|
Plagegeister aller Art und deren Bekämpfung: ich möchte meinen PC reinigenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
19.07.2012, 18:31 | #31 |
| ich möchte meinen PC reinigen Hier ist OTL-Fix-Log: Code:
ATTFilter All processes killed ========== OTL ========== HKU\S-1-5-21-726353797-3868275323-1685576310-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyOverride| /E : value set successfully! Prefs.js: "Ask.com" removed from browser.search.defaultengine Prefs.js: "Ask.com" removed from browser.search.defaultenginename Prefs.js: "softonic-de3 Customized Web Search" removed from browser.search.defaultthis.engineName Prefs.js: "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2431245&SearchSource=3&q={searchTerms}" removed from browser.search.defaulturl Prefs.js: "Ask.com" removed from browser.search.order.1 Prefs.js: "Ask.com" removed from browser.search.selectedEngine Prefs.js: "hxxp://websearch.ask.com/redirect?client=ff&src=kw&tb=AVR-3&o=APN10395&locale=de_DE&apn_uid=4e3f1c85-c65a-492c-8734-25430ebf8b2e&apn_ptnrs=^ABT&apn_sauid=276ADA77-BA63-41D1-AA06-2D5E90D02623&apn_dtid=^YYYYYY^YY^DE&&q=" removed from keyword.URL C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\searchplugins folder moved successfully. C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\logs folder moved successfully. C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\defaults\preferences folder moved successfully. C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\defaults folder moved successfully. C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\datastore folder moved successfully. C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Fri-13-Jul-2012-14-38-21-GMT folder moved successfully. C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\chrome\temp folder moved successfully. C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\chrome\skin folder moved successfully. C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\chrome\content folder moved successfully. C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\chrome folder moved successfully. C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com folder moved successfully. C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\searchplugins\askcom.xml moved successfully. C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\searchplugins\conduit.xml moved successfully. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully. Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\HonorAutoRunSetting deleted successfully. Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoCDBurning deleted successfully. Registry value HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully. Registry value HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun not found. Registry value HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully. Registry value HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully. Registry value HKEY_USERS\S-1-5-21-726353797-3868275323-1685576310-1008\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom\\AutoRun|DWORD:1 /E : value set successfully! C:\AUTOEXEC.BAT moved successfully. ========== FILES ========== C:\WINDOWS\Installer\{46514794-57fd-2790-ee5e-eac100dcd5ac}\@ moved successfully. C:\WINDOWS\Installer\{46514794-57fd-2790-ee5e-eac100dcd5ac}\U folder moved successfully. File\Folder C:\WINDOWS\Installer\{46514794-57fd-2790-ee5e-eac100dcd5ac}\n not found. File\Folder C:\Dokumente und Einstellungen\User\Lokale Einstellungen\Anwendungsdaten\{46514794-57fd-2790-ee5e-eac100dcd5ac}\n not found. C:\Dokumente und Einstellungen\User\Lokale Einstellungen\Anwendungsdaten\{46514794-57fd-2790-ee5e-eac100dcd5ac}\U folder moved successfully. C:\Dokumente und Einstellungen\User\Lokale Einstellungen\Anwendungsdaten\{46514794-57fd-2790-ee5e-eac100dcd5ac}\@ moved successfully. ========== COMMANDS ========== [EMPTYTEMP] User: Administrator ->Temp folder emptied: 49152 bytes ->Temporary Internet Files folder emptied: 32768 bytes User: All Users User: Default User ->Temp folder emptied: 49152 bytes ->Temporary Internet Files folder emptied: 44745 bytes ->Flash cache emptied: 0 bytes User: LocalService ->Temp folder emptied: 66016 bytes ->Temporary Internet Files folder emptied: 33557 bytes ->Flash cache emptied: 434 bytes User: NetworkService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33758 bytes User: User ->Temp folder emptied: 26987801 bytes ->Temporary Internet Files folder emptied: 83685 bytes ->Java cache emptied: 17179124 bytes ->FireFox cache emptied: 55189712 bytes ->Google Chrome cache emptied: 6138516 bytes ->Flash cache emptied: 523 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 19569 bytes %systemroot%\System32 .tmp files removed: 1718663 bytes %systemroot%\System32\dllcache .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 17414 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 103,00 mb [EMPTYFLASH] User: Administrator User: All Users User: Default User ->Flash cache emptied: 0 bytes User: LocalService ->Flash cache emptied: 0 bytes User: NetworkService User: User ->Flash cache emptied: 0 bytes Total Flash Files Cleaned = 0,00 mb C:\WINDOWS\System32\drivers\etc\Hosts moved successfully. HOSTS file reset successfully OTL by OldTimer - Version 3.2.54.0 log created on 07192012_192716 Files\Folders moved on Reboot... File\Folder C:\WINDOWS\temp\Perflib_Perfdata_264.dat not found! PendingFileRenameOperations files... File C:\WINDOWS\temp\Perflib_Perfdata_264.dat not found! Registry entries deleted on Reboot... |
19.07.2012, 20:09 | #32 |
/// Winkelfunktion /// TB-Süch-Tiger™ | ich möchte meinen PC reinigen Bitte nun (im normalen Windows-Modus) dieses Tool von Kaspersky (TDSS-Killer) ausführen und das Log posten Anleitung und Downloadlink hier => http://www.trojaner-board.de/82358-t...entfernen.html
__________________Hinweis: Bitte den Virenscanner abstellen bevor du den TDSS-Killer ausführst, denn v.a. Avira meldet im TDSS-Tool oft einen Fehalalrm! Das Tool so einstellen wie unten im Bild angegeben - klick auf change parameters und setze die Haken wie im folgenden Screenshot abgebildet, Dann auf Start Scan klicken und wenn es durch ist auf den Button Report klicken um das Log anzuzeigen. Dieses bitte komplett posten. Wenn du das Log nicht findest oder den Inhalt kopieren und in dein Posting übertragen kannst, dann schau bitte direkt auf deiner Windows-Systempartition (meistens Laufwerk C nach, da speichert der TDSS-Killer seine Logs. Hinweis: Bitte nichts voreilig mit dem TDSS-Killer löschen! Falls Objekte vom TDSS-Killer bemängelt werden, alle mit der Aktion "skip" behandeln und hier nur das Log posten!
__________________ |
20.07.2012, 15:14 | #33 |
| ich möchte meinen PC reinigen hier ist TDSS-Killer-Log
__________________Code:
ATTFilter 16:09:09.0718 1204 TDSS rootkit removing tool 2.7.46.0 Jul 16 2012 22:10:11 16:09:10.0046 1204 ============================================================ 16:09:10.0046 1204 Current date / time: 2012/07/20 16:09:10.0046 16:09:10.0046 1204 SystemInfo: 16:09:10.0046 1204 16:09:10.0046 1204 OS Version: 5.1.2600 ServicePack: 3.0 16:09:10.0046 1204 Product type: Workstation 16:09:10.0046 1204 ComputerName: HEIM-PC 16:09:10.0046 1204 UserName: User 16:09:10.0046 1204 Windows directory: C:\WINDOWS 16:09:10.0046 1204 System windows directory: C:\WINDOWS 16:09:10.0046 1204 Processor architecture: Intel x86 16:09:10.0046 1204 Number of processors: 2 16:09:10.0046 1204 Page size: 0x1000 16:09:10.0046 1204 Boot type: Normal boot 16:09:10.0046 1204 ============================================================ 16:09:11.0328 1204 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054 16:09:11.0328 1204 ============================================================ 16:09:11.0328 1204 \Device\Harddisk0\DR0: 16:09:11.0328 1204 MBR partitions: 16:09:11.0328 1204 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x24D3B800 16:09:11.0328 1204 ============================================================ 16:09:11.0359 1204 C: <-> \Device\Harddisk0\DR0\Partition0 16:09:11.0359 1204 ============================================================ 16:09:11.0359 1204 Initialize success 16:09:11.0359 1204 ============================================================ 16:09:35.0093 3924 ============================================================ 16:09:35.0093 3924 Scan started 16:09:35.0093 3924 Mode: Manual; SigCheck; TDLFS; 16:09:35.0093 3924 ============================================================ 16:09:35.0312 3924 Abiosdsk - ok 16:09:35.0343 3924 abp480n5 (6abb91494fe6c59089b9336452ab2ea3) C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS 16:09:35.0796 3924 abp480n5 ( UnsignedFile.Multi.Generic ) - warning 16:09:35.0796 3924 abp480n5 - detected UnsignedFile.Multi.Generic (1) 16:09:35.0812 3924 ac97intc (0f2d66d5f08ebe2f77bb904288dcf6f0) C:\WINDOWS\system32\drivers\ac97intc.sys 16:09:35.0828 3924 ac97intc ( UnsignedFile.Multi.Generic ) - warning 16:09:35.0828 3924 ac97intc - detected UnsignedFile.Multi.Generic (1) 16:09:35.0859 3924 ACPI (ac407f1a62c3a300b4f2b5a9f1d55b2c) C:\WINDOWS\system32\DRIVERS\ACPI.sys 16:09:35.0875 3924 ACPI ( UnsignedFile.Multi.Generic ) - warning 16:09:35.0875 3924 ACPI - detected UnsignedFile.Multi.Generic (1) 16:09:35.0921 3924 ACPIEC (9e1ca3160dafb159ca14f83b1e317f75) C:\WINDOWS\system32\drivers\ACPIEC.sys 16:09:35.0921 3924 ACPIEC ( UnsignedFile.Multi.Generic ) - warning 16:09:35.0921 3924 ACPIEC - detected UnsignedFile.Multi.Generic (1) 16:09:36.0015 3924 AdobeFlashPlayerUpdateSvc (5e1a953c6472e7bb644892a4d0df5e72) C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe 16:09:36.0046 3924 AdobeFlashPlayerUpdateSvc - ok 16:09:36.0109 3924 adpu160m (9a11864873da202c996558b2106b0bbc) C:\WINDOWS\system32\DRIVERS\adpu160m.sys 16:09:36.0109 3924 adpu160m ( UnsignedFile.Multi.Generic ) - warning 16:09:36.0125 3924 adpu160m - detected UnsignedFile.Multi.Generic (1) 16:09:36.0140 3924 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys 16:09:36.0140 3924 aec ( UnsignedFile.Multi.Generic ) - warning 16:09:36.0140 3924 aec - detected UnsignedFile.Multi.Generic (1) 16:09:36.0203 3924 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys 16:09:36.0203 3924 AFD ( UnsignedFile.Multi.Generic ) - warning 16:09:36.0203 3924 AFD - detected UnsignedFile.Multi.Generic (1) 16:09:36.0234 3924 agp440 (08fd04aa961bdc77fb983f328334e3d7) C:\WINDOWS\system32\DRIVERS\agp440.sys 16:09:36.0250 3924 agp440 ( UnsignedFile.Multi.Generic ) - warning 16:09:36.0250 3924 agp440 - detected UnsignedFile.Multi.Generic (1) 16:09:36.0250 3924 agpCPQ (03a7e0922acfe1b07d5db2eeb0773063) C:\WINDOWS\system32\DRIVERS\agpCPQ.sys 16:09:36.0265 3924 agpCPQ ( UnsignedFile.Multi.Generic ) - warning 16:09:36.0265 3924 agpCPQ - detected UnsignedFile.Multi.Generic (1) 16:09:36.0265 3924 Aha154x (c23ea9b5f46c7f7910db3eab648ff013) C:\WINDOWS\system32\DRIVERS\aha154x.sys 16:09:36.0281 3924 Aha154x ( UnsignedFile.Multi.Generic ) - warning 16:09:36.0281 3924 Aha154x - detected UnsignedFile.Multi.Generic (1) 16:09:36.0281 3924 aic78u2 (19dd0fb48b0c18892f70e2e7d61a1529) C:\WINDOWS\system32\DRIVERS\aic78u2.sys 16:09:36.0296 3924 aic78u2 ( UnsignedFile.Multi.Generic ) - warning 16:09:36.0296 3924 aic78u2 - detected UnsignedFile.Multi.Generic (1) 16:09:36.0296 3924 aic78xx (b7fe594a7468aa0132deb03fb8e34326) C:\WINDOWS\system32\DRIVERS\aic78xx.sys 16:09:36.0312 3924 aic78xx ( UnsignedFile.Multi.Generic ) - warning 16:09:36.0312 3924 aic78xx - detected UnsignedFile.Multi.Generic (1) 16:09:36.0578 3924 Akamai (29584f02a43e427c4227e3b1d9ff1b22) c:\programme\gemeinsame dateien\akamai/netsession_win_4f7fccd.dll 16:09:36.0578 3924 Suspicious file (Hidden): c:\programme\gemeinsame dateien\akamai/netsession_win_4f7fccd.dll. md5: 29584f02a43e427c4227e3b1d9ff1b22 16:09:36.0593 3924 Akamai ( HiddenFile.Multi.Generic ) - warning 16:09:36.0593 3924 Akamai - detected HiddenFile.Multi.Generic (1) 16:09:36.0734 3924 Alerter (738d80cc01d7bc7584be917b7f544394) C:\WINDOWS\system32\alrsvc.dll 16:09:36.0765 3924 Alerter ( UnsignedFile.Multi.Generic ) - warning 16:09:36.0765 3924 Alerter - detected UnsignedFile.Multi.Generic (1) 16:09:36.0781 3924 ALG (190cd73d4984f94d823f9444980513e5) C:\WINDOWS\System32\alg.exe 16:09:36.0796 3924 ALG ( UnsignedFile.Multi.Generic ) - warning 16:09:36.0796 3924 ALG - detected UnsignedFile.Multi.Generic (1) 16:09:36.0828 3924 AliIde (1140ab9938809700b46bb88e46d72a96) C:\WINDOWS\system32\DRIVERS\aliide.sys 16:09:36.0843 3924 AliIde ( UnsignedFile.Multi.Generic ) - warning 16:09:36.0843 3924 AliIde - detected UnsignedFile.Multi.Generic (1) 16:09:36.0890 3924 alim1541 (cb08aed0de2dd889a8a820cd8082d83c) C:\WINDOWS\system32\DRIVERS\alim1541.sys 16:09:36.0890 3924 alim1541 ( UnsignedFile.Multi.Generic ) - warning 16:09:36.0890 3924 alim1541 - detected UnsignedFile.Multi.Generic (1) 16:09:36.0906 3924 amdagp (95b4fb835e28aa1336ceeb07fd5b9398) C:\WINDOWS\system32\DRIVERS\amdagp.sys 16:09:36.0906 3924 amdagp ( UnsignedFile.Multi.Generic ) - warning 16:09:36.0906 3924 amdagp - detected UnsignedFile.Multi.Generic (1) 16:09:36.0921 3924 amsint (79f5add8d24bd6893f2903a3e2f3fad6) C:\WINDOWS\system32\DRIVERS\amsint.sys 16:09:36.0921 3924 amsint ( UnsignedFile.Multi.Generic ) - warning 16:09:36.0921 3924 amsint - detected UnsignedFile.Multi.Generic (1) 16:09:37.0062 3924 AntiVirSchedulerService (466a0d95960dad3222c896d2cea99993) C:\Programme\Avira\AntiVir Desktop\sched.exe 16:09:37.0078 3924 AntiVirSchedulerService - ok 16:09:37.0125 3924 AntiVirService (a489be6bb0aa1ff406b488b60542314b) C:\Programme\Avira\AntiVir Desktop\avguard.exe 16:09:37.0140 3924 AntiVirService - ok 16:09:37.0203 3924 AntiVirWebService (676894fa57b671fec5c3f05f8929e03b) C:\Programme\Avira\AntiVir Desktop\AVWEBGRD.EXE 16:09:37.0218 3924 AntiVirWebService - ok 16:09:37.0281 3924 AppMgmt (d45960be52c3c610d361977057f98c54) C:\WINDOWS\System32\appmgmts.dll 16:09:37.0296 3924 AppMgmt ( UnsignedFile.Multi.Generic ) - warning 16:09:37.0296 3924 AppMgmt - detected UnsignedFile.Multi.Generic (1) 16:09:37.0296 3924 asc (62d318e9a0c8fc9b780008e724283707) C:\WINDOWS\system32\DRIVERS\asc.sys 16:09:37.0312 3924 asc ( UnsignedFile.Multi.Generic ) - warning 16:09:37.0312 3924 asc - detected UnsignedFile.Multi.Generic (1) 16:09:37.0328 3924 asc3350p (69eb0cc7714b32896ccbfd5edcbea447) C:\WINDOWS\system32\DRIVERS\asc3350p.sys 16:09:37.0343 3924 asc3350p ( UnsignedFile.Multi.Generic ) - warning 16:09:37.0343 3924 asc3350p - detected UnsignedFile.Multi.Generic (1) 16:09:37.0343 3924 asc3550 (5d8de112aa0254b907861e9e9c31d597) C:\WINDOWS\system32\DRIVERS\asc3550.sys 16:09:37.0359 3924 asc3550 ( UnsignedFile.Multi.Generic ) - warning 16:09:37.0359 3924 asc3550 - detected UnsignedFile.Multi.Generic (1) 16:09:37.0515 3924 aspnet_state (0e5e4957549056e2bf2c49f4f6b601ad) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe 16:09:37.0562 3924 aspnet_state - ok 16:09:37.0578 3924 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys 16:09:37.0593 3924 AsyncMac ( UnsignedFile.Multi.Generic ) - warning 16:09:37.0593 3924 AsyncMac - detected UnsignedFile.Multi.Generic (1) 16:09:37.0625 3924 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys 16:09:37.0625 3924 atapi ( UnsignedFile.Multi.Generic ) - warning 16:09:37.0625 3924 atapi - detected UnsignedFile.Multi.Generic (1) 16:09:37.0625 3924 Atdisk - ok 16:09:37.0703 3924 Ati HotKey Poller (ab6a44c8a3c64ac89567784145910f49) C:\WINDOWS\system32\Ati2evxx.exe 16:09:37.0718 3924 Ati HotKey Poller ( UnsignedFile.Multi.Generic ) - warning 16:09:37.0718 3924 Ati HotKey Poller - detected UnsignedFile.Multi.Generic (1) 16:09:37.0906 3924 ati2mtag (a4d1c3cd20c8c595af1817bb5352ecd6) C:\WINDOWS\system32\DRIVERS\ati2mtag.sys 16:09:38.0000 3924 ati2mtag ( UnsignedFile.Multi.Generic ) - warning 16:09:38.0000 3924 ati2mtag - detected UnsignedFile.Multi.Generic (1) 16:09:38.0187 3924 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys 16:09:38.0187 3924 Atmarpc ( UnsignedFile.Multi.Generic ) - warning 16:09:38.0187 3924 Atmarpc - detected UnsignedFile.Multi.Generic (1) 16:09:38.0234 3924 AudioSrv (58ed0d5452df7be732193e7999c6b9a4) C:\WINDOWS\System32\audiosrv.dll 16:09:38.0234 3924 AudioSrv ( UnsignedFile.Multi.Generic ) - warning 16:09:38.0234 3924 AudioSrv - detected UnsignedFile.Multi.Generic (1) 16:09:38.0250 3924 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys 16:09:38.0250 3924 audstub ( UnsignedFile.Multi.Generic ) - warning 16:09:38.0250 3924 audstub - detected UnsignedFile.Multi.Generic (1) 16:09:38.0296 3924 avgntflt (d5541f0afb767e85fc412fc609d96a74) C:\WINDOWS\system32\DRIVERS\avgntflt.sys 16:09:38.0328 3924 avgntflt - ok 16:09:38.0343 3924 avipbb (7d967a682d4694df7fa57d63a2db01fe) C:\WINDOWS\system32\DRIVERS\avipbb.sys 16:09:38.0359 3924 avipbb - ok 16:09:38.0406 3924 avkmgr (271cfd1a989209b1964e24d969552bf7) C:\WINDOWS\system32\DRIVERS\avkmgr.sys 16:09:38.0421 3924 avkmgr - ok 16:09:38.0453 3924 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys 16:09:38.0468 3924 Beep ( UnsignedFile.Multi.Generic ) - warning 16:09:38.0468 3924 Beep - detected UnsignedFile.Multi.Generic (1) 16:09:38.0515 3924 BITS (d6f603772a789bb3228f310d650b8bd1) C:\WINDOWS\system32\qmgr.dll 16:09:38.0546 3924 BITS ( UnsignedFile.Multi.Generic ) - warning 16:09:38.0546 3924 BITS - detected UnsignedFile.Multi.Generic (1) 16:09:38.0578 3924 Browser (b42057f06bbb98b31876c0b3f2b54e33) C:\WINDOWS\System32\browser.dll 16:09:38.0593 3924 Browser ( UnsignedFile.Multi.Generic ) - warning 16:09:38.0593 3924 Browser - detected UnsignedFile.Multi.Generic (1) 16:09:38.0640 3924 cbidf (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\DRIVERS\cbidf2k.sys 16:09:38.0640 3924 cbidf ( UnsignedFile.Multi.Generic ) - warning 16:09:38.0640 3924 cbidf - detected UnsignedFile.Multi.Generic (1) 16:09:38.0640 3924 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys 16:09:38.0656 3924 cbidf2k ( UnsignedFile.Multi.Generic ) - warning 16:09:38.0656 3924 cbidf2k - detected UnsignedFile.Multi.Generic (1) 16:09:38.0671 3924 cd20xrnt (f3ec03299634490e97bbce94cd2954c7) C:\WINDOWS\system32\DRIVERS\cd20xrnt.sys 16:09:38.0671 3924 cd20xrnt ( UnsignedFile.Multi.Generic ) - warning 16:09:38.0671 3924 cd20xrnt - detected UnsignedFile.Multi.Generic (1) 16:09:38.0703 3924 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys 16:09:38.0703 3924 Cdaudio ( UnsignedFile.Multi.Generic ) - warning 16:09:38.0703 3924 Cdaudio - detected UnsignedFile.Multi.Generic (1) 16:09:38.0718 3924 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys 16:09:38.0734 3924 Cdfs ( UnsignedFile.Multi.Generic ) - warning 16:09:38.0734 3924 Cdfs - detected UnsignedFile.Multi.Generic (1) 16:09:38.0781 3924 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys 16:09:38.0781 3924 Cdrom ( UnsignedFile.Multi.Generic ) - warning 16:09:38.0796 3924 Cdrom - detected UnsignedFile.Multi.Generic (1) 16:09:38.0796 3924 Changer - ok 16:09:38.0812 3924 CiSvc (28e3040d1f1ca2008cd6b29dfebc9a5e) C:\WINDOWS\system32\cisvc.exe 16:09:38.0828 3924 CiSvc ( UnsignedFile.Multi.Generic ) - warning 16:09:38.0828 3924 CiSvc - detected UnsignedFile.Multi.Generic (1) 16:09:38.0843 3924 ClipSrv (778a30ed3c134eb7e406afc407e9997d) C:\WINDOWS\system32\clipsrv.exe 16:09:38.0859 3924 ClipSrv ( UnsignedFile.Multi.Generic ) - warning 16:09:38.0859 3924 ClipSrv - detected UnsignedFile.Multi.Generic (1) 16:09:38.0984 3924 clr_optimization_v2.0.50727_32 (d87acaed61e417bba546ced5e7e36d9c) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 16:09:39.0046 3924 clr_optimization_v2.0.50727_32 - ok 16:09:39.0062 3924 CmdIde (c687f81290303d90099b027a6474f99f) C:\WINDOWS\system32\DRIVERS\cmdide.sys 16:09:39.0062 3924 CmdIde ( UnsignedFile.Multi.Generic ) - warning 16:09:39.0062 3924 CmdIde - detected UnsignedFile.Multi.Generic (1) 16:09:39.0062 3924 COMSysApp - ok 16:09:39.0125 3924 Cpqarray (3ee529119eed34cd212a215e8c40d4b6) C:\WINDOWS\system32\DRIVERS\cpqarray.sys 16:09:39.0125 3924 Cpqarray ( UnsignedFile.Multi.Generic ) - warning 16:09:39.0125 3924 Cpqarray - detected UnsignedFile.Multi.Generic (1) 16:09:39.0171 3924 CryptSvc (611f824e5c703a5a899f84c5f1699e4d) C:\WINDOWS\System32\cryptsvc.dll 16:09:39.0187 3924 CryptSvc ( UnsignedFile.Multi.Generic ) - warning 16:09:39.0187 3924 CryptSvc - detected UnsignedFile.Multi.Generic (1) 16:09:39.0203 3924 dac2w2k (e550e7418984b65a78299d248f0a7f36) C:\WINDOWS\system32\DRIVERS\dac2w2k.sys 16:09:39.0203 3924 dac2w2k ( UnsignedFile.Multi.Generic ) - warning 16:09:39.0203 3924 dac2w2k - detected UnsignedFile.Multi.Generic (1) 16:09:39.0218 3924 dac960nt (683789caa3864eb46125ae86ff677d34) C:\WINDOWS\system32\DRIVERS\dac960nt.sys 16:09:39.0218 3924 dac960nt ( UnsignedFile.Multi.Generic ) - warning 16:09:39.0218 3924 dac960nt - detected UnsignedFile.Multi.Generic (1) 16:09:39.0250 3924 DcomLaunch (3127afbf2c1ed0ab14a1bbb7aaecb85b) C:\WINDOWS\system32\rpcss.dll 16:09:39.0265 3924 DcomLaunch ( UnsignedFile.Multi.Generic ) - warning 16:09:39.0265 3924 DcomLaunch - detected UnsignedFile.Multi.Generic (1) 16:09:39.0312 3924 DgiVecp (1ec27a51a2f9df052bc2b4c8376c8fea) C:\WINDOWS\system32\Drivers\DgiVecp.sys 16:09:39.0312 3924 DgiVecp ( UnsignedFile.Multi.Generic ) - warning 16:09:39.0312 3924 DgiVecp - detected UnsignedFile.Multi.Generic (1) 16:09:39.0375 3924 Dhcp (c29a1c9b75ba38fa37f8c44405dec360) C:\WINDOWS\System32\dhcpcsvc.dll 16:09:39.0375 3924 Dhcp ( UnsignedFile.Multi.Generic ) - warning 16:09:39.0375 3924 Dhcp - detected UnsignedFile.Multi.Generic (1) 16:09:39.0421 3924 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys 16:09:39.0437 3924 Disk ( UnsignedFile.Multi.Generic ) - warning 16:09:39.0437 3924 Disk - detected UnsignedFile.Multi.Generic (1) 16:09:39.0484 3924 DLABMFSM (5b149ccfe275f4de0b4b8ec6b9f6821e) C:\WINDOWS\system32\DLA\DLABMFSM.SYS 16:09:39.0500 3924 DLABMFSM - ok 16:09:39.0500 3924 DLABOIOM (ad4cb3d783634c90a9d0ce360933a63c) C:\WINDOWS\system32\DLA\DLABOIOM.SYS 16:09:39.0515 3924 DLABOIOM - ok 16:09:39.0515 3924 DLACDBHM (5230cdb7e715f3a3b4a882e254cdd35d) C:\WINDOWS\system32\Drivers\DLACDBHM.SYS 16:09:39.0515 3924 DLACDBHM - ok 16:09:39.0562 3924 DLADResM (dae193b1ddc6914f56b767a4f1406351) C:\WINDOWS\system32\DLA\DLADResM.SYS 16:09:39.0562 3924 DLADResM - ok 16:09:39.0578 3924 DLAIFS_M (6a82f77c4a6f5235bf352f0028e2ef52) C:\WINDOWS\system32\DLA\DLAIFS_M.SYS 16:09:39.0578 3924 DLAIFS_M - ok 16:09:39.0593 3924 DLAOPIOM (0e6052c0ada37504896a847231a3907d) C:\WINDOWS\system32\DLA\DLAOPIOM.SYS 16:09:39.0593 3924 DLAOPIOM - ok 16:09:39.0609 3924 DLAPoolM (29670bb4e2b973c5b55a76107d4910b2) C:\WINDOWS\system32\DLA\DLAPoolM.SYS 16:09:39.0609 3924 DLAPoolM - ok 16:09:39.0625 3924 DLARTL_M (77fe51f0f8d86804cb81f6ef6bfb86dd) C:\WINDOWS\system32\Drivers\DLARTL_M.SYS 16:09:39.0625 3924 DLARTL_M - ok 16:09:39.0640 3924 DLAUDFAM (6b087732b86c1d866d69dbbe463ea90a) C:\WINDOWS\system32\DLA\DLAUDFAM.SYS 16:09:39.0640 3924 DLAUDFAM - ok 16:09:39.0656 3924 DLAUDF_M (bbeecb95f2841ae4a3e3690d46d7153d) C:\WINDOWS\system32\DLA\DLAUDF_M.SYS 16:09:39.0671 3924 DLAUDF_M - ok 16:09:39.0671 3924 dmadmin - ok 16:09:39.0734 3924 dmboot (0dcfc8395a99fecbb1ef771cec7fe4ea) C:\WINDOWS\system32\drivers\dmboot.sys 16:09:39.0765 3924 dmboot ( UnsignedFile.Multi.Generic ) - warning 16:09:39.0765 3924 dmboot - detected UnsignedFile.Multi.Generic (1) 16:09:39.0781 3924 dmio (53720ab12b48719d00e327da470a619a) C:\WINDOWS\system32\drivers\dmio.sys 16:09:39.0781 3924 dmio ( UnsignedFile.Multi.Generic ) - warning 16:09:39.0781 3924 dmio - detected UnsignedFile.Multi.Generic (1) 16:09:39.0796 3924 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys 16:09:39.0796 3924 dmload ( UnsignedFile.Multi.Generic ) - warning 16:09:39.0796 3924 dmload - detected UnsignedFile.Multi.Generic (1) 16:09:39.0828 3924 dmserver (25c83ffbba13b554eb6d59a9b2e2ee78) C:\WINDOWS\System32\dmserver.dll 16:09:39.0843 3924 dmserver ( UnsignedFile.Multi.Generic ) - warning 16:09:39.0843 3924 dmserver - detected UnsignedFile.Multi.Generic (1) 16:09:39.0859 3924 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys 16:09:39.0859 3924 DMusic ( UnsignedFile.Multi.Generic ) - warning 16:09:39.0859 3924 DMusic - detected UnsignedFile.Multi.Generic (1) 16:09:39.0906 3924 Dnscache (407f3227ac618fd1ca54b335b083de07) C:\WINDOWS\System32\dnsrslvr.dll 16:09:39.0921 3924 Dnscache ( UnsignedFile.Multi.Generic ) - warning 16:09:39.0921 3924 Dnscache - detected UnsignedFile.Multi.Generic (1) 16:09:39.0968 3924 Dot3svc (676e36c4ff5bcea1900f44182b9723e6) C:\WINDOWS\System32\dot3svc.dll 16:09:39.0984 3924 Dot3svc ( UnsignedFile.Multi.Generic ) - warning 16:09:39.0984 3924 Dot3svc - detected UnsignedFile.Multi.Generic (1) 16:09:40.0000 3924 dpti2o (40f3b93b4e5b0126f2f5c0a7a5e22660) C:\WINDOWS\system32\DRIVERS\dpti2o.sys 16:09:40.0015 3924 dpti2o ( UnsignedFile.Multi.Generic ) - warning 16:09:40.0015 3924 dpti2o - detected UnsignedFile.Multi.Generic (1) 16:09:40.0031 3924 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys 16:09:40.0031 3924 drmkaud ( UnsignedFile.Multi.Generic ) - warning 16:09:40.0031 3924 drmkaud - detected UnsignedFile.Multi.Generic (1) 16:09:40.0062 3924 DRVMCDB (83106585494d5eb96f59187200c144bd) C:\WINDOWS\system32\Drivers\DRVMCDB.SYS 16:09:40.0078 3924 DRVMCDB - ok 16:09:40.0109 3924 DRVNDDM (ffc371525aa55d1bae18715ebcb8797c) C:\WINDOWS\system32\Drivers\DRVNDDM.SYS 16:09:40.0109 3924 DRVNDDM - ok 16:09:40.0125 3924 E100B (a6de5342417fec3c0aa8efebb899c431) C:\WINDOWS\system32\DRIVERS\e100b325.sys 16:09:40.0140 3924 E100B ( UnsignedFile.Multi.Generic ) - warning 16:09:40.0140 3924 E100B - detected UnsignedFile.Multi.Generic (1) 16:09:40.0156 3924 EapHost (4e4f2fddab0a0736d7671134dcce91fb) C:\WINDOWS\System32\eapsvc.dll 16:09:40.0156 3924 EapHost ( UnsignedFile.Multi.Generic ) - warning 16:09:40.0156 3924 EapHost - detected UnsignedFile.Multi.Generic (1) 16:09:40.0203 3924 ERSvc (877c18558d70587aa7823a1a308ac96b) C:\WINDOWS\System32\ersvc.dll 16:09:40.0203 3924 ERSvc ( UnsignedFile.Multi.Generic ) - warning 16:09:40.0203 3924 ERSvc - detected UnsignedFile.Multi.Generic (1) 16:09:40.0234 3924 Eventlog (a3edbe9053889fb24ab22492472b39dc) C:\WINDOWS\system32\services.exe 16:09:40.0234 3924 Eventlog ( UnsignedFile.Multi.Generic ) - warning 16:09:40.0234 3924 Eventlog - detected UnsignedFile.Multi.Generic (1) 16:09:40.0296 3924 EventSystem (af4f6b5739d18ca7972ab53e091cbc74) C:\WINDOWS\system32\es.dll 16:09:40.0296 3924 EventSystem ( UnsignedFile.Multi.Generic ) - warning 16:09:40.0296 3924 EventSystem - detected UnsignedFile.Multi.Generic (1) 16:09:40.0328 3924 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys 16:09:40.0328 3924 Fastfat ( UnsignedFile.Multi.Generic ) - warning 16:09:40.0328 3924 Fastfat - detected UnsignedFile.Multi.Generic (1) 16:09:40.0390 3924 FastUserSwitchingCompatibility (2db7d303c36ddd055215052f118e8e75) C:\WINDOWS\System32\shsvcs.dll 16:09:40.0390 3924 FastUserSwitchingCompatibility ( UnsignedFile.Multi.Generic ) - warning 16:09:40.0390 3924 FastUserSwitchingCompatibility - detected UnsignedFile.Multi.Generic (1) 16:09:40.0437 3924 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys 16:09:40.0437 3924 Fdc ( UnsignedFile.Multi.Generic ) - warning 16:09:40.0437 3924 Fdc - detected UnsignedFile.Multi.Generic (1) 16:09:40.0468 3924 Fips (b0678a548587c5f1967b0d70bacad6c1) C:\WINDOWS\system32\drivers\Fips.sys 16:09:40.0484 3924 Fips ( UnsignedFile.Multi.Generic ) - warning 16:09:40.0484 3924 Fips - detected UnsignedFile.Multi.Generic (1) 16:09:40.0484 3924 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys 16:09:40.0484 3924 Flpydisk ( UnsignedFile.Multi.Generic ) - warning 16:09:40.0484 3924 Flpydisk - detected UnsignedFile.Multi.Generic (1) 16:09:40.0546 3924 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys 16:09:40.0562 3924 FltMgr ( UnsignedFile.Multi.Generic ) - warning 16:09:40.0562 3924 FltMgr - detected UnsignedFile.Multi.Generic (1) 16:09:40.0734 3924 FontCache3.0.0.0 (8ba7c024070f2b7fdd98ed8a4ba41789) c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe 16:09:40.0750 3924 FontCache3.0.0.0 - ok 16:09:40.0796 3924 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys 16:09:40.0812 3924 Fs_Rec ( UnsignedFile.Multi.Generic ) - warning 16:09:40.0812 3924 Fs_Rec - detected UnsignedFile.Multi.Generic (1) 16:09:40.0828 3924 Ftdisk (8f1955ce42e1484714b542f341647778) C:\WINDOWS\system32\DRIVERS\ftdisk.sys 16:09:40.0828 3924 Ftdisk ( UnsignedFile.Multi.Generic ) - warning 16:09:40.0828 3924 Ftdisk - detected UnsignedFile.Multi.Generic (1) 16:09:40.0843 3924 G400 (33d00f8cb70ac5f7a8101f79d5273615) C:\WINDOWS\system32\DRIVERS\G400m.sys 16:09:40.0859 3924 G400 ( UnsignedFile.Multi.Generic ) - warning 16:09:40.0859 3924 G400 - detected UnsignedFile.Multi.Generic (1) 16:09:40.0984 3924 getPlusHelper (0879dc7444a201df84e69c5dd5083d61) C:\Programme\NOS\bin\getPlus_Helper.dll 16:09:40.0984 3924 getPlusHelper - ok 16:09:41.0046 3924 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys 16:09:41.0046 3924 Gpc ( UnsignedFile.Multi.Generic ) - warning 16:09:41.0046 3924 Gpc - detected UnsignedFile.Multi.Generic (1) 16:09:41.0109 3924 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys 16:09:41.0109 3924 HDAudBus ( UnsignedFile.Multi.Generic ) - warning 16:09:41.0109 3924 HDAudBus - detected UnsignedFile.Multi.Generic (1) 16:09:41.0203 3924 helpsvc (cb66bf85bf599befd6c6a57c2e20357f) C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll 16:09:41.0218 3924 helpsvc ( UnsignedFile.Multi.Generic ) - warning 16:09:41.0218 3924 helpsvc - detected UnsignedFile.Multi.Generic (1) 16:09:41.0218 3924 HidServ - ok 16:09:41.0234 3924 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys 16:09:41.0234 3924 HidUsb ( UnsignedFile.Multi.Generic ) - warning 16:09:41.0234 3924 HidUsb - detected UnsignedFile.Multi.Generic (1) 16:09:41.0296 3924 hkmsvc (ed29f14101523a6e0e808107405d452c) C:\WINDOWS\System32\kmsvc.dll 16:09:41.0296 3924 hkmsvc ( UnsignedFile.Multi.Generic ) - warning 16:09:41.0296 3924 hkmsvc - detected UnsignedFile.Multi.Generic (1) 16:09:41.0328 3924 hpn (b028377dea0546a5fcfba928a8aefae0) C:\WINDOWS\system32\DRIVERS\hpn.sys 16:09:41.0328 3924 hpn ( UnsignedFile.Multi.Generic ) - warning 16:09:41.0328 3924 hpn - detected UnsignedFile.Multi.Generic (1) 16:09:41.0390 3924 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys 16:09:41.0390 3924 HTTP ( UnsignedFile.Multi.Generic ) - warning 16:09:41.0390 3924 HTTP - detected UnsignedFile.Multi.Generic (1) 16:09:41.0453 3924 HTTPFilter (9e4adb854cebcfb81a4b36718feecd16) C:\WINDOWS\System32\w3ssl.dll 16:09:41.0453 3924 HTTPFilter ( UnsignedFile.Multi.Generic ) - warning 16:09:41.0453 3924 HTTPFilter - detected UnsignedFile.Multi.Generic (1) 16:09:41.0468 3924 i2omgmt (9368670bd426ebea5e8b18a62416ec28) C:\WINDOWS\system32\drivers\i2omgmt.sys 16:09:41.0468 3924 i2omgmt ( UnsignedFile.Multi.Generic ) - warning 16:09:41.0468 3924 i2omgmt - detected UnsignedFile.Multi.Generic (1) 16:09:41.0484 3924 i2omp (f10863bf1ccc290babd1a09188ae49e0) C:\WINDOWS\system32\DRIVERS\i2omp.sys 16:09:41.0484 3924 i2omp ( UnsignedFile.Multi.Generic ) - warning 16:09:41.0484 3924 i2omp - detected UnsignedFile.Multi.Generic (1) 16:09:41.0484 3924 i8042prt (e283b97cfbeb86c1d86baed5f7846a92) C:\WINDOWS\system32\DRIVERS\i8042prt.sys 16:09:41.0500 3924 i8042prt ( UnsignedFile.Multi.Generic ) - warning 16:09:41.0500 3924 i8042prt - detected UnsignedFile.Multi.Generic (1) 16:09:41.0546 3924 iaStor (309c4d86d989fb1fcf64bd30dc81c51b) C:\WINDOWS\system32\DRIVERS\iaStor.sys 16:09:41.0593 3924 iaStor ( UnsignedFile.Multi.Generic ) - warning 16:09:41.0593 3924 iaStor - detected UnsignedFile.Multi.Generic (1) 16:09:41.0781 3924 idsvc (c01ac32dc5c03076cfb852cb5da5229c) c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe 16:09:41.0859 3924 idsvc - ok 16:09:41.0953 3924 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys 16:09:41.0968 3924 Imapi ( UnsignedFile.Multi.Generic ) - warning 16:09:41.0968 3924 Imapi - detected UnsignedFile.Multi.Generic (1) 16:09:42.0015 3924 ImapiService (d4b413aa210c21e46aedd2ba5b68d38e) C:\WINDOWS\system32\imapi.exe 16:09:42.0015 3924 ImapiService ( UnsignedFile.Multi.Generic ) - warning 16:09:42.0015 3924 ImapiService - detected UnsignedFile.Multi.Generic (1) 16:09:42.0046 3924 ini910u (4a40e045faee58631fd8d91afc620719) C:\WINDOWS\system32\DRIVERS\ini910u.sys 16:09:42.0062 3924 ini910u ( UnsignedFile.Multi.Generic ) - warning 16:09:42.0062 3924 ini910u - detected UnsignedFile.Multi.Generic (1) 16:09:42.0312 3924 IntcAzAudAddService (557e20484a095d949912883f5ab29e88) C:\WINDOWS\system32\drivers\RtkHDAud.sys 16:09:42.0484 3924 IntcAzAudAddService ( UnsignedFile.Multi.Generic ) - warning 16:09:42.0484 3924 IntcAzAudAddService - detected UnsignedFile.Multi.Generic (1) 16:09:42.0656 3924 IntelIde (69c4e3c9e67a1f103b94e14fdd5f3213) C:\WINDOWS\system32\DRIVERS\intelide.sys 16:09:42.0671 3924 IntelIde ( UnsignedFile.Multi.Generic ) - warning 16:09:42.0671 3924 IntelIde - detected UnsignedFile.Multi.Generic (1) 16:09:42.0703 3924 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys 16:09:42.0718 3924 Ip6Fw ( UnsignedFile.Multi.Generic ) - warning 16:09:42.0718 3924 Ip6Fw - detected UnsignedFile.Multi.Generic (1) 16:09:42.0718 3924 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 16:09:42.0718 3924 IpFilterDriver ( UnsignedFile.Multi.Generic ) - warning 16:09:42.0718 3924 IpFilterDriver - detected UnsignedFile.Multi.Generic (1) 16:09:42.0734 3924 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys 16:09:42.0734 3924 IpInIp ( UnsignedFile.Multi.Generic ) - warning 16:09:42.0734 3924 IpInIp - detected UnsignedFile.Multi.Generic (1) 16:09:42.0765 3924 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys 16:09:42.0765 3924 IpNat ( UnsignedFile.Multi.Generic ) - warning 16:09:42.0765 3924 IpNat - detected UnsignedFile.Multi.Generic (1) 16:09:42.0796 3924 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys 16:09:42.0812 3924 IPSec ( UnsignedFile.Multi.Generic ) - warning 16:09:42.0812 3924 IPSec - detected UnsignedFile.Multi.Generic (1) 16:09:42.0812 3924 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys 16:09:42.0812 3924 IRENUM ( UnsignedFile.Multi.Generic ) - warning 16:09:42.0812 3924 IRENUM - detected UnsignedFile.Multi.Generic (1) 16:09:42.0843 3924 isapnp (6dfb88f64135c525433e87648bda30de) C:\WINDOWS\system32\DRIVERS\isapnp.sys 16:09:42.0859 3924 isapnp ( UnsignedFile.Multi.Generic ) - warning 16:09:42.0859 3924 isapnp - detected UnsignedFile.Multi.Generic (1) 16:09:42.0953 3924 IviRegMgr (213822072085b5bbad9af30ab577d817) C:\Programme\Gemeinsame Dateien\InterVideo\RegMgr\iviRegMgr.exe 16:09:42.0953 3924 IviRegMgr - ok 16:09:43.0031 3924 JavaQuickStarterService (de5d05fd449798ef88cc34ad4b1e7f85) C:\Programme\Java\jre6\bin\jqs.exe 16:09:43.0046 3924 JavaQuickStarterService - ok 16:09:43.0062 3924 Kbdclass (1704d8c4c8807b889e43c649b478a452) C:\WINDOWS\system32\DRIVERS\kbdclass.sys 16:09:43.0062 3924 Kbdclass ( UnsignedFile.Multi.Generic ) - warning 16:09:43.0062 3924 Kbdclass - detected UnsignedFile.Multi.Generic (1) 16:09:43.0078 3924 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys 16:09:43.0093 3924 kmixer ( UnsignedFile.Multi.Generic ) - warning 16:09:43.0093 3924 kmixer - detected UnsignedFile.Multi.Generic (1) 16:09:43.0140 3924 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys 16:09:43.0156 3924 KSecDD ( UnsignedFile.Multi.Generic ) - warning 16:09:43.0156 3924 KSecDD - detected UnsignedFile.Multi.Generic (1) 16:09:43.0203 3924 lanmanserver (2bbdcb79900990f0716dfcb714e72de7) C:\WINDOWS\System32\srvsvc.dll 16:09:43.0203 3924 lanmanserver ( UnsignedFile.Multi.Generic ) - warning 16:09:43.0203 3924 lanmanserver - detected UnsignedFile.Multi.Generic (1) 16:09:43.0265 3924 lanmanworkstation (1869b14b06b44b44af70548e1ea3303f) C:\WINDOWS\System32\wkssvc.dll 16:09:43.0281 3924 lanmanworkstation ( UnsignedFile.Multi.Generic ) - warning 16:09:43.0281 3924 lanmanworkstation - detected UnsignedFile.Multi.Generic (1) 16:09:43.0281 3924 lbrtfdc - ok 16:09:43.0343 3924 LmHosts (636714b7d43c8d0c80449123fd266920) C:\WINDOWS\System32\lmhsvc.dll 16:09:43.0343 3924 LmHosts ( UnsignedFile.Multi.Generic ) - warning 16:09:43.0343 3924 LmHosts - detected UnsignedFile.Multi.Generic (1) 16:09:43.0375 3924 Messenger (b7550a7107281d170ce85524b1488c98) C:\WINDOWS\System32\msgsvc.dll 16:09:43.0390 3924 Messenger ( UnsignedFile.Multi.Generic ) - warning 16:09:43.0390 3924 Messenger - detected UnsignedFile.Multi.Generic (1) 16:09:43.0421 3924 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys 16:09:43.0421 3924 mnmdd ( UnsignedFile.Multi.Generic ) - warning 16:09:43.0421 3924 mnmdd - detected UnsignedFile.Multi.Generic (1) 16:09:43.0468 3924 mnmsrvc (c2f1d365fd96791b037ee504868065d3) C:\WINDOWS\system32\mnmsrvc.exe 16:09:43.0468 3924 mnmsrvc ( UnsignedFile.Multi.Generic ) - warning 16:09:43.0468 3924 mnmsrvc - detected UnsignedFile.Multi.Generic (1) 16:09:43.0500 3924 Modem (6fb74ebd4ec57a6f1781de3852cc3362) C:\WINDOWS\system32\drivers\Modem.sys 16:09:43.0515 3924 Modem ( UnsignedFile.Multi.Generic ) - warning 16:09:43.0515 3924 Modem - detected UnsignedFile.Multi.Generic (1) 16:09:43.0546 3924 Mouclass (b24ce8005deab254c0251e15cb71d802) C:\WINDOWS\system32\DRIVERS\mouclass.sys 16:09:43.0562 3924 Mouclass ( UnsignedFile.Multi.Generic ) - warning 16:09:43.0562 3924 Mouclass - detected UnsignedFile.Multi.Generic (1) 16:09:43.0609 3924 mouhid (66a6f73c74e1791464160a7065ce711a) C:\WINDOWS\system32\DRIVERS\mouhid.sys 16:09:43.0609 3924 mouhid ( UnsignedFile.Multi.Generic ) - warning 16:09:43.0609 3924 mouhid - detected UnsignedFile.Multi.Generic (1) 16:09:43.0625 3924 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys 16:09:43.0640 3924 MountMgr ( UnsignedFile.Multi.Generic ) - warning 16:09:43.0640 3924 MountMgr - detected UnsignedFile.Multi.Generic (1) 16:09:43.0718 