Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: ich möchte meinen PC reinigen

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 19.07.2012, 18:31   #31
strobl
 
ich möchte meinen PC reinigen - Standard

ich möchte meinen PC reinigen



Hier ist OTL-Fix-Log:

Code:
ATTFilter
All processes killed
========== OTL ==========
HKU\S-1-5-21-726353797-3868275323-1685576310-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyOverride| /E : value set successfully!
Prefs.js: "Ask.com" removed from browser.search.defaultengine
Prefs.js: "Ask.com" removed from browser.search.defaultenginename
Prefs.js: "softonic-de3 Customized Web Search" removed from browser.search.defaultthis.engineName
Prefs.js: "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2431245&SearchSource=3&q={searchTerms}" removed from browser.search.defaulturl
Prefs.js: "Ask.com" removed from browser.search.order.1
Prefs.js: "Ask.com" removed from browser.search.selectedEngine
Prefs.js: "hxxp://websearch.ask.com/redirect?client=ff&src=kw&tb=AVR-3&o=APN10395&locale=de_DE&apn_uid=4e3f1c85-c65a-492c-8734-25430ebf8b2e&apn_ptnrs=^ABT&apn_sauid=276ADA77-BA63-41D1-AA06-2D5E90D02623&apn_dtid=^YYYYYY^YY^DE&&q=" removed from keyword.URL
C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\searchplugins folder moved successfully.
C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\logs folder moved successfully.
C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\defaults\preferences folder moved successfully.
C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\defaults folder moved successfully.
C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\datastore folder moved successfully.
C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Fri-13-Jul-2012-14-38-21-GMT folder moved successfully.
C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\chrome\temp folder moved successfully.
C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\chrome\skin folder moved successfully.
C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\chrome\content folder moved successfully.
C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\chrome folder moved successfully.
C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com folder moved successfully.
C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\searchplugins\askcom.xml moved successfully.
C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\searchplugins\conduit.xml moved successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\HonorAutoRunSetting deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoCDBurning deleted successfully.
Registry value HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully.
Registry value HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun not found.
Registry value HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully.
Registry value HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully.
Registry value HKEY_USERS\S-1-5-21-726353797-3868275323-1685576310-1008\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom\\AutoRun|DWORD:1 /E : value set successfully!
C:\AUTOEXEC.BAT moved successfully.
========== FILES ==========
C:\WINDOWS\Installer\{46514794-57fd-2790-ee5e-eac100dcd5ac}\@ moved successfully.
C:\WINDOWS\Installer\{46514794-57fd-2790-ee5e-eac100dcd5ac}\U folder moved successfully.
File\Folder C:\WINDOWS\Installer\{46514794-57fd-2790-ee5e-eac100dcd5ac}\n not found.
File\Folder C:\Dokumente und Einstellungen\User\Lokale Einstellungen\Anwendungsdaten\{46514794-57fd-2790-ee5e-eac100dcd5ac}\n not found.
C:\Dokumente und Einstellungen\User\Lokale Einstellungen\Anwendungsdaten\{46514794-57fd-2790-ee5e-eac100dcd5ac}\U folder moved successfully.
C:\Dokumente und Einstellungen\User\Lokale Einstellungen\Anwendungsdaten\{46514794-57fd-2790-ee5e-eac100dcd5ac}\@ moved successfully.
========== COMMANDS ==========
 
[EMPTYTEMP]
 
User: Administrator
->Temp folder emptied: 49152 bytes
->Temporary Internet Files folder emptied: 32768 bytes
 
User: All Users
 
User: Default User
->Temp folder emptied: 49152 bytes
->Temporary Internet Files folder emptied: 44745 bytes
->Flash cache emptied: 0 bytes
 
User: LocalService
->Temp folder emptied: 66016 bytes
->Temporary Internet Files folder emptied: 33557 bytes
->Flash cache emptied: 434 bytes
 
User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33758 bytes
 
User: User
->Temp folder emptied: 26987801 bytes
->Temporary Internet Files folder emptied: 83685 bytes
->Java cache emptied: 17179124 bytes
->FireFox cache emptied: 55189712 bytes
->Google Chrome cache emptied: 6138516 bytes
->Flash cache emptied: 523 bytes
 
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 19569 bytes
%systemroot%\System32 .tmp files removed: 1718663 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 17414 bytes
RecycleBin emptied: 0 bytes
 
Total Files Cleaned = 103,00 mb
 
 
[EMPTYFLASH]
 
User: Administrator
 
User: All Users
 
User: Default User
->Flash cache emptied: 0 bytes
 
User: LocalService
->Flash cache emptied: 0 bytes
 
User: NetworkService
 
User: User
->Flash cache emptied: 0 bytes
 
Total Flash Files Cleaned = 0,00 mb
 
C:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
 
OTL by OldTimer - Version 3.2.54.0 log created on 07192012_192716

Files\Folders moved on Reboot...
File\Folder C:\WINDOWS\temp\Perflib_Perfdata_264.dat not found!

PendingFileRenameOperations files...
File C:\WINDOWS\temp\Perflib_Perfdata_264.dat not found!

Registry entries deleted on Reboot...
         

Alt 19.07.2012, 20:09   #32
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
ich möchte meinen PC reinigen - Standard

ich möchte meinen PC reinigen



Bitte nun (im normalen Windows-Modus) dieses Tool von Kaspersky (TDSS-Killer) ausführen und das Log posten Anleitung und Downloadlink hier => http://www.trojaner-board.de/82358-t...entfernen.html

Hinweis: Bitte den Virenscanner abstellen bevor du den TDSS-Killer ausführst, denn v.a. Avira meldet im TDSS-Tool oft einen Fehalalrm!

Das Tool so einstellen wie unten im Bild angegeben - klick auf change parameters und setze die Haken wie im folgenden Screenshot abgebildet,
Dann auf Start Scan klicken und wenn es durch ist auf den Button Report klicken um das Log anzuzeigen. Dieses bitte komplett posten.
Wenn du das Log nicht findest oder den Inhalt kopieren und in dein Posting übertragen kannst, dann schau bitte direkt auf deiner Windows-Systempartition (meistens Laufwerk C nach, da speichert der TDSS-Killer seine Logs.

Hinweis: Bitte nichts voreilig mit dem TDSS-Killer löschen! Falls Objekte vom TDSS-Killer bemängelt werden, alle mit der Aktion "skip" behandeln und hier nur das Log posten!

