . --- Andere Dienste/Treiber im Speicher --- . *NewlyCreated* - 70217886 *Deregistered* - 70217886 . . --------- x86-64 ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2011-03-04 11775592] "RtHDVBg"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2011-03-04 2188904] "AtherosBtStack"="c:\program files (x86)\Bluetooth Suite\BtvStack.exe" [2011-04-29 790688] "AthBtTray"="c:\program files (x86)\Bluetooth Suite\AthBtTray.exe" [2011-04-29 657568] "AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-07-28 497648] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "LoadAppInit_DLLs"=0x0 . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = hxxp://search.babylon.com/?babsrc=HP_ss&affID=101365&mntrId=126d820900000000000090004ebf1401&tt=090212_noffx mLocal Page = c:\windows\SysWOW64\blank.htm IE: Nach Microsoft E&xel exportieren - c:\progra~2\MICROS~4\Office12\EXCEL.EXE/3000 TCP: DhcpNameServer = 192.168.0.1 Handler: base64 - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - c:\program files (x86)\BrowserCompanion\tdataprotocol.dll Handler: chrome - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - c:\program files (x86)\BrowserCompanion\tdataprotocol.dll Handler: prox - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - c:\program files (x86)\BrowserCompanion\tdataprotocol.dll DPF: {66D845A0-C3BB-45AD-807C-9BFEAF20EF2C} - hxxp://my.ohm-hochschule.de/content/static/ecm/activex/Enable_Edit_In_Place.cab FF - ProfilePath - c:\users\brinamarina\AppData\Roaming\Mozilla\Firefox\Profiles\m0w9j2ob.default\ FF - prefs.js: browser.search.selectedEngine - Google FF - prefs.js: browser.startup.homepage - hxxp://search.babylon.com/?babsrc=HP_ss&affID=101365&mntrId=126d820900000000000090004ebf1401&tt=090212_noffx FF - prefs.js: keyword.URL - hxxp://search.babylon.com/?babsrc=adbartrp&affID=101365&mntrId=126d820900000000000090004ebf1401&tt=090212_noffx&q= FF - user.js: network.cookie.cookieBehavior - 0 FF - user.js: privacy.clearOnShutdown.cookies - false FF - user.js: security.warn_viewing_mixed - false FF - user.js: security.warn_viewing_mixed.show_once - false FF - user.js: security.warn_submit_insecure - false FF - user.js: security.warn_submit_insecure.show_once - false . - - - - Entfernte verwaiste Registrierungseinträge - - - - . HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe . . . [HKEY_LOCAL_MACHINE\system\ControlSet001\services\SampleCollector] "ImagePath"="\"c:\program files\Sony\VAIO Care\VCPerfService.exe\" \"/service\" \"/sstates\" \"/sampleinterval=5000\" \"/procinterval=5\" \"/dllinterval=120\" \"/counter=\Processor(_Total)\% Processor Time:1/counter=\PhysicalDisk(_Total)\Disk Bytes/sec:1\" \"/counter=\Network Interface(*)\Bytes Total/sec:1\" \"/expandcounter=\Processor Information(*)\Processor Frequency:1\" \"/expandcounter=\Processor(*)\% Idle Time:1\" \"/expandcounter=\Processor(*)\% C1 Time:1\" \"/expandcounter=\Processor(*)\% C2 Time:1\" \"/expandcounter=\Processor(*)\% C3 Time:1\" \"/expandcounter=\Processor(*)\% Processor Time:1\" \"/directory=c:\programdata\Sony Corporation\VAIO Care\inteldata\"" . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10y_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10y_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10y.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.10" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10y.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10y.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10y.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}] @Denied: (A 2) (Everyone) @="IFlashBroker4" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\software\McAfee] "SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79, 00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\ . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Zeit der Fertigstellung: 2012-02-15 19:22:02 ComboFix-quarantined-files.txt 2012-02-15 18:22 . Vor Suchlauf: 7 Verzeichnis(se), 419.426.832.384 Bytes frei Nach Suchlauf: 21 Verzeichnis(se), 418.802.229.248 Bytes frei . - - End Of File - - F5DFD23680E38EB18EB90335F7D23992 |
15.02.2012, 19:30 | #19 |
/// Winkelfunktion /// TB-Süch-Tiger™ | failde to save all the components for the file //system 32//00003c92 Combofix - Scripten 1. Starte das Notepad (Start / Ausführen / notepad[Enter]) 2. Jetzt füge mit copy/paste den ganzen Inhalt der untenstehenden Codebox in das Notepad Fenster ein. Code:
ATTFilter Folder:: c:\program files (x86)\BabylonToolbar c:\users\brinamarina\AppData\Roaming\Babylon c:\program files (x86)\Windows iLivid Toolbar 4. Deaktivere den Guard Deines Antivirenprogramms und eine eventuell vorhandene Software Firewall. (Auch Guards von Ad-, Spyware Programmen und den Tea Timer (wenn vorhanden) !) 5. Dann ziehe die CFScript.txt auf die cofi.exe, so wie es im unteren Bild zu sehen ist. Damit wird Combofix neu gestartet. 6. Nach dem Neustart (es wird gefragt ob Du neustarten willst), poste bitte die folgenden Log Dateien: Combofix.txt Hinweis: Das obige Script ist nur für diesen einen User in dieser Situtation erstellt worden. Es ist auf keinen anderen Rechner portierbar und darf nicht anderweitig verwandt werden, da es das System nachhaltig schädigen kann!