3924 MozillaMaintenance (46297fa8e30a6007f14118fc2b942fbc) C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe 16:09:43.0765 3924 MozillaMaintenance - ok 16:09:43.0796 3924 mraid35x (3f4bb95e5a44f3be34824e8e7caf0737) C:\WINDOWS\system32\DRIVERS\mraid35x.sys 16:09:43.0796 3924 mraid35x ( UnsignedFile.Multi.Generic ) - warning 16:09:43.0796 3924 mraid35x - detected UnsignedFile.Multi.Generic (1) 16:09:43.0828 3924 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys 16:09:43.0859 3924 MRxDAV ( UnsignedFile.Multi.Generic ) - warning 16:09:43.0859 3924 MRxDAV - detected UnsignedFile.Multi.Generic (1) 16:09:43.0890 3924 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys 16:09:43.0906 3924 MRxSmb ( UnsignedFile.Multi.Generic ) - warning 16:09:43.0906 3924 MRxSmb - detected UnsignedFile.Multi.Generic (1) 16:09:43.0953 3924 MSDTC (35a031af38c55f92d28aa03ee9f12cc9) C:\WINDOWS\system32\msdtc.exe 16:09:43.0953 3924 MSDTC ( UnsignedFile.Multi.Generic ) - warning 16:09:43.0953 3924 MSDTC - detected UnsignedFile.Multi.Generic (1) 16:09:43.0968 3924 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys 16:09:43.0984 3924 Msfs ( UnsignedFile.Multi.Generic ) - warning 16:09:43.0984 3924 Msfs - detected UnsignedFile.Multi.Generic (1) 16:09:43.0984 3924 MSIServer - ok 16:09:44.0000 3924 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys 16:09:44.0000 3924 MSKSSRV ( UnsignedFile.Multi.Generic ) - warning 16:09:44.0000 3924 MSKSSRV - detected UnsignedFile.Multi.Generic (1) 16:09:44.0031 3924 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys 16:09:44.0031 3924 MSPCLOCK ( UnsignedFile.Multi.Generic ) - warning 16:09:44.0031 3924 MSPCLOCK - detected UnsignedFile.Multi.Generic (1) 16:09:44.0062 3924 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys 16:09:44.0062 3924 MSPQM ( UnsignedFile.Multi.Generic ) - warning 16:09:44.0062 3924 MSPQM - detected UnsignedFile.Multi.Generic (1) 16:09:44.0093 3924 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys 16:09:44.0093 3924 mssmbios ( UnsignedFile.Multi.Generic ) - warning 16:09:44.0093 3924 mssmbios - detected UnsignedFile.Multi.Generic (1) 16:09:44.0125 3924 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys 16:09:44.0140 3924 Mup ( UnsignedFile.Multi.Generic ) - warning 16:09:44.0140 3924 Mup - detected UnsignedFile.Multi.Generic (1) 16:09:44.0171 3924 napagent (46bb15ae2ac7d025d6d2567b876817bd) C:\WINDOWS\System32\qagentrt.dll 16:09:44.0203 3924 napagent ( UnsignedFile.Multi.Generic ) - warning 16:09:44.0203 3924 napagent - detected UnsignedFile.Multi.Generic (1) 16:09:44.0250 3924 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys 16:09:44.0250 3924 NDIS ( UnsignedFile.Multi.Generic ) - warning 16:09:44.0250 3924 NDIS - detected UnsignedFile.Multi.Generic (1) 16:09:44.0296 3924 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys 16:09:44.0296 3924 NdisTapi ( UnsignedFile.Multi.Generic ) - warning 16:09:44.0296 3924 NdisTapi - detected UnsignedFile.Multi.Generic (1) 16:09:44.0312 3924 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys 16:09:44.0312 3924 Ndisuio ( UnsignedFile.Multi.Generic ) - warning 16:09:44.0312 3924 Ndisuio - detected UnsignedFile.Multi.Generic (1) 16:09:44.0328 3924 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys 16:09:44.0328 3924 NdisWan ( UnsignedFile.Multi.Generic ) - warning 16:09:44.0328 3924 NdisWan - detected UnsignedFile.Multi.Generic (1) 16:09:44.0359 3924 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys 16:09:44.0375 3924 NDProxy ( UnsignedFile.Multi.Generic ) - warning 16:09:44.0375 3924 NDProxy - detected UnsignedFile.Multi.Generic (1) 16:09:44.0390 3924 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys 16:09:44.0406 3924 NetBIOS ( UnsignedFile.Multi.Generic ) - warning 16:09:44.0406 3924 NetBIOS - detected UnsignedFile.Multi.Generic (1) 16:09:44.0437 3924 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys 16:09:44.0453 3924 NetBT ( UnsignedFile.Multi.Generic ) - warning 16:09:44.0453 3924 NetBT - detected UnsignedFile.Multi.Generic (1) 16:09:44.0531 3924 NetDDE (8ace4251bffd09ce75679fe940e996cc) C:\WINDOWS\system32\netdde.exe 16:09:44.0531 3924 NetDDE ( UnsignedFile.Multi.Generic ) - warning 16:09:44.0531 3924 NetDDE - detected UnsignedFile.Multi.Generic (1) 16:09:44.0546 3924 NetDDEdsdm (8ace4251bffd09ce75679fe940e996cc) C:\WINDOWS\system32\netdde.exe 16:09:44.0546 3924 NetDDEdsdm ( UnsignedFile.Multi.Generic ) - warning 16:09:44.0546 3924 NetDDEdsdm - detected UnsignedFile.Multi.Generic (1) 16:09:44.0593 3924 Netlogon (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe 16:09:44.0609 3924 Netlogon ( UnsignedFile.Multi.Generic ) - warning 16:09:44.0609 3924 Netlogon - detected UnsignedFile.Multi.Generic (1) 16:09:44.0671 3924 Netman (e6d88f1f6745bf00b57e7855a2ab696c) C:\WINDOWS\System32\netman.dll 16:09:44.0671 3924 Netman ( UnsignedFile.Multi.Generic ) - warning 16:09:44.0671 3924 Netman - detected UnsignedFile.Multi.Generic (1) 16:09:44.0781 3924 NetTcpPortSharing (d34612c5d02d026535b3095d620626ae) c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe 16:09:44.0796 3924 NetTcpPortSharing - ok 16:09:44.0828 3924 Nla (f1b67b6b0751ae0e6e964b02821206a3) C:\WINDOWS\System32\mswsock.dll 16:09:44.0843 3924 Nla ( UnsignedFile.Multi.Generic ) - warning 16:09:44.0843 3924 Nla - detected UnsignedFile.Multi.Generic (1) 16:09:44.0937 3924 nosGetPlusHelper (25d6b2eb0a1fc4ab413afe7ec4793ec1) C:\Programme\NOS\bin\getPlus_Helper_3004.dll 16:09:44.0953 3924 nosGetPlusHelper - ok 16:09:45.0000 3924 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys 16:09:45.0000 3924 Npfs ( UnsignedFile.Multi.Generic ) - warning 16:09:45.0000 3924 Npfs - detected UnsignedFile.Multi.Generic (1) 16:09:45.0031 3924 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys 16:09:45.0046 3924 Ntfs ( UnsignedFile.Multi.Generic ) - warning 16:09:45.0046 3924 Ntfs - detected UnsignedFile.Multi.Generic (1) 16:09:45.0046 3924 NtLmSsp (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe 16:09:45.0062 3924 NtLmSsp ( UnsignedFile.Multi.Generic ) - warning 16:09:45.0062 3924 NtLmSsp - detected UnsignedFile.Multi.Generic (1) 16:09:45.0109 3924 NtmsSvc (56af4064996fa5bac9c449b1514b4770) C:\WINDOWS\system32\ntmssvc.dll 16:09:45.0125 3924 NtmsSvc ( UnsignedFile.Multi.Generic ) - warning 16:09:45.0125 3924 NtmsSvc - detected UnsignedFile.Multi.Generic (1) 16:09:45.0171 3924 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys 16:09:45.0187 3924 Null ( UnsignedFile.Multi.Generic ) - warning 16:09:45.0187 3924 Null - detected UnsignedFile.Multi.Generic (1) 16:09:45.0296 3924 nv (2b298519edbfcf451d43e0f1e8f1006d) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys 16:09:45.0375 3924 nv ( UnsignedFile.Multi.Generic ) - warning 16:09:45.0375 3924 nv - detected UnsignedFile.Multi.Generic (1) 16:09:45.0515 3924 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys 16:09:45.0531 3924 NwlnkFlt ( UnsignedFile.Multi.Generic ) - warning 16:09:45.0531 3924 NwlnkFlt - detected UnsignedFile.Multi.Generic (1) 16:09:45.0531 3924 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys 16:09:45.0531 3924 NwlnkFwd ( UnsignedFile.Multi.Generic ) - warning 16:09:45.0531 3924 NwlnkFwd - detected UnsignedFile.Multi.Generic (1) 16:09:45.0593 3924 Parport (f84785660305b9b903fb3bca8ba29837) C:\WINDOWS\system32\DRIVERS\parport.sys 16:09:45.0609 3924 Parport ( UnsignedFile.Multi.Generic ) - warning 16:09:45.0609 3924 Parport - detected UnsignedFile.Multi.Generic (1) 16:09:45.0609 3924 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys 16:09:45.0625 3924 PartMgr ( UnsignedFile.Multi.Generic ) - warning 16:09:45.0625 3924 PartMgr - detected UnsignedFile.Multi.Generic (1) 16:09:45.0625 3924 ParVdm (c2bf987829099a3eaa2ca6a0a90ecb4f) C:\WINDOWS\system32\drivers\ParVdm.sys 16:09:45.0640 3924 ParVdm ( UnsignedFile.Multi.Generic ) - warning 16:09:45.0640 3924 ParVdm - detected UnsignedFile.Multi.Generic (1) 16:09:45.0640 3924 PCI (387e8dedc343aa2d1efbc30580273acd) C:\WINDOWS\system32\DRIVERS\pci.sys 16:09:45.0656 3924 PCI ( UnsignedFile.Multi.Generic ) - warning 16:09:45.0656 3924 PCI - detected UnsignedFile.Multi.Generic (1) 16:09:45.0656 3924 PCIDump - ok 16:09:45.0671 3924 PCIIde (59ba86d9a61cbcf4df8e598c331f5b82) C:\WINDOWS\system32\DRIVERS\pciide.sys 16:09:45.0671 3924 PCIIde ( UnsignedFile.Multi.Generic ) - warning 16:09:45.0671 3924 PCIIde - detected UnsignedFile.Multi.Generic (1) 16:09:45.0718 3924 Pcmcia (a2a966b77d61847d61a3051df87c8c97) C:\WINDOWS\system32\drivers\Pcmcia.sys 16:09:45.0734 3924 Pcmcia ( UnsignedFile.Multi.Generic ) - warning 16:09:45.0734 3924 Pcmcia - detected UnsignedFile.Multi.Generic (1) 16:09:45.0734 3924 PDCOMP - ok 16:09:45.0750 3924 PDFRAME - ok 16:09:45.0765 3924 PDRELI - ok 16:09:45.0781 3924 PDRFRAME - ok 16:09:45.0828 3924 pelmouse (bd71f603c9aa0754c96e7557ee0001f9) C:\WINDOWS\system32\DRIVERS\pelmouse.sys 16:09:45.0843 3924 pelmouse ( UnsignedFile.Multi.Generic ) - warning 16:09:45.0843 3924 pelmouse - detected UnsignedFile.Multi.Generic (1) 16:09:45.0843 3924 pelusblf (25c36dccbe713f62bd9d24dd5c554b4e) C:\WINDOWS\system32\DRIVERS\pelusblf.sys 16:09:45.0859 3924 pelusblf ( UnsignedFile.Multi.Generic ) - warning 16:09:45.0859 3924 pelusblf - detected UnsignedFile.Multi.Generic (1) 16:09:45.0890 3924 perc2 (6c14b9c19ba84f73d3a86dba11133101) C:\WINDOWS\system32\DRIVERS\perc2.sys 16:09:45.0890 3924 perc2 ( UnsignedFile.Multi.Generic ) - warning 16:09:45.0890 3924 perc2 - detected UnsignedFile.Multi.Generic (1) 16:09:45.0906 3924 perc2hib (f50f7c27f131afe7beba13e14a3b9416) C:\WINDOWS\system32\DRIVERS\perc2hib.sys 16:09:45.0906 3924 perc2hib ( UnsignedFile.Multi.Generic ) - warning 16:09:45.0906 3924 perc2hib - detected UnsignedFile.Multi.Generic (1) 16:09:45.0968 3924 PlugPlay (a3edbe9053889fb24ab22492472b39dc) C:\WINDOWS\system32\services.exe 16:09:45.0984 3924 PlugPlay ( UnsignedFile.Multi.Generic ) - warning 16:09:45.0984 3924 PlugPlay - detected UnsignedFile.Multi.Generic (1) 16:09:46.0015 3924 pmem (dedef40e1d05842639491365cb2c069e) C:\WINDOWS\System32\drivers\pmemnt.sys 16:09:46.0031 3924 pmem ( UnsignedFile.Multi.Generic ) - warning 16:09:46.0031 3924 pmem - detected UnsignedFile.Multi.Generic (1) 16:09:46.0062 3924 PolicyAgent (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe 16:09:46.0062 3924 PolicyAgent ( UnsignedFile.Multi.Generic ) - warning 16:09:46.0062 3924 PolicyAgent - detected UnsignedFile.Multi.Generic (1) 16:09:46.0093 3924 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys 16:09:46.0109 3924 PptpMiniport ( UnsignedFile.Multi.Generic ) - warning 16:09:46.0109 3924 PptpMiniport - detected UnsignedFile.Multi.Generic (1) 16:09:46.0125 3924 Processor (2cb55427c58679f49ad600fccba76360) C:\WINDOWS\system32\DRIVERS\processr.sys 16:09:46.0125 3924 Processor ( UnsignedFile.Multi.Generic ) - warning 16:09:46.0125 3924 Processor - detected UnsignedFile.Multi.Generic (1) 16:09:46.0125 3924 ProtectedStorage (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe 16:09:46.0140 3924 ProtectedStorage ( UnsignedFile.Multi.Generic ) - warning 16:09:46.0140 3924 ProtectedStorage - detected UnsignedFile.Multi.Generic (1) 16:09:46.0156 3924 psadd (f8a25f1dd8b2c332cbc663e3579566e7) C:\WINDOWS\system32\DRIVERS\psadd.sys 16:09:46.0171 3924 psadd - ok 16:09:46.0171 3924 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys 16:09:46.0187 3924 PSched ( UnsignedFile.Multi.Generic ) - warning 16:09:46.0187 3924 PSched - detected UnsignedFile.Multi.Generic (1) 16:09:46.0187 3924 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys 16:09:46.0203 3924 Ptilink ( UnsignedFile.Multi.Generic ) - warning 16:09:46.0203 3924 Ptilink - detected UnsignedFile.Multi.Generic (1) 16:09:46.0218 3924 PxHelp20 (40fedd328f98245ad201cf5f9f311724) C:\WINDOWS\system32\Drivers\PxHelp20.sys 16:09:46.0234 3924 PxHelp20 - ok 16:09:46.0265 3924 ql1080 (0a63fb54039eb5662433caba3b26dba7) C:\WINDOWS\system32\DRIVERS\ql1080.sys 16:09:46.0265 3924 ql1080 ( UnsignedFile.Multi.Generic ) - warning 16:09:46.0265 3924 ql1080 - detected UnsignedFile.Multi.Generic (1) 16:09:46.0265 3924 Ql10wnt (6503449e1d43a0ff0201ad5cb1b8c706) C:\WINDOWS\system32\DRIVERS\ql10wnt.sys 16:09:46.0281 3924 Ql10wnt ( UnsignedFile.Multi.Generic ) - warning 16:09:46.0281 3924 Ql10wnt - detected UnsignedFile.Multi.Generic (1) 16:09:46.0281 3924 ql12160 (156ed0ef20c15114ca097a34a30d8a01) C:\WINDOWS\system32\DRIVERS\ql12160.sys 16:09:46.0296 3924 ql12160 ( UnsignedFile.Multi.Generic ) - warning 16:09:46.0296 3924 ql12160 - detected UnsignedFile.Multi.Generic (1) 16:09:46.0296 3924 ql1240 (70f016bebde6d29e864c1230a07cc5e6) C:\WINDOWS\system32\DRIVERS\ql1240.sys 16:09:46.0312 3924 ql1240 ( UnsignedFile.Multi.Generic ) - warning 16:09:46.0312 3924 ql1240 - detected UnsignedFile.Multi.Generic (1) 16:09:46.0312 3924 ql1280 (907f0aeea6bc451011611e732bd31fcf) C:\WINDOWS\system32\DRIVERS\ql1280.sys 16:09:46.0328 3924 ql1280 ( UnsignedFile.Multi.Generic ) - warning 16:09:46.0328 3924 ql1280 - detected UnsignedFile.Multi.Generic (1) 16:09:46.0359 3924 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys 16:09:46.0359 3924 RasAcd ( UnsignedFile.Multi.Generic ) - warning 16:09:46.0359 3924 RasAcd - detected UnsignedFile.Multi.Generic (1) 16:09:46.0421 3924 RasAuto (f5ba6caccdb66c8f048e867563203246) C:\WINDOWS\System32\rasauto.dll 16:09:46.0437 3924 RasAuto ( UnsignedFile.Multi.Generic ) - warning 16:09:46.0437 3924 RasAuto - detected UnsignedFile.Multi.Generic (1) 16:09:46.0468 3924 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys 16:09:46.0468 3924 Rasl2tp ( UnsignedFile.Multi.Generic ) - warning 16:09:46.0468 3924 Rasl2tp - detected UnsignedFile.Multi.Generic (1) 16:09:46.0515 3924 RasMan (f9a7b66ea345726edb5862a46b1eccd5) C:\WINDOWS\System32\rasmans.dll 16:09:46.0531 3924 RasMan ( UnsignedFile.Multi.Generic ) - warning 16:09:46.0531 3924 RasMan - detected UnsignedFile.Multi.Generic (1) 16:09:46.0546 3924 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys 16:09:46.0546 3924 RasPppoe ( UnsignedFile.Multi.Generic ) - warning 16:09:46.0546 3924 RasPppoe - detected UnsignedFile.Multi.Generic (1) 16:09:46.0546 3924 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys 16:09:46.0562 3924 Raspti ( UnsignedFile.Multi.Generic ) - warning 16:09:46.0562 3924 Raspti - detected UnsignedFile.Multi.Generic (1) 16:09:46.0609 3924 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys 16:09:46.0625 3924 Rdbss ( UnsignedFile.Multi.Generic ) - warning 16:09:46.0625 3924 Rdbss - detected UnsignedFile.Multi.Generic (1) 16:09:46.0671 3924 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys 16:09:46.0671 3924 RDPCDD ( UnsignedFile.Multi.Generic ) - warning 16:09:46.0671 3924 RDPCDD - detected UnsignedFile.Multi.Generic (1) 16:09:46.0687 3924 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys 16:09:46.0703 3924 rdpdr ( UnsignedFile.Multi.Generic ) - warning 16:09:46.0703 3924 rdpdr - detected UnsignedFile.Multi.Generic (1) 16:09:46.0734 3924 RDPWD (6589db6e5969f8eee594cf71171c5028) C:\WINDOWS\system32\drivers\RDPWD.sys 16:09:46.0750 3924 RDPWD ( UnsignedFile.Multi.Generic ) - warning 16:09:46.0750 3924 RDPWD - detected UnsignedFile.Multi.Generic (1) 16:09:46.0796 3924 RDSessMgr (263af18af0f3db99f574c95f284ccec9) C:\WINDOWS\system32\sessmgr.exe 16:09:46.0812 3924 RDSessMgr ( UnsignedFile.Multi.Generic ) - warning 16:09:46.0812 3924 RDSessMgr - detected UnsignedFile.Multi.Generic (1) 16:09:46.0828 3924 redbook (ed761d453856f795a7fe056e42c36365) C:\WINDOWS\system32\DRIVERS\redbook.sys 16:09:46.0843 3924 redbook ( UnsignedFile.Multi.Generic ) - warning 16:09:46.0843 3924 redbook - detected UnsignedFile.Multi.Generic (1) 16:09:46.0875 3924 RemoteAccess (0e97ec96d6942ceec2d188cc2eb69a01) C:\WINDOWS\System32\mprdim.dll 16:09:46.0890 3924 RemoteAccess ( UnsignedFile.Multi.Generic ) - warning 16:09:46.0890 3924 RemoteAccess - detected UnsignedFile.Multi.Generic (1) 16:09:46.0921 3924 RemoteRegistry (e4cd1f3d84e1c2ca0b8cf7501e201593) C:\WINDOWS\system32\regsvc.dll 16:09:46.0937 3924 RemoteRegistry ( UnsignedFile.Multi.Generic ) - warning 16:09:46.0937 3924 RemoteRegistry - detected UnsignedFile.Multi.Generic (1) 16:09:47.0156 3924 RoxMediaDB10 (eb9eeb379848f356797eb9ef31114ca5) C:\Programme\Gemeinsame Dateien\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe 16:09:47.0218 3924 RoxMediaDB10 - ok 16:09:47.0250 3924 RpcLocator (2a02e21867497df20b8fc95631395169) C:\WINDOWS\system32\locator.exe 16:09:47.0265 3924 RpcLocator ( UnsignedFile.Multi.Generic ) - warning 16:09:47.0265 3924 RpcLocator - detected UnsignedFile.Multi.Generic (1) 16:09:47.0312 3924 RpcSs (3127afbf2c1ed0ab14a1bbb7aaecb85b) C:\WINDOWS\system32\rpcss.dll 16:09:47.0328 3924 RpcSs ( UnsignedFile.Multi.Generic ) - warning 16:09:47.0328 3924 RpcSs - detected UnsignedFile.Multi.Generic (1) 16:09:47.0375 3924 RSVP (4bdd71b4b521521499dfd14735c4f398) C:\WINDOWS\system32\rsvp.exe 16:09:47.0390 3924 RSVP ( UnsignedFile.Multi.Generic ) - warning 16:09:47.0406 3924 RSVP - detected UnsignedFile.Multi.Generic (1) 16:09:47.0437 3924 SamSs (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe 16:09:47.0453 3924 SamSs ( UnsignedFile.Multi.Generic ) - warning 16:09:47.0453 3924 SamSs - detected UnsignedFile.Multi.Generic (1) 16:09:47.0453 3924 SCardSvr (dcec079fad95d36c8dd5cb6d779dfe32) C:\WINDOWS\System32\SCardSvr.exe 16:09:47.0468 3924 SCardSvr ( UnsignedFile.Multi.Generic ) - warning 16:09:47.0468 3924 SCardSvr - detected UnsignedFile.Multi.Generic (1) 16:09:47.0515 3924 Schedule (a050194a44d7fa8d7186ed2f4e8367ae) C:\WINDOWS\system32\schedsvc.dll 16:09:47.0531 3924 Schedule ( UnsignedFile.Multi.Generic ) - warning 16:09:47.0531 3924 Schedule - detected UnsignedFile.Multi.Generic (1) 16:09:47.0609 3924 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys 16:09:47.0609 3924 Secdrv ( UnsignedFile.Multi.Generic ) - warning 16:09:47.0609 3924 Secdrv - detected UnsignedFile.Multi.Generic (1) 16:09:47.0640 3924 seclogon (bee4cfd1d48c23b44cf4b974b0b79b2b) C:\WINDOWS\System32\seclogon.dll 16:09:47.0656 3924 seclogon ( UnsignedFile.Multi.Generic ) - warning 16:09:47.0656 3924 seclogon - detected UnsignedFile.Multi.Generic (1) 16:09:47.0656 3924 SENS (2aac9b6ed9eddffb721d6452e34d67e3) C:\WINDOWS\system32\sens.dll 16:09:47.0671 3924 SENS ( UnsignedFile.Multi.Generic ) - warning 16:09:47.0671 3924 SENS - detected UnsignedFile.Multi.Generic (1) 16:09:47.0718 3924 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys 16:09:47.0718 3924 serenum ( UnsignedFile.Multi.Generic ) - warning 16:09:47.0718 3924 serenum - detected UnsignedFile.Multi.Generic (1) 16:09:47.0734 3924 Serial (cf24eb4f0412c82bcd1f4f35a025e31d) C:\WINDOWS\system32\DRIVERS\serial.sys 16:09:47.0734 3924 Serial ( UnsignedFile.Multi.Generic ) - warning 16:09:47.0734 3924 Serial - detected UnsignedFile.Multi.Generic (1) 16:09:47.0812 3924 SessionLauncher - ok 16:09:47.0843 3924 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys 16:09:47.0843 3924 Sfloppy ( UnsignedFile.Multi.Generic ) - warning 16:09:47.0843 3924 Sfloppy - detected UnsignedFile.Multi.Generic (1) 16:09:47.0906 3924 ShellHWDetection (2db7d303c36ddd055215052f118e8e75) C:\WINDOWS\System32\shsvcs.dll 16:09:47.0921 3924 ShellHWDetection ( UnsignedFile.Multi.Generic ) - warning 16:09:47.0921 3924 ShellHWDetection - detected UnsignedFile.Multi.Generic (1) 16:09:47.0921 3924 Simbad - ok 16:09:48.0000 3924 sisagp (6b33d0ebd30db32e27d1d78fe946a754) C:\WINDOWS\system32\DRIVERS\sisagp.sys 16:09:48.0015 3924 sisagp ( UnsignedFile.Multi.Generic ) - warning 16:09:48.0015 3924 sisagp - detected UnsignedFile.Multi.Generic (1) 16:09:48.0031 3924 Sparrow (83c0f71f86d3bdaf915685f3d568b20e) C:\WINDOWS\system32\DRIVERS\sparrow.sys 16:09:48.0031 3924 Sparrow ( UnsignedFile.Multi.Generic ) - warning 16:09:48.0031 3924 Sparrow - detected UnsignedFile.Multi.Generic (1) 16:09:48.0062 3924 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys 16:09:48.0078 3924 splitter ( UnsignedFile.Multi.Generic ) - warning 16:09:48.0078 3924 splitter - detected UnsignedFile.Multi.Generic (1) 16:09:48.0125 3924 Spooler (60784f891563fb1b767f70117fc2428f) C:\WINDOWS\system32\spoolsv.exe 16:09:48.0125 3924 Spooler ( UnsignedFile.Multi.Generic ) - warning 16:09:48.0125 3924 Spooler - detected UnsignedFile.Multi.Generic (1) 16:09:48.0140 3924 sr (50fa898f8c032796d3b1b9951bb5a90f) C:\WINDOWS\system32\DRIVERS\sr.sys 16:09:48.0156 3924 sr ( UnsignedFile.Multi.Generic ) - warning 16:09:48.0156 3924 sr - detected UnsignedFile.Multi.Generic (1) 16:09:48.0218 3924 srservice (fe77a85495065f3ad59c5c65b6c54182) C:\WINDOWS\system32\srsvc.dll 16:09:48.0218 3924 srservice ( UnsignedFile.Multi.Generic ) - warning 16:09:48.0218 3924 srservice - detected UnsignedFile.Multi.Generic (1) 16:09:48.0234 3924 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys 16:09:48.0250 3924 Srv ( UnsignedFile.Multi.Generic ) - warning 16:09:48.0250 3924 Srv - detected UnsignedFile.Multi.Generic (1) 16:09:48.0296 3924 SSDPSRV (4df5b05dfaec29e13e1ed6f6ee12c500) C:\WINDOWS\System32\ssdpsrv.dll 16:09:48.0296 3924 SSDPSRV ( UnsignedFile.Multi.Generic ) - warning 16:09:48.0296 3924 SSDPSRV - detected UnsignedFile.Multi.Generic (1) 16:09:48.0328 3924 ssmdrv (a36ee93698802cd899f98bfd553d8185) C:\WINDOWS\system32\DRIVERS\ssmdrv.sys 16:09:48.0343 3924 ssmdrv - ok 16:09:48.0343 3924 SSPORT - ok 16:09:48.0375 3924 stisvc (bc2c5985611c5356b24aeb370953ded9) C:\WINDOWS\system32\wiaservc.dll 16:09:48.0390 3924 stisvc ( UnsignedFile.Multi.Generic ) - warning 16:09:48.0390 3924 stisvc - detected UnsignedFile.Multi.Generic (1) 16:09:48.0468 3924 stllssvr (1d0063597c3666404fcf97698abeb019) C:\Programme\Gemeinsame Dateien\SureThing Shared\stllssvr.exe 16:09:48.0484 3924 stllssvr - ok 16:09:48.0609 3924 SUService (b71a41cad9de92219c3891e88f822ac3) c:\programme\lenovo\system update\suservice.exe 16:09:48.0609 3924 SUService ( UnsignedFile.Multi.Generic ) - warning 16:09:48.0609 3924 SUService - detected UnsignedFile.Multi.Generic (1) 16:09:48.0656 3924 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys 16:09:48.0656 3924 swenum ( UnsignedFile.Multi.Generic ) - warning 16:09:48.0656 3924 swenum - detected UnsignedFile.Multi.Generic (1) 16:09:48.0671 3924 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys 16:09:48.0687 3924 swmidi ( UnsignedFile.Multi.Generic ) - warning 16:09:48.0687 3924 swmidi - detected UnsignedFile.Multi.Generic (1) 16:09:48.0687 3924 SwPrv - ok 16:09:48.0734 3924 symc810 (1ff3217614018630d0a6758630fc698c) C:\WINDOWS\system32\DRIVERS\symc810.sys 16:09:48.0734 3924 symc810 ( UnsignedFile.Multi.Generic ) - warning 16:09:48.0734 3924 symc810 - detected UnsignedFile.Multi.Generic (1) 16:09:48.0750 3924 symc8xx (070e001d95cf725186ef8b20335f933c) C:\WINDOWS\system32\DRIVERS\symc8xx.sys 16:09:48.0765 3924 symc8xx ( UnsignedFile.Multi.Generic ) - warning 16:09:48.0765 3924 symc8xx - detected UnsignedFile.Multi.Generic (1) 16:09:48.0765 3924 sym_hi (80ac1c4abbe2df3b738bf15517a51f2c) C:\WINDOWS\system32\DRIVERS\sym_hi.sys 16:09:48.0765 3924 sym_hi ( UnsignedFile.Multi.Generic ) - warning 16:09:48.0765 3924 sym_hi - detected UnsignedFile.Multi.Generic (1) 16:09:48.0781 3924 sym_u3 (bf4fab949a382a8e105f46ebb4937058) C:\WINDOWS\system32\DRIVERS\sym_u3.sys 16:09:48.0781 3924 sym_u3 ( UnsignedFile.Multi.Generic ) - warning 16:09:48.0781 3924 sym_u3 - detected UnsignedFile.Multi.Generic (1) 16:09:48.0828 3924 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys 16:09:48.0828 3924 sysaudio ( UnsignedFile.Multi.Generic ) - warning 16:09:48.0828 3924 sysaudio - detected UnsignedFile.Multi.Generic (1) 16:09:48.0875 3924 SysmonLog (2903fffa2523926d6219428040dce6b9) C:\WINDOWS\system32\smlogsvc.exe 16:09:48.0875 3924 SysmonLog ( UnsignedFile.Multi.Generic ) - warning 16:09:48.0875 3924 SysmonLog - detected UnsignedFile.Multi.Generic (1) 16:09:48.0906 3924 TapiSrv (05903cac4b98908d55ea5774775b382e) C:\WINDOWS\System32\tapisrv.dll 16:09:48.0921 3924 TapiSrv ( UnsignedFile.Multi.Generic ) - warning 16:09:48.0921 3924 TapiSrv - detected UnsignedFile.Multi.Generic (1) 16:09:48.0968 3924 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys 16:09:49.0000 3924 Tcpip ( UnsignedFile.Multi.Generic ) - warning 16:09:49.0000 3924 Tcpip - detected UnsignedFile.Multi.Generic (1) 16:09:49.0031 3924 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys 16:09:49.0046 3924 TDPIPE ( UnsignedFile.Multi.Generic ) - warning 16:09:49.0046 3924 TDPIPE - detected UnsignedFile.Multi.Generic (1) 16:09:49.0062 3924 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys 16:09:49.0062 3924 TDTCP ( UnsignedFile.Multi.Generic ) - warning 16:09:49.0062 3924 TDTCP - detected UnsignedFile.Multi.Generic (1) 16:09:49.0093 3924 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys 16:09:49.0093 3924 TermDD ( UnsignedFile.Multi.Generic ) - warning 16:09:49.0093 3924 TermDD - detected UnsignedFile.Multi.Generic (1) 16:09:49.0125 3924 TermService (b7de02c863d8f5a005a7bf375375a6a4) C:\WINDOWS\System32\termsrv.dll 16:09:49.0140 3924 TermService ( UnsignedFile.Multi.Generic ) - warning 16:09:49.0140 3924 TermService - detected UnsignedFile.Multi.Generic (1) 16:09:49.0187 3924 Themes (2db7d303c36ddd055215052f118e8e75) C:\WINDOWS\System32\shsvcs.dll 16:09:49.0187 3924 Themes ( UnsignedFile.Multi.Generic ) - warning 16:09:49.0187 3924 Themes - detected UnsignedFile.Multi.Generic (1) 16:09:49.0375 3924 ThinkVantage Registry Monitor Service (eb90a37aabaefd7b4f4f92befea8c2e2) c:\Programme\Gemeinsame Dateien\Lenovo\tvt_reg_monitor_svc.exe 16:09:49.0390 3924 ThinkVantage Registry Monitor Service - ok 16:09:49.0437 3924 TlntSvr (03681a1ce77f51586903869a5ab1deab) C:\WINDOWS\system32\tlntsvr.exe 16:09:49.0453 3924 TlntSvr ( UnsignedFile.Multi.Generic ) - warning 16:09:49.0453 3924 TlntSvr - detected UnsignedFile.Multi.Generic (1) 16:09:49.0484 3924 TosIde (d213a9247dc347f305a2d4cc9b951487) C:\WINDOWS\system32\DRIVERS\toside.sys 16:09:49.0500 3924 TosIde ( UnsignedFile.Multi.Generic ) - warning 16:09:49.0500 3924 TosIde - detected UnsignedFile.Multi.Generic (1) 16:09:49.0531 3924 TPM (82fed3fea9bcd77fc870a1e4c8b62870) C:\WINDOWS\system32\DRIVERS\tpm.sys 16:09:49.0531 3924 TPM ( UnsignedFile.Multi.Generic ) - warning 16:09:49.0531 3924 TPM - detected UnsignedFile.Multi.Generic (1) 16:09:49.0562 3924 TrkWks (626504572b175867f30f3215c04b3e2f) C:\WINDOWS\system32\trkwks.dll 16:09:49.0578 3924 TrkWks ( UnsignedFile.Multi.Generic ) - warning 16:09:49.0578 3924 TrkWks - detected UnsignedFile.Multi.Generic (1) 16:09:49.0687 3924 TSSCoreService (4a4ffdeb90a151b734a0bea3d420fd3b) C:\Programme\Lenovo\Client Security Solution\tvttcsd.exe 16:09:49.0718 3924 TSSCoreService - ok 16:09:49.0781 3924 TVT Backup Protection Service (d6ee5dcb3ec401baa10395809047935e) C:\Programme\Lenovo\Rescue and Recovery\rrpservice.exe 16:09:49.0796 3924 TVT Backup Protection Service ( UnsignedFile.Multi.Generic ) - warning 16:09:49.0796 3924 TVT Backup Protection Service - detected UnsignedFile.Multi.Generic (1) 16:09:49.0843 3924 TVT Backup Service (0db73f3fb565cf028c7458c70fa59121) C:\Programme\Lenovo\Rescue and Recovery\rrservice.exe 16:09:49.0890 3924 TVT Backup Service ( UnsignedFile.Multi.Generic ) - warning 16:09:49.0890 3924 TVT Backup Service - detected UnsignedFile.Multi.Generic (1) 16:09:50.0078 3924 TVT Scheduler (6c69fe90f0cc12ef0638ae10dfa4db4e) c:\Programme\Gemeinsame Dateien\Lenovo\Scheduler\tvtsched.exe 16:09:50.0156 3924 TVT Scheduler ( UnsignedFile.Multi.Generic ) - warning 16:09:50.0156 3924 TVT Scheduler - detected UnsignedFile.Multi.Generic (1) 16:09:50.0328 3924 tvtfilter (49258a02a1e8d304ed88b0f1c56b1738) C:\WINDOWS\system32\DRIVERS\tvtfilter.sys 16:09:50.0343 3924 tvtfilter ( UnsignedFile.Multi.Generic ) - warning 16:09:50.0343 3924 tvtfilter - detected UnsignedFile.Multi.Generic (1) 16:09:50.0343 3924 TVTI2C (7e66dda1ef146bfc3a6e36e08e036602) C:\WINDOWS\system32\DRIVERS\Tvti2c.sys 16:09:50.0359 3924 TVTI2C - ok 16:09:50.0421 3924 tvtumon (a6e0aafbe64592871f9a9f38a61c1fa5) C:\WINDOWS\system32\DRIVERS\tvtumon.sys 16:09:50.0421 3924 tvtumon - ok 16:09:50.0484 3924 TVT_UpdateMonitor (3152355ea8e8274d4fda092f454da7c0) C:\Programme\Lenovo\Rescue and Recovery\UpdateMonitor.exe 16:09:50.0500 3924 TVT_UpdateMonitor ( UnsignedFile.Multi.Generic ) - warning 16:09:50.0500 3924 TVT_UpdateMonitor - detected UnsignedFile.Multi.Generic (1) 16:09:50.0546 3924 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys 16:09:50.0562 3924 Udfs ( UnsignedFile.Multi.Generic ) - warning 16:09:50.0562 3924 Udfs - detected UnsignedFile.Multi.Generic (1) 16:09:50.0593 3924 ultra (1b698a51cd528d8da4ffaed66dfc51b9) C:\WINDOWS\system32\DRIVERS\ultra.sys 16:09:50.0609 3924 ultra ( UnsignedFile.Multi.Generic ) - warning 16:09:50.0609 3924 ultra - detected UnsignedFile.Multi.Generic (1) 16:09:50.0640 3924 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys 16:09:50.0656 3924 Update ( UnsignedFile.Multi.Generic ) - warning 16:09:50.0656 3924 Update - detected UnsignedFile.Multi.Generic (1) 16:09:50.0687 3924 upnphost (1dfd8975d8c89214b98d9387c1125b49) C:\WINDOWS\System32\upnphost.dll 16:09:50.0703 3924 upnphost ( UnsignedFile.Multi.Generic ) - warning 16:09:50.0703 3924 upnphost - detected UnsignedFile.Multi.Generic (1) 16:09:50.0718 3924 UPS (9b11e6118958e63e1fef129466e2bda7) C:\WINDOWS\System32\ups.exe 16:09:50.0718 3924 UPS ( UnsignedFile.Multi.Generic ) - warning 16:09:50.0718 3924 UPS - detected UnsignedFile.Multi.Generic (1) 16:09:50.0750 3924 USBDLM (7ee4372b18b6f3d06a0e02fb2e2c0a48) C:\USBDLM\USBDLM.exe 16:09:50.0765 3924 USBDLM ( UnsignedFile.Multi.Generic ) - warning 16:09:50.0765 3924 USBDLM - detected UnsignedFile.Multi.Generic (1) 16:09:50.0796 3924 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys 16:09:50.0796 3924 usbehci ( UnsignedFile.Multi.Generic ) - warning 16:09:50.0796 3924 usbehci - detected UnsignedFile.Multi.Generic (1) 16:09:50.0812 3924 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys 16:09:50.0812 3924 usbhub ( UnsignedFile.Multi.Generic ) - warning 16:09:50.0812 3924 usbhub - detected UnsignedFile.Multi.Generic (1) 16:09:50.0828 3924 usbohci (0daecce65366ea32b162f85f07c6753b) C:\WINDOWS\system32\DRIVERS\usbohci.sys 16:09:50.0828 3924 usbohci ( UnsignedFile.Multi.Generic ) - warning 16:09:50.0828 3924 usbohci - detected UnsignedFile.Multi.Generic (1) 16:09:50.0875 3924 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys 16:09:50.0890 3924 usbprint ( UnsignedFile.Multi.Generic ) - warning 16:09:50.0890 3924 usbprint - detected UnsignedFile.Multi.Generic (1) 16:09:50.0937 3924 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys 16:09:50.0937 3924 usbscan ( UnsignedFile.Multi.Generic ) - warning 16:09:50.0937 3924 usbscan - detected UnsignedFile.Multi.Generic (1) 16:09:51.0000 3924 USBSTOR (6cd7b22193718f1d17a47a1cd6d37e75) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS 16:09:51.0015 3924 USBSTOR ( UnsignedFile.Multi.Generic ) - warning 16:09:51.0015 3924 USBSTOR - detected UnsignedFile.Multi.Generic (1) 16:09:51.0031 3924 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys 16:09:51.0031 3924 usbuhci ( UnsignedFile.Multi.Generic ) - warning 16:09:51.0031 3924 usbuhci - detected UnsignedFile.Multi.Generic (1) 16:09:51.0062 3924 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys 16:09:51.0062 3924 VgaSave ( UnsignedFile.Multi.Generic ) - warning 16:09:51.0062 3924 VgaSave - detected UnsignedFile.Multi.Generic (1) 16:09:51.0078 3924 viaagp (754292ce5848b3738281b4f3607eaef4) C:\WINDOWS\system32\DRIVERS\viaagp.sys 16:09:51.0093 3924 viaagp ( UnsignedFile.Multi.Generic ) - warning 16:09:51.0093 3924 viaagp - detected UnsignedFile.Multi.Generic (1) 16:09:51.0125 3924 ViaIde (3b3efcda263b8ac14fdf9cbdd0791b2e) C:\WINDOWS\system32\DRIVERS\viaide.sys 16:09:51.0125 3924 ViaIde ( UnsignedFile.Multi.Generic ) - warning 16:09:51.0125 3924 ViaIde - detected UnsignedFile.Multi.Generic (1) 16:09:51.0156 3924 VolSnap (a5a712f4e880874a477af790b5186e1d) C:\WINDOWS\system32\drivers\VolSnap.sys 16:09:51.0171 3924 VolSnap ( UnsignedFile.Multi.Generic ) - warning 16:09:51.0171 3924 VolSnap - detected UnsignedFile.Multi.Generic (1) 16:09:51.0218 3924 VSS (68f106273be29e7b7ef8266977268e78) C:\WINDOWS\System32\vssvc.exe 16:09:51.0234 3924 VSS ( UnsignedFile.Multi.Generic ) - warning 16:09:51.0234 3924 VSS - detected UnsignedFile.Multi.Generic (1) 16:09:51.0296 3924 W32Time (7b353059e665f8b7ad2bbeaef597cf45) C:\WINDOWS\system32\w32time.dll 16:09:51.0312 3924 W32Time ( UnsignedFile.Multi.Generic ) - warning 16:09:51.0312 3924 W32Time - detected UnsignedFile.Multi.Generic (1) 16:09:51.0328 3924 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys 16:09:51.0343 3924 Wanarp ( UnsignedFile.Multi.Generic ) - warning 16:09:51.0343 3924 Wanarp - detected UnsignedFile.Multi.Generic (1) 16:09:51.0343 3924 WDICA - ok 16:09:51.0359 3924 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys 16:09:51.0375 3924 wdmaud ( UnsignedFile.Multi.Generic ) - warning 16:09:51.0375 3924 wdmaud - detected UnsignedFile.Multi.Generic (1) 16:09:51.0437 3924 WebClient (81727c9873e3905a2ffc1ebd07265002) C:\WINDOWS\System32\webclnt.dll 16:09:51.0437 3924 WebClient ( UnsignedFile.Multi.Generic ) - warning 16:09:51.0437 3924 WebClient - detected UnsignedFile.Multi.Generic (1) 16:09:51.0531 3924 winmgmt (6f3f3973d97714cc5f906a19fe883729) C:\WINDOWS\system32\wbem\WMIsvc.dll 16:09:51.0531 3924 winmgmt ( UnsignedFile.Multi.Generic ) - warning 16:09:51.0531 3924 winmgmt - detected UnsignedFile.Multi.Generic (1) 16:09:51.0578 3924 WmdmPmSN (051b1bdecd6dee18c771b5d5ec7f044d) C:\WINDOWS\system32\MsPMSNSv.dll 16:09:51.0578 3924 WmdmPmSN ( UnsignedFile.Multi.Generic ) - warning 16:09:51.0578 3924 WmdmPmSN - detected UnsignedFile.Multi.Generic (1) 16:09:51.0671 3924 Wmi (ffa4d901d46d07a5bab2d8307fbb51a6) C:\WINDOWS\System32\advapi32.dll 16:09:51.0687 3924 Wmi ( UnsignedFile.Multi.Generic ) - warning 16:09:51.0687 3924 Wmi - detected UnsignedFile.Multi.Generic (1) 16:09:51.0734 3924 WmiApSrv (93908111ba57a6e60ec2fa2de202105c) C:\WINDOWS\system32\wbem\wmiapsrv.exe 16:09:51.0750 3924 WmiApSrv ( UnsignedFile.Multi.Generic ) - warning 16:09:51.0750 3924 WmiApSrv - detected UnsignedFile.Multi.Generic (1) 16:09:51.0937 3924 WMPNetworkSvc (d3dbd6e76f4be9bee67eb631488b5f29) C:\Programme\Windows Media Player\WMPNetwk.exe 16:09:51.0984 3924 WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - warning 16:09:51.0984 3924 WMPNetworkSvc - detected UnsignedFile.Multi.Generic (1) 16:09:52.0062 3924 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys 16:09:52.0062 3924 WS2IFSL ( UnsignedFile.Multi.Generic ) - warning 16:09:52.0062 3924 WS2IFSL - detected UnsignedFile.Multi.Generic (1) 16:09:52.0109 3924 wuauserv (7b4fe05202aa6bf9f4dfd0e6a0d8a085) C:\WINDOWS\system32\wuauserv.dll 16:09:52.0109 3924 wuauserv ( UnsignedFile.Multi.Generic ) - warning 16:09:52.0109 3924 wuauserv - detected UnsignedFile.Multi.Generic (1) 16:09:52.0156 3924 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys 16:09:52.0156 3924 WudfPf ( UnsignedFile.Multi.Generic ) - warning 16:09:52.0156 3924 WudfPf - detected UnsignedFile.Multi.Generic (1) 16:09:52.0171 3924 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys 16:09:52.0171 3924 WudfRd ( UnsignedFile.Multi.Generic ) - warning 16:09:52.0171 3924 WudfRd - detected UnsignedFile.Multi.Generic (1) 16:09:52.0218 3924 WudfSvc (05231c04253c5bc30b26cbaae680ed89) C:\WINDOWS\System32\WUDFSvc.dll 16:09:52.0234 3924 WudfSvc ( UnsignedFile.Multi.Generic ) - warning 16:09:52.0234 3924 WudfSvc - detected UnsignedFile.Multi.Generic (1) 16:09:52.0296 3924 WZCSVC (c4f109c005f6725162d2d12ca751e4a7) C:\WINDOWS\System32\wzcsvc.dll 16:09:52.0312 3924 WZCSVC ( UnsignedFile.Multi.Generic ) - warning 16:09:52.0312 3924 WZCSVC - detected UnsignedFile.Multi.Generic (1) 16:09:52.0359 3924 xmlprov (0ada34871a2e1cd2caafed1237a47750) C:\WINDOWS\System32\xmlprov.dll 16:09:52.0375 3924 xmlprov ( UnsignedFile.Multi.Generic ) - warning 16:09:52.0375 3924 xmlprov - detected UnsignedFile.Multi.Generic (1) 16:09:52.0421 3924 yukonwxp (f44f7f71b3c84f8ee96c3bfd3915c25f) C:\WINDOWS\system32\DRIVERS\yk51x86.sys 16:09:52.0437 3924 yukonwxp ( UnsignedFile.Multi.Generic ) - warning 16:09:52.0437 3924 yukonwxp - detected UnsignedFile.Multi.Generic (1) 16:09:52.0468 3924 MBR (0x1B8) (c071872809c5cc9b673149d98a04024e) \Device\Harddisk0\DR0 16:09:52.0890 3924 \Device\Harddisk0\DR0 - ok 16:09:52.0890 3924 Boot (0x1200) (99a7a05844a4f2828a17f7bce039d44d) \Device\Harddisk0\DR0\Partition0 16:09:52.0890 3924 \Device\Harddisk0\DR0\Partition0 - ok 16:09:52.0890 3924 ============================================================ 16:09:52.0890 3924 Scan finished 16:09:52.0890 3924 ============================================================ 16:09:53.0015 4088 Detected object count: 260 16:09:53.0015 4088 Actual detected object count: 260 16:10:54.0468 4088 abp480n5 ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0468 4088 abp480n5 ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0468 4088 ac97intc ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0468 4088 ac97intc ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0484 4088 ACPI ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0484 4088 ACPI ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0484 4088 ACPIEC ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0484 4088 ACPIEC ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0484 4088 adpu160m ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0484 4088 adpu160m ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0500 4088 aec ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0500 4088 aec ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0500 4088 AFD ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0500 4088 AFD ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0500 4088 agp440 ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0500 4088 agp440 ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0500 4088 agpCPQ ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0500 4088 agpCPQ ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0500 4088 Aha154x ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0500 4088 Aha154x ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0500 4088 aic78u2 ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0500 4088 aic78u2 ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0500 4088 aic78xx ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0500 4088 aic78xx ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0515 4088 Akamai ( HiddenFile.Multi.Generic ) - skipped by user 16:10:54.0515 4088 Akamai ( HiddenFile.Multi.Generic ) - User select action: Skip 16:10:54.0515 4088 Alerter ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0515 4088 Alerter ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0531 4088 ALG ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0531 4088 ALG ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0531 4088 AliIde ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0531 4088 AliIde ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0546 4088 alim1541 ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0546 4088 alim1541 ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0546 4088 amdagp ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0546 4088 amdagp ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0562 4088 amsint ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0562 4088 amsint ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0562 4088 AppMgmt ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0562 4088 AppMgmt ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0562 4088 asc ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0562 4088 asc ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0578 4088 asc3350p ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0578 4088 asc3350p ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0578 4088 asc3550 ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0578 4088 asc3550 ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0593 4088 AsyncMac ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0593 4088 AsyncMac ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0593 4088 atapi ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0593 4088 atapi ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0609 4088 Ati HotKey Poller ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0609 4088 Ati HotKey Poller ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0609 4088 ati2mtag ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0609 4088 ati2mtag ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0625 4088 Atmarpc ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0625 4088 Atmarpc ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0625 4088 AudioSrv ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0625 4088 AudioSrv ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0640 4088 audstub ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0640 4088 audstub ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0640 4088 Beep ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0640 4088 Beep ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0640 4088 BITS ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0640 4088 BITS ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0656 4088 Browser ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0656 4088 Browser ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0656 4088 cbidf ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0656 4088 cbidf ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0671 4088 cbidf2k ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0671 4088 cbidf2k ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0671 4088 cd20xrnt ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0671 4088 cd20xrnt ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0687 4088 Cdaudio ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0687 4088 Cdaudio ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0687 4088 Cdfs ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0687 4088 Cdfs ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0687 4088 Cdrom ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0687 4088 Cdrom ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0703 4088 CiSvc ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0703 4088 CiSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0703 4088 ClipSrv ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0703 4088 ClipSrv ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0718 4088 CmdIde ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0718 4088 CmdIde ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0718 4088 Cpqarray ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0718 4088 Cpqarray ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0718 4088 CryptSvc ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0718 4088 CryptSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0734 4088 dac2w2k ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0734 4088 dac2w2k ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0734 4088 dac960nt ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0734 4088 dac960nt ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0750 4088 DcomLaunch ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0750 4088 DcomLaunch ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0750 4088 DgiVecp ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0750 4088 DgiVecp ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0750 4088 Dhcp ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0750 4088 Dhcp ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0765 4088 Disk ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0765 4088 Disk ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0765 4088 dmboot ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0765 4088 dmboot ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0781 4088 dmio ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0781 4088 dmio ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0781 4088 dmload ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0781 4088 dmload ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0781 4088 dmserver ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0781 4088 dmserver ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0796 4088 DMusic ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0796 4088 DMusic ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0796 4088 Dnscache ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0796 4088 Dnscache ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0812 4088 Dot3svc ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0812 4088 Dot3svc ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0812 4088 dpti2o ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0812 4088 dpti2o ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0812 4088 drmkaud ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0812 4088 drmkaud ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0828 4088 E100B ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0828 4088 E100B ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0828 4088 EapHost ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0828 4088 EapHost ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0828 4088 ERSvc ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0828 4088 ERSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0843 4088 Eventlog ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0843 4088 Eventlog ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0843 4088 EventSystem ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0843 4088 EventSystem ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0843 4088 Fastfat ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0843 4088 Fastfat ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0859 4088 FastUserSwitchingCompatibility ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0859 4088 FastUserSwitchingCompatibility ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0859 4088 Fdc ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0859 4088 Fdc ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0875 4088 Fips ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0875 4088 Fips ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0875 4088 Flpydisk ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0875 4088 Flpydisk ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0875 4088 FltMgr ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0875 4088 FltMgr ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0890 4088 Fs_Rec ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0890 4088 Fs_Rec ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0890 4088 Ftdisk ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0890 4088 Ftdisk ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0890 4088 G400 ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0890 4088 G400 ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0906 4088 Gpc ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0906 4088 Gpc ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0906 4088 HDAudBus ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0906 4088 HDAudBus ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0906 4088 helpsvc ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0906 4088 helpsvc ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0921 4088 HidUsb ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0921 4088 HidUsb ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0921 4088 hkmsvc ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0921 4088 hkmsvc ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0921 4088 hpn ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0921 4088 hpn ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0937 4088 HTTP ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0937 4088 HTTP ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0937 4088 HTTPFilter ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0937 4088 HTTPFilter ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0937 4088 i2omgmt ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0937 4088 i2omgmt ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0953 4088 i2omp ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0953 4088 i2omp ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0953 4088 i8042prt ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0953 4088 i8042prt ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0953 4088 iaStor ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0953 4088 iaStor ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0968 4088 Imapi ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0968 4088 Imapi ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0968 4088 ImapiService ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0968 4088 ImapiService ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0968 4088 ini910u ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0968 4088 ini910u ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0984 4088 IntcAzAudAddService ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0984 4088 IntcAzAudAddService ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0984 4088 IntelIde ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0984 4088 IntelIde ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:54.0984 4088 Ip6Fw ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:54.0984 4088 Ip6Fw ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0000 4088 IpFilterDriver ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0000 4088 IpFilterDriver ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0000 4088 IpInIp ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0000 4088 IpInIp ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0000 4088 IpNat ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0000 4088 IpNat ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0015 4088 IPSec ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0015 4088 IPSec ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0015 4088 IRENUM ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0015 4088 IRENUM ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0015 4088 isapnp ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0015 4088 isapnp ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0031 4088 Kbdclass ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0031 4088 Kbdclass ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0031 4088 kmixer ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0031 4088 kmixer ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0031 4088 KSecDD ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0031 4088 KSecDD ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0031 4088 lanmanserver ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0031 4088 lanmanserver ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0046 4088 lanmanworkstation ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0046 4088 lanmanworkstation ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0046 4088 LmHosts ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0046 4088 LmHosts ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0046 4088 Messenger ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0046 4088 Messenger ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0062 4088 mnmdd ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0062 4088 mnmdd ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0062 4088 mnmsrvc ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0062 4088 mnmsrvc ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0062 4088 Modem ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0062 4088 Modem ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0078 4088 Mouclass ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0078 4088 Mouclass ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0078 4088 mouhid ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0078 4088 mouhid ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0078 4088 MountMgr ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0078 4088 MountMgr ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0078 4088 mraid35x ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0078 4088 mraid35x ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0093 4088 MRxDAV ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0093 4088 MRxDAV ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0093 4088 MRxSmb ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0093 4088 MRxSmb ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0093 4088 MSDTC ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0093 4088 MSDTC ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0109 4088 Msfs ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0109 4088 Msfs ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0109 4088 MSKSSRV ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0109 4088 MSKSSRV ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0109 4088 MSPCLOCK ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0109 4088 MSPCLOCK ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0125 4088 MSPQM ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0125 4088 MSPQM ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0125 4088 mssmbios ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0125 4088 mssmbios ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0125 4088 Mup ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0125 4088 Mup ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0125 4088 napagent ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0125 4088 napagent ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0140 4088 NDIS ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0140 4088 NDIS ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0140 4088 NdisTapi ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0140 4088 NdisTapi ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0140 4088 Ndisuio ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0140 4088 Ndisuio ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0156 4088 NdisWan ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0156 4088 NdisWan ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0156 4088 NDProxy ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0156 4088 NDProxy ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0156 4088 NetBIOS ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0156 4088 NetBIOS ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0156 4088 NetBT ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0156 4088 NetBT ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0171 4088 NetDDE ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0171 4088 NetDDE ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0171 4088 NetDDEdsdm ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0171 4088 NetDDEdsdm ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0171 4088 Netlogon ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0171 4088 Netlogon ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0187 4088 Netman ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0187 4088 Netman ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0187 4088 Nla ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0187 4088 Nla ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0187 4088 Npfs ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0187 4088 Npfs ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0187 4088 Ntfs ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0187 4088 Ntfs ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0203 4088 NtLmSsp ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0203 4088 NtLmSsp ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0203 4088 NtmsSvc ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0203 4088 NtmsSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0203 4088 Null ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0203 4088 Null ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0203 4088 nv ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0203 4088 nv ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0218 4088 NwlnkFlt ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0218 4088 NwlnkFlt ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0218 4088 NwlnkFwd ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0218 4088 NwlnkFwd ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0218 4088 Parport ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0218 4088 Parport ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0218 4088 PartMgr ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0218 4088 PartMgr ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0234 4088 ParVdm ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0234 4088 ParVdm ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0234 4088 PCI ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0234 4088 PCI ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0234 4088 PCIIde ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0234 4088 PCIIde ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0234 4088 Pcmcia ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0234 4088 Pcmcia ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0250 4088 pelmouse ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0250 4088 pelmouse ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0250 4088 pelusblf ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0250 4088 pelusblf ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0250 4088 perc2 ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0250 4088 perc2 ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0250 4088 perc2hib ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0250 4088 perc2hib ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0265 4088 PlugPlay ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0265 4088 PlugPlay ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0265 4088 pmem ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0265 4088 pmem ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0265 4088 PolicyAgent ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0265 4088 PolicyAgent ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0281 4088 PptpMiniport ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0281 4088 PptpMiniport ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0281 4088 Processor ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0281 4088 Processor ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0281 4088 ProtectedStorage ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0281 4088 ProtectedStorage ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0281 4088 PSched ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0281 4088 PSched ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0296 4088 Ptilink ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0296 4088 Ptilink ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0296 4088 ql1080 ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0296 4088 ql1080 ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0296 4088 Ql10wnt ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0296 4088 Ql10wnt ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0296 4088 ql12160 ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0296 4088 ql12160 ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0312 4088 ql1240 ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0312 4088 ql1240 ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0312 4088 ql1280 ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0312 4088 ql1280 ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0312 4088 RasAcd ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0312 4088 RasAcd ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0312 4088 RasAuto ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0312 4088 RasAuto ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0328 4088 Rasl2tp ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0328 4088 Rasl2tp ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0328 4088 RasMan ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0328 4088 RasMan ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0328 4088 RasPppoe ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0328 4088 RasPppoe ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0328 4088 Raspti ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0328 4088 Raspti ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0343 4088 Rdbss ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0343 4088 Rdbss ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0343 4088 RDPCDD ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0343 4088 RDPCDD ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0343 4088 rdpdr ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0343 4088 rdpdr ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0343 4088 RDPWD ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0343 4088 RDPWD ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0359 4088 RDSessMgr ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0375 4088 RDSessMgr ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0375 4088 redbook ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0375 4088 redbook ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0390 4088 RemoteAccess ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0390 4088 RemoteAccess ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0390 4088 RemoteRegistry ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0390 4088 RemoteRegistry ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0390 4088 RpcLocator ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0390 4088 RpcLocator ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0390 4088 RpcSs ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0390 4088 RpcSs ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0390 4088 RSVP ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0390 4088 RSVP ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0406 4088 SamSs ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0406 4088 SamSs ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0406 4088 SCardSvr ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0406 4088 SCardSvr ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0406 4088 Schedule ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0406 4088 Schedule ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0406 4088 Secdrv ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0406 4088 Secdrv ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0421 4088 seclogon ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0421 4088 seclogon ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0421 4088 SENS ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0421 4088 SENS ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0421 4088 serenum ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0421 4088 serenum ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0421 4088 Serial ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0421 4088 Serial ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0437 4088 Sfloppy ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0437 4088 Sfloppy ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0437 4088 ShellHWDetection ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0437 4088 ShellHWDetection ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0437 4088 sisagp ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0437 4088 sisagp ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0437 4088 Sparrow ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0437 4088 Sparrow ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0453 4088 splitter ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0453 4088 splitter ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0453 4088 Spooler ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0453 4088 Spooler ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0453 4088 sr ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0453 4088 sr ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0453 4088 srservice ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0453 4088 srservice ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0468 4088 Srv ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0468 4088 Srv ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0468 4088 SSDPSRV ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0468 4088 SSDPSRV ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0468 4088 stisvc ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0468 4088 stisvc ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0468 4088 SUService ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0468 4088 SUService ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0468 4088 swenum ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0468 4088 swenum ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0484 4088 swmidi ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0484 4088 swmidi ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0484 4088 symc810 ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0484 4088 symc810 ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0484 4088 symc8xx ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0484 4088 symc8xx ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0484 4088 sym_hi ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0484 4088 sym_hi ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0500 4088 sym_u3 ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0500 4088 sym_u3 ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0500 4088 sysaudio ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0500 4088 sysaudio ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0500 4088 SysmonLog ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0500 4088 SysmonLog ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0500 4088 TapiSrv ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0500 4088 TapiSrv ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0515 4088 Tcpip ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0515 4088 Tcpip ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0515 4088 TDPIPE ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0515 4088 TDPIPE ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0515 4088 TDTCP ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0515 4088 TDTCP ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0515 4088 TermDD ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0515 4088 TermDD ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0515 4088 TermService ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0515 4088 TermService ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0531 4088 Themes ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0531 4088 Themes ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0531 4088 TlntSvr ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0531 4088 TlntSvr ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0531 4088 TosIde ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0531 4088 TosIde ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0531 4088 TPM ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0531 4088 TPM ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0546 4088 TrkWks ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0546 4088 TrkWks ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0546 4088 TVT Backup Protection Service ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0546 4088 TVT Backup Protection Service ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0546 4088 TVT Backup Service ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0546 4088 TVT Backup Service ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0546 4088 TVT Scheduler ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0546 4088 TVT Scheduler ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0546 4088 tvtfilter ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0546 4088 tvtfilter ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0562 4088 TVT_UpdateMonitor ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0562 4088 TVT_UpdateMonitor ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0562 4088 Udfs ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0562 4088 Udfs ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0562 4088 ultra ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0562 4088 ultra ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0562 4088 Update ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0562 4088 Update ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0578 4088 upnphost ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0578 4088 upnphost ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0578 4088 UPS ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0578 4088 UPS ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0578 4088 USBDLM ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0578 4088 USBDLM ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0578 4088 usbehci ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0578 4088 usbehci ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0578 4088 usbhub ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0578 4088 usbhub ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0593 4088 usbohci ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0593 4088 usbohci ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0593 4088 usbprint ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0593 4088 usbprint ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0593 4088 usbscan ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0593 4088 usbscan ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0593 4088 USBSTOR ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0593 4088 USBSTOR ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0609 4088 usbuhci ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0609 4088 usbuhci ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0609 4088 VgaSave ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0609 4088 VgaSave ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0609 4088 viaagp ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0609 4088 viaagp ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0609 4088 ViaIde ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0609 4088 ViaIde ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0609 4088 VolSnap ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0609 4088 VolSnap ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0625 4088 VSS ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0625 4088 VSS ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0625 4088 W32Time ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0625 4088 W32Time ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0625 4088 Wanarp ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0625 4088 Wanarp ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0625 4088 wdmaud ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0625 4088 wdmaud ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0625 4088 WebClient ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0625 4088 WebClient ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0640 4088 winmgmt ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0640 4088 winmgmt ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0640 4088 WmdmPmSN ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0640 4088 WmdmPmSN ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0640 4088 Wmi ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0640 4088 Wmi ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0640 4088 WmiApSrv ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0640 4088 WmiApSrv ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0656 4088 WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0656 4088 WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0656 4088 WS2IFSL ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0656 4088 WS2IFSL ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0656 4088 wuauserv ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0656 4088 wuauserv ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0656 4088 WudfPf ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0656 4088 WudfPf ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0656 4088 WudfRd ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0656 4088 WudfRd ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0671 4088 WudfSvc ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0671 4088 WudfSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0671 4088 WZCSVC ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0671 4088 WZCSVC ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0671 4088 xmlprov ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0671 4088 xmlprov ( UnsignedFile.Multi.Generic ) - User select action: Skip 16:10:55.0671 4088 yukonwxp ( UnsignedFile.Multi.Generic ) - skipped by user 16:10:55.0671 4088 yukonwxp ( UnsignedFile.Multi.Generic ) - User select action: Skip |
21.07.2012, 13:26 | #34 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | ich möchte meinen PC reinigen Dann bitte jetzt CF ausführen: ComboFix Ein Leitfaden und Tutorium zur Nutzung von ComboFix
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat! Solltest du nach der Ausführung von Combofix Probleme beim Starten von Anwendungen haben und Meldungen erhalten wie Zitat:
__________________ Logfiles bitte immer in CODE-Tags posten |
21.07.2012, 16:29 | #35 |
| ich möchte meinen PC reinigen Beim Versuch ComboFix zu starten erscheint ein Dialogfenster: "Dieser PC verfügt nicht über die Microsoft-Wiederherstellungskonsole.Ohne die kann ComboFix die Reparatur einiger schweren Infektionen nicht vornehmen.Klicke auf "Ja", um die Konsole herunterzuladen. NB! Dies braucht eine funktionierende Internetverbindung. Soll ich diese Konsole herunterladen? Danke! Ich wollte bis auf Ihre Antwort Avira und Windows-Firewall wieder aktivieren. Mit Avira hat es geklappt. Windows-Firewall bleibt inaktiv. Ich bin nach der Empfehlung im Sicherheitscenter (Windows) gegangen und in der Systemsteurung Symbol "Windows-Firewall" angeklickt. Erscheint ein Infofenster" Aufgrund eines unbekannten Problems können die Einstellungen nicht angezeigt werden". Das hat bestimmt mit ComboFix zu tun. Vor dem Start ComboFix habe ich Avira deaktiviert. Nach dem Start hat ComboFix befohlen "Avira deaktivieren" ? Ich habe auf Ja geklickt.Dann kam ein nächstes Fenster mit Warnung. Ich dachte, dass ich zurückkehren kann und noch mal auf Avira einen Blick werfe. Die Situation war nicht eindeutig und habe ich den PC ausgeschaltet (also, vor dem Scannen). |
23.07.2012, 13:45 | #36 |
/// Winkelfunktion /// TB-Süch-Tiger™ | ich möchte meinen PC reinigen Ja diese Wiederherstellungskonsole muss installiert werden! Und natürlich brauchst du dafür eine Internetverbindung! Um die Windows-Firewall kümmern wir uns später!
