|
Log-Analyse und Auswertung: Windows XP bzw. Betriebssystem unabhängig, Rootkit plagt selbst nach FormatierungWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
06.08.2013, 06:35 | #1 |
| Windows XP bzw. Betriebssystem unabhängig, Rootkit plagt selbst nach Formatierung Hallo liebes Forum... habe nach langen Jahren ohne Befall grad ein arges Problem. Nach langem Suchen hab ich einige Einträge in der Registry gefunden, die mir einen Befall gezeigt haben, was bis dahin kein Scanner gefunden hat. Nach Formatierung war das Problem aber leider nicht gelöst und zieht sich über 3! Systeme. Auch mit einer Live Boot CD, schreibt er sich in den Speicher. Das Netzwerk ist noch privat, soll aber später auch beruflich genutzt werden. Ich hoffe ihr könnt mir einigermaßen weiterhelfen, daß ich in Zukunft solche Schädlinge draußen halten kann. Vielen Dank schonmal. Hier noch die Logs von Defogger, Farbar und das erste von Gmer (klicken der Raute funktioniert nicht) Gmer Code:
ATTFilter GMER 2.1.19163 - hxxp://www.gmer.net Rootkit quick scan 2013-08-05 16:08:09 Windows 5.1.2600 Service Pack 3 \Device\Harddisk0\DR0 -> \Device\Scsi\nvgts1Port2Path0Target0Lun0 SAMSUNG_ rev.1AR1 298,09GB Running: 6mgt9fm9.exe; Driver: C:\DOKUME~1\Fabian\LOKALE~1\Temp\ugriquod.sys ---- Processes - GMER 2.1 ---- Process (*** hidden *** ) [4] 86395A00 ---- EOF - GMER 2.1 ---- |
06.08.2013, 09:27 | #2 |
/// TB-Ausbilder | Windows XP bzw. Betriebssystem unabhängig, Rootkit plagt selbst nach Formatierung Wir müssen alle anderen Logfiles dennoch sehen. Außerdem hätte ich gerne gewußt, was du da in der Registry gefummelt hast.
__________________!! Hinweis an Mitlesende !! Dieses Thema und die Anweisungen sind nur für diesen speziellen Fall gedacht. Sie könnten andere Computer schwer beschädigen. Öffnet bitte euer eigenes Thema. Ich werde dir bei deinem Problem helfen. Die Bereinigung funktioniert nur, wenn du dich an die folgenden Regeln hälst: Bitte lesen: Regeln für die Bereinigung
Scan mit dem TDSS-Killer Lese bitte folgende Anweisungen genau. Wir wollen hier noch nichts "fixen" sondern nur einen Scan Report sehen. Downloade dir bitte TDSSKiller.exe und speichere diese Datei auf dem DesktopAusserdem glaube ich nicht, dass du mit Windows XP ein Firmennetzwerk aufbauen willst, wenn dich sowas wie Sicherheit interessiert.
__________________ |
06.08.2013, 23:22 | #3 |
| Windows XP bzw. Betriebssystem unabhängig, Rootkit plagt selbst nach Formatierung Danke für die netten Willkommensgrüße. Habe leider nur eine XP Home und eine XP Prof. Registrierung, daher der Aufbau von XP her.
__________________In der Registrierung hab ich nur nachgesehen, nix verändert, weil ein Treiber nicht geladen werden konnte, der mir nix gesagt hat. Addition Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version: 04-08-2013 01 Ran by Fabian at 2013-08-05 11:30:28 Running from C:\Dokumente und Einstellungen\Fabian\Desktop Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= ATI Display Driver (Omega 3.8.442) (Version: 8.442-071204a1-055811C-ATI-OMEGA) J2SE Runtime Environment 5.0 (Version: 1.5.0) Microsoft .NET Framework 1.1 (Version: 1.1.4322) Microsoft .NET Framework 1.1 German Language Pack (Version: 1.1.4322) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161) MSXML 4.0 SP3 Parser (KB2758694) (Version: 4.30.2117.0) NVIDIA Drivers (Version: 1.3) OpenOffice 4.0.0 (Version: 4.00.9702) Radeon Omega Drivers v4.8.442 Setup Files and Tools (Version: v4.8.442) Realtek High Definition Audio Driver (Version: 5.10.0.6873) Sicherheitsupdate für Microsoft Windows (KB2564958) Sicherheitsupdate für Windows Internet Explorer 8 (KB2510531) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2797052) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2846071) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB971961) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB981332) (Version: 1) Sicherheitsupdate für Windows Media Player (KB2378111) Sicherheitsupdate für Windows Media Player (KB2834904) Sicherheitsupdate für Windows Media Player (KB952069) Sicherheitsupdate für Windows Media Player (KB954155) Sicherheitsupdate für Windows Media Player (KB973540) Sicherheitsupdate für Windows Media Player (KB975558) Sicherheitsupdate für Windows Media Player (KB978695) Sicherheitsupdate für Windows Media Player 11 (KB954154) Sicherheitsupdate für Windows XP (KB2115168) (Version: 1) Sicherheitsupdate für Windows XP (KB2124261) (Version: 1) Sicherheitsupdate für Windows XP (KB2229593) (Version: 1) Sicherheitsupdate für Windows XP (KB2290570) (Version: 1) Sicherheitsupdate für Windows XP (KB2296011) (Version: 1) Sicherheitsupdate für Windows XP (KB2347290) (Version: 1) Sicherheitsupdate für Windows XP (KB2360937) (Version: 1) Sicherheitsupdate für Windows XP (KB2387149) (Version: 1) Sicherheitsupdate für Windows XP (KB2393802) (Version: 1) Sicherheitsupdate für Windows XP (KB2419632) (Version: 1) Sicherheitsupdate für Windows XP (KB2423089) (Version: 1) Sicherheitsupdate für Windows XP (KB2440591) (Version: 1) Sicherheitsupdate für Windows XP (KB2443105) (Version: 1) Sicherheitsupdate für Windows XP (KB2478960) (Version: 1) Sicherheitsupdate für Windows XP (KB2478971) (Version: 1) Sicherheitsupdate für Windows XP (KB2479943) (Version: 1) Sicherheitsupdate für Windows XP (KB2481109) (Version: 1) Sicherheitsupdate für Windows XP (KB2483185) (Version: 1) Sicherheitsupdate für Windows XP (KB2485663) (Version: 1) Sicherheitsupdate für Windows XP (KB2491683) (Version: 1) Sicherheitsupdate für Windows XP (KB2506212) (Version: 1) Sicherheitsupdate für Windows XP (KB2507938) (Version: 1) Sicherheitsupdate für Windows XP (KB2508429) (Version: 1) Sicherheitsupdate für Windows XP (KB2509553) (Version: 1) Sicherheitsupdate für Windows XP (KB2511455) (Version: 1) Sicherheitsupdate für Windows XP (KB2535512) (Version: 1) Sicherheitsupdate für Windows XP (KB2536276-v2) (Version: 2) Sicherheitsupdate für Windows XP (KB2544893-v2) (Version: 2) Sicherheitsupdate für Windows XP (KB2562937) (Version: 1) Sicherheitsupdate für Windows XP (KB2566454) (Version: 1) Sicherheitsupdate für Windows XP (KB2570947) (Version: 1) Sicherheitsupdate für Windows XP (KB2584146) (Version: 1) Sicherheitsupdate für Windows XP (KB2585542) (Version: 1) Sicherheitsupdate für Windows XP (KB2592799) (Version: 1) Sicherheitsupdate für Windows XP (KB2598479) (Version: 1) Sicherheitsupdate für Windows XP (KB2603381) (Version: 1) Sicherheitsupdate für Windows XP (KB2618451) (Version: 1) Sicherheitsupdate für Windows XP (KB2619339) (Version: 1) Sicherheitsupdate für Windows XP (KB2620712) (Version: 1) Sicherheitsupdate für Windows XP (KB2624667) (Version: 1) Sicherheitsupdate für Windows XP (KB2631813) (Version: 1) Sicherheitsupdate für Windows XP (KB2647518) (Version: 1) Sicherheitsupdate für Windows XP (KB2653956) (Version: 1) Sicherheitsupdate für Windows XP (KB2655992) (Version: 1) Sicherheitsupdate für Windows XP (KB2659262) (Version: 1) Sicherheitsupdate für Windows XP (KB2660649) (Version: 1) Sicherheitsupdate für Windows XP (KB2661637) (Version: 1) Sicherheitsupdate für Windows XP (KB2676562) (Version: 1) Sicherheitsupdate für Windows XP (KB2686509) (Version: 1) Sicherheitsupdate für Windows XP (KB2691442) (Version: 1) Sicherheitsupdate für Windows XP (KB2695962) (Version: 1) Sicherheitsupdate für Windows XP (KB2698365) (Version: 1) Sicherheitsupdate für Windows XP (KB2705219-v2) (Version: 2) Sicherheitsupdate für Windows XP (KB2712808) (Version: 1) Sicherheitsupdate für Windows XP (KB2719985) (Version: 1) Sicherheitsupdate für Windows XP (KB2723135) (Version: 1) Sicherheitsupdate für Windows XP (KB2727528) (Version: 1) Sicherheitsupdate für Windows XP (KB2753842-v2) (Version: 2) Sicherheitsupdate für Windows XP (KB2757638) (Version: 1) Sicherheitsupdate für Windows XP (KB2758857) (Version: 1) Sicherheitsupdate für Windows XP (KB2770660) (Version: 1) Sicherheitsupdate für Windows XP (KB2780091) (Version: 1) Sicherheitsupdate für Windows XP (KB2802968) (Version: 1) Sicherheitsupdate für Windows XP (KB2807986) (Version: 1) Sicherheitsupdate für Windows XP (KB2813345) (Version: 1) Sicherheitsupdate für Windows XP (KB2820197) (Version: 1) Sicherheitsupdate für Windows XP (KB2820917) (Version: 1) Sicherheitsupdate für Windows XP (KB2834886) (Version: 1) Sicherheitsupdate für Windows XP (KB2835364) (Version: 1) Sicherheitsupdate für Windows XP (KB2839229) (Version: 1) Sicherheitsupdate für Windows XP (KB2845187) (Version: 1) Sicherheitsupdate für Windows XP (KB2850851) (Version: 1) Sicherheitsupdate für Windows XP (KB923561) (Version: 1) Sicherheitsupdate für Windows XP (KB923789) Sicherheitsupdate für Windows XP (KB941569) Sicherheitsupdate für Windows XP (KB950762) (Version: 1) Sicherheitsupdate für Windows XP (KB950974) (Version: 1) Sicherheitsupdate für Windows XP (KB951066) (Version: 1) Sicherheitsupdate für Windows XP (KB951376-v2) (Version: 2) Sicherheitsupdate für Windows XP (KB951748) (Version: 1) Sicherheitsupdate für Windows XP (KB952004) (Version: 1) Sicherheitsupdate für Windows XP (KB952954) (Version: 1) Sicherheitsupdate für Windows XP (KB953155) (Version: 1) Sicherheitsupdate für Windows XP (KB956572) (Version: 1) Sicherheitsupdate für Windows XP (KB956802) (Version: 1) Sicherheitsupdate für Windows XP (KB956803) (Version: 1) Sicherheitsupdate für Windows XP (KB956844) (Version: 1) Sicherheitsupdate für Windows XP (KB959426) (Version: 1) Sicherheitsupdate für Windows XP (KB960225) (Version: 1) Sicherheitsupdate für Windows XP (KB960803) (Version: 1) Sicherheitsupdate für Windows XP (KB960859) (Version: 1) Sicherheitsupdate für Windows XP (KB969059) (Version: 1) Sicherheitsupdate für Windows XP (KB970483) (Version: 1) Sicherheitsupdate für Windows XP (KB971468) (Version: 1) Sicherheitsupdate für Windows XP (KB971657) (Version: 1) Sicherheitsupdate für Windows XP (KB972270) (Version: 1) Sicherheitsupdate für Windows XP (KB973507) (Version: 1) Sicherheitsupdate für Windows XP (KB973869) (Version: 1) Sicherheitsupdate für Windows XP (KB973904) (Version: 1) Sicherheitsupdate für Windows XP (KB974112) (Version: 1) Sicherheitsupdate für Windows XP (KB974318) (Version: 1) Sicherheitsupdate für Windows XP (KB974392) (Version: 1) Sicherheitsupdate für Windows XP (KB974571) (Version: 1) Sicherheitsupdate für Windows XP (KB975025) (Version: 1) Sicherheitsupdate für Windows XP (KB975254) (Version: 1) Sicherheitsupdate für Windows XP (KB975467) (Version: 1) Sicherheitsupdate für Windows XP (KB975560) (Version: 1) Sicherheitsupdate für Windows XP (KB975713) (Version: 1) Sicherheitsupdate für Windows XP (KB976323) (Version: 1) Sicherheitsupdate für Windows XP (KB977816) (Version: 1) Sicherheitsupdate für Windows XP (KB977914) (Version: 1) Sicherheitsupdate für Windows XP (KB978338) (Version: 1) Sicherheitsupdate für Windows XP (KB978542) (Version: 1) Sicherheitsupdate für Windows XP (KB978706) (Version: 1) Sicherheitsupdate für Windows XP (KB979309) (Version: 1) Sicherheitsupdate für Windows XP (KB979482) (Version: 1) Sicherheitsupdate für Windows XP (KB979687) (Version: 1) Sicherheitsupdate für Windows XP (KB981322) (Version: 1) Sicherheitsupdate für Windows XP (KB981997) (Version: 1) Sicherheitsupdate für Windows XP (KB982132) (Version: 1) Sicherheitsupdate für Windows XP (KB982665) (Version: 1) Spybot - Search & Destroy (Version: 2.1.19) Update für Windows XP (KB2736233) (Version: 1) Update für Windows XP (KB973815) (Version: 1) WebFldrs XP (Version: 9.50.7523) Windows Internet Explorer 8 (Version: 20090308.140743) Windows Media Format 11 runtime Windows Messenger 5.1 (Version: 5.1.0715) Windows XP Service Pack 3 (Version: 20080414.031514) ==================== Restore Points ========================= Could not list Restore Points. ==================== Hosts content: ========================== 2004-08-04 14:00 - 2013-08-02 13:42 - 00447812 ____R C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 localhost 127.0.0.1 www.007guard.com 127.0.0.1 007guard.com 127.0.0.1 008i.com 127.0.0.1 www.008k.com 127.0.0.1 008k.com 127.0.0.1 www.00hq.com 127.0.0.1 00hq.com 127.0.0.1 010402.com 127.0.0.1 www.032439.com 127.0.0.1 032439.com 127.0.0.1 www.0scan.com 127.0.0.1 0scan.com 127.0.0.1 1000gratisproben.com 127.0.0.1 www.1000gratisproben.com 127.0.0.1 1001namen.com 127.0.0.1 www.1001namen.com 127.0.0.1 100888290cs.com 127.0.0.1 www.100888290cs.com 127.0.0.1 www.100sexlinks.com 127.0.0.1 100sexlinks.com 127.0.0.1 10sek.com 127.0.0.1 www.10sek.com 127.0.0.1 www.1-2005-search.com 127.0.0.1 1-2005-search.com 127.0.0.1 123fporn.info 127.0.0.1 www.123fporn.info 127.0.0.1 123haustiereundmehr.com 127.0.0.1 www.123haustiereundmehr.com There are 1000 more lines. ==================== Scheduled Tasks (whitelisted) ============= Task: C:\WINDOWS\Tasks\Check for updates (Spybot - Search & Destroy).job => C:\Programme\Spybot - SD 2\SDUpdate.exe Task: C:\WINDOWS\Tasks\Refresh immunization (Spybot - Search & Destroy).job => C:\Programme\Spybot - SD 2\SDImmunize.exe Task: C:\WINDOWS\Tasks\Scan the system (Spybot - Search & Destroy).job => C:\Programme\Spybot - SD 2\SDScan.exe ==================== Faulty Device Manager Devices ============= Could not list Devices. ==================== Event log errors: ========================= Application errors: ================== Error: (08/05/2013 11:28:13 AM) (Source: crypt32) (User: ) Description: Der automatische Aktualisierungsabruf der Drittanbieterstammlisten-Sequenznummer von <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> ist fehlgeschlagen mit dem Fehler: Diese Netzwerkverbindung ist nicht vorhanden. . Error: (08/05/2013 11:28:13 AM) (Source: crypt32) (User: ) Description: Der automatische Aktualisierungsabruf der Drittanbieterstammlisten-Sequenznummer von <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> ist fehlgeschlagen mit dem Fehler: The server name or address could not be resolved . Error: (08/05/2013 11:19:50 AM) (Source: crypt32) (User: ) Description: Der automatische Aktualisierungsabruf der Drittanbieterstammlisten-Sequenznummer von <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> ist fehlgeschlagen mit dem Fehler: Diese Netzwerkverbindung ist nicht vorhanden. . Error: (08/05/2013 11:19:50 AM) (Source: crypt32) (User: ) Description: Der automatische Aktualisierungsabruf der Drittanbieterstammlisten-Sequenznummer von <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> ist fehlgeschlagen mit dem Fehler: The server name or address could not be resolved . Error: (08/05/2013 11:14:08 AM) (Source: crypt32) (User: ) Description: Der automatische Aktualisierungsabruf der Drittanbieterstammlisten-Sequenznummer von <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> ist fehlgeschlagen mit dem Fehler: Diese Netzwerkverbindung ist nicht vorhanden. . Error: (08/05/2013 11:14:08 AM) (Source: crypt32) (User: ) Description: Der automatische Aktualisierungsabruf der Drittanbieterstammlisten-Sequenznummer von <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> ist fehlgeschlagen mit dem Fehler: The server name or address could not be resolved . Error: (08/05/2013 11:10:06 AM) (Source: crypt32) (User: ) Description: Der automatische Aktualisierungsabruf der Drittanbieterstammlisten-Sequenznummer von <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> ist fehlgeschlagen mit dem Fehler: Diese Netzwerkverbindung ist nicht vorhanden. . Error: (08/05/2013 11:10:06 AM) (Source: crypt32) (User: ) Description: Der automatische Aktualisierungsabruf der Drittanbieterstammlisten-Sequenznummer von <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> ist fehlgeschlagen mit dem Fehler: The server name or address could not be resolved . Error: (08/03/2013 03:09:06 AM) (Source: crypt32) (User: ) Description: Der automatische Aktualisierungsabruf der Drittanbieterstammlisten-Sequenznummer von <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> ist fehlgeschlagen mit dem Fehler: Diese Netzwerkverbindung ist nicht vorhanden. . Error: (08/03/2013 03:09:06 AM) (Source: crypt32) (User: ) Description: Der automatische Aktualisierungsabruf der Drittanbieterstammlisten-Sequenznummer von <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> ist fehlgeschlagen mit dem Fehler: The server name or address could not be resolved . System errors: ============= Error: (08/05/2013 11:29:56 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Spybot-S&D 2 Security Center Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (08/05/2013 