__________________ Logfiles bitte immer in CODE-Tags posten |
15.02.2012, 19:46 | #20 |
| failde to save all the components for the file //system 32//00003c92Code:
ATTFilter ComboFix 12-02-15.01 - brinamarina 15.02.2012 19:37:51.2.4 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.4077.2545 [GMT 1:00] ausgeführt von:: c:\users\brinamarina\Desktop\ComboFix.exe Benutzte Befehlsschalter :: c:\users\brinamarina\Desktop\CFScript.txt AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C} SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\program files (x86)\BabylonToolbar c:\program files (x86)\BabylonToolbar\BabylonToolbar\1.4.35.10\BabylonToolbarApp.dll c:\program files (x86)\BabylonToolbar\BabylonToolbar\1.4.35.10\BabylonToolbarEng.dll c:\program files (x86)\BabylonToolbar\BabylonToolbar\1.4.35.10\BabylonToolbarsrv.exe c:\program files (x86)\BabylonToolbar\BabylonToolbar\1.4.35.10\BabylonToolbarTlbr.dll c:\program files (x86)\BabylonToolbar\BabylonToolbar\1.4.35.10\bh\BabylonToolbar.dll c:\program files (x86)\BabylonToolbar\BabylonToolbar\1.4.35.10\uninstall.exe c:\program files (x86)\Windows iLivid Toolbar c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\as_guid.dat c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\content\data\search\engines.xml c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\content\data\search\search.xsl c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\content\lib\about.xml c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\content\lib\dtxpanel.xul c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\content\lib\dtxpaneltransparent.xul c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\content\lib\dtxpanelwin.xul c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\content\lib\dtxprefwin.xul c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\content\lib\dtxtransparentwin.xul c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\content\lib\dtxwin.xul c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\content\lib\emailnotifierproviders.xml c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\content\lib\neterror.xhtml c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\content\lib\wmpstreamer.html c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\content\modules\datastore.jsm c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\content\neterror.xhtml c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\content\partner.coupons.xml c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\content\preferences.xml c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\content\template.xml c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\content\toolbar.htm c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\content\toolbar.xul c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\content\vmnrsswin.xml c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\content\widgets\net.vmn.www.PPCBully\tb_icon.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\content\widgets\net.vmn.www.PPCBully\widget.xml c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\content\widgets\net.vmn.www.PPCBully\widget_version c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\babylon_logo.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\bandoo.css c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\bluelite.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\bluesky.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\btn-search-over.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\btn-search.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\btn-settings-over.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\btn-settings.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\btn-widgets-over.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\btn-widgets.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\btn_settings.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\ca.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\dictionary.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\divider.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\downloadcom.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\dtxlogo.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\ebay.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\email.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\email_on.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\facebook.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\games.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\graphred0.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\graphred0_5.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\graphred1.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\graphred1_5.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\graphred2.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\graphred2_5.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\graphred3.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\graphred3_5.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\graphred4.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\graphred4_5.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\graphred5.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\graphredna.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\grey.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\ico-shield.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\icon_amazon.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\icon_games.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\icon_radio_png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\icon_seperator_png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\icon_twitter.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\icon_youtube.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\images.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\imesh.css c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\add.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\aol.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\arrow-dn.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\arrow-right-disabled.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\arrow-right.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\arrow-up.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\bg-btn-divider.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\bg-btn-end.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\bg-btn-mdl.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\bg-btn-mdl_ff.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\bg-btn-start.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\bg-btnover-divider.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\bg-btnover-end.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\bg-btnover-mdl.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\bg-btnover-mdl_ff.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\bg-btnover-start.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\blank.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\btn-widgets-over.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\btn-widgets.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\btn_slider.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\btnback-down-vista.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\btnback-vista.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\btnleft-down-vista.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\btnleft-vista.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\btnright-down-vista.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\btnright-vista.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\button-splitter-down-vista.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\button-splitter-vista.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\checkmark.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\chevron.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\collapse.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\comcast.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\dtx.css c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\edit-back-hot.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\edit-back.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\expand.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\found.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\gmail.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\highlight.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\highlight_blue.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\highlight_cyan.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\highlight_lime.