__________________

__________________

Alt 20.07.2012, 15:14   #33
strobl
 
ich möchte meinen PC reinigen - Standard

ich möchte meinen PC reinigen



hier ist TDSS-Killer-Log

Code:
ATTFilter
16:09:09.0718 1204	TDSS rootkit removing tool 2.7.46.0 Jul 16 2012 22:10:11
16:09:10.0046 1204	============================================================
16:09:10.0046 1204	Current date / time: 2012/07/20 16:09:10.0046
16:09:10.0046 1204	SystemInfo:
16:09:10.0046 1204	
16:09:10.0046 1204	OS Version: 5.1.2600 ServicePack: 3.0
16:09:10.0046 1204	Product type: Workstation
16:09:10.0046 1204	ComputerName: HEIM-PC
16:09:10.0046 1204	UserName: User
16:09:10.0046 1204	Windows directory: C:\WINDOWS
16:09:10.0046 1204	System windows directory: C:\WINDOWS
16:09:10.0046 1204	Processor architecture: Intel x86
16:09:10.0046 1204	Number of processors: 2
16:09:10.0046 1204	Page size: 0x1000
16:09:10.0046 1204	Boot type: Normal boot
16:09:10.0046 1204	============================================================
16:09:11.0328 1204	Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
16:09:11.0328 1204	============================================================
16:09:11.0328 1204	\Device\Harddisk0\DR0:
16:09:11.0328 1204	MBR partitions:
16:09:11.0328 1204	\Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x24D3B800
16:09:11.0328 1204	============================================================
16:09:11.0359 1204	C: <-> \Device\Harddisk0\DR0\Partition0
16:09:11.0359 1204	============================================================
16:09:11.0359 1204	Initialize success
16:09:11.0359 1204	============================================================
16:09:35.0093 3924	============================================================
16:09:35.0093 3924	Scan started
16:09:35.0093 3924	Mode: Manual; SigCheck; TDLFS; 
16:09:35.0093 3924	============================================================
16:09:35.0312 3924	Abiosdsk - ok
16:09:35.0343 3924	abp480n5        (6abb91494fe6c59089b9336452ab2ea3) C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS
16:09:35.0796 3924	abp480n5 ( UnsignedFile.Multi.Generic ) - warning
16:09:35.0796 3924	abp480n5 - detected UnsignedFile.Multi.Generic (1)
16:09:35.0812 3924	ac97intc        (0f2d66d5f08ebe2f77bb904288dcf6f0) C:\WINDOWS\system32\drivers\ac97intc.sys
16:09:35.0828 3924	ac97intc ( UnsignedFile.Multi.Generic ) - warning
16:09:35.0828 3924	ac97intc - detected UnsignedFile.Multi.Generic (1)
16:09:35.0859 3924	ACPI            (ac407f1a62c3a300b4f2b5a9f1d55b2c) C:\WINDOWS\system32\DRIVERS\ACPI.sys
16:09:35.0875 3924	ACPI ( UnsignedFile.Multi.Generic ) - warning
16:09:35.0875 3924	ACPI - detected UnsignedFile.Multi.Generic (1)
16:09:35.0921 3924	ACPIEC          (9e1ca3160dafb159ca14f83b1e317f75) C:\WINDOWS\system32\drivers\ACPIEC.sys
16:09:35.0921 3924	ACPIEC ( UnsignedFile.Multi.Generic ) - warning
16:09:35.0921 3924	ACPIEC - detected UnsignedFile.Multi.Generic (1)
16:09:36.0015 3924	AdobeFlashPlayerUpdateSvc (5e1a953c6472e7bb644892a4d0df5e72) C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
16:09:36.0046 3924	AdobeFlashPlayerUpdateSvc - ok
16:09:36.0109 3924	adpu160m        (9a11864873da202c996558b2106b0bbc) C:\WINDOWS\system32\DRIVERS\adpu160m.sys
16:09:36.0109 3924	adpu160m ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0125 3924	adpu160m - detected UnsignedFile.Multi.Generic (1)
16:09:36.0140 3924	aec             (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
16:09:36.0140 3924	aec ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0140 3924	aec - detected UnsignedFile.Multi.Generic (1)
16:09:36.0203 3924	AFD             (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
16:09:36.0203 3924	AFD ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0203 3924	AFD - detected UnsignedFile.Multi.Generic (1)
16:09:36.0234 3924	agp440          (08fd04aa961bdc77fb983f328334e3d7) C:\WINDOWS\system32\DRIVERS\agp440.sys
16:09:36.0250 3924	agp440 ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0250 3924	agp440 - detected UnsignedFile.Multi.Generic (1)
16:09:36.0250 3924	agpCPQ          (03a7e0922acfe1b07d5db2eeb0773063) C:\WINDOWS\system32\DRIVERS\agpCPQ.sys
16:09:36.0265 3924	agpCPQ ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0265 3924	agpCPQ - detected UnsignedFile.Multi.Generic (1)
16:09:36.0265 3924	Aha154x         (c23ea9b5f46c7f7910db3eab648ff013) C:\WINDOWS\system32\DRIVERS\aha154x.sys
16:09:36.0281 3924	Aha154x ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0281 3924	Aha154x - detected UnsignedFile.Multi.Generic (1)
16:09:36.0281 3924	aic78u2         (19dd0fb48b0c18892f70e2e7d61a1529) C:\WINDOWS\system32\DRIVERS\aic78u2.sys
16:09:36.0296 3924	aic78u2 ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0296 3924	aic78u2 - detected UnsignedFile.Multi.Generic (1)
16:09:36.0296 3924	aic78xx         (b7fe594a7468aa0132deb03fb8e34326) C:\WINDOWS\system32\DRIVERS\aic78xx.sys
16:09:36.0312 3924	aic78xx ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0312 3924	aic78xx - detected UnsignedFile.Multi.Generic (1)
16:09:36.0578 3924	Akamai          (29584f02a43e427c4227e3b1d9ff1b22) c:\programme\gemeinsame dateien\akamai/netsession_win_4f7fccd.dll
16:09:36.0578 3924	Suspicious file (Hidden): c:\programme\gemeinsame dateien\akamai/netsession_win_4f7fccd.dll. md5: 29584f02a43e427c4227e3b1d9ff1b22
16:09:36.0593 3924	Akamai ( HiddenFile.Multi.Generic ) - warning
16:09:36.0593 3924	Akamai - detected HiddenFile.Multi.Generic (1)
16:09:36.0734 3924	Alerter         (738d80cc01d7bc7584be917b7f544394) C:\WINDOWS\system32\alrsvc.dll
16:09:36.0765 3924	Alerter ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0765 3924	Alerter - detected UnsignedFile.Multi.Generic (1)
16:09:36.0781 3924	ALG             (190cd73d4984f94d823f9444980513e5) C:\WINDOWS\System32\alg.exe
16:09:36.0796 3924	ALG ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0796 3924	ALG - detected UnsignedFile.Multi.Generic (1)
16:09:36.0828 3924	AliIde          (1140ab9938809700b46bb88e46d72a96) C:\WINDOWS\system32\DRIVERS\aliide.sys
16:09:36.0843 3924	AliIde ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0843 3924	AliIde - detected UnsignedFile.Multi.Generic (1)
16:09:36.0890 3924	alim1541        (cb08aed0de2dd889a8a820cd8082d83c) C:\WINDOWS\system32\DRIVERS\alim1541.sys
16:09:36.0890 3924	alim1541 ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0890 3924	alim1541 - detected UnsignedFile.Multi.Generic (1)
16:09:36.0906 3924	amdagp          (95b4fb835e28aa1336ceeb07fd5b9398) C:\WINDOWS\system32\DRIVERS\amdagp.sys
16:09:36.0906 3924	amdagp ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0906 3924	amdagp - detected UnsignedFile.Multi.Generic (1)
16:09:36.0921 3924	amsint          (79f5add8d24bd6893f2903a3e2f3fad6) C:\WINDOWS\system32\DRIVERS\amsint.sys
16:09:36.0921 3924	amsint ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0921 3924	amsint - detected UnsignedFile.Multi.Generic (1)
16:09:37.0062 3924	AntiVirSchedulerService (466a0d95960dad3222c896d2cea99993) C:\Programme\Avira\AntiVir Desktop\sched.exe
16:09:37.0078 3924	AntiVirSchedulerService - ok
16:09:37.0125 3924	AntiVirService  (a489be6bb0aa1ff406b488b60542314b) C:\Programme\Avira\AntiVir Desktop\avguard.exe
16:09:37.0140 3924	AntiVirService - ok
16:09:37.0203 3924	AntiVirWebService (676894fa57b671fec5c3f05f8929e03b) C:\Programme\Avira\AntiVir Desktop\AVWEBGRD.EXE
16:09:37.0218 3924	AntiVirWebService - ok
16:09:37.0281 3924	AppMgmt         (d45960be52c3c610d361977057f98c54) C:\WINDOWS\System32\appmgmts.dll
16:09:37.0296 3924	AppMgmt ( UnsignedFile.Multi.Generic ) - warning
16:09:37.0296 3924	AppMgmt - detected UnsignedFile.Multi.Generic (1)
16:09:37.0296 3924	asc             (62d318e9a0c8fc9b780008e724283707) C:\WINDOWS\system32\DRIVERS\asc.sys
16:09:37.0312 3924	asc ( UnsignedFile.Multi.Generic ) - warning
16:09:37.0312 3924	asc - detected UnsignedFile.Multi.Generic (1)
16:09:37.0328 3924	asc3350p        (69eb0cc7714b32896ccbfd5edcbea447) C:\WINDOWS\system32\DRIVERS\asc3350p.sys
16:09:37.0343 3924	asc3350p ( UnsignedFile.Multi.Generic ) - warning
16:09:37.0343 3924	asc3350p - detected UnsignedFile.Multi.Generic (1)
16:09:37.0343 3924	asc3550         (5d8de112aa0254b907861e9e9c31d597) C:\WINDOWS\system32\DRIVERS\asc3550.sys
16:09:37.0359 3924	asc3550 ( UnsignedFile.Multi.Generic ) - warning
16:09:37.0359 3924	asc3550 - detected UnsignedFile.Multi.Generic (1)
16:09:37.0515 3924	aspnet_state    (0e5e4957549056e2bf2c49f4f6b601ad) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
16:09:37.0562 3924	aspnet_state - ok
16:09:37.0578 3924	AsyncMac        (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
16:09:37.0593 3924	AsyncMac ( UnsignedFile.Multi.Generic ) - warning
16:09:37.0593 3924	AsyncMac - detected UnsignedFile.Multi.Generic (1)
16:09:37.0625 3924	atapi           (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
16:09:37.0625 3924	atapi ( UnsignedFile.Multi.Generic ) - warning
16:09:37.0625 3924	atapi - detected UnsignedFile.Multi.Generic (1)
16:09:37.0625 3924	Atdisk - ok
16:09:37.0703 3924	Ati HotKey Poller (ab6a44c8a3c64ac89567784145910f49) C:\WINDOWS\system32\Ati2evxx.exe
16:09:37.0718 3924	Ati HotKey Poller ( UnsignedFile.Multi.Generic ) - warning
16:09:37.0718 3924	Ati HotKey Poller - detected UnsignedFile.Multi.Generic (1)
16:09:37.0906 3924	ati2mtag        (a4d1c3cd20c8c595af1817bb5352ecd6) C:\WINDOWS\system32\DRIVERS\ati2mtag.sys
16:09:38.0000 3924	ati2mtag ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0000 3924	ati2mtag - detected UnsignedFile.Multi.Generic (1)
16:09:38.0187 3924	Atmarpc         (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
16:09:38.0187 3924	Atmarpc ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0187 3924	Atmarpc - detected UnsignedFile.Multi.Generic (1)
16:09:38.0234 3924	AudioSrv        (58ed0d5452df7be732193e7999c6b9a4) C:\WINDOWS\System32\audiosrv.dll
16:09:38.0234 3924	AudioSrv ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0234 3924	AudioSrv - detected UnsignedFile.Multi.Generic (1)
16:09:38.0250 3924	audstub         (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
16:09:38.0250 3924	audstub ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0250 3924	audstub - detected UnsignedFile.Multi.Generic (1)
16:09:38.0296 3924	avgntflt        (d5541f0afb767e85fc412fc609d96a74) C:\WINDOWS\system32\DRIVERS\avgntflt.sys
16:09:38.0328 3924	avgntflt - ok
16:09:38.0343 3924	avipbb          (7d967a682d4694df7fa57d63a2db01fe) C:\WINDOWS\system32\DRIVERS\avipbb.sys
16:09:38.0359 3924	avipbb - ok
16:09:38.0406 3924	avkmgr          (271cfd1a989209b1964e24d969552bf7) C:\WINDOWS\system32\DRIVERS\avkmgr.sys
16:09:38.0421 3924	avkmgr - ok
16:09:38.0453 3924	Beep            (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
16:09:38.0468 3924	Beep ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0468 3924	Beep - detected UnsignedFile.Multi.Generic (1)
16:09:38.0515 3924	BITS            (d6f603772a789bb3228f310d650b8bd1) C:\WINDOWS\system32\qmgr.dll
16:09:38.0546 3924	BITS ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0546 3924	BITS - detected UnsignedFile.Multi.Generic (1)
16:09:38.0578 3924	Browser         (b42057f06bbb98b31876c0b3f2b54e33) C:\WINDOWS\System32\browser.dll
16:09:38.0593 3924	Browser ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0593 3924	Browser - detected UnsignedFile.Multi.Generic (1)
16:09:38.0640 3924	cbidf           (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\DRIVERS\cbidf2k.sys
16:09:38.0640 3924	cbidf ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0640 3924	cbidf - detected UnsignedFile.Multi.Generic (1)
16:09:38.0640 3924	cbidf2k         (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
16:09:38.0656 3924	cbidf2k ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0656 3924	cbidf2k - detected UnsignedFile.Multi.Generic (1)
16:09:38.0671 3924	cd20xrnt        (f3ec03299634490e97bbce94cd2954c7) C:\WINDOWS\system32\DRIVERS\cd20xrnt.sys
16:09:38.0671 3924	cd20xrnt ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0671 3924	cd20xrnt - detected UnsignedFile.Multi.Generic (1)
16:09:38.0703 3924	Cdaudio         (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
16:09:38.0703 3924	Cdaudio ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0703 3924	Cdaudio - detected UnsignedFile.Multi.Generic (1)
16:09:38.0718 3924	Cdfs            (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
16:09:38.0734 3924	Cdfs ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0734 3924	Cdfs - detected UnsignedFile.Multi.Generic (1)
16:09:38.0781 3924	Cdrom           (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
16:09:38.0781 3924	Cdrom ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0796 3924	Cdrom - detected UnsignedFile.Multi.Generic (1)
16:09:38.0796 3924	Changer - ok
16:09:38.0812 3924	CiSvc           (28e3040d1f1ca2008cd6b29dfebc9a5e) C:\WINDOWS\system32\cisvc.exe
16:09:38.0828 3924	CiSvc ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0828 3924	CiSvc - detected UnsignedFile.Multi.Generic (1)
16:09:38.0843 3924	ClipSrv         (778a30ed3c134eb7e406afc407e9997d) C:\WINDOWS\system32\clipsrv.exe
16:09:38.0859 3924	ClipSrv ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0859 3924	ClipSrv - detected UnsignedFile.Multi.Generic (1)
16:09:38.0984 3924	clr_optimization_v2.0.50727_32 (d87acaed61e417bba546ced5e7e36d9c) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
16:09:39.0046 3924	clr_optimization_v2.0.50727_32 - ok
16:09:39.0062 3924	CmdIde          (c687f81290303d90099b027a6474f99f) C:\WINDOWS\system32\DRIVERS\cmdide.sys
16:09:39.0062 3924	CmdIde ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0062 3924	CmdIde - detected UnsignedFile.Multi.Generic (1)
16:09:39.0062 3924	COMSysApp - ok
16:09:39.0125 3924	Cpqarray        (3ee529119eed34cd212a215e8c40d4b6) C:\WINDOWS\system32\DRIVERS\cpqarray.sys
16:09:39.0125 3924	Cpqarray ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0125 3924	Cpqarray - detected UnsignedFile.Multi.Generic (1)
16:09:39.0171 3924	CryptSvc        (611f824e5c703a5a899f84c5f1699e4d) C:\WINDOWS\System32\cryptsvc.dll
16:09:39.0187 3924	CryptSvc ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0187 3924	CryptSvc - detected UnsignedFile.Multi.Generic (1)
16:09:39.0203 3924	dac2w2k         (e550e7418984b65a78299d248f0a7f36) C:\WINDOWS\system32\DRIVERS\dac2w2k.sys
16:09:39.0203 3924	dac2w2k ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0203 3924	dac2w2k - detected UnsignedFile.Multi.Generic (1)
16:09:39.0218 3924	dac960nt        (683789caa3864eb46125ae86ff677d34) C:\WINDOWS\system32\DRIVERS\dac960nt.sys
16:09:39.0218 3924	dac960nt ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0218 3924	dac960nt - detected UnsignedFile.Multi.Generic (1)
16:09:39.0250 3924	DcomLaunch      (3127afbf2c1ed0ab14a1bbb7aaecb85b) C:\WINDOWS\system32\rpcss.dll
16:09:39.0265 3924	DcomLaunch ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0265 3924	DcomLaunch - detected UnsignedFile.Multi.Generic (1)
16:09:39.0312 3924	DgiVecp         (1ec27a51a2f9df052bc2b4c8376c8fea) C:\WINDOWS\system32\Drivers\DgiVecp.sys
16:09:39.0312 3924	DgiVecp ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0312 3924	DgiVecp - detected UnsignedFile.Multi.Generic (1)
16:09:39.0375 3924	Dhcp            (c29a1c9b75ba38fa37f8c44405dec360) C:\WINDOWS\System32\dhcpcsvc.dll
16:09:39.0375 3924	Dhcp ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0375 3924	Dhcp - detected UnsignedFile.Multi.Generic (1)
16:09:39.0421 3924	Disk            (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
16:09:39.0437 3924	Disk ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0437 3924	Disk - detected UnsignedFile.Multi.Generic (1)
16:09:39.0484 3924	DLABMFSM        (5b149ccfe275f4de0b4b8ec6b9f6821e) C:\WINDOWS\system32\DLA\DLABMFSM.SYS
16:09:39.0500 3924	DLABMFSM - ok
16:09:39.0500 3924	DLABOIOM        (ad4cb3d783634c90a9d0ce360933a63c) C:\WINDOWS\system32\DLA\DLABOIOM.SYS
16:09:39.0515 3924	DLABOIOM - ok
16:09:39.0515 3924	DLACDBHM        (5230cdb7e715f3a3b4a882e254cdd35d) C:\WINDOWS\system32\Drivers\DLACDBHM.SYS
16:09:39.0515 3924	DLACDBHM - ok
16:09:39.0562 3924	DLADResM        (dae193b1ddc6914f56b767a4f1406351) C:\WINDOWS\system32\DLA\DLADResM.SYS
16:09:39.0562 3924	DLADResM - ok
16:09:39.0578 3924	DLAIFS_M        (6a82f77c4a6f5235bf352f0028e2ef52) C:\WINDOWS\system32\DLA\DLAIFS_M.SYS
16:09:39.0578 3924	DLAIFS_M - ok
16:09:39.0593 3924	DLAOPIOM        (0e6052c0ada37504896a847231a3907d) C:\WINDOWS\system32\DLA\DLAOPIOM.SYS
16:09:39.0593 3924	DLAOPIOM - ok
16:09:39.0609 3924	DLAPoolM        (29670bb4e2b973c5b55a76107d4910b2) C:\WINDOWS\system32\DLA\DLAPoolM.SYS
16:09:39.0609 3924	DLAPoolM - ok
16:09:39.0625 3924	DLARTL_M        (77fe51f0f8d86804cb81f6ef6bfb86dd) C:\WINDOWS\system32\Drivers\DLARTL_M.SYS
16:09:39.0625 3924	DLARTL_M - ok
16:09:39.0640 3924	DLAUDFAM        (6b087732b86c1d866d69dbbe463ea90a) C:\WINDOWS\system32\DLA\DLAUDFAM.SYS
16:09:39.0640 3924	DLAUDFAM - ok
16:09:39.0656 3924	DLAUDF_M        (bbeecb95f2841ae4a3e3690d46d7153d) C:\WINDOWS\system32\DLA\DLAUDF_M.SYS
16:09:39.0671 3924	DLAUDF_M - ok
16:09:39.0671 3924	dmadmin - ok
16:09:39.0734 3924	dmboot          (0dcfc8395a99fecbb1ef771cec7fe4ea) C:\WINDOWS\system32\drivers\dmboot.sys
16:09:39.0765 3924	dmboot ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0765 3924	dmboot - detected UnsignedFile.Multi.Generic (1)
16:09:39.0781 3924	dmio            (53720ab12b48719d00e327da470a619a) C:\WINDOWS\system32\drivers\dmio.sys
16:09:39.0781 3924	dmio ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0781 3924	dmio - detected UnsignedFile.Multi.Generic (1)
16:09:39.0796 3924	dmload          (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
16:09:39.0796 3924	dmload ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0796 3924	dmload - detected UnsignedFile.Multi.Generic (1)
16:09:39.0828 3924	dmserver        (25c83ffbba13b554eb6d59a9b2e2ee78) C:\WINDOWS\System32\dmserver.dll
16:09:39.0843 3924	dmserver ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0843 3924	dmserver - detected UnsignedFile.Multi.Generic (1)
16:09:39.0859 3924	DMusic          (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
16:09:39.0859 3924	DMusic ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0859 3924	DMusic - detected UnsignedFile.Multi.Generic (1)
16:09:39.0906 3924	Dnscache        (407f3227ac618fd1ca54b335b083de07) C:\WINDOWS\System32\dnsrslvr.dll
16:09:39.0921 3924	Dnscache ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0921 3924	Dnscache - detected UnsignedFile.Multi.Generic (1)
16:09:39.0968 3924	Dot3svc         (676e36c4ff5bcea1900f44182b9723e6) C:\WINDOWS\System32\dot3svc.dll
16:09:39.0984 3924	Dot3svc ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0984 3924	Dot3svc - detected UnsignedFile.Multi.Generic (1)
16:09:40.0000 3924	dpti2o          (40f3b93b4e5b0126f2f5c0a7a5e22660) C:\WINDOWS\system32\DRIVERS\dpti2o.sys
16:09:40.0015 3924	dpti2o ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0015 3924	dpti2o - detected UnsignedFile.Multi.Generic (1)
16:09:40.0031 3924	drmkaud         (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
16:09:40.0031 3924	drmkaud ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0031 3924	drmkaud - detected UnsignedFile.Multi.Generic (1)
16:09:40.0062 3924	DRVMCDB         (83106585494d5eb96f59187200c144bd) C:\WINDOWS\system32\Drivers\DRVMCDB.SYS
16:09:40.0078 3924	DRVMCDB - ok
16:09:40.0109 3924	DRVNDDM         (ffc371525aa55d1bae18715ebcb8797c) C:\WINDOWS\system32\Drivers\DRVNDDM.SYS
16:09:40.0109 3924	DRVNDDM - ok
16:09:40.0125 3924	E100B           (a6de5342417fec3c0aa8efebb899c431) C:\WINDOWS\system32\DRIVERS\e100b325.sys
16:09:40.0140 3924	E100B ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0140 3924	E100B - detected UnsignedFile.Multi.Generic (1)
16:09:40.0156 3924	EapHost         (4e4f2fddab0a0736d7671134dcce91fb) C:\WINDOWS\System32\eapsvc.dll
16:09:40.0156 3924	EapHost ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0156 3924	EapHost - detected UnsignedFile.Multi.Generic (1)
16:09:40.0203 3924	ERSvc           (877c18558d70587aa7823a1a308ac96b) C:\WINDOWS\System32\ersvc.dll
16:09:40.0203 3924	ERSvc ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0203 3924	ERSvc - detected UnsignedFile.Multi.Generic (1)
16:09:40.0234 3924	Eventlog        (a3edbe9053889fb24ab22492472b39dc) C:\WINDOWS\system32\services.exe
16:09:40.0234 3924	Eventlog ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0234 3924	Eventlog - detected UnsignedFile.Multi.Generic (1)
16:09:40.0296 3924	EventSystem     (af4f6b5739d18ca7972ab53e091cbc74) C:\WINDOWS\system32\es.dll
16:09:40.0296 3924	EventSystem ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0296 3924	EventSystem - detected UnsignedFile.Multi.Generic (1)
16:09:40.0328 3924	Fastfat         (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
16:09:40.0328 3924	Fastfat ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0328 3924	Fastfat - detected UnsignedFile.Multi.Generic (1)
16:09:40.0390 3924	FastUserSwitchingCompatibility (2db7d303c36ddd055215052f118e8e75) C:\WINDOWS\System32\shsvcs.dll
16:09:40.0390 3924	FastUserSwitchingCompatibility ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0390 3924	FastUserSwitchingCompatibility - detected UnsignedFile.Multi.Generic (1)
16:09:40.0437 3924	Fdc             (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
16:09:40.0437 3924	Fdc ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0437 3924	Fdc - detected UnsignedFile.Multi.Generic (1)
16:09:40.0468 3924	Fips            (b0678a548587c5f1967b0d70bacad6c1) C:\WINDOWS\system32\drivers\Fips.sys
16:09:40.0484 3924	Fips ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0484 3924	Fips - detected UnsignedFile.Multi.Generic (1)
16:09:40.0484 3924	Flpydisk        (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
16:09:40.0484 3924	Flpydisk ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0484 3924	Flpydisk - detected UnsignedFile.Multi.Generic (1)
16:09:40.0546 3924	FltMgr          (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
16:09:40.0562 3924	FltMgr ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0562 3924	FltMgr - detected UnsignedFile.Multi.Generic (1)
16:09:40.0734 3924	FontCache3.0.0.0 (8ba7c024070f2b7fdd98ed8a4ba41789) c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
16:09:40.0750 3924	FontCache3.0.0.0 - ok
16:09:40.0796 3924	Fs_Rec          (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
16:09:40.0812 3924	Fs_Rec ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0812 3924	Fs_Rec - detected UnsignedFile.Multi.Generic (1)
16:09:40.0828 3924	Ftdisk          (8f1955ce42e1484714b542f341647778) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
16:09:40.0828 3924	Ftdisk ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0828 3924	Ftdisk - detected UnsignedFile.Multi.Generic (1)
16:09:40.0843 3924	G400            (33d00f8cb70ac5f7a8101f79d5273615) C:\WINDOWS\system32\DRIVERS\G400m.sys
16:09:40.0859 3924	G400 ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0859 3924	G400 - detected UnsignedFile.Multi.Generic (1)
16:09:40.0984 3924	getPlusHelper   (0879dc7444a201df84e69c5dd5083d61) C:\Programme\NOS\bin\getPlus_Helper.dll
16:09:40.0984 3924	getPlusHelper - ok
16:09:41.0046 3924	Gpc             (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
16:09:41.0046 3924	Gpc ( UnsignedFile.Multi.Generic ) - warning
16:09:41.0046 3924	Gpc - detected UnsignedFile.Multi.Generic (1)
16:09:41.0109 3924	HDAudBus        (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
16:09:41.0109 3924	HDAudBus ( UnsignedFile.Multi.Generic ) - warning
16:09:41.0109 3924	HDAudBus - detected UnsignedFile.Multi.Generic (1)
16:09:41.0203 3924	helpsvc         (cb66bf85bf599befd6c6a57c2e20357f) C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
16:09:41.0218 3924	helpsvc ( UnsignedFile.Multi.Generic ) - warning
16:09:41.0218 3924	helpsvc - detected UnsignedFile.Multi.Generic (1)
16:09:41.0218 3924	HidServ - ok
16:09:41.0234 3924	HidUsb          (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
16:09:41.0234 3924	HidUsb ( UnsignedFile.Multi.Generic ) - warning
16:09:41.0234 3924	HidUsb - detected UnsignedFile.Multi.Generic (1)
16:09:41.0296 3924	hkmsvc          (ed29f14101523a6e0e808107405d452c) C:\WINDOWS\System32\kmsvc.dll
16:09:41.0296 3924	hkmsvc ( UnsignedFile.Multi.Generic ) - warning
16:09:41.0296 3924	hkmsvc - detected UnsignedFile.Multi.Generic (1)
16:09:41.0328 3924	hpn             (b028377dea0546a5fcfba928a8aefae0) C:\WINDOWS\system32\DRIVERS\hpn.sys
16:09:41.0328 3924	hpn ( UnsignedFile.Multi.Generic ) - warning
16:09:41.0328 3924	hpn - detected UnsignedFile.Multi.Generic (1)
16:09:41.0390 3924	HTTP            (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
16:09:41.0390 3924	HTTP ( UnsignedFile.Multi.Generic ) - warning
16:09:41.0390 3924	HTTP - detected UnsignedFile.Multi.Generic (1)
16:09:41.0453 3924	HTTPFilter      (9e4adb854cebcfb81a4b36718feecd16) C:\WINDOWS\System32\w3ssl.dll
16:09:41.0453 3924	HTTPFilter ( UnsignedFile.Multi.Generic ) - warning
16:09:41.0453 3924	HTTPFilter - detected UnsignedFile.Multi.Generic (1)
16:09:41.0468 3924	i2omgmt         (9368670bd426ebea5e8b18a62416ec28) C:\WINDOWS\system32\drivers\i2omgmt.sys
16:09:41.0468 3924	i2omgmt ( UnsignedFile.Multi.Generic ) - warning
16:09:41.0468 3924	i2omgmt - detected UnsignedFile.Multi.Generic (1)
16:09:41.0484 3924	i2omp           (f10863bf1ccc290babd1a09188ae49e0) C:\WINDOWS\system32\DRIVERS\i2omp.sys
16:09:41.0484 3924	i2omp ( UnsignedFile.Multi.Generic ) - warning
16:09:41.0484 3924	i2omp - detected UnsignedFile.Multi.Generic (1)
16:09:41.0484 3924	i8042prt        (e283b97cfbeb86c1d86baed5f7846a92) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
16:09:41.0500 3924	i8042prt ( UnsignedFile.Multi.Generic ) - warning
16:09:41.0500 3924	i8042prt - detected UnsignedFile.Multi.Generic (1)
16:09:41.0546 3924	iaStor          (309c4d86d989fb1fcf64bd30dc81c51b) C:\WINDOWS\system32\DRIVERS\iaStor.sys
16:09:41.0593 3924	iaStor ( UnsignedFile.Multi.Generic ) - warning
16:09:41.0593 3924	iaStor - detected UnsignedFile.Multi.Generic (1)
16:09:41.0781 3924	idsvc           (c01ac32dc5c03076cfb852cb5da5229c) c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
16:09:41.0859 3924	idsvc - ok
16:09:41.0953 3924	Imapi           (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
16:09:41.0968 3924	Imapi ( UnsignedFile.Multi.Generic ) - warning
16:09:41.0968 3924	Imapi - detected UnsignedFile.Multi.Generic (1)
16:09:42.0015 3924	ImapiService    (d4b413aa210c21e46aedd2ba5b68d38e) C:\WINDOWS\system32\imapi.exe
16:09:42.0015 3924	ImapiService ( UnsignedFile.Multi.Generic ) - warning
16:09:42.0015 3924	ImapiService - detected UnsignedFile.Multi.Generic (1)
16:09:42.0046 3924	ini910u         (4a40e045faee58631fd8d91afc620719) C:\WINDOWS\system32\DRIVERS\ini910u.sys
16:09:42.0062 3924	ini910u ( UnsignedFile.Multi.Generic ) - warning
16:09:42.0062 3924	ini910u - detected UnsignedFile.Multi.Generic (1)
16:09:42.0312 3924	IntcAzAudAddService (557e20484a095d949912883f5ab29e88) C:\WINDOWS\system32\drivers\RtkHDAud.sys
16:09:42.0484 3924	IntcAzAudAddService ( UnsignedFile.Multi.Generic ) - warning
16:09:42.0484 3924	IntcAzAudAddService - detected UnsignedFile.Multi.Generic (1)
16:09:42.0656 3924	IntelIde        (69c4e3c9e67a1f103b94e14fdd5f3213) C:\WINDOWS\system32\DRIVERS\intelide.sys
16:09:42.0671 3924	IntelIde ( UnsignedFile.Multi.Generic ) - warning
16:09:42.0671 3924	IntelIde - detected UnsignedFile.Multi.Generic (1)
16:09:42.0703 3924	Ip6Fw           (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
16:09:42.0718 3924	Ip6Fw ( UnsignedFile.Multi.Generic ) - warning
16:09:42.0718 3924	Ip6Fw - detected UnsignedFile.Multi.Generic (1)
16:09:42.0718 3924	IpFilterDriver  (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
16:09:42.0718 3924	IpFilterDriver ( UnsignedFile.Multi.Generic ) - warning
16:09:42.0718 3924	IpFilterDriver - detected UnsignedFile.Multi.Generic (1)
16:09:42.0734 3924	IpInIp          (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
16:09:42.0734 3924	IpInIp ( UnsignedFile.Multi.Generic ) - warning
16:09:42.0734 3924	IpInIp - detected UnsignedFile.Multi.Generic (1)
16:09:42.0765 3924	IpNat           (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
16:09:42.0765 3924	IpNat ( UnsignedFile.Multi.Generic ) - warning
16:09:42.0765 3924	IpNat - detected UnsignedFile.Multi.Generic (1)
16:09:42.0796 3924	IPSec           (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
16:09:42.0812 3924	IPSec ( UnsignedFile.Multi.Generic ) - warning
16:09:42.0812 3924	IPSec - detected UnsignedFile.Multi.Generic (1)
16:09:42.0812 3924	IRENUM          (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
16:09:42.0812 3924	IRENUM ( UnsignedFile.Multi.Generic ) - warning
16:09:42.0812 3924	IRENUM - detected UnsignedFile.Multi.Generic (1)
16:09:42.0843 3924	isapnp          (6dfb88f64135c525433e87648bda30de) C:\WINDOWS\system32\DRIVERS\isapnp.sys
16:09:42.0859 3924	isapnp ( UnsignedFile.Multi.Generic ) - warning
16:09:42.0859 3924	isapnp - detected UnsignedFile.Multi.Generic (1)
16:09:42.0953 3924	IviRegMgr       (213822072085b5bbad9af30ab577d817) C:\Programme\Gemeinsame Dateien\InterVideo\RegMgr\iviRegMgr.exe
16:09:42.0953 3924	IviRegMgr - ok
16:09:43.0031 3924	JavaQuickStarterService (de5d05fd449798ef88cc34ad4b1e7f85) C:\Programme\Java\jre6\bin\jqs.exe
16:09:43.0046 3924	JavaQuickStarterService - ok
16:09:43.0062 3924	Kbdclass        (1704d8c4c8807b889e43c649b478a452) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
16:09:43.0062 3924	Kbdclass ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0062 3924	Kbdclass - detected UnsignedFile.Multi.Generic (1)
16:09:43.0078 3924	kmixer          (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
16:09:43.0093 3924	kmixer ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0093 3924	kmixer - detected UnsignedFile.Multi.Generic (1)
16:09:43.0140 3924	KSecDD          (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
16:09:43.0156 3924	KSecDD ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0156 3924	KSecDD - detected UnsignedFile.Multi.Generic (1)
16:09:43.0203 3924	lanmanserver    (2bbdcb79900990f0716dfcb714e72de7) C:\WINDOWS\System32\srvsvc.dll
16:09:43.0203 3924	lanmanserver ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0203 3924	lanmanserver - detected UnsignedFile.Multi.Generic (1)
16:09:43.0265 3924	lanmanworkstation (1869b14b06b44b44af70548e1ea3303f) C:\WINDOWS\System32\wkssvc.dll
16:09:43.0281 3924	lanmanworkstation ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0281 3924	lanmanworkstation - detected UnsignedFile.Multi.Generic (1)
16:09:43.0281 3924	lbrtfdc - ok
16:09:43.0343 3924	LmHosts         (636714b7d43c8d0c80449123fd266920) C:\WINDOWS\System32\lmhsvc.dll
16:09:43.0343 3924	LmHosts ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0343 3924	LmHosts - detected UnsignedFile.Multi.Generic (1)
16:09:43.0375 3924	Messenger       (b7550a7107281d170ce85524b1488c98) C:\WINDOWS\System32\msgsvc.dll
16:09:43.0390 3924	Messenger ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0390 3924	Messenger - detected UnsignedFile.Multi.Generic (1)
16:09:43.0421 3924	mnmdd           (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
16:09:43.0421 3924	mnmdd ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0421 3924	mnmdd - detected UnsignedFile.Multi.Generic (1)
16:09:43.0468 3924	mnmsrvc         (c2f1d365fd96791b037ee504868065d3) C:\WINDOWS\system32\mnmsrvc.exe
16:09:43.0468 3924	mnmsrvc ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0468 3924	mnmsrvc - detected UnsignedFile.Multi.Generic (1)
16:09:43.0500 3924	Modem           (6fb74ebd4ec57a6f1781de3852cc3362) C:\WINDOWS\system32\drivers\Modem.sys
16:09:43.0515 3924	Modem ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0515 3924	Modem - detected UnsignedFile.Multi.Generic (1)
16:09:43.0546 3924	Mouclass        (b24ce8005deab254c0251e15cb71d802) C:\WINDOWS\system32\DRIVERS\mouclass.sys
16:09:43.0562 3924	Mouclass ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0562 3924	Mouclass - detected UnsignedFile.Multi.Generic (1)
16:09:43.0609 3924	mouhid          (66a6f73c74e1791464160a7065ce711a) C:\WINDOWS\system32\DRIVERS\mouhid.sys
16:09:43.0609 3924	mouhid ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0609 3924	mouhid - detected UnsignedFile.Multi.Generic (1)
16:09:43.0625 3924	MountMgr        (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
16:09:43.0640 3924	MountMgr ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0640 3924	MountMgr - detected UnsignedFile.Multi.Generic (1)
16:09:43.0718 3924	MozillaMaintenance (46297fa8e30a6007f14118fc2b942fbc) C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe
16:09:43.0765 3924	MozillaMaintenance - ok
16:09:43.0796 3924	mraid35x        (3f4bb95e5a44f3be34824e8e7caf0737) C:\WINDOWS\system32\DRIVERS\mraid35x.sys
16:09:43.0796 3924	mraid35x ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0796 3924	mraid35x - detected UnsignedFile.Multi.Generic (1)
16:09:43.0828 3924	MRxDAV          (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
16:09:43.0859 3924	MRxDAV ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0859 3924	MRxDAV - detected UnsignedFile.Multi.Generic (1)
16:09:43.0890 3924	MRxSmb          (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
16:09:43.0906 3924	MRxSmb ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0906 3924	MRxSmb - detected UnsignedFile.Multi.Generic (1)
16:09:43.0953 3924	MSDTC           (35a031af38c55f92d28aa03ee9f12cc9) C:\WINDOWS\system32\msdtc.exe
16:09:43.0953 3924	MSDTC ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0953 3924	MSDTC - detected UnsignedFile.Multi.Generic (1)
16:09:43.0968 3924	Msfs            (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
16:09:43.0984 3924	Msfs ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0984 3924	Msfs - detected UnsignedFile.Multi.Generic (1)
16:09:43.0984 3924	MSIServer - ok
16:09:44.0000 3924	MSKSSRV         (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
16:09:44.0000 3924	MSKSSRV ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0000 3924	MSKSSRV - detected UnsignedFile.Multi.Generic (1)
16:09:44.0031 3924	MSPCLOCK        (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
16:09:44.0031 3924	MSPCLOCK ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0031 3924	MSPCLOCK - detected UnsignedFile.Multi.Generic (1)
16:09:44.0062 3924	MSPQM           (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
16:09:44.0062 3924	MSPQM ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0062 3924	MSPQM - detected UnsignedFile.Multi.Generic (1)
16:09:44.0093 3924	mssmbios        (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
16:09:44.0093 3924	mssmbios ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0093 3924	mssmbios - detected UnsignedFile.Multi.Generic (1)
16:09:44.0125 3924	Mup             (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
16:09:44.0140 3924	Mup ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0140 3924	Mup - detected UnsignedFile.Multi.Generic (1)
16:09:44.0171 3924	napagent        (46bb15ae2ac7d025d6d2567b876817bd) C:\WINDOWS\System32\qagentrt.dll
16:09:44.0203 3924	napagent ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0203 3924	napagent - detected UnsignedFile.Multi.Generic (1)
16:09:44.0250 3924	NDIS            (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
16:09:44.0250 3924	NDIS ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0250 3924	NDIS - detected UnsignedFile.Multi.Generic (1)
16:09:44.0296 3924	NdisTapi        (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
16:09:44.0296 3924	NdisTapi ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0296 3924	NdisTapi - detected UnsignedFile.Multi.Generic (1)
16:09:44.0312 3924	Ndisuio         (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
16:09:44.0312 3924	Ndisuio ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0312 3924	Ndisuio - detected UnsignedFile.Multi.Generic (1)
16:09:44.0328 3924	NdisWan         (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
16:09:44.0328 3924	NdisWan ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0328 3924	NdisWan - detected UnsignedFile.Multi.Generic (1)
16:09:44.0359 3924	NDProxy         (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
16:09:44.0375 3924	NDProxy ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0375 3924	NDProxy - detected UnsignedFile.Multi.Generic (1)
16:09:44.0390 3924	NetBIOS         (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
16:09:44.0406 3924	NetBIOS ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0406 3924	NetBIOS - detected UnsignedFile.Multi.Generic (1)
16:09:44.0437 3924	NetBT           (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
16:09:44.0453 3924	NetBT ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0453 3924	NetBT - detected UnsignedFile.Multi.Generic (1)
16:09:44.0531 3924	NetDDE          (8ace4251bffd09ce75679fe940e996cc) C:\WINDOWS\system32\netdde.exe
16:09:44.0531 3924	NetDDE ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0531 3924	NetDDE - detected UnsignedFile.Multi.Generic (1)
16:09:44.0546 3924	NetDDEdsdm      (8ace4251bffd09ce75679fe940e996cc) C:\WINDOWS\system32\netdde.exe
16:09:44.0546 3924	NetDDEdsdm ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0546 3924	NetDDEdsdm - detected UnsignedFile.Multi.Generic (1)
16:09:44.0593 3924	Netlogon        (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe
16:09:44.0609 3924	Netlogon ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0609 3924	Netlogon - detected UnsignedFile.Multi.Generic (1)
16:09:44.0671 3924	Netman          (e6d88f1f6745bf00b57e7855a2ab696c) C:\WINDOWS\System32\netman.dll
16:09:44.0671 3924	Netman ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0671 3924	Netman - detected UnsignedFile.Multi.Generic (1)
16:09:44.0781 3924	NetTcpPortSharing (d34612c5d02d026535b3095d620626ae) c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
16:09:44.0796 3924	NetTcpPortSharing - ok
16:09:44.0828 3924	Nla             (f1b67b6b0751ae0e6e964b02821206a3) C:\WINDOWS\System32\mswsock.dll
16:09:44.0843 3924	Nla ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0843 3924	Nla - detected UnsignedFile.Multi.Generic (1)
16:09:44.0937 3924	nosGetPlusHelper (25d6b2eb0a1fc4ab413afe7ec4793ec1) C:\Programme\NOS\bin\getPlus_Helper_3004.dll
16:09:44.0953 3924	nosGetPlusHelper - ok
16:09:45.0000 3924	Npfs            (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
16:09:45.0000 3924	Npfs ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0000 3924	Npfs - detected UnsignedFile.Multi.Generic (1)
16:09:45.0031 3924	Ntfs            (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
16:09:45.0046 3924	Ntfs ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0046 3924	Ntfs - detected UnsignedFile.Multi.Generic (1)
16:09:45.0046 3924	NtLmSsp         (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe
16:09:45.0062 3924	NtLmSsp ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0062 3924	NtLmSsp - detected UnsignedFile.Multi.Generic (1)
16:09:45.0109 3924	NtmsSvc         (56af4064996fa5bac9c449b1514b4770) C:\WINDOWS\system32\ntmssvc.dll
16:09:45.0125 3924	NtmsSvc ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0125 3924	NtmsSvc - detected UnsignedFile.Multi.Generic (1)
16:09:45.0171 3924	Null            (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
16:09:45.0187 3924	Null ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0187 3924	Null - detected UnsignedFile.Multi.Generic (1)
16:09:45.0296 3924	nv              (2b298519edbfcf451d43e0f1e8f1006d) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
16:09:45.0375 3924	nv ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0375 3924	nv - detected UnsignedFile.Multi.Generic (1)
16:09:45.0515 3924	NwlnkFlt        (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
16:09:45.0531 3924	NwlnkFlt ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0531 3924	NwlnkFlt - detected UnsignedFile.Multi.Generic (1)
16:09:45.0531 3924	NwlnkFwd        (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
16:09:45.0531 3924	NwlnkFwd ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0531 3924	NwlnkFwd - detected UnsignedFile.Multi.Generic (1)
16:09:45.0593 3924	Parport         (f84785660305b9b903fb3bca8ba29837) C:\WINDOWS\system32\DRIVERS\parport.sys
16:09:45.0609 3924	Parport ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0609 3924	Parport - detected UnsignedFile.Multi.Generic (1)
16:09:45.0609 3924	PartMgr         (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
16:09:45.0625 3924	PartMgr ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0625 3924	PartMgr - detected UnsignedFile.Multi.Generic (1)
16:09:45.0625 3924	ParVdm          (c2bf987829099a3eaa2ca6a0a90ecb4f) C:\WINDOWS\system32\drivers\ParVdm.sys
16:09:45.0640 3924	ParVdm ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0640 3924	ParVdm - detected UnsignedFile.Multi.Generic (1)
16:09:45.0640 3924	PCI             (387e8dedc343aa2d1efbc30580273acd) C:\WINDOWS\system32\DRIVERS\pci.sys
16:09:45.0656 3924	PCI ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0656 3924	PCI - detected UnsignedFile.Multi.Generic (1)
16:09:45.0656 3924	PCIDump - ok
16:09:45.0671 3924	PCIIde          (59ba86d9a61cbcf4df8e598c331f5b82) C:\WINDOWS\system32\DRIVERS\pciide.sys
16:09:45.0671 3924	PCIIde ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0671 3924	PCIIde - detected UnsignedFile.Multi.Generic (1)
16:09:45.0718 3924	Pcmcia          (a2a966b77d61847d61a3051df87c8c97) C:\WINDOWS\system32\drivers\Pcmcia.sys
16:09:45.0734 3924	Pcmcia ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0734 3924	Pcmcia - detected UnsignedFile.Multi.Generic (1)
16:09:45.0734 3924	PDCOMP - ok
16:09:45.0750 3924	PDFRAME - ok
16:09:45.0765 3924	PDRELI - ok
16:09:45.0781 3924	PDRFRAME - ok
16:09:45.0828 3924	pelmouse        (bd71f603c9aa0754c96e7557ee0001f9) C:\WINDOWS\system32\DRIVERS\pelmouse.sys
16:09:45.0843 3924	pelmouse ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0843 3924	pelmouse - detected UnsignedFile.Multi.Generic (1)
16:09:45.0843 3924	pelusblf        (25c36dccbe713f62bd9d24dd5c554b4e) C:\WINDOWS\system32\DRIVERS\pelusblf.sys
16:09:45.0859 3924	pelusblf ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0859 3924	pelusblf - detected UnsignedFile.Multi.Generic (1)
16:09:45.0890 3924	perc2           (6c14b9c19ba84f73d3a86dba11133101) C:\WINDOWS\system32\DRIVERS\perc2.sys
16:09:45.0890 3924	perc2 ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0890 3924	perc2 - detected UnsignedFile.Multi.Generic (1)
16:09:45.0906 3924	perc2hib        (f50f7c27f131afe7beba13e14a3b9416) C:\WINDOWS\system32\DRIVERS\perc2hib.sys
16:09:45.0906 3924	perc2hib ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0906 3924	perc2hib - detected UnsignedFile.Multi.Generic (1)
16:09:45.0968 3924	PlugPlay        (a3edbe9053889fb24ab22492472b39dc) C:\WINDOWS\system32\services.exe
16:09:45.0984 3924	PlugPlay ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0984 3924	PlugPlay - detected UnsignedFile.Multi.Generic (1)
16:09:46.0015 3924	pmem            (dedef40e1d05842639491365cb2c069e) C:\WINDOWS\System32\drivers\pmemnt.sys
16:09:46.0031 3924	pmem ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0031 3924	pmem - detected UnsignedFile.Multi.Generic (1)
16:09:46.0062 3924	PolicyAgent     (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe
16:09:46.0062 3924	PolicyAgent ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0062 3924	PolicyAgent - detected UnsignedFile.Multi.Generic (1)
16:09:46.0093 3924	PptpMiniport    (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
16:09:46.0109 3924	PptpMiniport ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0109 3924	PptpMiniport - detected UnsignedFile.Multi.Generic (1)
16:09:46.0125 3924	Processor       (2cb55427c58679f49ad600fccba76360) C:\WINDOWS\system32\DRIVERS\processr.sys
16:09:46.0125 3924	Processor ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0125 3924	Processor - detected UnsignedFile.Multi.Generic (1)
16:09:46.0125 3924	ProtectedStorage (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe
16:09:46.0140 3924	ProtectedStorage ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0140 3924	ProtectedStorage - detected UnsignedFile.Multi.Generic (1)
16:09:46.0156 3924	psadd           (f8a25f1dd8b2c332cbc663e3579566e7) C:\WINDOWS\system32\DRIVERS\psadd.sys
16:09:46.0171 3924	psadd - ok
16:09:46.0171 3924	PSched          (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
16:09:46.0187 3924	PSched ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0187 3924	PSched - detected UnsignedFile.Multi.Generic (1)
16:09:46.0187 3924	Ptilink         (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
16:09:46.0203 3924	Ptilink ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0203 3924	Ptilink - detected UnsignedFile.Multi.Generic (1)
16:09:46.0218 3924	PxHelp20        (40fedd328f98245ad201cf5f9f311724) C:\WINDOWS\system32\Drivers\PxHelp20.sys
16:09:46.0234 3924	PxHelp20 - ok
16:09:46.0265 3924	ql1080          (0a63fb54039eb5662433caba3b26dba7) C:\WINDOWS\system32\DRIVERS\ql1080.sys
16:09:46.0265 3924	ql1080 ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0265 3924	ql1080 - detected UnsignedFile.Multi.Generic (1)
16:09:46.0265 3924	Ql10wnt         (6503449e1d43a0ff0201ad5cb1b8c706) C:\WINDOWS\system32\DRIVERS\ql10wnt.sys
16:09:46.0281 3924	Ql10wnt ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0281 3924	Ql10wnt - detected UnsignedFile.Multi.Generic (1)
16:09:46.0281 3924	ql12160         (156ed0ef20c15114ca097a34a30d8a01) C:\WINDOWS\system32\DRIVERS\ql12160.sys
16:09:46.0296 3924	ql12160 ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0296 3924	ql12160 - detected UnsignedFile.Multi.Generic (1)
16:09:46.0296 3924	ql1240          (70f016bebde6d29e864c1230a07cc5e6) C:\WINDOWS\system32\DRIVERS\ql1240.sys
16:09:46.0312 3924	ql1240 ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0312 3924	ql1240 - detected UnsignedFile.Multi.Generic (1)
16:09:46.0312 3924	ql1280          (907f0aeea6bc451011611e732bd31fcf) C:\WINDOWS\system32\DRIVERS\ql1280.sys
16:09:46.0328 3924	ql1280 ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0328 3924	ql1280 - detected UnsignedFile.Multi.Generic (1)
16:09:46.0359 3924	RasAcd          (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
16:09:46.0359 3924	RasAcd ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0359 3924	RasAcd - detected UnsignedFile.Multi.Generic (1)
16:09:46.0421 3924	RasAuto         (f5ba6caccdb66c8f048e867563203246) C:\WINDOWS\System32\rasauto.dll
16:09:46.0437 3924	RasAuto ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0437 3924	RasAuto - detected UnsignedFile.Multi.Generic (1)
16:09:46.0468 3924	Rasl2tp         (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
16:09:46.0468 3924	Rasl2tp ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0468 3924	Rasl2tp - detected UnsignedFile.Multi.Generic (1)
16:09:46.0515 3924	RasMan          (f9a7b66ea345726edb5862a46b1eccd5) C:\WINDOWS\System32\rasmans.dll
16:09:46.0531 3924	RasMan ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0531 3924	RasMan - detected UnsignedFile.Multi.Generic (1)
16:09:46.0546 3924	RasPppoe        (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
16:09:46.0546 3924	RasPppoe ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0546 3924	RasPppoe - detected UnsignedFile.Multi.Generic (1)
16:09:46.0546 3924	Raspti          (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
16:09:46.0562 3924	Raspti ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0562 3924	Raspti - detected UnsignedFile.Multi.Generic (1)
16:09:46.0609 3924	Rdbss           (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
16:09:46.0625 3924	Rdbss ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0625 3924	Rdbss - detected UnsignedFile.Multi.Generic (1)
16:09:46.0671 3924	RDPCDD          (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
16:09:46.0671 3924	RDPCDD ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0671 3924	RDPCDD - detected UnsignedFile.Multi.Generic (1)
16:09:46.0687 3924	rdpdr           (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
16:09:46.0703 3924	rdpdr ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0703 3924	rdpdr - detected UnsignedFile.Multi.Generic (1)
16:09:46.0734 3924	RDPWD           (6589db6e5969f8eee594cf71171c5028) C:\WINDOWS\system32\drivers\RDPWD.sys
16:09:46.0750 3924	RDPWD ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0750 3924	RDPWD - detected UnsignedFile.Multi.Generic (1)
16:09:46.0796 3924	RDSessMgr       (263af18af0f3db99f574c95f284ccec9) C:\WINDOWS\system32\sessmgr.exe
16:09:46.0812 3924	RDSessMgr ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0812 3924	RDSessMgr - detected UnsignedFile.Multi.Generic (1)
16:09:46.0828 3924	redbook         (ed761d453856f795a7fe056e42c36365) C:\WINDOWS\system32\DRIVERS\redbook.sys
16:09:46.0843 3924	redbook ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0843 3924	redbook - detected UnsignedFile.Multi.Generic (1)
16:09:46.0875 3924	RemoteAccess    (0e97ec96d6942ceec2d188cc2eb69a01) C:\WINDOWS\System32\mprdim.dll
16:09:46.0890 3924	RemoteAccess ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0890 3924	RemoteAccess - detected UnsignedFile.Multi.Generic (1)
16:09:46.0921 3924	RemoteRegistry  (e4cd1f3d84e1c2ca0b8cf7501e201593) C:\WINDOWS\system32\regsvc.dll
16:09:46.0937 3924	RemoteRegistry ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0937 3924	RemoteRegistry - detected UnsignedFile.Multi.Generic (1)
16:09:47.0156 3924	RoxMediaDB10    (eb9eeb379848f356797eb9ef31114ca5) C:\Programme\Gemeinsame Dateien\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe
16:09:47.0218 3924	RoxMediaDB10 - ok
16:09:47.0250 3924	RpcLocator      (2a02e21867497df20b8fc95631395169) C:\WINDOWS\system32\locator.exe
16:09:47.0265 3924	RpcLocator ( UnsignedFile.Multi.Generic ) - warning
16:09:47.0265 3924	RpcLocator - detected UnsignedFile.Multi.Generic (1)
16:09:47.0312 3924	RpcSs           (3127afbf2c1ed0ab14a1bbb7aaecb85b) C:\WINDOWS\system32\rpcss.dll
16:09:47.0328 3924	RpcSs ( UnsignedFile.Multi.Generic ) - warning
16:09:47.0328 3924	RpcSs - detected UnsignedFile.Multi.Generic (1)
16:09:47.0375 3924	RSVP            (4bdd71b4b521521499dfd14735c4f398) C:\WINDOWS\system32\rsvp.exe
16:09:47.0390 3924	RSVP ( UnsignedFile.Multi.Generic ) - warning
16:09:47.0406 3924	RSVP - detected UnsignedFile.Multi.Generic (1)
16:09:47.0437 3924	SamSs           (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe
16:09:47.0453 3924	SamSs ( UnsignedFile.Multi.Generic ) - warning
16:09:47.0453 3924	SamSs - detected UnsignedFile.Multi.Generic (1)
16:09:47.0453 3924	SCardSvr        (dcec079fad95d36c8dd5cb6d779dfe32) C:\WINDOWS\System32\SCardSvr.exe
16:09:47.0468 3924	SCardSvr ( UnsignedFile.Multi.Generic ) - warning
16:09:47.0468 3924	SCardSvr - detected UnsignedFile.Multi.Generic (1)
16:09:47.0515 3924	Schedule        (a050194a44d7fa8d7186ed2f4e8367ae) C:\WINDOWS\system32\schedsvc.dll
16:09:47.0531 3924	Schedule ( UnsignedFile.Multi.Generic ) - warning
16:09:47.0531 3924	Schedule - detected UnsignedFile.Multi.Generic (1)
16:09:47.0609 3924	Secdrv          (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
16:09:47.0609 3924	Secdrv ( UnsignedFile.Multi.Generic ) - warning
16:09:47.0609 3924	Secdrv - detected UnsignedFile.Multi.Generic (1)
16:09:47.0640 3924	seclogon        (bee4cfd1d48c23b44cf4b974b0b79b2b) C:\WINDOWS\System32\seclogon.dll
16:09:47.0656 3924	seclogon ( UnsignedFile.Multi.Generic ) - warning
16:09:47.0656 3924	seclogon - detected UnsignedFile.Multi.Generic (1)
16:09:47.0656 3924	SENS            (2aac9b6ed9eddffb721d6452e34d67e3) C:\WINDOWS\system32\sens.dll
16:09:47.0671 3924	SENS ( UnsignedFile.Multi.Generic ) - warning
16:09:47.0671 3924	SENS - detected UnsignedFile.Multi.Generic (1)
16:09:47.0718 3924	serenum         (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
16:09:47.0718 3924	serenum ( UnsignedFile.Multi.Generic ) - warning
16:09:47.0718 3924	serenum - detected UnsignedFile.Multi.Generic (1)
16:09:47.0734 3924	Serial          (cf24eb4f0412c82bcd1f4f35a025e31d) C:\WINDOWS\system32\DRIVERS\serial.sys
16:09:47.0734 3924	Serial ( UnsignedFile.Multi.Generic ) - warning
16:09:47.0734 3924	Serial - detected UnsignedFile.Multi.Generic (1)
16:09:47.0812 3924	SessionLauncher - ok
16:09:47.0843 3924	Sfloppy         (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
16:09:47.0843 3924	Sfloppy ( UnsignedFile.Multi.Generic ) - warning
16:09:47.0843 3924	Sfloppy - detected UnsignedFile.Multi.Generic (1)
16:09:47.0906 3924	ShellHWDetection (2db7d303c36ddd055215052f118e8e75) C:\WINDOWS\System32\shsvcs.dll
16:09:47.0921 3924	ShellHWDetection ( UnsignedFile.Multi.Generic ) - warning
16:09:47.0921 3924	ShellHWDetection - detected UnsignedFile.Multi.Generic (1)
16:09:47.0921 3924	Simbad - ok
16:09:48.0000 3924	sisagp          (6b33d0ebd30db32e27d1d78fe946a754) C:\WINDOWS\system32\DRIVERS\sisagp.sys
16:09:48.0015 3924	sisagp ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0015 3924	sisagp - detected UnsignedFile.Multi.Generic (1)
16:09:48.0031 3924	Sparrow         (83c0f71f86d3bdaf915685f3d568b20e) C:\WINDOWS\system32\DRIVERS\sparrow.sys
16:09:48.0031 3924	Sparrow ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0031 3924	Sparrow - detected UnsignedFile.Multi.Generic (1)
16:09:48.0062 3924	splitter        (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
16:09:48.0078 3924	splitter ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0078 3924	splitter - detected UnsignedFile.Multi.Generic (1)
16:09:48.0125 3924	Spooler         (60784f891563fb1b767f70117fc2428f) C:\WINDOWS\system32\spoolsv.exe
16:09:48.0125 3924	Spooler ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0125 3924	Spooler - detected UnsignedFile.Multi.Generic (1)
16:09:48.0140 3924	sr              (50fa898f8c032796d3b1b9951bb5a90f) C:\WINDOWS\system32\DRIVERS\sr.sys