11:29:56 AM) (Source: Service Control Manager) (User: ) Description: Zeitüberschreitung (30000 ms) beim Verbindungsversuch mit Dienst Spybot-S&D 2 Security Center Service. Error: (08/05/2013 11:21:32 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Spybot-S&D 2 Security Center Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (08/05/2013 11:21:32 AM) (Source: Service Control Manager) (User: ) Description: Zeitüberschreitung (30000 ms) beim Verbindungsversuch mit Dienst Spybot-S&D 2 Security Center Service. Error: (08/05/2013 11:15:51 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Spybot-S&D 2 Security Center Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (08/05/2013 11:15:51 AM) (Source: Service Control Manager) (User: ) Description: Zeitüberschreitung (30000 ms) beim Verbindungsversuch mit Dienst Spybot-S&D 2 Security Center Service. Error: (08/05/2013 11:11:50 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Spybot-S&D 2 Security Center Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (08/05/2013 11:11:50 AM) (Source: Service Control Manager) (User: ) Description: Zeitüberschreitung (30000 ms) beim Verbindungsversuch mit Dienst Spybot-S&D 2 Security Center Service. Error: (08/05/2013 11:10:58 AM) (Source: Windows Update Agent) (User: ) Description: Verbindung kann nicht hergestellt werden: Die Verbindung mit dem Dienst für automatische Updates konnte nicht hergestellt werden, so dass keine Updates zum angegebenen Zeitplan übertragen und installiert werden können. Es wird weiterhin versucht, eine Verbindung herzustellen. Error: (08/03/2013 03:10:48 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Spybot-S&D 2 Security Center Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Microsoft Office Sessions: ========================= Error: (08/05/2013 11:28:13 AM) (Source: crypt32)(User: ) Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txtDiese Netzwerkverbindung ist nicht vorhanden. Error: (08/05/2013 11:28:13 AM) (Source: crypt32)(User: ) Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txtThe server name or address could not be resolved Error: (08/05/2013 11:19:50 AM) (Source: crypt32)(User: ) Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txtDiese Netzwerkverbindung ist nicht vorhanden. Error: (08/05/2013 11:19:50 AM) (Source: crypt32)(User: ) Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txtThe server name or address could not be resolved Error: (08/05/2013 11:14:08 AM) (Source: crypt32)(User: ) Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txtDiese Netzwerkverbindung ist nicht vorhanden. Error: (08/05/2013 11:14:08 AM) (Source: crypt32)(User: ) Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txtThe server name or address could not be resolved Error: (08/05/2013 11:10:06 AM) (Source: crypt32)(User: ) Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txtDiese Netzwerkverbindung ist nicht vorhanden. Error: (08/05/2013 11:10:06 AM) (Source: crypt32)(User: ) Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txtThe server name or address could not be resolved Error: (08/03/2013 03:09:06 AM) (Source: crypt32)(User: ) Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txtDiese Netzwerkverbindung ist nicht vorhanden. Error: (08/03/2013 03:09:06 AM) (Source: crypt32)(User: ) Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txtThe server name or address could not be resolved ==================== Memory info =========================== Percentage of memory in use: 33% Total physical RAM: 1022.48 MB Available physical RAM: 678.65 MB Total Pagefile: 2460.6 MB Available Pagefile: 2189.8 MB Total Virtual: 2047.88 MB Available Virtual: 1939.11 MB ==================== Drives ================================ Drive c: (System) (Fixed) (Total:97.66 GB) (Free:87.37 GB) NTFS ==>[Drive with boot components (Windows XP)] Drive d: () (Fixed) (Total:149.04 GB) (Free:69.29 GB) NTFS Drive e: () (Fixed) (Total:200.42 GB) (Free:110.49 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 298 GB) (Disk ID: DB8BDB8B) Partition 1: (Active) - (Size=98 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=200 GB) - (Type=OF Extended) ======================================================== Disk: 1 (Size: 149 GB) (Disk ID: 5B425B42) Partition 1: (Active) - (Size=149 GB) - (Type=07 NTFS) ==================== End Of Log ============================ Code:
ATTFilter 23:56:55.0875 1612 SetPrivileges failed! 23:56:55.0875 1612 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42 23:56:55.0890 1612 ============================================================ 23:56:55.0890 1612 Current date / time: 2013/08/06 23:56:55.0890 23:56:55.0890 1612 SystemInfo: 23:56:55.0890 1612 23:56:55.0890 1612 OS Version: 5.1.2600 ServicePack: 3.0 23:56:55.0890 1612 Product type: Workstation 23:56:55.0890 1612 ComputerName: FABIAN-BÜRO 23:56:55.0890 1612 UserName: Fabian 23:56:55.0890 1612 Windows directory: C:\WINDOWS 23:56:55.0890 1612 System windows directory: C:\WINDOWS 23:56:55.0890 1612 Processor architecture: Intel x86 23:56:55.0890 1612 Number of processors: 2 23:56:55.0890 1612 Page size: 0x1000 23:56:55.0890 1612 Boot type: Normal boot 23:56:55.0890 1612 ============================================================ 23:56:56.0250 1612 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0xA181, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xF0, Type 'K0', Flags 0x00000058 23:56:56.0281 1612 Drive \Device\Harddisk1\DR1 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x50C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xF0, Type 'K0', Flags 0x00000058 23:56:56.0375 1612 ============================================================ 23:56:56.0375 1612 \Device\Harddisk0\DR0: 23:56:56.0375 1612 MBR partitions: 23:56:56.0375 1612 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0xC350151 23:56:56.0375 1612 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xC3501CF, BlocksNum 0x190D9631 23:56:56.0375 1612 \Device\Harddisk1\DR1: 23:56:56.0375 1612 MBR partitions: 23:56:56.0375 1612 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x12A14BC1 23:56:56.0375 1612 ============================================================ 23:56:56.0406 1612 D: <-> \Device\Harddisk1\DR1\Partition1 23:56:56.0421 1612 E: <-> \Device\Harddisk0\DR0\Partition2 23:56:56.0484 1612 C: <-> \Device\Harddisk0\DR0\Partition1 23:56:56.0484 1612 ============================================================ 23:56:56.0484 1612 Initialize success 23:56:56.0484 1612 ============================================================ 23:57:08.0515 1060 ============================================================ 23:57:08.0515 1060 Scan started 23:57:08.0515 1060 Mode: Manual; SigCheck; TDLFS; 23:57:08.0515 1060 ============================================================ 23:57:08.0609 1060 ================ Scan system memory ======================== 23:57:08.0609 1060 System memory - ok 23:57:08.0625 1060 ================ Scan services ============================= 23:57:08.0718 1060 Abiosdsk - ok 23:57:08.0734 1060 abp480n5 - ok 23:57:08.0765 1060 [ AC407F1A62C3A300B4F2B5A9F1D55B2C ] ACPI C:\WINDOWS\system32\DRIVERS\ACPI.sys 23:57:08.0968 1060 ACPI - ok 23:57:09.0000 1060 [ 9E1CA3160DAFB159CA14F83B1E317F75 ] ACPIEC C:\WINDOWS\system32\drivers\ACPIEC.sys 23:57:09.0140 1060 ACPIEC - ok 23:57:09.0140 1060 adpu160m - ok 23:57:09.0187 1060 [ 8BED39E3C35D6A489438B8141717A557 ] aec C:\WINDOWS\system32\drivers\aec.sys 23:57:09.0296 1060 aec - ok 23:57:09.0328 1060 [ 1E44BC1E83D8FD2305F8D452DB109CF9 ] AFD C:\WINDOWS\System32\drivers\afd.sys 23:57:09.0390 1060 AFD - ok 23:57:09.0390 1060 Aha154x - ok 23:57:09.0390 1060 aic78u2 - ok 23:57:09.0406 1060 aic78xx - ok 23:57:09.0437 1060 [ 190CD73D4984F94D823F9444980513E5 ] ALG C:\WINDOWS\System32\alg.exe 23:57:09.0562 1060 ALG - ok 23:57:09.0562 1060 AliIde - ok 23:57:09.0593 1060 [ 267FC636801EDC5AB28E14036349E3BE ] Ambfilt C:\WINDOWS\system32\drivers\Ambfilt.sys 23:57:09.0671 1060 Ambfilt - ok 23:57:09.0671 1060 amsint - ok 23:57:09.0718 1060 [ D45960BE52C3C610D361977057F98C54 ] AppMgmt C:\WINDOWS\System32\appmgmts.dll 23:57:09.0828 1060 AppMgmt - ok 23:57:09.0828 1060 asc - ok 23:57:09.0828 1060 asc3350p - ok 23:57:09.0843 1060 asc3550 - ok 23:57:09.0953 1060 [ A986FCFDAC587E68478DB51547B90800 ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe 23:57:09.0968 1060 aspnet_state ( UnsignedFile.Multi.Generic ) - warning 23:57:09.0968 1060 aspnet_state - detected UnsignedFile.Multi.Generic (1) 23:57:10.0000 1060 [ B153AFFAC761E7F5FCFA822B9C4E97BC ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys 23:57:10.0125 1060 AsyncMac - ok 23:57:10.0140 1060 [ 9F3A2F5AA6875C72BF062C712CFA2674 ] atapi C:\WINDOWS\system32\DRIVERS\atapi.sys 23:57:10.0265 1060 atapi - ok 23:57:10.0265 1060 Atdisk - ok 23:57:10.0312 1060 [ E02ABC15C3428809F7BCB82571633575 ] Ati HotKey Poller C:\WINDOWS\system32\Ati2evxx.exe 23:57:10.0343 1060 Ati HotKey Poller ( UnsignedFile.Multi.Generic ) - warning 23:57:10.0343 1060 Ati HotKey Poller - detected UnsignedFile.Multi.Generic (1) 23:57:10.0421 1060 [ 3AE69EA1AF3D65C362869D6DEC0CFA52 ] ATI Smart C:\WINDOWS\system32\ati2sgag.exe 23:57:10.0453 1060 ATI Smart ( UnsignedFile.Multi.Generic ) - warning 23:57:10.0453 1060 ATI Smart - detected UnsignedFile.Multi.Generic (1) 23:57:10.0515 1060 [ EC2743BF722D4356375A0A01B69A81E0 ] ati2mtag C:\WINDOWS\system32\DRIVERS\ati2mtag.sys 23:57:10.0625 1060 ati2mtag ( UnsignedFile.Multi.Generic ) - warning 23:57:10.0625 1060 ati2mtag - detected UnsignedFile.Multi.Generic (1) 23:57:10.0671 1060 [ 9916C1225104BA14794209CFA8012159 ] Atmarpc C:\WINDOWS\system32\DRIVERS\atmarpc.sys 23:57:10.0781 1060 Atmarpc - ok 23:57:10.0812 1060 [ 58ED0D5452DF7BE732193E7999C6B9A4 ] AudioSrv C:\WINDOWS\System32\audiosrv.dll 23:57:10.0937 1060 AudioSrv - ok 23:57:10.0968 1060 [ D9F724AA26C010A217C97606B160ED68 ] audstub C:\WINDOWS\system32\DRIVERS\audstub.sys 23:57:11.0093 1060 audstub - ok 23:57:11.0140 1060 [ DA1F27D85E0D1525F6621372E7B685E9 ] Beep C:\WINDOWS\system32\drivers\Beep.sys 23:57:11.0281 1060 Beep - ok 23:57:11.0343 1060 [ D6F603772A789BB3228F310D650B8BD1 ] BITS C:\WINDOWS\system32\qmgr.dll 23:57:11.0453 1060 BITS - ok 23:57:11.0500 1060 [ 92A964547B96D697E5E9ED43B4297F5A ] BrScnUsb C:\WINDOWS\system32\DRIVERS\BrScnUsb.sys 23:57:11.0562 1060 BrScnUsb - ok 23:57:11.0578 1060 [ 90A673FC8E12A79AFBED2576F6A7AAF9 ] cbidf2k C:\WINDOWS\system32\drivers\cbidf2k.sys 23:57:11.0734 1060 cbidf2k - ok 23:57:11.0734 1060 cd20xrnt - ok 23:57:11.0734 1060 [ C1B486A7658353D33A10CC15211A873B ] Cdaudio C:\WINDOWS\system32\drivers\Cdaudio.sys 23:57:11.0890 1060 Cdaudio - ok 23:57:11.0906 1060 [ C885B02847F5D2FD45A24E219ED93B32 ] Cdfs C:\WINDOWS\system32\drivers\Cdfs.sys 23:57:12.0015 1060 Cdfs - ok 23:57:12.0031 1060 [ 1F4260CC5B42272D71F79E570A27A4FE ] Cdrom C:\WINDOWS\system32\DRIVERS\cdrom.sys 23:57:12.0156 1060 Cdrom - ok 23:57:12.0156 1060 Changer - ok 23:57:12.0187 1060 [ 28E3040D1F1CA2008CD6B29DFEBC9A5E ] CiSvc C:\WINDOWS\system32\cisvc.exe 23:57:12.0312 1060 CiSvc - ok 23:57:12.0312 1060 [ 778A30ED3C134EB7E406AFC407E9997D ] ClipSrv C:\WINDOWS\system32\clipsrv.exe 23:57:12.0437 1060 ClipSrv - ok 23:57:12.0437 1060 CmdIde - ok 23:57:12.0437 1060 COMSysApp - ok 23:57:12.0453 1060 Cpqarray - ok 23:57:12.0484 1060 [ 611F824E5C703A5A899F84C5F1699E4D ] CryptSvc C:\WINDOWS\System32\cryptsvc.dll 23:57:12.0593 1060 CryptSvc - ok 23:57:12.0593 1060 dac2w2k - ok 23:57:12.0609 1060 dac960nt - ok 23:57:12.0640 1060 [ 3127AFBF2C1ED0AB14A1BBB7AAECB85B ] DcomLaunch C:\WINDOWS\system32\rpcss.dll 23:57:12.0687 1060 DcomLaunch - ok 23:57:12.0703 1060 [ C29A1C9B75BA38FA37F8C44405DEC360 ] Dhcp C:\WINDOWS\System32\dhcpcsvc.dll 23:57:12.0828 1060 Dhcp - ok 23:57:12.0828 1060 [ 044452051F3E02E7963599FC8F4F3E25 ] Disk C:\WINDOWS\system32\DRIVERS\disk.sys 23:57:12.0937 1060 Disk - ok 23:57:12.0953 1060 dmadmin - ok 23:57:13.0000 1060 [ 0DCFC8395A99FECBB1EF771CEC7FE4EA ] dmboot C:\WINDOWS\system32\drivers\dmboot.sys 23:57:13.0125 1060 dmboot - ok 23:57:13.0125 1060 [ 53720AB12B48719D00E327DA470A619A ] dmio C:\WINDOWS\system32\drivers\dmio.sys 23:57:13.0234 1060 dmio - ok 23:57:13.0250 1060 [ E9317282A63CA4D188C0DF5E09C6AC5F ] dmload C:\WINDOWS\system32\drivers\dmload.sys 23:57:13.0390 1060 dmload - ok 23:57:13.0406 1060 [ 25C83FFBBA13B554EB6D59A9B2E2EE78 ] dmserver C:\WINDOWS\System32\dmserver.dll 23:57:13.0500 1060 dmserver - ok 23:57:13.0531 1060 [ 8A208DFCF89792A484E76C40E5F50B45 ] DMusic C:\WINDOWS\system32\drivers\DMusic.sys 23:57:13.0625 1060 DMusic - ok 23:57:13.0640 1060 [ 407F3227AC618FD1CA54B335B083DE07 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll 23:57:13.0656 1060 Dnscache - ok 23:57:13.0687 1060 [ 676E36C4FF5BCEA1900F44182B9723E6 ] Dot3svc C:\WINDOWS\System32\dot3svc.dll 23:57:13.0796 1060 Dot3svc - ok 23:57:13.0812 1060 dpti2o - ok 23:57:13.0828 1060 [ 8F5FCFF8E8848AFAC920905FBD9D33C8 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys 23:57:13.0921 1060 drmkaud - ok 23:57:13.0953 1060 [ 4E4F2FDDAB0A0736D7671134DCCE91FB ] EapHost C:\WINDOWS\System32\eapsvc.dll 23:57:14.0062 1060 EapHost - ok 23:57:14.0062 1060 [ 877C18558D70587AA7823A1A308AC96B ] ERSvc C:\WINDOWS\System32\ersvc.dll 23:57:14.0171 1060 ERSvc - ok 23:57:14.0203 1060 [ A3EDBE9053889FB24AB22492472B39DC ] Eventlog C:\WINDOWS\system32\services.exe 23:57:14.0203 1060 Eventlog - ok 23:57:14.0234 1060 [ AF4F6B5739D18CA7972AB53E091CBC74 ] EventSystem C:\WINDOWS\system32\es.dll 23:57:14.0250 1060 EventSystem - ok 23:57:14.0281 1060 [ 38D332A6D56AF32635675F132548343E ] Fastfat C:\WINDOWS\system32\drivers\Fastfat.sys 23:57:14.0390 1060 Fastfat - ok 23:57:14.0453 1060 [ 40602EBFBE06AA075C8E4560743F6883 ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll 23:57:14.0562 1060 FastUserSwitchingCompatibility - ok 23:57:14.0593 1060 [ 92CDD60B6730B9F50F6A1A0C1F8CDC81 ] Fdc C:\WINDOWS\system32\drivers\Fdc.sys 23:57:14.0687 1060 Fdc - ok 23:57:14.0687 1060 [ B0678A548587C5F1967B0D70BACAD6C1 ] Fips C:\WINDOWS\system32\drivers\Fips.sys 23:57:14.0796 1060 Fips - ok 23:57:14.0796 1060 [ 9D27E7B80BFCDF1CDD9B555862D5E7F0 ] Flpydisk C:\WINDOWS\system32\drivers\Flpydisk.sys 23:57:14.0906 1060 Flpydisk - ok 23:57:14.0921 1060 [ B2CF4B0786F8212CB92ED2B50C6DB6B0 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys 23:57:15.0046 1060 FltMgr - ok 23:57:15.0046 1060 [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys 23:57:15.0171 1060 Fs_Rec - ok 23:57:15.0171 1060 [ 8F1955CE42E1484714B542F341647778 ] Ftdisk C:\WINDOWS\system32\DRIVERS\ftdisk.sys 23:57:15.0328 1060 Ftdisk - ok 23:57:15.0343 1060 [ 0A02C63C8B144BD8C86B103DEE7C86A2 ] Gpc C:\WINDOWS\system32\DRIVERS\msgpc.sys 23:57:15.0421 1060 Gpc - ok 23:57:15.0468 1060 [ 573C7D0A32852B48F3058CFD8026F511 ] HDAudBus C:\WINDOWS\system32\DRIVERS\HDAudBus.sys 23:57:15.0562 1060 HDAudBus - ok 23:57:15.0609 1060 [ CB66BF85BF599BEFD6C6A57C2E20357F ] helpsvc C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll 23:57:15.0703 1060 helpsvc - ok 23:57:15.0718 1060 [ B35DA85E60C0103F2E4104532DA2F12B ] HidServ C:\WINDOWS\System32\hidserv.dll 23:57:15.0828 1060 HidServ - ok 23:57:15.0828 1060 [ CCF82C5EC8A7326C3066DE870C06DAF1 ] hidusb C:\WINDOWS\system32\DRIVERS\hidusb.sys 23:57:15.0937 1060 hidusb - ok 23:57:15.0953 1060 [ ED29F14101523A6E0E808107405D452C ] hkmsvc C:\WINDOWS\System32\kmsvc.dll 23:57:16.0062 1060 hkmsvc - ok 23:57:16.0078 1060 hpn - ok 23:57:16.0093 1060 [ F6AACF5BCE2893E0C1754AFEB672E5C9 ] HTTP C:\WINDOWS\system32\Drivers\HTTP.sys 23:57:16.0218 1060 HTTP - ok 23:57:16.0250 1060 [ 9E4ADB854CEBCFB81A4B36718FEECD16 ] HTTPFilter C:\WINDOWS\System32\w3ssl.dll 23:57:16.0343 1060 HTTPFilter - ok 23:57:16.0359 1060 i2omgmt - ok 23:57:16.0359 1060 i2omp - ok 23:57:16.0359 1060 [ E283B97CFBEB86C1D86BAED5F7846A92 ] i8042prt C:\WINDOWS\system32\drivers\i8042prt.sys 23:57:16.0468 1060 i8042prt - ok 23:57:16.0484 1060 [ 083A052659F5310DD8B6A6CB05EDCF8E ] Imapi C:\WINDOWS\system32\DRIVERS\imapi.sys 23:57:16.0578 1060 Imapi - ok 23:57:16.0593 1060 [ D4B413AA210C21E46AEDD2BA5B68D38E ] ImapiService C:\WINDOWS\system32\imapi.exe 23:57:16.0687 1060 ImapiService - ok 23:57:16.0703 1060 ini910u - ok 23:57:16.0796 1060 [ A7564CC4E170F1E5B84BAE6BB8C5F16E ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RtkHDAud.sys 23:57:16.0984 1060 IntcAzAudAddService - ok 23:57:17.0000 1060 IntelIde - ok 23:57:17.0031 1060 [ 3BB22519A194418D5FEC05D800A19AD0 ] Ip6Fw C:\WINDOWS\system32\drivers\ip6fw.sys 23:57:17.0125 1060 Ip6Fw - ok 23:57:17.0156 1060 [ 731F22BA402EE4B62748ADAF6363C182 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 23:57:17.0312 1060 IpFilterDriver - ok 23:57:17.0328 1060 [ B87AB476DCF76E72010632B5550955F5 ] IpInIp C:\WINDOWS\system32\DRIVERS\ipinip.sys 23:57:17.0468 1060 IpInIp - ok 23:57:17.0484 1060 [ CC748EA12C6EFFDE940EE98098BF96BB ] IpNat C:\WINDOWS\system32\DRIVERS\ipnat.sys 23:57:17.0593 1060 IpNat - ok 23:57:17.0609 1060 [ 23C74D75E36E7158768DD63D92789A91 ] IPSec C:\WINDOWS\system32\DRIVERS\ipsec.sys 23:57:17.0718 1060 IPSec - ok 23:57:17.0734 1060 [ C93C9FF7B04D772627A3646D89F7BF89 ] IRENUM C:\WINDOWS\system32\DRIVERS\irenum.sys 23:57:17.0843 1060 IRENUM - ok 23:57:17.0890 1060 [ 6DFB88F64135C525433E87648BDA30DE ] isapnp C:\WINDOWS\system32\DRIVERS\isapnp.sys 23:57:17.0984 1060 isapnp - ok 23:57:18.0000 1060 [ 1704D8C4C8807B889E43C649B478A452 ] Kbdclass C:\WINDOWS\system32\DRIVERS\kbdclass.sys 23:57:18.0109 1060 Kbdclass - ok 23:57:18.0125 1060 [ B6D6C117D771C98130497265F26D1882 ] kbdhid C:\WINDOWS\system32\DRIVERS\kbdhid.sys 23:57:18.0218 1060 kbdhid - ok 23:57:18.0250 1060 [ 692BCF44383D056AED41B045A323D378 ] kmixer C:\WINDOWS\system32\drivers\kmixer.sys 23:57:18.0359 1060 kmixer - ok 23:57:18.0359 1060 [ 1705745D900DABF2D89F90EBADDC7517 ] KSecDD C:\WINDOWS\system32\drivers\KSecDD.sys 23:57:18.0453 1060 KSecDD - ok 23:57:18.0468 1060 lbrtfdc - ok 23:57:18.0484 1060 [ 636714B7D43C8D0C80449123FD266920 ] LmHosts C:\WINDOWS\System32\lmhsvc.dll 23:57:18.0609 1060 LmHosts - ok 23:57:18.0625 1060 [ 4AE068242760A1FB6E1A44BF4E16AFA6 ] mnmdd C:\WINDOWS\system32\drivers\mnmdd.sys 23:57:18.0750 1060 mnmdd - ok 23:57:18.0781 1060 [ C2F1D365FD96791B037EE504868065D3 ] mnmsrvc C:\WINDOWS\system32\mnmsrvc.exe 23:57:18.0906 1060 mnmsrvc - ok 23:57:18.0921 1060 [ 6FB74EBD4EC57A6F1781DE3852CC3362 ] Modem C:\WINDOWS\system32\drivers\Modem.sys 23:57:19.0015 1060 Modem - ok 23:57:19.0046 1060 [ C7D9F9717916B34C1B00DD4834AF485C ] Monfilt C:\WINDOWS\system32\drivers\Monfilt.sys 23:57:19.0109 1060 Monfilt - ok 23:57:19.0109 1060 [ B24CE8005DEAB254C0251E15CB71D802 ] Mouclass C:\WINDOWS\system32\DRIVERS\mouclass.sys 23:57:19.0218 1060 Mouclass - ok 23:57:19.0218 1060 [ 66A6F73C74E1791464160A7065CE711A ] mouhid C:\WINDOWS\system32\DRIVERS\mouhid.sys 23:57:19.0359 1060 mouhid - ok 23:57:19.0359 1060 [ A80B9A0BAD1B73637DBCBBA7DF72D3FD ] MountMgr C:\WINDOWS\system32\drivers\MountMgr.sys 23:57:19.0468 1060 MountMgr - ok 23:57:19.0468 1060 mraid35x - ok 23:57:19.0484 1060 [ 11D42BB6206F33FBB3BA0288D3EF81BD ] MRxDAV C:\WINDOWS\system32\DRIVERS\mrxdav.sys 23:57:19.0578 1060 MRxDAV - ok 23:57:19.0593 1060 [ 35A031AF38C55F92D28AA03EE9F12CC9 ] MSDTC C:\WINDOWS\system32\msdtc.exe 23:57:19.0703 1060 MSDTC - ok 23:57:19.0718 1060 [ C941EA2454BA8350021D774DAF0F1027 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys 23:57:19.0812 1060 Msfs - ok 23:57:19.0828 1060 MSIServer - ok 23:57:19.0843 1060 [ D1575E71568F4D9E14CA56B7B0453BF1 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys 23:57:19.0937 1060 MSKSSRV - ok 23:57:19.0953 1060 [ 325BB26842FC7CCC1FCCE2C457317F3E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys 23:57:20.0046 1060 MSPCLOCK - ok 23:57:20.0046 1060 [ BAD59648BA099DA4A17680B39730CB3D ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys 23:57:20.0187 1060 MSPQM - ok 23:57:20.0203 1060 [ AF5F4F3F14A8EA2C26DE30F7A1E17136 ] mssmbios C:\WINDOWS\system32\DRIVERS\mssmbios.sys 23:57:20.0296 1060 mssmbios - ok 23:57:20.0312 1060 [ DE6A75F5C270E756C5508D94B6CF68F5 ] Mup C:\WINDOWS\system32\drivers\Mup.sys 23:57:20.0359 1060 Mup - ok 23:57:20.0375 1060 [ 46BB15AE2AC7D025D6D2567B876817BD ] napagent C:\WINDOWS\System32\qagentrt.dll 23:57:20.0500 1060 napagent - ok 23:57:20.0531 1060 [ 1DF7F42665C94B825322FAE71721130D ] NDIS C:\WINDOWS\system32\drivers\NDIS.sys 23:57:20.0640 1060 NDIS - ok 23:57:20.0671 1060 [ 0109C4F3850DFBAB279542515386AE22 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys 23:57:20.0687 1060 NdisTapi - ok 23:57:20.0703 1060 [ F927A4434C5028758A842943EF1A3849 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys 23:57:20.0812 1060 Ndisuio - ok 23:57:20.0828 1060 [ EDC1531A49C80614B2CFDA43CA8659AB ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys 23:57:20.0937 1060 NdisWan - ok 23:57:20.0953 1060 [ 9282BD12DFB069D3889EB3FCC1000A9B ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys 23:57:21.0015 1060 NDProxy - ok 23:57:21.0031 1060 [ 74B2B2F5BEA5E9A3DC021D685551BD3D ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys 23:57:21.0156 1060 NetBT - ok 23:57:21.0187 1060 [ 8ACE4251BFFD09CE75679FE940E996CC ] NetDDE C:\WINDOWS\system32\netdde.exe 23:57:21.0296 1060 NetDDE - ok 23:57:21.0296 1060 [ 8ACE4251BFFD09CE75679FE940E996CC ] NetDDEdsdm C:\WINDOWS\system32\netdde.exe 23:57:21.0390 1060 NetDDEdsdm - ok 23:57:21.0406 1060 [ E6D88F1F6745BF00B57E7855A2AB696C ] Netman C:\WINDOWS\System32\netman.dll 23:57:21.0531 1060 Netman - ok 23:57:21.0562 1060 [ F1B67B6B0751AE0E6E964B02821206A3 ] Nla C:\WINDOWS\System32\mswsock.dll 23:57:21.0578 1060 Nla - ok 23:57:21.0593 1060 [ 3182D64AE053D6FB034F44B6DEF8034A ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys 23:57:21.0687 1060 Npfs - ok 23:57:21.0703 1060 [ 78A08DD6A8D65E697C18E1DB01C5CDCA ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys 23:57:21.0812 1060 Ntfs - ok 23:57:21.0859 1060 [ 56AF4064996FA5BAC9C449B1514B4770 ] NtmsSvc C:\WINDOWS\system32\ntmssvc.dll 23:57:21.0984 1060 NtmsSvc - ok 23:57:22.0000 1060 [ 73C1E1F395918BC2C6DD67AF7591A3AD ] Null C:\WINDOWS\system32\drivers\Null.sys 23:57:22.0125 1060 Null - ok 23:57:22.0171 1060 [ 7D275ECDA4628318912F6C945D5CF963 ] NVENETFD C:\WINDOWS\system32\DRIVERS\NVENETFD.sys 23:57:22.0218 1060 NVENETFD - ok 23:57:22.0234 1060 [ 75E2E77C5497F34E60491D27BF03F1CB ] nvgts C:\WINDOWS\system32\DRIVERS\nvgts.sys 23:57:22.0234 1060 nvgts - ok 23:57:22.0250 1060 [ B64AACEFAD2BE5BFF5353FE681253C67 ] nvnetbus C:\WINDOWS\system32\DRIVERS\nvnetbus.sys 23:57:22.0281 1060 nvnetbus - ok 23:57:22.0375 1060 [ B305F3FAD35083837EF46A0BBCE2FC57 ] NwlnkFlt C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys 23:57:22.0515 1060 NwlnkFlt - ok 23:57:22.0515 1060 [ C99B3415198D1AAB7227F2C88FD664B9 ] NwlnkFwd C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys 23:57:22.0640 1060 NwlnkFwd - ok 23:57:22.0656 1060 [ F84785660305B9B903FB3BCA8BA29837 ] Parport C:\WINDOWS\system32\drivers\Parport.sys 23:57:22.0765 1060 Parport - ok 23:57:22.0765 1060 [ BEB3BA25197665D82EC7065B724171C6 ] PartMgr C:\WINDOWS\system32\drivers\PartMgr.sys 23:57:22.0906 1060 PartMgr - ok 23:57:22.0921 1060 [ C2BF987829099A3EAA2CA6A0A90ECB4F ] ParVdm C:\WINDOWS\system32\drivers\ParVdm.sys 23:57:23.0046 1060 ParVdm - ok 23:57:23.0046 1060 [ 387E8DEDC343AA2D1EFBC30580273ACD ] PCI C:\WINDOWS\system32\DRIVERS\pci.sys 23:57:23.0156 1060 PCI - ok 23:57:23.0156 1060 PCIDump - ok 23:57:23.0171 1060 [ 59BA86D9A61CBCF4DF8E598C331F5B82 ] PCIIde C:\WINDOWS\system32\DRIVERS\pciide.sys 23:57:23.0312 1060 PCIIde - ok 23:57:23.0343 1060 [ A2A966B77D61847D61A3051DF87C8C97 ] Pcmcia C:\WINDOWS\system32\drivers\Pcmcia.sys 23:57:23.0437 1060 Pcmcia - ok 23:57:23.0453 1060 PDCOMP - ok 23:57:23.0453 1060 PDFRAME - ok 23:57:23.0453 1060 PDRELI - ok 23:57:23.0468 1060 PDRFRAME - ok 23:57:23.0468 1060 perc2 - ok 23:57:23.0484 1060 perc2hib - ok 23:57:23.0515 1060 [ A3EDBE9053889FB24AB22492472B39DC ] PlugPlay C:\WINDOWS\system32\services.exe 23:57:23.0531 1060 PlugPlay - ok 23:57:23.0531 1060 [ AFB8261B56CBA0D86AEB6DF682AF9785 ] PolicyAgent C:\WINDOWS\system32\lsass.exe 23:57:23.0640 1060 PolicyAgent - ok 23:57:23.0656 1060 [ EFEEC01B1D3CF84F16DDD24D9D9D8F99 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys 23:57:23.0750 1060 PptpMiniport - ok 23:57:23.0765 1060 [ 2CB55427C58679F49AD600FCCBA76360 ] Processor C:\WINDOWS\system32\DRIVERS\processr.sys 23:57:23.0875 1060 Processor - ok 23:57:23.0875 1060 [ AFB8261B56CBA0D86AEB6DF682AF9785 ] ProtectedStorage C:\WINDOWS\system32\lsass.exe 23:57:23.0968 1060 ProtectedStorage - ok 23:57:23.0968 1060 [ 09298EC810B07E5D582CB3A3F9255424 ] PSched C:\WINDOWS\system32\DRIVERS\psched.sys 