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\highlight_magenta.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\highlight_yellow.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\hotmail.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\ico-check.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\imap.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\lastsearch-thumb-back.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\loadingMid.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\lock.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\logo-separator.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\mailcom.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\menu_bg-basic.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\menu_separator_bar.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\menu_separator_white.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\menuitem-splitter.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\menuitemback-down-vista.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\menuitemback-vista.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\menuitemleft-down-vista.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\menuitemleft-vista.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\menuitemright-down-vista.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\menuitemright-vista.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\modify.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\move.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\movetarget.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\css\panels.css c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\css\popupAbout.css c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\css\popupGames.css c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\css\popupRSS.css c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\css\popupWidgets.css c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\css\dialog.css c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\bg.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\btn-search.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\btn-wide-close-over.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\btn-wide-close.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\default.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\tab-off-l.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\tab-off-r.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\tab-on-l.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\tab-on-r.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\transparent.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\ttlbar-left.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\ttlbar-mdl.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\ttlbar-right.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\win-btm-left.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\win-btm-mdl.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\win-btm-right-resize.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\win-btm-right.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\win-left.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\images\win-right.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\default\main.html c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\footer.htm c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\gamecategory.xsl c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\gameData.js c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\gameList.xsl c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\games.xsl c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\gametype.xsl c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\arrow-dn.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\arrow-sml-drop.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\arrow-sml.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\arrow-up.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\arrowr-bluew5.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\bg-aboutbox.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\bg-btnover.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\bg-pnl520x390.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-addtoolbar-left-over.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-addtoolbar-left.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-addtoolbar-right.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-back.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-close-grey.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-close-greyover.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-drag.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-mdl-over.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-mdl.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-moredetails.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-next-over.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-next.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-play-left-over.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-play-left.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-previous-over.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-previous.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-right-over.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-search-pnlbtm-over.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-search-pnlbtm.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-try-left-over.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\btn-try-left.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\bullet-orange.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\gamethumb-on.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\gamethumb2-over.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\ico-calendar.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\ico-dollar.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\ico-download.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\ico-joystick24.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\ico-news24.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\ico-play.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\ico-tags.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\icon-Add.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\icon-download.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\icon-Info.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\icon-play.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\icon-shop.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\menul-bgon.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\menul-bgover.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\panel-botm-noscroll.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\scroll-bg-206.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\scroll-bg.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\scroll-topwin.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\scrollb-disable.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\scrollb-down.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\scrollb-over.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\scrollb.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\scrollt-disable.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\scrollt-down.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\scrollt-over.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\scrollt.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\searchbox-pnlbtm.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\star_x_grey.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\star_x_orange.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\TRUSTe_about.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\view-detailed-on.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\view-detailed-over.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\view-thumb-on.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\view-thumb-over.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\widgets-square-16px.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\widgets-square-24px.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\images\widgets.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\initHTML.html c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\popupGames.html c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\popupHTML.html c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\popupRSS.html c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\popupWidgets.html c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\panels\scroll.