__________________ --> ich möchte meinen PC reinigen |
23.07.2012, 19:50 | #37 |
| ich möchte meinen PC reinigen Hier ist ComboFix-Log: Code:
ATTFilter ComboFix 12-07-24.01 - User 23.07.2012 20:40:58.1.2 - x86 Microsoft Windows XP Professional 5.1.2600.3.1252.49.1031.18.1791.1067 [GMT 2:00] ausgeführt von:: c:\dokumente und einstellungen\User\Desktop\ComboFix.exe AV: Avira Desktop *Disabled/Updated* {AD166499-45F9-482A-A743-FDD3350758C7} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\dokumente und einstellungen\All Users\Anwendungsdaten\cf c:\dokumente und einstellungen\User\4.0 c:\dokumente und einstellungen\User\Anwendungsdaten\AdobeDLM.log c:\windows\IsUn0407.exe c:\windows\system32\Thumbs.db . . ((((((((((((((((((((((( Dateien erstellt von 2012-06-23 bis 2012-07-23 )))))))))))))))))))))))))))))) . . 2012-07-19 17:27 . 2012-07-19 17:27 -------- d-----w- C:\_OTL 2012-07-04 17:01 . 2012-07-04 17:01 770384 ----a-w- c:\programme\Mozilla Firefox\msvcr100.dll 2012-07-04 17:01 . 2012-07-04 17:01 421200 ----a-w- c:\programme\Mozilla Firefox\msvcp100.dll 2012-06-30 15:36 . 2012-06-30 15:36 73728 ----a-w- c:\windows\system32\javacpl.cpl 2012-06-30 15:36 . 2012-06-30 15:36 476936 ----a-w- c:\windows\system32\npdeployJava1.dll 2012-06-30 14:52 . 2012-07-13 15:05 70344 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2012-06-30 14:52 . 2012-07-13 15:05 426184 ----a-w- c:\windows\system32\FlashPlayerApp.exe . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2012-06-30 15:36 . 2010-05-15 09:20 472840 ----a-w- c:\windows\system32\deployJava1.dll 2012-06-13 13:55 . 2006-01-27 01:00 1866240 ------w- c:\windows\system32\win32k.sys 2012-06-05 15:49 . 2008-04-14 02:22 1372672 ------w- c:\windows\system32\msxml6.dll 2012-06-05 15:49 . 2006-01-27 01:01 1172480 ----a-w- c:\windows\system32\msxml3.dll 2012-06-04 04:32 . 2006-01-27 01:01 152576 ----a-w- c:\windows\system32\schannel.dll 2012-06-02 13:19 . 2009-01-12 14:20 18456 ----a-w- c:\windows\system32\wuaueng.dll.mui 2012-06-02 13:19 . 2009-01-12 14:20 15896 ----a-w- c:\windows\system32\wuapi.dll.mui 2012-06-02 13:19 . 2006-01-27 02:16 329240 ----a-w- c:\windows\system32\wucltui.dll 2012-06-02 13:19 . 2006-01-27 02:16 219160 ----a-w- c:\windows\system32\wuaucpl.cpl 2012-06-02 13:19 . 2006-01-27 02:16 210968 ----a-w- c:\windows\system32\wuweb.dll 2012-06-02 13:19 . 2009-01-12 14:20 45080 ----a-w- c:\windows\system32\wups2.dll 2012-06-02 13:19 . 2009-01-12 14:20 15896 ----a-w- c:\windows\system32\wuaucpl.cpl.mui 2012-06-02 13:19 . 2006-01-27 02:16 53784 ----a-w- c:\windows\system32\wuauclt.exe 2012-06-02 13:19 . 2006-01-27 02:16 35864 ----a-w- c:\windows\system32\wups.dll 2012-06-02 13:19 . 2006-01-27 01:00 97304 ----a-w- c:\windows\system32\cdm.dll 2012-06-02 13:19 . 2009-01-12 14:20 23576 ----a-w- c:\windows\system32\wucltui.dll.mui 2012-06-02 13:19 . 2006-01-27 02:16 577048 ----a-w- c:\windows\system32\wuapi.dll 2012-06-02 13:19 . 2006-01-27 02:16 1933848 ----a-w- c:\windows\system32\wuaueng.dll 2012-05-31 13:22 . 2006-01-27 01:00 604160 ----a-w- c:\windows\system32\crypt32.dll 2012-05-15 15:37 . 2006-01-27 01:01 832512 ----a-w- c:\windows\system32\wininet.dll 2012-05-11 15:14 . 2011-10-24 17:41 83392 ----a-w- c:\windows\system32\drivers\avgntflt.sys 2012-05-11 15:14 . 2011-10-24 17:41 137928 ----a-w- c:\windows\system32\drivers\avipbb.sys 2012-05-05 03:14 . 2006-01-27 01:00 2150912 ------w- c:\windows\system32\ntoskrnl.exe 2012-05-05 03:14 . 2004-08-04 00:50 2029056 ------w- c:\windows\system32\ntkrnlpa.exe 2012-05-02 13:46 . 2006-01-27 01:00 139656 ------w- c:\windows\system32\drivers\rdpwd.sys 2012-07-20 13:56 . 2011-07-15 20:48 136672 ----a-w- c:\programme\mozilla firefox\components\browsercomps.dll . . ------- Sigcheck ------- Note: Unsigned files aren't necessarily malware. . [-] 2008-04-13 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\atapi.sys [-] 2008-04-13 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\drivers\atapi.sys [-] 2004-08-04 . CDFE4411A69C224BD1D11B2DA92DAC51 . 95360 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\atapi.sys . [-] 2008-04-13 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\asyncmac.sys [-] 2008-04-13 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\drivers\asyncmac.sys [-] 2004-08-04 . 02000ABF34AF4C218C35D257024807D6 . 14336 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\asyncmac.sys . [-] 2004-08-04 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\drivers\beep.sys . [-] 2008-04-14 . 1704D8C4C8807B889E43C649B478A452 . 25216 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\kbdclass.sys [-] 2008-04-14 . 1704D8C4C8807B889E43C649B478A452 . 25216 . . [5.1.2600.5512] . . c:\windows\system32\drivers\kbdclass.sys [-] 2004-08-04 . B128FC0A5CD83F669D5DE4B58F77C7D6 . 25216 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\kbdclass.sys . [-] 2008-04-13 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ndis.sys [-] 2008-04-13 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ndis.sys [-] 2004-08-04 . 558635D3AF1C7546D26067D5D9B6959E . 182912 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ndis.sys . [-] 2008-04-13 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ntfs.sys [-] 2008-04-13 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ntfs.sys [-] 2004-08-04 . B78BE402C3F63DD55521F73876951CDD . 574592 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ntfs.sys . [-] 2004-08-04 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\drivers\null.sys . [-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB2509553\SP3QFE\tcpip.sys [-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys [-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys [-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys [-] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys [-] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\tcpip.sys [-] 2006-01-13 . 5562CC0A47B2AEF06D3417B733F3C195 . 360448 . . [5.1.2600.2827] . . c:\windows\$NtServicePackUninstall$\tcpip.sys . [-] 2008-04-14 . B42057F06BBB98B31876C0B3F2B54E33 . 77824 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\browser.dll [-] 2008-04-14 . B42057F06BBB98B31876C0B3F2B54E33 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\browser.dll [-] 2004-08-04 . D8653DCD80CF2EBB333FC4FCC43A7DEF . 77312 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\browser.dll . [-] 2008-04-14 . AFB8261B56CBA0D86AEB6DF682AF9785 . 13312 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\lsass.exe [-] 2008-04-14 . AFB8261B56CBA0D86AEB6DF682AF9785 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\lsass.exe [-] 2004-08-04 . 183805EB05BCA5A1E4AAAED4D2BE3690 . 13312 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\lsass.exe . [-] 2008-04-14 . E6D88F1F6745BF00B57E7855A2AB696C . 198144 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\netman.dll [-] 2008-04-14 . E6D88F1F6745BF00B57E7855A2AB696C . 198144 . . [5.1.2600.5512] . . c:\windows\system32\netman.dll [-] 2004-08-04 . CDF4DA6B518105343FE9E8AFBBF8FBF4 . 198144 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\netman.dll . [-] 2008-04-14 02:22 . D0DE8A2EC95184E5193BB4B3112E29DF . 846848 . . [2001.12.4414.700] . . c:\windows\ServicePackFiles\i386\comres.dll [-] 2008-04-14 02:22 . D0DE8A2EC95184E5193BB4B3112E29DF . 846848 . . [2001.12.4414.700] . . c:\windows\system32\comres.dll [-] 2004-08-04 12:00 . 4B9D9E2708019763C5A72DA776DB1158 . 846848 . . [2001.12.4414.258] . . c:\windows\$NtServicePackUninstall$\comres.dll . [-] 2008-04-14 . D6F603772A789BB3228F310D650B8BD1 . 409088 . . [6.7.2600.5512] . . c:\windows\ServicePackFiles\i386\qmgr.dll [-] 2008-04-14 . D6F603772A789BB3228F310D650B8BD1 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\qmgr.dll [-] 2008-04-14 . D6F603772A789BB3228F310D650B8BD1 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\bits\qmgr.dll [-] 2004-08-04 . 3A5E54A9AB96EF2D273B58136FB58EFE . 382464 . . [6.6.2600.2180] . . c:\windows\$NtServicePackUninstall$\qmgr.dll . [-] 2009-02-09 . D3D765E8455A961AE567B408F767D4F9 . 401408 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\rpcss.dll [-] 2009-02-09 . 3127AFBF2C1ED0AB14A1BBB7AAECB85B . 401408 . . [5.1.2600.5755] . . c:\windows\system32\rpcss.dll [-] 2009-02-09 . 3127AFBF2C1ED0AB14A1BBB7AAECB85B . 401408 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\rpcss.dll [-] 2008-04-14 . E970C2296916BF4A2F958680016FE312 . 399360 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\rpcss.dll [-] 2008-04-14 . E970C2296916BF4A2F958680016FE312 . 399360 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\rpcss.dll [-] 2005-07-26 . DBA9F9C00A7A2B45EB8E451C2B6D10E9 . 398336 . . [5.1.2600.2726] . . c:\windows\$hf_mig$\KB902400\SP2QFE\rpcss.dll [-] 2005-07-26 . 891E3E4537C6DFCAE475073FC49CE9CB . 397824 . . [5.1.2600.2726] . . c:\windows\$NtServicePackUninstall$\rpcss.dll . [-] 2009-02-09 . A3EDBE9053889FB24AB22492472B39DC . 111104 . . [5.1.2600.5755] . . c:\windows\system32\services.exe [-] 2009-02-09 . A3EDBE9053889FB24AB22492472B39DC . 111104 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\services.exe [-] 2009-02-09 . F0A7D59AF279326528715B206669B86C . 111104 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\services.exe [-] 2008-04-14 . 4BB6A83640F1D1792AD21CE767B621C6 . 109056 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\services.exe [-] 2008-04-14 . 4BB6A83640F1D1792AD21CE767B621C6 . 109056 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\services.exe [-] 2004-08-04 . EDB6B81761BD60F32F740BBC40AFB676 . 108544 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\services.exe . [-] 2010-08-17 . 258DD5D4283FD9F9A7166BE9AE45CE73 . 58880 . . [5.1.2600.6024] . . c:\windows\$hf_mig$\KB2347290\SP3QFE\spoolsv.exe [-] 2010-08-17 . 60784F891563FB1B767F70117FC2428F . 58880 . . [5.1.2600.6024] . . c:\windows\system32\spoolsv.exe [-] 2010-08-17 . 60784F891563FB1B767F70117FC2428F . 58880 . . [5.1.2600.6024] . . c:\windows\system32\dllcache\spoolsv.exe [-] 2008-04-14 . 39356A9CDB6753A6D13A4072A9F5A4BB . 57856 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB2347290$\spoolsv.exe [-] 2008-04-14 . 39356A9CDB6753A6D13A4072A9F5A4BB . 57856 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\spoolsv.exe [-] 2005-06-11 . AD3D9D191AEA7B5445FE1D82FFBB4788 . 57856 . . [5.1.2600.2696] . . c:\windows\$hf_mig$\KB896423\SP2QFE\spoolsv.exe [-] 2005-06-10 . DA81EC57ACD4CDC3D4C51CF3D409AF9F . 57856 . . [5.1.2600.2696] . . c:\windows\$NtServicePackUninstall$\spoolsv.exe . [-] 2008-04-14 . F09A527B422E25C478E38CAA0E44417A . 513024 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\winlogon.exe [-] 2008-04-14 . F09A527B422E25C478E38CAA0E44417A . 513024 . . [5.1.2600.5512] . . c:\windows\system32\winlogon.exe [-] 2005-04-01 . B0B3908F5432F9DBBCD83CA4C33F0D82 . 507904 . . [5.1.2600.2645] . . c:\windows\$NtServicePackUninstall$\winlogon.exe . [-] 2008-04-13 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ipsec.sys [-] 2008-04-13 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ipsec.sys [-] 2004-08-04 . 64537AA5C003A6AFEEE1DF819062D0D1 . 74752 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ipsec.sys . [-] 2010-08-23 . 1438703F3D9FFE111DA3869E4F3EEE73 . 617472 . . [5.82] . . c:\windows\system32\comctl32.dll [-] 2010-08-23 . 1438703F3D9FFE111DA3869E4F3EEE73 . 617472 . . [5.82] . . c:\windows\system32\dllcache\comctl32.dll [-] 2010-08-23 . 2B6ADE29F8D00EEFA5FA2250CBE094AD . 1054208 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll [-] 2008-04-14 . AD28671D1B83A386B070DC451A113C13 . 617472 . . [5.82] . . c:\windows\$NtUninstallKB2296011$\comctl32.dll [-] 2008-04-14 . AD28671D1B83A386B070DC451A113C13 . 617472 . . [5.82] . . c:\windows\ServicePackFiles\i386\comctl32.dll [-] 2008-04-14 . 3C93CE6C6985C55952B7BE6673E9FD15 . 1054208 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll [-] 2006-08-25 . EE82D1393169AC6BDF6016F4EA8D2B79 . 617472 . . [5.82] . . c:\windows\$NtServicePackUninstall$\comctl32.dll [-] 2006-08-25 . F64451D07B9368B46AB31172D56D1804 . 1054208 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll [-] 2004-08-04 . AEF3D788DBF40C7C4D204EA45EB0C505 . 921088 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.0.0_x-ww_1382d70a\comctl32.dll [-] 2004-08-04 . 9D0F57B9C65BF8A07DB655A9ED6EB2EE . 1050624 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll . [-] 2008-04-14 . 611F824E5C703A5A899F84C5F1699E4D . 62464 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\cryptsvc.dll [-] 2008-04-14 . 611F824E5C703A5A899F84C5F1699E4D . 62464 . . [5.1.2600.5512] . . c:\windows\system32\cryptsvc.dll [-] 2004-08-04 . 1A5F9DB98DF7955B4C7CBDBF2C638238 . 60416 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\cryptsvc.dll . [-] 2008-07-07 20:26 . AF4F6B5739D18CA7972AB53E091CBC74 . 253952 . . [2001.12.4414.706] . . c:\windows\system32\es.dll [-] 2008-07-07 20:26 . AF4F6B5739D18CA7972AB53E091CBC74 . 253952 . . [2001.12.4414.706] . . c:\windows\system32\dllcache\es.dll [-] 2008-07-07 20:23 . ADA7241C16F3F42C7F210539FAD5F3AA . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll [-] 2008-04-14 02:22 . 0F3EDAEE1EF97CF3DB2BE23A7289B78C . 246272 . . [2001.12.4414.701] . . c:\windows\$NtUninstallKB950974$\es.dll [-] 2008-04-14 02:22 . 0F3EDAEE1EF97CF3DB2BE23A7289B78C . 246272 . . [2001.12.4414.701] . . c:\windows\ServicePackFiles\i386\es.dll [-] 2005-07-26 04:29 . 0D0F85237E32538F58278D673032676A . 243200 . . [2001.12.4414.308] . . c:\windows\$hf_mig$\KB902400\SP2QFE\es.dll [-] 2005-07-26 03:39 . BEBC63622BDC30053A3145EBD90AF450 . 243200 . . [2001.12.4414.308] . . c:\windows\$NtServicePackUninstall$\es.dll . [-] 2008-04-14 . F9954695D246B33A5BF105029A4C6AB6 . 110080 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\imm32.dll [-] 2008-04-14 . F9954695D246B33A5BF105029A4C6AB6 . 110080 . . [5.1.2600.5512] . . c:\windows\system32\imm32.dll [-] 2004-08-04 . 94101D13A1818A9D08337EEC12ED277A . 110080 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\imm32.dll . [-] 2009-03-21 . B055C64AABC1A3E3DE57EC8025CAD283 . 1063424 . . [5.1.2600.5781] . . c:\windows\system32\kernel32.dll [-] 2009-03-21 . B055C64AABC1A3E3DE57EC8025CAD283 . 1063424 . . [5.1.2600.5781] . . c:\windows\system32\dllcache\kernel32.dll [-] 2009-03-21 . 3EB703BFC2ED26A3D8ACB8626AB2C006 . 1065472 . . [5.1.2600.5781] . . c:\windows\$hf_mig$\KB959426\SP3QFE\kernel32.dll [-] 2008-04-14 . 4C897C69754D88F496339B1A666907C1 . 1063424 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB959426$\kernel32.dll [-] 2008-04-14 . 4C897C69754D88F496339B1A666907C1 . 1063424 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\kernel32.dll [-] 2006-07-05 . 0BEFE0BF274818EC0785B7B842967313 . 1058816 . . [5.1.2600.2945] . . c:\windows\$hf_mig$\KB917422\SP2QFE\kernel32.dll [-] 2006-07-05 . E42795D2E7725D378EE2A4BFA6FE9DB3 . 1057792 . . [5.1.2600.2945] . . c:\windows\$NtServicePackUninstall$\kernel32.dll . [-] 2008-04-14 . 5543A9D4A1D0F9F84092482A9373A024 . 19968 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\linkinfo.dll [-] 2008-04-14 . 5543A9D4A1D0F9F84092482A9373A024 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\linkinfo.dll [-] 2005-09-01 . F2AFE60F01040B23207D8EB7DC26EC96 . 19968 . . [5.1.2600.2751] . . c:\windows\$NtServicePackUninstall$\linkinfo.dll . [-] 2008-04-14 . F38F3C47BBFFD748C1359AB171C3A630 . 22016 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\lpk.dll [-] 2008-04-14 . F38F3C47BBFFD748C1359AB171C3A630 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\lpk.dll [-] 2004-08-04 . B4AD65C79F85C61D32C015B11E03CAAD . 22016 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\lpk.dll . [-] 2012-04-23 . 65674C3F0F90BDD6636A39EDCCF5D5B6 . 3618816 . . [7.00.6000.17110] . . c:\windows\system32\mshtml.dll [-] 2012-04-23 . 65674C3F0F90BDD6636A39EDCCF5D5B6 . 3618816 . . [7.00.6000.17110] . . c:\windows\system32\dllcache\mshtml.dll [-] 2012-04-23 . A56B9CF11527708705BBED3A835FE2CF . 3620864 . . [7.00.6000.21312] . . c:\windows\$hf_mig$\KB2699988-IE7\SP3QFE\mshtml.dll [-] 2012-03-01 . D0FB9423F94B7C932A3E353863972FD5 . 3616768 . . [7.00.6000.17109] . . c:\windows\ie7updates\KB2699988-IE7\mshtml.dll [-] 2012-03-01 . 3E1D28D159CED148726D2E7B6543DC5D . 3619328 . . [7.00.6000.21311] . . c:\windows\$hf_mig$\KB2675157-IE7\SP3QFE\mshtml.dll [-] 2011-12-19 . 5F6D9147BB32636511E1D691A4BA64D9 . 3616768 . . [7.00.6000.17108] . . c:\windows\ie7updates\KB2675157-IE7\mshtml.dll [-] 2011-12-19 . FF2F416EC804939371B2DF401C67A5FB . 3618816 . . [7.00.6000.21310] . . c:\windows\$hf_mig$\KB2647516-IE7\SP3QFE\mshtml.dll [-] 2011-11-04 . A9748CCF8B735D3834F57F0B48A89078 . 3616256 . . [7.00.6000.17107] . . c:\windows\ie7updates\KB2647516-IE7\mshtml.dll [-] 2011-11-04 . 429AEF742D0A4CD9C2F2C67A6AC2FB01 . 3618304 . . [7.00.6000.21309] . . c:\windows\$hf_mig$\KB2618444-IE7\SP3QFE\mshtml.dll [-] 2011-09-05 . 949BEBED3B69B4577D3B1FDA24D7FB3E . 3615744 . . [7.00.6000.17104] . . c:\windows\ie7updates\KB2618444-IE7\mshtml.dll [-] 2011-08-18 . 55C1F4E285A9A3776C060D82EBFCDEB0 . 3617792 . . [7.00.6000.21306] . . c:\windows\$hf_mig$\KB2586448-IE7\SP3QFE\mshtml.dll [-] 2011-07-22 . 4D5EA9CACBD06FA00B0EE0173F59156F . 3613696 . . [7.00.6000.17102] . . c:\windows\ie7updates\KB2586448-IE7\mshtml.dll [-] 2011-07-22 . 11CD2E4815B15EEDE64CFDCDD494E8C0 . 3615744 . . [7.00.6000.21305] . . c:\windows\$hf_mig$\KB2559049-IE7\SP3QFE\mshtml.dll [-] 2011-04-25 . E2F68B1B643A32B6D0C07386ECF8FC26 . 3608576 . . [7.00.6000.17098] . . c:\windows\ie7updates\KB2559049-IE7\mshtml.dll [-] 2011-04-25 . F8F9909B85B18C8BD480E3A433C3ADA7 . 3610624 . . [7.00.6000.21300] . . c:\windows\$hf_mig$\KB2530548-IE7\SP3QFE\mshtml.dll [-] 2011-02-17 . 7D09283AA1B4AAA7DEB8BB2504CBFB41 . 3609600 . . [7.00.6000.21299] . . c:\windows\$hf_mig$\KB2497640-IE7\SP3QFE\mshtml.dll [-] 2011-02-17 . F151C3361111788527C625BF68541FF5 . 3607040 . . [7.00.6000.17097] . . c:\windows\ie7updates\KB2530548-IE7\mshtml.dll [-] 2010-12-20 . 6BF883B318B70E8013ED5D2976DF5246 . 3609088 . . [7.00.6000.21297] . . c:\windows\$hf_mig$\KB2482017-IE7\SP3QFE\mshtml.dll [-] 2010-12-20 . 104C6D442D68D15633E7866BA8FD6AD8 . 3606528 . . [7.00.6000.17095] . . c:\windows\ie7updates\KB2497640-IE7\mshtml.dll [-] 2010-11-06 . DE049C4E531448E846E7C012763D530A . 3604480 . . [7.00.6000.17093] . . c:\windows\ie7updates\KB2482017-IE7\mshtml.dll [-] 2010-11-06 . 76BFB01D6DE3AB3C2CA13470DEAB4B93 . 3607040 . . [7.00.6000.21295] . . c:\windows\$hf_mig$\KB2416400-IE7\SP3QFE\mshtml.dll [-] 2010-09-09 . BCEE4AF10B40BF085203AA164D8D8193 . 3601920 . . [7.00.6000.17092] . . c:\windows\ie7updates\KB2416400-IE7\mshtml.dll [-] 2010-09-09 . A5261D5EFC95731992DC0640FCC49B6C . 3605504 . . [7.00.6000.21294] . . c:\windows\$hf_mig$\KB2360131-IE7\SP3QFE\mshtml.dll [-] 2010-06-24 . 118F0D56684A6114713E5B6D6C842133 . 3603968 . . [7.00.6000.21283] . . c:\windows\$hf_mig$\KB2183461-IE7\SP3QFE\mshtml.dll [-] 2010-06-24 . E1ED02EE84A8E8B31A344FCB2D626791 . 3600896 . . [7.00.6000.17080] . . c:\windows\ie7updates\KB2360131-IE7\mshtml.dll [-] 2010-05-04 . 56B556FFAC4A62C51D0DAF10F6B2B554 . 3600384 . . [7.00.6000.17063] . . c:\windows\ie7updates\KB2183461-IE7\mshtml.dll [-] 2010-05-04 . C302A90ED9202465BA99EB4A6534FF54 . 3603456 . . [7.00.6000.21264] . . c:\windows\$hf_mig$\KB982381-IE7\SP3QFE\mshtml.dll [-] 2010-03-11 . 49980F3384CFAF1E349A8CABE1C52D1B . 3599872 . . [7.00.6000.17023] . . c:\windows\ie7updates\KB982381-IE7\mshtml.dll [-] 2010-03-11 . 933BE33EA6098E87FAF092741166A4E7 . 3602944 . . [7.00.6000.21228] . . c:\windows\$hf_mig$\KB980182-IE7\SP3QFE\mshtml.dll [-] 2010-01-05 . EFA849C79A3EBBC028E5ABE1BFC0FA15 . 3599360 . . [7.00.6000.16981] . . c:\windows\ie7updates\KB980182-IE7\mshtml.dll [-] 2010-01-05 . FB09490E1D218772550A8A5823826677 . 3602944 . . [7.00.6000.21183] . . c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\mshtml.dll [-] 2009-10-29 . ECE8C5082CD8370BDAC3F6B7004A7A1A . 3598336 . . [7.00.6000.16945] . . c:\windows\ie7updates\KB978207-IE7\mshtml.dll [-] 2009-10-29 . 41080B245B3931133878A2B20ED48C1B . 3602432 . . [7.00.6000.21148] . . c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\mshtml.dll [-] 2009-10-21 . AFBD8339073CD05B2BBEB2089E2C9233 . 3598336 . . [7.00.6000.16939] . . c:\windows\ie7updates\KB976325-IE7\mshtml.dll [-] 2009-10-21 . 45F5209869362161862057955A323208 . 3602432 . . [7.00.6000.21142] . . c:\windows\$hf_mig$\KB976749-IE7\SP3QFE\mshtml.dll [-] 2009-08-29 . 66746BD88F71770815E12E6C6CAEF3EA . 3598336 . . [7.00.6000.16915] . . c:\windows\ie7updates\KB976749-IE7\mshtml.dll [-] 2009-08-29 . 3701C2F766865BEF9F5987E8AB95A6DA . 3600384 . . [7.00.6000.21115] . . c:\windows\$hf_mig$\KB974455-IE7\SP3QFE\mshtml.dll [-] 2009-07-19 . 7DB04886F1455D9057F54A51E5A7BB32 . 3597824 . . [7.00.6000.16890] . . c:\windows\ie7updates\KB974455-IE7\mshtml.dll [-] 2009-07-19 . B553564076B41EBEA822B968D7C71C47 . 3600384 . . [7.00.6000.21089] . . c:\windows\$hf_mig$\KB972260-IE7\SP3QFE\mshtml.dll [-] 2009-04-29 . A0236D46EFCEF98D6703DD5A76AA1CB2 . 3596288 . . [7.00.6000.16850] . . c:\windows\ie7updates\KB972260-IE7\mshtml.dll [-] 2009-04-29 . 6770B436928E450F5B4866BDC59549CC . 3598336 . . [7.00.6000.21045] . . c:\windows\$hf_mig$\KB969897-IE7\SP3QFE\mshtml.dll [-] 2009-02-21 . 77605BDA8141E1F7D3B1321E31CA482B . 3596800 . . [7.00.6000.21015] . . c:\windows\$hf_mig$\KB963027-IE7\SP3QFE\mshtml.dll [-] 2009-02-20 . EE15CE7504EB54258F361AD7595E9077 . 3595264 . . [7.00.6000.16825] . . c:\windows\ie7updates\KB969897-IE7\mshtml.dll [-] 2009-01-16 . A76EEDA793C9BFC0C1B8C5F3439D8A39 . 3594752 . . [7.00.6000.16809] . . c:\windows\ie7updates\KB963027-IE7\mshtml.dll [-] 2009-01-16 . B44AC6A49DA4A5BAA7AFEA0AA6E5B967 . 3596288 . . [7.00.6000.20996] . . c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\mshtml.dll [-] 2008-12-13 . 6C8D1CF85533A3792DCDDAAE42DBB161 . 3593216 . . [7.00.6000.16788] . . c:\windows\ie7updates\KB961260-IE7\mshtml.dll [-] 2008-12-13 . E0825D1BC0F0C2B5CA434F7E9CCF10AE . 3594752 . . [7.00.6000.20973] . . c:\windows\$hf_mig$\KB960714-IE7\SP2QFE\mshtml.dll [-] 2008-10-16 . C998B6D5E64E11CE8EA8BB22A51CA570 . 3595264 . . [7.00.6000.20935] . . c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\mshtml.dll [-] 2008-04-14 . 72AE55A9FFBC60650339CB12E35C7DD5 . 3066880 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\mshtml.dll [-] 2006-11-07 . CBF04597F9CF7739E572276A2698FDD3 . 3577856 . . [7.00.5730.11] . . c:\windows\ie7updates\KB960714-IE7\mshtml.dll [-] 2006-02-01 . E8526A66802AC6213762D97BD0FA334C . 3035648 . . [6.00.2900.2838] . . c:\windows\ie7\mshtml.dll [-] 2005-11-24 . 8ABDBAE6032562F17DCF962847ABB811 . 3016192 . . [6.00.2900.2802] . . c:\windows\$hf_mig$\KB905915\SP2QFE\mshtml.dll [-] 2005-11-23 . 03F9910F7958A36088B9D8CD262903AE . 3013632 . . [6.00.2900.2802] . . c:\windows\$NtUninstallKB905915$\mshtml.dll . [-] 2008-04-14 . C6A6E53A0C34EC87883137A6CB87AE5E . 343040 . . [7.0.2600.5512] . . c:\windows\ServicePackFiles\i386\msvcrt.dll [-] 2008-04-14 . C6A6E53A0C34EC87883137A6CB87AE5E . 343040 . . [7.0.2600.5512] . . c:\windows\system32\msvcrt.dll [-] 2008-04-14 . C536AAD8A71608FE33CD956214EDD366 . 343040 . . [7.0.2600.5512] . . c:\windows\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.5512_x-ww_3fd60d63\msvcrt.dll [-] 2004-08-04 . B30BAA48E5063E71C76280E34E7E4802 . 343040 . . [7.0.2600.2180] . . c:\windows\$NtServicePackUninstall$\msvcrt.dll [-] 2004-08-04 . 4200BE3808F6406DBE45A7B88DAE5035 . 322560 . . [7.0.2600.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.0.0_x-ww_2726e76a\msvcrt.dll [-] 2004-08-04 . 365B3C43810E1CF41B3BE1E7180F583B . 343040 . . [7.0.2600.2180] . . c:\windows\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.2180_x-ww_b2505ed9\msvcrt.dll . [-] 2008-06-20 . ACD8BD448A74F344D46FCAF21BAB92AF . 247296 . . [5.1.2600.5625] . . c:\windows\$NtUninstallKB2509553$\mswsock.dll [-] 2008-06-20 . 4AA50627B01C0E9C6B4C6BD3AF648F12 . 247296 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB2509553\SP3QFE\mswsock.dll [-] 2008-06-20 . 4AA50627B01C0E9C6B4C6BD3AF648F12 . 247296 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll [-] 2008-06-20 . F1B67B6B0751AE0E6E964B02821206A3 . 247296 . . [5.1.2600.5625] . . c:\windows\system32\mswsock.dll [-] 2008-06-20 . F1B67B6B0751AE0E6E964B02821206A3 . 247296 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\mswsock.dll [-] 2008-04-14 . F12B9D9A069331877D006CC81B4735F9 . 247296 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\mswsock.dll [-] 2008-04-14 . F12B9D9A069331877D006CC81B4735F9 . 247296 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\mswsock.dll [-] 2004-08-04 . B36E08F680BAE4DFC5C24D00A2DFC9E7 . 247296 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\mswsock.dll . [-] 2008-04-14 . 0098D35F91DEAB9C127360A877F2CF84 . 407040 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\netlogon.dll [-] 2008-04-14 . 0098D35F91DEAB9C127360A877F2CF84 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\netlogon.dll [-] 2004-08-04 . D27395EDCD3416AFD125A9370DCB585C . 407040 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\netlogon.dll . [-] 2008-04-14 . C8C0BDABC966B6C24D337DF0A0A399E1 . 17408 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\powrprof.dll [-] 2008-04-14 . C8C0BDABC966B6C24D337DF0A0A399E1 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\powrprof.dll [-] 2004-08-04 . 5604574D490B798BD9A946B021A766AD . 17408 . . [6.00.2900.2180] . . c:\windows\$NtServicePackUninstall$\powrprof.dll . [-] 2008-04-14 . 5132443DF6FC3771A17AB4AE55DCBC28 . 187904 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\scecli.dll [-] 2008-04-14 . 5132443DF6FC3771A17AB4AE55DCBC28 . 187904 . . [5.1.2600.5512] . . c:\windows\system32\scecli.dll [-] 2004-08-04 . 64DC26B3CF7BCCAD431CE360A4C625D5 . 186880 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\scecli.dll . [-] 2008-04-14 . 44161A59DC33AC2EA9C95438ADFFFB7F . 5120 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\sfc.dll [-] 2008-04-14 . 44161A59DC33AC2EA9C95438ADFFFB7F . 5120 . . [5.1.2600.5512] . . c:\windows\system32\sfc.dll [-] 2004-08-04 . F62934BC94299083EBFC8810242D8640 . 5120 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\sfc.dll . [-] 2008-04-14 . 4FBC75B74479C7A6F829E0CA19DF3366 . 14336 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\svchost.exe [-] 2008-04-14 . 4FBC75B74479C7A6F829E0CA19DF3366 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\svchost.exe [-] 2004-08-04 . 65A819B121EB6FDAB4400EA42BDFFE64 . 14336 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\svchost.exe . [-] 2008-04-14 . 05903CAC4B98908D55EA5774775B382E . 249856 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\tapisrv.dll [-] 2008-04-14 . 05903CAC4B98908D55EA5774775B382E . 249856 . . [5.1.2600.5512] . . c:\windows\system32\tapisrv.dll [-] 2005-07-08 . F07061E18613F336A3120229097F7635 . 249344 . . [5.1.2600.2716] . . c:\windows\$hf_mig$\KB893756\SP2QFE\tapisrv.dll [-] 2005-07-08 . 427D7EB3B453347082C8F4B370065D60 . 249344 . . [5.1.2600.2716] . . c:\windows\$NtServicePackUninstall$\tapisrv.dll . [-] 2008-04-14 . B0050CC5340E3A0760DD8B417FF7AEBD . 580096 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\user32.dll [-] 2008-04-14 . B0050CC5340E3A0760DD8B417FF7AEBD . 580096 . . [5.1.2600.5512] . . c:\windows\system32\user32.dll [-] 2005-03-02 . 4C90159A69A5FD3EB39C71411F28FCFF . 578560 . . [5.1.2600.2622] . . c:\windows\$hf_mig$\KB890859\SP2QFE\user32.dll [-] 2005-03-02 . 4C90159A69A5FD3EB39C71411F28FCFF . 578560 . . [5.1.2600.2622] . . c:\windows\$NtServicePackUninstall$\user32.dll [-] 2005-03-02 . 3751D7CF0E0A113D84414992146BCE6A . 578560 . . [5.1.2600.2622] . . c:\windows\$NtUninstallKB890859$\user32.dll . [-] 2008-04-14 . 788F95312E26389D596C0FA55834E106 . 26624 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\userinit.exe [-] 2008-04-14 . 788F95312E26389D596C0FA55834E106 . 26624 . . [5.1.2600.5512] . . c:\windows\system32\userinit.exe [-] 2004-08-04 . D1E53DC57143F2584B1DD53B036C0633 . 25088 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\userinit.exe . [-] 2012-05-15 . B2FB8A88EBFDA2AF550CFFC1F25517AB . 832512 . . [7.00.6000.17111] . . c:\windows\system32\wininet.dll [-] 2012-05-15 . B2FB8A88EBFDA2AF550CFFC1F25517AB . 832512 . . [7.00.6000.17111] . . c:\windows\system32\dllcache\wininet.dll [-] 2012-05-15 . E7EEB502B8C3057D96E1447BC851F565 . 841216 . . [7.00.6000.21313] . . c:\windows\$hf_mig$\KB2699988-IE7\SP3QFE\wininet.dll [-] 2012-03-01 . E6F509D60102B0ED953055AD293AB1F8 . 832512 . . [7.00.6000.17109] . . c:\windows\ie7updates\KB2699988-IE7\wininet.dll [-] 2012-03-01 . 4DA5AC13C9E635428FB690FA01107397 . 841216 . . [7.00.6000.21311] . . c:\windows\$hf_mig$\KB2675157-IE7\SP3QFE\wininet.dll [-] 2011-12-19 . 9D117DA0C01D2AA20A5F75DF188E83C7 . 832512 . . [7.00.6000.17108] . . c:\windows\ie7updates\KB2675157-IE7\wininet.dll [-] 2011-12-19 . D7C8B47B787A20C5B9FE88965392AF2F . 841216 . . [7.00.6000.21310] . . c:\windows\$hf_mig$\KB2647516-IE7\SP3QFE\wininet.dll [-] 2011-10-31 . 01BDE5984B35C367A3FDCC0EE8ED30E7 . 832512 . . [7.00.6000.17106] . . c:\windows\ie7updates\KB2647516-IE7\wininet.dll [-] 2011-10-31 . BB152F931473A871C8CB0F7040147D03 . 841216 . . [7.00.6000.21308] . . c:\windows\$hf_mig$\KB2618444-IE7\SP3QFE\wininet.dll [-] 2011-08-17 . AE55A628C1688AA66AE39D2B93BDE312 . 832512 . . [7.00.6000.17103] . . c:\windows\ie7updates\KB2618444-IE7\wininet.dll [-] 2011-08-17 . BADFC58ACD58FB83C7FB968FE2571154 . 841216 . . [7.00.6000.21306] . . c:\windows\$hf_mig$\KB2586448-IE7\SP3QFE\wininet.dll [-] 2011-06-21 . 0697B0F3FD198C5AF0876449789EB1D3 . 832512 . . [7.00.6000.17099] . . c:\windows\ie7updates\KB2586448-IE7\wininet.dll [-] 2011-06-21 . CA3F86FD98DBEF99E8CBB5C5EC533E4E . 841216 . . [7.00.6000.21302] . . c:\windows\$hf_mig$\KB2559049-IE7\SP3QFE\wininet.dll [-] 2011-04-25 . 