16:09:48.0156 3924	sr ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0156 3924	sr - detected UnsignedFile.Multi.Generic (1)
16:09:48.0218 3924	srservice       (fe77a85495065f3ad59c5c65b6c54182) C:\WINDOWS\system32\srsvc.dll
16:09:48.0218 3924	srservice ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0218 3924	srservice - detected UnsignedFile.Multi.Generic (1)
16:09:48.0234 3924	Srv             (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
16:09:48.0250 3924	Srv ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0250 3924	Srv - detected UnsignedFile.Multi.Generic (1)
16:09:48.0296 3924	SSDPSRV         (4df5b05dfaec29e13e1ed6f6ee12c500) C:\WINDOWS\System32\ssdpsrv.dll
16:09:48.0296 3924	SSDPSRV ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0296 3924	SSDPSRV - detected UnsignedFile.Multi.Generic (1)
16:09:48.0328 3924	ssmdrv          (a36ee93698802cd899f98bfd553d8185) C:\WINDOWS\system32\DRIVERS\ssmdrv.sys
16:09:48.0343 3924	ssmdrv - ok
16:09:48.0343 3924	SSPORT - ok
16:09:48.0375 3924	stisvc          (bc2c5985611c5356b24aeb370953ded9) C:\WINDOWS\system32\wiaservc.dll
16:09:48.0390 3924	stisvc ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0390 3924	stisvc - detected UnsignedFile.Multi.Generic (1)
16:09:48.0468 3924	stllssvr        (1d0063597c3666404fcf97698abeb019) C:\Programme\Gemeinsame Dateien\SureThing Shared\stllssvr.exe
16:09:48.0484 3924	stllssvr - ok
16:09:48.0609 3924	SUService       (b71a41cad9de92219c3891e88f822ac3) c:\programme\lenovo\system update\suservice.exe
16:09:48.0609 3924	SUService ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0609 3924	SUService - detected UnsignedFile.Multi.Generic (1)
16:09:48.0656 3924	swenum          (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
16:09:48.0656 3924	swenum ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0656 3924	swenum - detected UnsignedFile.Multi.Generic (1)
16:09:48.0671 3924	swmidi          (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
16:09:48.0687 3924	swmidi ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0687 3924	swmidi - detected UnsignedFile.Multi.Generic (1)
16:09:48.0687 3924	SwPrv - ok
16:09:48.0734 3924	symc810         (1ff3217614018630d0a6758630fc698c) C:\WINDOWS\system32\DRIVERS\symc810.sys
16:09:48.0734 3924	symc810 ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0734 3924	symc810 - detected UnsignedFile.Multi.Generic (1)
16:09:48.0750 3924	symc8xx         (070e001d95cf725186ef8b20335f933c) C:\WINDOWS\system32\DRIVERS\symc8xx.sys
16:09:48.0765 3924	symc8xx ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0765 3924	symc8xx - detected UnsignedFile.Multi.Generic (1)
16:09:48.0765 3924	sym_hi          (80ac1c4abbe2df3b738bf15517a51f2c) C:\WINDOWS\system32\DRIVERS\sym_hi.sys
16:09:48.0765 3924	sym_hi ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0765 3924	sym_hi - detected UnsignedFile.Multi.Generic (1)
16:09:48.0781 3924	sym_u3          (bf4fab949a382a8e105f46ebb4937058) C:\WINDOWS\system32\DRIVERS\sym_u3.sys
16:09:48.0781 3924	sym_u3 ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0781 3924	sym_u3 - detected UnsignedFile.Multi.Generic (1)
16:09:48.0828 3924	sysaudio        (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
16:09:48.0828 3924	sysaudio ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0828 3924	sysaudio - detected UnsignedFile.Multi.Generic (1)
16:09:48.0875 3924	SysmonLog       (2903fffa2523926d6219428040dce6b9) C:\WINDOWS\system32\smlogsvc.exe
16:09:48.0875 3924	SysmonLog ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0875 3924	SysmonLog - detected UnsignedFile.Multi.Generic (1)
16:09:48.0906 3924	TapiSrv         (05903cac4b98908d55ea5774775b382e) C:\WINDOWS\System32\tapisrv.dll
16:09:48.0921 3924	TapiSrv ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0921 3924	TapiSrv - detected UnsignedFile.Multi.Generic (1)
16:09:48.0968 3924	Tcpip           (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
16:09:49.0000 3924	Tcpip ( UnsignedFile.Multi.Generic ) - warning
16:09:49.0000 3924	Tcpip - detected UnsignedFile.Multi.Generic (1)
16:09:49.0031 3924	TDPIPE          (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
16:09:49.0046 3924	TDPIPE ( UnsignedFile.Multi.Generic ) - warning
16:09:49.0046 3924	TDPIPE - detected UnsignedFile.Multi.Generic (1)
16:09:49.0062 3924	TDTCP           (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
16:09:49.0062 3924	TDTCP ( UnsignedFile.Multi.Generic ) - warning
16:09:49.0062 3924	TDTCP - detected UnsignedFile.Multi.Generic (1)
16:09:49.0093 3924	TermDD          (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
16:09:49.0093 3924	TermDD ( UnsignedFile.Multi.Generic ) - warning
16:09:49.0093 3924	TermDD - detected UnsignedFile.Multi.Generic (1)
16:09:49.0125 3924	TermService     (b7de02c863d8f5a005a7bf375375a6a4) C:\WINDOWS\System32\termsrv.dll
16:09:49.0140 3924	TermService ( UnsignedFile.Multi.Generic ) - warning
16:09:49.0140 3924	TermService - detected UnsignedFile.Multi.Generic (1)
16:09:49.0187 3924	Themes          (2db7d303c36ddd055215052f118e8e75) C:\WINDOWS\System32\shsvcs.dll
16:09:49.0187 3924	Themes ( UnsignedFile.Multi.Generic ) - warning
16:09:49.0187 3924	Themes - detected UnsignedFile.Multi.Generic (1)
16:09:49.0375 3924	ThinkVantage Registry Monitor Service (eb90a37aabaefd7b4f4f92befea8c2e2) c:\Programme\Gemeinsame Dateien\Lenovo\tvt_reg_monitor_svc.exe
16:09:49.0390 3924	ThinkVantage Registry Monitor Service - ok
16:09:49.0437 3924	TlntSvr         (03681a1ce77f51586903869a5ab1deab) C:\WINDOWS\system32\tlntsvr.exe
16:09:49.0453 3924	TlntSvr ( UnsignedFile.Multi.Generic ) - warning
16:09:49.0453 3924	TlntSvr - detected UnsignedFile.Multi.Generic (1)
16:09:49.0484 3924	TosIde          (d213a9247dc347f305a2d4cc9b951487) C:\WINDOWS\system32\DRIVERS\toside.sys
16:09:49.0500 3924	TosIde ( UnsignedFile.Multi.Generic ) - warning
16:09:49.0500 3924	TosIde - detected UnsignedFile.Multi.Generic (1)
16:09:49.0531 3924	TPM             (82fed3fea9bcd77fc870a1e4c8b62870) C:\WINDOWS\system32\DRIVERS\tpm.sys
16:09:49.0531 3924	TPM ( UnsignedFile.Multi.Generic ) - warning
16:09:49.0531 3924	TPM - detected UnsignedFile.Multi.Generic (1)
16:09:49.0562 3924	TrkWks          (626504572b175867f30f3215c04b3e2f) C:\WINDOWS\system32\trkwks.dll
16:09:49.0578 3924	TrkWks ( UnsignedFile.Multi.Generic ) - warning
16:09:49.0578 3924	TrkWks - detected UnsignedFile.Multi.Generic (1)
16:09:49.0687 3924	TSSCoreService  (4a4ffdeb90a151b734a0bea3d420fd3b) C:\Programme\Lenovo\Client Security Solution\tvttcsd.exe
16:09:49.0718 3924	TSSCoreService - ok
16:09:49.0781 3924	TVT Backup Protection Service (d6ee5dcb3ec401baa10395809047935e) C:\Programme\Lenovo\Rescue and Recovery\rrpservice.exe
16:09:49.0796 3924	TVT Backup Protection Service ( UnsignedFile.Multi.Generic ) - warning
16:09:49.0796 3924	TVT Backup Protection Service - detected UnsignedFile.Multi.Generic (1)
16:09:49.0843 3924	TVT Backup Service (0db73f3fb565cf028c7458c70fa59121) C:\Programme\Lenovo\Rescue and Recovery\rrservice.exe
16:09:49.0890 3924	TVT Backup Service ( UnsignedFile.Multi.Generic ) - warning
16:09:49.0890 3924	TVT Backup Service - detected UnsignedFile.Multi.Generic (1)
16:09:50.0078 3924	TVT Scheduler   (6c69fe90f0cc12ef0638ae10dfa4db4e) c:\Programme\Gemeinsame Dateien\Lenovo\Scheduler\tvtsched.exe
16:09:50.0156 3924	TVT Scheduler ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0156 3924	TVT Scheduler - detected UnsignedFile.Multi.Generic (1)
16:09:50.0328 3924	tvtfilter       (49258a02a1e8d304ed88b0f1c56b1738) C:\WINDOWS\system32\DRIVERS\tvtfilter.sys
16:09:50.0343 3924	tvtfilter ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0343 3924	tvtfilter - detected UnsignedFile.Multi.Generic (1)
16:09:50.0343 3924	TVTI2C          (7e66dda1ef146bfc3a6e36e08e036602) C:\WINDOWS\system32\DRIVERS\Tvti2c.sys
16:09:50.0359 3924	TVTI2C - ok
16:09:50.0421 3924	tvtumon         (a6e0aafbe64592871f9a9f38a61c1fa5) C:\WINDOWS\system32\DRIVERS\tvtumon.sys
16:09:50.0421 3924	tvtumon - ok
16:09:50.0484 3924	TVT_UpdateMonitor (3152355ea8e8274d4fda092f454da7c0) C:\Programme\Lenovo\Rescue and Recovery\UpdateMonitor.exe
16:09:50.0500 3924	TVT_UpdateMonitor ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0500 3924	TVT_UpdateMonitor - detected UnsignedFile.Multi.Generic (1)
16:09:50.0546 3924	Udfs            (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
16:09:50.0562 3924	Udfs ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0562 3924	Udfs - detected UnsignedFile.Multi.Generic (1)
16:09:50.0593 3924	ultra           (1b698a51cd528d8da4ffaed66dfc51b9) C:\WINDOWS\system32\DRIVERS\ultra.sys
16:09:50.0609 3924	ultra ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0609 3924	ultra - detected UnsignedFile.Multi.Generic (1)
16:09:50.0640 3924	Update          (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
16:09:50.0656 3924	Update ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0656 3924	Update - detected UnsignedFile.Multi.Generic (1)
16:09:50.0687 3924	upnphost        (1dfd8975d8c89214b98d9387c1125b49) C:\WINDOWS\System32\upnphost.dll
16:09:50.0703 3924	upnphost ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0703 3924	upnphost - detected UnsignedFile.Multi.Generic (1)
16:09:50.0718 3924	UPS             (9b11e6118958e63e1fef129466e2bda7) C:\WINDOWS\System32\ups.exe
16:09:50.0718 3924	UPS ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0718 3924	UPS - detected UnsignedFile.Multi.Generic (1)
16:09:50.0750 3924	USBDLM          (7ee4372b18b6f3d06a0e02fb2e2c0a48) C:\USBDLM\USBDLM.exe
16:09:50.0765 3924	USBDLM ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0765 3924	USBDLM - detected UnsignedFile.Multi.Generic (1)
16:09:50.0796 3924	usbehci         (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
16:09:50.0796 3924	usbehci ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0796 3924	usbehci - detected UnsignedFile.Multi.Generic (1)
16:09:50.0812 3924	usbhub          (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
16:09:50.0812 3924	usbhub ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0812 3924	usbhub - detected UnsignedFile.Multi.Generic (1)
16:09:50.0828 3924	usbohci         (0daecce65366ea32b162f85f07c6753b) C:\WINDOWS\system32\DRIVERS\usbohci.sys
16:09:50.0828 3924	usbohci ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0828 3924	usbohci - detected UnsignedFile.Multi.Generic (1)
16:09:50.0875 3924	usbprint        (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
16:09:50.0890 3924	usbprint ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0890 3924	usbprint - detected UnsignedFile.Multi.Generic (1)
16:09:50.0937 3924	usbscan         (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
16:09:50.0937 3924	usbscan ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0937 3924	usbscan - detected UnsignedFile.Multi.Generic (1)
16:09:51.0000 3924	USBSTOR         (6cd7b22193718f1d17a47a1cd6d37e75) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
16:09:51.0015 3924	USBSTOR ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0015 3924	USBSTOR - detected UnsignedFile.Multi.Generic (1)
16:09:51.0031 3924	usbuhci         (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
16:09:51.0031 3924	usbuhci ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0031 3924	usbuhci - detected UnsignedFile.Multi.Generic (1)
16:09:51.0062 3924	VgaSave         (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
16:09:51.0062 3924	VgaSave ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0062 3924	VgaSave - detected UnsignedFile.Multi.Generic (1)
16:09:51.0078 3924	viaagp          (754292ce5848b3738281b4f3607eaef4) C:\WINDOWS\system32\DRIVERS\viaagp.sys
16:09:51.0093 3924	viaagp ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0093 3924	viaagp - detected UnsignedFile.Multi.Generic (1)
16:09:51.0125 3924	ViaIde          (3b3efcda263b8ac14fdf9cbdd0791b2e) C:\WINDOWS\system32\DRIVERS\viaide.sys
16:09:51.0125 3924	ViaIde ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0125 3924	ViaIde - detected UnsignedFile.Multi.Generic (1)
16:09:51.0156 3924	VolSnap         (a5a712f4e880874a477af790b5186e1d) C:\WINDOWS\system32\drivers\VolSnap.sys
16:09:51.0171 3924	VolSnap ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0171 3924	VolSnap - detected UnsignedFile.Multi.Generic (1)
16:09:51.0218 3924	VSS             (68f106273be29e7b7ef8266977268e78) C:\WINDOWS\System32\vssvc.exe
16:09:51.0234 3924	VSS ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0234 3924	VSS - detected UnsignedFile.Multi.Generic (1)
16:09:51.0296 3924	W32Time         (7b353059e665f8b7ad2bbeaef597cf45) C:\WINDOWS\system32\w32time.dll
16:09:51.0312 3924	W32Time ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0312 3924	W32Time - detected UnsignedFile.Multi.Generic (1)
16:09:51.0328 3924	Wanarp          (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
16:09:51.0343 3924	Wanarp ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0343 3924	Wanarp - detected UnsignedFile.Multi.Generic (1)
16:09:51.0343 3924	WDICA - ok
16:09:51.0359 3924	wdmaud          (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
16:09:51.0375 3924	wdmaud ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0375 3924	wdmaud - detected UnsignedFile.Multi.Generic (1)
16:09:51.0437 3924	WebClient       (81727c9873e3905a2ffc1ebd07265002) C:\WINDOWS\System32\webclnt.dll
16:09:51.0437 3924	WebClient ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0437 3924	WebClient - detected UnsignedFile.Multi.Generic (1)
16:09:51.0531 3924	winmgmt         (6f3f3973d97714cc5f906a19fe883729) C:\WINDOWS\system32\wbem\WMIsvc.dll
16:09:51.0531 3924	winmgmt ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0531 3924	winmgmt - detected UnsignedFile.Multi.Generic (1)
16:09:51.0578 3924	WmdmPmSN        (051b1bdecd6dee18c771b5d5ec7f044d) C:\WINDOWS\system32\MsPMSNSv.dll
16:09:51.0578 3924	WmdmPmSN ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0578 3924	WmdmPmSN - detected UnsignedFile.Multi.Generic (1)
16:09:51.0671 3924	Wmi             (ffa4d901d46d07a5bab2d8307fbb51a6) C:\WINDOWS\System32\advapi32.dll
16:09:51.0687 3924	Wmi ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0687 3924	Wmi - detected UnsignedFile.Multi.Generic (1)
16:09:51.0734 3924	WmiApSrv        (93908111ba57a6e60ec2fa2de202105c) C:\WINDOWS\system32\wbem\wmiapsrv.exe
16:09:51.0750 3924	WmiApSrv ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0750 3924	WmiApSrv - detected UnsignedFile.Multi.Generic (1)
16:09:51.0937 3924	WMPNetworkSvc   (d3dbd6e76f4be9bee67eb631488b5f29) C:\Programme\Windows Media Player\WMPNetwk.exe
16:09:51.0984 3924	WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0984 3924	WMPNetworkSvc - detected UnsignedFile.Multi.Generic (1)
16:09:52.0062 3924	WS2IFSL         (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
16:09:52.0062 3924	WS2IFSL ( UnsignedFile.Multi.Generic ) - warning
16:09:52.0062 3924	WS2IFSL - detected UnsignedFile.Multi.Generic (1)
16:09:52.0109 3924	wuauserv        (7b4fe05202aa6bf9f4dfd0e6a0d8a085) C:\WINDOWS\system32\wuauserv.dll
16:09:52.0109 3924	wuauserv ( UnsignedFile.Multi.Generic ) - warning
16:09:52.0109 3924	wuauserv - detected UnsignedFile.Multi.Generic (1)
16:09:52.0156 3924	WudfPf          (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
16:09:52.0156 3924	WudfPf ( UnsignedFile.Multi.Generic ) - warning
16:09:52.0156 3924	WudfPf - detected UnsignedFile.Multi.Generic (1)
16:09:52.0171 3924	WudfRd          (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
16:09:52.0171 3924	WudfRd ( UnsignedFile.Multi.Generic ) - warning
16:09:52.0171 3924	WudfRd - detected UnsignedFile.Multi.Generic (1)
16:09:52.0218 3924	WudfSvc         (05231c04253c5bc30b26cbaae680ed89) C:\WINDOWS\System32\WUDFSvc.dll
16:09:52.0234 3924	WudfSvc ( UnsignedFile.Multi.Generic ) - warning
16:09:52.0234 3924	WudfSvc - detected UnsignedFile.Multi.Generic (1)
16:09:52.0296 3924	WZCSVC          (c4f109c005f6725162d2d12ca751e4a7) C:\WINDOWS\System32\wzcsvc.dll
16:09:52.0312 3924	WZCSVC ( UnsignedFile.Multi.Generic ) - warning
16:09:52.0312 3924	WZCSVC - detected UnsignedFile.Multi.Generic (1)
16:09:52.0359 3924	xmlprov         (0ada34871a2e1cd2caafed1237a47750) C:\WINDOWS\System32\xmlprov.dll
16:09:52.0375 3924	xmlprov ( UnsignedFile.Multi.Generic ) - warning
16:09:52.0375 3924	xmlprov - detected UnsignedFile.Multi.Generic (1)
16:09:52.0421 3924	yukonwxp        (f44f7f71b3c84f8ee96c3bfd3915c25f) C:\WINDOWS\system32\DRIVERS\yk51x86.sys
16:09:52.0437 3924	yukonwxp ( UnsignedFile.Multi.Generic ) - warning
16:09:52.0437 3924	yukonwxp - detected UnsignedFile.Multi.Generic (1)
16:09:52.0468 3924	MBR (0x1B8)     (c071872809c5cc9b673149d98a04024e) \Device\Harddisk0\DR0
16:09:52.0890 3924	\Device\Harddisk0\DR0 - ok
16:09:52.0890 3924	Boot (0x1200)   (99a7a05844a4f2828a17f7bce039d44d) \Device\Harddisk0\DR0\Partition0
16:09:52.0890 3924	\Device\Harddisk0\DR0\Partition0 - ok
16:09:52.0890 3924	============================================================
16:09:52.0890 3924	Scan finished
16:09:52.0890 3924	============================================================
16:09:53.0015 4088	Detected object count: 260
16:09:53.0015 4088	Actual detected object count: 260
16:10:54.0468 4088	abp480n5 ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0468 4088	abp480n5 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0468 4088	ac97intc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0468 4088	ac97intc ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0484 4088	ACPI ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0484 4088	ACPI ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0484 4088	ACPIEC ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0484 4088	ACPIEC ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0484 4088	adpu160m ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0484 4088	adpu160m ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0500 4088	aec ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0500 4088	aec ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0500 4088	AFD ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0500 4088	AFD ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0500 4088	agp440 ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0500 4088	agp440 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0500 4088	agpCPQ ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0500 4088	agpCPQ ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0500 4088	Aha154x ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0500 4088	Aha154x ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0500 4088	aic78u2 ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0500 4088	aic78u2 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0500 4088	aic78xx ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0500 4088	aic78xx ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0515 4088	Akamai ( HiddenFile.Multi.Generic ) - skipped by user
16:10:54.0515 4088	Akamai ( HiddenFile.Multi.Generic ) - User select action: Skip 
16:10:54.0515 4088	Alerter ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0515 4088	Alerter ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0531 4088	ALG ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0531 4088	ALG ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0531 4088	AliIde ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0531 4088	AliIde ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0546 4088	alim1541 ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0546 4088	alim1541 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0546 4088	amdagp ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0546 4088	amdagp ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0562 4088	amsint ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0562 4088	amsint ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0562 4088	AppMgmt ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0562 4088	AppMgmt ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0562 4088	asc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0562 4088	asc ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0578 4088	asc3350p ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0578 4088	asc3350p ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0578 4088	asc3550 ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0578 4088	asc3550 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0593 4088	AsyncMac ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0593 4088	AsyncMac ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0593 4088	atapi ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0593 4088	atapi ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0609 4088	Ati HotKey Poller ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0609 4088	Ati HotKey Poller ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0609 4088	ati2mtag ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0609 4088	ati2mtag ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0625 4088	Atmarpc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0625 4088	Atmarpc ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0625 4088	AudioSrv ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0625 4088	AudioSrv ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0640 4088	audstub ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0640 4088	audstub ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0640 4088	Beep ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0640 4088	Beep ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0640 4088	BITS ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0640 4088	BITS ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0656 4088	Browser ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0656 4088	Browser ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0656 4088	cbidf ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0656 4088	cbidf ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0671 4088	cbidf2k ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0671 4088	cbidf2k ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0671 4088	cd20xrnt ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0671 4088	cd20xrnt ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0687 4088	Cdaudio ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0687 4088	Cdaudio ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0687 4088	Cdfs ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0687 4088	Cdfs ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0687 4088	Cdrom ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0687 4088	Cdrom ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0703 4088	CiSvc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0703 4088	CiSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0703 4088	ClipSrv ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0703 4088	ClipSrv ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0718 4088	CmdIde ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0718 4088	CmdIde ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0718 4088	Cpqarray ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0718 4088	Cpqarray ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0718 4088	CryptSvc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0718 4088	CryptSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0734 4088	dac2w2k ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0734 4088	dac2w2k ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0734 4088	dac960nt ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0734 4088	dac960nt ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0750 4088	DcomLaunch ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0750 4088	DcomLaunch ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0750 4088	DgiVecp ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0750 4088	DgiVecp ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0750 4088	Dhcp ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0750 4088	Dhcp ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0765 4088	Disk ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0765 4088	Disk ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0765 4088	dmboot ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0765 4088	dmboot ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0781 4088	dmio ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0781 4088	dmio ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0781 4088	dmload ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0781 4088	dmload ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0781 4088	dmserver ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0781 4088	dmserver ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0796 4088	DMusic ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0796 4088	DMusic ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0796 4088	Dnscache ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0796 4088	Dnscache ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0812 4088	Dot3svc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0812 4088	Dot3svc ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0812 4088	dpti2o ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0812 4088	dpti2o ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0812 4088	drmkaud ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0812 4088	drmkaud ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0828 4088	E100B ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0828 4088	E100B ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0828 4088	EapHost ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0828 4088	EapHost ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0828 4088	ERSvc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0828 4088	ERSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0843 4088	Eventlog ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0843 4088	Eventlog ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0843 4088	EventSystem ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0843 4088	EventSystem ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0843 4088	Fastfat ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0843 4088	Fastfat ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0859 4088	FastUserSwitchingCompatibility ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0859 4088	FastUserSwitchingCompatibility ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0859 4088	Fdc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0859 4088	Fdc ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0875 4088	Fips ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0875 4088	Fips ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0875 4088	Flpydisk ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0875 4088	Flpydisk ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0875 4088	FltMgr ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0875 4088	FltMgr ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0890 4088	Fs_Rec ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0890 4088	Fs_Rec ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0890 4088	Ftdisk ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0890 4088	Ftdisk ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0890 4088	G400 ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0890 4088	G400 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0906 4088	Gpc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0906 4088	Gpc ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0906 4088	HDAudBus ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0906 4088	HDAudBus ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0906 4088	helpsvc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0906 4088	helpsvc ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0921 4088	HidUsb ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0921 4088	HidUsb ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0921 4088	hkmsvc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0921 4088	hkmsvc ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0921 4088	hpn ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0921 4088	hpn ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0937 4088	HTTP ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0937 4088	HTTP ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0937 4088	HTTPFilter ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0937 4088	HTTPFilter ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0937 4088	i2omgmt ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0937 4088	i2omgmt ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0953 4088	i2omp ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0953 4088	i2omp ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0953 4088	i8042prt ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0953 4088	i8042prt ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0953 4088	iaStor ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0953 4088	iaStor ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0968 4088	Imapi ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0968 4088	Imapi ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0968 4088	ImapiService ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0968 4088	ImapiService ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0968 4088	ini910u ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0968 4088	ini910u ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0984 4088	IntcAzAudAddService ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0984 4088	IntcAzAudAddService ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0984 4088	IntelIde ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0984 4088	IntelIde ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:54.0984 4088	Ip6Fw ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0984 4088	Ip6Fw ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0000 4088	IpFilterDriver ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0000 4088	IpFilterDriver ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0000 4088	IpInIp ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0000 4088	IpInIp ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0000 4088	IpNat ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0000 4088	IpNat ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0015 4088	IPSec ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0015 4088	IPSec ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0015 4088	IRENUM ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0015 4088	IRENUM ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0015 4088	isapnp ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0015 4088	isapnp ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0031 4088	Kbdclass ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0031 4088	Kbdclass ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0031 4088	kmixer ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0031 4088	kmixer ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0031 4088	KSecDD ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0031 4088	KSecDD ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0031 4088	lanmanserver ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0031 4088	lanmanserver ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0046 4088	lanmanworkstation ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0046 4088	lanmanworkstation ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0046 4088	LmHosts ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0046 4088	LmHosts ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0046 4088	Messenger ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0046 4088	Messenger ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0062 4088	mnmdd ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0062 4088	mnmdd ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0062 4088	mnmsrvc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0062 4088	mnmsrvc ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0062 4088	Modem ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0062 4088	Modem ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0078 4088	Mouclass ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0078 4088	Mouclass ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0078 4088	mouhid ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0078 4088	mouhid ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0078 4088	MountMgr ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0078 4088	MountMgr ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0078 4088	mraid35x ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0078 4088	mraid35x ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0093 4088	MRxDAV ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0093 4088	MRxDAV ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0093 4088	MRxSmb ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0093 4088	MRxSmb ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0093 4088	MSDTC ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0093 4088	MSDTC ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0109 4088	Msfs ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0109 4088	Msfs ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0109 4088	MSKSSRV ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0109 4088	MSKSSRV ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0109 4088	MSPCLOCK ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0109 4088	MSPCLOCK ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0125 4088	MSPQM ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0125 4088	MSPQM ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0125 4088	mssmbios ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0125 4088	mssmbios ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0125 4088	Mup ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0125 4088	Mup ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0125 4088	napagent ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0125 4088	napagent ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0140 4088	NDIS ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0140 4088	NDIS ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0140 4088	NdisTapi ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0140 4088	NdisTapi ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0140 4088	Ndisuio ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0140 4088	Ndisuio ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0156 4088	NdisWan ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0156 4088	NdisWan ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0156 4088	NDProxy ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0156 4088	NDProxy ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0156 4088	NetBIOS ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0156 4088	NetBIOS ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0156 4088	NetBT ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0156 4088	NetBT ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0171 4088	NetDDE ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0171 4088	NetDDE ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0171 4088	NetDDEdsdm ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0171 4088	NetDDEdsdm ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0171 4088	Netlogon ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0171 4088	Netlogon ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0187 4088	Netman ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0187 4088	Netman ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0187 4088	Nla ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0187 4088	Nla ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0187 4088	Npfs ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0187 4088	Npfs ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0187 4088	Ntfs ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0187 4088	Ntfs ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0203 4088	NtLmSsp ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0203 4088	NtLmSsp ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0203 4088	NtmsSvc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0203 4088	NtmsSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0203 4088	Null ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0203 4088	Null ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0203 4088	nv ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0203 4088	nv ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0218 4088	NwlnkFlt ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0218 4088	NwlnkFlt ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0218 4088	NwlnkFwd ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0218 4088	NwlnkFwd ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0218 4088	Parport ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0218 4088	Parport ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0218 4088	PartMgr ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0218 4088	PartMgr ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0234 4088	ParVdm ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0234 4088	ParVdm ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0234 4088	PCI ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0234 4088	PCI ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0234 4088	PCIIde ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0234 4088	PCIIde ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0234 4088	Pcmcia ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0234 4088	Pcmcia ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0250 4088	pelmouse ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0250 4088	pelmouse ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0250 4088	pelusblf ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0250 4088	pelusblf ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0250 4088	perc2 ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0250 4088	perc2 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0250 4088	perc2hib ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0250 4088	perc2hib ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0265 4088	PlugPlay ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0265 4088	PlugPlay ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0265 4088	pmem ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0265 4088	pmem ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0265 4088	PolicyAgent ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0265 4088	PolicyAgent ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0281 4088	PptpMiniport ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0281 4088	PptpMiniport ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0281 4088	Processor ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0281 4088	Processor ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0281 4088	ProtectedStorage ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0281 4088	ProtectedStorage ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0281 4088	PSched ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0281 4088	PSched ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0296 4088	Ptilink ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0296 4088	Ptilink ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0296 4088	ql1080 ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0296 4088	ql1080 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0296 4088	Ql10wnt ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0296 4088	Ql10wnt ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0296 4088	ql12160 ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0296 4088	ql12160 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0312 4088	ql1240 ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0312 4088	ql1240 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0312 4088	ql1280 ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0312 4088	ql1280 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0312 4088	RasAcd ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0312 4088	RasAcd ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0312 4088	RasAuto ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0312 4088	RasAuto ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0328 4088	Rasl2tp ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0328 4088	Rasl2tp ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0328 4088	RasMan ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0328 4088	RasMan ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0328 4088	RasPppoe ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0328 4088	RasPppoe ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0328 4088	Raspti ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0328 4088	Raspti ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0343 4088	Rdbss ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0343 4088	Rdbss ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0343 4088	RDPCDD ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0343 4088	RDPCDD ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0343 4088	rdpdr ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0343 4088	rdpdr ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0343 4088	RDPWD ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0343 4088	RDPWD ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0359 4088	RDSessMgr ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0375 4088	RDSessMgr ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0375 4088	redbook ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0375 4088	redbook ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0390 4088	RemoteAccess ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0390 4088	RemoteAccess ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0390 4088	RemoteRegistry ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0390 4088	RemoteRegistry ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0390 4088	RpcLocator ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0390 4088	RpcLocator ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0390 4088	RpcSs ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0390 4088	RpcSs ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0390 4088	RSVP ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0390 4088	RSVP ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0406 4088	SamSs ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0406 4088	SamSs ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0406 4088	SCardSvr ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0406 4088	SCardSvr ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0406 4088	Schedule ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0406 4088	Schedule ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0406 4088	Secdrv ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0406 4088	Secdrv ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0421 4088	seclogon ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0421 4088	seclogon ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0421 4088	SENS ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0421 4088	SENS ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0421 4088	serenum ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0421 4088	serenum ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0421 4088	Serial ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0421 4088	Serial ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0437 4088	Sfloppy ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0437 4088	Sfloppy ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0437 4088	ShellHWDetection ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0437 4088	ShellHWDetection ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0437 4088	sisagp ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0437 4088	sisagp ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0437 4088	Sparrow ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0437 4088	Sparrow ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0453 4088	splitter ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0453 4088	splitter ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0453 4088	Spooler ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0453 4088	Spooler ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0453 4088	sr ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0453 4088	sr ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0453 4088	srservice ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0453 4088	srservice ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0468 4088	Srv ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0468 4088	Srv ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0468 4088	SSDPSRV ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0468 4088	SSDPSRV ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0468 4088	stisvc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0468 4088	stisvc ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0468 4088	SUService ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0468 4088	SUService ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0468 4088	swenum ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0468 4088	swenum ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0484 4088	swmidi ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0484 4088	swmidi ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0484 4088	symc810 ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0484 4088	symc810 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0484 4088	symc8xx ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0484 4088	symc8xx ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0484 4088	sym_hi ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0484 4088	sym_hi ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0500 4088	sym_u3 ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0500 4088	sym_u3 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0500 4088	sysaudio ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0500 4088	sysaudio ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0500 4088	SysmonLog ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0500 4088	SysmonLog ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0500 4088	TapiSrv ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0500 4088	TapiSrv ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0515 4088	Tcpip ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0515 4088	Tcpip ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0515 4088	TDPIPE ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0515 4088	TDPIPE ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0515 4088	TDTCP ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0515 4088	TDTCP ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0515 4088	TermDD ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0515 4088	TermDD ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0515 4088	TermService ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0515 4088	TermService ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0531 4088	Themes ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0531 4088	Themes ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0531 4088	TlntSvr ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0531 4088	TlntSvr ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0531 4088	TosIde ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0531 4088	TosIde ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0531 4088	TPM ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0531 4088	TPM ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0546 4088	TrkWks ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0546 4088	TrkWks ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0546 4088	TVT Backup Protection Service ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0546 4088	TVT Backup Protection Service ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0546 4088	TVT Backup Service ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0546 4088	TVT Backup Service ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0546 4088	TVT Scheduler ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0546 4088	TVT Scheduler ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0546 4088	tvtfilter ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0546 4088	tvtfilter ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0562 4088	TVT_UpdateMonitor ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0562 4088	TVT_UpdateMonitor ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0562 4088	Udfs ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0562 4088	Udfs ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0562 4088	ultra ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0562 4088	ultra ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0562 4088	Update ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0562 4088	Update ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0578 4088	upnphost ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0578 4088	upnphost ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0578 4088	UPS ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0578 4088	UPS ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0578 4088	USBDLM ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0578 4088	USBDLM ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0578 4088	usbehci ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0578 4088	usbehci ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0578 4088	usbhub ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0578 4088	usbhub ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0593 4088	usbohci ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0593 4088	usbohci ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0593 4088	usbprint ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0593 4088	usbprint ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0593 4088	usbscan ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0593 4088	usbscan ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0593 4088	USBSTOR ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0593 4088	USBSTOR ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0609 4088	usbuhci ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0609 4088	usbuhci ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0609 4088	VgaSave ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0609 4088	VgaSave ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0609 4088	viaagp ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0609 4088	viaagp ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0609 4088	ViaIde ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0609 4088	ViaIde ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0609 4088	VolSnap ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0609 4088	VolSnap ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0625 4088	VSS ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0625 4088	VSS ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0625 4088	W32Time ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0625 4088	W32Time ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0625 4088	Wanarp ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0625 4088	Wanarp ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0625 4088	wdmaud ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0625 4088	wdmaud ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0625 4088	WebClient ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0625 4088	WebClient ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0640 4088	winmgmt ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0640 4088	winmgmt ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0640 4088	WmdmPmSN ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0640 4088	WmdmPmSN ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0640 4088	Wmi ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0640 4088	Wmi ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0640 4088	WmiApSrv ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0640 4088	WmiApSrv ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0656 4088	WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0656 4088	WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0656 4088	WS2IFSL ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0656 4088	WS2IFSL ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0656 4088	wuauserv ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0656 4088	wuauserv ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0656 4088	WudfPf ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0656 4088	WudfPf ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0656 4088	WudfRd ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0656 4088	WudfRd ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0671 4088	WudfSvc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0671 4088	WudfSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0671 4088	WZCSVC ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0671 4088	WZCSVC ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0671 4088	xmlprov ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0671 4088	xmlprov ( UnsignedFile.Multi.Generic ) - User select action: Skip 
16:10:55.0671 4088	yukonwxp ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0671 4088	yukonwxp ( UnsignedFile.Multi.Generic ) - User select action: Skip
         