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\pop.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\css\manager.css c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\css\slider.css c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\bg-pnl.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\btn-close-grey.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\btn-close-greyover.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\collapsed_button.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\expanded_button.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\ico-playstation-down.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\ico-playstation-over.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\ico-playstation.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\ico-radio.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\music-note.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-btn-pause-on.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-btn-pause.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-btn-play-on.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-btn-play.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-eq-bg.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-eq-buffer.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-eq-busy.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-eq-off.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-eq-on.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-eq-warning.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-options-design-on.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-options-design.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-options-on.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-options.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-volume-0.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-volume-1.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-volume-2.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-volume-3.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\radio-volume-mute.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\scrollbar-handle.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\scrollbar-track.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\slider.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\slideron.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\images\track.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\managerpanel.html c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radio\volumeslider.html c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radiobeta-buffering.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radiobeta-connecting.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radiobeta-playing.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\radiobeta-stopped.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\reload.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\remove.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\rename.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\resize-box.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\rss.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\rsschannelback.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\RSSLogo.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\rsstabdivider.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\scroll-left.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\scroll-right.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\search-go.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\search.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\text-ellipsis.xml c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\throbber.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\toolbarsplitter.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\transparent_1px.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_02.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_03.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_04.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_06.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_07.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_08.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_09.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_10.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_11.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_12.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_13.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_14.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_15.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_16.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_18.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_19.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_20.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\border_21.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\btn-close-grey.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\btn-close-greyover.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\close-hot.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\close-normal.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\loadingMid.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\proxy.html c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\template.html c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\template.xml c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\templateFF.html c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\uwa\throbber.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\icons\cond999.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\icons\icons.xml c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\icons\na-s.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\icons\na-t.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\icons\na.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\add.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\arrowr-bluew5.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\bg-pnl.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\bg-pnl520x350.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\bg-pnl520x350blue-whitebg.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\bg-pnl520x350blue.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\box-check.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\box-uncheck.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btn-close-grey.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btn-close-greyover.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btn-delete.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btn-search-pnlbtm-over.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btn-search-pnlbtm.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btnarrow-next-off.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btnarrow-next.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btnarrow-previous-off.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\btnarrow-previous.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\ico-check.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\ico-hotandhumid-s.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\ico-hotandhumid.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\options-weather.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\over-blue.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\over-orange.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\powered-by-weatherbug.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\powered-by-weatherbug2.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\radio-checked.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\radio-unchecked.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\searchbox-pnlbtm.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\images\weather-contour.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\popupWeather.css c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\weatherbutton\panels\popupWeather.html c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lib\yahoo.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\lichen.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\logo-about.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\logo-over.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\logo-separator.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\logo.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\mail.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\maps.bmp c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\menuseparatorback.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\modify-save.