36F92E2E8B0E6EBB02CC9EEEA2983C1E . 832512 . . [7.00.6000.17098] . . c:\windows\ie7updates\KB2559049-IE7\wininet.dll [-] 2011-04-25 . C843BCAFB1C22AF2399FD5AA92257D4D . 841216 . . [7.00.6000.21300] . . c:\windows\$hf_mig$\KB2530548-IE7\SP3QFE\wininet.dll [-] 2011-02-17 . 60A31B042CB6600EEB4357AFF19D345C . 841216 . . [7.00.6000.21298] . . c:\windows\$hf_mig$\KB2497640-IE7\SP3QFE\wininet.dll [-] 2011-02-17 . B699449B3CB14E5D553688814D19FF56 . 832512 . . [7.00.6000.17096] . . c:\windows\ie7updates\KB2530548-IE7\wininet.dll [-] 2010-12-20 . BD4C6C6694C20480599E75813C230EFC . 841216 . . [7.00.6000.21297] . . c:\windows\$hf_mig$\KB2482017-IE7\SP3QFE\wininet.dll [-] 2010-12-20 . A2D15AB60F75AA102ED5234CA80688AD . 832512 . . [7.00.6000.17095] . . c:\windows\ie7updates\KB2497640-IE7\wininet.dll [-] 2010-11-06 . A1A23A6C6DCA6B567106552475A65B79 . 832512 . . [7.00.6000.17093] . . c:\windows\ie7updates\KB2482017-IE7\wininet.dll [-] 2010-11-06 . 512A074E47388E9252B1ADE326317CE9 . 841216 . . [7.00.6000.21295] . . c:\windows\$hf_mig$\KB2416400-IE7\SP3QFE\wininet.dll [-] 2010-09-09 . 6BCB6C8396D75FA1676B65790EA17E4B . 832512 . . [7.00.6000.17091] . . c:\windows\ie7updates\KB2416400-IE7\wininet.dll [-] 2010-09-09 . 859559B2F2B9B437DD279AC7EA68BE40 . 841216 . . [7.00.6000.21293] . . c:\windows\$hf_mig$\KB2360131-IE7\SP3QFE\wininet.dll [-] 2010-06-24 . A85BA5BA928351CC7117123D53123384 . 841216 . . [7.00.6000.21283] . . c:\windows\$hf_mig$\KB2183461-IE7\SP3QFE\wininet.dll [-] 2010-06-24 . F35DCEC860FDB1F17DE7D543D182B169 . 832512 . . [7.00.6000.17080] . . c:\windows\ie7updates\KB2360131-IE7\wininet.dll [-] 2010-05-04 . 0AFFC00B24F30716688CF08ECFE377E9 . 832512 . . [7.00.6000.17055] . . c:\windows\ie7updates\KB2183461-IE7\wininet.dll [-] 2010-05-04 . 6A2F855F0D2A09216656153636080D1E . 841216 . . [7.00.6000.21256] . . c:\windows\$hf_mig$\KB982381-IE7\SP3QFE\wininet.dll [-] 2010-03-11 . 667D6FFC648739EB24931E9B2BC685D1 . 832512 . . [7.00.6000.17023] . . c:\windows\ie7updates\KB982381-IE7\wininet.dll [-] 2010-03-11 . A20419E3612073BB2B5707EDA26173E6 . 841216 . . [7.00.6000.21228] . . c:\windows\$hf_mig$\KB980182-IE7\SP3QFE\wininet.dll [-] 2010-01-05 . B0F874F81444643FCDA267033D630113 . 832512 . . [7.00.6000.16981] . . c:\windows\ie7updates\KB980182-IE7\wininet.dll [-] 2010-01-05 . C14A55B0286B5C2A910AEA3CE1DB7D76 . 841216 . . [7.00.6000.21183] . . c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\wininet.dll [-] 2009-10-29 . A20B2C09CCE24D136F0519323A3F7072 . 832512 . . [7.00.6000.16945] . . c:\windows\ie7updates\KB978207-IE7\wininet.dll [-] 2009-10-29 . 9B5D0E4E82FFC178D82206D93D89C71C . 841216 . . [7.00.6000.21148] . . c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\wininet.dll [-] 2009-08-29 . CB74316772D625807EF16F6701F2A25E . 832512 . . [7.00.6000.16915] . . c:\windows\ie7updates\KB976325-IE7\wininet.dll [-] 2009-08-29 . BA0DE4DD7959D0638EAD5B400294C416 . 840704 . . [7.00.6000.21115] . . c:\windows\$hf_mig$\KB974455-IE7\SP3QFE\wininet.dll [-] 2009-06-29 . 93552887262FEE6DD5D98E452FCD495A . 828928 . . [7.00.6000.21073] . . c:\windows\$hf_mig$\KB972260-IE7\SP3QFE\wininet.dll [-] 2009-06-29 . 90590032B6E9EF719F5E78FCD2AD2CBC . 827392 . . [7.00.6000.16876] . . c:\windows\ie7updates\KB974455-IE7\wininet.dll [-] 2009-04-29 . B7E6D6663CB6BC05316FEB978217360D . 827392 . . [7.00.6000.16850] . . c:\windows\ie7updates\KB972260-IE7\wininet.dll [-] 2009-04-29 . F5D59B0B453F8AF7ADC7AFB34D39C441 . 828928 . . [7.00.6000.21045] . . c:\windows\$hf_mig$\KB969897-IE7\SP3QFE\wininet.dll [-] 2009-03-03 . AF68C6F857EB438770E86FFEE013F04D . 828416 . . [7.00.6000.21020] . . c:\windows\$hf_mig$\KB963027-IE7\SP3QFE\wininet.dll [-] 2009-03-03 . 9F434E15A82D1322FB6860E317783E57 . 826368 . . [7.00.6000.16827] . . c:\windows\ie7updates\KB969897-IE7\wininet.dll [-] 2008-12-20 . 2B5AE9ACD86E1B8B86D62E153DE130AB . 827904 . . [7.00.6000.20978] . . c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\wininet.dll [-] 2008-12-20 . C3D4047626F8CC8EC7DD7558FA5CC2E2 . 826368 . . [7.00.6000.16791] . . c:\windows\ie7updates\KB963027-IE7\wininet.dll [-] 2008-10-16 . CBAAEBDFC6F9291D2D31E36FE1AD19AC . 826368 . . [7.00.6000.16762] . . c:\windows\ie7updates\KB961260-IE7\wininet.dll [-] 2008-10-16 . 5A1F997EC096EF26F3A3880347F5F9D8 . 827904 . . [7.00.6000.20935] . . c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\wininet.dll [-] 2008-04-14 . B4AEE98A48917B274FACFB78BBE0BC84 . 671744 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\wininet.dll [-] 2006-11-07 . 92995334F993E6E49C25C6D02EC04401 . 818688 . . [7.00.5730.11] . . c:\windows\ie7updates\KB958215-IE7\wininet.dll [-] 2006-01-09 . 957B39EFDAAFC58F43FB233933265F95 . 667648 . . [6.00.2900.2823] . . c:\windows\ie7\wininet.dll [-] 2005-10-21 . F3118DF4ABD118B11326D1C7A0093867 . 667136 . . [6.00.2900.2781] . . c:\windows\$hf_mig$\KB905915\SP2QFE\wininet.dll [-] 2005-10-21 . 19625F6F8357C2306BA4B3583C705836 . 664064 . . [6.00.2900.2781] . . c:\windows\$NtUninstallKB905915$\wininet.dll . [-] 2008-04-14 . 6A35E2D6F5F052C84EC2CEB296389439 . 82432 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ws2_32.dll [-] 2008-04-14 . 6A35E2D6F5F052C84EC2CEB296389439 . 82432 . . [5.1.2600.5512] . . c:\windows\system32\ws2_32.dll [-] 2004-08-04 . D569240A22421D5F670BB6FB6DD522B5 . 82944 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ws2_32.dll . [-] 2008-04-14 . C7D8A0517CBF16B84F657DE87EBE9D4B . 19968 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ws2help.dll [-] 2008-04-14 . C7D8A0517CBF16B84F657DE87EBE9D4B . 19968 . . [5.1.2600.5512] . . c:\windows\system32\ws2help.dll [-] 2004-08-04 . B3ADA72D1E3E10A8F6430669DFC38ED0 . 19968 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ws2help.dll . [-] 2008-04-14 . 418045A93CD87A352098AB7DABE1B53E . 1036800 . . [6.00.2900.5512] . . c:\windows\explorer.exe [-] 2008-04-14 . 418045A93CD87A352098AB7DABE1B53E . 1036800 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\explorer.exe [-] 2004-08-04 . 22FE1BE02EADDE1632E478E4125639E0 . 1035264 . . [6.00.2900.2180] . . c:\windows\$NtServicePackUninstall$\explorer.exe . [-] 2008-04-14 . AD9226BF3CED13636083BB9C76E9D2A2 . 153600 . . [5.1.2600.5512] . . c:\windows\regedit.exe [-] 2008-04-14 . AD9226BF3CED13636083BB9C76E9D2A2 . 153600 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\regedit.exe [-] 2004-08-04 . 8193CE5FB09E83F2699FD65BBCBE2FD2 . 153600 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\regedit.exe . [-] 2011-11-01 . 6AD6619E7523E27B771569C26F408F0A . 1288704 . . [5.1.2600.6168] . . c:\windows\system32\ole32.dll [-] 2011-11-01 . 6AD6619E7523E27B771569C26F408F0A . 1288704 . . [5.1.2600.6168] . . c:\windows\system32\dllcache\ole32.dll [-] 2011-11-01 . D684C601EC79D9543D50EB2DB124FE78 . 1289216 . . [5.1.2600.6168] . . c:\windows\$hf_mig$\KB2624667\SP3QFE\ole32.dll [-] 2010-07-16 . B28AF7976F2D8109C0DC2CF2460BEDC2 . 1288192 . . [5.1.2600.6010] . . c:\windows\$NtUninstallKB2624667$\ole32.dll [-] 2010-07-16 . B3D7633CF83B09042A49810A7A72ADED . 1289216 . . [5.1.2600.6010] . . c:\windows\$hf_mig$\KB979687\SP3QFE\ole32.dll [-] 2008-04-14 . E08D638BA3D3DD6DF6E31216AB66AE0B . 1287680 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB979687$\ole32.dll [-] 2008-04-14 . E08D638BA3D3DD6DF6E31216AB66AE0B . 1287680 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ole32.dll [-] 2005-07-26 . 24EDF93FD04CA1A98D32F092DD4F9953 . 1286144 . . [5.1.2600.2726] . . c:\windows\$hf_mig$\KB902400\SP2QFE\ole32.dll [-] 2005-07-26 . CC50261CA5DC93A47D6CF548C4223F44 . 1285120 . . [5.1.2600.2726] . . c:\windows\$NtServicePackUninstall$\ole32.dll . [-] 2010-04-16 . 45954AFB7AE6E29B23C56B830C820A11 . 406016 . . [1.0420.2600.5969] . . c:\windows\system32\usp10.dll [-] 2010-04-16 . 45954AFB7AE6E29B23C56B830C820A11 . 406016 . . [1.0420.2600.5969] . . c:\windows\system32\dllcache\usp10.dll [-] 2010-04-16 . EB2AD9C7DADE6C63F5F933881BA2A430 . 406016 . . [1.0420.2600.5969] . . c:\windows\$hf_mig$\KB981322\SP3QFE\usp10.dll [-] 2008-04-14 . 052F968390A85D37D5EE8BE3AB2A83A2 . 406016 . . [1.0420.2600.5512] . . c:\windows\$NtUninstallKB981322$\usp10.dll [-] 2008-04-14 . 052F968390A85D37D5EE8BE3AB2A83A2 . 406016 . . [1.0420.2600.5512] . . c:\windows\ServicePackFiles\i386\usp10.dll [-] 2004-08-04 . E4E40EAFF464EBE7752BAD3D82AF1715 . 406528 . . [1.0420.2600.2180] . . c:\windows\$NtServicePackUninstall$\usp10.dll . [-] 2008-04-14 . 671ABB33C712B1585A5BF7ADD36AD96E . 4096 . . [5.3.2600.5512] . . c:\windows\ServicePackFiles\i386\ksuser.dll [-] 2004-08-03 . 4721744CE11F385073F6F9F7831752C7 . 4096 . . [5.3.2600.2180] . . c:\windows\$NtServicePackUninstall$\ksuser.dll [-] 2004-08-03 . 4721744CE11F385073F6F9F7831752C7 . 4096 . . [5.3.2600.2180] . . c:\windows\system32\ksuser.dll . [-] 2008-04-14 . 01B4E6E990B6C5EA8856D96C7FD044B2 . 15360 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ctfmon.exe [-] 2008-04-14 . 01B4E6E990B6C5EA8856D96C7FD044B2 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\ctfmon.exe [-] 2004-08-04 . 7CE20569925DF6789C31799F0C538F29 . 15360 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ctfmon.exe . [-] 2009-07-27 . 2DB7D303C36DDD055215052F118E8E75 . 135680 . . [6.00.2900.5853] . . c:\windows\system32\shsvcs.dll [-] 2009-07-27 . 2DB7D303C36DDD055215052F118E8E75 . 135680 . . [6.00.2900.5853] . . c:\windows\system32\dllcache\shsvcs.dll [-] 2009-07-27 . 927666F4228E3FBBC3D1171581DC8BDC . 135680 . . [6.00.2900.5853] . . c:\windows\$hf_mig$\KB971029\SP3QFE\shsvcs.dll [-] 2008-04-14 . 40602EBFBE06AA075C8E4560743F6883 . 135168 . . [6.00.2900.5512] . . c:\windows\$NtUninstallKB971029$\shsvcs.dll [-] 2008-04-14 . 40602EBFBE06AA075C8E4560743F6883 . 135168 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\shsvcs.dll [-] 2004-08-04 . BAC5F7F0C2B8C1B9832594851E0F9914 . 135168 . . [6.00.2900.2180] . . c:\windows\$NtServicePackUninstall$\shsvcs.dll . [-] 2008-04-14 . FE77A85495065F3AD59C5C65B6C54182 . 171520 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\srsvc.dll [-] 2008-04-14 . FE77A85495065F3AD59C5C65B6C54182 . 171520 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll [-] 2004-08-04 . 015F302C4CF961F20C3F98F3A7CA7917 . 171008 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\srsvc.dll . [-] 2008-04-14 . EDAFBE25FB6480CE68F688BA691890DC . 13824 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\wscntfy.exe [-] 2008-04-14 . EDAFBE25FB6480CE68F688BA691890DC . 13824 . . [5.1.2600.5512] . . c:\windows\system32\wscntfy.exe [-] 2004-08-04 . 7D3E0BEB62799112F5C9FF717D72BF29 . 13824 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\wscntfy.exe . [-] 2008-04-14 . 0ADA34871A2E1CD2CAAFED1237A47750 . 129024 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\xmlprov.dll [-] 2008-04-14 . 0ADA34871A2E1CD2CAAFED1237A47750 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\xmlprov.dll [-] 2004-08-04 . 8302DE1C64618D72346DD0034DBC5D9B . 129536 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\xmlprov.dll . [-] 2008-04-14 . 04955AA695448C181B367D964AF158AA . 56320 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\eventlog.dll [-] 2008-04-14 . 04955AA695448C181B367D964AF158AA . 56320 . . [5.1.2600.5512] . . c:\windows\system32\eventlog.dll [-] 2004-08-04 . B932C077D5A65B71B4512544AC404CB4 . 55808 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\eventlog.dll . [-] 2008-04-14 . 5251425B86EA4A3532B8BB8D14044E61 . 1571840 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\sfcfiles.dll [-] 2008-04-14 . 5251425B86EA4A3532B8BB8D14044E61 . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll [-] 2004-08-04 . 80F7B7198B869C07C98627AF812D68B6 . 1548288 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\sfcfiles.dll . [-] 2008-04-13 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ipsec.sys [-] 2008-04-13 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ipsec.sys [-] 2004-08-04 . 64537AA5C003A6AFEEE1DF819062D0D1 . 74752 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ipsec.sys . [-] 2008-04-14 . E4CD1F3D84E1C2CA0B8CF7501E201593 . 59904 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\regsvc.dll [-] 2008-04-14 . E4CD1F3D84E1C2CA0B8CF7501E201593 . 59904 . . [5.1.2600.5512] . . c:\windows\system32\regsvc.dll [-] 2004-08-04 . AE81CF7D7CFA79CD03E8FB99788A7E09 . 59904 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\regsvc.dll . [-] 2008-04-14 . A050194A44D7FA8D7186ED2F4E8367AE . 193536 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\schedsvc.dll [-] 2008-04-14 . A050194A44D7FA8D7186ED2F4E8367AE . 193536 . . [5.1.2600.5512] . . c:\windows\system32\schedsvc.dll [-] 2004-08-04 . D5E73842F38E24457C63FEF8CEFFBE19 . 192000 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\schedsvc.dll . [-] 2008-04-14 . 4DF5B05DFAEC29E13E1ED6F6EE12C500 . 71680 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ssdpsrv.dll [-] 2008-04-14 . 4DF5B05DFAEC29E13E1ED6F6EE12C500 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\ssdpsrv.dll [-] 2004-08-04 . 6FA03B462B2FFFE2627171B7FE73EE29 . 71680 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ssdpsrv.dll . [-] 2008-04-14 . B7DE02C863D8F5A005A7BF375375A6A4 . 297472 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\termsrv.dll [-] 2008-04-14 . B7DE02C863D8F5A005A7BF375375A6A4 . 297472 . . [5.1.2600.5512] . . c:\windows\system32\termsrv.dll [-] 2004-08-04 . 1850BC10DE5DCCCEDE063FC2D0F2CEDA . 297472 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\termsrv.dll . [-] 2008-04-14 . 0DAF0705D7B39C94E287913226688804 . 348672 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\hnetcfg.dll [-] 2008-04-14 . 0DAF0705D7B39C94E287913226688804 . 348672 . . [5.1.2600.5512] . . c:\windows\system32\hnetcfg.dll [-] 2004-08-04 . AE93E415220A4C0112768A0DEE36D28D . 348672 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\hnetcfg.dll . [-] 2008-04-14 . D45960BE52C3C610D361977057F98C54 . 175616 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\appmgmts.dll [-] 2008-04-14 . D45960BE52C3C610D361977057F98C54 . 175616 . . [5.1.2600.5512] . . c:\windows\system32\appmgmts.dll [-] 2004-08-04 . BECD5328E7869807D6557BE4FE60C72F . 175616 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\appmgmts.dll . [-] 2004-08-04 . 9E1CA3160DAFB159CA14F83B1E317F75 . 12160 . . [5.1.2600.0] . . c:\windows\system32\drivers\acpiec.sys . [-] 2008-04-13 16:39 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\ServicePackFiles\i386\aec.sys [-] 2008-04-13 16:39 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\drivers\aec.sys [-] 2004-08-03 21:39 . 841F385C6CFAF66B58FBD898722BB4F0 . 142464 . . [5.1.2601.2078] . . c:\windows\$NtServicePackUninstall$\aec.sys . [-] 2008-04-13 . 08FD04AA961BDC77FB983F328334E3D7 . 42368 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\agp440.sys [-] 2008-04-13 . 08FD04AA961BDC77FB983F328334E3D7 . 42368 . . [5.1.2600.5512] . . c:\windows\system32\drivers\agp440.sys [-] 2004-08-04 . 2C428FA0C3E3A01ED93C9B2A27D8D4BB . 42368 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\agp440.sys . [-] 2008-04-13 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ip6fw.sys [-] 2008-04-13 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ip6fw.sys [-] 2004-08-04 . 4448006B6BC60E6C027932CFC38D6855 . 29056 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ip6fw.sys . [-] 2010-09-18 07:18 . 4891FCDAE77486BFB56999AA217651FA . 953856 . . [4.1.6151] . . c:\windows\$hf_mig$\KB2387149\SP3QFE\mfc40u.dll [-] 2010-09-18 06:52 . 1614669828A32BCD06E1BE6F334BB888 . 953856 . . [4.1.6151] . . c:\windows\system32\mfc40u.dll [-] 2010-09-18 06:52 . 1614669828A32BCD06E1BE6F334BB888 . 953856 . . [4.1.6151] . . c:\windows\system32\dllcache\mfc40u.dll [-] 2008-04-14 02:22 . ACC19BA6876AF18768EE87931CAD14E2 . 927504 . . [4.1.0.61] . . c:\windows\$NtUninstallKB2387149$\mfc40u.dll [-] 2008-04-14 02:22 . ACC19BA6876AF18768EE87931CAD14E2 . 927504 . . [4.1.0.61] . . c:\windows\ServicePackFiles\i386\mfc40u.dll [-] 2004-08-04 12:00 . 31DD27AB47F62D383505F35CA972748B . 924432 . . [4.1.6140] . . c:\windows\$NtServicePackUninstall$\mfc40u.dll . [-] 2008-04-14 . B7550A7107281D170CE85524B1488C98 . 33792 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\msgsvc.dll [-] 2008-04-14 . B7550A7107281D170CE85524B1488C98 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\msgsvc.dll [-] 2004-08-04 . E5215AB942C5AC5F7EB0E54871D7A27C . 33792 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\msgsvc.dll . [-] 2009-01-30 18:33 . 051B1BDECD6DEE18C771B5D5EC7F044D . 27136 . . [11.0.5721.5262] . . c:\windows\system32\mspmsnsv.dll [-] 2009-01-30 18:33 . 051B1BDECD6DEE18C771B5D5EC7F044D . 27136 . . [11.0.5721.5262] . . c:\windows\system32\dllcache\mspmsnsv.dll [-] 2005-01-28 12:44 . 140EF97B64F560FD78643CAE2CDAD838 . 25088 . . [10.0.3790.3802] . . c:\windows\$NtUninstallWMFDist11$\mspmsnsv.dll [-] 2005-01-28 12:44 . 140EF97B64F560FD78643CAE2CDAD838 . 25088 . . [10.0.3790.3802] . . c:\windows\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\MsPMSNSv.dll [-] 2004-08-04 12:00 . D68CC4EBF7B03FD770D5962295AD814E . 52736 . . [9.0.1.56] . . c:\windows\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}$BACKUP$\System\MsPMSNSv.dll . [-] 2012-05-05 . 0A7BFA15D9F9432DB882CD2A174E7F7F . 2071424 . . [5.1.2600.6223] . . c:\windows\Driver Cache\i386\ntkrnlpa.exe [-] 2012-05-05 . 0A7BFA15D9F9432DB882CD2A174E7F7F . 2071424 . . [5.1.2600.6223] . . c:\windows\system32\dllcache\ntkrnlpa.exe [-] 2012-05-05 . BE4A6D3DB8E11A1B644B8675FE7D1A43 . 2029056 . . [5.1.2600.6223] . . c:\windows\system32\ntkrnlpa.exe [-] 2012-05-05 . 339D9DA45F631C9D9D7132D9F6957943 . 2071424 . . [5.1.2600.6223] . . c:\windows\$hf_mig$\KB2707511\SP3QFE\ntkrnlpa.exe [-] 2012-04-11 . 12E964E3514BC6ECD028A792F23E1976 . 2029056 . . [5.1.2600.6206] . . c:\windows\$NtUninstallKB2707511$\ntkrnlpa.exe [-] 2012-04-11 . C3124524EDDDA49504AE558352440F65 . 2071424 . . [5.1.2600.6206] . . c:\windows\$hf_mig$\KB2676562\SP3QFE\ntkrnlpa.exe [-] 2011-10-26 . 07FD1B85212CB29D3D75932B8C3FD210 . 2029568 . . [5.1.2600.6165] . . c:\windows\$NtUninstallKB2676562$\ntkrnlpa.exe [-] 2011-10-26 . ADD968B4D4A095407FD5B915F89BA8B5 . 2071680 . . [5.1.2600.6165] . . c:\windows\$hf_mig$\KB2633171\SP3QFE\ntkrnlpa.exe [-] 2010-12-09 . 7B1CA0A6C042E4B90A18B49ED73CBA76 . 2071680 . . [5.1.2600.6055] . . c:\windows\$hf_mig$\KB2393802\SP3QFE\ntkrnlpa.exe [-] 2010-12-09 . 56371A8F18F7D9570A11B1C54D602A2A . 2029568 . . [5.1.2600.6055] . . c:\windows\$NtUninstallKB2633171$\ntkrnlpa.exe [-] 2010-04-28 . 4EACA49489EB3C4A2E83C5546EB5884C . 2069248 . . [5.1.2600.5973] . . c:\windows\$hf_mig$\KB981852\SP3QFE\ntkrnlpa.exe [-] 2010-04-28 . 6D8D53C3EE866AB72AC73A68808E7371 . 2027008 . . [5.1.2600.5973] . . c:\windows\$NtUninstallKB2393802$\ntkrnlpa.exe [-] 2010-02-16 . 1DFCBCFD1C9016C051BE6D7243459CCA . 2027008 . . [5.1.2600.5938] . . c:\windows\$NtUninstallKB981852$\ntkrnlpa.exe [-] 2010-02-16 . CEE28C8C47E52F185F9F8F3A2E31880C . 2069248 . . [5.1.2600.5938] . . c:\windows\$hf_mig$\KB979683\SP3QFE\ntkrnlpa.exe [-] 2009-12-09 . 2E72317A93EF61138E43DCF7CD423EDF . 2068480 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165\SP3QFE\ntkrnlpa.exe [-] 2009-12-09 . 1143EBE276EA80A88942A21613078088 . 2026496 . . [5.1.2600.5913] . . c:\windows\$NtUninstallKB979683$\ntkrnlpa.exe [-] 2009-08-04 . C50ED62BB5CDC5AD4F3985ED39C6AE87 . 2068480 . . [5.1.2600.5857] . . c:\windows\$hf_mig$\KB971486\SP3QFE\ntkrnlpa.exe [-] 2009-08-04 . 1FF1F43613BA7510A5A975ED034EB8E0 . 2026496 . . [5.1.2600.5857] . . c:\windows\$NtUninstallKB977165$\ntkrnlpa.exe [-] 2009-02-09 . 43FBA8A9CBEEA36EA95AF77CD538200A . 2026496 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB971486$\ntkrnlpa.exe [-] 2009-02-09 . 1F9DA92672B8B5720C5FB1E87D8F249F . 2068480 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntkrnlpa.exe [-] 2008-08-14 . C789B5AEA9AB71C5BEF6DD568F744842 . 2068352 . . [5.1.2600.5657] . . c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlpa.exe [-] 2008-08-14 . 13334FAF18AB3B9083B8DD8A668B8BB6 . 2026496 . . [5.1.2600.5657] . . c:\windows\$NtUninstallKB956572$\ntkrnlpa.exe [-] 2008-04-14 . FEFB3BDA35CF469809B0C89AB6833AFC . 2026496 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956841$\ntkrnlpa.exe [-] 2008-04-14 . E51980EF65CED4490A7395A06C08DA34 . 2068224 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ntkrnlpa.exe [-] 2005-03-02 . 5B765E49A8A454A6125958EE25BE65CC . 2017792 . . [5.1.2600.2622] . . c:\windows\$NtServicePackUninstall$\ntkrnlpa.exe [-] 2005-03-02 . AE8364004BBFD70461D2EF34888D3360 . 2059264 . . [5.1.2600.2622] . . c:\windows\$hf_mig$\KB890859\SP2QFE\ntkrnlpa.exe [-] 2005-03-02 . BDFF8FFA77EE7DF9758EF8C1E0DA8EFF . 2059136 . . [5.1.2600.2622] . . c:\windows\$NtUninstallKB890859$\ntkrnlpa.exe . [-] 2008-04-14 02:22 . 56AF4064996FA5BAC9C449B1514B4770 . 438272 . . [5.1.2400.5512] . . c:\windows\ServicePackFiles\i386\ntmssvc.dll [-] 2008-04-14 02:22 . 56AF4064996FA5BAC9C449B1514B4770 . 438272 . . [5.1.2400.5512] . . c:\windows\system32\ntmssvc.dll [-] 2004-08-04 12:00 . 428AA946A8D9F32DBB4260C8E6E13377 . 438272 . . [5.1.2400.2180] . . c:\windows\$NtServicePackUninstall$\ntmssvc.dll . [-] 2008-04-14 . 1DFD8975D8C89214B98D9387C1125B49 . 186880 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\upnphost.dll [-] 2008-04-14 . 1DFD8975D8C89214B98D9387C1125B49 . 186880 . . [5.1.2600.5512] . . c:\windows\system32\upnphost.dll [-] 2004-08-04 . 09D4A2D7C5A8ABEC227D118765FAADDF . 185856 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\upnphost.dll . [-] 2008-04-14 . 9236E736EDB57BE7D1EF6274410E3BAC . 367616 . . [5.3.2600.5512] . . c:\windows\ServicePackFiles\i386\dsound.dll [-] 2008-04-14 . 9236E736EDB57BE7D1EF6274410E3BAC . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dsound.dll [-] 2004-08-04 . 7DB3393F98E4211F5CE8F003DE0615CF . 367616 . . [5.3.2600.2180] . . c:\windows\$NtServicePackUninstall$\dsound.dll . [-] 2008-04-14 . 36969CF86E51EC8ED202B40F2FA80AA6 . 1689088 . . [5.03.2600.5512] . . c:\windows\ServicePackFiles\i386\d3d9.dll [-] 2008-04-14 . 36969CF86E51EC8ED202B40F2FA80AA6 . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\d3d9.dll [-] 2004-08-04 . 20AE7889467887B869F30308EEED9A2A . 1689088 . . [5.03.2600.2180] . . c:\windows\$NtServicePackUninstall$\d3d9.dll . [-] 2008-04-14 . 4A37188B83B00DD9CFBA049687AD0DAF . 279552 . . [5.03.2600.5512] . . c:\windows\ServicePackFiles\i386\ddraw.dll [-] 2008-04-14 . 4A37188B83B00DD9CFBA049687AD0DAF . 279552 . . [5.03.2600.5512] . . c:\windows\system32\ddraw.dll [-] 2004-08-04 . CAC545A56482DE01640E6B791DE19944 . 266240 . . [5.03.2600.2180] . . c:\windows\$NtServicePackUninstall$\ddraw.dll . [-] 2008-04-14 02:22 . 5D7F5A46975D2E59A6FECB6C231D200F . 84992 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\olepro32.dll [-] 2008-04-14 02:22 . 5D7F5A46975D2E59A6FECB6C231D200F . 84992 . . [5.1.2600.5512] . . c:\windows\system32\olepro32.dll [-] 2004-08-04 12:00 . 1404D3DD4ED4F5E2A938B43794049A81 . 83456 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\olepro32.dll . [-] 2008-04-14 . C47FD93010649AC0D79022D9B69ADBE4 . 41984 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\perfctrs.dll [-] 2008-04-14 . C47FD93010649AC0D79022D9B69ADBE4 . 41984 . . [5.1.2600.5512] . . c:\windows\system32\perfctrs.dll [-] 2004-08-04 . 007BFD01772B5202C5CE4F208A2F3F46 . 41984 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\perfctrs.dll . [-] 2008-04-14 . F86000634319F71535BCE6B06995EE99 . 18944 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\version.dll [-] 2008-04-14 . F86000634319F71535BCE6B06995EE99 . 18944 . . [5.1.2600.5512] . . c:\windows\system32\version.dll [-] 2004-08-04 . 4EF2FDC0A085C8339ED4D9C59CE8FC60 . 18944 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\version.dll . [-] 2012-05-05 . 6005B4877E0E9AFB992615A0D5130D11 . 2194944 . . [5.1.2600.6223] . . c:\windows\Driver Cache\i386\ntoskrnl.exe [-] 2012-05-05 . 6005B4877E0E9AFB992615A0D5130D11 . 2194944 . . [5.1.2600.6223] . . c:\windows\system32\dllcache\ntoskrnl.exe [-] 2012-05-05 . 916B2FD262DDD2DD31EB5B80B5645516 . 2150912 . . [5.1.2600.6223] . . c:\windows\system32\ntoskrnl.exe [-] 2012-05-05 . C11516E90F6D8C45329A070429392A04 . 2194944 . . [5.1.2600.6223] . . c:\windows\$hf_mig$\KB2707511\SP3QFE\ntoskrnl.exe [-] 2012-04-11 . 1055CB3C62F7007EBD5ECB1E5CC8069E . 2150912 . . [5.1.2600.6206] . . c:\windows\$NtUninstallKB2707511$\ntoskrnl.exe [-] 2012-04-11 . 35BEC26067274CCFE4BE16CA22E54557 . 2194944 . . [5.1.2600.6206] . . c:\windows\$hf_mig$\KB2676562\SP3QFE\ntoskrnl.exe [-] 2011-10-26 . 63907C9E2D9EEA3ADA8263F0A8D79797 . 2151424 . . [5.1.2600.6165] . . c:\windows\$NtUninstallKB2676562$\ntoskrnl.exe [-] 2011-10-26 . 43BA9F58FD87BBF57F958C06241F2C9C . 2195072 . . [5.1.2600.6165] . . c:\windows\$hf_mig$\KB2633171\SP3QFE\ntoskrnl.exe [-] 2010-12-09 . 2A5A8BE47E1F8E55520FB4031E21D129 . 2195072 . . [5.1.2600.6055] . . c:\windows\$hf_mig$\KB2393802\SP3QFE\ntoskrnl.exe [-] 2010-12-09 . DAC0BE266F11618A2B9A6EC4D1F255ED . 2151424 . . [5.1.2600.6055] . . c:\windows\$NtUninstallKB2633171$\ntoskrnl.exe [-] 2010-04-28 . 490911C4B913989D4958543FED2C8F21 . 2148864 . . [5.1.2600.5973] . . c:\windows\$NtUninstallKB2393802$\ntoskrnl.exe [-] 2010-04-28 . 6AF2E8CEB03F7CB3B8183359563DBB87 . 2192384 . . [5.1.2600.5973] . . c:\windows\$hf_mig$\KB981852\SP3QFE\ntoskrnl.exe [-] 2010-02-16 . E1BD0FAFF2C1D0A825CBA97DCF0DDDAE . 2148864 . . [5.1.2600.5938] . . c:\windows\$NtUninstallKB981852$\ntoskrnl.exe [-] 2010-02-16 . 4456016C2FF1A8CCCAC8309C9B76E2F5 . 2192384 . . [5.1.2600.5938] . . c:\windows\$hf_mig$\KB979683\SP3QFE\ntoskrnl.exe [-] 2009-12-09 . A97847B2D30F4A299B35239D26BAD948 . 2191616 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165\SP3QFE\ntoskrnl.exe [-] 2009-12-09 . D4128AA197DD8F3120FC80008AB66CF7 . 2147840 . . [5.1.2600.5913] . . c:\windows\$NtUninstallKB979683$\ntoskrnl.exe [-] 2009-08-04 . 96D6882D49438D58B0DE0F7E8C8D241B . 2147840 . . [5.1.2600.5857] . . c:\windows\$NtUninstallKB977165$\ntoskrnl.exe [-] 2009-08-04 . 4B86421F2D85D9A4ECB06885C40B8EEB . 2191616 . . [5.1.2600.5857] . . c:\windows\$hf_mig$\KB971486\SP3QFE\ntoskrnl.exe [-] 2009-02-10 . D3453310FC92736E674FFDC6E3F455B7 . 2191488 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntoskrnl.exe [-] 2009-02-09 . 18D976FE984BDA3DAC8164B05D69205D . 2147840 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB971486$\ntoskrnl.exe [-] 2008-08-14 . 59282EFE7147C011530E51FF92BA86AC . 2191488 . . [5.1.2600.5657] . . c:\windows\$hf_mig$\KB956841\SP3QFE\ntoskrnl.exe [-] 2008-08-14 . 5961DD3AEC44962A76F0D8D895C172F1 . 2147840 . . [5.1.2600.5657] . . c:\windows\$NtUninstallKB956572$\ntoskrnl.exe [-] 2008-04-14 . 354C9291513BCE4D0ED6B0C6A15470F8 . 2191360 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ntoskrnl.exe [-] 2008-04-14 . 88077F757C6C793C33408D878B6E0F76 . 2147840 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956841$\ntoskrnl.exe [-] 2005-03-02 . EB5538A452E0E99169E2B6CDB62FF9D2 . 2181888 . . [5.1.2600.2622] . . c:\windows\$hf_mig$\KB890859\SP2QFE\ntoskrnl.exe [-] 2005-03-02 . F76176EB18B523CFBEF252308DAA9CA8 . 2138112 . . [5.1.2600.2622] . . c:\windows\$NtServicePackUninstall$\ntoskrnl.exe [-] 2005-03-02 . 7189A2391ADC1F65C9AE87B0ABE0F945 . 2181632 . . [5.1.2600.2622] . . c:\windows\$NtUninstallKB890859$\ntoskrnl.exe . [-] 2008-04-14 . FE77A85495065F3AD59C5C65B6C54182 . 171520 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\srsvc.dll [-] 2008-04-14 . FE77A85495065F3AD59C5C65B6C54182 . 171520 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll [-] 2004-08-04 . 015F302C4CF961F20C3F98F3A7CA7917 . 171008 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\srsvc.dll . [-] 2008-04-14 . 7B353059E665F8B7AD2BBEAEF597CF45 . 177152 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\w32time.dll [-] 2008-04-14 . 7B353059E665F8B7AD2BBEAEF597CF45 . 177152 . . [5.1.2600.5512] . . c:\windows\system32\w32time.dll [-] 2004-08-04 . C6D874CD2A5B83CD11CDEBD28A638584 . 176640 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\w32time.dll . [-] 2008-04-14 . BC2C5985611C5356B24AEB370953DED9 . 334336 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\wiaservc.dll [-] 2008-04-14 . BC2C5985611C5356B24AEB370953DED9 . 334336 . . [5.1.2600.5512] . . c:\windows\system32\wiaservc.dll [-] 2004-08-04 . 7E751068ADA60FC77638622E86A7CD9E . 333824 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\wiaservc.dll . [-] 2008-04-14 . 2CF969B9BF1EF069075DCDCE309FAAE1 . 18944 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\midimap.dll [-] 2008-04-14 . 2CF969B9BF1EF069075DCDCE309FAAE1 . 18944 . . [5.1.2600.5512] . . c:\windows\system32\midimap.dll [-] 2004-08-04 . 32641AE4D340C1AC2D9B3A3BD71F5C47 . 18944 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\midimap.dll . [-] 2008-04-14 . 469FED8597896DB77B49384BE90E2E0A . 7680 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\rasadhlp.dll [-] 2008-04-14 . 469FED8597896DB77B49384BE90E2E0A . 7680 . . [5.1.2600.5512] . . c:\windows\system32\rasadhlp.dll [-] 2006-06-26 . 45F87F6E7AB4F79B5C719B78C289DB66 . 7680 . . [5.1.2600.2938] . . c:\windows\$hf_mig$\KB920683\SP2QFE\rasadhlp.dll [-] 2006-06-26 . DC940E8932827D65180F6A71BD4BD878 . 8192 . . [5.1.2600.2938] . . c:\windows\$NtServicePackUninstall$\rasadhlp.dll . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Akamai NetSession Interface"="c:\dokumente und einstellungen\User\Lokale Einstellungen\Anwendungsdaten\Akamai\netsession_win.exe" [2012-05-26 4327744] "WMPNSCFG"="c:\programme\Windows Media Player\WMPNSCFG.exe" [2009-02-04 204288] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Mouse Suite 98 Daemon"="ICO.EXE" [2008-06-27 53248] "TVT Scheduler Proxy"="c:\programme\Gemeinsame Dateien\Lenovo\Scheduler\scheduler_proxy.exe" [2008-05-14 487424] "cssauth"="c:\programme\Lenovo\Client Security Solution\cssauth.exe" [2008-06-13 3073336] "Samsung LBP SM"="c:\windows\Samsung\LaserSMMgr\ssmmgr.exe" [2003-04-04 266240] "Adobe ARM"="c:\programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712] "avgnt"="c:\programme\Avira\AntiVir Desktop\avgnt.exe" [2012-05-11 348624] "RTHDCPL"="RTHDCPL.EXE" [2008-06-27 16875008] "SunJavaUpdateSched"="c:\programme\Gemeinsame Dateien\Java\Java Update\jusched.exe" [2012-01-18 254696] . [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360] . R1 avkmgr;avkmgr;c:\windows\system32\drivers\avkmgr.sys [24.10.2011 19:41 36000] R1 tvtumon;tvtumon;c:\windows\system32\drivers\tvtumon.sys [09.05.2008 06:50 46144] R2 Akamai;Akamai NetSession Interface;c:\windows\System32\svchost.exe -k Akamai [27.01.2006 03:01 14336] R2 AntiVirSchedulerService;Avira Planer;c:\programme\Avira\AntiVir Desktop\sched.exe [24.10.2011 19:41 86224] R2 AntiVirWebService;Avira Browser Schutz;c:\programme\Avira\AntiVir Desktop\avwebgrd.exe [24.10.2011 19:41 465360] R2 TVT Backup Protection Service;TVT Backup Protection Service;c:\programme\Lenovo\Rescue and Recovery\rrpservice.exe [14.05.2008 17:25 520192] R2 TVT_UpdateMonitor;TVT Windows Update Monitor;c:\programme\Lenovo\Rescue and Recovery\UpdateMonitor.exe [09.05.2008 06:50 253952] R2 USBDLM;USBDLM;c:\usbdlm\USBDLM.exe [19.10.2007 12:21 134656] R3 TVTI2C;Lenovo SM bus driver;c:\windows\system32\drivers\tvti2c.sys [22.02.2008 16:54 37312] S2 SessionLauncher;SessionLauncher;c:\dokume~1\ADMINI~1\LOKALE~1\Temp\DX9\SessionLauncher.exe --> c:\dokume~1\ADMINI~1\LOKALE~1\Temp\DX9\SessionLauncher.exe [?] S2 SSPORT;SSPORT;\??\c:\windows\system32\Drivers\SSPORT.sys --> c:\windows\system32\Drivers\SSPORT.sys [?] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [30.06.2012 16:52 250056] S3 MozillaMaintenance;Mozilla Maintenance Service;c:\programme\Mozilla Maintenance Service\maintenanceservice.exe [01.05.2012 11:43 113120] S3 nosGetPlusHelper;getPlus(R) Helper 3004;c:\windows\System32\svchost.exe -k nosGetPlusHelper [27.01.2006 03:01 14336] S3 RoxMediaDB10;RoxMediaDB10;c:\programme\Gemeinsame Dateien\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe [25.04.2008 09:15 1120752] . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] getPlusHelper REG_MULTI_SZ getPlusHelper Akamai REG_MULTI_SZ Akamai nosGetPlusHelper REG_MULTI_SZ nosGetPlusHelper . Inhalt des "geplante Tasks" Ordners . 2012-07-22 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-06-30 15:05] . 2012-07-22 c:\windows\Tasks\Auf Updates für Windows Live Toolbar prüfen.job - c:\programme\Windows Live Toolbar\MSNTBUP.EXE [2007-02-12 14:54] . . ------- Zusätzlicher Suchlauf ------- . uStart Page = hxxp://www.google.com uInternet Settings,ProxyOverride = <local> IE: &Windows Live Search - c:\programme\Windows Live Toolbar\msntb.dll/search.htm LSP: c:\programme\Avira\AntiVir Desktop\avsda.dll TCP: DhcpNameServer = 192.168.2.1 FF - ProfilePath - c:\dokumente und einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\ FF - prefs.js: browser.search.defaulturl - FF - prefs.js: browser.search.selectedEngine - FF - prefs.js: browser.startup.homepage - www.google.de FF - user.js: yahoo.homepage.dontask - true . - - - - Entfernte verwaiste Registrierungseinträge - - - - . AddRemove-Microsoft Interactive Training - c:\windows\IsUn0407.exe . . . ************************************************************************** . catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, hxxp://www.gmer.net Rootkit scan 2012-07-23 20:44 Windows 5.1.2600 Service Pack 3 NTFS . Scanne versteckte Prozesse... . Scanne versteckte Autostarteinträge... . Scanne versteckte Dateien... . Scan erfolgreich abgeschlossen versteckte Dateien: 0 . ************************************************************************** . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Akamai] "ServiceDll"="c:\programme\gemeinsame dateien\akamai/netsession_win_4f7fccd.dll" . --------------------- Durch laufende Prozesse gestartete DLLs --------------------- . - - - - - - - > 'winlogon.exe'(740) c:\windows\system32\Ati2evxx.dll . - - - - - - - > 'lsass.exe'(796) c:\programme\Avira\AntiVir Desktop\avsda.dll . Zeit der Fertigstellung: 2012-07-23 20:47:06 ComboFix-quarantined-files.txt 2012-07-23 18:47 . Vor Suchlauf: 20 Verzeichnis(se), 280.288.948.224 Bytes frei Nach Suchlauf: 23 Verzeichnis(se), 280.493.187.072 Bytes frei . WindowsXP-KB310994-SP2-Pro-BootDisk-DEU.exe [boot loader] timeout=2 default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS [operating systems] c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons UnsupportedDebug="do not select this" /debug multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect . - - End Of File - - C2A2B38F561F0B93CF16A0A1F00F185B |
24.07.2012, 15:16 | #38 |
/// Winkelfunktion /// TB-Süch-Tiger™ | ich möchte meinen PC reinigen Bitte nun Logs mit GMER und OSAM erstellen und posten. GMER stürzt häufiger ab, wenn das Tool auch beim 2. Mal nicht will, lass es einfach weg und führ nur OSAM aus - die Online-Abfrage durch OSAM bitte überspringen. Bei OSAM bitte darauf auch achten, dass Du das Log auch als *.log und nicht *.html oder so abspeicherst. Hinweis: Zum Entpacken von OSAM bitte WinRAR oder 7zip verwenden! Stell auch unbedingt den Virenscanner ab, besonders der Scanner von McAfee meldet oft einen Fehalarm in OSAM! Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.
Wichtig: Drücke keinesfalls einen der Fix Buttons ohne Anweisung Hinweis: Sollte der Scan Button ausgeblendet sein, schließe das Tool und starte es erneut. Sollte der Scan abbrechen und das Programm abstürzen, dann teile mir das mit und wähle unter AV Scan die Einstellung (none). Noch ein Hinweis: Sollte aswMBR abstürzen und es kommt eine Meldung wie "aswMBR.exe funktioniert nicht mehr, dann mach Folgendes: Starte aswMBR neu, wähle unten links im Drop-Down-Menü (unten links im Fenster von aswMBR) bei "AV scan" (none) aus und klick nochmal auf den Scan-Button.
__________________ Logfiles bitte immer in CODE-Tags posten |
24.07.2012, 20:45 | #39 |
| ich möchte meinen PC reinigen Ich habe mit GMER gescannt. log war zu lange und das forum wollte die antwort in so einer form nicht. ich sollte zippen. 7zipp habe heruntergeladen und nichts verstanden, wie es geht. habe ich irgendwo in meinem PC gmer-text ? auf meinem PC liegt 71tr1vxs.exe unter dem Symbol Gmer. |
24.07.2012, 21:58 | #40 |
/// Winkelfunktion /// TB-Süch-Tiger™ | ich möchte meinen PC reinigen Ist Google bei dir defekt? Anleitungen wie man zippt gibt es nun wirklich zuhauf im Netz Rechtsklick auf das GMER-Log => senden an => ZIP komprimierter Ordner
__________________ Logfiles bitte immer in CODE-Tags posten |
25.07.2012, 14:06 | #41 |
| ich möchte meinen PC reinigen ich finde gmer-log nicht. wie kann man ihn finden? Danke! |
25.07.2012, 15:32 | #43 |
| ich möchte meinen PC reinigen es gibt auch andere seltsame Sachen. ich hatte auf der Taskleiste einen Sprachsymbol "DE" und konnte zwischen Sprachen umschalten. Jetzt ist es weg. Ich bin nach der Microsoft-Hilfe gegangen. Dort kann man sowas über : Regions- und Sprachoptionen- Register"Sprachen" - Details - Einstellungen- unten im Fenster Abteilung Einstellungen- Eingabegebietsschema-Leiste (und das ist deaktiviert; aktiv ist nur Feld daneben "Tastatur"). Windows-Firewall kann ich wieder öffnen.Dort sind 2 Ausnahmen geblockt: gewisse Akamai Netsession Interface und Remoteunterstützung. diese Sprachumschaltung ist für meine Arbeit sehr wichtig. Haben Sie Ideen ,woran es liegen kann? Danke! Hier ist OSAM-Log: Code:
ATTFilter Report of OSAM: Autorun Manager v5.0.11926.0 hxxp://www.online-solutions.ru/en/ Saved at 16:57:29 on 25.07.2012 OS: Windows XP Professional Service Pack 3 (Build 2600) Default Browser: Mozilla Corporation Firefox 14.0.1 Scanner Settings [x] Rootkits detection (hidden registry) [x] Rootkits detection (hidden files) [x] Retrieve files information [x] Check Microsoft signatures Filters [ ] Trusted entries [ ] Empty entries [x] Hidden registry entries (rootkit activity) [x] Exclusively opened files [x] Not found files [x] Files without detailed information [x] Existing files [ ] Non-startable services [ ] Non-startable drivers [x] Active entries [x] Disabled entries [Boot Execute] -----( HKLM\SYSTEM\CurrentControlSet\Control\Session Manager )----- "BootExecute" - "Microsoft Corporation" - C:\WINDOWS\system32\autochk.exe [Common] -----( %SystemRoot%\Tasks )----- "Auf Updates für Windows Live Toolbar prüfen.job" - "Microsoft Corporation" - C:\Programme\Windows Live Toolbar\MSNTBUP.EXE "Adobe Flash Player Updater.job" - "Adobe Systems Incorporated" - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -----( HKLM\SOFTWARE\Microsoft\Windows Scripting Host\Locations )----- "CScript" - "Microsoft Corporation" - C:\WINDOWS\System32\cscript.exe "WScript" - "Microsoft Corporation" - C:\WINDOWS\System32\wscript.exe [Control Panel Objects] -----( %SystemRoot%\system32 )----- "access.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\access.cpl "ALSNDMGR.CPL" - "Realtek Semiconductor Corp." - C:\WINDOWS\system32\ALSNDMGR.CPL "appwiz.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\appwiz.cpl "bthprops.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\bthprops.cpl "desk.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\desk.cpl "firewall.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\firewall.cpl "FlashPlayerCPLApp.cpl" - "Adobe Systems Incorporated" - C:\WINDOWS\system32\FlashPlayerCPLApp.cpl "hdwwiz.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\hdwwiz.cpl "inetcpl.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\inetcpl.cpl "infocardcpl.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\infocardcpl.cpl "intl.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\intl.cpl "irprops.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\irprops.cpl "javacpl.cpl" - "Sun Microsystems, Inc." - C:\WINDOWS\system32\javacpl.cpl "joy.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\joy.cpl "main.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\main.cpl "mmsys.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\mmsys.cpl "ncpa.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\ncpa.cpl "netsetup.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\netsetup.cpl "nusrmgr.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\nusrmgr.cpl "nwc.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\nwc.cpl "odbccp32.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\odbccp32.cpl "powercfg.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\powercfg.cpl "RTSndMgr.CPL" - "Realtek Semiconductor Corp." - C:\WINDOWS\system32\RTSndMgr.CPL "sysdm.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\sysdm.cpl "telephon.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\telephon.cpl "timedate.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\timedate.cpl "wscui.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\wscui.cpl "wuaucpl.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\wuaucpl.cpl -----( HKLM\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls )----- "Avira AntiVir Personal - Free Antivirus " - "Avira Operations GmbH & Co. KG" - C:\PROGRA~1\Avira\ANTIVI~1\avconfig.cpl "Internet Connection Firewall" - "Microsoft Corporation" - C:\WINDOWS\system32\Firewall.cpl "NetSetupWizard" - "Microsoft Corporation" - C:\WINDOWS\system32\NetSetup.cpl "Speech" - "Microsoft Corporation" - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Speech\sapi.cpl [Drivers] -----( HKLM\SYSTEM\CurrentControlSet\Services )----- "AFD" (AFD) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\afd.sys "Asynchroner RAS -Medientreiber" (AsyncMac) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\asyncmac.sys "ati2mtag" (ati2mtag) - "ATI Technologies Inc." - C:\WINDOWS\System32\DRIVERS\ati2mtag.sys "Audiostubtreiber" (audstub) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\audstub.sys "avgntflt" (avgntflt) - "Avira GmbH" - C:\WINDOWS\System32\DRIVERS\avgntflt.sys "avipbb" (avipbb) - "Avira GmbH" - C:\WINDOWS\System32\DRIVERS\avipbb.sys "avkmgr" (avkmgr) - "Avira GmbH" - C:\WINDOWS\System32\DRIVERS\avkmgr.sys "Beep" (Beep) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Beep.sys "Bereitstellungspunkt-Manager" (MountMgr) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\MountMgr.sys "catchme" (catchme) - ? - C:\DOKUME~1\User\LOKALE~1\Temp\catchme.sys (File not found) "CD-ROM-Laufwerktreiber" (Cdrom) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\cdrom.sys "Cdaudio" (Cdaudio) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Cdaudio.sys "Cdfs" (Cdfs) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Cdfs.sys "Changer" (Changer) - ? - C:\WINDOWS\system32\drivers\Changer.sys (File not found) "Diskettencontrollertreiber" (Fdc) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\fdc.sys "Diskettenlaufwerktreiber" (Flpydisk) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\flpydisk.sys "DLABMFSM" (DLABMFSM) - "Roxio" - C:\WINDOWS\System32\DLA\DLABMFSM.SYS "DLABOIOM" (DLABOIOM) - "Roxio" - C:\WINDOWS\System32\DLA\DLABOIOM.SYS "DLACDBHM" (DLACDBHM) - "Roxio" - C:\WINDOWS\System32\Drivers\DLACDBHM.SYS "DLADResM" (DLADResM) - "Roxio" - C:\WINDOWS\System32\DLA\DLADResM.SYS "DLAIFS_M" (DLAIFS_M) - "Roxio" - C:\WINDOWS\System32\DLA\DLAIFS_M.SYS "DLAOPIOM" (DLAOPIOM) - "Roxio" - C:\WINDOWS\System32\DLA\DLAOPIOM.SYS "DLAPoolM" (DLAPoolM) - "Roxio" - C:\WINDOWS\System32\DLA\DLAPoolM.SYS "DLARTL_M" (DLARTL_M) - "Roxio" - C:\WINDOWS\System32\Drivers\DLARTL_M.SYS "DLAUDFAM" (DLAUDFAM) - "Roxio" - C:\WINDOWS\System32\DLA\DLAUDFAM.SYS "DLAUDF_M" (DLAUDF_M) - "Roxio" - C:\WINDOWS\System32\DLA\DLAUDF_M.SYS "dmload" (dmload) - "Microsoft Corp., Veritas Software." - C:\WINDOWS\System32\drivers\dmload.sys "DRVMCDB" (DRVMCDB) - "Sonic Solutions" - C:\WINDOWS\System32\Drivers\DRVMCDB.SYS "DRVNDDM" (DRVNDDM) - "Roxio" - C:\WINDOWS\System32\Drivers\DRVNDDM.SYS "Filtertreiber für CD-Brennen" (Imapi) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\imapi.sys "Filtertreiber für digitale CD-Audiowiedergabe" (redbook) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\redbook.sys "Filtertreiber für IP-Verkehr" (IpFilterDriver) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ipfltdrv.sys "Filtertreiber für IPX-Verkehr" (NwlnkFlt) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\nwlnkflt.sys "Filtertreiber für Systemwiederherstellung" (sr) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\sr.sys "Fips" (Fips) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Fips.sys "FltMgr" (FltMgr) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\fltmgr.sys "Fs_Rec" (Fs_Rec) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Fs_Rec.sys "G400" (G400) - "Matrox Graphics Inc." - C:\WINDOWS\System32\DRIVERS\G400m.sys "HTTP" (HTTP) - "Microsoft Corporation" - C:\WINDOWS\System32\Drivers\HTTP.sys "i2omgmt" (i2omgmt) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\i2omgmt.sys "i8042-Tastatur- und PS/2-Mausanschluss-Treiber" (i8042prt) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\i8042prt.sys "Intel(r) 82801 Audiotreiber-Installationsdienst (WDM)" (ac97intc) - "Intel Corporation" - C:\WINDOWS\System32\drivers\ac97intc.sys "Intel(R) PRO-Adaptertreiber" (E100B) - "Intel Corporation" - C:\WINDOWS\System32\DRIVERS\e100b325.sys "IP/IP-Tunneltreiber" (IpInIp) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ipinip.sys "IPSEC-Treiber" (IPSec) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ipsec.sys "IPv6-Windows-Firewalltreiber" (Ip6Fw) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\ip6fw.sys "IR-Enumeratordienst" (IRENUM) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\irenum.sys "KSecDD" (KSecDD) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\KSecDD.sys "Laufwerktreiber" (Disk) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\disk.sys "lbrtfdc" (lbrtfdc) - ? - C:\WINDOWS\system32\drivers\lbrtfdc.sys (File not found) "Lenovo Parties Service Access Device Driver" (psadd) - "Lenovo (United States) Inc." - C:\WINDOWS\System32\DRIVERS\psadd.sys "Lenovo SM bus driver" (TVTI2C) - "Lenovo (United States) Inc." - C:\WINDOWS\System32\DRIVERS\Tvti2c.sys "Maus-HID-Treiber" (mouhid) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\mouhid.sys "Mausklassentreiber" (Mouclass) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\mouclass.sys "Microcode Updatetreiber" (Update) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\update.sys "Microsoft ACPI-Treiber" (ACPI) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ACPI.sys "Microsoft HID Class-Treiber" (HidUsb) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\hidusb.sys "Microsoft Kernel GS Wavetablesynthesizer" (swmidi) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\swmidi.sys "Microsoft Kernel-Audiosplitter" (splitter) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\splitter.sys "Microsoft Kernel-DLS-Synthesizer" (DMusic) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\DMusic.sys "Microsoft Kernel-DRM-Audioentschlüsselung" (drmkaud) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\drmkaud.sys "Microsoft Kernel-Echounterdrückung" (aec) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\aec.sys "Microsoft Kernel-Systemaudiogerät" (sysaudio) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\sysaudio.sys "Microsoft Kernel-Waveaudiomixer" (kmixer) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\kmixer.sys "Microsoft Proxy für Streaming Clock" (MSPCLOCK) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\MSPCLOCK.sys "Microsoft Proxy für Streaming Quality Manager" (MSPQM) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\MSPQM.sys "Microsoft Streaming Service Proxy" (MSKSSRV) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\MSKSSRV.sys "Microsoft UAA-Bustreiber für High Definition Audio" (HDAudBus) - "Windows (R) Server 2003 DDK provider" - C:\WINDOWS\System32\DRIVERS\HDAudBus.sys "Microsoft USB-Druckerklasse" (usbprint) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\usbprint.sys "Microsoft-Systemverwaltungs-BIOS-Treiber" (mssmbios) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\mssmbios.sys "Miniporttreiber für erweiterten Microsoft USB 2.0-Hostcontroller" (usbehci) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\usbehci.sys "Miniporttreiber für Microsoft USB Open Host-Controller" (usbohci) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\usbohci.sys "Miniporttreiber für universellen Microsoft USB-Hostcontroller" (usbuhci) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\usbuhci.sys "mnmdd" (mnmdd) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\mnmdd.sys "Modem" (Modem) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Modem.sys "Mouse Suite Driver" (pelmouse) - "Primax Electronics Ltd." - C:\WINDOWS\System32\DRIVERS\pelmouse.sys "MRXSMB" (MRxSmb) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\mrxsmb.sys "Msfs" (Msfs) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Msfs.sys "Mup" (Mup) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Mup.sys "NDIS-Benutzermodus-E/A-Protokoll" (Ndisuio) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ndisuio.sys "NDIS-Systemtreiber" (NDIS) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\NDIS.sys "NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller" (yukonwxp) - "Marvell" - C:\WINDOWS\System32\DRIVERS\yk51x86.sys "NDProxy" (NDProxy) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\NDProxy.sys "NetBios über TCP/IP" (NetBT) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\netbt.sys "NetBIOS-Schnittstelle" (NetBIOS) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\netbios.sys "Npfs" (Npfs) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Npfs.sys "Ntfs" (Ntfs) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Ntfs.sys "Null" (Null) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Null.sys "nv" (nv) - "NVIDIA Corporation" - C:\WINDOWS\System32\DRIVERS\nv4_mini.sys "Parallelanschluss (direkt)" (Raspti) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\raspti.sys "Partitions-Manager" (PartMgr) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\PartMgr.sys "PCI-Bus-Treiber" (PCI) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\pci.sys "PCIDump" (PCIDump) - ? - C:\WINDOWS\system32\drivers\PCIDump.sys (File not found) "PCIIde" (PCIIde) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\pciide.sys "PDCOMP" (PDCOMP) - ? - C:\WINDOWS\system32\drivers\PDCOMP.sys (File not found) "PDFRAME" (PDFRAME) - ? - C:\WINDOWS\system32\drivers\PDFRAME.sys (File not found) "PDRELI" (PDRELI) - ? - C:\WINDOWS\system32\drivers\PDRELI.sys (File not found) "PDRFRAME" (PDRFRAME) - ? - C:\WINDOWS\system32\drivers\PDRFRAME.sys (File not found) "pmem" (pmem) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\pmemnt.sys "PnP-ISA/EISA-Bus-Treiber" (isapnp) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\isapnp.sys "Protokoll für ATM ARP-Client" (Atmarpc) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\atmarpc.sys "Prozessortreiber" (Processor) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\processr.sys "PxHelp20" (PxHelp20) - "Sonic Solutions" - C:\WINDOWS\System32\Drivers\PxHelp20.sys "QoS-Paketplaner" (PSched) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\psched.sys "RAS-IP-ARP-Treiber" (Wanarp) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\wanarp.sys "RAS-NDIS-TAPI-Treiber" (NdisTapi) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ndistapi.sys "RAS-NDIS-WAN-Treiber" (NdisWan) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ndiswan.sys "Rdbss" (Rdbss) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\rdbss.sys "RDPCDD" (RDPCDD) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\RDPCDD.sys "RDPWD" (RDPWD) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\RDPWD.sys "Redirector für WebDav-Client" (MRxDAV) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\mrxdav.sys "Remotezugriff-PPPOE-Treiber" (RasPppoe) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\raspppoe.sys "Secdrv" (Secdrv) - "Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K." - C:\WINDOWS\System32\DRIVERS\secdrv.sys "Serenum-Filtertreiber" (serenum) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\serenum.sys "Service for Realtek HD Audio (WDM)" (IntcAzAudAddService) - "Realtek Semiconductor Corp." - C:\WINDOWS\System32\drivers\RtkHDAud.sys "Sfloppy" (Sfloppy) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Sfloppy.sys "Software-Bus-Treiber" (swenum) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\swenum.sys "Srv" (Srv) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\srv.sys "ssmdrv" (ssmdrv) - "Avira GmbH" - C:\WINDOWS\System32\DRIVERS\ssmdrv.sys "SSPORT" (SSPORT) - ? - C:\WINDOWS\system32\Drivers\SSPORT.sys (File not found) "Standard-IDE/ESDI-Festplattencontroller" (atapi) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\atapi.sys "Standardpaketklassifizierung" (Gpc) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\msgpc.sys "Tastaturklassentreiber" (Kbdclass) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\kbdclass.sys "TCP/IP-Protokolltreiber" (Tcpip) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\tcpip.sys "TDPIPE" (TDPIPE) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\TDPIPE.sys "TDTCP" (TDTCP) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\TDTCP.sys "Team MFP Comm Driver" (DgiVecp) - "DeviceGuys, Inc." - C:\WINDOWS\System32\Drivers\DgiVecp.sys "Terminal-Gerätetreiber" (TermDD) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\termdd.sys "Treiber für automatische RAS-Verbindung" (RasAcd) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\rasacd.sys "Treiber für die Verwaltung logischer Datenträger" (dmio) - "Microsoft Corp., Veritas Software" - C:\WINDOWS\System32\drivers\dmio.sys "Treiber für direkte Parallelverbindung" (Ptilink) - "Parallel Technologies, Inc." - C:\WINDOWS\System32\DRIVERS\ptilink.sys "Treiber für IPX-Verkehrsweiterleitung" (NwlnkFwd) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\nwlnkfwd.sys "Treiber für Microsoft WINMM-WDM-Audiokompatibilität" (wdmaud) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\wdmaud.sys "Treiber für parallelen Anschluss" (Parport) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\parport.sys "Treiber für seriellen Anschluss" (Serial) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\serial.sys "Treiber für Terminalserver-Geräteumleitung" (rdpdr) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\rdpdr.sys "Treiber für Volume-Manager" (Ftdisk) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ftdisk.sys "tvtfilter" (tvtfilter) - "Lenovo" - C:\WINDOWS\System32\DRIVERS\tvtfilter.sys "tvtumon" (tvtumon) - "Lenovo" - C:\WINDOWS\System32\DRIVERS\tvtumon.sys "USB Mouse Low Filter Driver" (pelusblf) - "Primax Electronics Ltd." - C:\WINDOWS\System32\DRIVERS\pelusblf.sys "USB-Massenspeichertreiber" (USBSTOR) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS "USB-Scannertreiber" (usbscan) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\usbscan.sys "USB2-aktivierter Hub" (usbhub) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\usbhub.sys "VGA-Anzeigecontroller." (VgaSave) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\vga.sys "VolSnap" (VolSnap) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\VolSnap.sys "WAN-Miniport (L2TP)" (Rasl2tp) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\rasl2tp.sys "WAN-Miniport (PPTP)" (PptpMiniport) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\raspptp.sys "WDICA" (WDICA) - ? - C:\WINDOWS\system32\drivers\WDICA.sys (File not found) "Winbond Trusted Platform Module" (TPM) - "Winbond Electronics Corp." - C:\WINDOWS\System32\DRIVERS\tpm.sys "Windows Driver Foundation - User-mode Driver Framework Platform Driver" (WudfPf) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\WudfPf.sys "Windows Driver Foundation - User-mode Driver Framework Reflector" (WudfRd) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\wudfrd.sys "Windows Socket 2.0 Non-IFS Service Provider Support Environment" (WS2IFSL) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\ws2ifsl.sys "Übersetzer für IP-Netzwerkadressen" (IpNat) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ipnat.sys [Explorer] -----( HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved )----- {BDEADF00-C265-11d0-BCED-00A0C90AB50F} "Web Folders" - "Microsoft Corporation" - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Web Folders\MSONSEXT.DLL -----( HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components )----- {7790769C-0471-11d2-AF11-00C04FA35D02} "Adressbuch 6" - "Microsoft Corporation" - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install >{60B49E34-C7CC-11D0-8953-00A0C90347FF} "Browser Customizations" - "Microsoft Corporation" - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP >{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS "Browseranpassungen" - "Microsoft Corporation" - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP <{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} "IE7 Uninstall Stub" - "Microsoft Corporation" - C:\WINDOWS\system32\ieudinit.exe >{26923b43-4d38-484f-9b9e-de460746276c} "Internet Explorer" - "Microsoft Corporation" - %systemroot%\system32\shmgrate.exe OCInstallUserConfigIE {89820200-ECBD-11cf-8B85-00AA005B4383} "Internet Explorer" - "Microsoft Corporation" - C:\WINDOWS\system32\ie4uinit.exe -BaseSettings {44BBA840-CC51-11CF-AAFA-00AA00B6015C} "Microsoft Outlook Express 6" - "Microsoft Corporation" - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} "Microsoft Windows Media Player" - "Microsoft Corporation" - C:\WINDOWS\inf\unregmp2.exe /ShowWMP {6BF52A52-394A-11d3-B153-00C04F79FAA6} "Microsoft Windows Media Player" - "Microsoft Corporation" - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp11.inf,PerUserStub {44BBA842-CC51-11CF-AAFA-00AA00B6015B} "NetMeeting 3.01" - "Microsoft Corporation" - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT >{881dd1c5-3dcf-431b-b061-f3f88e8be88a} "Outlook Express" - "Microsoft Corporation" - %systemroot%\system32\shmgrate.exe OCInstallUserConfigOE {89B4C1CD-B018-4511-B0A1-5476DBF70820} "StubPath" - "Microsoft Corporation" - c:\WINDOWS\system32\Rundll32.exe c:\WINDOWS\system32\mscories.dll,Install {2C7339CF-2B09-4501-B3F3-F3508C9228ED} "Themes Setup" - "Microsoft Corporation" - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll {89820200-ECBD-11cf-8B85-00AA005B4340} "Windows Desktop-Update" - "Microsoft Corporation" - regsvr32.exe /s /n /i:U shell32.dll {5945c046-1e7d-11d1-bc44-00c04fd912be} "Windows Messenger 4.7" - "Microsoft Corporation" - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser -----( HKLM\Software\Classes\Folder\shellex\ColumnHandlers )----- {F9DB5320-233E-11D1-9F84-707F02C10627} "PDF Shell Extension" - "Adobe Systems, Inc." - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\PDFShell.dll {0D2E74C4-3C34-11d2-A27E-00C04FC30871} "{0D2E74C4-3C34-11d2-A27E-00C04FC30871}" - "Microsoft Corporation" - C:\WINDOWS\system32\SHELL32.dll {24F14F01-7B1C-11d1-838f-0000F80461CF} "{24F14F01-7B1C-11d1-838f-0000F80461CF}" - "Microsoft Corporation" - C:\WINDOWS\system32\SHELL32.dll {24F14F02-7B1C-11d1-838f-0000F80461CF} "{24F14F02-7B1C-11d1-838f-0000F80461CF}" - "Microsoft Corporation" - C:\WINDOWS\system32\SHELL32.dll {66742402-F9B9-11D1-A202-0000F81FEDEE} "{66742402-F9B9-11D1-A202-0000F81FEDEE}" - "Microsoft Corporation" - C:\WINDOWS\system32\SHELL32.dll -----( HKLM\Software\Classes\Protocols\Filter )----- {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} "AP Class Install Handler