__________________

Alt 21.07.2012, 13:26   #34
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
ich möchte meinen PC reinigen - Standard

ich möchte meinen PC reinigen



Dann bitte jetzt CF ausführen:

ComboFix

Ein Leitfaden und Tutorium zur Nutzung von ComboFix
  • Schliesse alle Programme, vor allem dein Antivirenprogramm und andere Hintergrundwächter sowie deinen Internetbrowser.
  • Starte combofix.exe von deinem Desktop aus, bestätige die Warnmeldungen, führe die Updates durch (falls vorgeschlagen), installiere die Wiederherstellungskonsole (falls vorgeschlagen) und lass dein System durchsuchen.
    Vermeide es auch während Combofix läuft die Maus und Tastatur zu benutzen.
  • Im Anschluss öffnet sich automatisch eine combofix.txt, diesen Inhalt bitte kopieren ([Strg]a, [Strg]c) und in deinen Beitrag einfügen ([Strg]v). Die Datei findest du außerdem unter: C:\ComboFix.txt.
Wichtiger Hinweis:
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat!

Es sollte nie auf eigene Initiative hin ausgeführt werden! Eine falsche Benutzung kann ernsthafte Computerprobleme nach sich ziehen und eine Bereinigung der Infektion noch erschweren.

Solltest du nach der Ausführung von Combofix Probleme beim Starten von Anwendungen haben und Meldungen erhalten wie

Zitat:
Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
startest du Windows dann manuell neu und die Fehlermeldungen sollten nicht mehr auftauchen.
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 21.07.2012, 16:29   #35
strobl
 
ich möchte meinen PC reinigen - Standard

ich möchte meinen PC reinigen



Beim Versuch ComboFix zu starten erscheint ein Dialogfenster:

"Dieser PC verfügt nicht über die Microsoft-Wiederherstellungskonsole.Ohne die kann ComboFix die Reparatur einiger schweren Infektionen nicht vornehmen.Klicke auf "Ja", um die Konsole herunterzuladen.

NB! Dies braucht eine funktionierende Internetverbindung.

Soll ich diese Konsole herunterladen?

Danke!

Ich wollte bis auf Ihre Antwort Avira und Windows-Firewall wieder aktivieren.
Mit Avira hat es geklappt.

Windows-Firewall bleibt inaktiv. Ich bin nach der Empfehlung im
Sicherheitscenter (Windows) gegangen und in der Systemsteurung Symbol "Windows-Firewall" angeklickt. Erscheint ein Infofenster" Aufgrund eines unbekannten Problems können die Einstellungen nicht angezeigt werden".

Das hat bestimmt mit ComboFix zu tun.

Vor dem Start ComboFix habe ich Avira deaktiviert. Nach dem Start hat ComboFix befohlen "Avira deaktivieren" ? Ich habe auf Ja geklickt.Dann kam ein nächstes Fenster mit Warnung. Ich dachte, dass ich zurückkehren kann und noch mal auf Avira einen Blick werfe. Die Situation war nicht eindeutig und habe ich den PC ausgeschaltet (also, vor dem Scannen).