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\modify.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\modifyhot.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\music.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\news.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\options\options-main.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\options\options-search.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\options\options-weather.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\options\options-weather.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\options\options-widgets.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\orange.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\pixsy.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\protect-id.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\radiobeta-buffering.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\radiobeta-connecting.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\radiobeta-playing.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\radiobeta-stopped.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\relatedlinks.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\rss-collapse.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\rss-delete.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\rss-expand.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\rss-feed.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\rss-folder-remove.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\rss-folder-rename.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\rss-folder.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\rss-found.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\rss-reload.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\rss-subscribe.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\rss.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\rssback.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\rsstopback.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\search-over.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\search.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\search_button_over_png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\search_button_png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\searchbar\searchbar-background-left.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\searchbar\searchbar-background-middle.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\searchbar\searchbar-background-right.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\settings.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\shopping.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\siteinfo.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\skin-bluelite.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\skin-bluesky.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\skin-grey.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\skin-lichen.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\skin-orange.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\skin-yellow.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\skin.xml c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\technorati.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\throbber.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\toolbarsplitter.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\translate.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\video.bmp c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\vmn.css c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\vmn.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\weather.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\web.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\widgets-square-16px.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\wikipedia.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\yahoosearch.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\yellow.gif c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\youtube.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\chrome\skin\zoom.png c:\program files (x86)\Windows iLivid Toolbar\Datamngr\ToolBar\manifest.xml c:\users\brinamarina\AppData\Roaming\Babylon c:\users\brinamarina\AppData\Roaming\Babylon\log_file.txt . . ((((((((((((((((((((((( Dateien erstellt von 2012-01-15 bis 2012-02-15 )))))))))))))))))))))))))))))) . . 2012-02-15 18:41 . 2012-02-15 18:41 -------- d-----w- c:\users\Default\AppData\Local\temp 2012-02-15 17:43 . 2012-02-15 17:43 69000 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{97A9BAC3-1D66-4667-AFC4-204E74E206E0}\offreg.dll 2012-02-15 16:41 . 2012-02-15 16:41 -------- d-----w- c:\program files (x86)\DealPly 2012-02-15 16:41 . 2012-02-15 17:34 -------- d-----w- c:\program files (x86)\BrowserCompanion 2012-02-15 15:49 . 2012-02-15 15:49 -------- d-----w- C:\_OTL 2012-02-15 06:41 . 2012-01-04 10:44 509952 ----a-w- c:\windows\system32\ntshrui.dll 2012-02-15 06:41 . 2012-01-04 08:58 442880 ----a-w- c:\windows\SysWow64\ntshrui.dll 2012-02-15 06:41 . 2011-12-30 06:26 515584 ----a-w- c:\windows\system32\timedate.cpl 2012-02-15 06:41 . 2011-12-30 05:27 478720 ----a-w- c:\windows\SysWow64\timedate.cpl 2012-02-15 06:41 . 2012-01-14 04:06 3145728 ----a-w- c:\windows\system32\win32k.sys 2012-02-14 20:49 . 2012-02-14 20:49 -------- d-----w- c:\program files (x86)\ESET 2012-02-14 20:03 . 2012-02-14 20:03 -------- d-----w- c:\users\brinamarina\AppData\Roaming\Malwarebytes 2012-02-14 20:03 . 2012-02-14 20:03 -------- d-----w- c:\programdata\Malwarebytes 2012-02-14 20:03 . 2012-02-14 20:03 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware 2012-02-14 20:03 . 2011-12-10 14:24 23152 ----a-w- c:\windows\system32\drivers\mbam.sys 2012-02-14 09:49 . 2012-01-17 03:39 8602168 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{97A9BAC3-1D66-4667-AFC4-204E74E206E0}\mpengine.dll 2012-02-13 16:07 . 2006-06-19 12:01 69632 ----a-w- c:\windows\SysWow64\ztvcabinet.dll 2012-02-13 16:07 . 2006-05-25 14:52 162304 ----a-w- c:\windows\SysWow64\ztvunrar36.dll 2012-02-13 16:07 . 2005-08-26 00:50 77312 ----a-w- c:\windows\SysWow64\ztvunace26.dll 2012-02-13 16:07 . 2003-02-02 19:06 153088 ----a-w- c:\windows\SysWow64\UNRAR3.dll 2012-02-13 16:07 . 2002-03-06 00:00 75264 ----a-w- c:\windows\SysWow64\unacev2.dll 2012-02-13 16:07 . 2012-02-13 16:07 -------- d-----w- c:\program files (x86)\Trojan Remover 2012-02-13 16:07 . 2012-02-13 16:07 -------- d-----w- c:\users\brinamarina\AppData\Roaming\Simply Super Software 2012-02-13 16:07 . 2012-02-13 16:07 -------- d-----w- c:\programdata\Simply Super Software 2012-02-13 14:33 . 2012-02-13 15:44 -------- d-----w- c:\users\brinamarina\AppData\Local\ElevatedDiagnostics 2012-02-13 13:02 . 2012-02-13 13:02 16200 ----a-w- c:\windows\stinger.sys 2012-02-13 13:01 . 2012-02-13 14:21 -------- d-----w- c:\program files (x86)\stinger 2012-02-11 02:12 . 2012-02-11 02:12 -------- d-----w- c:\users\brinamarina\AppData\Local\Ilivid Player 2012-02-11 02:11 . 2012-02-12 02:37 -------- dc----w- c:\programdata\{B49A644A-1076-4A3D-B124-DAA7862F2318} 2012-02-11 02:11 . 2012-02-12 02:37 -------- d-----w- c:\program files (x86)\iLivid 2012-02-06 01:59 . 2012-02-06 01:59 -------- d-----w- c:\users\brinamarina\AppData\Roaming\Amazon 2012-02-06 01:57 . 2012-02-06 01:57 -------- d-----w- c:\program files (x86)\Amazon 2012-02-01 12:26 . 2012-02-01 12:26 -------- d-----w- c:\programdata\Qualcomm Atheros 2012-02-01 11:57 . 2011-06-14 01:08 353000 ----a-w- c:\windows\system32\drivers\RtHDMIVX.sys 2012-02-01 11:57 . 2011-06-14 01:08 2813544 ----a-w- c:\windows\system32\RtkHDM64.dll 2012-02-01 11:57 . 2011-06-14 01:08 97624 ----a-w- c:\windows\system32\RTEEL64H.dll 2012-02-01 11:57 . 2011-06-14 01:08 83048 ----a-w- c:\windows\system32\RHCoInst64.dll 2012-02-01 11:57 . 2011-06-14 01:08 78680 ----a-w- c:\windows\system32\RTEEG64H.dll 2012-02-01 11:57 . 2011-06-14 01:08 372056 ----a-w- c:\windows\system32\RTEEP64H.dll 2012-02-01 11:57 . 2011-06-14 01:08 310104 ----a-w- c:\windows\system32\RH3DHT64.dll 2012-02-01 11:57 . 2011-06-14 01:08 310104 ----a-w- c:\windows\system32\RH3DAA64.dll 2012-02-01 11:57 . 2011-06-14 01:08 2185832 ----a-w- c:\windows\system32\RHDMEx64.dll 2012-02-01 11:57 . 2011-06-14 01:08 204120 ----a-w- c:\windows\system32\RTEED64H.dll 2012-02-01 11:56 . 2011-06-21 00:03 2753536 ----a-w- c:\windows\system32\drivers\athrx.sys 2012-02-01 11:56 . 2011-06-21 00:03 2753536 ----a-w- c:\windows\system32\athrx.sys 2012-02-01 11:56 . 2012-02-01 11:56 -------- d-----w- c:\program files (x86)\Atheros WiFi Driver Installation 2012-02-01 11:54 . 2012-02-13 14:21 -------- d-----w- C:\SPLASH.SYS 2012-01-30 00:12 . 