filter" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll {8f6b0360-b80d-11d0-a9b3-006097942311} "AP encoding/decoding Filters" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll {8f6b0360-b80d-11d0-a9b3-006097942311} "AP encoding/decoding Filters" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll {8f6b0360-b80d-11d0-a9b3-006097942311} "AP encoding/decoding Filters" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll {1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" - "Microsoft Corporation" - C:\WINDOWS\system32\mscoree.dll {1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" - "Microsoft Corporation" - C:\WINDOWS\system32\mscoree.dll {1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" - "Microsoft Corporation" - C:\WINDOWS\system32\mscoree.dll {733AC4CB-F1A4-11d0-B951-00A0C90312E1} "WebView MIME Filter" - "Microsoft Corporation" - C:\WINDOWS\system32\SHELL32.dll -----( HKLM\Software\Classes\Protocols\Handler )----- {3dd53d40-7b8b-11D0-b013-00aa0059ce02} "CDL: Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll {12D51199-0DB5-46FE-A120-47A3D7D937CC} "DVD: Pluggable Protocol" - "Microsoft Corporation" - C:\WINDOWS\system32\msvidctl.dll {79eac9e7-baf9-11ce-8c82-00aa004ba90b} "file:, local: Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll {79eac9e7-baf9-11ce-8c82-00aa004ba90b} "file:, local: Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll {79eac9e3-baf9-11ce-8c82-00aa004ba90b} "ftp: Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll {79eac9e4-baf9-11ce-8c82-00aa004ba90b} "gopher: Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll {79eac9e2-baf9-11ce-8c82-00aa004ba90b} "http: Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll {79eac9e5-baf9-11ce-8c82-00aa004ba90b} "https: Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll {05300401-BCBC-11d0-85E3-00C04FD85AB4} "MHTML Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\inetcomm.dll {3050F406-98B5-11CF-BB82-00AA00BDCE0B} "Microsoft HTML About Pluggable Protocol" - "Microsoft Corporation" - C:\WINDOWS\system32\mshtml.dll {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} "Microsoft HTML Javascript Pluggable Protocol" - "Microsoft Corporation" - C:\WINDOWS\system32\mshtml.dll {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} "Microsoft HTML Javascript Pluggable Protocol" - "Microsoft Corporation" - C:\WINDOWS\system32\mshtml.dll {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} "Microsoft HTML Mailto Pluggable Protocol" - "Microsoft Corporation" - C:\WINDOWS\system32\mshtml.dll {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} "Microsoft HTML Resource Pluggable Protocol" - "Microsoft Corporation" - C:\WINDOWS\system32\mshtml.dll {76E67A63-06E9-11D2-A840-006008059382} "Microsoft HTML Resource Pluggable Protocol" - "Microsoft Corporation" - C:\WINDOWS\system32\mshtml.dll {9D148291-B9C8-11D0-A4CC-0000F80149F6} "Microsoft InfoTech Protocols for IE 4.0" - "Microsoft Corporation" - C:\WINDOWS\system32\itss.dll {9D148291-B9C8-11D0-A4CC-0000F80149F6} "Microsoft InfoTech Protocols for IE 4.0" - "Microsoft Corporation" - C:\WINDOWS\system32\itss.dll {79eac9e6-baf9-11ce-8c82-00aa004ba90b} "mk: Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} "TV: Pluggable Protocol" - "Microsoft Corporation" - C:\WINDOWS\system32\msvidctl.dll {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} "WiaProtocol Class" - "Microsoft Corporation" - C:\WINDOWS\system32\wiascr.dll -----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler )----- {438755C2-A8BA-11D1-B96B-00A0C90312E1} "Browseui preloader" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {8C7461EF-2B13-11d2-BE35-3078302C2030} "Component Categories cache daemon" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll -----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks )----- {AEB6717E-7E19-11d0-97EE-00C04FD91972} "URL Exec Hook" - "Microsoft Corporation" - C:\WINDOWS\system32\shell32.dll -----( HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved )----- {01E04581-4EEE-11d0-BFE9-00AA005B4383} "&Adresse" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {F2CF5485-4E02-4f68-819C-B92DE9277049} "&Links" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {32714800-2E5F-11d0-8B85-00AA0044F941} "&Nach Personen..." - "Microsoft Corporation" - C:\Programme\Outlook Express\wabfind.dll {23170F69-40C1-278A-1000-000100020000} "7-Zip Shell Extension" - "Igor Pavlov" - C:\Dokumente und Einstellungen\User\Desktop\7-Zip\7-zip.dll {7e653215-fa25-46bd-a339-34a2790f3cb7} "Accessible" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {88C6C381-2E85-11D0-94DE-444553540000} "ActiveX Cache Folder" - "Microsoft Corporation" - C:\WINDOWS\system32\occache.dll {A08C11D2-A228-11d0-825B-00AA005B4383} "Address EditBox" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {85BBD920-42A0-1069-A2E4-08002B30309D} "Aktenkoffer" - "Microsoft Corporation" - C:\WINDOWS\system32\syncui.dll {875CB1A1-0F29-45de-A1AE-CFB4950D0B78} "Audio Media Properties Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\shmedia.dll {91EA3F8B-C99B-11d0-9815-00C04FD91972} "Augmented Shell Folder" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {6413BA2C-B461-11d1-A18A-080036B11A03} "Augmented Shell Folder 2" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {2559a1f3-21d7-11d4-bdaf-00c04f60b9f0} "Ausführen..." - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll {5F327514-6C5E-4d60-8F16-D07FA08A78ED} "Auto Update Property Sheet Extension" - "Microsoft Corporation" - C:\WINDOWS\system32\wuaucpl.cpl {00E7B358-F65B-4dcf-83DF-CD026B94BFD4} "Automatische Diashowwiedergabe der Shell" - "Microsoft Corporation" - C:\WINDOWS\system32\shimgvw.dll {87D62D94-71B3-4b9a-9489-5FE6850DC73E} "Avi Properties Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\shmedia.dll {F61FFEC1-754F-11d0-80CA-00AA005B4383} "BandProxy" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {7A9D77BD-5403-11d2-8785-2E0420524153} "Benutzerkonten" - "Microsoft Corporation" - C:\WINDOWS\system32\netplwiz.dll {add36aa8-751a-4579-a266-d66f5202ccbb} "Bestellung von Abzügen über das Internet" - "Microsoft Corporation" - C:\WINDOWS\system32\netplwiz.dll {67EA19A0-CCEF-11d0-8024-00C04FD75D13} "CDF Extension Copy Hook" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll {7D559C10-9FE9-11d0-93F7-00AA0059CE02} "Code Download Agent" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll {BD472F60-27FA-11cf-B8B4-444553540000} "Compressed (zipped) Folder Right Drag Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\zipfldr.dll {888DCA60-FC0A-11CF-8F0F-00C04FD7D062} "Compressed (zipped) Folder SendTo Target" - "Microsoft Corporation" - C:\WINDOWS\system32\zipfldr.dll {E88DCCE0-B7B3-11d1-A9F0-00AA0060FA31} "CompressedFolder" - "Microsoft Corporation" - C:\WINDOWS\system32\zipfldr.dll {E6CC6978-6B6E-11D0-BECA-00C04FD940BE} "ConnectionAgent" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll {42071714-76d4-11d1-8b24-00a0c9068ff3} "CPL-Erweiterung für Anzeigeverschiebung" - ? - (File not found | COM-object registry key not found) {42071713-76d4-11d1-8b24-00a0c9068ff3} "CPL-Erweiterung für Bildschirme" - "Microsoft Corporation" - C:\WINDOWS\system32\deskmon.dll {42071712-76d4-11d1-8b24-00a0c9068ff3} "CPL-Erweiterung für Grafikkarten" - "Microsoft Corporation" - C:\WINDOWS\system32\deskadp.dll {7444C717-39BF-11D1-8CD9-00C04FC29D45} "CryptPKO Class" - "Microsoft Corporation" - C:\WINDOWS\system32\cryptext.dll {7444C719-39BF-11D1-8CD9-00C04FC29D45} "CryptSig Class" - "Microsoft Corporation" - C:\WINDOWS\system32\cryptext.dll {6935DB93-21E8-4ccc-BEB9-9FE3C77A297A} "Custom MRU AutoCompleted List" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {CFCCC7A0-A282-11D1-9082-006008059382} "Darwin App Publisher" - "Microsoft Corporation" - C:\WINDOWS\system32\appwiz.cpl {ECCDF543-45CC-11CE-B9BF-0080C87CDBA6} "DfsShell Class" - "Microsoft Corporation" - C:\WINDOWS\system32\dfsshlex.dll {62AE1F9A-126A-11D0-A14B-0800361B1103} "Directory Context Menu Verbs" - "Microsoft Corporation" - C:\WINDOWS\system32\dsuiext.dll {163FDC20-2ABC-11d0-88F0-00A024AB2DBB} "Directory Object Find" - "Microsoft Corporation" - C:\WINDOWS\system32\dsquery.dll {0D45D530-764B-11d0-A1CA-00AA00C16E65} "Directory Property UI" - "Microsoft Corporation" - C:\WINDOWS\system32\dsuiext.dll {8A23E65E-31C2-11d0-891C-00A024AB2DBB} "Directory Query UI" - "Microsoft Corporation" - C:\WINDOWS\system32\dsquery.dll {F020E586-5264-11d1-A532-0000F8757D7E} "Directory Start/Search Find" - "Microsoft Corporation" - C:\WINDOWS\system32\dsquery.dll {f92e8c40-3d33-11d2-b1aa-080036a75b03} "Display TroubleShoot CPL Extension" - "Microsoft Corporation" - C:\WINDOWS\system32\deskperf.dll {22BF0C20-6DA7-11D0-B373-00A0C9034938} "Download Status" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {60fd46de-f830-4894-a628-6fa81bc0190d} "Drop-Zielobjekt für den Fotodruck-Assistent" - "Microsoft Corporation" - C:\WINDOWS\system32\photowiz.dll {2559a1f5-21d7-11d4-bdaf-00c04f60b9f0} "E-Mail" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll {00022613-0000-0000-C000-000000000046} "Eigenschaften für Multimediadatei" - "Microsoft Corporation" - C:\WINDOWS\system32\mmsys.cpl {1F2E5C40-9550-11CE-99D2-00AA006E086C} "Erweiterung der Sicherheitsshell" - "Microsoft Corporation" - C:\WINDOWS\system32\rshx32.dll {4E40F770-369C-11d0-8922-00A024AB2DBB} "Erweiterung der Sicherheitsshell" - "Microsoft Corporation" - C:\WINDOWS\system32\dssec.dll {F37C5810-4D3F-11d0-B4BF-00AA00BBB723} "Erweiterung der Sicherheitsshell" - "Microsoft Corporation" - C:\WINDOWS\system32\rshx32.dll {59099400-57FF-11CE-BD94-0020AF85B590} "Erweiterung für Datenträgerkopien" - "Microsoft Corporation" - C:\WINDOWS\system32\diskcopy.dll {EFA24E64-B078-11d0-89E4-00C04FC9E26E} "Explorer-Band" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll {692F0339-CBAA-47e6-B5B5-3B84DB604E87} "Extensions Manager Folder" - "Microsoft Corporation" - C:\WINDOWS\system32\extmgr.dll {7A80E4A8-8005-11D2-BCF8-00C04F72C717} "ExtractIcon Class" - "Microsoft Corporation" - C:\WINDOWS\System32\mmcshext.dll {EFA24E61-B078-11d0-89E4-00C04FC9E26E} "Favorites Band" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll {1D2680C9-0E2A-469d-B787-065558BC7D43} "Fusion Cache" - "Microsoft Corporation" - c:\WINDOWS\system32\mscoree.dll {3F30C968-480A-4C6C-862D-EFC0897BB84B} "GDI+ Dateiminiaturansicht-Extrahierungsprogramm" - "Microsoft Corporation" - C:\WINDOWS\system32\shimgvw.dll {D6277990-4C6A-11CF-8D87-00AA0060F5BF} "Geplante Tasks" - "Microsoft Corporation" - C:\WINDOWS\system32\mstask.dll {EF8AD2D1-AE36-11D1-B2D2-006097DF8C11} "Global Folder Settings" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {2559a1f1-21d7-11d4-bdaf-00c04f60b9f0} "Hilfe und Support" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll {FF393560-C2A7-11CF-BFF4-444553540000} "History" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {EFA24E62-B078-11d0-89E4-00C04FC9E26E} "History Band" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll {EAB841A0-9550-11cf-8C16-00805F1408F3} "HTML-Extrahierungsprogramm" - "Microsoft Corporation" - C:\WINDOWS\system32\shimgvw.dll {88895560-9AA2-1069-930E-00AA0030EBC8} "HyperTerminal Icon Ext" - "Hilgraeve, Inc." - C:\WINDOWS\system32\hticons.dll {DBCE2480-C732-101B-BE72-BA78E9AD5B27} "ICC-Profil" - "Microsoft Corporation" - C:\WINDOWS\system32\icmui.dll {675F097E-4C4D-11D0-B6C1-0800091AA605} "ICM-Druckerverwaltung" - "Microsoft Corporation" - C:\WINDOWS\system32\icmui.dll {5DB2625A-54DF-11D0-B6C4-0800091AA605} "ICM-Monitorverwaltung" - "Microsoft Corporation" - C:\WINDOWS\System32\icmui.dll {176d6597-26d3-11d1-b350-080036a75b03} "ICM-Scannerverwaltung" - "Microsoft Corporation" - C:\WINDOWS\system32\icmui.dll {3028902F-6374-48b2-8DC6-9725E775B926} "IE AutoComplete" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {73CFD649-CD48-4fd8-A272-2070EA56526B} "IE BandProxy" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {FDE7673D-2E19-4145-8376-BBD58C4BC7BA} "IE Custom MRU AutoCompleted List" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {1C1EDB47-CE22-4bbb-B608-77B48F83C823} "IE Fade Task" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {6CF48EF8-44CD-45d2-8832-A16EA016311B} "IE IShellFolderBand" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {4B78D326-D922-44f9-AF2A-07805C2A3560} "IE Menu Band" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {205D7A97-F16D-4691-86EF-F3075DCCA57D} "IE Menu Desk Bar" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {44C76ECD-F7FA-411c-9929-1B77BA77F524} "IE Menu Site" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {07C45BB1-4A8C-4642-A1F5-237E7215FF66} "IE Microsoft BrowserBand" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {6038EF75-ABFC-4e59-AB6F-12D397F6568D} "IE Microsoft History AutoComplete List" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {B31C5FAE-961F-415b-BAF0-E697A5178B94} "IE Microsoft Multiple AutoComplete List Container" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {9D958C62-3954-4b44-8FAB-C4670C1DB4C2} "IE Microsoft Shell Folder AutoComplete List" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {98FF6D4B-6387-4b0a-8FBD-C5C4BB17B4F8} "IE MRU AutoComplete List" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {43886CD5-6529-41c4-A707-7B3C92C05E68} "IE Navigation Bar" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {F83DAC1C-9BB9-4f2b-B619-09819DA81B0E} "IE Registry Tree Options Utility" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {9A096BB5-9DC3-4D1C-8526-C3CBF991EA4E} "IE RSS Feeds Folder" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {30D02401-6A81-11d0-8274-00C04FD5AE38} "IE Search Band" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {E6EE9AAC-F76B-4947-8260-A9F136138E11} "IE Shell Band Site Menu" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {BFAD62EE-9D54-4b2a-BF3B-76F90697BD2A} "IE Shell Rebar BandSite" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {6B4ECC4F-16D1-4474-94AB-5A763F2A54AE} "IE Tracking Shell Menu" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {FAC3CBF6-8697-43d0-BAB9-DCD1FCE19D75} "IE User Assist" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {A2B0DD40-CC59-11d0-A3A5-00C04FD706EC} "IE4 Suite-Begrüßungsbildschirm" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll {169A0691-8DF9-11d1-A1C4-00C04FD75D13} "In-pane search" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {0B124F8F-91F0-11D1-B8B5-006008059382} "Installed Apps Enumerator" - "Microsoft Corporation" - C:\WINDOWS\system32\appwiz.cpl {2559a1f4-21d7-11d4-bdaf-00c04f60b9f0} "Internet" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll {871C5380-42A0-1069-A2EA-08002B30309D} "Internet Name Space" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {FBF23B40-E3F0-101B-8488-00AA003E56F8} "Internet Shortcut" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {131A6951-7F78-11D0-A979-00C04FD705A2} "ISFBand OC" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll {0CD7A5C0-9F37-11CE-AE65-08002B2E1262} "Kabinettdatei" - "Microsoft Corporation" - C:\WINDOWS\system32\cabview.dll {513D916F-2A8E-4F51-AEAB-0CBC76FB1AF8} "Kompatibilitätsseite" - "Microsoft Corporation" - C:\WINDOWS\system32\SlayerXP.dll {853FE2B1-B769-11d0-9C4E-00C04FB6C6FA} "Kontextmenü für die Verschlüsselung" - ? - (File not found | COM-object registry key not found) {143A62C8-C33B-11D1-84FE-00C04FA34A14} "Microsoft Agent Character Property Sheet Handler" - "Microsoft Corporation" - C:\WINDOWS\msagent\agentpsh.dll {A5E46E3A-8849-11D1-9D8C-00C04FC99D61} "Microsoft Browser Architecture" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll {BC476F4C-D9D7-4100-8D4E-E043F6DEC409} "Microsoft Browser Architecture" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {7BA4C742-9E81-11CF-99D3-00AA004AE837} "Microsoft BrowserBand" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {7988B573-EC89-11cf-9C00-00AA00A14F56} "Microsoft Disk Quota UI" - "Microsoft Corporation" - C:\WINDOWS\system32\dskquoui.dll {6A205B57-2567-4A2C-B881-F787FAB579A3} "Microsoft DocProp Inplace Calendar Control" - "Microsoft Corporation" - C:\WINDOWS\system32\docprop2.dll {0EEA25CC-4362-4A12-850B-86EE61B0D3EB} "Microsoft DocProp Inplace Droplist Combo Control" - "Microsoft Corporation" - C:\WINDOWS\system32\docprop2.dll {A9CF0EAE-901A-4739-A481-E35B73E47F6D} "Microsoft DocProp Inplace Edit Box Control" - "Microsoft Corporation" - C:\WINDOWS\system32\docprop2.dll {8EE97210-FD1F-4B19-91DA-67914005F020} "Microsoft DocProp Inplace ML Edit Box Control" - "Microsoft Corporation" - C:\WINDOWS\system32\docprop2.dll {28F8A4AC-BBB3-4D9B-B177-82BFC914FA33} "Microsoft DocProp Inplace Time Control" - "Microsoft Corporation" - C:\WINDOWS\system32\docprop2.dll {883373C3-BF89-11D1-BE35-080036B11A03} "Microsoft DocProp Shell Ext" - "Microsoft Corporation" - C:\WINDOWS\system32\docprop2.dll {63da6ec0-2e98-11cf-8d82-444553540000} "Microsoft FTP Folder" - "Microsoft Corporation" - C:\WINDOWS\system32\msieftp.dll {00BB2764-6A77-11D0-A535-00C04FD7D062} "Microsoft History AutoComplete List" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {5E6AB780-7743-11CF-A12B-00AA004AE837} "Microsoft Internet Toolbar" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {00BB2765-6A77-11D0-A535-00C04FD7D062} "Microsoft Multiple AutoComplete List Container" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {2206CDB2-19C1-11D1-89E0-00C04FD7A829} "Microsoft OLE DB Service Component Data Links" - "Microsoft Corporation" - C:\Programme\Gemeinsame Dateien\System\Ole DB\oledb32.dll {03C036F1-A186-11D0-824A-00AA005B4383} "Microsoft Shell Folder AutoComplete List" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {3C374A40-BAE4-11CF-BF7D-00AA006946EE} "Microsoft Url History Service" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {CFBFAE00-17A6-11D0-99CB-00C04FD64497} "Microsoft Url Search Hook" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {A6FD9E45-6E44-43f9-8644-08598F5A74D9} "Midi Properties Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\shmedia.dll {6756A641-DE71-11d0-831B-00AA005B4383} "MRU AutoComplete List" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {ECF03A33-103D-11d2-854D-006008059367} "MyDocs Copy Hook" - "Microsoft Corporation" - C:\WINDOWS\system32\mydocs.dll {ECF03A32-103D-11d2-854D-006008059367} "MyDocs Drop Target" - "Microsoft Corporation" - C:\WINDOWS\system32\mydocs.dll {4a7ded0a-ad25-11d0-98a8-0800361b1103} "MyDocs menu and properties" - "Microsoft Corporation" - C:\WINDOWS\system32\mydocs.dll {7007ACC7-3202-11D1-AAD2-00805FC1270E} "Netzwerkverbindungen" - "Microsoft Corporation" - C:\WINDOWS\system32\NETSHELL.dll {992CFFA0-F557-101A-88EC-00DD010CCC48} "Netzwerkverbindungen" - "Microsoft Corporation" - C:\WINDOWS\system32\NETSHELL.dll {10CFC467-4392-11d2-8DB4-00C04FA31A66} "Offline Files Folder Options" - "Microsoft Corporation" - C:\WINDOWS\System32\cscui.dll {750fdf0e-2a26-11d1-a3ea-080036587f03} "Offline Files Menu" - "Microsoft Corporation" - C:\WINDOWS\System32\cscui.dll {3EA48300-8CF6-101B-84FB-666CCB9BCD32} "OLE-Eigenschaftenseite für Dokumente" - "Microsoft Corporation" - C:\WINDOWS\system32\docprop.dll {AFDB1F70-2A4C-11d2-9039-00C04F8EEB3E} "Ordner 'Offlinedateien'" - "Microsoft Corporation" - C:\WINDOWS\System32\cscui.dll {58f1f272-9240-4f51-b6d4-fd63d1618591} "Passport-Assistent" - "Microsoft Corporation" - C:\WINDOWS\system32\netplwiz.dll {41E300E0-78B6-11ce-849B-444553540000} "PlusPack CPL-Erweiterung" - "Microsoft Corporation" - C:\WINDOWS\system32\themeui.dll {35786D3C-B075-49b9-88DD-029876E11C01} "Portable Devices" - "Microsoft Corporation" - C:\WINDOWS\system32\wpdshext.dll {D6791A63-E7E2-4fee-BF52-5DED8E86E9B8} "Portable Devices Menu" - "Microsoft Corporation" - C:\WINDOWS\system32\wpdshext.dll {640167b4-59b0-47a6-b335-a6b3c0695aea} "Portable Media Devices" - "Microsoft Corporation" - C:\WINDOWS\system32\Audiodev.dll {D8BD2030-6FC9-11D0-864F-00AA006809D9} "PostAgent" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll {9DB7A13C-F208-4981-8353-73CC61AE2783} "Previous Versions" - "Microsoft Corporation" - C:\WINDOWS\system32\twext.dll {596AB062-B4D2-4215-9F74-E9109B0A8153} "Previous Versions Property Page" - "Microsoft Corporation" - C:\WINDOWS\system32\twext.dll {AF4F6510-F982-11d0-8595-00AA004CD6D8} "Registry Tree Options Utility" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {F0152790-D56E-4445-850E-4F3117DB740C} "Remote Sessions CPL Extension" - "Microsoft Corporation" - C:\WINDOWS\system32\remotepg.dll {5E44E225-A408-11CF-B581-008029601108} "Roxio DragToDisc Shell Extension" - "Roxio" - C:\Programme\Lenovo\Drag-to-Disc\Shellex.dll {3F953603-1008-4f6e-A73A-04AAC7A992F1} "Scanner und Kameras" - "Microsoft Corporation" - C:\WINDOWS\system32\wiashext.dll {83bbcbf3-b28a-4919-a5aa-73027445d672} "Scanner und Kameras" - "Microsoft Corporation" - C:\WINDOWS\system32\wiashext.dll {905667aa-acd6-11d2-8080-00805f6596d2} "Scanner und Kameras" - "Microsoft Corporation" - C:\WINDOWS\system32\wiashext.dll {E211B736-43FD-11D1-9EFB-0000F8757FCD} "Scanner und Kameras" - "Microsoft Corporation" - C:\WINDOWS\system32\wiashext.dll {FB0C9C8A-6C50-11D1-9F1D-0000F8757FCD} "Scanner und Kameras" - "Microsoft Corporation" - C:\WINDOWS\system32\wiashext.dll {DD2110F0-9EEF-11cf-8D8E-00AA0060F5BF} "Scheduling UI icon handler" - "Microsoft Corporation" - C:\WINDOWS\system32\mstask.dll {797F1E90-9EDD-11cf-8D8E-00AA0060F5BF} "Scheduling UI property sheet handler" - "Microsoft Corporation" - C:\WINDOWS\system32\mstask.dll {BD84B380-8CA2-1069-AB1D-08000948F534} "Schriftarten" - "Microsoft Corporation" - C:\WINDOWS\system32\fontext.dll {D20EA4E1-3957-11d2-A40B-0C5020524152} "Schriftarten" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll {9461b922-3c5a-11d2-bf8b-00c04fb93661} "Search Assistant OC" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll {9E56BE60-C50F-11CF-9A2C-00A0C90A90CE} "Sendmail service" - "Microsoft Corporation" - C:\WINDOWS\system32\sendmail.dll {9E56BE61-C50F-11CF-9A2C-00A0C90A90CE} "Sendmail service" - "Microsoft Corporation" - C:\WINDOWS\system32\sendmail.dll {2559a1f7-21d7-11d4-bdaf-00c04f60b9f0} "Set Program Access and Defaults" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll {352EC2B7-8B9A-11D1-B8AE-006008059382} "Shell Application Manager" - "Microsoft Corporation" - C:\WINDOWS\system32\appwiz.cpl {0A89A860-D7B1-11CE-8350-444553540000} "Shell Automation Inproc Service" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll {ECD4FC4E-521C-11D0-B792-00A0C90312E1} "Shell Band Site Menu" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {ECD4FC4C-521C-11D0-B792-00A0C90312E1} "Shell DeskBar" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {3CCF8A41-5C85-11d0-9796-00AA00B90ADF} "Shell DeskBarApp" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {E7E4BC40-E76A-11CE-A9BB-00AA004AE837} "Shell DocObject Viewer" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {45AC2688-0253-4ED8-97DE-B5370FA7D48A} "Shell Extension for Malware scanning" - "Avira Operations GmbH & Co. KG" - C:\Programme\Avira\AntiVir Desktop\shlext.dll {60254CA5-953B-11CF-8C96-00AA00B8708C} "Shell Extension For Windows Script Host" - "Microsoft Corporation" - C:\WINDOWS\system32\wshext.dll {E37E2028-CE1A-4f42-AF05-6CEABC4E5D75} "Shell Icon Handler for Application References" - "Microsoft Corporation" - c:\WINDOWS\system32\dfshim.dll {66e4e4fb-f385-4dd0-8d74-a2efd1bc6178} "Shell Image Data Factory" - "Microsoft Corporation" - C:\WINDOWS\system32\shimgvw.dll {eb9b1153-3b57-4e68-959a-a3266bc3d7fe} "Shell Image Property Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\shimgvw.dll {e84fda7c-1d6a-45f6-b725-cb260c236066} "Shell Image Verbs" - "Microsoft Corporation" - C:\WINDOWS\system32\shimgvw.dll {00BB2763-6A77-11D0-A535-00C04FD7D062} "Shell Microsoft AutoComplete" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {9E51E0D0-6E0F-11d2-9601-00C04FA31A86} "Shell properties for a DS object" - "Microsoft Corporation" - C:\WINDOWS\system32\dsquery.dll {ECD4FC4D-521C-11D0-B792-00A0C90312E1} "Shell Rebar BandSite" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {21569614-B795-46b1-85F4-E737A8DC09AD} "Shell Search Band" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {56117100-C0CD-101B-81E2-00AA004AE837} "Shell-Datenauszughandler" - "Microsoft Corporation" - C:\WINDOWS\system32\shscrap.dll {77597368-7b15-11d0-a0c2-080036af3f03} "Shellerweiterung für Webdrucker" - "Microsoft Corporation" - C:\WINDOWS\system32\printui.dll {764BF0E1-F219-11ce-972D-00AA00A14F56} "Shellerweiterungen für die Dateikomprimierung" - ? - (File not found | COM-object registry key not found) {40dd6e20-7c17-11ce-a804-00aa003ca9f6} "Shellerweiterungen für Freigaben" - "Microsoft Corporation" - C:\WINDOWS\system32\ntshrui.dll {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} "Shellerweiterungen für Freigaben" - "Microsoft Corporation" - C:\WINDOWS\system32\ntshrui.dll {59be4990-f85c-11ce-aff7-00aa003ca9f6} "Shellerweiterungen für Microsoft Windows-Netzwerkobjekte" - "Microsoft Corporation" - C:\WINDOWS\system32\ntlanui2.dll {e82a2d71-5b2f-43a0-97b8-81be15854de8} "ShellLink for Application References" - "Microsoft Corporation" - c:\WINDOWS\system32\dfshim.dll {6b33163c-76a5-4b6c-bf21-45de9cd503a1} "Shellobjekt des Webpublishing-Assistenten" - "Microsoft Corporation" - C:\WINDOWS\system32\netplwiz.dll {F5175861-2688-11d0-9C5E-00AA00A45957} "Subscription Folder" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll {ABBE31D0-6DAE-11D0-BECA-00C04FD940BE} "Subscription Mgr" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll {2559a1f0-21d7-11d4-bdaf-00c04f60b9f0} "Suchen" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll {0DF44EAA-FF21-4412-828E-260A8728E7F1} "Taskleiste und Startmenü" - "Microsoft Corporation" - C:\WINDOWS\system32\shell32.dll {7BD29E00-76C1-11CF-9DD0-00A0C9034933} "Temporary Internet Files" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {7BD29E01-76C1-11CF-9DD0-00A0C9034933} "Temporary Internet Files" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {3DC7A020-0ACD-11CF-A9BB-00AA004AE837} "The Internet" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll {acf35015-526e-4230-9596-becbe19f0ac9} "Track Popup Bar" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {E8BB6DC0-6B4E-11d0-92DB-00A0C90C2BD7} "TrayAgent" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll {7376D660-C583-11d0-A3A5-00C04FD706EC} "TridentImageExtractor" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {DD313E04-FEFF-11d1-8ECD-0000F87A470C} "User Assist" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {D20EA4E1-3957-11d2-A40B-0C5020524153} "Verwaltung" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll {40C3D757-D6E4-4b49-BB41-0E5BBEA28817} "Video Media Properties Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\shmedia.dll {c5a40261-cd64-4ccf-84cb-c394da41d590} "Video Thumbnail Extractor" - "Microsoft Corporation" - C:\WINDOWS\system32\shmedia.dll {E4B29F9D-D390-480b-92FD-7DDB47101D71} "Wav Properties Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\shmedia.dll {BDEADF00-C265-11D0-BCED-00A0C90AB50F} "Web Folders" - "Microsoft Corporation" - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Web Folders\MSONSEXT.DLL {07798131-AF23-11d1-9111-00A0C98BA67D} "Web Search" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll {E6FB5E20-DE35-11CF-9C87-00AA005127ED} "WebCheck" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll {7FC0B86E-5FA7-11d1-BC7C-00C04FD929DB} "WebCheck SyncMgr Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll {E3A8BDE6-ABCE-11d0-BC4B-00C04FD929DB} "WebCheckChannelAgent" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll {08165EA0-E946-11CF-9C87-00AA005127ED} "WebCheckWebCrawler" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll {CC6EEFFB-43F6-46c5-9619-51D571967F7D} "Webpublishing-Assistent" - "Microsoft Corporation" - C:\WINDOWS\system32\netplwiz.dll {45670FA8-ED97-4F44-BC93-305082590BFB} "Windows XPS Document Metadata Handler" - "Microsoft Corporation" - C:\WINDOWS\System32\XPSSHHDR.DLL {44121072-A222-48f2-A58A-6D9AD51EBBE9} "Windows XPS Document Thumbnail Handler" - "Microsoft Corporation" - C:\WINDOWS\System32\XPSSHHDR.DLL {2559a1f2-21d7-11d4-bdaf-00c04f60b9f0} "Windows-Sicherheit" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA} "WinRAR" - ? - C:\Dokumente und Einstellungen\User\Eigene Dateien\rarext.dll (File found, but it contains no detailed information) {F1B9284F-E9DC-4e68-9D7E-42362A59F0FD} "WMP Add To Playlist Launcher" - "Microsoft Corporation" - C:\WINDOWS\system32\wmpshell.dll {8DD448E6-C188-4aed-AF92-44956194EB1F} "WMP Burn Audio CD Launcher" - "Microsoft Corporation" - C:\WINDOWS\system32\wmpshell.dll {CE3FB1D1-02AE-4a5f-A6E9-D9F1B4073E6C} "WMP Play As Playlist Launcher" - "Microsoft Corporation" - C:\WINDOWS\system32\wmpshell.dll {9DBD2C50-62AD-11d0-B806-00C04FD706EC} "Zusammenfassungs-Miniaturansichthandler (DOCFILES)" - "Microsoft Corporation" - C:\WINDOWS\system32\shimgvw.dll -----( HKLM\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad )----- {7849596a-48ea-486e-8937-a2a3009f31a9} "PostBootReminder object" - "Microsoft Corporation" - C:\WINDOWS\system32\shell32.dll {fbeb8a05-beee-4442-804e-409d6c4515e9} "ShellFolder for CD Burning" - "Microsoft Corporation" - C:\WINDOWS\system32\SHELL32.dll {35CEC8A3-2BE6-11D2-8773-92E220524153} "SysTray" - "Microsoft Corporation" - C:\WINDOWS\system32\stobject.dll {E6FB5E20-DE35-11CF-9C87-00AA005127ED} "WebCheck" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll {AAA288BA-9A4C-45B0-95D7-94D524869DB5} "WPDShServiceObj Class" - "Microsoft Corporation" - C:\WINDOWS\system32\WPDShServiceObj.dll [Internet Explorer] -----( HKCU\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars )----- {EFA24E64-B078-11D0-89E4-00C04FC9E26E} "Explorer-Band" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll {C4EE31F3-4768-11D2-BE5C-00A0C9A83DA1} "File Search Explorer Band" - "Microsoft Corporation" - C:\WINDOWS\system32\SHELL32.dll -----( HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser )----- <binary data> "ITBar7Layout" - ? - (File not found | COM-object registry key not found) <binary data> "Windows Live Toolbar" - "Microsoft Corporation" - C:\Programme\Windows Live Toolbar\msntb.dll -----( HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks )----- {CFBFAE00-17A6-11D0-99CB-00C04FD64497} "Microsoft Url Search Hook" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll -----( HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units )----- {CAFEEFAC-0015-0000-0016-ABCDEFFEDCBA} "Java Plug-in 1.5.0_16" - "Sun Microsystems, Inc." - C:\Programme\Java\jre1.5.0_16\bin\npjpi150_16.dll / hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_16-windows-i586.cab {8AD9C840-044E-11D1-B3E9-00805F499D93} "Java Plug-in 1.6.0_33" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\npjpi160_33.