Alt 23.07.2012, 13:45   #36
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
ich möchte meinen PC reinigen - Standard

ich möchte meinen PC reinigen



Ja diese Wiederherstellungskonsole muss installiert werden! Und natürlich brauchst du dafür eine Internetverbindung! Um die Windows-Firewall kümmern wir uns später!
__________________
--> ich möchte meinen PC reinigen

Alt 23.07.2012, 19:50   #37
strobl
 
ich möchte meinen PC reinigen - Standard

ich möchte meinen PC reinigen



Hier ist ComboFix-Log:

Code:
ATTFilter
ComboFix 12-07-24.01 - User 23.07.2012  20:40:58.1.2 - x86
Microsoft Windows XP Professional  5.1.2600.3.1252.49.1031.18.1791.1067 [GMT 2:00]
ausgeführt von:: c:\dokumente und einstellungen\User\Desktop\ComboFix.exe
AV: Avira Desktop *Disabled/Updated* {AD166499-45F9-482A-A743-FDD3350758C7}
.
.
((((((((((((((((((((((((((((((((((((   Weitere Löschungen   ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\dokumente und einstellungen\All Users\Anwendungsdaten\cf
c:\dokumente und einstellungen\User\4.0
c:\dokumente und einstellungen\User\Anwendungsdaten\AdobeDLM.log
c:\windows\IsUn0407.exe
c:\windows\system32\Thumbs.db
.
.
(((((((((((((((((((((((   Dateien erstellt von 2012-06-23 bis 2012-07-23  ))))))))))))))))))))))))))))))
.
.
2012-07-19 17:27 . 2012-07-19 17:27	--------	d-----w-	C:\_OTL
2012-07-04 17:01 . 2012-07-04 17:01	770384	----a-w-	c:\programme\Mozilla Firefox\msvcr100.dll
2012-07-04 17:01 . 2012-07-04 17:01	421200	----a-w-	c:\programme\Mozilla Firefox\msvcp100.dll
2012-06-30 15:36 . 2012-06-30 15:36	73728	----a-w-	c:\windows\system32\javacpl.cpl
2012-06-30 15:36 . 2012-06-30 15:36	476936	----a-w-	c:\windows\system32\npdeployJava1.dll
2012-06-30 14:52 . 2012-07-13 15:05	70344	----a-w-	c:\windows\system32\FlashPlayerCPLApp.cpl
2012-06-30 14:52 . 2012-07-13 15:05	426184	----a-w-	c:\windows\system32\FlashPlayerApp.exe
.
.
.
((((((((((((((((((((((((((((((((((((   Find3M Bericht   ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-06-30 15:36 . 2010-05-15 09:20	472840	----a-w-	c:\windows\system32\deployJava1.dll
2012-06-13 13:55 . 2006-01-27 01:00	1866240	------w-	c:\windows\system32\win32k.sys
2012-06-05 15:49 . 2008-04-14 02:22	1372672	------w-	c:\windows\system32\msxml6.dll
2012-06-05 15:49 . 2006-01-27 01:01	1172480	----a-w-	c:\windows\system32\msxml3.dll
2012-06-04 04:32 . 2006-01-27 01:01	152576	----a-w-	c:\windows\system32\schannel.dll
2012-06-02 13:19 . 2009-01-12 14:20	18456	----a-w-	c:\windows\system32\wuaueng.dll.mui
2012-06-02 13:19 . 2009-01-12 14:20	15896	----a-w-	c:\windows\system32\wuapi.dll.mui
2012-06-02 13:19 . 2006-01-27 02:16	329240	----a-w-	c:\windows\system32\wucltui.dll
2012-06-02 13:19 . 2006-01-27 02:16	219160	----a-w-	c:\windows\system32\wuaucpl.cpl
2012-06-02 13:19 . 2006-01-27 02:16	210968	----a-w-	c:\windows\system32\wuweb.dll
2012-06-02 13:19 . 2009-01-12 14:20	45080	----a-w-	c:\windows\system32\wups2.dll
2012-06-02 13:19 . 2009-01-12 14:20	15896	----a-w-	c:\windows\system32\wuaucpl.cpl.mui
2012-06-02 13:19 . 2006-01-27 02:16	53784	----a-w-	c:\windows\system32\wuauclt.exe
2012-06-02 13:19 . 2006-01-27 02:16	35864	----a-w-	c:\windows\system32\wups.dll
2012-06-02 13:19 . 2006-01-27 01:00	97304	----a-w-	c:\windows\system32\cdm.dll
2012-06-02 13:19 . 2009-01-12 14:20	23576	----a-w-	c:\windows\system32\wucltui.dll.mui
2012-06-02 13:19 . 2006-01-27 02:16	577048	----a-w-	c:\windows\system32\wuapi.dll
2012-06-02 13:19 . 2006-01-27 02:16	1933848	----a-w-	c:\windows\system32\wuaueng.dll
2012-05-31 13:22 . 2006-01-27 01:00	604160	----a-w-	c:\windows\system32\crypt32.dll
2012-05-15 15:37 . 2006-01-27 01:01	832512	----a-w-	c:\windows\system32\wininet.dll
2012-05-11 15:14 . 2011-10-24 17:41	83392	----a-w-	c:\windows\system32\drivers\avgntflt.sys
2012-05-11 15:14 . 2011-10-24 17:41	137928	----a-w-	c:\windows\system32\drivers\avipbb.sys
2012-05-05 03:14 . 2006-01-27 01:00	2150912	------w-	c:\windows\system32\ntoskrnl.exe
2012-05-05 03:14 . 2004-08-04 00:50	2029056	------w-	c:\windows\system32\ntkrnlpa.exe
2012-05-02 13:46 . 2006-01-27 01:00	139656	------w-	c:\windows\system32\drivers\rdpwd.sys
2012-07-20 13:56 . 2011-07-15 20:48	136672	----a-w-	c:\programme\mozilla firefox\components\browsercomps.dll
.
.
------- Sigcheck -------
Note: Unsigned files aren't necessarily malware.
.
[-] 2008-04-13 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\atapi.sys
[-] 2008-04-13 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\drivers\atapi.sys
[-] 2004-08-04 . CDFE4411A69C224BD1D11B2DA92DAC51 . 95360 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\atapi.sys
.
[-] 2008-04-13 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\asyncmac.sys
[-] 2008-04-13 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\drivers\asyncmac.sys
[-] 2004-08-04 . 02000ABF34AF4C218C35D257024807D6 . 14336 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\asyncmac.sys
.
[-] 2004-08-04 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\drivers\beep.sys
.
[-] 2008-04-14 . 1704D8C4C8807B889E43C649B478A452 . 25216 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\kbdclass.sys
[-] 2008-04-14 . 1704D8C4C8807B889E43C649B478A452 . 25216 . . [5.1.2600.5512] . . c:\windows\system32\drivers\kbdclass.sys
[-] 2004-08-04 . B128FC0A5CD83F669D5DE4B58F77C7D6 . 25216 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\kbdclass.sys
.
[-] 2008-04-13 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ndis.sys
[-] 2008-04-13 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ndis.sys
[-] 2004-08-04 . 558635D3AF1C7546D26067D5D9B6959E . 182912 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ndis.sys
.
[-] 2008-04-13 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ntfs.sys
[-] 2008-04-13 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ntfs.sys
[-] 2004-08-04 . B78BE402C3F63DD55521F73876951CDD . 574592 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ntfs.sys
.
[-] 2004-08-04 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\drivers\null.sys
.
[-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB2509553\SP3QFE\tcpip.sys
[-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys
[-] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys
[-] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\tcpip.sys
[-] 2006-01-13 . 5562CC0A47B2AEF06D3417B733F3C195 . 360448 . . [5.1.2600.2827] . . c:\windows\$NtServicePackUninstall$\tcpip.sys
.
[-] 2008-04-14 . B42057F06BBB98B31876C0B3F2B54E33 . 77824 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\browser.dll
[-] 2008-04-14 . B42057F06BBB98B31876C0B3F2B54E33 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\browser.dll
[-] 2004-08-04 . D8653DCD80CF2EBB333FC4FCC43A7DEF . 77312 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\browser.dll
.
[-] 2008-04-14 . AFB8261B56CBA0D86AEB6DF682AF9785 . 13312 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\lsass.exe
[-] 2008-04-14 . AFB8261B56CBA0D86AEB6DF682AF9785 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\lsass.exe
[-] 2004-08-04 . 183805EB05BCA5A1E4AAAED4D2BE3690 . 13312 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\lsass.exe
.
[-] 2008-04-14 . E6D88F1F6745BF00B57E7855A2AB696C . 198144 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\netman.dll
[-] 2008-04-14 . E6D88F1F6745BF00B57E7855A2AB696C . 198144 . . [5.1.2600.5512] . . c:\windows\system32\netman.dll
[-] 2004-08-04 . CDF4DA6B518105343FE9E8AFBBF8FBF4 . 198144 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\netman.dll
.
[-] 2008-04-14 02:22 . D0DE8A2EC95184E5193BB4B3112E29DF . 846848 . . [2001.12.4414.700] . . c:\windows\ServicePackFiles\i386\comres.dll
[-] 2008-04-14 02:22 . D0DE8A2EC95184E5193BB4B3112E29DF . 846848 . . [2001.12.4414.700] . . c:\windows\system32\comres.dll
[-] 2004-08-04 12:00 . 4B9D9E2708019763C5A72DA776DB1158 . 846848 . . [2001.12.4414.258] . . c:\windows\$NtServicePackUninstall$\comres.dll
.
[-] 2008-04-14 . D6F603772A789BB3228F310D650B8BD1 . 409088 . . [6.7.2600.5512] . . c:\windows\ServicePackFiles\i386\qmgr.dll
[-] 2008-04-14 . D6F603772A789BB3228F310D650B8BD1 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\qmgr.dll
[-] 2008-04-14 . D6F603772A789BB3228F310D650B8BD1 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\bits\qmgr.dll
[-] 2004-08-04 . 3A5E54A9AB96EF2D273B58136FB58EFE . 382464 . . [6.6.2600.2180] . . c:\windows\$NtServicePackUninstall$\qmgr.dll
.
[-] 2009-02-09 . D3D765E8455A961AE567B408F767D4F9 . 401408 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\rpcss.dll
[-] 2009-02-09 . 3127AFBF2C1ED0AB14A1BBB7AAECB85B . 401408 . . [5.1.2600.5755] . . c:\windows\system32\rpcss.dll
[-] 2009-02-09 . 3127AFBF2C1ED0AB14A1BBB7AAECB85B . 401408 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\rpcss.dll
[-] 2008-04-14 . E970C2296916BF4A2F958680016FE312 . 399360 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\rpcss.dll
[-] 2008-04-14 . E970C2296916BF4A2F958680016FE312 . 399360 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\rpcss.dll
[-] 2005-07-26 . DBA9F9C00A7A2B45EB8E451C2B6D10E9 . 398336 . . [5.1.2600.2726] . . c:\windows\$hf_mig$\KB902400\SP2QFE\rpcss.dll
[-] 2005-07-26 . 891E3E4537C6DFCAE475073FC49CE9CB . 397824 . . [5.1.2600.2726] . . c:\windows\$NtServicePackUninstall$\rpcss.dll
.
[-] 2009-02-09 . A3EDBE9053889FB24AB22492472B39DC . 111104 . . [5.1.2600.5755] . . c:\windows\system32\services.exe
[-] 2009-02-09 . A3EDBE9053889FB24AB22492472B39DC . 111104 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\services.exe
[-] 2009-02-09 . F0A7D59AF279326528715B206669B86C . 111104 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\services.exe
[-] 2008-04-14 . 4BB6A83640F1D1792AD21CE767B621C6 . 109056 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\services.exe
[-] 2008-04-14 . 4BB6A83640F1D1792AD21CE767B621C6 . 109056 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\services.exe
[-] 2004-08-04 . EDB6B81761BD60F32F740BBC40AFB676 . 108544 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\services.exe
.
[-] 2010-08-17 . 258DD5D4283FD9F9A7166BE9AE45CE73 . 58880 . . [5.1.2600.6024] . . c:\windows\$hf_mig$\KB2347290\SP3QFE\spoolsv.exe
[-] 2010-08-17 . 60784F891563FB1B767F70117FC2428F . 58880 . . [5.1.2600.6024] . . c:\windows\system32\spoolsv.exe
[-] 2010-08-17 . 60784F891563FB1B767F70117FC2428F . 58880 . . [5.1.2600.6024] . . c:\windows\system32\dllcache\spoolsv.exe
[-] 2008-04-14 . 39356A9CDB6753A6D13A4072A9F5A4BB . 57856 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB2347290$\spoolsv.exe
[-] 2008-04-14 . 39356A9CDB6753A6D13A4072A9F5A4BB . 57856 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\spoolsv.exe
[-] 2005-06-11 . AD3D9D191AEA7B5445FE1D82FFBB4788 . 57856 . . [5.1.2600.2696] . . c:\windows\$hf_mig$\KB896423\SP2QFE\spoolsv.exe
[-] 2005-06-10 . DA81EC57ACD4CDC3D4C51CF3D409AF9F . 57856 . . [5.1.2600.2696] . . c:\windows\$NtServicePackUninstall$\spoolsv.exe
.
[-] 2008-04-14 . F09A527B422E25C478E38CAA0E44417A . 513024 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\winlogon.exe
[-] 2008-04-14 . F09A527B422E25C478E38CAA0E44417A . 513024 . . [5.1.2600.5512] . . c:\windows\system32\winlogon.exe
[-] 2005-04-01 . B0B3908F5432F9DBBCD83CA4C33F0D82 . 507904 . . [5.1.2600.2645] . . c:\windows\$NtServicePackUninstall$\winlogon.exe
.
[-] 2008-04-13 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ipsec.sys
[-] 2008-04-13 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ipsec.sys
[-] 2004-08-04 . 64537AA5C003A6AFEEE1DF819062D0D1 . 74752 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ipsec.sys
.
[-] 2010-08-23 . 1438703F3D9FFE111DA3869E4F3EEE73 . 617472 . . [5.82] . . c:\windows\system32\comctl32.dll
[-] 2010-08-23 . 1438703F3D9FFE111DA3869E4F3EEE73 . 617472 . . [5.82] . . c:\windows\system32\dllcache\comctl32.dll
[-] 2010-08-23 . 2B6ADE29F8D00EEFA5FA2250CBE094AD . 1054208 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
[-] 2008-04-14 . AD28671D1B83A386B070DC451A113C13 . 617472 . . [5.82] . . c:\windows\$NtUninstallKB2296011$\comctl32.dll
[-] 2008-04-14 . AD28671D1B83A386B070DC451A113C13 . 617472 . . [5.82] . . c:\windows\ServicePackFiles\i386\comctl32.dll
[-] 2008-04-14 . 3C93CE6C6985C55952B7BE6673E9FD15 . 1054208 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll
[-] 2006-08-25 . EE82D1393169AC6BDF6016F4EA8D2B79 . 617472 . . [5.82] . . c:\windows\$NtServicePackUninstall$\comctl32.dll
[-] 2006-08-25 . F64451D07B9368B46AB31172D56D1804 . 1054208 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[-] 2004-08-04 . AEF3D788DBF40C7C4D204EA45EB0C505 . 921088 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.0.0_x-ww_1382d70a\comctl32.dll
[-] 2004-08-04 . 9D0F57B9C65BF8A07DB655A9ED6EB2EE . 1050624 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
.
[-] 2008-04-14 . 611F824E5C703A5A899F84C5F1699E4D . 62464 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\cryptsvc.dll
[-] 2008-04-14 . 611F824E5C703A5A899F84C5F1699E4D . 62464 . . [5.1.2600.5512] . . c:\windows\system32\cryptsvc.dll
[-] 2004-08-04 . 1A5F9DB98DF7955B4C7CBDBF2C638238 . 60416 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\cryptsvc.dll
.
[-] 2008-07-07 20:26 . AF4F6B5739D18CA7972AB53E091CBC74 . 253952 . . [2001.12.4414.706] . . c:\windows\system32\es.dll
[-] 2008-07-07 20:26 . AF4F6B5739D18CA7972AB53E091CBC74 . 253952 . . [2001.12.4414.706] . . c:\windows\system32\dllcache\es.dll
[-] 2008-07-07 20:23 . ADA7241C16F3F42C7F210539FAD5F3AA . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll
[-] 2008-04-14 02:22 . 0F3EDAEE1EF97CF3DB2BE23A7289B78C . 246272 . . [2001.12.4414.701] . . c:\windows\$NtUninstallKB950974$\es.dll
[-] 2008-04-14 02:22 . 0F3EDAEE1EF97CF3DB2BE23A7289B78C . 246272 . . [2001.12.4414.701] . . c:\windows\ServicePackFiles\i386\es.dll
[-] 2005-07-26 04:29 . 0D0F85237E32538F58278D673032676A . 243200 . . [2001.12.4414.308] . . c:\windows\$hf_mig$\KB902400\SP2QFE\es.dll
[-] 2005-07-26 03:39 . BEBC63622BDC30053A3145EBD90AF450 . 243200 . . [2001.12.4414.308] . . c:\windows\$NtServicePackUninstall$\es.dll
.
[-] 2008-04-14 . F9954695D246B33A5BF105029A4C6AB6 . 110080 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\imm32.dll
[-] 2008-04-14 . F9954695D246B33A5BF105029A4C6AB6 . 110080 . . [5.1.2600.5512] . . c:\windows\system32\imm32.dll
[-] 2004-08-04 . 94101D13A1818A9D08337EEC12ED277A . 110080 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\imm32.dll
.
[-] 2009-03-21 . B055C64AABC1A3E3DE57EC8025CAD283 . 1063424 . . [5.1.2600.5781] . . c:\windows\system32\kernel32.dll
[-] 2009-03-21 . B055C64AABC1A3E3DE57EC8025CAD283 . 1063424 . . [5.1.2600.5781] . . c:\windows\system32\dllcache\kernel32.dll
[-] 2009-03-21 . 3EB703BFC2ED26A3D8ACB8626AB2C006 . 1065472 . . [5.1.2600.5781] . . c:\windows\$hf_mig$\KB959426\SP3QFE\kernel32.dll
[-] 2008-04-14 . 4C897C69754D88F496339B1A666907C1 . 1063424 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB959426$\kernel32.dll
[-] 2008-04-14 . 4C897C69754D88F496339B1A666907C1 . 1063424 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\kernel32.dll
[-] 2006-07-05 . 0BEFE0BF274818EC0785B7B842967313 . 1058816 . . [5.1.2600.2945] . . c:\windows\$hf_mig$\KB917422\SP2QFE\kernel32.dll
[-] 2006-07-05 . E42795D2E7725D378EE2A4BFA6FE9DB3 . 1057792 . . [5.1.2600.2945] . . c:\windows\$NtServicePackUninstall$\kernel32.dll
.
[-] 2008-04-14 . 5543A9D4A1D0F9F84092482A9373A024 . 19968 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\linkinfo.dll
[-] 2008-04-14 . 5543A9D4A1D0F9F84092482A9373A024 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\linkinfo.dll
[-] 2005-09-01 . F2AFE60F01040B23207D8EB7DC26EC96 . 19968 . . [5.1.2600.2751] . . c:\windows\$NtServicePackUninstall$\linkinfo.dll
.
[-] 2008-04-14 . F38F3C47BBFFD748C1359AB171C3A630 . 22016 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\lpk.dll
[-] 2008-04-14 . F38F3C47BBFFD748C1359AB171C3A630 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\lpk.dll
[-] 2004-08-04 . B4AD65C79F85C61D32C015B11E03CAAD . 22016 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\lpk.dll
.
[-] 2012-04-23 . 65674C3F0F90BDD6636A39EDCCF5D5B6 . 3618816 . . [7.00.6000.17110] . . c:\windows\system32\mshtml.dll
[-] 2012-04-23 . 65674C3F0F90BDD6636A39EDCCF5D5B6 . 3618816 . . [7.00.6000.17110] . . c:\windows\system32\dllcache\mshtml.dll
[-] 2012-04-23 . A56B9CF11527708705BBED3A835FE2CF . 3620864 . . [7.00.6000.21312] . . c:\windows\$hf_mig$\KB2699988-IE7\SP3QFE\mshtml.dll
[-] 2012-03-01 . D0FB9423F94B7C932A3E353863972FD5 . 3616768 . . [7.00.6000.17109] . . c:\windows\ie7updates\KB2699988-IE7\mshtml.dll
[-] 2012-03-01 . 3E1D28D159CED148726D2E7B6543DC5D . 3619328 . . [7.00.6000.21311] . . c:\windows\$hf_mig$\KB2675157-IE7\SP3QFE\mshtml.dll
[-] 2011-12-19 . 5F6D9147BB32636511E1D691A4BA64D9 . 3616768 . . [7.00.6000.17108] . . c:\windows\ie7updates\KB2675157-IE7\mshtml.dll
[-] 2011-12-19 . FF2F416EC804939371B2DF401C67A5FB . 3618816 . . [7.00.6000.21310] . . c:\windows\$hf_mig$\KB2647516-IE7\SP3QFE\mshtml.dll
[-] 2011-11-04 . A9748CCF8B735D3834F57F0B48A89078 . 3616256 . . [7.00.6000.17107] . . c:\windows\ie7updates\KB2647516-IE7\mshtml.dll
[-] 2011-11-04 . 429AEF742D0A4CD9C2F2C67A6AC2FB01 . 3618304 . . [7.00.6000.21309] . . c:\windows\$hf_mig$\KB2618444-IE7\SP3QFE\mshtml.dll
[-] 2011-09-05 . 949BEBED3B69B4577D3B1FDA24D7FB3E . 3615744 . . [7.00.6000.17104] . . c:\windows\ie7updates\KB2618444-IE7\mshtml.dll
[-] 2011-08-18 . 55C1F4E285A9A3776C060D82EBFCDEB0 . 3617792 . . [7.00.6000.21306] . . c:\windows\$hf_mig$\KB2586448-IE7\SP3QFE\mshtml.dll
[-] 2011-07-22 . 4D5EA9CACBD06FA00B0EE0173F59156F . 3613696 . . [7.00.6000.17102] . . c:\windows\ie7updates\KB2586448-IE7\mshtml.dll
[-] 2011-07-22 . 11CD2E4815B15EEDE64CFDCDD494E8C0 . 3615744 . . [7.00.6000.21305] . . c:\windows\$hf_mig$\KB2559049-IE7\SP3QFE\mshtml.dll
[-] 2011-04-25 . E2F68B1B643A32B6D0C07386ECF8FC26 . 3608576 . . [7.00.6000.17098] . . c:\windows\ie7updates\KB2559049-IE7\mshtml.dll
[-] 2011-04-25 . F8F9909B85B18C8BD480E3A433C3ADA7 . 3610624 . . [7.00.6000.21300] . . c:\windows\$hf_mig$\KB2530548-IE7\SP3QFE\mshtml.dll
[-] 2011-02-17 . 7D09283AA1B4AAA7DEB8BB2504CBFB41 . 3609600 . . [7.00.6000.21299] . . c:\windows\$hf_mig$\KB2497640-IE7\SP3QFE\mshtml.dll
[-] 2011-02-17 . F151C3361111788527C625BF68541FF5 . 3607040 . . [7.00.6000.17097] . . c:\windows\ie7updates\KB2530548-IE7\mshtml.dll
[-] 2010-12-20 . 6BF883B318B70E8013ED5D2976DF5246 . 3609088 . . [7.00.6000.21297] . . c:\windows\$hf_mig$\KB2482017-IE7\SP3QFE\mshtml.dll
[-] 2010-12-20 . 104C6D442D68D15633E7866BA8FD6AD8 . 3606528 . . [7.00.6000.17095] . . c:\windows\ie7updates\KB2497640-IE7\mshtml.dll
[-] 2010-11-06 . DE049C4E531448E846E7C012763D530A . 3604480 . . [7.00.6000.17093] . . c:\windows\ie7updates\KB2482017-IE7\mshtml.dll
[-] 2010-11-06 . 76BFB01D6DE3AB3C2CA13470DEAB4B93 . 3607040 . . [7.00.6000.21295] . . c:\windows\$hf_mig$\KB2416400-IE7\SP3QFE\mshtml.dll
[-] 2010-09-09 . BCEE4AF10B40BF085203AA164D8D8193 . 3601920 . . [7.00.6000.17092] . . c:\windows\ie7updates\KB2416400-IE7\mshtml.dll
[-] 2010-09-09 . A5261D5EFC95731992DC0640FCC49B6C . 3605504 . . [7.00.6000.21294] . . c:\windows\$hf_mig$\KB2360131-IE7\SP3QFE\mshtml.dll
[-] 2010-06-24 . 118F0D56684A6114713E5B6D6C842133 . 3603968 . . [7.00.6000.21283] . . c:\windows\$hf_mig$\KB2183461-IE7\SP3QFE\mshtml.dll
[-] 2010-06-24 . E1ED02EE84A8E8B31A344FCB2D626791 . 3600896 . . [7.00.6000.17080] . . c:\windows\ie7updates\KB2360131-IE7\mshtml.dll
[-] 2010-05-04 . 56B556FFAC4A62C51D0DAF10F6B2B554 . 3600384 . . [7.00.6000.17063] . . c:\windows\ie7updates\KB2183461-IE7\mshtml.dll
[-] 2010-05-04 . C302A90ED9202465BA99EB4A6534FF54 . 3603456 . . [7.00.6000.21264] . . c:\windows\$hf_mig$\KB982381-IE7\SP3QFE\mshtml.dll
[-] 2010-03-11 . 49980F3384CFAF1E349A8CABE1C52D1B . 3599872 . . [7.00.6000.17023] . . c:\windows\ie7updates\KB982381-IE7\mshtml.dll
[-] 2010-03-11 . 933BE33EA6098E87FAF092741166A4E7 . 3602944 . . [7.00.6000.21228] . . c:\windows\$hf_mig$\KB980182-IE7\SP3QFE\mshtml.dll
[-] 2010-01-05 . EFA849C79A3EBBC028E5ABE1BFC0FA15 . 3599360 . . [7.00.6000.16981] . . c:\windows\ie7updates\KB980182-IE7\mshtml.dll
[-] 2010-01-05 . FB09490E1D218772550A8A5823826677 . 3602944 . . [7.00.6000.21183] . . c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\mshtml.dll
[-] 2009-10-29 . ECE8C5082CD8370BDAC3F6B7004A7A1A . 3598336 . . [7.00.6000.16945] . . c:\windows\ie7updates\KB978207-IE7\mshtml.dll
[-] 2009-10-29 . 41080B245B3931133878A2B20ED48C1B . 3602432 . . [7.00.6000.21148] . . c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\mshtml.dll
[-] 2009-10-21 . AFBD8339073CD05B2BBEB2089E2C9233 . 3598336 . . [7.00.6000.16939] . . c:\windows\ie7updates\KB976325-IE7\mshtml.dll
[-] 2009-10-21 . 45F5209869362161862057955A323208 . 3602432 . . [7.00.6000.21142] . . c:\windows\$hf_mig$\KB976749-IE7\SP3QFE\mshtml.dll
[-] 2009-08-29 . 66746BD88F71770815E12E6C6CAEF3EA . 3598336 . . [7.00.6000.16915] . . c:\windows\ie7updates\KB976749-IE7\mshtml.dll
[-] 2009-08-29 . 3701C2F766865BEF9F5987E8AB95A6DA . 3600384 . . [7.00.6000.21115] . . c:\windows\$hf_mig$\KB974455-IE7\SP3QFE\mshtml.dll
[-] 2009-07-19 . 7DB04886F1455D9057F54A51E5A7BB32 . 3597824 . . [7.00.6000.16890] . . c:\windows\ie7updates\KB974455-IE7\mshtml.dll
[-] 2009-07-19 . B553564076B41EBEA822B968D7C71C47 . 3600384 . . [7.00.6000.21089] . . c:\windows\$hf_mig$\KB972260-IE7\SP3QFE\mshtml.dll
[-] 2009-04-29 . A0236D46EFCEF98D6703DD5A76AA1CB2 . 3596288 . . [7.00.6000.16850] . . c:\windows\ie7updates\KB972260-IE7\mshtml.dll
[-] 2009-04-29 . 6770B436928E450F5B4866BDC59549CC . 3598336 . . [7.00.6000.21045] . . c:\windows\$hf_mig$\KB969897-IE7\SP3QFE\mshtml.dll
[-] 2009-02-21 . 77605BDA8141E1F7D3B1321E31CA482B . 3596800 . . [7.00.6000.21015] . . c:\windows\$hf_mig$\KB963027-IE7\SP3QFE\mshtml.dll
[-] 2009-02-20 . EE15CE7504EB54258F361AD7595E9077 . 3595264 . . [7.00.6000.16825] . . c:\windows\ie7updates\KB969897-IE7\mshtml.dll
[-] 2009-01-16 . A76EEDA793C9BFC0C1B8C5F3439D8A39 . 3594752 . . [7.00.6000.16809] . . c:\windows\ie7updates\KB963027-IE7\mshtml.dll
[-] 2009-01-16 . B44AC6A49DA4A5BAA7AFEA0AA6E5B967 . 3596288 . . [7.00.6000.20996] . . c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\mshtml.dll
[-] 2008-12-13 . 6C8D1CF85533A3792DCDDAAE42DBB161 . 3593216 . . [7.00.6000.16788] . . c:\windows\ie7updates\KB961260-IE7\mshtml.dll
[-] 2008-12-13 . E0825D1BC0F0C2B5CA434F7E9CCF10AE . 3594752 . . [7.00.6000.20973] . . c:\windows\$hf_mig$\KB960714-IE7\SP2QFE\mshtml.dll
[-] 2008-10-16 . C998B6D5E64E11CE8EA8BB22A51CA570 . 3595264 . . [7.00.6000.20935] . . c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\mshtml.dll
[-] 2008-04-14 . 72AE55A9FFBC60650339CB12E35C7DD5 . 3066880 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\mshtml.dll
[-] 2006-11-07 . CBF04597F9CF7739E572276A2698FDD3 . 3577856 . . [7.00.5730.11] . . c:\windows\ie7updates\KB960714-IE7\mshtml.dll
[-] 2006-02-01 . E8526A66802AC6213762D97BD0FA334C . 3035648 . . [6.00.2900.2838] . . c:\windows\ie7\mshtml.dll
[-] 2005-11-24 . 8ABDBAE6032562F17DCF962847ABB811 . 3016192 . . [6.00.2900.2802] . . c:\windows\$hf_mig$\KB905915\SP2QFE\mshtml.dll
[-] 2005-11-23 . 03F9910F7958A36088B9D8CD262903AE . 3013632 . . [6.00.2900.2802] . . c:\windows\$NtUninstallKB905915$\mshtml.dll
.
[-] 2008-04-14 . C6A6E53A0C34EC87883137A6CB87AE5E . 343040 . . [7.0.2600.5512] . . c:\windows\ServicePackFiles\i386\msvcrt.dll
[-] 2008-04-14 . C6A6E53A0C34EC87883137A6CB87AE5E . 343040 . . [7.0.2600.5512] . . c:\windows\system32\msvcrt.dll
[-] 2008-04-14 . C536AAD8A71608FE33CD956214EDD366 . 343040 . . [7.0.2600.5512] . . c:\windows\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.5512_x-ww_3fd60d63\msvcrt.dll
[-] 2004-08-04 . B30BAA48E5063E71C76280E34E7E4802 . 343040 . . [7.0.2600.2180] . . c:\windows\$NtServicePackUninstall$\msvcrt.dll
[-] 2004-08-04 . 4200BE3808F6406DBE45A7B88DAE5035 . 322560 . . [7.0.2600.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.0.0_x-ww_2726e76a\msvcrt.dll
[-] 2004-08-04 . 365B3C43810E1CF41B3BE1E7180F583B . 343040 . . [7.0.2600.2180] . . c:\windows\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.2180_x-ww_b2505ed9\msvcrt.dll
.
[-] 2008-06-20 . ACD8BD448A74F344D46FCAF21BAB92AF . 247296 . . [5.1.2600.5625] . . c:\windows\$NtUninstallKB2509553$\mswsock.dll
[-] 2008-06-20 . 4AA50627B01C0E9C6B4C6BD3AF648F12 . 247296 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB2509553\SP3QFE\mswsock.dll
[-] 2008-06-20 . 4AA50627B01C0E9C6B4C6BD3AF648F12 . 247296 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll
[-] 2008-06-20 . F1B67B6B0751AE0E6E964B02821206A3 . 247296 . . [5.1.2600.5625] . . c:\windows\system32\mswsock.dll
[-] 2008-06-20 . F1B67B6B0751AE0E6E964B02821206A3 . 247296 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\mswsock.dll
[-] 2008-04-14 . F12B9D9A069331877D006CC81B4735F9 . 247296 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\mswsock.dll
[-] 2008-04-14 . F12B9D9A069331877D006CC81B4735F9 . 247296 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\mswsock.dll
[-] 2004-08-04 . B36E08F680BAE4DFC5C24D00A2DFC9E7 . 247296 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\mswsock.dll
.
[-] 2008-04-14 . 0098D35F91DEAB9C127360A877F2CF84 . 407040 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\netlogon.dll
[-] 2008-04-14 . 0098D35F91DEAB9C127360A877F2CF84 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\netlogon.dll
[-] 2004-08-04 . D27395EDCD3416AFD125A9370DCB585C . 407040 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\netlogon.dll
.
[-] 2008-04-14 . C8C0BDABC966B6C24D337DF0A0A399E1 . 17408 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\powrprof.dll
[-] 2008-04-14 . C8C0BDABC966B6C24D337DF0A0A399E1 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\powrprof.dll
[-] 2004-08-04 . 5604574D490B798BD9A946B021A766AD . 17408 . . [6.00.2900.2180] . . c:\windows\$NtServicePackUninstall$\powrprof.dll
.
[-] 2008-04-14 . 5132443DF6FC3771A17AB4AE55DCBC28 . 187904 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\scecli.dll
[-] 2008-04-14 . 5132443DF6FC3771A17AB4AE55DCBC28 . 187904 . . [5.1.2600.5512] . . c:\windows\system32\scecli.dll
[-] 2004-08-04 . 64DC26B3CF7BCCAD431CE360A4C625D5 . 186880 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\scecli.dll
.
[-] 2008-04-14 . 44161A59DC33AC2EA9C95438ADFFFB7F . 5120 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\sfc.dll
[-] 2008-04-14 . 44161A59DC33AC2EA9C95438ADFFFB7F . 5120 . . [5.1.2600.5512] . . c:\windows\system32\sfc.dll
[-] 2004-08-04 . F62934BC94299083EBFC8810242D8640 . 5120 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\sfc.dll
.
[-] 2008-04-14 . 4FBC75B74479C7A6F829E0CA19DF3366 . 14336 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\svchost.exe
[-] 2008-04-14 . 4FBC75B74479C7A6F829E0CA19DF3366 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\svchost.exe
[-] 2004-08-04 . 65A819B121EB6FDAB4400EA42BDFFE64 . 14336 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\svchost.exe
.
[-] 2008-04-14 . 05903CAC4B98908D55EA5774775B382E . 249856 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\tapisrv.dll
[-] 2008-04-14 . 05903CAC4B98908D55EA5774775B382E . 249856 . . [5.1.2600.5512] . . c:\windows\system32\tapisrv.dll
[-] 2005-07-08 . F07061E18613F336A3120229097F7635 . 249344 . . [5.1.2600.2716] . . c:\windows\$hf_mig$\KB893756\SP2QFE\tapisrv.dll
[-] 2005-07-08 . 427D7EB3B453347082C8F4B370065D60 . 249344 . . [5.1.2600.2716] . . c:\windows\$NtServicePackUninstall$\tapisrv.dll
.
[-] 2008-04-14 . B0050CC5340E3A0760DD8B417FF7AEBD . 580096 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\user32.dll
[-] 2008-04-14 . B0050CC5340E3A0760DD8B417FF7AEBD . 580096 . . [5.1.2600.5512] . . c:\windows\system32\user32.dll
[-] 2005-03-02 . 4C90159A69A5FD3EB39C71411F28FCFF . 578560 . . [5.1.2600.2622] . . c:\windows\$hf_mig$\KB890859\SP2QFE\user32.dll
[-] 2005-03-02 . 4C90159A69A5FD3EB39C71411F28FCFF . 578560 . . [5.1.2600.2622] . . c:\windows\$NtServicePackUninstall$\user32.dll
[-] 2005-03-02 . 3751D7CF0E0A113D84414992146BCE6A . 578560 . . [5.1.2600.2622] . . c:\windows\$NtUninstallKB890859$\user32.dll
.
[-] 2008-04-14 . 788F95312E26389D596C0FA55834E106 . 26624 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\userinit.exe
[-] 2008-04-14 . 788F95312E26389D596C0FA55834E106 . 26624 . . [5.1.2600.5512] . . c:\windows\system32\userinit.exe
[-] 2004-08-04 . D1E53DC57143F2584B1DD53B036C0633 . 25088 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\userinit.exe
.
[-] 2012-05-15 . B2FB8A88EBFDA2AF550CFFC1F25517AB . 832512 . . [7.00.6000.17111] . . c:\windows\system32\wininet.dll
[-] 2012-05-15 . B2FB8A88EBFDA2AF550CFFC1F25517AB . 832512 . . [7.00.6000.17111] . . c:\windows\system32\dllcache\wininet.dll
[-] 2012-05-15 . E7EEB502B8C3057D96E1447BC851F565 . 841216 . . [7.00.6000.21313] . . c:\windows\$hf_mig$\KB2699988-IE7\SP3QFE\wininet.dll
[-] 2012-03-01 . E6F509D60102B0ED953055AD293AB1F8 . 832512 . . [7.00.6000.17109] . . c:\windows\ie7updates\KB2699988-IE7\wininet.dll
[-] 2012-03-01 . 4DA5AC13C9E635428FB690FA01107397 . 841216 . . [7.00.6000.21311] . . c:\windows\$hf_mig$\KB2675157-IE7\SP3QFE\wininet.dll
[-] 2011-12-19 . 9D117DA0C01D2AA20A5F75DF188E83C7 . 832512 . . [7.00.6000.17108] . . c:\windows\ie7updates\KB2675157-IE7\wininet.dll
[-] 2011-12-19 . D7C8B47B787A20C5B9FE88965392AF2F . 841216 . . [7.00.6000.21310] . . c:\windows\$hf_mig$\KB2647516-IE7\SP3QFE\wininet.dll
[-] 2011-10-31 . 01BDE5984B35C367A3FDCC0EE8ED30E7 . 832512 . . [7.00.6000.17106] . . c:\windows\ie7updates\KB2647516-IE7\wininet.dll
[-] 2011-10-31 . BB152F931473A871C8CB0F7040147D03 . 841216 . . [7.00.6000.21308] . . c:\windows\$hf_mig$\KB2618444-IE7\SP3QFE\wininet.dll
[-] 2011-08-17 . AE55A628C1688AA66AE39D2B93BDE312 . 832512 . . [7.00.6000.17103] . . c:\windows\ie7updates\KB2618444-IE7\wininet.dll
[-] 2011-08-17 . BADFC58ACD58FB83C7FB968FE2571154 . 841216 . . [7.00.6000.21306] . . c:\windows\$hf_mig$\KB2586448-IE7\SP3QFE\wininet.dll
[-] 2011-06-21 . 0697B0F3FD198C5AF0876449789EB1D3 . 832512 . . [7.00.6000.17099] . . c:\windows\ie7updates\KB2586448-IE7\wininet.dll
[-] 2011-06-21 . CA3F86FD98DBEF99E8CBB5C5EC533E4E . 841216 . . [7.00.6000.21302] . . c:\windows\$hf_mig$\KB2559049-IE7\SP3QFE\wininet.dll
[-] 2011-04-25 . 36F92E2E8B0E6EBB02CC9EEEA2983C1E . 832512 . . [7.00.6000.17098] . . c:\windows\ie7updates\KB2559049-IE7\wininet.dll
[-] 2011-04-25 . C843BCAFB1C22AF2399FD5AA92257D4D . 841216 . . [7.00.6000.21300] . . c:\windows\$hf_mig$\KB2530548-IE7\SP3QFE\wininet.dll
[-] 2011-02-17 . 60A31B042CB6600EEB4357AFF19D345C . 841216 . . [7.00.6000.21298] . . c:\windows\$hf_mig$\KB2497640-IE7\SP3QFE\wininet.dll
[-] 2011-02-17 . B699449B3CB14E5D553688814D19FF56 . 832512 . . [7.00.6000.17096] . . c:\windows\ie7updates\KB2530548-IE7\wininet.dll
[-] 2010-12-20 . BD4C6C6694C20480599E75813C230EFC . 841216 . . [7.00.6000.21297] . . c:\windows\$hf_mig$\KB2482017-IE7\SP3QFE\wininet.dll
[-] 2010-12-20 . A2D15AB60F75AA102ED5234CA80688AD . 832512 . . [7.00.6000.17095] . . c:\windows\ie7updates\KB2497640-IE7\wininet.dll
[-] 2010-11-06 . A1A23A6C6DCA6B567106552475A65B79 . 832512 . . [7.00.6000.17093] . . c:\windows\ie7updates\KB2482017-IE7\wininet.dll
[-] 2010-11-06 . 512A074E47388E9252B1ADE326317CE9 . 841216 . . [7.00.6000.21295] . . c:\windows\$hf_mig$\KB2416400-IE7\SP3QFE\wininet.dll
[-] 2010-09-09 . 6BCB6C8396D75FA1676B65790EA17E4B . 832512 . . [7.00.6000.17091] . . c:\windows\ie7updates\KB2416400-IE7\wininet.dll
[-] 2010-09-09 . 859559B2F2B9B437DD279AC7EA68BE40 . 841216 . . [7.00.6000.21293] . . c:\windows\$hf_mig$\KB2360131-IE7\SP3QFE\wininet.dll
[-] 2010-06-24 . A85BA5BA928351CC7117123D53123384 . 841216 . . [7.00.6000.21283] . . c:\windows\$hf_mig$\KB2183461-IE7\SP3QFE\wininet.dll
[-] 2010-06-24 . F35DCEC860FDB1F17DE7D543D182B169 . 832512 . . [7.00.6000.17080] . . c:\windows\ie7updates\KB2360131-IE7\wininet.dll
[-] 2010-05-04 . 0AFFC00B24F30716688CF08ECFE377E9 . 832512 . . [7.00.6000.17055] . . c:\windows\ie7updates\KB2183461-IE7\wininet.dll
[-] 2010-05-04 . 6A2F855F0D2A09216656153636080D1E . 841216 . . [7.00.6000.21256] . . c:\windows\$hf_mig$\KB982381-IE7\SP3QFE\wininet.dll
[-] 2010-03-11 . 667D6FFC648739EB24931E9B2BC685D1 . 832512 . . [7.00.6000.17023] . . c:\windows\ie7updates\KB982381-IE7\wininet.dll
[-] 2010-03-11 . A20419E3612073BB2B5707EDA26173E6 . 841216 . . [7.00.6000.21228] . . c:\windows\$hf_mig$\KB980182-IE7\SP3QFE\wininet.dll
[-] 2010-01-05 . B0F874F81444643FCDA267033D630113 . 832512 . . [7.00.6000.16981] . . c:\windows\ie7updates\KB980182-IE7\wininet.dll
[-] 2010-01-05 . C14A55B0286B5C2A910AEA3CE1DB7D76 . 841216 . . [7.00.6000.21183] . . c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\wininet.dll
[-] 2009-10-29 . A20B2C09CCE24D136F0519323A3F7072 . 832512 . . [7.00.6000.16945] . . c:\windows\ie7updates\KB978207-IE7\wininet.dll
[-] 2009-10-29 . 9B5D0E4E82FFC178D82206D93D89C71C . 841216 . . [7.00.6000.21148] . . c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\wininet.dll
[-] 2009-08-29 . CB74316772D625807EF16F6701F2A25E . 832512 . . [7.00.6000.16915] . . c:\windows\ie7updates\KB976325-IE7\wininet.dll
[-] 2009-08-29 . BA0DE4DD7959D0638EAD5B400294C416 . 840704 . . [7.00.6000.21115] . . c:\windows\$hf_mig$\KB974455-IE7\SP3QFE\wininet.dll
[-] 2009-06-29 . 93552887262FEE6DD5D98E452FCD495A . 828928 . . [7.00.6000.21073] . . c:\windows\$hf_mig$\KB972260-IE7\SP3QFE\wininet.dll
[-] 2009-06-29 . 90590032B6E9EF719F5E78FCD2AD2CBC . 827392 . . [7.00.6000.16876] . . c:\windows\ie7updates\KB974455-IE7\wininet.dll
[-] 2009-04-29 . B7E6D6663CB6BC05316FEB978217360D . 827392 . . [7.00.6000.16850] . . c:\windows\ie7updates\KB972260-IE7\wininet.dll
[-] 2009-04-29 . F5D59B0B453F8AF7ADC7AFB34D39C441 . 828928 . . [7.00.6000.21045] . . c:\windows\$hf_mig$\KB969897-IE7\SP3QFE\wininet.dll
[-] 2009-03-03 . AF68C6F857EB438770E86FFEE013F04D . 828416 . . [7.00.6000.21020] . . c:\windows\$hf_mig$\KB963027-IE7\SP3QFE\wininet.dll
[-] 2009-03-03 . 9F434E15A82D1322FB6860E317783E57 . 826368 . . [7.00.6000.16827] . . c:\windows\ie7updates\KB969897-IE7\wininet.dll
[-] 2008-12-20 . 2B5AE9ACD86E1B8B86D62E153DE130AB . 827904 . . [7.00.6000.20978] . . c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\wininet.dll
[-] 2008-12-20 . C3D4047626F8CC8EC7DD7558FA5CC2E2 . 826368 . . [7.00.6000.16791] . . c:\windows\ie7updates\KB963027-IE7\wininet.dll
[-] 2008-10-16 . CBAAEBDFC6F9291D2D31E36FE1AD19AC . 826368 . . [7.00.6000.16762] . . c:\windows\ie7updates\KB961260-IE7\wininet.dll
[-] 2008-10-16 . 5A1F997EC096EF26F3A3880347F5F9D8 . 827904 . . [7.00.6000.20935] . . c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\wininet.dll
[-] 2008-04-14 . B4AEE98A48917B274FACFB78BBE0BC84 . 671744 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\wininet.dll
[-] 2006-11-07 . 92995334F993E6E49C25C6D02EC04401 . 818688 . . [7.00.5730.11] . . c:\windows\ie7updates\KB958215-IE7\wininet.dll
[-] 2006-01-09 . 957B39EFDAAFC58F43FB233933265F95 . 667648 . . [6.00.2900.2823] . . c:\windows\ie7\wininet.dll
[-] 2005-10-21 . F3118DF4ABD118B11326D1C7A0093867 . 667136 . . [6.00.2900.2781] . . c:\windows\$hf_mig$\KB905915\SP2QFE\wininet.dll
[-] 2005-10-21 . 19625F6F8357C2306BA4B3583C705836 . 664064 . . [6.00.2900.2781] . . c:\windows\$NtUninstallKB905915$\wininet.dll
.
[-] 2008-04-14 . 6A35E2D6F5F052C84EC2CEB296389439 . 82432 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ws2_32.dll
[-] 2008-04-14 . 6A35E2D6F5F052C84EC2CEB296389439 . 82432 . . [5.1.2600.5512] . . c:\windows\system32\ws2_32.dll
[-] 2004-08-04 . D569240A22421D5F670BB6FB6DD522B5 . 82944 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ws2_32.dll
.
[-] 2008-04-14 . C7D8A0517CBF16B84F657DE87EBE9D4B . 19968 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ws2help.dll
[-] 2008-04-14 . C7D8A0517CBF16B84F657DE87EBE9D4B . 19968 . . [5.1.2600.5512] . . c:\windows\system32\ws2help.dll
[-] 2004-08-04 . B3ADA72D1E3E10A8F6430669DFC38ED0 . 19968 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ws2help.dll
.
[-] 2008-04-14 . 418045A93CD87A352098AB7DABE1B53E . 1036800 . . [6.00.2900.5512] . . c:\windows\explorer.exe
[-] 2008-04-14 . 418045A93CD87A352098AB7DABE1B53E . 1036800 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\explorer.exe
[-] 2004-08-04 . 22FE1BE02EADDE1632E478E4125639E0 . 1035264 . . [6.00.2900.2180] . . c:\windows\$NtServicePackUninstall$\explorer.exe
.
[-] 2008-04-14 . AD9226BF3CED13636083BB9C76E9D2A2 . 153600 . . [5.1.2600.5512] . . c:\windows\regedit.exe
[-] 2008-04-14 . AD9226BF3CED13636083BB9C76E9D2A2 . 153600 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\regedit.exe
[-] 2004-08-04 . 8193CE5FB09E83F2699FD65BBCBE2FD2 . 153600 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\regedit.exe
.
[-] 2011-11-01 . 6AD6619E7523E27B771569C26F408F0A . 1288704 . . [5.1.2600.6168] . . c:\windows\system32\ole32.dll
[-] 2011-11-01 . 6AD6619E7523E27B771569C26F408F0A . 1288704 . . [5.1.2600.6168] . . c:\windows\system32\dllcache\ole32.dll
[-] 2011-11-01 . D684C601EC79D9543D50EB2DB124FE78 . 1289216 . . [5.1.2600.6168] . . c:\windows\$hf_mig$\KB2624667\SP3QFE\ole32.dll
[-] 2010-07-16 . B28AF7976F2D8109C0DC2CF2460BEDC2 . 1288192 . . [5.1.2600.6010] . . c:\windows\$NtUninstallKB2624667$\ole32.dll
[-] 2010-07-16 . B3D7633CF83B09042A49810A7A72ADED . 1289216 . . [5.1.2600.6010] . . c:\windows\$hf_mig$\KB979687\SP3QFE\ole32.dll
[-] 2008-04-14 . E08D638BA3D3DD6DF6E31216AB66AE0B . 1287680 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB979687$\ole32.dll
[-] 2008-04-14 . E08D638BA3D3DD6DF6E31216AB66AE0B . 1287680 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ole32.dll
[-] 2005-07-26 . 24EDF93FD04CA1A98D32F092DD4F9953 . 1286144 . . [5.1.2600.2726] . . c:\windows\$hf_mig$\KB902400\SP2QFE\ole32.dll
[-] 2005-07-26 . CC50261CA5DC93A47D6CF548C4223F44 . 1285120 . . [5.1.2600.2726] . . c:\windows\$NtServicePackUninstall$\ole32.dll
.
[-] 2010-04-16 . 45954AFB7AE6E29B23C56B830C820A11 . 406016 . . [1.0420.2600.5969] . . c:\windows\system32\usp10.dll
[-] 2010-04-16 . 45954AFB7AE6E29B23C56B830C820A11 . 406016 . . [1.0420.2600.5969] . . c:\windows\system32\dllcache\usp10.dll
[-] 2010-04-16 . EB2AD9C7DADE6C63F5F933881BA2A430 . 406016 . . [1.0420.2600.5969] . . c:\windows\$hf_mig$\KB981322\SP3QFE\usp10.dll
[-] 2008-04-14 . 052F968390A85D37D5EE8BE3AB2A83A2 . 406016 . . [1.0420.2600.5512] . . c:\windows\$NtUninstallKB981322$\usp10.dll
[-] 2008-04-14 . 052F968390A85D37D5EE8BE3AB2A83A2 . 406016 . . [1.0420.2600.5512] . . c:\windows\ServicePackFiles\i386\usp10.dll
[-] 2004-08-04 . E4E40EAFF464EBE7752BAD3D82AF1715 . 406528 . . [1.0420.2600.2180] . . c:\windows\$NtServicePackUninstall$\usp10.dll
.
[-] 2008-04-14 . 671ABB33C712B1585A5BF7ADD36AD96E . 4096 . . [5.3.2600.5512] . . c:\windows\ServicePackFiles\i386\ksuser.dll
[-] 2004-08-03 . 4721744CE11F385073F6F9F7831752C7 . 4096 . . [5.3.2600.2180] . . c:\windows\$NtServicePackUninstall$\ksuser.dll
[-] 2004-08-03 . 4721744CE11F385073F6F9F7831752C7 . 4096 . . [5.3.2600.2180] . . c:\windows\system32\ksuser.dll
.
[-] 2008-04-14 . 01B4E6E990B6C5EA8856D96C7FD044B2 . 15360 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ctfmon.exe
[-] 2008-04-14 . 01B4E6E990B6C5EA8856D96C7FD044B2 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\ctfmon.exe
[-] 2004-08-04 . 7CE20569925DF6789C31799F0C538F29 . 15360 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ctfmon.exe
.
[-] 2009-07-27 . 2DB7D303C36DDD055215052F118E8E75 . 135680 . . [6.00.2900.5853] . . c:\windows\system32\shsvcs.dll
[-] 2009-07-27 . 2DB7D303C36DDD055215052F118E8E75 . 135680 . . [6.00.2900.5853] . . c:\windows\system32\dllcache\shsvcs.dll
[-] 2009-07-27 . 927666F4228E3FBBC3D1171581DC8BDC . 135680 . . [6.00.2900.5853] . . c:\windows\$hf_mig$\KB971029\SP3QFE\shsvcs.dll
[-] 2008-04-14 . 40602EBFBE06AA075C8E4560743F6883 . 135168 . . [6.00.2900.5512] . . c:\windows\$NtUninstallKB971029$\shsvcs.dll
[-] 2008-04-14 . 40602EBFBE06AA075C8E4560743F6883 . 135168 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\shsvcs.dll
[-] 2004-08-04 . BAC5F7F0C2B8C1B9832594851E0F9914 . 135168 . . [6.00.2900.2180] . . c:\windows\$NtServicePackUninstall$\shsvcs.dll
.
[-] 2008-04-14 . FE77A85495065F3AD59C5C65B6C54182 . 171520 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\srsvc.dll
[-] 2008-04-14 . FE77A85495065F3AD59C5C65B6C54182 . 171520 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll
[-] 2004-08-04 . 015F302C4CF961F20C3F98F3A7CA7917 . 171008 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\srsvc.dll
.
[-] 2008-04-14 . EDAFBE25FB6480CE68F688BA691890DC . 13824 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\wscntfy.exe
[-] 2008-04-14 . EDAFBE25FB6480CE68F688BA691890DC . 13824 . . [5.1.2600.5512] . . c:\windows\system32\wscntfy.exe
[-] 2004-08-04 . 7D3E0BEB62799112F5C9FF717D72BF29 . 13824 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\wscntfy.exe
.
[-] 2008-04-14 . 0ADA34871A2E1CD2CAAFED1237A47750 . 129024 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\xmlprov.dll
[-] 2008-04-14 . 0ADA34871A2E1CD2CAAFED1237A47750 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\xmlprov.dll
[-] 2004-08-04 . 8302DE1C64618D72346DD0034DBC5D9B . 129536 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\xmlprov.dll
.
[-] 2008-04-14 . 04955AA695448C181B367D964AF158AA . 56320 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\eventlog.dll
[-] 2008-04-14 . 04955AA695448C181B367D964AF158AA . 56320 . . [5.1.2600.5512] . . c:\windows\system32\eventlog.dll
[-] 2004-08-04 . B932C077D5A65B71B4512544AC404CB4 . 55808 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\eventlog.dll
.
[-] 2008-04-14 . 5251425B86EA4A3532B8BB8D14044E61 . 1571840 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\sfcfiles.dll
[-] 2008-04-14 . 5251425B86EA4A3532B8BB8D14044E61 . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
[-] 2004-08-04 . 80F7B7198B869C07C98627AF812D68B6 . 1548288 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\sfcfiles.dll
.
[-] 2008-04-13 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ipsec.sys
[-] 2008-04-13 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ipsec.sys
[-] 2004-08-04 . 64537AA5C003A6AFEEE1DF819062D0D1 . 74752 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ipsec.sys
.
[-] 2008-04-14 . E4CD1F3D84E1C2CA0B8CF7501E201593 . 59904 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\regsvc.dll
[-] 2008-04-14 . E4CD1F3D84E1C2CA0B8CF7501E201593 . 59904 . . [5.1.2600.5512] . . c:\windows\system32\regsvc.dll
[-] 2004-08-04 . AE81CF7D7CFA79CD03E8FB99788A7E09 . 59904 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\regsvc.dll
.
[-] 2008-04-14 . A050194A44D7FA8D7186ED2F4E8367AE . 193536 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\schedsvc.dll
[-] 2008-04-14 . A050194A44D7FA8D7186ED2F4E8367AE . 193536 . . [5.1.2600.5512] . . c:\windows\system32\schedsvc.dll
[-] 2004-08-04 . D5E73842F38E24457C63FEF8CEFFBE19 . 192000 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\schedsvc.dll
.
[-] 2008-04-14 . 4DF5B05DFAEC29E13E1ED6F6EE12C500 . 71680 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ssdpsrv.dll
[-] 2008-04-14 . 4DF5B05DFAEC29E13E1ED6F6EE12C500 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\ssdpsrv.dll
[-] 2004-08-04 . 6FA03B462B2FFFE2627171B7FE73EE29 . 71680 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ssdpsrv.dll
.
[-] 2008-04-14 . B7DE02C863D8F5A005A7BF375375A6A4 . 297472 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\termsrv.dll
[-] 2008-04-14 . B7DE02C863D8F5A005A7BF375375A6A4 . 297472 . . [5.1.2600.5512] . . c:\windows\system32\termsrv.dll
[-] 2004-08-04 . 1850BC10DE5DCCCEDE063FC2D0F2CEDA . 297472 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\termsrv.dll
.
[-] 2008-04-14 . 0DAF0705D7B39C94E287913226688804 . 348672 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\hnetcfg.dll
[-] 2008-04-14 . 0DAF0705D7B39C94E287913226688804 . 348672 . . [5.1.2600.5512] . . c:\windows\system32\hnetcfg.dll
[-] 2004-08-04 . AE93E415220A4C0112768A0DEE36D28D . 348672 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\hnetcfg.dll
.
[-] 2008-04-14 . D45960BE52C3C610D361977057F98C54 . 175616 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\appmgmts.dll
[-] 2008-04-14 . D45960BE52C3C610D361977057F98C54 . 175616 . . [5.1.2600.5512] . . c:\windows\system32\appmgmts.dll
[-] 2004-08-04 . BECD5328E7869807D6557BE4FE60C72F . 175616 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\appmgmts.dll
.
[-] 2004-08-04 . 9E1CA3160DAFB159CA14F83B1E317F75 . 12160 . . [5.1.2600.0] . . c:\windows\system32\drivers\acpiec.sys
.
[-] 2008-04-13 16:39 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\ServicePackFiles\i386\aec.sys
[-] 2008-04-13 16:39 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\drivers\aec.sys
[-] 2004-08-03 21:39 . 841F385C6CFAF66B58FBD898722BB4F0 . 142464 . . [5.1.2601.2078] . . c:\windows\$NtServicePackUninstall$\aec.sys
.
[-] 2008-04-13 . 08FD04AA961BDC77FB983F328334E3D7 . 42368 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\agp440.sys
[-] 2008-04-13 . 08FD04AA961BDC77FB983F328334E3D7 . 42368 . . [5.1.2600.5512] . . c:\windows\system32\drivers\agp440.sys
[-] 2004-08-04 . 2C428FA0C3E3A01ED93C9B2A27D8D4BB . 42368 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\agp440.sys
.
[-] 2008-04-13 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ip6fw.sys
[-] 2008-04-13 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ip6fw.sys
[-] 2004-08-04 . 4448006B6BC60E6C027932CFC38D6855 . 29056 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ip6fw.sys
.
[-] 2010-09-18 07:18 . 4891FCDAE77486BFB56999AA217651FA . 953856 . . [4.1.6151] . . c:\windows\$hf_mig$\KB2387149\SP3QFE\mfc40u.dll
[-] 2010-09-18 06:52 . 1614669828A32BCD06E1BE6F334BB888 . 953856 . . [4.1.6151] . . c:\windows\system32\mfc40u.dll
[-] 2010-09-18 06:52 . 1614669828A32BCD06E1BE6F334BB888 . 953856 . . [4.1.6151] . . c:\windows\system32\dllcache\mfc40u.dll
[-] 2008-04-14 02:22 . ACC19BA6876AF18768EE87931CAD14E2 . 927504 . . [4.1.0.61] . . c:\windows\$NtUninstallKB2387149$\mfc40u.dll
[-] 2008-04-14 02:22 . ACC19BA6876AF18768EE87931CAD14E2 . 927504 . . [4.1.0.61] . . c:\windows\ServicePackFiles\i386\mfc40u.dll
[-] 2004-08-04 12:00 . 31DD27AB47F62D383505F35CA972748B . 924432 . . [4.1.6140] . . c:\windows\$NtServicePackUninstall$\mfc40u.dll
.
[-] 2008-04-14 . B7550A7107281D170CE85524B1488C98 . 33792 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\msgsvc.dll
[-] 2008-04-14 . B7550A7107281D170CE85524B1488C98 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\msgsvc.dll
[-] 2004-08-04 . E5215AB942C5AC5F7EB0E54871D7A27C . 33792 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\msgsvc.dll
.
[-] 2009-01-30 18:33 . 051B1BDECD6DEE18C771B5D5EC7F044D . 27136 . . [11.0.5721.5262] . . c:\windows\system32\mspmsnsv.dll
[-] 2009-01-30 18:33 . 051B1BDECD6DEE18C771B5D5EC7F044D . 27136 . . [11.0.5721.5262] . . c:\windows\system32\dllcache\mspmsnsv.dll
[-] 2005-01-28 12:44 . 140EF97B64F560FD78643CAE2CDAD838 . 25088 . . [10.0.3790.3802] . . c:\windows\$NtUninstallWMFDist11$\mspmsnsv.dll
[-] 2005-01-28 12:44 . 140EF97B64F560FD78643CAE2CDAD838 . 25088 . . [10.0.3790.3802] . . c:\windows\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\MsPMSNSv.dll
[-] 2004-08-04 12:00 . D68CC4EBF7B03FD770D5962295AD814E . 52736 . . [9.0.1.56] . . c:\windows\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}$BACKUP$\System\MsPMSNSv.dll
.
[-] 2012-05-05 . 0A7BFA15D9F9432DB882CD2A174E7F7F . 2071424 . . [5.1.2600.6223] . . c:\windows\Driver Cache\i386\ntkrnlpa.exe
[-] 2012-05-05 . 0A7BFA15D9F9432DB882CD2A174E7F7F . 2071424 . . [5.1.2600.6223] . . c:\windows\system32\dllcache\ntkrnlpa.exe
[-] 2012-05-05 . BE4A6D3DB8E11A1B644B8675FE7D1A43 . 2029056 . . [5.1.2600.6223] . . c:\windows\system32\ntkrnlpa.exe
[-] 2012-05-05 . 339D9DA45F631C9D9D7132D9F6957943 . 2071424 . . [5.1.2600.6223] . . c:\windows\$hf_mig$\KB2707511\SP3QFE\ntkrnlpa.exe
[-] 2012-04-11 . 12E964E3514BC6ECD028A792F23E1976 . 2029056 . . [5.1.2600.6206] . . c:\windows\$NtUninstallKB2707511$\ntkrnlpa.exe
[-] 2012-04-11 . C3124524EDDDA49504AE558352440F65 . 2071424 . . [5.1.2600.6206] . . c:\windows\$hf_mig$\KB2676562\SP3QFE\ntkrnlpa.exe
[-] 2011-10-26 . 07FD1B85212CB29D3D75932B8C3FD210 . 2029568 . . [5.1.2600.6165] . . c:\windows\$NtUninstallKB2676562$\ntkrnlpa.exe
[-] 2011-10-26 . ADD968B4D4A095407FD5B915F89BA8B5 . 2071680 . . [5.1.2600.6165] . . c:\windows\$hf_mig$\KB2633171\SP3QFE\ntkrnlpa.exe
[-] 2010-12-09 . 7B1CA0A6C042E4B90A18B49ED73CBA76 . 2071680 . . [5.1.2600.6055] . . c:\windows\$hf_mig$\KB2393802\SP3QFE\ntkrnlpa.exe
[-] 2010-12-09 . 56371A8F18F7D9570A11B1C54D602A2A . 2029568 . . [5.1.2600.6055] . . c:\windows\$NtUninstallKB2633171$\ntkrnlpa.exe
[-] 2010-04-28 . 4EACA49489EB3C4A2E83C5546EB5884C . 2069248 . . [5.1.2600.5973] . . c:\windows\$hf_mig$\KB981852\SP3QFE\ntkrnlpa.exe
[-] 2010-04-28 . 6D8D53C3EE866AB72AC73A68808E7371 . 2027008 . . [5.1.2600.5973] . . c:\windows\$NtUninstallKB2393802$\ntkrnlpa.exe
[-] 2010-02-16 . 1DFCBCFD1C9016C051BE6D7243459CCA . 2027008 . . [5.1.2600.5938] . . c:\windows\$NtUninstallKB981852$\ntkrnlpa.exe
[-] 2010-02-16 . CEE28C8C47E52F185F9F8F3A2E31880C . 2069248 . . [5.1.2600.5938] . . c:\windows\$hf_mig$\KB979683\SP3QFE\ntkrnlpa.exe
[-] 2009-12-09 . 2E72317A93EF61138E43DCF7CD423EDF . 2068480 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165\SP3QFE\ntkrnlpa.exe
[-] 2009-12-09 . 1143EBE276EA80A88942A21613078088 . 2026496 . . [5.1.2600.5913] . . c:\windows\$NtUninstallKB979683$\ntkrnlpa.exe
[-] 2009-08-04 . C50ED62BB5CDC5AD4F3985ED39C6AE87 . 2068480 . . [5.1.2600.5857] . . c:\windows\$hf_mig$\KB971486\SP3QFE\ntkrnlpa.exe
[-] 2009-08-04 . 1FF1F43613BA7510A5A975ED034EB8E0 . 2026496 . . [5.1.2600.5857] . . c:\windows\$NtUninstallKB977165$\ntkrnlpa.exe
[-] 2009-02-09 . 43FBA8A9CBEEA36EA95AF77CD538200A . 2026496 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB971486$\ntkrnlpa.exe
[-] 2009-02-09 . 1F9DA92672B8B5720C5FB1E87D8F249F . 2068480 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntkrnlpa.exe
[-] 2008-08-14 . C789B5AEA9AB71C5BEF6DD568F744842 . 2068352 . . [5.1.2600.5657] . . c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlpa.exe
[-] 2008-08-14 . 13334FAF18AB3B9083B8DD8A668B8BB6 . 2026496 . . [5.1.2600.5657] . . c:\windows\$NtUninstallKB956572$\ntkrnlpa.exe
[-] 2008-04-14 . FEFB3BDA35CF469809B0C89AB6833AFC . 2026496 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956841$\ntkrnlpa.exe
[-] 2008-04-14 . E51980EF65CED4490A7395A06C08DA34 . 2068224 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ntkrnlpa.exe
[-] 2005-03-02 . 5B765E49A8A454A6125958EE25BE65CC . 2017792 . . [5.1.2600.2622] . . c:\windows\$NtServicePackUninstall$\ntkrnlpa.exe
[-] 2005-03-02 . AE8364004BBFD70461D2EF34888D3360 . 2059264 . . [5.1.2600.2622] . . c:\windows\$hf_mig$\KB890859\SP2QFE\ntkrnlpa.exe
[-] 2005-03-02 . BDFF8FFA77EE7DF9758EF8C1E0DA8EFF . 2059136 . . [5.1.2600.2622] . . c:\windows\$NtUninstallKB890859$\ntkrnlpa.exe
.
[-] 2008-04-14 02:22 . 56AF4064996FA5BAC9C449B1514B4770 . 438272 . . [5.1.2400.5512] . . c:\windows\ServicePackFiles\i386\ntmssvc.dll
[-] 2008-04-14 02:22 . 56AF4064996FA5BAC9C449B1514B4770 . 438272 . . [5.1.2400.5512] . . c:\windows\system32\ntmssvc.dll
[-] 2004-08-04 12:00 . 428AA946A8D9F32DBB4260C8E6E13377 . 438272 . . [5.1.2400.2180] . . c:\windows\$NtServicePackUninstall$\ntmssvc.dll
.
[-] 2008-04-14 . 1DFD8975D8C89214B98D9387C1125B49 . 186880 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\upnphost.dll
[-] 2008-04-14 . 1DFD8975D8C89214B98D9387C1125B49 . 186880 . . [5.1.2600.5512] . . c:\windows\system32\upnphost.dll
[-] 2004-08-04 . 09D4A2D7C5A8ABEC227D118765FAADDF . 185856 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\upnphost.dll
.
[-] 2008-04-14 . 9236E736EDB57BE7D1EF6274410E3BAC . 367616 . . [5.3.2600.5512] . . c:\windows\ServicePackFiles\i386\dsound.dll
[-] 2008-04-14 . 9236E736EDB57BE7D1EF6274410E3BAC . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dsound.dll
[-] 2004-08-04 . 7DB3393F98E4211F5CE8F003DE0615CF . 367616 . . [5.3.2600.2180] . . c:\windows\$NtServicePackUninstall$\dsound.dll
.
[-] 2008-04-14 . 36969CF86E51EC8ED202B40F2FA80AA6 . 1689088 . . [5.03.2600.5512] . . c:\windows\ServicePackFiles\i386\d3d9.dll
[-] 2008-04-14 . 36969CF86E51EC8ED202B40F2FA80AA6 . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\d3d9.dll
[-] 2004-08-04 . 20AE7889467887B869F30308EEED9A2A . 1689088 . . [5.03.2600.2180] . . c:\windows\$NtServicePackUninstall$\d3d9.dll
.
[-] 2008-04-14 . 4A37188B83B00DD9CFBA049687AD0DAF . 279552 . . [5.03.2600.5512] . . c:\windows\ServicePackFiles\i386\ddraw.dll
[-] 2008-04-14 . 4A37188B83B00DD9CFBA049687AD0DAF . 279552 . . [5.03.2600.5512] . . c:\windows\system32\ddraw.dll
[-] 2004-08-04 . CAC545A56482DE01640E6B791DE19944 . 266240 . . [5.03.2600.2180] . . c:\windows\$NtServicePackUninstall$\ddraw.dll
.
[-] 2008-04-14 02:22 . 5D7F5A46975D2E59A6FECB6C231D200F . 84992 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\olepro32.dll
[-] 2008-04-14 02:22 . 5D7F5A46975D2E59A6FECB6C231D200F . 84992 . . [5.1.2600.5512] . . c:\windows\system32\olepro32.dll
[-] 2004-08-04 12:00 . 1404D3DD4ED4F5E2A938B43794049A81 . 83456 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\olepro32.dll
.
[-] 2008-04-14 . C47FD93010649AC0D79022D9B69ADBE4 . 41984 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\perfctrs.dll
[-] 2008-04-14 . C47FD93010649AC0D79022D9B69ADBE4 . 41984 . . [5.1.2600.5512] . . c:\windows\system32\perfctrs.dll
[-] 2004-08-04 . 007BFD01772B5202C5CE4F208A2F3F46 . 41984 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\perfctrs.dll
.
[-] 2008-04-14 . F86000634319F71535BCE6B06995EE99 . 18944 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\version.dll
[-] 2008-04-14 . F86000634319F71535BCE6B06995EE99 . 18944 . . [5.1.2600.5512] . . c:\windows\system32\version.dll
[-] 2004-08-04 . 4EF2FDC0A085C8339ED4D9C59CE8FC60 . 18944 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\version.dll
.
[-] 2012-05-05 . 6005B4877E0E9AFB992615A0D5130D11 . 2194944 . . [5.1.2600.6223] . . c:\windows\Driver Cache\i386\ntoskrnl.exe
[-] 2012-05-05 . 6005B4877E0E9AFB992615A0D5130D11 . 2194944 . . [5.1.2600.6223] . . c:\windows\system32\dllcache\ntoskrnl.exe
[-] 2012-05-05 . 916B2FD262DDD2DD31EB5B80B5645516 . 2150912 . . [5.1.2600.6223] . . c:\windows\system32\ntoskrnl.exe
[-] 2012-05-05 . C11516E90F6D8C45329A070429392A04 . 2194944 . . [5.1.2600.6223] . . c:\windows\$hf_mig$\KB2707511\SP3QFE\ntoskrnl.exe
[-] 2012-04-11 . 1055CB3C62F7007EBD5ECB1E5CC8069E . 2150912 . . [5.1.2600.6206] . . c:\windows\$NtUninstallKB2707511$\ntoskrnl.exe
[-] 2012-04-11 . 35BEC26067274CCFE4BE16CA22E54557 . 2194944 . . [5.1.2600.6206] . . c:\windows\$hf_mig$\KB2676562\SP3QFE\ntoskrnl.exe
[-] 2011-10-26 . 63907C9E2D9EEA3ADA8263F0A8D79797 . 2151424 . . [5.1.2600.6165] . . c:\windows\$NtUninstallKB2676562$\ntoskrnl.exe
[-] 2011-10-26 . 43BA9F58FD87BBF57F958C06241F2C9C . 2195072 . . [5.1.2600.6165] . . c:\windows\$hf_mig$\KB2633171\SP3QFE\ntoskrnl.exe
[-] 2010-12-09 . 2A5A8BE47E1F8E55520FB4031E21D129 . 2195072 . . [5.1.2600.6055] . . c:\windows\$hf_mig$\KB2393802\SP3QFE\ntoskrnl.exe
[-] 2010-12-09 . DAC0BE266F11618A2B9A6EC4D1F255ED . 2151424 . . [5.1.2600.6055] . . c:\windows\$NtUninstallKB2633171$\ntoskrnl.exe
[-] 2010-04-28 . 490911C4B913989D4958543FED2C8F21 . 2148864 . . [5.1.2600.5973] . . c:\windows\$NtUninstallKB2393802$\ntoskrnl.exe
[-] 2010-04-28 . 6AF2E8CEB03F7CB3B8183359563DBB87 . 2192384 . . [5.1.2600.5973] . . c:\windows\$hf_mig$\KB981852\SP3QFE\ntoskrnl.exe
[-] 2010-02-16 . E1BD0FAFF2C1D0A825CBA97DCF0DDDAE . 2148864 . . [5.1.2600.5938] . . c:\windows\$NtUninstallKB981852$\ntoskrnl.exe
[-] 2010-02-16 . 4456016C2FF1A8CCCAC8309C9B76E2F5 . 2192384 . . [5.1.2600.5938] . . c:\windows\$hf_mig$\KB979683\SP3QFE\ntoskrnl.exe
[-] 2009-12-09 . A97847B2D30F4A299B35239D26BAD948 . 2191616 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165\SP3QFE\ntoskrnl.exe
[-] 2009-12-09 . D4128AA197DD8F3120FC80008AB66CF7 . 2147840 . . [5.1.2600.5913] . . c:\windows\$NtUninstallKB979683$\ntoskrnl.exe
[-] 2009-08-04 . 96D6882D49438D58B0DE0F7E8C8D241B . 2147840 . . [5.1.2600.5857] . . c:\windows\$NtUninstallKB977165$\ntoskrnl.exe
[-] 2009-08-04 . 4B86421F2D85D9A4ECB06885C40B8EEB . 2191616 . . [5.1.2600.5857] . . c:\windows\$hf_mig$\KB971486\SP3QFE\ntoskrnl.exe
[-] 2009-02-10 . D3453310FC92736E674FFDC6E3F455B7 . 2191488 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntoskrnl.exe
[-] 2009-02-09 . 18D976FE984BDA3DAC8164B05D69205D . 2147840 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB971486$\ntoskrnl.exe
[-] 2008-08-14 . 59282EFE7147C011530E51FF92BA86AC . 2191488 . . [5.1.2600.5657] . . c:\windows\$hf_mig$\KB956841\SP3QFE\ntoskrnl.exe
[-] 2008-08-14 . 5961DD3AEC44962A76F0D8D895C172F1 . 2147840 . . [5.1.2600.5657] . . c:\windows\$NtUninstallKB956572$\ntoskrnl.exe
[-] 2008-04-14 . 354C9291513BCE4D0ED6B0C6A15470F8 . 2191360 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ntoskrnl.exe
[-] 2008-04-14 . 88077F757C6C793C33408D878B6E0F76 . 2147840 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956841$\ntoskrnl.exe
[-] 2005-03-02 . EB5538A452E0E99169E2B6CDB62FF9D2 . 2181888 . . [5.1.2600.2622] . . c:\windows\$hf_mig$\KB890859\SP2QFE\ntoskrnl.exe
[-] 2005-03-02 . F76176EB18B523CFBEF252308DAA9CA8 . 2138112 . . [5.1.2600.2622] . . c:\windows\$NtServicePackUninstall$\ntoskrnl.exe
[-] 2005-03-02 . 7189A2391ADC1F65C9AE87B0ABE0F945 . 2181632 . . [5.1.2600.2622] . . c:\windows\$NtUninstallKB890859$\ntoskrnl.exe
.
[-] 2008-04-14 . FE77A85495065F3AD59C5C65B6C54182 . 171520 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\srsvc.dll
[-] 2008-04-14 . FE77A85495065F3AD59C5C65B6C54182 . 171520 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll
[-] 2004-08-04 . 015F302C4CF961F20C3F98F3A7CA7917 . 171008 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\srsvc.dll
.
[-] 2008-04-14 . 7B353059E665F8B7AD2BBEAEF597CF45 . 177152 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\w32time.dll
[-] 2008-04-14 . 7B353059E665F8B7AD2BBEAEF597CF45 . 177152 . . [5.1.2600.5512] . . c:\windows\system32\w32time.dll
[-] 2004-08-04 . C6D874CD2A5B83CD11CDEBD28A638584 . 176640 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\w32time.dll
.
[-] 2008-04-14 . BC2C5985611C5356B24AEB370953DED9 . 334336 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\wiaservc.dll
[-] 2008-04-14 . BC2C5985611C5356B24AEB370953DED9 . 334336 . . [5.1.2600.5512] . . c:\windows\system32\wiaservc.dll
[-] 2004-08-04 . 7E751068ADA60FC77638622E86A7CD9E . 333824 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\wiaservc.dll
.
[-] 2008-04-14 . 2CF969B9BF1EF069075DCDCE309FAAE1 . 18944 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\midimap.dll
[-] 2008-04-14 . 2CF969B9BF1EF069075DCDCE309FAAE1 . 18944 . . [5.1.2600.5512] . . c:\windows\system32\midimap.dll
[-] 2004-08-04 . 32641AE4D340C1AC2D9B3A3BD71F5C47 . 18944 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\midimap.dll
.
[-] 2008-04-14 . 469FED8597896DB77B49384BE90E2E0A . 7680 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\rasadhlp.dll
[-] 2008-04-14 . 469FED8597896DB77B49384BE90E2E0A . 7680 . . [5.1.2600.5512] . . c:\windows\system32\rasadhlp.dll
[-] 2006-06-26 . 45F87F6E7AB4F79B5C719B78C289DB66 . 7680 . . [5.1.2600.2938] . . c:\windows\$hf_mig$\KB920683\SP2QFE\rasadhlp.dll
[-] 2006-06-26 . DC940E8932827D65180F6A71BD4BD878 . 8192 . . [5.1.2600.2938] . . c:\windows\$NtServicePackUninstall$\rasadhlp.dll
.
((((((((((((((((((((((((((((   Autostartpunkte der Registrierung   ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. 
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Akamai NetSession Interface"="c:\dokumente und einstellungen\User\Lokale Einstellungen\Anwendungsdaten\Akamai\netsession_win.exe" [2012-05-26 4327744]
"WMPNSCFG"="c:\programme\Windows Media Player\WMPNSCFG.exe" [2009-02-04 204288]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Mouse Suite 98 Daemon"="ICO.EXE" [2008-06-27 53248]
"TVT Scheduler Proxy"="c:\programme\Gemeinsame Dateien\Lenovo\Scheduler\scheduler_proxy.exe" [2008-05-14 487424]
"cssauth"="c:\programme\Lenovo\Client Security Solution\cssauth.exe" [2008-06-13 3073336]
"Samsung LBP SM"="c:\windows\Samsung\LaserSMMgr\ssmmgr.exe" [2003-04-04 266240]
"Adobe ARM"="c:\programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"avgnt"="c:\programme\Avira\AntiVir Desktop\avgnt.exe" [2012-05-11 348624]
"RTHDCPL"="RTHDCPL.EXE" [2008-06-27 16875008]
"SunJavaUpdateSched"="c:\programme\Gemeinsame Dateien\Java\Java Update\jusched.exe" [2012-01-18 254696]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
R1 avkmgr;avkmgr;c:\windows\system32\drivers\avkmgr.sys [24.10.2011 19:41 36000]
R1 tvtumon;tvtumon;c:\windows\system32\drivers\tvtumon.sys [09.05.2008 06:50 46144]
R2 Akamai;Akamai NetSession Interface;c:\windows\System32\svchost.exe -k Akamai [27.01.2006 03:01 14336]
R2 AntiVirSchedulerService;Avira Planer;c:\programme\Avira\AntiVir Desktop\sched.exe [24.10.2011 19:41 86224]
R2 AntiVirWebService;Avira Browser Schutz;c:\programme\Avira\AntiVir Desktop\avwebgrd.exe [24.10.2011 19:41 465360]
R2 TVT Backup Protection Service;TVT Backup Protection Service;c:\programme\Lenovo\Rescue and Recovery\rrpservice.exe [14.05.2008 17:25 520192]
R2 TVT_UpdateMonitor;TVT Windows Update Monitor;c:\programme\Lenovo\Rescue and Recovery\UpdateMonitor.exe [09.05.2008 06:50 253952]
R2 USBDLM;USBDLM;c:\usbdlm\USBDLM.exe [19.10.2007 12:21 134656]
R3 TVTI2C;Lenovo SM bus driver;c:\windows\system32\drivers\tvti2c.sys [22.02.2008 16:54 37312]
S2 SessionLauncher;SessionLauncher;c:\dokume~1\ADMINI~1\LOKALE~1\Temp\DX9\SessionLauncher.exe --> c:\dokume~1\ADMINI~1\LOKALE~1\Temp\DX9\SessionLauncher.exe [?]
S2 SSPORT;SSPORT;\??\c:\windows\system32\Drivers\SSPORT.sys --> c:\windows\system32\Drivers\SSPORT.sys [?]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [30.06.2012 16:52 250056]
S3 MozillaMaintenance;Mozilla Maintenance Service;c:\programme\Mozilla Maintenance Service\maintenanceservice.exe [01.05.2012 11:43 113120]
S3 nosGetPlusHelper;getPlus(R) Helper 3004;c:\windows\System32\svchost.exe -k nosGetPlusHelper [27.01.2006 03:01 14336]
S3 RoxMediaDB10;RoxMediaDB10;c:\programme\Gemeinsame Dateien\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe [25.04.2008 09:15 1120752]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
getPlusHelper	REG_MULTI_SZ   	getPlusHelper
Akamai	REG_MULTI_SZ   	Akamai
nosGetPlusHelper	REG_MULTI_SZ   	nosGetPlusHelper
.
Inhalt des "geplante Tasks" Ordners
.
2012-07-22 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-06-30 15:05]
.
2012-07-22 c:\windows\Tasks\Auf Updates für Windows Live Toolbar prüfen.job
- c:\programme\Windows Live Toolbar\MSNTBUP.EXE [2007-02-12 14:54]
.
.
------- Zusätzlicher Suchlauf -------
.
uStart Page = hxxp://www.google.com
uInternet Settings,ProxyOverride = <local>
IE: &Windows Live Search - c:\programme\Windows Live Toolbar\msntb.dll/search.htm
LSP: c:\programme\Avira\AntiVir Desktop\avsda.dll
TCP: DhcpNameServer = 192.168.2.1
FF - ProfilePath - c:\dokumente und einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\
FF - prefs.js: browser.search.defaulturl - 
FF - prefs.js: browser.search.selectedEngine - 
FF - prefs.js: browser.startup.homepage - www.google.de
FF - user.js: yahoo.homepage.dontask - true
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
AddRemove-Microsoft Interactive Training - c:\windows\IsUn0407.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, hxxp://www.gmer.net
Rootkit scan 2012-07-23 20:44
Windows 5.1.2600 Service Pack 3 NTFS
.
Scanne versteckte Prozesse... 
.
Scanne versteckte Autostarteinträge... 
.
Scanne versteckte Dateien... 
.
Scan erfolgreich abgeschlossen
versteckte Dateien: 0
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Akamai]
"ServiceDll"="c:\programme\gemeinsame dateien\akamai/netsession_win_4f7fccd.dll"
.
--------------------- Durch laufende Prozesse gestartete DLLs ---------------------
.
- - - - - - - > 'winlogon.exe'(740)
c:\windows\system32\Ati2evxx.dll
.
- - - - - - - > 'lsass.exe'(796)
c:\programme\Avira\AntiVir Desktop\avsda.dll
.
Zeit der Fertigstellung: 2012-07-23  20:47:06
ComboFix-quarantined-files.txt  2012-07-23 18:47
.
Vor Suchlauf: 20 Verzeichnis(se), 280.288.948.224 Bytes frei
Nach Suchlauf: 23 Verzeichnis(se), 280.493.187.072 Bytes frei
.
WindowsXP-KB310994-SP2-Pro-BootDisk-DEU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect
.
- - End Of File - - C2A2B38F561F0B93CF16A0A1F00F185B
         