2012-01-30 00:12 -------- d-----w- c:\programdata\{83C3B2FD-37EA-4C06-A228-E9B5E32FF0B1} 2012-01-29 20:22 . 2012-01-29 20:22 -------- d-----w- c:\users\brinamarina\AppData\Local\PackageAware . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2012-02-15 09:39 . 2011-11-25 10:00 132320 ----a-w- c:\windows\system32\drivers\avipbb.sys 2012-01-26 23:52 . 2010-11-21 03:27 279656 ------w- c:\windows\system32\MpSigStub.exe 2011-12-20 22:20 . 2011-11-02 21:52 414368 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2011-11-19 14:58 . 2012-01-12 10:21 77312 ----a-w- c:\windows\system32\packager.dll 2011-11-19 14:01 . 2012-01-12 10:21 67072 ----a-w- c:\windows\SysWow64\packager.dll . . ((((((((((((((((((((((((((((( SnapShot@2012-02-15_18.19.03 ))))))))))))))))))))))))))))))))))))))))) . + 2011-05-17 07:24 . 2012-02-15 18:22 32768 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat - 2011-05-17 07:24 . 2012-02-15 17:34 32768 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat + 2009-07-14 04:54 . 2012-02-15 18:22 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat - 2009-07-14 04:54 . 2012-02-15 17:34 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat + 2012-02-15 18:21 . 2012-02-15 18:21 47616 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Workflow.#\fcce6ebdffab904e2ad8ec441dd1e504\Microsoft.Workflow.Compiler.ni.exe + 2009-07-14 05:12 . 2012-02-15 18:22 262144 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat - 2009-07-14 05:12 . 2012-02-15 15:49 262144 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat - 2011-05-17 07:24 . 2012-02-15 17:34 393216 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat + 2011-05-17 07:24 . 2012-02-15 18:22 393216 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat + 2012-02-15 18:20 . 2012-02-15 18:20 462336 c:\windows\assembly\NativeImages_v4.0.30319_64\WsatConfig\c74b1d583e670b400fac95a92744928c\WsatConfig.ni.exe + 2012-02-15 18:20 . 2012-02-15 18:20 512000 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Dynamic\994e60f26b11755207e9c7ebb9fd688b\System.Dynamic.ni.dll + 2012-02-15 18:20 . 2012-02-15 18:20 432128 c:\windows\assembly\NativeImages_v4.0.30319_64\SMSvcHost\70edc7fbf7505880ab1652b35f6e9517\SMSvcHost.ni.exe + 2012-02-15 18:20 . 2012-02-15 18:20 364544 c:\windows\assembly\NativeImages_v4.0.30319_64\MSBuild\5385bfc8c0c1b7fbfdcd383cbe525d26\MSBuild.ni.exe + 2012-02-15 18:21 . 2012-02-15 18:21 422400 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\3002d0322acd6f6dd016bd8105bedf51\Microsoft.VisualBasic.Compatibility.Data.ni.dll + 2012-02-15 18:20 . 2012-02-15 18:20 600064 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Transacti#\385ffb17c4890d76682d1d0c81f39e09\Microsoft.Transactions.Bridge.Dtc.ni.dll + 2012-02-15 18:21 . 2012-02-15 18:21 851456 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Build.Uti#\a67cfbf40e33a6a4084f4b276f0efb5e\Microsoft.Build.Utilities.v4.0.ni.dll + 2012-02-15 18:21 . 2012-02-15 18:21 5237248 c:\windows\assembly\NativeImages_v4.0.30319_64\WindowsBase\9d5feeb6727e222673d5bd89f0620ddd\WindowsBase.ni.dll + 2012-02-15 18:19 . 2012-02-15 18:19 2449408 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Xaml\e158bd31f13cbc20f6fc7c7f426113d7\System.Xaml.ni.dll + 2012-02-15 18:21 . 2012-02-15 18:21 1891328 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationBuildTa#\725c3cf628a0bca2ad885aa6136edc91\PresentationBuildTasks.ni.dll + 2012-02-15 18:21 . 2012-02-15 18:21 1623040 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\6b82e7a7001a661cb712067b75b7c5ec\Microsoft.VisualBasic.Activities.Compiler.ni.dll + 2012-02-15 18:21 . 2012-02-15 18:21 2317312 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\60ff6c1510fb0e2d70e616650eb7ae47\Microsoft.VisualBasic.ni.dll + 2012-02-15 18:21 . 2012-02-15 18:21 1829888 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\3fe18a11a13a6ecdf4b046a584c9bba8\Microsoft.VisualBasic.Compatibility.ni.dll + 2012-02-15 18:20 . 2012-02-15 18:20 1526784 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Transacti#\2e6537fafd64c81032b0aaebb7d3180a\Microsoft.Transactions.Bridge.ni.dll + 2012-02-15 18:20 . 2012-02-15 18:20 2009600 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.CSharp\1cf22b5ea0ef63e71b6416a36b656b8a\Microsoft.CSharp.ni.dll + 2012-02-15 18:20 . 2012-02-15 18:20 6004736 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Build\a06bcc10747e71d3d8b482be1b54da09\Microsoft.Build.ni.dll + 2012-02-15 18:20 . 2012-02-15 18:20 2521088 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Build.Eng#\6fdf4753fdb6e360ee2d91b25de48c20\Microsoft.Build.Engine.ni.dll + 2012-02-15 18:20 . 2012-02-15 18:20 10439168 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Core\fcefa2871c7dc4d397ff8c6f92abf0d5\System.Core.ni.dll . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{00cbb66b-1d3b-46d3-9577-323a336acb50}] 2011-10-27 09:24 225584 ----a-w- c:\program files (x86)\BrowserCompanion\jsloader.dll . [HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{963B125B-8B21-49A2-A3A8-E37092276531}] 2011-10-27 09:24 141104 ----a-w- c:\program files (x86)\BrowserCompanion\updatebhoWin32.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2011-01-12 283160] "StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-01-27 336384] "ISBMgr.exe"="c:\program files (x86)\Sony\ISB Utility\ISBMgr.exe" [2011-02-15 2757312] "PMBVolumeWatcher"="c:\program files (x86)\Sony\PMB\PMBVolumeWatcher.exe" [2010-11-26 648032] "APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2011-11-01 59240] "avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2011-10-19 258512] "iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2011-12-08 421736] "TrojanScanner"="c:\program files (x86)\Trojan Remover\Trjscan.exe" [2010-07-05 1167296] "Browser companion helper"="c:\program files (x86)\BrowserCompanion\BCHelper.exe" [2011-11-29 182576] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa] Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS] @="" . R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] R3 AthBTPort;Atheros Virtual Bluetooth Class;c:\windows\system32\DRIVERS\btath_flt.sys [x] R3 ATHDFU;Atheros Valkyrie USB BootROM;c:\windows\System32\Drivers\AthDfu.sys [x] R3 BBSvc;Bing Bar Update Service;c:\program files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-03-01 183560] R3 BTATH_A2DP;Bluetooth A2DP Audio Driver;c:\windows\system32\drivers\btath_a2dp.sys [x] R3 btath_avdt;Atheros Bluetooth AVDT Service;c:\windows\system32\drivers\btath_avdt.sys [x] R3 BTATH_HCRP;Bluetooth HCRP Server driver;c:\windows\system32\drivers\btath_hcrp.sys [x] R3 BTATH_LWFLT;Bluetooth LWFLT Device;c:\windows\system32\DRIVERS\btath_lwflt.sys [x] R3 BTATH_RCP;Bluetooth AVRCP Device;c:\windows\system32\drivers\btath_rcp.sys [x] R3 BtFilter;BtFilter;c:\windows\system32\DRIVERS\btfilter.sys [x] R3 DCDhcpService;DCDhcpService;c:\program files\Sony\VAIO Smart Network\WFDA\DCDhcpService.exe [2011-07-19 104096] R3 e1yexpress;Intel(R) Gigabit Network Connections Driver;c:\windows\system32\DRIVERS\e1y60x64.sys [x] R3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe [2010-01-15 227232] R3 SOHCImp;VAIO Content Importer;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe [2011-02-21 113824] R3 SOHDs;VAIO Device Searcher;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [2011-02-21 67232] R3 SpfService;VAIO Entertainment Common Service;c:\program files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe [2011-01-20 286936] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x] R3 TsUsbGD;%TsUsbGD.DeviceDesc.Generic%;c:\windows\system32\drivers\TsUsbGD.sys [x] R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys [x] R3 VCFw;VAIO Content Folder Watcher;c:\program files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [2011-01-20 887000] R3 VcmIAlzMgr;VAIO Content Metadata Intelligent Analyzing Manager;c:\program files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe [2011-02-18 546608] R3 VcmINSMgr;VAIO Content Metadata Intelligent Network Service Manager;c:\program files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe [2011-02-18 385336] R3 VcmXmlIfHelper;VAIO Content Metadata XML Interface;c:\program files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe [2011-02-18 99104] R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184] S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys [x] S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys [x] S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x] S2 AdobeActiveFileMonitor9.0;Adobe Active File Monitor V9;c:\program files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe [2010-09-30 169408] S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-09-05 64952] S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x] S2 AntiVirSchedulerService;Avira