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab {CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} "Java Plug-in 1.6.0_33" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\npjpi160_33.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} "Java Plug-in 1.6.0_33" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\npjpi160_33.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab {6414512B-B978-451D-A0D8-FCFDF33E833C} "WUWebControl Class" - "Microsoft Corporation" - C:\WINDOWS\system32\wuweb.dll / hxxp://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1231769983625 {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} "{CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7}" - ? - (File not found | COM-object registry key not found) / hxxp://wwwimages.adobe.com/www.adobe.com/products/acrobat/nos/gp.cab {E2883E8F-472F-4FB0-9522-AC9BF37916A7} "{E2883E8F-472F-4FB0-9522-AC9BF37916A7}" - ? - (File not found | COM-object registry key not found) / hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab -----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions )----- {F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} "ClsidExtension" - "Lenovo Group Limited" - C:\Programme\Lenovo\Client Security Solution\tvtpwm_ie_com.dll "Exec" - "Microsoft Corporation" - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe "Messenger" - "Microsoft Corporation" - C:\Programme\Messenger\msmsgs.exe -----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar )----- <binary data> "Windows Live Toolbar" - "Microsoft Corporation" - C:\Programme\Windows Live Toolbar\msntb.dll -----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects )----- {18DF081C-E8AD-4283-A596-FA578C2EBDC3} "Adobe PDF Link Helper" - "Adobe Systems Incorporated" - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll {BF468356-BB7E-42D7-9F15-4F3B9BCFCED2} "IePasswordManagerHelper Class" - "Lenovo Group Limited" - C:\Programme\Lenovo\Client Security Solution\tvtpwm_ie_com.dll {DBC80044-A445-435b-BC74-9C25C1C588A9} "Java(tm) Plug-In 2 SSV Helper" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\jp2ssv.dll {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} "Java(tm) Plug-In SSV Helper" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\ssv.dll {E7E6F031-17CE-4C07-BC86-EABFE594F69C} "JQSIEStartDetectorImpl Class" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} "Windows Live Toolbar Helper" - "Microsoft Corporation" - C:\Programme\Windows Live Toolbar\msntb.dll [Known DLLs] -----( HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs )----- "advapi32" - "Microsoft Corporation" - C:\WINDOWS\system32\advapi32.dll "comdlg32" - "Microsoft Corporation" - C:\WINDOWS\system32\comdlg32.dll "gdi32" - "Microsoft Corporation" - C:\WINDOWS\system32\gdi32.dll "imagehlp" - "Microsoft Corporation" - C:\WINDOWS\system32\imagehlp.dll "kernel32" - "Microsoft Corporation" - C:\WINDOWS\system32\kernel32.dll "lz32" - "Microsoft Corporation" - C:\WINDOWS\system32\lz32.dll "ole32" - "Microsoft Corporation" - C:\WINDOWS\system32\ole32.dll "oleaut32" - "Microsoft Corporation" - C:\WINDOWS\system32\oleaut32.dll "olecli32" - "Microsoft Corporation" - C:\WINDOWS\system32\olecli32.dll "olecnv32" - "Microsoft Corporation" - C:\WINDOWS\system32\olecnv32.dll "olesvr32" - "Microsoft Corporation" - C:\WINDOWS\system32\olesvr32.dll "olethk32" - "Microsoft Corporation" - C:\WINDOWS\system32\olethk32.dll "rpcrt4" - "Microsoft Corporation" - C:\WINDOWS\system32\rpcrt4.dll "shell32" - "Microsoft Corporation" - C:\WINDOWS\system32\shell32.dll "url" - "Microsoft Corporation" - C:\WINDOWS\system32\url.dll "urlmon" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll "user32" - "Microsoft Corporation" - C:\WINDOWS\system32\user32.dll "version" - "Microsoft Corporation" - C:\WINDOWS\system32\version.dll "wininet" - "Microsoft Corporation" - C:\WINDOWS\system32\wininet.dll "wldap32" - "Microsoft Corporation" - C:\WINDOWS\system32\wldap32.dll [LSA Providers] -----( HKLM\SYSTEM\CurrentControlSet\Control\Lsa )----- "Authentication packages" - "Microsoft Corporation" - C:\WINDOWS\system32\msv1_0.dll "Notification packages" - "Microsoft Corporation" - C:\WINDOWS\system32\scecli.dll "Security Packages" - "Microsoft Corporation" - C:\WINDOWS\system32\kerberos.dll "Security Packages" - "Microsoft Corporation" - C:\WINDOWS\system32\msv1_0.dll "Security Packages" - "Microsoft Corporation" - C:\WINDOWS\system32\schannel.dll "Security Packages" - "Microsoft Corporation" - C:\WINDOWS\system32\wdigest.dll -----( HKLM\SYSTEM\CurrentControlSet\Control\SecurityProviders )----- "SecurityProviders" - "Microsoft Corporation" - C:\WINDOWS\system32\msapsspc.dll "SecurityProviders" - "Microsoft Corporation" - C:\WINDOWS\system32\schannel.dll "SecurityProviders" - "Microsoft Corporation" - C:\WINDOWS\system32\digest.dll "SecurityProviders" - "Microsoft Corporation" - C:\WINDOWS\system32\msnsspc.dll [Logon] -----( %AllUsersProfile%\Startmenü\Programme\Autostart )----- "desktop.ini" - ? - C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\desktop.ini -----( %UserProfile%\Startmenü\Programme\Autostart )----- "desktop.ini" - ? - C:\Dokumente und Einstellungen\User\Startmenü\Programme\Autostart\desktop.ini -----( HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run )----- "Akamai NetSession Interface" - "Akamai Technologies, Inc" - "C:\Dokumente und Einstellungen\User\Lokale Einstellungen\Anwendungsdaten\Akamai\netsession_win.exe" "WMPNSCFG" - "Microsoft Corporation" - C:\Programme\Windows Media Player\WMPNSCFG.exe -----( HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon )----- "Shell" - "Microsoft Corporation" - C:\WINDOWS\Explorer.exe "Userinit" - "Microsoft Corporation" - C:\WINDOWS\system32\userinit.exe -----( HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds\rdpwd )----- "StartupPrograms" - "Microsoft Corporation" - C:\WINDOWS\system32\rdpclip.exe -----( HKLM\Software\Microsoft\Windows\CurrentVersion\Run )----- "Adobe ARM" - "Adobe Systems Incorporated" - "C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe" "avgnt" - "Avira Operations GmbH & Co. KG" - "C:\Programme\Avira\AntiVir Desktop\avgnt.exe" /min "cssauth" - "Lenovo Group Limited" - "C:\Programme\Lenovo\Client Security Solution\cssauth.exe" silent "Mouse Suite 98 Daemon" - "Primax Electronics Ltd." - ICO.EXE "RTHDCPL" - "Realtek Semiconductor Corp." - RTHDCPL.EXE "Samsung LBP SM" - "Samsung Electronics." - "C:\WINDOWS\Samsung\LaserSMMgr\ssmmgr.exe" /autorun "SunJavaUpdateSched" - "Sun Microsystems, Inc." - "C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe" "TVT Scheduler Proxy" - "Lenovo Group Limited" - C:\Programme\Gemeinsame Dateien\Lenovo\Scheduler\scheduler_proxy.exe [Network Providers] -----( HKLM\SYSTEM\CurrentControlSet\Control\NetworkProvider\Order )----- "Microsoft Windows-Netzwerk" - "Microsoft Corporation" - C:\WINDOWS\System32\ntlanman.dll "Microsoft-Terminaldienste" - "Microsoft Corporation" - C:\WINDOWS\System32\drprov.dll "Web Client Network" - "Microsoft Corporation" - C:\WINDOWS\System32\davclnt.dll [Print Monitors] -----( HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors )----- "BJ Language Monitor" - "Microsoft Corporation" - C:\WINDOWS\system32\cnbjmon.dll "Local Port" - "Microsoft Corporation" - C:\WINDOWS\system32\localspl.dll "PJL Language Monitor" - "Microsoft Corporation" - C:\WINDOWS\system32\pjlmon.dll "ssgb7 Langmon" - "Samsung Electronics." - C:\WINDOWS\system32\SSGB7MON.DLL "Standard TCP/IP Port" - "Microsoft Corporation" - C:\WINDOWS\system32\tcpmon.dll "SUGE1 Langmon" - "Samsung Electronics." - C:\WINDOWS\system32\SUGE1LMK.DLL "USB Monitor" - "Microsoft Corporation" - C:\WINDOWS\system32\usbmon.dll [Services] -----( HKLM\SYSTEM\CurrentControlSet\Services )----- ".NET Runtime Optimization Service v2.0.50727_X86" (clr_optimization_v2.0.50727_32) - "Microsoft Corporation" - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe "Ablagemappe" (ClipSrv) - "Microsoft Corporation" - C:\WINDOWS\system32\clipsrv.exe "Adobe Flash Player Update Service" (AdobeFlashPlayerUpdateSvc) - "Adobe Systems Incorporated" - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe "Akamai NetSession Interface" (Akamai) - "Akamai Technologies, Inc" - c:\programme\gemeinsame dateien\akamai\netsession_win_4f7fccd.dll "Anmeldedienst" (Netlogon) - "Microsoft Corporation" - C:\WINDOWS\system32\lsass.exe "Anwendungsverwaltung" (AppMgmt) - "Microsoft Corporation" - C:\WINDOWS\System32\appmgmts.dll "Arbeitsstationsdienst" (lanmanworkstation) - "Microsoft Corporation" - C:\WINDOWS\System32\wkssvc.dll "ASP.NET-Zustandsdienst" (aspnet_state) - "Microsoft Corporation" - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe "Ati HotKey Poller" (Ati HotKey Poller) - "ATI Technologies Inc." - C:\WINDOWS\system32\Ati2evxx.exe "Automatic Updates" (wuauserv) - "Microsoft Corporation" - C:\WINDOWS\system32\wuauserv.dll "Automatische Konfiguration (verkabelt)" (Dot3svc) - "Microsoft Corporation" - C:\WINDOWS\System32\dot3svc.dll "Avira Browser Schutz" (AntiVirWebService) - "Avira Operations GmbH & Co. KG" - C:\Programme\Avira\AntiVir Desktop\AVWEBGRD.EXE "Avira Echtzeit Scanner" (AntiVirService) - "Avira Operations GmbH & Co. KG" - C:\Programme\Avira\AntiVir Desktop\avguard.exe "Avira Planer" (AntiVirSchedulerService) - "Avira Operations GmbH & Co. KG" - C:\Programme\Avira\AntiVir Desktop\sched.exe "COM+-Ereignissystem" (EventSystem) - "Microsoft Corporation" - C:\WINDOWS\system32\es.dll "COM+-Systemanwendung" (COMSysApp) - "Microsoft Corporation" - C:\WINDOWS\system32\dllhost.exe "Computerbrowser" (Browser) - "Microsoft Corporation" - C:\WINDOWS\System32\browser.dll "CryptSvc" (CryptSvc) - "Microsoft Corporation" - C:\WINDOWS\System32\cryptsvc.dll "DCOM-Server-Prozessstart" (DcomLaunch) - "Microsoft Corporation" - C:\WINDOWS\system32\rpcss.dll "Designs" (Themes) - "Microsoft Corporation" - C:\WINDOWS\System32\shsvcs.dll "DHCP-Client" (Dhcp) - "Microsoft Corporation" - C:\WINDOWS\System32\dhcpcsvc.dll "Dienst für Seriennummern der tragbaren Medien" (WmdmPmSN) - "Microsoft Corporation" - C:\WINDOWS\system32\MsPMSNSv.dll "Distributed Transaction Coordinator" (MSDTC) - "Microsoft Corporation" - C:\WINDOWS\system32\msdtc.exe "DNS-Client" (Dnscache) - "Microsoft Corporation" - C:\WINDOWS\System32\dnsrslvr.dll "Druckwarteschlange" (Spooler) - "Microsoft Corporation" - C:\WINDOWS\system32\spoolsv.exe "Ereignisprotokoll" (Eventlog) - "Microsoft Corporation" - C:\WINDOWS\system32\services.exe "Extensible Authentication-Protokolldienst" (EapHost) - "Microsoft Corporation" - C:\WINDOWS\System32\eapsvc.dll "Fehlerberichterstattungsdienst" (ERSvc) - "Microsoft Corporation" - C:\WINDOWS\System32\ersvc.dll "Gatewaydienst auf Anwendungsebene" (ALG) - "Microsoft Corporation" - C:\WINDOWS\System32\alg.exe "Geschützter Speicher" (ProtectedStorage) - "Microsoft Corporation" - C:\WINDOWS\system32\lsass.exe "getPlus(R) Helper" (getPlusHelper) - "NOS Microsystems Ltd." - C:\Programme\NOS\bin\getPlus_Helper.dll "getPlus(R) Helper 3004" (nosGetPlusHelper) - "NOS Microsystems Ltd." - C:\Programme\NOS\bin\getPlus_Helper_3004.dll "Hilfe und Support" (helpsvc) - "Microsoft Corporation" - C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll "HTTP-SSL" (HTTPFilter) - "Microsoft Corporation" - C:\WINDOWS\System32\w3ssl.dll "IMAPI-CD-Brenn-COM-Dienste" (ImapiService) - "Microsoft Corporation" - C:\WINDOWS\system32\imapi.exe "Indexdienst" (CiSvc) - "Microsoft Corporation" - C:\WINDOWS\system32\cisvc.exe "Integritätsschlüssel- und Zertifikatverwaltungsdienst" (hkmsvc) - "Microsoft Corporation" - C:\WINDOWS\System32\kmsvc.dll "Intelligenter Hintergrundübertragungsdienst" (BITS) - "Microsoft Corporation" - C:\WINDOWS\system32\qmgr.dll "IPSEC-Dienste" (PolicyAgent) - "Microsoft Corporation" - C:\WINDOWS\system32\lsass.exe "IviRegMgr" (IviRegMgr) - "InterVideo" - C:\Programme\Gemeinsame Dateien\InterVideo\RegMgr\iviRegMgr.exe "Java Quick Starter" (JavaQuickStarterService) - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\jqs.exe "Kompatibilität für schnelle Benutzerumschaltung" (FastUserSwitchingCompatibility) - "Microsoft Corporation" - C:\WINDOWS\System32\shsvcs.dll "Konfigurationsfreie drahtlose Verbindung" (WZCSVC) - "Microsoft Corporation" - C:\WINDOWS\System32\wzcsvc.dll "Leistungsdatenprotokolle und Warnungen" (SysmonLog) - "Microsoft Corporation" - C:\WINDOWS\system32\smlogsvc.exe "Mozilla Maintenance Service" (MozillaMaintenance) - "Mozilla Foundation" - C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe "MS Software Shadow Copy Provider" (SwPrv) - "Microsoft Corporation" - C:\WINDOWS\system32\dllhost.exe "NAP-Agent (Network Access Protection)" (napagent) - "Microsoft Corporation" - C:\WINDOWS\System32\qagentrt.dll "NetMeeting-Remotedesktop-Freigabe" (mnmsrvc) - "Microsoft Corporation" - C:\WINDOWS\system32\mnmsrvc.exe "Netzwerkverbindungen" (Netman) - "Microsoft Corporation" - C:\WINDOWS\System32\netman.dll "Netzwerkversorgungsdienst" (xmlprov) - "Microsoft Corporation" - C:\WINDOWS\System32\xmlprov.dll "NLA (Network Location Awareness)" (Nla) - "Microsoft Corporation" - C:\WINDOWS\System32\mswsock.dll "NT-LM-Sicherheitsdienst" (NtLmSsp) - "Microsoft Corporation" - C:\WINDOWS\system32\lsass.exe "Plug & Play" (PlugPlay) - "Microsoft Corporation" - C:\WINDOWS\system32\services.exe "QoS-RSVP" (RSVP) - "Microsoft Corporation" - C:\WINDOWS\system32\rsvp.exe "RAS-Verbindungsverwaltung" (RasMan) - "Microsoft Corporation" - C:\WINDOWS\System32\rasmans.dll "Remote-Registrierung" (RemoteRegistry) - "Microsoft Corporation" - C:\WINDOWS\system32\regsvc.dll "Remoteprozeduraufruf (RPC)" (RpcSs) - "Microsoft Corporation" - C:\WINDOWS\System32\rpcss.dll "RoxMediaDB10" (RoxMediaDB10) - "Sonic Solutions" - C:\Programme\Gemeinsame Dateien\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe "RPC-Locator" (RpcLocator) - "Microsoft Corporation" - C:\WINDOWS\system32\locator.exe "Secondary Logon" (seclogon) - "Microsoft Corporation" - C:\WINDOWS\System32\seclogon.dll "Server" (lanmanserver) - "Microsoft Corporation" - C:\WINDOWS\System32\srvsvc.dll "SessionLauncher" (SessionLauncher) - ? - C:\DOKUME~1\ADMINI~1\LOKALE~1\Temp\DX9\SessionLauncher.exe (File not found) "SharedAccess" (SharedAccess) - "Microsoft Corporation" - C:\WINDOWS\System32\ipnathlp.dll "Shellhardwareerkennung" (ShellHWDetection) - "Microsoft Corporation" - C:\WINDOWS\System32\shsvcs.dll "Sicherheitskontenverwaltung" (SamSs) - "Microsoft Corporation" - C:\WINDOWS\system32\lsass.exe "Sitzungs-Manager für Remotedesktophilfe" (RDSessMgr) - "Microsoft Corporation" - C:\WINDOWS\system32\sessmgr.exe "Smartcard" (SCardSvr) - "Microsoft Corporation" - C:\WINDOWS\System32\SCardSvr.exe "SSDP-Suchdienst" (SSDPSRV) - "Microsoft Corporation" - C:\WINDOWS\System32\ssdpsrv.dll "stllssvr" (stllssvr) - "MicroVision Development, Inc." - C:\Programme\Gemeinsame Dateien\SureThing Shared\stllssvr.exe "System Update" (SUService) - "Lenovo Group Limited" - c:\programme\lenovo\system update\suservice.exe "Systemereignisbenachrichtigung" (SENS) - "Microsoft Corporation" - C:\WINDOWS\system32\sens.dll "Systemwiederherstellungsdienst" (srservice) - "Microsoft Corporation" - C:\WINDOWS\system32\srsvc.dll "Taskplaner" (Schedule) - "Microsoft Corporation" - C:\WINDOWS\system32\schedsvc.dll "TCP/IP-NetBIOS-Hilfsprogramm" (LmHosts) - "Microsoft Corporation" - C:\WINDOWS\System32\lmhsvc.dll "Telefonie" (TapiSrv) - "Microsoft Corporation" - C:\WINDOWS\System32\tapisrv.dll "Telnet" (TlntSvr) - "Microsoft Corporation" - C:\WINDOWS\system32\tlntsvr.exe "Terminaldienste" (TermService) - "Microsoft Corporation" - C:\WINDOWS\System32\termsrv.dll "ThinkVantage Registry Monitor Service" (ThinkVantage Registry Monitor Service) - "Lenovo Group Limited" - c:\Programme\Gemeinsame Dateien\Lenovo\tvt_reg_monitor_svc.exe "Treibererweiterungen für Windows-Verwaltungsinstrumentation" (Wmi) - "Microsoft Corporation" - C:\WINDOWS\System32\advapi32.dll "TSS Core Service" (TSSCoreService) - "Lenovo" - C:\Programme\Lenovo\Client Security Solution\tvttcsd.exe "TVT Backup Protection Service" (TVT Backup Protection Service) - ? - C:\Programme\Lenovo\Rescue and Recovery\rrpservice.exe "TVT Backup Service" (TVT Backup Service) - "Lenovo Group Limited" - C:\Programme\Lenovo\Rescue and Recovery\rrservice.exe "TVT Scheduler" (TVT Scheduler) - "Lenovo Group Limited" - c:\Programme\Gemeinsame Dateien\Lenovo\Scheduler\tvtsched.exe "TVT Windows Update Monitor" (TVT_UpdateMonitor) - "Lenovo Group Limited" - C:\Programme\Lenovo\Rescue and Recovery\UpdateMonitor.exe "Universeller Plug & Play-Gerätehost" (upnphost) - "Microsoft Corporation" - C:\WINDOWS\System32\upnphost.dll "Unterbrechungsfreie Stromversorgung" (UPS) - "Microsoft Corporation" - C:\WINDOWS\System32\ups.exe "USBDLM" (USBDLM) - "Uwe Sieber - www.uwe-sieber.de" - C:\USBDLM\USBDLM.exe "Verwaltung für automatische RAS-Verbindung" (RasAuto) - "Microsoft Corporation" - C:\WINDOWS\System32\rasauto.dll "Verwaltung logischer Datenträger" (dmserver) - "Microsoft Corp." - C:\WINDOWS\System32\dmserver.dll "Verwaltungsdienst für die Verwaltung logischer Datenträger" (dmadmin) - "Microsoft Corp., Veritas Software" - C:\WINDOWS\System32\dmadmin.exe "Volumeschattenkopie" (VSS) - "Microsoft Corporation" - C:\WINDOWS\System32\vssvc.exe "Webclient" (WebClient) - "Microsoft Corporation" - C:\WINDOWS\System32\webclnt.dll "Wechselmedien" (NtmsSvc) - "Microsoft Corporation" - C:\WINDOWS\system32\ntmssvc.dll "Windows Audio" (AudioSrv) - "Microsoft Corporation" - C:\WINDOWS\System32\audiosrv.dll "Windows CardSpace" (idsvc) - "Microsoft Corporation" - c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe "Windows Driver Foundation - User-mode Driver Framework" (WudfSvc) - "Microsoft Corporation" - C:\WINDOWS\System32\WUDFSvc.dll "Windows Installer" (MSIServer) - "Microsoft Corporation" - C:\WINDOWS\system32\msiexec.exe "Windows Media Player-Netzwerkfreigabedienst" (WMPNetworkSvc) - "Microsoft Corporation" - C:\Programme\Windows Media Player\WMPNetwk.exe "Windows Presentation Foundation Font Cache 3.0.0.0" (FontCache3.0.0.0) - "Microsoft Corporation" - c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe "Windows-Bilderfassung (WIA)" (stisvc) - "Microsoft Corporation" - C:\WINDOWS\system32\wiaservc.dll "Windows-Verwaltungsinstrumentation" (winmgmt) - "Microsoft Corporation" - C:\WINDOWS\system32\wbem\WMIsvc.dll "Windows-Zeitgeber" (W32Time) - "Microsoft Corporation" - C:\WINDOWS\system32\w32time.dll "WMI-Leistungsadapter" (WmiApSrv) - "Microsoft Corporation" - C:\WINDOWS\system32\wbem\wmiapsrv.exe "wscsvc" (wscsvc) - "Microsoft Corporation" - C:\WINDOWS\system32\wscsvc.dll "Überwachung verteilter Verknüpfungen (Client)" (TrkWks) - "Microsoft Corporation" - C:\WINDOWS\system32\trkwks.dll [Winlogon] -----( HKCU\Control Panel\Desktop )----- "SCRNSAVE.EXE" - "Microsoft Corporation" - C:\WINDOWS\System32\logon.scr -----( HKCU\Control Panel\IOProcs )----- "MVB" - ? - mvfs32.dll (File not found) -----( HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon )----- "UIHost" - "Microsoft Corporation" - C:\WINDOWS\system32\logonui.exe "VmApplet" - "Microsoft Corporation" - C:\WINDOWS\system32\sysdm.cpl -----( HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions )----- {B587E2B1-4D59-4e7e-AED9-22B9DF11D053} "802.3 Group Policy" - "Microsoft Corporation" - C:\WINDOWS\system32\dot3gpclnt.dll {0ACDD40C-75AC-47ab-BAA0-BF6DE7E7FE63} "Drahtlos" - "Microsoft Corporation" - C:\WINDOWS\system32\gptext.dll {B1BE8D72-6EAC-11D2-A4EA-00C04F79F83A} "EFS recovery" - "Microsoft Corporation" - C:\WINDOWS\system32\scecli.dll {25537BA6-77A8-11D2-9B6C-0000F8080861} "Folder Redirection" - "Microsoft Corporation" - C:\WINDOWS\system32\fdeploy.dll {A2E30F80-D7DE-11d2-BBDE-00C04F86AE3B} "Internet Explorer Branding" - "Microsoft Corporation" - C:\WINDOWS\system32\iedkcs32.dll {4CFB60C1-FAA6-47f1-89AA-0B18730C9FD3} "Internet Explorer Zonemapping" - "Microsoft Corporation" - C:\WINDOWS\system32\iedkcs32.dll {e437bc1c-aa7d-11d2-a382-00c04f991e27} "IP-Sicherheit" - "Microsoft Corporation" - C:\WINDOWS\system32\gptext.dll {C631DF4C-088F-4156-B058-4375F0853CD8} "Microsoft Offline Files" - "Microsoft Corporation" - C:\WINDOWS\System32\cscui.dll {3610eda5-77ef-11d2-8dc5-00c04fa31a66} "Microsoft-Datenträgerkontingent" - "Microsoft Corporation" - C:\WINDOWS\system32\dskquota.dll {426031c0-0b47-4852-b0ca-ac3d37bfcb39} "QoS-Paketplaner" - "Microsoft Corporation" - C:\WINDOWS\system32\gptext.dll {827D319E-6EAC-11D2-A4EA-00C04F79F83A} "Security" - "Microsoft Corporation" - C:\WINDOWS\system32\scecli.dll {42B5FAAE-6536-11d2-AE5A-0000F87571E3} "Skripts" - "Microsoft Corporation" - C:\WINDOWS\system32\gptext.dll {c6dc5466-785a-11d2-84d0-00c04fb169f7} "Softwareinstallation" - "Microsoft Corporation" - C:\WINDOWS\system32\appmgmts.dll -----( HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify )----- "AtiExtEvent" - "ATI Technologies Inc." - C:\WINDOWS\system32\Ati2evxx.dll "crypt32chain" - "Microsoft Corporation" - C:\WINDOWS\system32\crypt32.dll "cryptnet" - "Microsoft Corporation" - C:\WINDOWS\system32\cryptnet.dll "cscdll" - "Microsoft Corporation" - C:\WINDOWS\system32\cscdll.dll "dimsntfy" - "Microsoft Corporation" - C:\WINDOWS\System32\dimsntfy.dll "ScCertProp" - "Microsoft Corporation" - C:\WINDOWS\system32\wlnotify.dll "Schedule" - "Microsoft Corporation" - C:\WINDOWS\system32\wlnotify.dll "sclgntfy" - "Microsoft Corporation" - C:\WINDOWS\system32\sclgntfy.dll "SensLogn" - "Microsoft Corporation" - C:\WINDOWS\system32\WlNotify.dll "termsrv" - "Microsoft Corporation" - C:\WINDOWS\system32\wlnotify.dll "WgaLogon" - "Microsoft Corporation" - C:\WINDOWS\system32\WgaLogon.dll "wlballoon" - "Microsoft Corporation" - C:\WINDOWS\system32\wlnotify.dll [Winsock Providers] -----( HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries )----- "NLA-Namespace" - "Microsoft Corporation" - C:\WINDOWS\System32\mswsock.dll "NTDS" - "Microsoft Corporation" - C:\WINDOWS\System32\winrnr.dll "TCP/IP" - "Microsoft Corporation" - C:\WINDOWS\System32\mswsock.dll -----( HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries )----- "AVSDA" - "Avira Operations GmbH & Co. KG" - C:\Programme\Avira\AntiVir Desktop\avsda.dll "MSAFD NetBIOS [\Device\NetBT_Tcpip_{100D944F-07DC-4690-9947-A887FE9B5CD0}] DATAGRAM 1" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll "MSAFD NetBIOS [\Device\NetBT_Tcpip_{100D944F-07DC-4690-9947-A887FE9B5CD0}] SEQPACKET 1" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll "MSAFD NetBIOS [\Device\NetBT_Tcpip_{2F48562B-63DE-4625-A4AA-0F5E50311094}] DATAGRAM 2" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll "MSAFD NetBIOS [\Device\NetBT_Tcpip_{2F48562B-63DE-4625-A4AA-0F5E50311094}] SEQPACKET 2" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll "MSAFD NetBIOS [\Device\NetBT_Tcpip_{926B4AD2-3054-49CE-B948-DA446FB3BEAA}] DATAGRAM 0" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll "MSAFD NetBIOS [\Device\NetBT_Tcpip_{926B4AD2-3054-49CE-B948-DA446FB3BEAA}] SEQPACKET 0" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll "MSAFD Tcpip [RAW/IP]" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll "MSAFD Tcpip [TCP/IP]" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll "MSAFD Tcpip [UDP/IP]" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll "RSVP TCP Service Provider" - "Microsoft Corporation" - C:\WINDOWS\system32\rsvpsp.dll "RSVP UDP Service Provider" - "Microsoft Corporation" - C:\WINDOWS\system32\rsvpsp.dll ===[ Logfile end ]=========================================[ Logfile end ]=== If You have questions or want to get some help, You can visit hxxp://forum.online-solutions.ru Code:
ATTFilter aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software Run date: 2012-07-25 17:04:13 ----------------------------- 17:04:13.421 OS Version: Windows 5.1.2600 Service Pack 3 17:04:13.421 Number of processors: 2 586 0x6B02 17:04:13.421 ComputerName: HEIM-PC UserName: User 17:04:13.937 Initialize success 17:09:52.796 AVAST engine defs: 12072500 17:10:19.671 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T1L0-c 17:10:19.671 Disk 0 Vendor: WDC_WD3200AAJS-08B4A0 01.03A01 Size: 305245MB BusType: 3 17:10:19.687 Disk 0 MBR read successfully 17:10:19.687 Disk 0 MBR scan 17:10:19.718 Disk 0 unknown MBR code 17:10:19.734 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 301687 MB offset 2048 17:10:19.765 Disk 0 Partition 2 00 12 Compaq diag MSDOS5.0 3556 MB offset 617857024 17:10:19.765 Disk 0 scanning sectors +625139712 17:10:19.828 Disk 0 scanning C:\WINDOWS\system32\drivers 17:10:27.437 Service scanning 17:10:40.859 Modules scanning 17:10:42.359 Module: C:\WINDOWS\System32\drivers\dxgthk.sys **SUSPICIOUS** 17:10:44.375 Module: C:\WINDOWS\system32\ntdll.dll **SUSPICIOUS** 17:10:44.375 Disk 0 trace - called modules: 17:10:44.406 ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys pciide.sys PCIIDEX.SYS 17:10:44.406 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8a440ab8] 17:10:44.421 3 CLASSPNP.SYS[ba0e8fd7] -> nt!IofCallDriver -> \Device\0000006a[0x8a49ebe0] 17:10:44.421 5 ACPI.sys[b9f7e620] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T1L0-c[0x8a4468e8] 17:10:45.187 AVAST engine scan C:\WINDOWS 17:10:51.640 AVAST engine scan C:\WINDOWS\system32 17:12:59.281 AVAST engine scan C:\WINDOWS\system32\drivers 17:13:16.015 AVAST engine scan C:\Dokumente und Einstellungen\User 17:14:55.921 AVAST engine scan C:\Dokumente und Einstellungen\All Users 17:15:13.000 Scan finished successfully 17:15:47.671 Disk 0 MBR has been saved successfully to "C:\Dokumente und Einstellungen\User\Desktop\MBR.dat" 17:15:47.671 The log file has been saved successfully to "C:\Dokumente und Einstellungen\User\Desktop\aswMBR.txt" |
26.07.2012, 09:37 | #44 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | ich möchte meinen PC reinigenZitat:
Man kann diese Leiste schließen oder nicht was bitte ist daran ein Fehler?! Und wozu brauchst du zwei verschiedene Tastaturlayouts? Mit das erste was ich auf einem Windows mache ist dieses dämliche zweite EN-Tastaturlayout zu entfernen! Da Google nicht defekt ist, dürftest du auch reichtlich Infos darüber finden zum Thema "Eingabegebietsschemaleiste" Wir sollten den MBR fixen, sichere für den Fall der Fälle ALLE wichtigen Daten, auch wenn meistens alles glatt geht. Hinweis: Mach bitte NICHT den MBR-Fix, wenn du noch andere Betriebssysteme wie zB Ubuntu installiert hast, ein MBR-Fix mit Windows-Tools macht ein parallel installiertes (Dualboot) Linux unbootbar. Mach den Fix auch dann nicht, wenn du zB mit TrueCrypt oder anderen Verschlüsselungsprogrammen eine Vollverschlüsselung der Windowspartition bzw. gesamten Festplatte hast Starte nach der Datensicherung aswmbr erneut und klick auf den Button FIXMBR. Hinweis: Bitte den Virenscanner abstellen bevor du aswMBR ausführst, denn v.a. Avira meldet darin oft einen Fehalalrm! Anschließend Windows neu starten und ein neues Log mit aswMBR machen.
__________________ Logfiles bitte immer in CODE-Tags posten |
26.07.2012, 19:39 | #45 |
| ich möchte meinen PC reinigen ich habe leider nicht richtig verstanden, was Sie mit Eingabegebietsleiste meinen. Ich beschreibe nur kurz den Sachverhalt. Vielleicht mache ich was falsch. Ich schreibe in 2 Sprachen und muss meine 2-sprachige Tastatur immer wieder umschalten. Dafür habe in der Taskleiste einen Sprachsymbol. Beim Klick drauf erscheint kleines Fenster mit der Sprachauswahl. Dann wähle ich eine Sprache aus, die ich im Moment brauche. Nach den o.g. Scan- Aktionen ist der Sprach-Symbol verschwunden. Es kann sein, dass einige andere Wege zum Tastaturaktivieren existieren. Ich kenne sie aber nicht. Die Hilfe in meinem PC hat ein Vorgehen vorgeschlagen, wie ich mein Problem lösen kann. Ein Fenster, das eine Schlüsselrolle dabei spielt, war deaktiviert.Deshalb war der Vorschlag nutzlos. Auf einer Internet-Seite habe ich eine Empfehlung gefunden. Es hat funktioniert. Logisch oder intuitiv wäre ich selber auf diese Lösung nicht gekommen. Windows macht sich eben keine Mühe alles verständlich zu erklären. Sie schreiben, dass ich eine Datensicherung machen soll. Ich habe zu Hause das noch nicht gemacht ( ich weiss, das es leichtsinnig ist. - Berührungsangst ). Ich habe sehr viele wichtige Daten, worin ich viel Zeit investierte. Soll es USB-Stick oder CD sein? |
Themen zu ich möchte meinen PC reinigen |
avira, funde, geklappt, harmlose, inhalt, kopieren, löschbar, malwarebites, nicht löschbar, pc reinigen, reinigen, reinigung, seite, seiten, thread, troja, trojaner, unerwartet, versuch, versucht, viele viren, viren |