Alt 24.07.2012, 15:16   #38
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
ich möchte meinen PC reinigen - Standard

ich möchte meinen PC reinigen



Bitte nun Logs mit GMER und OSAM erstellen und posten.
GMER stürzt häufiger ab, wenn das Tool auch beim 2. Mal nicht will, lass es einfach weg und führ nur OSAM aus - die Online-Abfrage durch OSAM bitte überspringen.
Bei OSAM bitte darauf auch achten, dass Du das Log auch als *.log und nicht *.html oder so abspeicherst.

Hinweis: Zum Entpacken von OSAM bitte WinRAR oder 7zip verwenden! Stell auch unbedingt den Virenscanner ab, besonders der Scanner von McAfee meldet oft einen Fehalarm in OSAM!

Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.
  • Starte die aswMBR.exe - (aswMBR.exe Anleitung)
    Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten".
  • Das Tool wird dich fragen, ob Du mit der aktuellen Virendefinition von AVAST! dein System scannen willst. Beantworte diese Frage bitte mit Ja. (Sollte deine Firewall fragen, bitte den Zugriff auf das Internet zulassen )
    Der Download der Definitionen kann je nach Verbindung eine Weile dauern.
  • Klicke auf Scan.
  • Warte bitte bis Scan finished successfully im DOS-Fenster steht.
  • Drücke auf Save Log und speichere diese auf dem Desktop.
Poste mir die aswMBR.txt in deiner nächsten Antwort.

Wichtig: Drücke keinesfalls einen der Fix Buttons ohne Anweisung

Hinweis: Sollte der Scan Button ausgeblendet sein, schließe das Tool und starte es erneut. Sollte der Scan abbrechen und das Programm abstürzen, dann teile mir das mit und wähle unter AV Scan die Einstellung (none).



Noch ein Hinweis: Sollte aswMBR abstürzen und es kommt eine Meldung wie "aswMBR.exe funktioniert nicht mehr, dann mach Folgendes:
Starte aswMBR neu, wähle unten links im Drop-Down-Menü (unten links im Fenster von aswMBR) bei "AV scan" (none) aus und klick nochmal auf den Scan-Button.
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 24.07.2012, 20:45   #39
strobl
 
ich möchte meinen PC reinigen - Standard

ich möchte meinen PC reinigen



Ich habe mit GMER gescannt. log war zu lange und das forum wollte die antwort in so einer form nicht. ich sollte zippen.
7zipp habe heruntergeladen und nichts verstanden, wie es geht.

habe ich irgendwo in meinem PC gmer-text ?

auf meinem PC liegt 71tr1vxs.exe unter dem Symbol Gmer.

Alt 24.07.2012, 21:58   #40
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
ich möchte meinen PC reinigen - Standard

ich möchte meinen PC reinigen



Ist Google bei dir defekt?
Anleitungen wie man zippt gibt es nun wirklich zuhauf im Netz
Rechtsklick auf das GMER-Log => senden an => ZIP komprimierter Ordner
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 25.07.2012, 14:06   #41
strobl
 
ich möchte meinen PC reinigen - Standard

ich möchte meinen PC reinigen



ich finde gmer-log nicht.

wie kann man ihn finden?

Danke!

Alt 25.07.2012, 14:37   #42
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
ich möchte meinen PC reinigen - Standard

ich möchte meinen PC reinigen



Lass GMER erstmal weg, kümmer dich um die anderen Logs!
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 25.07.2012, 15:32   #43
strobl
 
ich möchte meinen PC reinigen - Standard

ich möchte meinen PC reinigen



es gibt auch andere seltsame Sachen.

ich hatte auf der Taskleiste einen Sprachsymbol "DE" und konnte zwischen Sprachen umschalten. Jetzt ist es weg. Ich bin nach der Microsoft-Hilfe gegangen. Dort kann man sowas über : Regions- und Sprachoptionen- Register"Sprachen" - Details - Einstellungen- unten im Fenster Abteilung Einstellungen- Eingabegebietsschema-Leiste (und das ist deaktiviert; aktiv ist nur Feld daneben "Tastatur").

Windows-Firewall kann ich wieder öffnen.Dort sind 2 Ausnahmen geblockt:

gewisse Akamai Netsession Interface und Remoteunterstützung.

diese Sprachumschaltung ist für meine Arbeit sehr wichtig.

Haben Sie Ideen ,woran es liegen kann?

Danke!

Hier ist OSAM-Log:

Code:
ATTFilter
Report of OSAM: Autorun Manager v5.0.11926.0
hxxp://www.online-solutions.ru/en/
Saved at 16:57:29 on 25.07.2012

OS: Windows XP Professional Service Pack 3 (Build 2600)
Default Browser: Mozilla Corporation Firefox 14.0.1

Scanner Settings
[x] Rootkits detection (hidden registry)
[x] Rootkits detection (hidden files)
[x] Retrieve files information
[x] Check Microsoft signatures

Filters
[ ] Trusted entries
[ ] Empty entries
[x] Hidden registry entries (rootkit activity)
[x] Exclusively opened files
[x] Not found files
[x] Files without detailed information
[x] Existing files
[ ] Non-startable services
[ ] Non-startable drivers
[x] Active entries
[x] Disabled entries


[Boot Execute]
-----( HKLM\SYSTEM\CurrentControlSet\Control\Session Manager )-----
"BootExecute" - "Microsoft Corporation" - C:\WINDOWS\system32\autochk.exe

[Common]
-----( %SystemRoot%\Tasks )-----
"Auf Updates für Windows Live Toolbar prüfen.job" - "Microsoft Corporation" - C:\Programme\Windows Live Toolbar\MSNTBUP.EXE
"Adobe Flash Player Updater.job" - "Adobe Systems Incorporated" - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
-----( HKLM\SOFTWARE\Microsoft\Windows Scripting Host\Locations )-----
"CScript" - "Microsoft Corporation" - C:\WINDOWS\System32\cscript.exe
"WScript" - "Microsoft Corporation" - C:\WINDOWS\System32\wscript.exe

[Control Panel Objects]
-----( %SystemRoot%\system32 )-----
"access.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\access.cpl
"ALSNDMGR.CPL" - "Realtek Semiconductor Corp." - C:\WINDOWS\system32\ALSNDMGR.CPL
"appwiz.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\appwiz.cpl
"bthprops.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\bthprops.cpl
"desk.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\desk.cpl
"firewall.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\firewall.cpl
"FlashPlayerCPLApp.cpl" - "Adobe Systems Incorporated" - C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
"hdwwiz.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\hdwwiz.cpl
"inetcpl.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\inetcpl.cpl
"infocardcpl.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\infocardcpl.cpl
"intl.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\intl.cpl
"irprops.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\irprops.cpl
"javacpl.cpl" - "Sun Microsystems, Inc." - C:\WINDOWS\system32\javacpl.cpl
"joy.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\joy.cpl
"main.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\main.cpl
"mmsys.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\mmsys.cpl
"ncpa.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\ncpa.cpl
"netsetup.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\netsetup.cpl
"nusrmgr.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\nusrmgr.cpl
"nwc.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\nwc.cpl
"odbccp32.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\odbccp32.cpl
"powercfg.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\powercfg.cpl
"RTSndMgr.CPL" - "Realtek Semiconductor Corp." - C:\WINDOWS\system32\RTSndMgr.CPL
"sysdm.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\sysdm.cpl
"telephon.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\telephon.cpl
"timedate.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\timedate.cpl
"wscui.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\wscui.cpl
"wuaucpl.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\wuaucpl.cpl
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls )-----
"Avira AntiVir Personal - Free Antivirus " - "Avira Operations GmbH & Co. KG" - C:\PROGRA~1\Avira\ANTIVI~1\avconfig.cpl
"Internet Connection Firewall" - "Microsoft Corporation" - C:\WINDOWS\system32\Firewall.cpl
"NetSetupWizard" - "Microsoft Corporation" - C:\WINDOWS\system32\NetSetup.cpl
"Speech" - "Microsoft Corporation" - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Speech\sapi.cpl

[Drivers]
-----( HKLM\SYSTEM\CurrentControlSet\Services )-----
"AFD" (AFD) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\afd.sys
"Asynchroner RAS -Medientreiber" (AsyncMac) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\asyncmac.sys
"ati2mtag" (ati2mtag) - "ATI Technologies Inc." - C:\WINDOWS\System32\DRIVERS\ati2mtag.sys
"Audiostubtreiber" (audstub) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\audstub.sys
"avgntflt" (avgntflt) - "Avira GmbH" - C:\WINDOWS\System32\DRIVERS\avgntflt.sys
"avipbb" (avipbb) - "Avira GmbH" - C:\WINDOWS\System32\DRIVERS\avipbb.sys
"avkmgr" (avkmgr) - "Avira GmbH" - C:\WINDOWS\System32\DRIVERS\avkmgr.sys
"Beep" (Beep) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Beep.sys
"Bereitstellungspunkt-Manager" (MountMgr) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\MountMgr.sys
"catchme" (catchme) - ? - C:\DOKUME~1\User\LOKALE~1\Temp\catchme.sys  (File not found)
"CD-ROM-Laufwerktreiber" (Cdrom) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\cdrom.sys
"Cdaudio" (Cdaudio) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Cdaudio.sys
"Cdfs" (Cdfs) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Cdfs.sys
"Changer" (Changer) - ? - C:\WINDOWS\system32\drivers\Changer.sys  (File not found)
"Diskettencontrollertreiber" (Fdc) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\fdc.sys
"Diskettenlaufwerktreiber" (Flpydisk) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\flpydisk.sys
"DLABMFSM" (DLABMFSM) - "Roxio" - C:\WINDOWS\System32\DLA\DLABMFSM.SYS
"DLABOIOM" (DLABOIOM) - "Roxio" - C:\WINDOWS\System32\DLA\DLABOIOM.SYS
"DLACDBHM" (DLACDBHM) - "Roxio" - C:\WINDOWS\System32\Drivers\DLACDBHM.SYS
"DLADResM" (DLADResM) - "Roxio" - C:\WINDOWS\System32\DLA\DLADResM.SYS
"DLAIFS_M" (DLAIFS_M) - "Roxio" - C:\WINDOWS\System32\DLA\DLAIFS_M.SYS
"DLAOPIOM" (DLAOPIOM) - "Roxio" - C:\WINDOWS\System32\DLA\DLAOPIOM.SYS
"DLAPoolM" (DLAPoolM) - "Roxio" - C:\WINDOWS\System32\DLA\DLAPoolM.SYS
"DLARTL_M" (DLARTL_M) - "Roxio" - C:\WINDOWS\System32\Drivers\DLARTL_M.SYS
"DLAUDFAM" (DLAUDFAM) - "Roxio" - C:\WINDOWS\System32\DLA\DLAUDFAM.SYS
"DLAUDF_M" (DLAUDF_M) - "Roxio" - C:\WINDOWS\System32\DLA\DLAUDF_M.SYS
"dmload" (dmload) - "Microsoft Corp., Veritas Software." - C:\WINDOWS\System32\drivers\dmload.sys
"DRVMCDB" (DRVMCDB) - "Sonic Solutions" - C:\WINDOWS\System32\Drivers\DRVMCDB.SYS
"DRVNDDM" (DRVNDDM) - "Roxio" - C:\WINDOWS\System32\Drivers\DRVNDDM.SYS
"Filtertreiber für CD-Brennen" (Imapi) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\imapi.sys
"Filtertreiber für digitale CD-Audiowiedergabe" (redbook) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\redbook.sys
"Filtertreiber für IP-Verkehr" (IpFilterDriver) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ipfltdrv.sys
"Filtertreiber für IPX-Verkehr" (NwlnkFlt) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\nwlnkflt.sys
"Filtertreiber für Systemwiederherstellung" (sr) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\sr.sys
"Fips" (Fips) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Fips.sys
"FltMgr" (FltMgr) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\fltmgr.sys
"Fs_Rec" (Fs_Rec) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Fs_Rec.sys
"G400" (G400) - "Matrox Graphics Inc." - C:\WINDOWS\System32\DRIVERS\G400m.sys
"HTTP" (HTTP) - "Microsoft Corporation" - C:\WINDOWS\System32\Drivers\HTTP.sys
"i2omgmt" (i2omgmt) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\i2omgmt.sys
"i8042-Tastatur- und PS/2-Mausanschluss-Treiber" (i8042prt) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\i8042prt.sys
"Intel(r) 82801 Audiotreiber-Installationsdienst (WDM)" (ac97intc) - "Intel Corporation" - C:\WINDOWS\System32\drivers\ac97intc.sys
"Intel(R) PRO-Adaptertreiber" (E100B) - "Intel Corporation" - C:\WINDOWS\System32\DRIVERS\e100b325.sys
"IP/IP-Tunneltreiber" (IpInIp) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ipinip.sys
"IPSEC-Treiber" (IPSec) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ipsec.sys
"IPv6-Windows-Firewalltreiber" (Ip6Fw) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\ip6fw.sys
"IR-Enumeratordienst" (IRENUM) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\irenum.sys
"KSecDD" (KSecDD) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\KSecDD.sys
"Laufwerktreiber" (Disk) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\disk.sys
"lbrtfdc" (lbrtfdc) - ? - C:\WINDOWS\system32\drivers\lbrtfdc.sys  (File not found)
"Lenovo Parties Service Access Device Driver" (psadd) - "Lenovo (United States) Inc." - C:\WINDOWS\System32\DRIVERS\psadd.sys
"Lenovo SM bus driver" (TVTI2C) - "Lenovo (United States) Inc." - C:\WINDOWS\System32\DRIVERS\Tvti2c.sys
"Maus-HID-Treiber" (mouhid) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\mouhid.sys
"Mausklassentreiber" (Mouclass) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\mouclass.sys
"Microcode Updatetreiber" (Update) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\update.sys
"Microsoft ACPI-Treiber" (ACPI) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ACPI.sys
"Microsoft HID Class-Treiber" (HidUsb) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\hidusb.sys
"Microsoft Kernel GS Wavetablesynthesizer" (swmidi) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\swmidi.sys
"Microsoft Kernel-Audiosplitter" (splitter) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\splitter.sys
"Microsoft Kernel-DLS-Synthesizer" (DMusic) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\DMusic.sys
"Microsoft Kernel-DRM-Audioentschlüsselung" (drmkaud) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\drmkaud.sys
"Microsoft Kernel-Echounterdrückung" (aec) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\aec.sys
"Microsoft Kernel-Systemaudiogerät" (sysaudio) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\sysaudio.sys
"Microsoft Kernel-Waveaudiomixer" (kmixer) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\kmixer.sys
"Microsoft Proxy für Streaming Clock" (MSPCLOCK) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\MSPCLOCK.sys
"Microsoft Proxy für Streaming Quality Manager" (MSPQM) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\MSPQM.sys
"Microsoft Streaming Service Proxy" (MSKSSRV) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\MSKSSRV.sys
"Microsoft UAA-Bustreiber für High Definition Audio" (HDAudBus) - "Windows (R) Server 2003 DDK provider" - C:\WINDOWS\System32\DRIVERS\HDAudBus.sys
"Microsoft USB-Druckerklasse" (usbprint) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\usbprint.sys
"Microsoft-Systemverwaltungs-BIOS-Treiber" (mssmbios) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\mssmbios.sys
"Miniporttreiber für erweiterten Microsoft USB 2.0-Hostcontroller" (usbehci) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\usbehci.sys
"Miniporttreiber für Microsoft USB Open Host-Controller" (usbohci) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\usbohci.sys
"Miniporttreiber für universellen Microsoft USB-Hostcontroller" (usbuhci) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\usbuhci.sys
"mnmdd" (mnmdd) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\mnmdd.sys
"Modem" (Modem) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Modem.sys
"Mouse Suite Driver" (pelmouse) - "Primax Electronics Ltd." - C:\WINDOWS\System32\DRIVERS\pelmouse.sys
"MRXSMB" (MRxSmb) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\mrxsmb.sys
"Msfs" (Msfs) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Msfs.sys
"Mup" (Mup) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Mup.sys
"NDIS-Benutzermodus-E/A-Protokoll" (Ndisuio) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ndisuio.sys
"NDIS-Systemtreiber" (NDIS) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\NDIS.sys
"NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller" (yukonwxp) - "Marvell" - C:\WINDOWS\System32\DRIVERS\yk51x86.sys
"NDProxy" (NDProxy) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\NDProxy.sys
"NetBios über TCP/IP" (NetBT) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\netbt.sys
"NetBIOS-Schnittstelle" (NetBIOS) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\netbios.sys
"Npfs" (Npfs) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Npfs.sys
"Ntfs" (Ntfs) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Ntfs.sys
"Null" (Null) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Null.sys
"nv" (nv) - "NVIDIA Corporation" - C:\WINDOWS\System32\DRIVERS\nv4_mini.sys
"Parallelanschluss (direkt)" (Raspti) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\raspti.sys
"Partitions-Manager" (PartMgr) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\PartMgr.sys
"PCI-Bus-Treiber" (PCI) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\pci.sys
"PCIDump" (PCIDump) - ? - C:\WINDOWS\system32\drivers\PCIDump.sys  (File not found)
"PCIIde" (PCIIde) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\pciide.sys
"PDCOMP" (PDCOMP) - ? - C:\WINDOWS\system32\drivers\PDCOMP.sys  (File not found)
"PDFRAME" (PDFRAME) - ? - C:\WINDOWS\system32\drivers\PDFRAME.sys  (File not found)
"PDRELI" (PDRELI) - ? - C:\WINDOWS\system32\drivers\PDRELI.sys  (File not found)
"PDRFRAME" (PDRFRAME) - ? - C:\WINDOWS\system32\drivers\PDRFRAME.sys  (File not found)
"pmem" (pmem) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\pmemnt.sys
"PnP-ISA/EISA-Bus-Treiber" (isapnp) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\isapnp.sys
"Protokoll für ATM ARP-Client" (Atmarpc) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\atmarpc.sys
"Prozessortreiber" (Processor) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\processr.sys
"PxHelp20" (PxHelp20) - "Sonic Solutions" - C:\WINDOWS\System32\Drivers\PxHelp20.sys
"QoS-Paketplaner" (PSched) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\psched.sys
"RAS-IP-ARP-Treiber" (Wanarp) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\wanarp.sys
"RAS-NDIS-TAPI-Treiber" (NdisTapi) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ndistapi.sys
"RAS-NDIS-WAN-Treiber" (NdisWan) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ndiswan.sys
"Rdbss" (Rdbss) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\rdbss.sys
"RDPCDD" (RDPCDD) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\RDPCDD.sys
"RDPWD" (RDPWD) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\RDPWD.sys
"Redirector für WebDav-Client" (MRxDAV) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\mrxdav.sys
"Remotezugriff-PPPOE-Treiber" (RasPppoe) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\raspppoe.sys
"Secdrv" (Secdrv) - "Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K." - C:\WINDOWS\System32\DRIVERS\secdrv.sys
"Serenum-Filtertreiber" (serenum) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\serenum.sys
"Service for Realtek HD Audio (WDM)" (IntcAzAudAddService) - "Realtek Semiconductor Corp." - C:\WINDOWS\System32\drivers\RtkHDAud.sys
"Sfloppy" (Sfloppy) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Sfloppy.sys
"Software-Bus-Treiber" (swenum) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\swenum.sys
"Srv" (Srv) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\srv.sys
"ssmdrv" (ssmdrv) - "Avira GmbH" - C:\WINDOWS\System32\DRIVERS\ssmdrv.sys
"SSPORT" (SSPORT) - ? - C:\WINDOWS\system32\Drivers\SSPORT.sys  (File not found)
"Standard-IDE/ESDI-Festplattencontroller" (atapi) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\atapi.sys
"Standardpaketklassifizierung" (Gpc) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\msgpc.sys
"Tastaturklassentreiber" (Kbdclass) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\kbdclass.sys
"TCP/IP-Protokolltreiber" (Tcpip) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\tcpip.sys
"TDPIPE" (TDPIPE) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\TDPIPE.sys
"TDTCP" (TDTCP) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\TDTCP.sys
"Team MFP Comm Driver" (DgiVecp) - "DeviceGuys, Inc." - C:\WINDOWS\System32\Drivers\DgiVecp.sys
"Terminal-Gerätetreiber" (TermDD) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\termdd.sys
"Treiber für automatische RAS-Verbindung" (RasAcd) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\rasacd.sys
"Treiber für die Verwaltung logischer Datenträger" (dmio) - "Microsoft Corp., Veritas Software" - C:\WINDOWS\System32\drivers\dmio.sys
"Treiber für direkte Parallelverbindung" (Ptilink) - "Parallel Technologies, Inc." - C:\WINDOWS\System32\DRIVERS\ptilink.sys
"Treiber für IPX-Verkehrsweiterleitung" (NwlnkFwd) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\nwlnkfwd.sys
"Treiber für Microsoft WINMM-WDM-Audiokompatibilität" (wdmaud) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\wdmaud.sys
"Treiber für parallelen Anschluss" (Parport) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\parport.sys
"Treiber für seriellen Anschluss" (Serial) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\serial.sys
"Treiber für Terminalserver-Geräteumleitung" (rdpdr) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\rdpdr.sys
"Treiber für Volume-Manager" (Ftdisk) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ftdisk.sys
"tvtfilter" (tvtfilter) - "Lenovo" - C:\WINDOWS\System32\DRIVERS\tvtfilter.sys
"tvtumon" (tvtumon) - "Lenovo" - C:\WINDOWS\System32\DRIVERS\tvtumon.sys
"USB Mouse Low Filter Driver" (pelusblf) - "Primax Electronics Ltd." - C:\WINDOWS\System32\DRIVERS\pelusblf.sys
"USB-Massenspeichertreiber" (USBSTOR) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS
"USB-Scannertreiber" (usbscan) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\usbscan.sys
"USB2-aktivierter Hub" (usbhub) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\usbhub.sys
"VGA-Anzeigecontroller." (VgaSave) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\vga.sys
"VolSnap" (VolSnap) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\VolSnap.sys
"WAN-Miniport (L2TP)" (Rasl2tp) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\rasl2tp.sys
"WAN-Miniport (PPTP)" (PptpMiniport) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\raspptp.sys
"WDICA" (WDICA) - ? - C:\WINDOWS\system32\drivers\WDICA.sys  (File not found)
"Winbond Trusted Platform Module" (TPM) - "Winbond Electronics Corp." - C:\WINDOWS\System32\DRIVERS\tpm.sys
"Windows Driver Foundation - User-mode Driver Framework Platform Driver" (WudfPf) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\WudfPf.sys
"Windows Driver Foundation - User-mode Driver Framework Reflector" (WudfRd) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\wudfrd.sys
"Windows Socket 2.0 Non-IFS Service Provider Support Environment" (WS2IFSL) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\ws2ifsl.sys
"Übersetzer für IP-Netzwerkadressen" (IpNat) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ipnat.sys