Planer;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [2011-10-19 86224] S2 Atheros Bt&Wlan Coex Agent;Atheros Bt&Wlan Coex Agent;c:\program files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [2011-04-29 146592] S2 AtherosSvc;AtherosSvc;c:\program files (x86)\Bluetooth Suite\adminservice.exe [2011-04-29 91296] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576] S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-01-12 13336] S2 PMBDeviceInfoProvider;PMBDeviceInfoProvider;c:\program files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe [2010-11-26 398176] S2 rimspci;rimspci;c:\windows\system32\drivers\rimssne64.sys [x] S2 risdsnpe;risdsnpe;c:\windows\system32\drivers\risdsnxc64.sys [x] S2 SampleCollector;VAIO Care Performance Service;c:\program files\Sony\VAIO Care\VCPerfService.exe [2011-01-29 259192] S2 uCamMonitor;CamMonitor;c:\program files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [2011-02-23 105024] S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-02-24 2656280] S2 VAIO Power Management;VAIO Power Management;c:\program files\Sony\VAIO Power Management\SPMService.exe [2011-02-14 550080] S2 VSNService;VSNService;c:\program files\Sony\VAIO Smart Network\VSNService.exe [2011-08-12 971704] S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [x] S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x] S3 ArcSoftKsUFilter;ArcSoft Magic-I Visual Effect;c:\windows\system32\DRIVERS\ArcSoftKsUFilter.sys [x] S3 BTATH_BUS;Atheros Bluetooth Bus;c:\windows\system32\drivers\btath_bus.sys [x] S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys [x] S3 MEIx64;Intel(R) Management Engine Interface;c:\windows\system32\drivers\HECIx64.sys [x] S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\drivers\nusb3hub.sys [x] S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\drivers\nusb3xhc.sys [x] S3 SFEP;Sony Firmware Extension Parser;c:\windows\system32\drivers\SFEP.sys [x] S3 VCService;VCService;c:\program files\Sony\VAIO Care\VCService.exe [2011-02-14 44736] S3 VUAgent;VUAgent;c:\program files\Sony\VAIO Update Common\VUAgent.exe [2011-09-23 1429608] . . --- Andere Dienste/Treiber im Speicher --- . *NewlyCreated* - 70217886 *Deregistered* - 70217886 . . --------- x86-64 ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2011-03-04 11775592] "RtHDVBg"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2011-03-04 2188904] "AtherosBtStack"="c:\program files (x86)\Bluetooth Suite\BtvStack.exe" [2011-04-29 790688] "AthBtTray"="c:\program files (x86)\Bluetooth Suite\AthBtTray.exe" [2011-04-29 657568] "SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [BU] "AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-07-28 497648] . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = hxxp://search.babylon.com/?babsrc=HP_ss&affID=101365&mntrId=126d820900000000000090004ebf1401&tt=090212_noffx mLocal Page = c:\windows\SysWOW64\blank.htm IE: Nach Microsoft E&xel exportieren - c:\progra~2\MICROS~4\Office12\EXCEL.EXE/3000 TCP: DhcpNameServer = 192.168.0.1 Handler: base64 - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - c:\program files (x86)\BrowserCompanion\tdataprotocol.dll Handler: chrome - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - c:\program files (x86)\BrowserCompanion\tdataprotocol.dll Handler: prox - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - c:\program files (x86)\BrowserCompanion\tdataprotocol.dll DPF: {66D845A0-C3BB-45AD-807C-9BFEAF20EF2C} - hxxp://my.ohm-hochschule.de/content/static/ecm/activex/Enable_Edit_In_Place.cab FF - ProfilePath - c:\users\brinamarina\AppData\Roaming\Mozilla\Firefox\Profiles\m0w9j2ob.default\ FF - prefs.js: browser.search.selectedEngine - Google FF - prefs.js: browser.startup.homepage - hxxp://search.babylon.com/?babsrc=HP_ss&affID=101365&mntrId=126d820900000000000090004ebf1401&tt=090212_noffx FF - prefs.js: keyword.URL - hxxp://search.babylon.com/?babsrc=adbartrp&affID=101365&mntrId=126d820900000000000090004ebf1401&tt=090212_noffx&q= FF - user.js: network.cookie.cookieBehavior - 0 FF - user.js: privacy.clearOnShutdown.cookies - false FF - user.js: security.warn_viewing_mixed - false FF - user.js: security.warn_viewing_mixed.show_once - false FF - user.js: security.warn_submit_insecure - false FF - user.js: security.warn_submit_insecure.show_once - false . - - - - Entfernte verwaiste Registrierungseinträge - - - - . AddRemove-BabylonToolbar - c:\program files (x86)\BabylonToolbar\BabylonToolbar\1.4.35.10\uninstall.exe . . . [HKEY_LOCAL_MACHINE\system\ControlSet001\services\SampleCollector] "ImagePath"="\"c:\program files\Sony\VAIO Care\VCPerfService.exe\" \"/service\" \"/sstates\" \"/sampleinterval=5000\" \"/procinterval=5\" \"/dllinterval=120\" \"/counter=\Processor(_Total)\% Processor Time:1/counter=\PhysicalDisk(_Total)\Disk Bytes/sec:1\" \"/counter=\Network Interface(*)\Bytes Total/sec:1\" \"/expandcounter=\Processor Information(*)\Processor Frequency:1\" \"/expandcounter=\Processor(*)\% Idle Time:1\" \"/expandcounter=\Processor(*)\% C1 Time:1\" \"/expandcounter=\Processor(*)\% C2 Time:1\" \"/expandcounter=\Processor(*)\% C3 Time:1\" \"/expandcounter=\Processor(*)\% Processor Time:1\" \"/directory=c:\programdata\Sony Corporation\VAIO Care\inteldata\"" . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10y_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10y_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10y.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.10" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10y.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10y.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10y.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}] @Denied: (A 2) (Everyone) @="IFlashBroker4" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\software\McAfee] "SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79, 00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\ . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Zeit der Fertigstellung: 2012-02-15 19:43:24 ComboFix-quarantined-files.txt 2012-02-15 18:43 ComboFix2.txt 2012-02-15 18:22 . Vor Suchlauf: 20 Verzeichnis(se), 418.847.666.176 Bytes frei Nach Suchlauf: 21 Verzeichnis(se), 418.539.819.008 Bytes frei . - - End Of File - - 0F2D7261EC8934F0AA3507054837A05C |
15.02.2012, 20:20 | #21 |
/// Winkelfunktion /// TB-Süch-Tiger™ | failde to save all the components for the file //system 32//00003c92 Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.
__________________ --> failde to save all the components for the file //system 32//00003c92 |
15.02.2012, 21:56 | #22 |
| failde to save all the components for the file //system 32//00003c92Code:
ATTFilter aswMBR version 0.9.9.1532 Copyright(c) 2011 AVAST Software Run date: 2012-02-15 21:43:49 ----------------------------- 21:43:49.837 OS Version: Windows x64 6.1.7601 Service Pack 1 21:43:49.837 Number of processors: 4 586 0x2A07 21:43:49.838 ComputerName: BRINA UserName: 21:43:50.629 Initialize success 21:45:02.861 AVAST engine defs: 12021501 21:45:15.269 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 21:45:15.274 Disk 0 Vendor: TOSHIBA_ GB00 Size: 476940MB BusType: 3 21:45:15.310 Disk 0 MBR read successfully 21:45:15.315 Disk 0 MBR scan 21:45:15.324 Disk 0 Windows 7 default MBR code 21:45:15.332 Disk 0 Partition 1 00 27 Hidden NTFS WinRE NTFS 16284 MB offset 2048 21:45:15.352 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 33351680 21:45:15.369 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 460554 MB offset 33556480 21:45:15.375 Service scanning 21:45:16.453 Modules scanning 21:45:16.462 Disk 0 trace - called modules: 21:45:16.509 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys iaStor.sys hal.dll 21:45:16.519 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8005fcf060] 21:45:16.531 3 CLASSPNP.SYS[fffff88001bbe43f] -> nt!IofCallDriver -> [0xfffffa8004141040] 21:45:16.538 5 ACPI.sys[fffff88000fb17a1] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa8004147050] 21:45:18.028 AVAST engine scan C:\Windows 21:45:20.639 AVAST engine scan C:\Windows\system32 21:47:44.285 AVAST engine scan C:\Windows\system32\drivers 21:47:56.451 AVAST engine scan C:\Users\brinamarina 21:51:21.085 AVAST engine scan C:\ProgramData 21:53:24.662 Scan finished successfully 21:54:07.655 Disk 0 MBR has been saved successfully to "C:\Users\brinamarina\Desktop\MBR.dat" 21:54:07.659 The log file has been saved successfully to "C:\Users\brinamarina\Desktop\aswMBR.txt" |
15.02.2012, 22:20 | #23 |
/// Winkelfunktion /// TB-Süch-Tiger™ | failde to save all the components for the file //system 32//00003c92 Sieht ok aus. Mach bitte zur Kontrolle Vollscans mit Malwarebytes und SUPERAntiSpyware und poste die Logs. Denk dran beide Tools zu updaten vor dem Scan!!
__________________ Logfiles bitte immer in CODE-Tags posten |
15.02.2012, 23:08 | #24 |
| failde to save all the components for the file //system 32//00003c92 1. Code:
ATTFilter SUPERAntiSpyware Scan Log hxxp://www.superantispyware.com Generated 02/15/2012 at 11:05 PM Application Version : 5.0.1144 Core Rules Database Version : 8246 Trace Rules Database Version: 6058 Scan type : Complete Scan Total Scan Time : 00:34:09 Operating System Information Windows 7 Home Premium 64-bit, Service Pack 1 (Build 6.01.7601) UAC On - Limited User Memory items scanned : 686 Memory threats detected : 0 Registry items scanned : 66433 Registry threats detected : 0 File items scanned : 51193 File threats detected : 14 Adware.Tracking Cookie C:\Users\brinamarina\AppData\Roaming\Microsoft\Windows\Cookies\MC4IZWIZ.txt [ /doubleclick.net ] C:\Users\brinamarina\AppData\Roaming\Microsoft\Windows\Cookies\NQAOI2UJ.txt [ /mediaplex.com ] C:\Users\brinamarina\AppData\Roaming\Microsoft\Windows\Cookies\WH3EIODB.txt [ /smartadserver.com ] C:\Users\brinamarina\AppData\Roaming\Microsoft\Windows\Cookies\P37OZICT.txt [ /apmebf.com ] C:\USERS\BRINAMARINA\AppData\Roaming\Microsoft\Windows\Cookies\UHNZHVHG.txt [ Cookie:brinamarina@clkads.com/adServe/banners ] C:\USERS\BRINAMARINA\Cookies\MC4IZWIZ.txt [ Cookie:brinamarina@doubleclick.net/ ] C:\USERS\BRINAMARINA\Cookies\NQAOI2UJ.txt [ Cookie:brinamarina@mediaplex.com/ ] C:\USERS\BRINAMARINA\Cookies\WH3EIODB.txt [ Cookie:brinamarina@smartadserver.com/ ] C:\USERS\BRINAMARINA\Cookies\UHNZHVHG.txt [ Cookie:brinamarina@clkads.com/adServe/banners ] C:\USERS\BRINAMARINA\Cookies\P37OZICT.txt [ Cookie:brinamarina@apmebf.com/ ] Heur.Agent/Gen-WhiteBox C:\USERS\BRINAMARINA\DESKTOP\INSTALLER_KASPERSKY_TDSSKILLER_2_7_12_0_DEUTSCH.EXE PotentiallyUnwanted.Softonic C:\USERS\BRINAMARINA\DOWNLOADS\SOFTONICDOWNLOADER_FUER_THE-FINAL-QUIZ-GAME.EXE C:\USERS\BRINAMARINA\DOWNLOADS\SOFTONICDOWNLOADER_FUER_NORTON-REMOVAL-TOOL.EXE C:\USERS\BRINAMARINA\DOWNLOADS\SOFTONICDOWNLOADER_FUER_TROJAN-REMOVER.EXE |
15.02.2012, 23:19 | #25 |
/// Winkelfunktion /// TB-Süch-Tiger™ | failde to save all the components for the file //system 32//00003c92 Och nö, wieso lädst du denn das von Softonic! Zum TDSS-Killer haben wir extra einen Downloadlink angeboten!
__________________ Logfiles bitte immer in CODE-Tags posten |
15.02.2012, 23:54 | #26 |
| failde to save all the components for the file //system 32//00003c92 weil der andre nicht funktioniert hat oder ich zu doof bin, eins von beiden.. auf jeden keine absicht, so 2. Code:
ATTFilter Malwarebytes Anti-Malware 1.60.1.1000 www.malwarebytes.org Datenbank Version: v2012.02.15.04 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 8.0.7601.17514 brinamarina :: BRINA [Administrator] 15.02.2012 23:13:04 mbam-log-2012-02-15 (23-13-04).txt Art des Suchlaufs: Vollständiger Suchlauf Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 313555 Laufzeit: 37 Minute(n), 12 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 0 (Keine bösartigen Objekte gefunden) (Ende) |
16.02.2012, 13:08 | #27 |
/// Winkelfunktion /// TB-Süch-Tiger™ | failde to save all the components for the file //system 32//00003c92 Gut dann lösch mal alles was SUPERAntiSpyware gefunden hat. Außer dem Müll von Softonic waren da nur Cookies. Cookies sind keine Schädlinge direkt, aber es besteht die Gefahr der missbräuchlichen Verwendung (eindeutige Wiedererkennung zB für gezielte Werbung o.ä. => HTTP-Cookie ) Ist dein System nun wieder in Ordnung oder gibt's noch andere Funde oder Probleme?
__________________ Logfiles bitte immer in CODE-Tags posten |
16.02.2012, 21:09 | #28 |
| failde to save all the components for the file //system 32//00003c92 [code]SUPERAntiSpyware Scan Log hxxp://www.superantispyware.com Generated 02/16/2012 at 08:48 PM Application Version : 5.0.1144 Core Rules Database Version : 8252 Trace Rules Database Version: 6064 Scan type : Complete Scan Total Scan Time : 00:36:01 Operating System Information Windows 7 Home Premium 64-bit, Service Pack 1 (Build 6.01.7601) UAC On - Limited User Memory items scanned : 800 Memory threats detected : 0 Registry items scanned : 66454 Registry threats detected : 0 File items scanned : 52002 File threats detected : 5 Adware.Tracking Cookie C:\Users\brinamarina\AppData\Roaming\Microsoft\Windows\Cookies\D8AA2TPK.txt [ /mediaplex.com ] C:\Users\brinamarina\AppData\Roaming\Microsoft\Windows\Cookies\OJJXN0TU.txt [ /apmebf.com ] C:\USERS\BRINAMARINA\Cookies\D8AA2TPK.txt [ Cookie:brinamarina@mediaplex.com/ ] C:\USERS\BRINAMARINA\Cookies\OJJXN0TU.txt [ Cookie:brinamarina@apmebf.com/ ] Heur.Agent/Gen-WhiteBox C:\USERS\BRINAMARINA\DESKTOP\INSTALLER_KASPERSKY_TDSSKILLER_2_7_12_0_DEUTSCH.EXE [code/] |
16.02.2012, 22:14 | #29 |
/// Winkelfunktion /// TB-Süch-Tiger™ | failde to save all the components for the file //system 32//00003c92 Rechner nun wieder im Lot?
__________________ Logfiles bitte immer in CODE-Tags posten |
16.02.2012, 23:14 | #30 |
| failde to save all the components for the file //system 32//00003c92 dachte du sagst mir das? sieht für mich noch nicht so aus aber hab ja keine ah ung... |
Themen zu failde to save all the components for the file //system 32//00003c92 |
64-bit, acrobat update, alternate, antivir, autorun, avira, bho, bingbar, bonjour, desktop, error, fehler, firefox, flash player, format, home, install.exe, logfile, microsoft office word, mozilla, office 2007, plug-in, realtek, registry, richtlinie, rundll, scan, searchqu toolbar, security, security scan, security update, senden, software, trojaner, usb 3.0, version=1.0, windows, wlan |