[Explorer]
-----( HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved )-----
{BDEADF00-C265-11d0-BCED-00A0C90AB50F} "Web Folders" - "Microsoft Corporation" - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Web Folders\MSONSEXT.DLL
-----( HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components )-----
{7790769C-0471-11d2-AF11-00C04FA35D02} "Adressbuch 6" - "Microsoft Corporation" - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install
>{60B49E34-C7CC-11D0-8953-00A0C90347FF} "Browser Customizations" - "Microsoft Corporation" - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP
>{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS "Browseranpassungen" - "Microsoft Corporation" - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP
<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} "IE7 Uninstall Stub" - "Microsoft Corporation" - C:\WINDOWS\system32\ieudinit.exe
>{26923b43-4d38-484f-9b9e-de460746276c} "Internet Explorer" - "Microsoft Corporation" - %systemroot%\system32\shmgrate.exe OCInstallUserConfigIE
{89820200-ECBD-11cf-8B85-00AA005B4383} "Internet Explorer" - "Microsoft Corporation" - C:\WINDOWS\system32\ie4uinit.exe -BaseSettings
{44BBA840-CC51-11CF-AAFA-00AA00B6015C} "Microsoft Outlook Express 6" - "Microsoft Corporation" - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install
>{22d6f312-b0f6-11d0-94ab-0080c74c7e95} "Microsoft Windows Media Player" - "Microsoft Corporation" - C:\WINDOWS\inf\unregmp2.exe /ShowWMP
{6BF52A52-394A-11d3-B153-00C04F79FAA6} "Microsoft Windows Media Player" - "Microsoft Corporation" - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp11.inf,PerUserStub
{44BBA842-CC51-11CF-AAFA-00AA00B6015B} "NetMeeting 3.01" - "Microsoft Corporation" - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT
>{881dd1c5-3dcf-431b-b061-f3f88e8be88a} "Outlook Express" - "Microsoft Corporation" - %systemroot%\system32\shmgrate.exe OCInstallUserConfigOE
{89B4C1CD-B018-4511-B0A1-5476DBF70820} "StubPath" - "Microsoft Corporation" - c:\WINDOWS\system32\Rundll32.exe c:\WINDOWS\system32\mscories.dll,Install
{2C7339CF-2B09-4501-B3F3-F3508C9228ED} "Themes Setup" - "Microsoft Corporation" - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
{89820200-ECBD-11cf-8B85-00AA005B4340} "Windows Desktop-Update" - "Microsoft Corporation" - regsvr32.exe /s /n /i:U shell32.dll
{5945c046-1e7d-11d1-bc44-00c04fd912be} "Windows Messenger 4.7" - "Microsoft Corporation" - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser
-----( HKLM\Software\Classes\Folder\shellex\ColumnHandlers )-----
{F9DB5320-233E-11D1-9F84-707F02C10627} "PDF Shell Extension" - "Adobe Systems, Inc." - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\PDFShell.dll
{0D2E74C4-3C34-11d2-A27E-00C04FC30871} "{0D2E74C4-3C34-11d2-A27E-00C04FC30871}" - "Microsoft Corporation" - C:\WINDOWS\system32\SHELL32.dll
{24F14F01-7B1C-11d1-838f-0000F80461CF} "{24F14F01-7B1C-11d1-838f-0000F80461CF}" - "Microsoft Corporation" - C:\WINDOWS\system32\SHELL32.dll
{24F14F02-7B1C-11d1-838f-0000F80461CF} "{24F14F02-7B1C-11d1-838f-0000F80461CF}" - "Microsoft Corporation" - C:\WINDOWS\system32\SHELL32.dll
{66742402-F9B9-11D1-A202-0000F81FEDEE} "{66742402-F9B9-11D1-A202-0000F81FEDEE}" - "Microsoft Corporation" - C:\WINDOWS\system32\SHELL32.dll
-----( HKLM\Software\Classes\Protocols\Filter )-----
{32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} "AP Class Install Handler filter" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll
{8f6b0360-b80d-11d0-a9b3-006097942311} "AP encoding/decoding Filters" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll
{8f6b0360-b80d-11d0-a9b3-006097942311} "AP encoding/decoding Filters" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll
{8f6b0360-b80d-11d0-a9b3-006097942311} "AP encoding/decoding Filters" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll
{1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" - "Microsoft Corporation" - C:\WINDOWS\system32\mscoree.dll
{1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" - "Microsoft Corporation" - C:\WINDOWS\system32\mscoree.dll
{1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" - "Microsoft Corporation" - C:\WINDOWS\system32\mscoree.dll
{733AC4CB-F1A4-11d0-B951-00A0C90312E1} "WebView MIME Filter" - "Microsoft Corporation" - C:\WINDOWS\system32\SHELL32.dll
-----( HKLM\Software\Classes\Protocols\Handler )-----
{3dd53d40-7b8b-11D0-b013-00aa0059ce02} "CDL: Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll
{12D51199-0DB5-46FE-A120-47A3D7D937CC} "DVD: Pluggable Protocol" - "Microsoft Corporation" - C:\WINDOWS\system32\msvidctl.dll
{79eac9e7-baf9-11ce-8c82-00aa004ba90b} "file:, local: Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll
{79eac9e7-baf9-11ce-8c82-00aa004ba90b} "file:, local: Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll
{79eac9e3-baf9-11ce-8c82-00aa004ba90b} "ftp: Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll
{79eac9e4-baf9-11ce-8c82-00aa004ba90b} "gopher: Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll
{79eac9e2-baf9-11ce-8c82-00aa004ba90b} "http: Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll
{79eac9e5-baf9-11ce-8c82-00aa004ba90b} "https: Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll
{05300401-BCBC-11d0-85E3-00C04FD85AB4} "MHTML Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\inetcomm.dll
{3050F406-98B5-11CF-BB82-00AA00BDCE0B} "Microsoft HTML About Pluggable Protocol" - "Microsoft Corporation" - C:\WINDOWS\system32\mshtml.dll
{3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} "Microsoft HTML Javascript Pluggable Protocol" - "Microsoft Corporation" - C:\WINDOWS\system32\mshtml.dll
{3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} "Microsoft HTML Javascript Pluggable Protocol" - "Microsoft Corporation" - C:\WINDOWS\system32\mshtml.dll
{3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} "Microsoft HTML Mailto Pluggable Protocol" - "Microsoft Corporation" - C:\WINDOWS\system32\mshtml.dll
{3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} "Microsoft HTML Resource Pluggable Protocol" - "Microsoft Corporation" - C:\WINDOWS\system32\mshtml.dll
{76E67A63-06E9-11D2-A840-006008059382} "Microsoft HTML Resource Pluggable Protocol" - "Microsoft Corporation" - C:\WINDOWS\system32\mshtml.dll
{9D148291-B9C8-11D0-A4CC-0000F80149F6} "Microsoft InfoTech Protocols for IE 4.0" - "Microsoft Corporation" - C:\WINDOWS\system32\itss.dll
{9D148291-B9C8-11D0-A4CC-0000F80149F6} "Microsoft InfoTech Protocols for IE 4.0" - "Microsoft Corporation" - C:\WINDOWS\system32\itss.dll
{79eac9e6-baf9-11ce-8c82-00aa004ba90b} "mk: Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll
{CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} "TV: Pluggable Protocol" - "Microsoft Corporation" - C:\WINDOWS\system32\msvidctl.dll
{13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} "WiaProtocol Class" - "Microsoft Corporation" - C:\WINDOWS\system32\wiascr.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler )-----
{438755C2-A8BA-11D1-B96B-00A0C90312E1} "Browseui preloader" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{8C7461EF-2B13-11d2-BE35-3078302C2030} "Component Categories cache daemon" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks )-----
{AEB6717E-7E19-11d0-97EE-00C04FD91972} "URL Exec Hook" - "Microsoft Corporation" - C:\WINDOWS\system32\shell32.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved )-----
{01E04581-4EEE-11d0-BFE9-00AA005B4383} "&Adresse" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{F2CF5485-4E02-4f68-819C-B92DE9277049} "&Links" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{32714800-2E5F-11d0-8B85-00AA0044F941} "&Nach Personen..." - "Microsoft Corporation" - C:\Programme\Outlook Express\wabfind.dll
{23170F69-40C1-278A-1000-000100020000} "7-Zip Shell Extension" - "Igor Pavlov" - C:\Dokumente und Einstellungen\User\Desktop\7-Zip\7-zip.dll
{7e653215-fa25-46bd-a339-34a2790f3cb7} "Accessible" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{88C6C381-2E85-11D0-94DE-444553540000} "ActiveX Cache Folder" - "Microsoft Corporation" - C:\WINDOWS\system32\occache.dll
{A08C11D2-A228-11d0-825B-00AA005B4383} "Address EditBox" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{85BBD920-42A0-1069-A2E4-08002B30309D} "Aktenkoffer" - "Microsoft Corporation" - C:\WINDOWS\system32\syncui.dll
{875CB1A1-0F29-45de-A1AE-CFB4950D0B78} "Audio Media Properties Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\shmedia.dll
{91EA3F8B-C99B-11d0-9815-00C04FD91972} "Augmented Shell Folder" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{6413BA2C-B461-11d1-A18A-080036B11A03} "Augmented Shell Folder 2" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0} "Ausführen..." - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{5F327514-6C5E-4d60-8F16-D07FA08A78ED} "Auto Update Property Sheet Extension" - "Microsoft Corporation" - C:\WINDOWS\system32\wuaucpl.cpl
{00E7B358-F65B-4dcf-83DF-CD026B94BFD4} "Automatische Diashowwiedergabe der Shell" - "Microsoft Corporation" - C:\WINDOWS\system32\shimgvw.dll
{87D62D94-71B3-4b9a-9489-5FE6850DC73E} "Avi Properties Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\shmedia.dll
{F61FFEC1-754F-11d0-80CA-00AA005B4383} "BandProxy" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{7A9D77BD-5403-11d2-8785-2E0420524153} "Benutzerkonten" - "Microsoft Corporation" - C:\WINDOWS\system32\netplwiz.dll
{add36aa8-751a-4579-a266-d66f5202ccbb} "Bestellung von Abzügen über das Internet" - "Microsoft Corporation" - C:\WINDOWS\system32\netplwiz.dll
{67EA19A0-CCEF-11d0-8024-00C04FD75D13} "CDF Extension Copy Hook" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{7D559C10-9FE9-11d0-93F7-00AA0059CE02} "Code Download Agent" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll
{BD472F60-27FA-11cf-B8B4-444553540000} "Compressed (zipped) Folder Right Drag Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\zipfldr.dll
{888DCA60-FC0A-11CF-8F0F-00C04FD7D062} "Compressed (zipped) Folder SendTo Target" - "Microsoft Corporation" - C:\WINDOWS\system32\zipfldr.dll
{E88DCCE0-B7B3-11d1-A9F0-00AA0060FA31} "CompressedFolder" - "Microsoft Corporation" - C:\WINDOWS\system32\zipfldr.dll
{E6CC6978-6B6E-11D0-BECA-00C04FD940BE} "ConnectionAgent" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll
{42071714-76d4-11d1-8b24-00a0c9068ff3} "CPL-Erweiterung für Anzeigeverschiebung" - ? -   (File not found | COM-object registry key not found)
{42071713-76d4-11d1-8b24-00a0c9068ff3} "CPL-Erweiterung für Bildschirme" - "Microsoft Corporation" - C:\WINDOWS\system32\deskmon.dll
{42071712-76d4-11d1-8b24-00a0c9068ff3} "CPL-Erweiterung für Grafikkarten" - "Microsoft Corporation" - C:\WINDOWS\system32\deskadp.dll
{7444C717-39BF-11D1-8CD9-00C04FC29D45} "CryptPKO Class" - "Microsoft Corporation" - C:\WINDOWS\system32\cryptext.dll
{7444C719-39BF-11D1-8CD9-00C04FC29D45} "CryptSig Class" - "Microsoft Corporation" - C:\WINDOWS\system32\cryptext.dll
{6935DB93-21E8-4ccc-BEB9-9FE3C77A297A} "Custom MRU AutoCompleted List" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{CFCCC7A0-A282-11D1-9082-006008059382} "Darwin App Publisher" - "Microsoft Corporation" - C:\WINDOWS\system32\appwiz.cpl
{ECCDF543-45CC-11CE-B9BF-0080C87CDBA6} "DfsShell Class" - "Microsoft Corporation" - C:\WINDOWS\system32\dfsshlex.dll
{62AE1F9A-126A-11D0-A14B-0800361B1103} "Directory Context Menu Verbs" - "Microsoft Corporation" - C:\WINDOWS\system32\dsuiext.dll
{163FDC20-2ABC-11d0-88F0-00A024AB2DBB} "Directory Object Find" - "Microsoft Corporation" - C:\WINDOWS\system32\dsquery.dll
{0D45D530-764B-11d0-A1CA-00AA00C16E65} "Directory Property UI" - "Microsoft Corporation" - C:\WINDOWS\system32\dsuiext.dll
{8A23E65E-31C2-11d0-891C-00A024AB2DBB} "Directory Query UI" - "Microsoft Corporation" - C:\WINDOWS\system32\dsquery.dll
{F020E586-5264-11d1-A532-0000F8757D7E} "Directory Start/Search Find" - "Microsoft Corporation" - C:\WINDOWS\system32\dsquery.dll
{f92e8c40-3d33-11d2-b1aa-080036a75b03} "Display TroubleShoot CPL Extension" - "Microsoft Corporation" - C:\WINDOWS\system32\deskperf.dll
{22BF0C20-6DA7-11D0-B373-00A0C9034938} "Download Status" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{60fd46de-f830-4894-a628-6fa81bc0190d} "Drop-Zielobjekt für den Fotodruck-Assistent" - "Microsoft Corporation" - C:\WINDOWS\system32\photowiz.dll
{2559a1f5-21d7-11d4-bdaf-00c04f60b9f0} "E-Mail" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{00022613-0000-0000-C000-000000000046} "Eigenschaften für Multimediadatei" - "Microsoft Corporation" - C:\WINDOWS\system32\mmsys.cpl
{1F2E5C40-9550-11CE-99D2-00AA006E086C} "Erweiterung der Sicherheitsshell" - "Microsoft Corporation" - C:\WINDOWS\system32\rshx32.dll
{4E40F770-369C-11d0-8922-00A024AB2DBB} "Erweiterung der Sicherheitsshell" - "Microsoft Corporation" - C:\WINDOWS\system32\dssec.dll
{F37C5810-4D3F-11d0-B4BF-00AA00BBB723} "Erweiterung der Sicherheitsshell" - "Microsoft Corporation" - C:\WINDOWS\system32\rshx32.dll
{59099400-57FF-11CE-BD94-0020AF85B590} "Erweiterung für Datenträgerkopien" - "Microsoft Corporation" - C:\WINDOWS\system32\diskcopy.dll
{EFA24E64-B078-11d0-89E4-00C04FC9E26E} "Explorer-Band" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{692F0339-CBAA-47e6-B5B5-3B84DB604E87} "Extensions Manager Folder" - "Microsoft Corporation" - C:\WINDOWS\system32\extmgr.dll
{7A80E4A8-8005-11D2-BCF8-00C04F72C717} "ExtractIcon Class" - "Microsoft Corporation" - C:\WINDOWS\System32\mmcshext.dll
{EFA24E61-B078-11d0-89E4-00C04FC9E26E} "Favorites Band" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{1D2680C9-0E2A-469d-B787-065558BC7D43} "Fusion Cache" - "Microsoft Corporation" - c:\WINDOWS\system32\mscoree.dll
{3F30C968-480A-4C6C-862D-EFC0897BB84B} "GDI+ Dateiminiaturansicht-Extrahierungsprogramm" - "Microsoft Corporation" - C:\WINDOWS\system32\shimgvw.dll
{D6277990-4C6A-11CF-8D87-00AA0060F5BF} "Geplante Tasks" - "Microsoft Corporation" - C:\WINDOWS\system32\mstask.dll
{EF8AD2D1-AE36-11D1-B2D2-006097DF8C11} "Global Folder Settings" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{2559a1f1-21d7-11d4-bdaf-00c04f60b9f0} "Hilfe und Support" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{FF393560-C2A7-11CF-BFF4-444553540000} "History" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{EFA24E62-B078-11d0-89E4-00C04FC9E26E} "History Band" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{EAB841A0-9550-11cf-8C16-00805F1408F3} "HTML-Extrahierungsprogramm" - "Microsoft Corporation" - C:\WINDOWS\system32\shimgvw.dll
{88895560-9AA2-1069-930E-00AA0030EBC8} "HyperTerminal Icon Ext" - "Hilgraeve, Inc." - C:\WINDOWS\system32\hticons.dll
{DBCE2480-C732-101B-BE72-BA78E9AD5B27} "ICC-Profil" - "Microsoft Corporation" - C:\WINDOWS\system32\icmui.dll
{675F097E-4C4D-11D0-B6C1-0800091AA605} "ICM-Druckerverwaltung" - "Microsoft Corporation" - C:\WINDOWS\system32\icmui.dll
{5DB2625A-54DF-11D0-B6C4-0800091AA605} "ICM-Monitorverwaltung" - "Microsoft Corporation" - C:\WINDOWS\System32\icmui.dll
{176d6597-26d3-11d1-b350-080036a75b03} "ICM-Scannerverwaltung" - "Microsoft Corporation" - C:\WINDOWS\system32\icmui.dll
{3028902F-6374-48b2-8DC6-9725E775B926} "IE AutoComplete" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{73CFD649-CD48-4fd8-A272-2070EA56526B} "IE BandProxy" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{FDE7673D-2E19-4145-8376-BBD58C4BC7BA} "IE Custom MRU AutoCompleted List" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{1C1EDB47-CE22-4bbb-B608-77B48F83C823} "IE Fade Task" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{6CF48EF8-44CD-45d2-8832-A16EA016311B} "IE IShellFolderBand" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{4B78D326-D922-44f9-AF2A-07805C2A3560} "IE Menu Band" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{205D7A97-F16D-4691-86EF-F3075DCCA57D} "IE Menu Desk Bar" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{44C76ECD-F7FA-411c-9929-1B77BA77F524} "IE Menu Site" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{07C45BB1-4A8C-4642-A1F5-237E7215FF66} "IE Microsoft BrowserBand" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{6038EF75-ABFC-4e59-AB6F-12D397F6568D} "IE Microsoft History AutoComplete List" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{B31C5FAE-961F-415b-BAF0-E697A5178B94} "IE Microsoft Multiple AutoComplete List Container" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{9D958C62-3954-4b44-8FAB-C4670C1DB4C2} "IE Microsoft Shell Folder AutoComplete List" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{98FF6D4B-6387-4b0a-8FBD-C5C4BB17B4F8} "IE MRU AutoComplete List" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{43886CD5-6529-41c4-A707-7B3C92C05E68} "IE Navigation Bar" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{F83DAC1C-9BB9-4f2b-B619-09819DA81B0E} "IE Registry Tree Options Utility" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{9A096BB5-9DC3-4D1C-8526-C3CBF991EA4E} "IE RSS Feeds Folder" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{30D02401-6A81-11d0-8274-00C04FD5AE38} "IE Search Band" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{E6EE9AAC-F76B-4947-8260-A9F136138E11} "IE Shell Band Site Menu" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{BFAD62EE-9D54-4b2a-BF3B-76F90697BD2A} "IE Shell Rebar BandSite" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{6B4ECC4F-16D1-4474-94AB-5A763F2A54AE} "IE Tracking Shell Menu" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{FAC3CBF6-8697-43d0-BAB9-DCD1FCE19D75} "IE User Assist" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{A2B0DD40-CC59-11d0-A3A5-00C04FD706EC} "IE4 Suite-Begrüßungsbildschirm" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{169A0691-8DF9-11d1-A1C4-00C04FD75D13} "In-pane search" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{0B124F8F-91F0-11D1-B8B5-006008059382} "Installed Apps Enumerator" - "Microsoft Corporation" - C:\WINDOWS\system32\appwiz.cpl
{2559a1f4-21d7-11d4-bdaf-00c04f60b9f0} "Internet" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{871C5380-42A0-1069-A2EA-08002B30309D} "Internet Name Space" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{FBF23B40-E3F0-101B-8488-00AA003E56F8} "Internet Shortcut" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{131A6951-7F78-11D0-A979-00C04FD705A2} "ISFBand OC" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{0CD7A5C0-9F37-11CE-AE65-08002B2E1262} "Kabinettdatei" - "Microsoft Corporation" - C:\WINDOWS\system32\cabview.dll
{513D916F-2A8E-4F51-AEAB-0CBC76FB1AF8} "Kompatibilitätsseite" - "Microsoft Corporation" - C:\WINDOWS\system32\SlayerXP.dll
{853FE2B1-B769-11d0-9C4E-00C04FB6C6FA} "Kontextmenü für die Verschlüsselung" - ? -   (File not found | COM-object registry key not found)
{143A62C8-C33B-11D1-84FE-00C04FA34A14} "Microsoft Agent Character Property Sheet Handler" - "Microsoft Corporation" - C:\WINDOWS\msagent\agentpsh.dll
{A5E46E3A-8849-11D1-9D8C-00C04FC99D61} "Microsoft Browser Architecture" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{BC476F4C-D9D7-4100-8D4E-E043F6DEC409} "Microsoft Browser Architecture" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{7BA4C742-9E81-11CF-99D3-00AA004AE837} "Microsoft BrowserBand" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{7988B573-EC89-11cf-9C00-00AA00A14F56} "Microsoft Disk Quota UI" - "Microsoft Corporation" - C:\WINDOWS\system32\dskquoui.dll
{6A205B57-2567-4A2C-B881-F787FAB579A3} "Microsoft DocProp Inplace Calendar Control" - "Microsoft Corporation" - C:\WINDOWS\system32\docprop2.dll
{0EEA25CC-4362-4A12-850B-86EE61B0D3EB} "Microsoft DocProp Inplace Droplist Combo Control" - "Microsoft Corporation" - C:\WINDOWS\system32\docprop2.dll
{A9CF0EAE-901A-4739-A481-E35B73E47F6D} "Microsoft DocProp Inplace Edit Box Control" - "Microsoft Corporation" - C:\WINDOWS\system32\docprop2.dll
{8EE97210-FD1F-4B19-91DA-67914005F020} "Microsoft DocProp Inplace ML Edit Box Control" - "Microsoft Corporation" - C:\WINDOWS\system32\docprop2.dll
{28F8A4AC-BBB3-4D9B-B177-82BFC914FA33} "Microsoft DocProp Inplace Time Control" - "Microsoft Corporation" - C:\WINDOWS\system32\docprop2.dll
{883373C3-BF89-11D1-BE35-080036B11A03} "Microsoft DocProp Shell Ext" - "Microsoft Corporation" - C:\WINDOWS\system32\docprop2.dll
{63da6ec0-2e98-11cf-8d82-444553540000} "Microsoft FTP Folder" - "Microsoft Corporation" - C:\WINDOWS\system32\msieftp.dll
{00BB2764-6A77-11D0-A535-00C04FD7D062} "Microsoft History AutoComplete List" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{5E6AB780-7743-11CF-A12B-00AA004AE837} "Microsoft Internet Toolbar" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{00BB2765-6A77-11D0-A535-00C04FD7D062} "Microsoft Multiple AutoComplete List Container" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{2206CDB2-19C1-11D1-89E0-00C04FD7A829} "Microsoft OLE DB Service Component Data Links" - "Microsoft Corporation" - C:\Programme\Gemeinsame Dateien\System\Ole DB\oledb32.dll
{03C036F1-A186-11D0-824A-00AA005B4383} "Microsoft Shell Folder AutoComplete List" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{3C374A40-BAE4-11CF-BF7D-00AA006946EE} "Microsoft Url History Service" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{CFBFAE00-17A6-11D0-99CB-00C04FD64497} "Microsoft Url Search Hook" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{A6FD9E45-6E44-43f9-8644-08598F5A74D9} "Midi Properties Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\shmedia.dll
{6756A641-DE71-11d0-831B-00AA005B4383} "MRU AutoComplete List" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{ECF03A33-103D-11d2-854D-006008059367} "MyDocs Copy Hook" - "Microsoft Corporation" - C:\WINDOWS\system32\mydocs.dll
{ECF03A32-103D-11d2-854D-006008059367} "MyDocs Drop Target" - "Microsoft Corporation" - C:\WINDOWS\system32\mydocs.dll
{4a7ded0a-ad25-11d0-98a8-0800361b1103} "MyDocs menu and properties" - "Microsoft Corporation" - C:\WINDOWS\system32\mydocs.dll
{7007ACC7-3202-11D1-AAD2-00805FC1270E} "Netzwerkverbindungen" - "Microsoft Corporation" - C:\WINDOWS\system32\NETSHELL.dll
{992CFFA0-F557-101A-88EC-00DD010CCC48} "Netzwerkverbindungen" - "Microsoft Corporation" - C:\WINDOWS\system32\NETSHELL.dll
{10CFC467-4392-11d2-8DB4-00C04FA31A66} "Offline Files Folder Options" - "Microsoft Corporation" - C:\WINDOWS\System32\cscui.dll
{750fdf0e-2a26-11d1-a3ea-080036587f03} "Offline Files Menu" - "Microsoft Corporation" - C:\WINDOWS\System32\cscui.dll
{3EA48300-8CF6-101B-84FB-666CCB9BCD32} "OLE-Eigenschaftenseite für Dokumente" - "Microsoft Corporation" - C:\WINDOWS\system32\docprop.dll
{AFDB1F70-2A4C-11d2-9039-00C04F8EEB3E} "Ordner 'Offlinedateien'" - "Microsoft Corporation" - C:\WINDOWS\System32\cscui.dll
{58f1f272-9240-4f51-b6d4-fd63d1618591} "Passport-Assistent" - "Microsoft Corporation" - C:\WINDOWS\system32\netplwiz.dll
{41E300E0-78B6-11ce-849B-444553540000} "PlusPack CPL-Erweiterung" - "Microsoft Corporation" - C:\WINDOWS\system32\themeui.dll
{35786D3C-B075-49b9-88DD-029876E11C01} "Portable Devices" - "Microsoft Corporation" - C:\WINDOWS\system32\wpdshext.dll
{D6791A63-E7E2-4fee-BF52-5DED8E86E9B8} "Portable Devices Menu" - "Microsoft Corporation" - C:\WINDOWS\system32\wpdshext.dll
{640167b4-59b0-47a6-b335-a6b3c0695aea} "Portable Media Devices" - "Microsoft Corporation" - C:\WINDOWS\system32\Audiodev.dll
{D8BD2030-6FC9-11D0-864F-00AA006809D9} "PostAgent" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll
{9DB7A13C-F208-4981-8353-73CC61AE2783} "Previous Versions" - "Microsoft Corporation" - C:\WINDOWS\system32\twext.dll
{596AB062-B4D2-4215-9F74-E9109B0A8153} "Previous Versions Property Page" - "Microsoft Corporation" - C:\WINDOWS\system32\twext.dll
{AF4F6510-F982-11d0-8595-00AA004CD6D8} "Registry Tree Options Utility" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{F0152790-D56E-4445-850E-4F3117DB740C} "Remote Sessions CPL Extension" - "Microsoft Corporation" - C:\WINDOWS\system32\remotepg.dll
{5E44E225-A408-11CF-B581-008029601108} "Roxio DragToDisc Shell Extension" - "Roxio" - C:\Programme\Lenovo\Drag-to-Disc\Shellex.dll
{3F953603-1008-4f6e-A73A-04AAC7A992F1} "Scanner und Kameras" - "Microsoft Corporation" - C:\WINDOWS\system32\wiashext.dll
{83bbcbf3-b28a-4919-a5aa-73027445d672} "Scanner und Kameras" - "Microsoft Corporation" - C:\WINDOWS\system32\wiashext.dll
{905667aa-acd6-11d2-8080-00805f6596d2} "Scanner und Kameras" - "Microsoft Corporation" - C:\WINDOWS\system32\wiashext.dll
{E211B736-43FD-11D1-9EFB-0000F8757FCD} "Scanner und Kameras" - "Microsoft Corporation" - C:\WINDOWS\system32\wiashext.dll
{FB0C9C8A-6C50-11D1-9F1D-0000F8757FCD} "Scanner und Kameras" - "Microsoft Corporation" - C:\WINDOWS\system32\wiashext.dll
{DD2110F0-9EEF-11cf-8D8E-00AA0060F5BF} "Scheduling UI icon handler" - "Microsoft Corporation" - C:\WINDOWS\system32\mstask.dll
{797F1E90-9EDD-11cf-8D8E-00AA0060F5BF} "Scheduling UI property sheet handler" - "Microsoft Corporation" - C:\WINDOWS\system32\mstask.dll
{BD84B380-8CA2-1069-AB1D-08000948F534} "Schriftarten" - "Microsoft Corporation" - C:\WINDOWS\system32\fontext.dll
{D20EA4E1-3957-11d2-A40B-0C5020524152} "Schriftarten" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{9461b922-3c5a-11d2-bf8b-00c04fb93661} "Search Assistant OC" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{9E56BE60-C50F-11CF-9A2C-00A0C90A90CE} "Sendmail service" - "Microsoft Corporation" - C:\WINDOWS\system32\sendmail.dll
{9E56BE61-C50F-11CF-9A2C-00A0C90A90CE} "Sendmail service" - "Microsoft Corporation" - C:\WINDOWS\system32\sendmail.dll
{2559a1f7-21d7-11d4-bdaf-00c04f60b9f0} "Set Program Access and Defaults" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{352EC2B7-8B9A-11D1-B8AE-006008059382} "Shell Application Manager" - "Microsoft Corporation" - C:\WINDOWS\system32\appwiz.cpl
{0A89A860-D7B1-11CE-8350-444553540000} "Shell Automation Inproc Service" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{ECD4FC4E-521C-11D0-B792-00A0C90312E1} "Shell Band Site Menu" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{ECD4FC4C-521C-11D0-B792-00A0C90312E1} "Shell DeskBar" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{3CCF8A41-5C85-11d0-9796-00AA00B90ADF} "Shell DeskBarApp" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{E7E4BC40-E76A-11CE-A9BB-00AA004AE837} "Shell DocObject Viewer" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{45AC2688-0253-4ED8-97DE-B5370FA7D48A} "Shell Extension for Malware scanning" - "Avira Operations GmbH & Co. KG" - C:\Programme\Avira\AntiVir Desktop\shlext.dll
{60254CA5-953B-11CF-8C96-00AA00B8708C} "Shell Extension For Windows Script Host" - "Microsoft Corporation" - C:\WINDOWS\system32\wshext.dll
{E37E2028-CE1A-4f42-AF05-6CEABC4E5D75} "Shell Icon Handler for Application References" - "Microsoft Corporation" - c:\WINDOWS\system32\dfshim.dll
{66e4e4fb-f385-4dd0-8d74-a2efd1bc6178} "Shell Image Data Factory" - "Microsoft Corporation" - C:\WINDOWS\system32\shimgvw.dll
{eb9b1153-3b57-4e68-959a-a3266bc3d7fe} "Shell Image Property Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\shimgvw.dll
{e84fda7c-1d6a-45f6-b725-cb260c236066} "Shell Image Verbs" - "Microsoft Corporation" - C:\WINDOWS\system32\shimgvw.dll
{00BB2763-6A77-11D0-A535-00C04FD7D062} "Shell Microsoft AutoComplete" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{9E51E0D0-6E0F-11d2-9601-00C04FA31A86} "Shell properties for a DS object" - "Microsoft Corporation" - C:\WINDOWS\system32\dsquery.dll
{ECD4FC4D-521C-11D0-B792-00A0C90312E1} "Shell Rebar BandSite" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{21569614-B795-46b1-85F4-E737A8DC09AD} "Shell Search Band" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{56117100-C0CD-101B-81E2-00AA004AE837} "Shell-Datenauszughandler" - "Microsoft Corporation" - C:\WINDOWS\system32\shscrap.dll
{77597368-7b15-11d0-a0c2-080036af3f03} "Shellerweiterung für Webdrucker" - "Microsoft Corporation" - C:\WINDOWS\system32\printui.dll
{764BF0E1-F219-11ce-972D-00AA00A14F56} "Shellerweiterungen für die Dateikomprimierung" - ? -   (File not found | COM-object registry key not found)
{40dd6e20-7c17-11ce-a804-00aa003ca9f6} "Shellerweiterungen für Freigaben" - "Microsoft Corporation" - C:\WINDOWS\system32\ntshrui.dll
{f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} "Shellerweiterungen für Freigaben" - "Microsoft Corporation" - C:\WINDOWS\system32\ntshrui.dll
{59be4990-f85c-11ce-aff7-00aa003ca9f6} "Shellerweiterungen für Microsoft Windows-Netzwerkobjekte" - "Microsoft Corporation" - C:\WINDOWS\system32\ntlanui2.dll
{e82a2d71-5b2f-43a0-97b8-81be15854de8} "ShellLink for Application References" - "Microsoft Corporation" - c:\WINDOWS\system32\dfshim.dll
{6b33163c-76a5-4b6c-bf21-45de9cd503a1} "Shellobjekt des Webpublishing-Assistenten" - "Microsoft Corporation" - C:\WINDOWS\system32\netplwiz.dll
{F5175861-2688-11d0-9C5E-00AA00A45957} "Subscription Folder" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll
{ABBE31D0-6DAE-11D0-BECA-00C04FD940BE} "Subscription Mgr" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll
{2559a1f0-21d7-11d4-bdaf-00c04f60b9f0} "Suchen" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{0DF44EAA-FF21-4412-828E-260A8728E7F1} "Taskleiste und Startmenü" - "Microsoft Corporation" - C:\WINDOWS\system32\shell32.dll
{7BD29E00-76C1-11CF-9DD0-00A0C9034933} "Temporary Internet Files" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{7BD29E01-76C1-11CF-9DD0-00A0C9034933} "Temporary Internet Files" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{3DC7A020-0ACD-11CF-A9BB-00AA004AE837} "The Internet" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{acf35015-526e-4230-9596-becbe19f0ac9} "Track Popup Bar" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{E8BB6DC0-6B4E-11d0-92DB-00A0C90C2BD7} "TrayAgent" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll
{7376D660-C583-11d0-A3A5-00C04FD706EC} "TridentImageExtractor" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{DD313E04-FEFF-11d1-8ECD-0000F87A470C} "User Assist" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{D20EA4E1-3957-11d2-A40B-0C5020524153} "Verwaltung" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{40C3D757-D6E4-4b49-BB41-0E5BBEA28817} "Video Media Properties Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\shmedia.dll
{c5a40261-cd64-4ccf-84cb-c394da41d590} "Video Thumbnail Extractor" - "Microsoft Corporation" - C:\WINDOWS\system32\shmedia.dll
{E4B29F9D-D390-480b-92FD-7DDB47101D71} "Wav Properties Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\shmedia.dll
{BDEADF00-C265-11D0-BCED-00A0C90AB50F} "Web Folders" - "Microsoft Corporation" - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Web Folders\MSONSEXT.DLL
{07798131-AF23-11d1-9111-00A0C98BA67D} "Web Search" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{E6FB5E20-DE35-11CF-9C87-00AA005127ED} "WebCheck" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll
{7FC0B86E-5FA7-11d1-BC7C-00C04FD929DB} "WebCheck SyncMgr Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll
{E3A8BDE6-ABCE-11d0-BC4B-00C04FD929DB} "WebCheckChannelAgent" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll
{08165EA0-E946-11CF-9C87-00AA005127ED} "WebCheckWebCrawler" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll
{CC6EEFFB-43F6-46c5-9619-51D571967F7D} "Webpublishing-Assistent" - "Microsoft Corporation" - C:\WINDOWS\system32\netplwiz.dll
{45670FA8-ED97-4F44-BC93-305082590BFB} "Windows XPS Document Metadata Handler" - "Microsoft Corporation" - C:\WINDOWS\System32\XPSSHHDR.DLL
{44121072-A222-48f2-A58A-6D9AD51EBBE9} "Windows XPS Document Thumbnail Handler" - "Microsoft Corporation" - C:\WINDOWS\System32\XPSSHHDR.DLL
{2559a1f2-21d7-11d4-bdaf-00c04f60b9f0} "Windows-Sicherheit" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{B41DB860-8EE4-11D2-9906-E49FADC173CA} "WinRAR" - ? - C:\Dokumente und Einstellungen\User\Eigene Dateien\rarext.dll  (File found, but it contains no detailed information)
{F1B9284F-E9DC-4e68-9D7E-42362A59F0FD} "WMP Add To Playlist Launcher" - "Microsoft Corporation" - C:\WINDOWS\system32\wmpshell.dll
{8DD448E6-C188-4aed-AF92-44956194EB1F} "WMP Burn Audio CD Launcher" - "Microsoft Corporation" - C:\WINDOWS\system32\wmpshell.dll
{CE3FB1D1-02AE-4a5f-A6E9-D9F1B4073E6C} "WMP Play As Playlist Launcher" - "Microsoft Corporation" - C:\WINDOWS\system32\wmpshell.dll
{9DBD2C50-62AD-11d0-B806-00C04FD706EC} "Zusammenfassungs-Miniaturansichthandler (DOCFILES)" - "Microsoft Corporation" - C:\WINDOWS\system32\shimgvw.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad )-----
{7849596a-48ea-486e-8937-a2a3009f31a9} "PostBootReminder object" - "Microsoft Corporation" - C:\WINDOWS\system32\shell32.dll
{fbeb8a05-beee-4442-804e-409d6c4515e9} "ShellFolder for CD Burning" - "Microsoft Corporation" - C:\WINDOWS\system32\SHELL32.dll
{35CEC8A3-2BE6-11D2-8773-92E220524153} "SysTray" - "Microsoft Corporation" - C:\WINDOWS\system32\stobject.dll
{E6FB5E20-DE35-11CF-9C87-00AA005127ED} "WebCheck" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll
{AAA288BA-9A4C-45B0-95D7-94D524869DB5} "WPDShServiceObj Class" - "Microsoft Corporation" - C:\WINDOWS\system32\WPDShServiceObj.dll

[Internet Explorer]
-----( HKCU\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars )-----
{EFA24E64-B078-11D0-89E4-00C04FC9E26E} "Explorer-Band" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{C4EE31F3-4768-11D2-BE5C-00A0C9A83DA1} "File Search Explorer Band" - "Microsoft Corporation" - C:\WINDOWS\system32\SHELL32.dll
-----( HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser )-----
<binary data> "ITBar7Layout" - ? -   (File not found | COM-object registry key not found)
<binary data> "Windows Live Toolbar" - "Microsoft Corporation" - C:\Programme\Windows Live Toolbar\msntb.dll
-----( HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks )-----
{CFBFAE00-17A6-11D0-99CB-00C04FD64497} "Microsoft Url Search Hook" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
-----( HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units )-----
{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBA} "Java Plug-in 1.5.0_16" - "Sun Microsystems, Inc." - C:\Programme\Java\jre1.5.0_16\bin\npjpi150_16.dll / hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_16-windows-i586.cab
{8AD9C840-044E-11D1-B3E9-00805F499D93} "Java Plug-in 1.6.0_33" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\npjpi160_33.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab
{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} "Java Plug-in 1.6.0_33" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\npjpi160_33.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} "Java Plug-in 1.6.0_33" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\npjpi160_33.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab
{6414512B-B978-451D-A0D8-FCFDF33E833C} "WUWebControl Class" - "Microsoft Corporation" - C:\WINDOWS\system32\wuweb.dll / hxxp://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1231769983625
{CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} "{CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7}" - ? -   (File not found | COM-object registry key not found) / hxxp://wwwimages.adobe.com/www.adobe.com/products/acrobat/nos/gp.cab
{E2883E8F-472F-4FB0-9522-AC9BF37916A7} "{E2883E8F-472F-4FB0-9522-AC9BF37916A7}" - ? -   (File not found | COM-object registry key not found) / hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
-----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions )-----
{F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} "ClsidExtension" - "Lenovo Group Limited" - C:\Programme\Lenovo\Client Security Solution\tvtpwm_ie_com.dll
"Exec" - "Microsoft Corporation" - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
"Messenger" - "Microsoft Corporation" - C:\Programme\Messenger\msmsgs.exe
-----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar )-----
<binary data> "Windows Live Toolbar" - "Microsoft Corporation" - C:\Programme\Windows Live Toolbar\msntb.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects )-----
{18DF081C-E8AD-4283-A596-FA578C2EBDC3} "Adobe PDF Link Helper" - "Adobe Systems Incorporated" - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
{BF468356-BB7E-42D7-9F15-4F3B9BCFCED2} "IePasswordManagerHelper Class" - "Lenovo Group Limited" - C:\Programme\Lenovo\Client Security Solution\tvtpwm_ie_com.dll
{DBC80044-A445-435b-BC74-9C25C1C588A9} "Java(tm) Plug-In 2 SSV Helper" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\jp2ssv.dll
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} "Java(tm) Plug-In SSV Helper" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\ssv.dll
{E7E6F031-17CE-4C07-BC86-EABFE594F69C} "JQSIEStartDetectorImpl Class" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
{BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} "Windows Live Toolbar Helper" - "Microsoft Corporation" - C:\Programme\Windows Live Toolbar\msntb.dll

[Known DLLs]
-----( HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs )-----
"advapi32" - "Microsoft Corporation" - C:\WINDOWS\system32\advapi32.dll
"comdlg32" - "Microsoft Corporation" - C:\WINDOWS\system32\comdlg32.dll
"gdi32" - "Microsoft Corporation" - C:\WINDOWS\system32\gdi32.dll
"imagehlp" - "Microsoft Corporation" - C:\WINDOWS\system32\imagehlp.dll
"kernel32" - "Microsoft Corporation" - C:\WINDOWS\system32\kernel32.dll
"lz32" - "Microsoft Corporation" - C:\WINDOWS\system32\lz32.dll
"ole32" - "Microsoft Corporation" - C:\WINDOWS\system32\ole32.dll
"oleaut32" - "Microsoft Corporation" - C:\WINDOWS\system32\oleaut32.dll
"olecli32" - "Microsoft Corporation" - C:\WINDOWS\system32\olecli32.dll
"olecnv32" - "Microsoft Corporation" - C:\WINDOWS\system32\olecnv32.dll
"olesvr32" - "Microsoft Corporation" - C:\WINDOWS\system32\olesvr32.dll
"olethk32" - "Microsoft Corporation" - C:\WINDOWS\system32\olethk32.dll
"rpcrt4" - "Microsoft Corporation" - C:\WINDOWS\system32\rpcrt4.dll
"shell32" - "Microsoft Corporation" - C:\WINDOWS\system32\shell32.dll
"url" - "Microsoft Corporation" - C:\WINDOWS\system32\url.dll
"urlmon" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll
"user32" - "Microsoft Corporation" - C:\WINDOWS\system32\user32.dll
"version" - "Microsoft Corporation" - C:\WINDOWS\system32\version.dll
"wininet" - "Microsoft Corporation" - C:\WINDOWS\system32\wininet.dll
"wldap32" - "Microsoft Corporation" - C:\WINDOWS\system32\wldap32.dll

[LSA Providers]
-----( HKLM\SYSTEM\CurrentControlSet\Control\Lsa )-----
"Authentication packages" - "Microsoft Corporation" - C:\WINDOWS\system32\msv1_0.dll
"Notification packages" - "Microsoft Corporation" - C:\WINDOWS\system32\scecli.dll
"Security Packages" - "Microsoft Corporation" - C:\WINDOWS\system32\kerberos.dll
"Security Packages" - "Microsoft Corporation" - C:\WINDOWS\system32\msv1_0.dll
"Security Packages" - "Microsoft Corporation" - C:\WINDOWS\system32\schannel.dll
"Security Packages" - "Microsoft Corporation" - C:\WINDOWS\system32\wdigest.dll
-----( HKLM\SYSTEM\CurrentControlSet\Control\SecurityProviders )-----
"SecurityProviders" - "Microsoft Corporation" - C:\WINDOWS\system32\msapsspc.dll
"SecurityProviders" - "Microsoft Corporation" - C:\WINDOWS\system32\schannel.dll
"SecurityProviders" - "Microsoft Corporation" - C:\WINDOWS\system32\digest.dll
"SecurityProviders" - "Microsoft Corporation" - C:\WINDOWS\system32\msnsspc.dll

[Logon]
-----( %AllUsersProfile%\Startmenü\Programme\Autostart )-----
"desktop.ini" - ? - C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\desktop.ini
-----( %UserProfile%\Startmenü\Programme\Autostart )-----
"desktop.ini" - ? - C:\Dokumente und Einstellungen\User\Startmenü\Programme\Autostart\desktop.ini
-----( HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run )-----
"Akamai NetSession Interface" - "Akamai Technologies, Inc" - "C:\Dokumente und Einstellungen\User\Lokale Einstellungen\Anwendungsdaten\Akamai\netsession_win.exe"
"WMPNSCFG" - "Microsoft Corporation" - C:\Programme\Windows Media Player\WMPNSCFG.exe
-----( HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon )-----
"Shell" - "Microsoft Corporation" - C:\WINDOWS\Explorer.exe
"Userinit" - "Microsoft Corporation" - C:\WINDOWS\system32\userinit.exe
-----( HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds\rdpwd )-----
"StartupPrograms" - "Microsoft Corporation" - C:\WINDOWS\system32\rdpclip.exe
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Run )-----
"Adobe ARM" - "Adobe Systems Incorporated" - "C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe"
"avgnt" - "Avira Operations GmbH & Co. KG" - "C:\Programme\Avira\AntiVir Desktop\avgnt.exe" /min
"cssauth" - "Lenovo Group Limited" - "C:\Programme\Lenovo\Client Security Solution\cssauth.exe" silent
"Mouse Suite 98 Daemon" - "Primax Electronics Ltd." - ICO.EXE
"RTHDCPL" - "Realtek Semiconductor Corp." - RTHDCPL.EXE
"Samsung LBP SM" - "Samsung Electronics." - "C:\WINDOWS\Samsung\LaserSMMgr\ssmmgr.exe" /autorun
"SunJavaUpdateSched" - "Sun Microsystems, Inc." - "C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe"
"TVT Scheduler Proxy" - "Lenovo Group Limited" - C:\Programme\Gemeinsame Dateien\Lenovo\Scheduler\scheduler_proxy.exe

[Network Providers]
-----( HKLM\SYSTEM\CurrentControlSet\Control\NetworkProvider\Order )-----
"Microsoft Windows-Netzwerk" - "Microsoft Corporation" - C:\WINDOWS\System32\ntlanman.dll
"Microsoft-Terminaldienste" - "Microsoft Corporation" - C:\WINDOWS\System32\drprov.dll
"Web Client Network" - "Microsoft Corporation" - C:\WINDOWS\System32\davclnt.dll

[Print Monitors]
-----( HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors )-----
"BJ Language Monitor" - "Microsoft Corporation" - C:\WINDOWS\system32\cnbjmon.dll
"Local Port" - "Microsoft Corporation" - C:\WINDOWS\system32\localspl.dll
"PJL Language Monitor" - "Microsoft Corporation" - C:\WINDOWS\system32\pjlmon.dll
"ssgb7 Langmon" - "Samsung Electronics." - C:\WINDOWS\system32\SSGB7MON.DLL
"Standard TCP/IP Port" - "Microsoft Corporation" - C:\WINDOWS\system32\tcpmon.dll
"SUGE1 Langmon" - "Samsung Electronics." - C:\WINDOWS\system32\SUGE1LMK.DLL
"USB Monitor" - "Microsoft Corporation" - C:\WINDOWS\system32\usbmon.dll

[Services]
-----( HKLM\SYSTEM\CurrentControlSet\Services )-----
".NET Runtime Optimization Service v2.0.50727_X86" (clr_optimization_v2.0.50727_32) - "Microsoft Corporation" - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
"Ablagemappe" (ClipSrv) - "Microsoft Corporation" - C:\WINDOWS\system32\clipsrv.exe
"Adobe Flash Player Update Service" (AdobeFlashPlayerUpdateSvc) - "Adobe Systems Incorporated" - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
"Akamai NetSession Interface" (Akamai) - "Akamai Technologies, Inc" - c:\programme\gemeinsame dateien\akamai\netsession_win_4f7fccd.dll
"Anmeldedienst" (Netlogon) - "Microsoft Corporation" - C:\WINDOWS\system32\lsass.exe
"Anwendungsverwaltung" (AppMgmt) - "Microsoft Corporation" - C:\WINDOWS\System32\appmgmts.dll
"Arbeitsstationsdienst" (lanmanworkstation) - "Microsoft Corporation" - C:\WINDOWS\System32\wkssvc.dll
"ASP.NET-Zustandsdienst" (aspnet_state) - "Microsoft Corporation" - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
"Ati HotKey Poller" (Ati HotKey Poller) - "ATI Technologies Inc." - C:\WINDOWS\system32\Ati2evxx.exe
"Automatic Updates" (wuauserv) - "Microsoft Corporation" - C:\WINDOWS\system32\wuauserv.dll
"Automatische Konfiguration (verkabelt)" (Dot3svc) - "Microsoft Corporation" - C:\WINDOWS\System32\dot3svc.dll
"Avira Browser Schutz" (AntiVirWebService) - "Avira Operations GmbH & Co. KG" - C:\Programme\Avira\AntiVir Desktop\AVWEBGRD.EXE
"Avira Echtzeit Scanner" (AntiVirService) - "Avira Operations GmbH & Co. KG" - C:\Programme\Avira\AntiVir Desktop\avguard.exe
"Avira Planer" (AntiVirSchedulerService) - "Avira Operations GmbH & Co. KG" - C:\Programme\Avira\AntiVir Desktop\sched.exe
"COM+-Ereignissystem" (EventSystem) - "Microsoft Corporation" - C:\WINDOWS\system32\es.dll
"COM+-Systemanwendung" (COMSysApp) - "Microsoft Corporation" - C:\WINDOWS\system32\dllhost.exe
"Computerbrowser" (Browser) - "Microsoft Corporation" - C:\WINDOWS\System32\browser.dll
"CryptSvc" (CryptSvc) - "Microsoft Corporation" - C:\WINDOWS\System32\cryptsvc.dll
"DCOM-Server-Prozessstart" (DcomLaunch) - "Microsoft Corporation" - C:\WINDOWS\system32\rpcss.dll
"Designs" (Themes) - "Microsoft Corporation" - C:\WINDOWS\System32\shsvcs.dll
"DHCP-Client" (Dhcp) - "Microsoft Corporation" - C:\WINDOWS\System32\dhcpcsvc.dll
"Dienst für Seriennummern der tragbaren Medien" (WmdmPmSN) - "Microsoft Corporation" - C:\WINDOWS\system32\MsPMSNSv.dll
"Distributed Transaction Coordinator" (MSDTC) - "Microsoft Corporation" - C:\WINDOWS\system32\msdtc.exe
"DNS-Client" (Dnscache) - "Microsoft Corporation" - C:\WINDOWS\System32\dnsrslvr.dll
"Druckwarteschlange" (Spooler) - "Microsoft Corporation" - C:\WINDOWS\system32\spoolsv.exe
"Ereignisprotokoll" (Eventlog) - "Microsoft Corporation" - C:\WINDOWS\system32\services.exe
"Extensible Authentication-Protokolldienst" (EapHost) - "Microsoft Corporation" - C:\WINDOWS\System32\eapsvc.dll
"Fehlerberichterstattungsdienst" (ERSvc) - "Microsoft Corporation" - C:\WINDOWS\System32\ersvc.dll
"Gatewaydienst auf Anwendungsebene" (ALG) - "Microsoft Corporation" - C:\WINDOWS\System32\alg.exe
"Geschützter Speicher" (ProtectedStorage) - "Microsoft Corporation" - C:\WINDOWS\system32\lsass.exe
"getPlus(R) Helper" (getPlusHelper) - "NOS Microsystems Ltd." - C:\Programme\NOS\bin\getPlus_Helper.dll
"getPlus(R) Helper 3004" (nosGetPlusHelper) - "NOS Microsystems Ltd." - C:\Programme\NOS\bin\getPlus_Helper_3004.dll
"Hilfe und Support" (helpsvc) - "Microsoft Corporation" - C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
"HTTP-SSL" (HTTPFilter) - "Microsoft Corporation" - C:\WINDOWS\System32\w3ssl.dll
"IMAPI-CD-Brenn-COM-Dienste" (ImapiService) - "Microsoft Corporation" - C:\WINDOWS\system32\imapi.exe
"Indexdienst" (CiSvc) - "Microsoft Corporation" - C:\WINDOWS\system32\cisvc.exe
"Integritätsschlüssel- und Zertifikatverwaltungsdienst" (hkmsvc) - "Microsoft Corporation" - C:\WINDOWS\System32\kmsvc.dll
"Intelligenter Hintergrundübertragungsdienst" (BITS) - "Microsoft Corporation" - C:\WINDOWS\system32\qmgr.dll
"IPSEC-Dienste" (PolicyAgent) - "Microsoft Corporation" - C:\WINDOWS\system32\lsass.exe
"IviRegMgr" (IviRegMgr) - "InterVideo" - C:\Programme\Gemeinsame Dateien\InterVideo\RegMgr\iviRegMgr.exe
"Java Quick Starter" (JavaQuickStarterService) - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\jqs.exe
"Kompatibilität für schnelle Benutzerumschaltung" (FastUserSwitchingCompatibility) - "Microsoft Corporation" - C:\WINDOWS\System32\shsvcs.dll
"Konfigurationsfreie drahtlose Verbindung" (WZCSVC) - "Microsoft Corporation" - C:\WINDOWS\System32\wzcsvc.dll
"Leistungsdatenprotokolle und Warnungen" (SysmonLog) - "Microsoft Corporation" - C:\WINDOWS\system32\smlogsvc.exe
"Mozilla Maintenance Service" (MozillaMaintenance) - "Mozilla Foundation" - C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe
"MS Software Shadow Copy Provider" (SwPrv) - "Microsoft Corporation" - C:\WINDOWS\system32\dllhost.exe
"NAP-Agent (Network Access Protection)" (napagent) - "Microsoft Corporation" - C:\WINDOWS\System32\qagentrt.dll
"NetMeeting-Remotedesktop-Freigabe" (mnmsrvc) - "Microsoft Corporation" - C:\WINDOWS\system32\mnmsrvc.exe
"Netzwerkverbindungen" (Netman) - "Microsoft Corporation" - C:\WINDOWS\System32\netman.dll
"Netzwerkversorgungsdienst" (xmlprov) - "Microsoft Corporation" - C:\WINDOWS\System32\xmlprov.dll
"NLA (Network Location Awareness)" (Nla) - "Microsoft Corporation" - C:\WINDOWS\System32\mswsock.dll
"NT-LM-Sicherheitsdienst" (NtLmSsp) - "Microsoft Corporation" - C:\WINDOWS\system32\lsass.exe
"Plug & Play" (PlugPlay) - "Microsoft Corporation" - C:\WINDOWS\system32\services.exe
"QoS-RSVP" (RSVP) - "Microsoft Corporation" - C:\WINDOWS\system32\rsvp.exe
"RAS-Verbindungsverwaltung" (RasMan) - "Microsoft Corporation" - C:\WINDOWS\System32\rasmans.dll
"Remote-Registrierung" (RemoteRegistry) - "Microsoft Corporation" - C:\WINDOWS\system32\regsvc.dll
"Remoteprozeduraufruf (RPC)" (RpcSs) - "Microsoft Corporation" - C:\WINDOWS\System32\rpcss.dll
"RoxMediaDB10" (RoxMediaDB10) - "Sonic Solutions" - C:\Programme\Gemeinsame Dateien\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe
"RPC-Locator" (RpcLocator) - "Microsoft Corporation" - C:\WINDOWS\system32\locator.exe
"Secondary Logon" (seclogon) - "Microsoft Corporation" - C:\WINDOWS\System32\seclogon.dll
"Server" (lanmanserver) - "Microsoft Corporation" - C:\WINDOWS\System32\srvsvc.dll
"SessionLauncher" (SessionLauncher) - ? - C:\DOKUME~1\ADMINI~1\LOKALE~1\Temp\DX9\SessionLauncher.exe  (File not found)
"SharedAccess" (SharedAccess) - "Microsoft Corporation" - C:\WINDOWS\System32\ipnathlp.dll
"Shellhardwareerkennung" (ShellHWDetection) - "Microsoft Corporation" - C:\WINDOWS\System32\shsvcs.dll
"Sicherheitskontenverwaltung" (SamSs) - "Microsoft Corporation" - C:\WINDOWS\system32\lsass.exe
"Sitzungs-Manager für Remotedesktophilfe" (RDSessMgr) - "Microsoft Corporation" - C:\WINDOWS\system32\sessmgr.exe
"Smartcard" (SCardSvr) - "Microsoft Corporation" - C:\WINDOWS\System32\SCardSvr.exe
"SSDP-Suchdienst" (SSDPSRV) - "Microsoft Corporation" - C:\WINDOWS\System32\ssdpsrv.dll
"stllssvr" (stllssvr) - "MicroVision Development, Inc." - C:\Programme\Gemeinsame Dateien\SureThing Shared\stllssvr.exe
"System Update" (SUService) - "Lenovo Group Limited" - c:\programme\lenovo\system update\suservice.exe
"Systemereignisbenachrichtigung" (SENS) - "Microsoft Corporation" - C:\WINDOWS\system32\sens.dll
"Systemwiederherstellungsdienst" (srservice) - "Microsoft Corporation" - C:\WINDOWS\system32\srsvc.dll
"Taskplaner" (Schedule) - "Microsoft Corporation" - C:\WINDOWS\system32\schedsvc.dll
"TCP/IP-NetBIOS-Hilfsprogramm" (LmHosts) - "Microsoft Corporation" - C:\WINDOWS\System32\lmhsvc.dll
"Telefonie" (TapiSrv) - "Microsoft Corporation" - C:\WINDOWS\System32\tapisrv.dll
"Telnet" (TlntSvr) - "Microsoft Corporation" - C:\WINDOWS\system32\tlntsvr.exe
"Terminaldienste" (TermService) - "Microsoft Corporation" - C:\WINDOWS\System32\termsrv.dll
"ThinkVantage Registry Monitor Service" (ThinkVantage Registry Monitor Service) - "Lenovo Group Limited" - c:\Programme\Gemeinsame Dateien\Lenovo\tvt_reg_monitor_svc.exe
"Treibererweiterungen für Windows-Verwaltungsinstrumentation" (Wmi) - "Microsoft Corporation" - C:\WINDOWS\System32\advapi32.dll
"TSS Core Service" (TSSCoreService) - "Lenovo" - C:\Programme\Lenovo\Client Security Solution\tvttcsd.exe
"TVT Backup Protection Service" (TVT Backup Protection Service) - ? - C:\Programme\Lenovo\Rescue and Recovery\rrpservice.exe
"TVT Backup Service" (TVT Backup Service) - "Lenovo Group Limited" - C:\Programme\Lenovo\Rescue and Recovery\rrservice.exe
"TVT Scheduler" (TVT Scheduler) - "Lenovo Group Limited" - c:\Programme\Gemeinsame Dateien\Lenovo\Scheduler\tvtsched.exe
"TVT Windows Update Monitor" (TVT_UpdateMonitor) - "Lenovo Group Limited" - C:\Programme\Lenovo\Rescue and Recovery\UpdateMonitor.exe
"Universeller Plug & Play-Gerätehost" (upnphost) - "Microsoft Corporation" - C:\WINDOWS\System32\upnphost.dll
"Unterbrechungsfreie Stromversorgung" (UPS) - "Microsoft Corporation" - C:\WINDOWS\System32\ups.exe
"USBDLM" (USBDLM) - "Uwe Sieber - www.uwe-sieber.de" - C:\USBDLM\USBDLM.exe
"Verwaltung für automatische RAS-Verbindung" (RasAuto) - "Microsoft Corporation" - C:\WINDOWS\System32\rasauto.dll
"Verwaltung logischer Datenträger" (dmserver) - "Microsoft Corp." - C:\WINDOWS\System32\dmserver.dll
"Verwaltungsdienst für die Verwaltung logischer Datenträger" (dmadmin) - "Microsoft Corp., Veritas Software" - C:\WINDOWS\System32\dmadmin.exe
"Volumeschattenkopie" (VSS) - "Microsoft Corporation" - C:\WINDOWS\System32\vssvc.exe
"Webclient" (WebClient) - "Microsoft Corporation" - C:\WINDOWS\System32\webclnt.dll
"Wechselmedien" (NtmsSvc) - "Microsoft Corporation" - C:\WINDOWS\system32\ntmssvc.dll
"Windows Audio" (AudioSrv) - "Microsoft Corporation" - C:\WINDOWS\System32\audiosrv.dll
"Windows CardSpace" (idsvc) - "Microsoft Corporation" - c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
"Windows Driver Foundation - User-mode Driver Framework" (WudfSvc) - "Microsoft Corporation" - C:\WINDOWS\System32\WUDFSvc.dll
"Windows Installer" (MSIServer) - "Microsoft Corporation" - C:\WINDOWS\system32\msiexec.exe
"Windows Media Player-Netzwerkfreigabedienst" (WMPNetworkSvc) - "Microsoft Corporation" - C:\Programme\Windows Media Player\WMPNetwk.exe
"Windows Presentation Foundation Font Cache 3.0.0.0" (FontCache3.0.0.0) - "Microsoft Corporation" - c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
"Windows-Bilderfassung (WIA)" (stisvc) - "Microsoft Corporation" - C:\WINDOWS\system32\wiaservc.dll
"Windows-Verwaltungsinstrumentation" (winmgmt) - "Microsoft Corporation" - C:\WINDOWS\system32\wbem\WMIsvc.dll
"Windows-Zeitgeber" (W32Time) - "Microsoft Corporation" - C:\WINDOWS\system32\w32time.dll
"WMI-Leistungsadapter" (WmiApSrv) - "Microsoft Corporation" - C:\WINDOWS\system32\wbem\wmiapsrv.exe
"wscsvc" (wscsvc) - "Microsoft Corporation" - C:\WINDOWS\system32\wscsvc.dll
"Überwachung verteilter Verknüpfungen (Client)" (TrkWks) - "Microsoft Corporation" - C:\WINDOWS\system32\trkwks.dll

[Winlogon]
-----( HKCU\Control Panel\Desktop )-----
"SCRNSAVE.EXE" - "Microsoft Corporation" - C:\WINDOWS\System32\logon.scr
-----( HKCU\Control Panel\IOProcs )-----
"MVB" - ? - mvfs32.dll  (File not found)
-----( HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon )-----
"UIHost" - "Microsoft Corporation" - C:\WINDOWS\system32\logonui.exe
"VmApplet" - "Microsoft Corporation" - C:\WINDOWS\system32\sysdm.cpl
-----( HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions )-----
{B587E2B1-4D59-4e7e-AED9-22B9DF11D053} "802.3 Group Policy" - "Microsoft Corporation" - C:\WINDOWS\system32\dot3gpclnt.dll
{0ACDD40C-75AC-47ab-BAA0-BF6DE7E7FE63} "Drahtlos" - "Microsoft Corporation" - C:\WINDOWS\system32\gptext.dll
{B1BE8D72-6EAC-11D2-A4EA-00C04F79F83A} "EFS recovery" - "Microsoft Corporation" - C:\WINDOWS\system32\scecli.dll
{25537BA6-77A8-11D2-9B6C-0000F8080861} "Folder Redirection" - "Microsoft Corporation" - C:\WINDOWS\system32\fdeploy.dll
{A2E30F80-D7DE-11d2-BBDE-00C04F86AE3B} "Internet Explorer Branding" - "Microsoft Corporation" - C:\WINDOWS\system32\iedkcs32.dll
{4CFB60C1-FAA6-47f1-89AA-0B18730C9FD3} "Internet Explorer Zonemapping" - "Microsoft Corporation" - C:\WINDOWS\system32\iedkcs32.dll
{e437bc1c-aa7d-11d2-a382-00c04f991e27} "IP-Sicherheit" - "Microsoft Corporation" - C:\WINDOWS\system32\gptext.dll
{C631DF4C-088F-4156-B058-4375F0853CD8} "Microsoft Offline Files" - "Microsoft Corporation" - C:\WINDOWS\System32\cscui.dll
{3610eda5-77ef-11d2-8dc5-00c04fa31a66} "Microsoft-Datenträgerkontingent" - "Microsoft Corporation" - C:\WINDOWS\system32\dskquota.dll
{426031c0-0b47-4852-b0ca-ac3d37bfcb39} "QoS-Paketplaner" - "Microsoft Corporation" - C:\WINDOWS\system32\gptext.dll
{827D319E-6EAC-11D2-A4EA-00C04F79F83A} "Security" - "Microsoft Corporation" - C:\WINDOWS\system32\scecli.dll
{42B5FAAE-6536-11d2-AE5A-0000F87571E3} "Skripts" - "Microsoft Corporation" - C:\WINDOWS\system32\gptext.dll
{c6dc5466-785a-11d2-84d0-00c04fb169f7} "Softwareinstallation" - "Microsoft Corporation" - C:\WINDOWS\system32\appmgmts.dll
-----( HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify )-----
"AtiExtEvent" - "ATI Technologies Inc." - C:\WINDOWS\system32\Ati2evxx.dll
"crypt32chain" - "Microsoft Corporation" - C:\WINDOWS\system32\crypt32.dll
"cryptnet" - "Microsoft Corporation" - C:\WINDOWS\system32\cryptnet.dll
"cscdll" - "Microsoft Corporation" - C:\WINDOWS\system32\cscdll.dll
"dimsntfy" - "Microsoft Corporation" - C:\WINDOWS\System32\dimsntfy.dll
"ScCertProp" - "Microsoft Corporation" - C:\WINDOWS\system32\wlnotify.dll
"Schedule" - "Microsoft Corporation" - C:\WINDOWS\system32\wlnotify.dll
"sclgntfy" - "Microsoft Corporation" - C:\WINDOWS\system32\sclgntfy.dll
"SensLogn" - "Microsoft Corporation" - C:\WINDOWS\system32\WlNotify.dll
"termsrv" - "Microsoft Corporation" - C:\WINDOWS\system32\wlnotify.dll
"WgaLogon" - "Microsoft Corporation" - C:\WINDOWS\system32\WgaLogon.dll
"wlballoon" - "Microsoft Corporation" - C:\WINDOWS\system32\wlnotify.dll

[Winsock Providers]
-----( HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries )-----
"NLA-Namespace" - "Microsoft Corporation" - C:\WINDOWS\System32\mswsock.dll
"NTDS" - "Microsoft Corporation" - C:\WINDOWS\System32\winrnr.dll
"TCP/IP" - "Microsoft Corporation" - C:\WINDOWS\System32\mswsock.dll
-----( HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries )-----
"AVSDA" - "Avira Operations GmbH & Co. KG" - C:\Programme\Avira\AntiVir Desktop\avsda.dll
"MSAFD NetBIOS [\Device\NetBT_Tcpip_{100D944F-07DC-4690-9947-A887FE9B5CD0}] DATAGRAM 1" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll
"MSAFD NetBIOS [\Device\NetBT_Tcpip_{100D944F-07DC-4690-9947-A887FE9B5CD0}] SEQPACKET 1" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll
"MSAFD NetBIOS [\Device\NetBT_Tcpip_{2F48562B-63DE-4625-A4AA-0F5E50311094}] DATAGRAM 2" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll
"MSAFD NetBIOS [\Device\NetBT_Tcpip_{2F48562B-63DE-4625-A4AA-0F5E50311094}] SEQPACKET 2" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll
"MSAFD NetBIOS [\Device\NetBT_Tcpip_{926B4AD2-3054-49CE-B948-DA446FB3BEAA}] DATAGRAM 0" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll
"MSAFD NetBIOS [\Device\NetBT_Tcpip_{926B4AD2-3054-49CE-B948-DA446FB3BEAA}] SEQPACKET 0" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll
"MSAFD Tcpip [RAW/IP]" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll
"MSAFD Tcpip [TCP/IP]" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll
"MSAFD Tcpip [UDP/IP]" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll
"RSVP TCP Service Provider" - "Microsoft Corporation" - C:\WINDOWS\system32\rsvpsp.dll
"RSVP UDP Service Provider" - "Microsoft Corporation" - C:\WINDOWS\system32\rsvpsp.dll

===[ Logfile end ]=========================================[ Logfile end ]===

If You have questions or want to get some help, You can visit hxxp://forum.online-solutions.ru
         
Hier ist aswMBR-Log:

Code:
ATTFilter
aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
Run date: 2012-07-25 17:04:13
-----------------------------
17:04:13.421    OS Version: Windows 5.1.2600 Service Pack 3
17:04:13.421    Number of processors: 2 586 0x6B02
17:04:13.421    ComputerName: HEIM-PC  UserName: User
17:04:13.937    Initialize success
17:09:52.796    AVAST engine defs: 12072500
17:10:19.671    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T1L0-c
17:10:19.671    Disk 0 Vendor: WDC_WD3200AAJS-08B4A0 01.03A01 Size: 305245MB BusType: 3
17:10:19.687    Disk 0 MBR read successfully
17:10:19.687    Disk 0 MBR scan
17:10:19.718    Disk 0 unknown MBR code
17:10:19.734    Disk 0 Partition 1 80 (A) 07    HPFS/NTFS NTFS       301687 MB offset 2048
17:10:19.765    Disk 0 Partition 2 00     12  Compaq diag MSDOS5.0     3556 MB offset 617857024
17:10:19.765    Disk 0 scanning sectors +625139712
17:10:19.828    Disk 0 scanning C:\WINDOWS\system32\drivers
17:10:27.437    Service scanning
17:10:40.859    Modules scanning
17:10:42.359    Module: C:\WINDOWS\System32\drivers\dxgthk.sys  **SUSPICIOUS**
17:10:44.375    Module: C:\WINDOWS\system32\ntdll.dll  **SUSPICIOUS**
17:10:44.375    Disk 0 trace - called modules:
17:10:44.406    ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys pciide.sys PCIIDEX.SYS 
17:10:44.406    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8a440ab8]
17:10:44.421    3 CLASSPNP.SYS[ba0e8fd7] -> nt!IofCallDriver -> \Device\0000006a[0x8a49ebe0]
17:10:44.421    5 ACPI.sys[b9f7e620] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T1L0-c[0x8a4468e8]
17:10:45.187    AVAST engine scan C:\WINDOWS
17:10:51.640    AVAST engine scan C:\WINDOWS\system32
17:12:59.281    AVAST engine scan C:\WINDOWS\system32\drivers
17:13:16.015    AVAST engine scan C:\Dokumente und Einstellungen\User
17:14:55.921    AVAST engine scan C:\Dokumente und Einstellungen\All Users
17:15:13.000    Scan finished successfully
17:15:47.671    Disk 0 MBR has been saved successfully to "C:\Dokumente und Einstellungen\User\Desktop\MBR.dat"
17:15:47.671    The log file has been saved successfully to "C:\Dokumente und Einstellungen\User\Desktop\aswMBR.txt"
         
Problem mit Eingabegebietsleiste habe ich gelöst (gegoogelt)

Alt 26.07.2012, 09:37   #44
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
ich möchte meinen PC reinigen - Standard

ich möchte meinen PC reinigen



Zitat:
ich hatte auf der Taskleiste einen Sprachsymbol "DE" und konnte zwischen Sprachen umschalten.
Und was ist daran seltsam
Man kann diese Leiste schließen oder nicht was bitte ist daran ein Fehler?!
Und wozu brauchst du zwei verschiedene Tastaturlayouts? Mit das erste was ich auf einem Windows mache ist dieses dämliche zweite EN-Tastaturlayout zu entfernen!
Da Google nicht defekt ist, dürftest du auch reichtlich Infos darüber finden zum Thema "Eingabegebietsschemaleiste"


Wir sollten den MBR fixen, sichere für den Fall der Fälle ALLE wichtigen Daten, auch wenn meistens alles glatt geht.

Hinweis: Mach bitte NICHT den MBR-Fix, wenn du noch andere Betriebssysteme wie zB Ubuntu installiert hast, ein MBR-Fix mit Windows-Tools macht ein parallel installiertes (Dualboot) Linux unbootbar.
Mach den Fix auch dann nicht, wenn du zB mit TrueCrypt oder anderen Verschlüsselungsprogrammen eine Vollverschlüsselung der Windowspartition bzw. gesamten Festplatte hast


Starte nach der Datensicherung aswmbr erneut und klick auf den Button FIXMBR.

Hinweis: Bitte den Virenscanner abstellen bevor du aswMBR ausführst, denn v.a. Avira meldet darin oft einen Fehalalrm!

Anschließend Windows neu starten und ein neues Log mit aswMBR machen.
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 26.07.2012, 19:39   #45
strobl
 
ich möchte meinen PC reinigen - Standard

ich möchte meinen PC reinigen



ich habe leider nicht richtig verstanden, was Sie mit Eingabegebietsleiste meinen.

Ich beschreibe nur kurz den Sachverhalt. Vielleicht mache ich was falsch.

Ich schreibe in 2 Sprachen und muss meine 2-sprachige Tastatur immer wieder umschalten. Dafür habe in der Taskleiste einen Sprachsymbol. Beim Klick drauf erscheint kleines Fenster mit der Sprachauswahl. Dann wähle ich eine Sprache aus, die ich im Moment brauche. Nach den o.g. Scan- Aktionen ist der Sprach-Symbol verschwunden. Es kann sein, dass einige andere Wege zum Tastaturaktivieren existieren. Ich kenne sie aber nicht. Die Hilfe in meinem PC hat ein Vorgehen vorgeschlagen, wie ich mein Problem lösen kann. Ein Fenster, das eine Schlüsselrolle dabei spielt, war deaktiviert.Deshalb war der Vorschlag nutzlos. Auf einer Internet-Seite habe ich eine Empfehlung gefunden. Es hat funktioniert. Logisch oder intuitiv wäre ich selber auf diese Lösung nicht gekommen. Windows macht sich eben keine Mühe alles verständlich zu erklären.

Sie schreiben, dass ich eine Datensicherung machen soll. Ich habe zu Hause das noch nicht gemacht ( ich weiss, das es leichtsinnig ist. - Berührungsangst ). Ich habe sehr viele wichtige Daten, worin ich viel Zeit investierte. Soll es USB-Stick oder CD sein?

Antwort

Themen zu ich möchte meinen PC reinigen
avira, funde, geklappt, harmlose, inhalt, kopieren, löschbar, malwarebites, nicht löschbar, pc reinigen, reinigen, reinigung, seite, seiten, thread, troja, trojaner, unerwartet, versuch, versucht, viele viren, viren




Ähnliche Themen: ich möchte meinen PC reinigen


  1. Avira Fund TR/Bprotector.1752104 - PC reinigen
    Log-Analyse und Auswertung - 09.05.2015 (18)
  2. Laptop hat nach neu aufsetzen und reinigen den an aus bug
    Log-Analyse und Auswertung - 02.02.2015 (1)
  3. PC Richtig reinigen, eventuell Viren ?
    Plagegeister aller Art und deren Bekämpfung - 30.12.2013 (19)
  4. wsys control und qvo6.com löschen? browser reinigen?
    Plagegeister aller Art und deren Bekämpfung - 22.07.2013 (9)
  5. Software.updater.ui.exe möchte an meinen Laptop
    Plagegeister aller Art und deren Bekämpfung - 21.06.2013 (9)
  6. Möchte meinen PC Trojaner frei bekommen (auch Trojaner Downloader)
    Plagegeister aller Art und deren Bekämpfung - 27.02.2013 (12)
  7. Pc Reboot/ Pc reinigen Programme die das unterstützen.
    Log-Analyse und Auswertung - 16.01.2012 (6)
  8. Computer reinigen nach Entfernen des BKA-Trojaners
    Log-Analyse und Auswertung - 16.06.2011 (23)
  9. komplettes Reinigen meines PC's ...
    Plagegeister aller Art und deren Bekämpfung - 11.02.2011 (6)
  10. Logfile - nach Versuch von "twgg.org" meinen Computer zu "reinigen"
    Log-Analyse und Auswertung - 28.05.2010 (5)
  11. Verschiedene Trojaner - wie systematisch reinigen
    Plagegeister aller Art und deren Bekämpfung - 04.03.2010 (15)
  12. Komprommitierte Wechseldatenträger reinigen
    Plagegeister aller Art und deren Bekämpfung - 23.10.2009 (8)
  13. Festplatte reinigen!!
    Alles rund um Windows - 12.08.2008 (9)
  14. Spywareflut überwältigt, brauche Hilfe beim reinigen!
    Log-Analyse und Auswertung - 21.05.2006 (2)
  15. Lüfter reinigen?
    Netzwerk und Hardware - 13.01.2005 (11)
  16. Wie lässt sich infizierte outlook.pst reinigen?
    Plagegeister aller Art und deren Bekämpfung - 30.11.2004 (2)
  17. Hilfe! Infizierte outlook.pst nicht zu reinigen
    Plagegeister aller Art und deren Bekämpfung - 30.11.2004 (3)

Zum Thema ich möchte meinen PC reinigen - Hier ist OTL-Fix-Log: Code: Alles auswählen Aufklappen ATTFilter All processes killed ========== OTL ========== HKU\S-1-5-21-726353797-3868275323-1685576310-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyOverride| /E : value set successfully! Prefs.js: "Ask.com" removed from browser.search.defaultengine Prefs.js: "Ask.com" removed from - ich möchte meinen PC reinigen...
Archiv
Du betrachtest: ich möchte meinen PC reinigen auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.