23:57:24.0062 1060 PSched - ok 23:57:24.0078 1060 [ 80D317BD1C3DBC5D4FE7B1678C60CADD ] Ptilink C:\WINDOWS\system32\DRIVERS\ptilink.sys 23:57:24.0203 1060 Ptilink - ok 23:57:24.0218 1060 ql1080 - ok 23:57:24.0218 1060 Ql10wnt - ok 23:57:24.0218 1060 ql12160 - ok 23:57:24.0234 1060 ql1240 - ok 23:57:24.0234 1060 ql1280 - ok 23:57:24.0250 1060 [ FE0D99D6F31E4FAD8159F690D68DED9C ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys 23:57:24.0375 1060 RasAcd - ok 23:57:24.0421 1060 [ F5BA6CACCDB66C8F048E867563203246 ] RasAuto C:\WINDOWS\System32\rasauto.dll 23:57:24.0515 1060 RasAuto - ok 23:57:24.0546 1060 [ 11B4A627BC9614B885C4969BFA5FF8A6 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys 23:57:24.0656 1060 Rasl2tp - ok 23:57:24.0671 1060 [ F9A7B66EA345726EDB5862A46B1ECCD5 ] RasMan C:\WINDOWS\System32\rasmans.dll 23:57:24.0781 1060 RasMan - ok 23:57:24.0781 1060 [ 5BC962F2654137C9909C3D4603587DEE ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys 23:57:24.0875 1060 RasPppoe - ok 23:57:24.0890 1060 [ FDBB1D60066FCFBB7452FD8F9829B242 ] Raspti C:\WINDOWS\system32\DRIVERS\raspti.sys 23:57:25.0000 1060 Raspti - ok 23:57:25.0015 1060 [ 4912D5B403614CE99C28420F75353332 ] RDPCDD C:\WINDOWS\system32\DRIVERS\RDPCDD.sys 23:57:25.0140 1060 RDPCDD - ok 23:57:25.0171 1060 [ 43AF5212BD8FB5BA6EED9754358BD8F7 ] RDPWD C:\WINDOWS\system32\drivers\RDPWD.sys 23:57:25.0203 1060 RDPWD - ok 23:57:25.0218 1060 [ 263AF18AF0F3DB99F574C95F284CCEC9 ] RDSessMgr C:\WINDOWS\system32\sessmgr.exe 23:57:25.0312 1060 RDSessMgr - ok 23:57:25.0328 1060 [ ED761D453856F795A7FE056E42C36365 ] redbook C:\WINDOWS\system32\DRIVERS\redbook.sys 23:57:25.0437 1060 redbook - ok 23:57:25.0453 1060 [ 0E97EC96D6942CEEC2D188CC2EB69A01 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll 23:57:25.0562 1060 RemoteAccess - ok 23:57:25.0593 1060 [ E4CD1F3D84E1C2CA0B8CF7501E201593 ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll 23:57:25.0718 1060 RemoteRegistry - ok 23:57:25.0734 1060 [ 3127AFBF2C1ED0AB14A1BBB7AAECB85B ] RpcSs C:\WINDOWS\system32\rpcss.dll 23:57:25.0781 1060 RpcSs - ok 23:57:25.0843 1060 [ 4BDD71B4B521521499DFD14735C4F398 ] RSVP C:\WINDOWS\system32\rsvp.exe 23:57:26.0000 1060 RSVP - ok 23:57:26.0015 1060 [ AFB8261B56CBA0D86AEB6DF682AF9785 ] SamSs C:\WINDOWS\system32\lsass.exe 23:57:26.0109 1060 SamSs - ok 23:57:26.0109 1060 [ DCEC079FAD95D36C8DD5CB6D779DFE32 ] SCardSvr C:\WINDOWS\System32\SCardSvr.exe 23:57:26.0203 1060 SCardSvr - ok 23:57:26.0218 1060 [ A050194A44D7FA8D7186ED2F4E8367AE ] Schedule C:\WINDOWS\system32\schedsvc.dll 23:57:26.0328 1060 Schedule - ok 23:57:26.0484 1060 [ 95AA9E165C7DE1B64A11E8B18E91E499 ] SDScannerService C:\Programme\Spybot - SD 2\SDFSSvc.exe 23:57:26.0578 1060 SDScannerService ( UnsignedFile.Multi.Generic ) - warning 23:57:26.0578 1060 SDScannerService - detected UnsignedFile.Multi.Generic (1) 23:57:26.0609 1060 [ D31398D4BB4907B517B6E784C2100C4A ] SDUpdateService C:\Programme\Spybot - SD 2\SDUpdSvc.exe 23:57:26.0671 1060 SDUpdateService ( UnsignedFile.Multi.Generic ) - warning 23:57:26.0671 1060 SDUpdateService - detected UnsignedFile.Multi.Generic (1) 23:57:26.0671 1060 [ 6AE8E702D1027A9627DDE2B77BB9992B ] SDWSCService C:\Programme\Spybot - SD 2\SDWSCSvc.exe 23:57:26.0687 1060 SDWSCService - ok 23:57:26.0718 1060 [ 90A3935D05B494A5A39D37E71F09A677 ] Secdrv C:\WINDOWS\system32\DRIVERS\secdrv.sys 23:57:26.0812 1060 Secdrv - ok 23:57:26.0859 1060 [ BEE4CFD1D48C23B44CF4B974B0B79B2B ] seclogon C:\WINDOWS\System32\seclogon.dll 23:57:26.0968 1060 seclogon - ok 23:57:26.0968 1060 [ 2AAC9B6ED9EDDFFB721D6452E34D67E3 ] SENS C:\WINDOWS\system32\sens.dll 23:57:27.0078 1060 SENS - ok 23:57:27.0093 1060 [ CF24EB4F0412C82BCD1F4F35A025E31D ] Serial C:\WINDOWS\system32\drivers\Serial.sys 23:57:27.0203 1060 Serial - ok 23:57:27.0218 1060 [ 8E6B8C671615D126FDC553D1E2DE5562 ] Sfloppy C:\WINDOWS\system32\drivers\Sfloppy.sys 23:57:27.0328 1060 Sfloppy - ok 23:57:27.0359 1060 [ CAD058D5F8B889A87CA3EB3CF624DCEF ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll 23:57:27.0468 1060 SharedAccess - ok 23:57:27.0484 1060 [ 40602EBFBE06AA075C8E4560743F6883 ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll 23:57:27.0578 1060 ShellHWDetection - ok 23:57:27.0593 1060 Simbad - ok 23:57:27.0593 1060 Sparrow - ok 23:57:27.0609 1060 [ AB8B92451ECB048A4D1DE7C3FFCB4A9F ] splitter C:\WINDOWS\system32\drivers\splitter.sys 23:57:27.0703 1060 splitter - ok 23:57:27.0734 1060 [ 60784F891563FB1B767F70117FC2428F ] Spooler C:\WINDOWS\system32\spoolsv.exe 23:57:27.0781 1060 Spooler - ok 23:57:27.0812 1060 [ 50FA898F8C032796D3B1B9951BB5A90F ] sr C:\WINDOWS\system32\DRIVERS\sr.sys 23:57:27.0906 1060 sr - ok 23:57:27.0937 1060 [ FE77A85495065F3AD59C5C65B6C54182 ] srservice C:\WINDOWS\system32\srsvc.dll 23:57:28.0046 1060 srservice - ok 23:57:28.0062 1060 [ 4DF5B05DFAEC29E13E1ED6F6EE12C500 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll 23:57:28.0156 1060 SSDPSRV - ok 23:57:28.0203 1060 [ BC2C5985611C5356B24AEB370953DED9 ] stisvc C:\WINDOWS\system32\wiaservc.dll 23:57:28.0328 1060 stisvc - ok 23:57:28.0343 1060 [ 3941D127AEF12E93ADDF6FE6EE027E0F ] swenum C:\WINDOWS\system32\DRIVERS\swenum.sys 23:57:28.0437 1060 swenum - ok 23:57:28.0453 1060 [ 8CE882BCC6CF8A62F2B2323D95CB3D01 ] swmidi C:\WINDOWS\system32\drivers\swmidi.sys 23:57:28.0562 1060 swmidi - ok 23:57:28.0562 1060 SwPrv - ok 23:57:28.0578 1060 symc810 - ok 23:57:28.0578 1060 symc8xx - ok 23:57:28.0578 1060 sym_hi - ok 23:57:28.0593 1060 sym_u3 - ok 23:57:28.0609 1060 [ 8B83F3ED0F1688B4958F77CD6D2BF290 ] sysaudio C:\WINDOWS\system32\drivers\sysaudio.sys 23:57:28.0703 1060 sysaudio - ok 23:57:28.0718 1060 [ 2903FFFA2523926D6219428040DCE6B9 ] SysmonLog C:\WINDOWS\system32\smlogsvc.exe 23:57:28.0828 1060 SysmonLog - ok 23:57:28.0859 1060 [ 05903CAC4B98908D55EA5774775B382E ] TapiSrv C:\WINDOWS\System32\tapisrv.dll 23:57:28.0968 1060 TapiSrv - ok 23:57:29.0000 1060 [ 9AEFA14BD6B182D61E3119FA5F436D3D ] Tcpip C:\WINDOWS\system32\DRIVERS\tcpip.sys 23:57:29.0015 1060 Tcpip - ok 23:57:29.0031 1060 [ 6471A66807F5E104E4885F5B67349397 ] TDPIPE C:\WINDOWS\system32\drivers\TDPIPE.sys 23:57:29.0125 1060 TDPIPE - ok 23:57:29.0156 1060 [ C56B6D0402371CF3700EB322EF3AAF61 ] TDTCP C:\WINDOWS\system32\drivers\TDTCP.sys 23:57:29.0250 1060 TDTCP - ok 23:57:29.0250 1060 [ 88155247177638048422893737429D9E ] TermDD C:\WINDOWS\System32\drivers\termdd.sys 23:57:29.0343 1060 TermDD - ok 23:57:29.0390 1060 [ B7DE02C863D8F5A005A7BF375375A6A4 ] TermService C:\WINDOWS\System32\termsrv.dll 23:57:29.0500 1060 TermService - ok 23:57:29.0515 1060 [ 40602EBFBE06AA075C8E4560743F6883 ] Themes C:\WINDOWS\System32\shsvcs.dll 23:57:29.0609 1060 Themes - ok 23:57:29.0625 1060 [ 03681A1CE77F51586903869A5AB1DEAB ] TlntSvr C:\WINDOWS\system32\tlntsvr.exe 23:57:29.0718 1060 TlntSvr - ok 23:57:29.0734 1060 TosIde - ok 23:57:29.0750 1060 [ 626504572B175867F30F3215C04B3E2F ] TrkWks C:\WINDOWS\system32\trkwks.dll 23:57:29.0859 1060 TrkWks - ok 23:57:29.0875 1060 [ 5787B80C2E3C5E2F56C2A233D91FA2C9 ] Udfs C:\WINDOWS\system32\drivers\Udfs.sys 23:57:29.0968 1060 Udfs - ok 23:57:29.0984 1060 ultra - ok 23:57:30.0000 1060 [ 402DDC88356B1BAC0EE3DD1580C76A31 ] Update C:\WINDOWS\system32\DRIVERS\update.sys 23:57:30.0109 1060 Update - ok 23:57:30.0125 1060 [ 1DFD8975D8C89214B98D9387C1125B49 ] upnphost C:\WINDOWS\System32\upnphost.dll 23:57:30.0265 1060 upnphost - ok 23:57:30.0265 1060 [ 9B11E6118958E63E1FEF129466E2BDA7 ] UPS C:\WINDOWS\System32\ups.exe 23:57:30.0359 1060 UPS - ok 23:57:30.0390 1060 [ 173F317CE0DB8E21322E71B7E60A27E8 ] usbccgp C:\WINDOWS\system32\DRIVERS\usbccgp.sys 23:57:30.0484 1060 usbccgp - ok 23:57:30.0500 1060 [ 65DCF09D0E37D4C6B11B5B0B76D470A7 ] usbehci C:\WINDOWS\system32\DRIVERS\usbehci.sys 23:57:30.0609 1060 usbehci - ok 23:57:30.0625 1060 [ 1AB3CDDE553B6E064D2E754EFE20285C ] usbhub C:\WINDOWS\system32\DRIVERS\usbhub.sys 23:57:30.0718 1060 usbhub - ok 23:57:30.0750 1060 [ 0DAECCE65366EA32B162F85F07C6753B ] usbohci C:\WINDOWS\system32\DRIVERS\usbohci.sys 23:57:30.0859 1060 usbohci - ok 23:57:30.0859 1060 [ A717C8721046828520C9EDF31288FC00 ] usbprint C:\WINDOWS\system32\DRIVERS\usbprint.sys 23:57:30.0968 1060 usbprint - ok 23:57:30.0968 1060 [ A32426D9B14A089EAA1D922E0C5801A9 ] usbstor C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS 23:57:31.0062 1060 usbstor - ok 23:57:31.0078 1060 [ 0D3A8FAFCEACD8B7625CD549757A7DF1 ] VgaSave C:\WINDOWS\System32\drivers\vga.sys 23:57:31.0171 1060 VgaSave - ok 23:57:31.0171 1060 ViaIde - ok 23:57:31.0187 1060 [ A5A712F4E880874A477AF790B5186E1D ] VolSnap C:\WINDOWS\system32\drivers\VolSnap.sys 23:57:31.0296 1060 VolSnap - ok 23:57:31.0343 1060 [ 68F106273BE29E7B7EF8266977268E78 ] VSS C:\WINDOWS\System32\vssvc.exe 23:57:31.0437 1060 VSS - ok 23:57:31.0453 1060 [ 7B353059E665F8B7AD2BBEAEF597CF45 ] W32Time C:\WINDOWS\system32\w32time.dll 23:57:31.0546 1060 W32Time - ok 23:57:31.0578 1060 [ E20B95BAEDB550F32DD489265C1DA1F6 ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys 23:57:31.0671 1060 Wanarp - ok 23:57:31.0671 1060 WDICA - ok 23:57:31.0687 1060 [ 6768ACF64B18196494413695F0C3A00F ] wdmaud C:\WINDOWS\system32\drivers\wdmaud.sys 23:57:31.0781 1060 wdmaud - ok 23:57:31.0812 1060 [ 81727C9873E3905A2FFC1EBD07265002 ] WebClient C:\WINDOWS\System32\webclnt.dll 23:57:31.0906 1060 WebClient - ok 23:57:31.0968 1060 [ 6F3F3973D97714CC5F906A19FE883729 ] winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll 23:57:32.0078 1060 winmgmt - ok 23:57:32.0109 1060 [ C51B4A5C05A5475708E3C81C7765B71D ] WmdmPmSN C:\WINDOWS\system32\MsPMSNSv.dll 23:57:32.0125 1060 WmdmPmSN - ok 23:57:32.0187 1060 [ FFA4D901D46D07A5BAB2D8307FBB51A6 ] Wmi C:\WINDOWS\System32\advapi32.dll 23:57:32.0218 1060 Wmi - ok 23:57:32.0250 1060 [ 93908111BA57A6E60EC2FA2DE202105C ] WmiApSrv C:\WINDOWS\system32\wbem\wmiapsrv.exe 23:57:32.0359 1060 WmiApSrv - ok 23:57:32.0421 1060 [ BF05650BB7DF5E9EBDD25974E22403BB ] WMPNetworkSvc C:\Programme\Windows Media Player\WMPNetwk.exe 23:57:32.0468 1060 WMPNetworkSvc - ok 23:57:32.0484 1060 [ 300B3E84FAF1A5C1F791C159BA28035D ] wscsvc C:\WINDOWS\system32\wscsvc.dll 23:57:32.0593 1060 wscsvc - ok 23:57:32.0609 1060 [ 7B4FE05202AA6BF9F4DFD0E6A0D8A085 ] wuauserv C:\WINDOWS\system32\wuauserv.dll 23:57:32.0718 1060 wuauserv - ok 23:57:32.0750 1060 [ C4F109C005F6725162D2D12CA751E4A7 ] WZCSVC C:\WINDOWS\System32\wzcsvc.dll 23:57:32.0859 1060 WZCSVC - ok 23:57:32.0875 1060 [ 0ADA34871A2E1CD2CAAFED1237A47750 ] xmlprov C:\WINDOWS\System32\xmlprov.dll 23:57:32.0984 1060 xmlprov - ok 23:57:32.0984 1060 ================ Scan global =============================== 23:57:33.0000 1060 [ 2C60091CA5F67C3032EAB3B30390C27F ] C:\WINDOWS\system32\basesrv.dll 23:57:33.0031 1060 [ E62178BC21EAC63A3B9A2DBD46C1B505 ] C:\WINDOWS\system32\winsrv.dll 23:57:33.0031 1060 [ E62178BC21EAC63A3B9A2DBD46C1B505 ] C:\WINDOWS\system32\winsrv.dll 23:57:33.0062 1060 [ A3EDBE9053889FB24AB22492472B39DC ] C:\WINDOWS\system32\services.exe 23:57:33.0062 1060 [Global] - ok 23:57:33.0062 1060 ================ Scan MBR ================================== 23:57:33.0078 1060 [ 72B8CE41AF0DE751C946802B3ED844B4 ] \Device\Harddisk0\DR0 23:57:33.0687 1060 \Device\Harddisk0\DR0 - ok 23:57:33.0687 1060 [ 72B8CE41AF0DE751C946802B3ED844B4 ] \Device\Harddisk1\DR1 23:57:34.0046 1060 \Device\Harddisk1\DR1 - ok 23:57:34.0046 1060 ================ Scan VBR ================================== 23:57:34.0046 1060 [ 48CFFF847367862DD64CEB92318C4E5A ] \Device\Harddisk0\DR0\Partition1 23:57:34.0062 1060 \Device\Harddisk0\DR0\Partition1 - ok 23:57:34.0078 1060 [ D381F0965C2C7C64E18A6CC61460C574 ] \Device\Harddisk0\DR0\Partition2 23:57:34.0078 1060 \Device\Harddisk0\DR0\Partition2 - ok 23:57:34.0078 1060 [ EB36AABB5AB664E40C862F3A87E84226 ] \Device\Harddisk1\DR1\Partition1 23:57:34.0078 1060 \Device\Harddisk1\DR1\Partition1 - ok 23:57:34.0078 1060 ============================================================ 23:57:34.0078 1060 Scan finished 23:57:34.0078 1060 ============================================================ 23:57:34.0187 1964 Detected object count: 6 23:57:34.0187 1964 Actual detected object count: 6 23:57:50.0656 1964 aspnet_state ( UnsignedFile.Multi.Generic ) - skipped by user 23:57:50.0656 1964 aspnet_state ( UnsignedFile.Multi.Generic ) - User select action: Skip 23:57:50.0656 1964 Ati HotKey Poller ( UnsignedFile.Multi.Generic ) - skipped by user 23:57:50.0656 1964 Ati HotKey Poller ( UnsignedFile.Multi.Generic ) - User select action: Skip 23:57:50.0656 1964 ATI Smart ( UnsignedFile.Multi.Generic ) - skipped by user 23:57:50.0656 1964 ATI Smart ( UnsignedFile.Multi.Generic ) - User select action: Skip 23:57:50.0656 1964 ati2mtag ( UnsignedFile.Multi.Generic ) - skipped by user 23:57:50.0656 1964 ati2mtag ( UnsignedFile.Multi.Generic ) - User select action: Skip 23:57:50.0656 1964 SDScannerService ( UnsignedFile.Multi.Generic ) - skipped by user 23:57:50.0656 1964 SDScannerService ( UnsignedFile.Multi.Generic ) - User select action: Skip 23:57:50.0671 1964 SDUpdateService ( UnsignedFile.Multi.Generic ) - skipped by user 23:57:50.0671 1964 SDUpdateService ( UnsignedFile.Multi.Generic ) - User select action: Skip 23:58:02.0937 0220 Deinitialize success Vielen Dank schonmal |
07.08.2013, 10:19 | #4 |
/// TB-Ausbilder | Windows XP bzw. Betriebssystem unabhängig, Rootkit plagt selbst nach Formatierung Dann kannst du das Log auch auf 2 Posts aufteilen.
__________________ Digitale Freibeuter gegen Malware! Keine Hilfe per PM! |
07.08.2013, 10:22 | #5 |
/// TB-Ausbilder | Windows XP bzw. Betriebssystem unabhängig, Rootkit plagt selbst nach Formatierung Und welcher Treiber sollte das gewesen sein?
__________________ Digitale Freibeuter gegen Malware! Keine Hilfe per PM! |
07.08.2013, 10:54 | #6 |
| Windows XP bzw. Betriebssystem unabhängig, Rootkit plagt selbst nach Formatierung Ok, dann Teile ich die Logfile auf. Weiß den genauen Namen des Treibers leider nicht mehr, war aber für einen Remote-dienst. Zusätzlich habe ich noch einen VPN-Tunnel (Teredo-Tunnel o.Ä.) entdeckt. Als ich einige Scanner laufen lies (AntiVir,Spybot) und diese nix gefunden haben (gerade auch die Dateien in der Registry), hab ich das System neu aufgesetzt. Um "sicher" zu gehen, hab ich mir die aktuellen Service Packs per Live-System geladen, die Treiber für interne Geräte auch und diese nach Formatierung der Platte so auch installiert (System war seit dem nicht Online). Deshalb war ich auch so verwundert, daß nach der Formatierung immer noch etwas da ist :/ Log Teil1 Farbar Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 04-08-2013 01 Ran by Fabian (administrator) on 05-08-2013 11:29:32 Running from C:\Dokumente und Einstellungen\Fabian\Desktop Microsoft Windows XP Service Pack 3 (X86) OS Language: German Standard Internet Explorer Version 8 Boot Mode: Normal ==================== Could not list processes =============== ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SunJavaUpdateSched] - C:\Programme\Java\jre1.5.0\bin\jusched.exe [36972 2013-07-28] (Sun Microsystems, Inc.) HKLM\...\Run: [AtiPTA] - C:\Windows\system32\atiptaxx.exe [344064 2006-02-22] (ATI Technologies, Inc.) HKLM\...\Run: [RTHDCPL] - C:\Windows\RTHDCPL.EXE [20143688 2013-03-12] (Realtek Semiconductor Corp.) HKLM\...\Run: [SDTray] - C:\Programme\Spybot - SD 2\SDTray.exe [3830224 2013-05-16] (Safer-Networking Ltd.) Winlogon\Notify\AtiExtEvent: Ati2evxx.dll (ATI Technologies Inc.) Winlogon\Notify\SDWinLogon: SDWinLogon.dll [X] IMEO\taskmgr.exe: [Debugger] "C:\WINDOWS\PROCEXP.EXE" BootExecute: autocheck autochk * sdnclean.exe ==================== Internet (Whitelisted) ==================== ProxyEnable: Internet Explorer proxy is enabled. ProxyServer: localhost:21320 HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?} SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?} SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC Toolbar: HKCU -&Adresse - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\Windows\system32\browseui.dll (Microsoft Corporation) DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0-windows-i586.cab DPF: {CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0-windows-i586.cab Handler: ipp - No CLSID Value - Handler: msdaipp - No CLSID Value - Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt ========================== Services (Whitelisted) ================= S4 ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [593920 2007-09-28] () R2 SDScannerService; C:\Programme\Spybot - SD 2\SDFSSvc.exe [1817560 2013-05-16] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Programme\Spybot - SD 2\SDUpdSvc.exe [1033688 2013-05-16] (Safer-Networking Ltd.) S2 SDWSCService; C:\Programme\Spybot - SD 2\SDWSCSvc.exe [171928 2013-05-15] (Safer-Networking Ltd.) S3 WMPNetworkSvc; C:\Programme\Windows Media Player\WMPNetwk.exe [920576 2006-11-03] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== S3 Ambfilt; C:\Windows\System32\drivers\Ambfilt.sys [1691480 2009-11-18] (Creative) R3 ati2mtag; C:\Windows\System32\DRIVERS\ati2mtag.sys [2782208 2007-12-05] (ATI Technologies Inc.) R3 BrScnUsb; C:\Windows\System32\DRIVERS\BrScnUsb.sys [15295 2004-10-15] (Brother Industries Ltd.) R3 HDAudBus; C:\Windows\System32\DRIVERS\HDAudBus.sys [144384 2008-04-13] (Windows (R) Server 2003 DDK provider) S3 Monfilt; C:\Windows\System32\drivers\Monfilt.sys [1395800 2009-11-18] (Creative Technology Ltd.) R3 NVENETFD; C:\Windows\System32\DRIVERS\NVENETFD.sys [54784 2008-08-01] (NVIDIA Corporation) R0 nvgts; C:\Windows\System32\DRIVERS\nvgts.sys [145952 2008-11-12] (NVIDIA Corporation) R3 nvnetbus; C:\Windows\System32\DRIVERS\nvnetbus.sys [22016 2008-08-01] (NVIDIA Corporation) S4 IntelIde; No ImagePath U1 WS2IFSL; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-05 11:27 - 2013-08-05 11:27 - 00000474 _____ C:\Dokumente und Einstellungen\Fabian\Desktop\defogger_disable.log 2013-08-05 11:27 - 2013-08-05 11:27 - 00000000 _____ C:\Dokumente und Einstellungen\Fabian\defogger_reenable 2013-08-05 11:26 - 2013-08-05 12:59 - 00377856 _____ C:\Dokumente und Einstellungen\Fabian\Desktop\6mgt9fm9.exe 2013-08-05 11:26 - 2013-08-05 12:51 - 00050477 _____ C:\Dokumente und Einstellungen\Fabian\Desktop\Defogger.exe 2013-08-05 11:26 - 2013-08-05 12:40 - 01228856 _____ (Farbar) C:\Dokumente und Einstellungen\Fabian\Desktop\FRST.exe 2013-08-05 11:12 - 2013-08-05 11:12 - 00000548 _____ C:\Dokumente und Einstellungen\Büro-Fab\Desktop\defogger_disable.log 2013-08-05 11:12 - 2013-08-05 11:12 - 00000000 _____ C:\Dokumente und Einstellungen\Büro-Fab\defogger_reenable 2013-08-05 11:11 - 2013-08-05 12:59 - 00377856 _____ C:\Dokumente und Einstellungen\Büro-Fab\Desktop\6mgt9fm9.exe 2013-08-05 11:11 - 2013-08-05 12:51 - 00050477 _____ C:\Dokumente und Einstellungen\Büro-Fab\Desktop\Defogger.exe 2013-08-05 11:11 - 2013-08-05 12:40 - 01228856 _____ (Farbar) C:\Dokumente und Einstellungen\Büro-Fab\Desktop\FRST.exe 2013-08-02 23:51 - 2013-08-02 23:51 - 00000000 __SHD C:\Dokumente und Einstellungen\NetworkService\IETldCache 2013-08-02 13:42 - 2013-08-02 13:42 - 00447812 ____R C:\WINDOWS\system32\Drivers\etc\hosts.20130802-134246.backup 2013-08-02 13:42 - 2004-08-04 14:00 - 00000820 _____ C:\WINDOWS\system32\Drivers\etc\hosts.20130802-134219.backup 2013-08-01 02:41 - 2013-08-01 02:41 - 00000000 ____D C:\Dokumente und Einstellungen\Fabian\Eigene Dateien\ProcAlyzer Dumps 2013-08-01 02:40 - 2013-08-05 11:28 - 00000608 _____ C:\WINDOWS\Tasks\Check for updates (Spybot - Search & Destroy).job 2013-08-01 02:40 - 2013-08-05 11:27 - 00065536 _____ C:\WINDOWS\system32\config\SpybotSD.evt 2013-08-01 02:40 - 2013-08-01 02:40 - 00001680 _____ C:\Dokumente und Einstellungen\All Users\Desktop\Spybot-S&D Start Center.lnk 2013-08-01 02:40 - 2013-08-01 02:40 - 00000580 _____ C:\WINDOWS\Tasks\Refresh immunization (Spybot - Search & Destroy).job 2013-08-01 02:40 - 2013-08-01 02:40 - 00000410 _____ C:\WINDOWS\Tasks\Scan the system (Spybot - Search & Destroy).job 2013-08-01 02:40 - 2013-08-01 02:40 - 00000000 ____D C:\Programme\Spybot - SD 2 2013-08-01 02:40 - 2009-01-25 13:14 - 00015224 _____ (Safer Networking Limited) C:\WINDOWS\system32\sdnclean.exe 2013-08-01 02:29 - 2013-08-01 02:29 - 00000000 __SHD C:\Dokumente und Einstellungen\Büro-Fab\PrivacIE 2013-08-01 02:21 - 2013-08-01 02:21 - 00001319 _____ C:\Dokumente und Einstellungen\Büro-Fab\Desktop\Explorer.lnk 2013-08-01 02:20 - 2013-08-05 11:19 - 00000190 ___SH C:\Dokumente und Einstellungen\Büro-Fab\ntuser.ini 2013-08-01 02:20 - 2013-08-05 11:12 - 00000000 ____D C:\Dokumente und Einstellungen\Büro-Fab 2013-08-01 02:20 - 2013-08-01 02:20 - 00000000 __SHD C:\Dokumente und Einstellungen\Büro-Fab\IETldCache 2013-08-01 02:20 - 2013-07-28 12:35 - 00000000 ___RD C:\Dokumente und Einstellungen\Büro-Fab\Startmenü 2013-08-01 02:20 - 2013-07-28 12:35 - 00000000 ___HD C:\Dokumente und Einstellungen\Büro-Fab\Netzwerkumgebung 2013-08-01 02:20 - 2013-07-28 12:35 - 00000000 ___HD C:\Dokumente und Einstellungen\Büro-Fab\Druckumgebung 2013-08-01 02:20 - 2013-07-28 12:20 - 00002184 _____ C:\Dokumente und Einstellungen\Büro-Fab\dotNetFx.log 2013-08-01 02:20 - 2013-07-28 12:20 - 00001082 _____ C:\Dokumente und Einstellungen\Büro-Fab\langpackSetup.log 2013-08-01 00:26 - 2013-08-01 00:26 - 00001319 _____ C:\Dokumente und Einstellungen\Admin-DD\Desktop\Explorer.lnk 2013-07-31 20:02 - 2013-07-31 20:02 - 00000000 __SHD C:\Dokumente und Einstellungen\Admin-DD\PrivacIE 2013-07-31 00:33 - 2013-08-01 02:19 - 00000190 ___SH C:\Dokumente und Einstellungen\Admin-DD\ntuser.ini 2013-07-31 00:33 - 2013-07-31 20:02 - 00000000 ____D C:\Dokumente und Einstellungen\Admin-DD 2013-07-31 00:33 - 2013-07-31 00:33 - 00000000 __SHD C:\Dokumente und Einstellungen\Admin-DD\IETldCache 2013-07-31 00:33 - 2013-07-28 12:35 - 00000000 ___RD C:\Dokumente und Einstellungen\Admin-DD\Startmenü 2013-07-31 00:33 - 2013-07-28 12:35 - 00000000 ___HD C:\Dokumente und Einstellungen\Admin-DD\Netzwerkumgebung 2013-07-31 00:33 - 2013-07-28 12:35 - 00000000 ___HD C:\Dokumente und Einstellungen\Admin-DD\Druckumgebung 2013-07-31 00:33 - 2013-07-28 12:20 - 00002184 _____ C:\Dokumente und Einstellungen\Admin-DD\dotNetFx.log 2013-07-31 00:33 - 2013-07-28 12:20 - 00001082 _____ C:\Dokumente und Einstellungen\Admin-DD\langpackSetup.log 2013-07-30 18:12 - 2013-07-30 18:15 - 00000000 ____D C:\Dokumente und Einstellungen\Fabian\ntsvcfg 2013-07-30 17:53 - 2013-05-31 15:54 - 02756800 _____ (Sysinternals - www.sysinternals.com) C:\WINDOWS\procexp.exe 2013-07-29 07:58 - 2013-07-29 07:58 - 00000000 ___RD C:\Dokumente und Einstellungen\Fabian\Anwendungsdaten\Brother 2013-07-29 07:54 - 2013-07-29 07:54 - 00024280 _____ C:\WINDOWS\DPINST.LOG 2013-07-29 07:54 - 2013-07-29 07:54 - 00000425 _____ C:\WINDOWS\BRWMARK.INI 2013-07-29 07:54 - 2012-08-20 06:25 - 01536000 _____ (Brother Industries, Ltd.) C:\WINDOWS\system32\BrWia09c.dll 2013-07-29 07:54 - 2010-01-22 09:52 - 00061440 _____ (Brother Industries Ltd.) C:\WINDOWS\system32\brprtink.dll 2013-07-29 07:54 - 2009-08-18 12:36 - 00055808 _____ (Brother Industries, Ltd.) C:\WINDOWS\system32\BrUsi09c.dll 2013-07-29 07:54 - 2004-10-15 05:50 - 00015295 _____ (Brother Industries Ltd.) C:\WINDOWS\system32\Drivers\BrScnUsb.sys 2013-07-29 07:30 - 2013-07-29 07:30 - 00000000 __SHD C:\Dokumente und Einstellungen\Fabian\PrivacIE 2013-07-29 07:30 - 2013-07-29 07:30 - 00000000 __SHD C:\Dokumente und Einstellungen\Fabian\IECompatCache 2013-07-29 07:19 - 2013-07-29 07:19 - 00000000 ____D C:\Dokumente und Einstellungen\Fabian\Anwendungsdaten\OpenOffice 2013-07-29 07:18 - 2013-07-29 07:18 - 00000853 _____ C:\Dokumente und Einstellungen\All Users\Desktop\OpenOffice 4.lnk 2013-07-29 07:18 - 2013-07-29 07:18 - 00000000 ____D C:\Programme\OpenOffice 4 2013-07-29 07:00 - 2013-07-29 07:00 - 00000000 ____D C:\Programme\NVIDIA 2013-07-29 07:00 - 2009-01-07 06:03 - 00453152 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NVUNINST.EXE 2013-07-29 07:00 - 2008-07-29 12:33 - 00446464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvunrm.exe 2013-07-29 07:00 - 2008-07-29 12:30 - 00006045 _____ C:\WINDOWS\system32\nvnrm.nvu 2013-07-29 07:00 - 2008-07-08 00:45 - 00004984 _____ C:\WINDOWS\system32\Drivers\nvphy.bin 2013-07-29 04:53 - 2013-07-29 04:53 - 00000000 ____D C:\WINDOWS\system32\Lang 2013-07-29 04:39 - 2013-07-29 04:39 - 00000000 ____D C:\WINDOWS\system32\RTCOM 2013-07-29 04:39 - 2008-04-14 07:53 - 00129536 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ksproxy.ax 2013-07-29 04:39 - 2008-04-14 07:53 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax 2013-07-29 04:39 - 2008-04-14 07:52 - 00004096 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ksuser.dll 2013-07-29 04:39 - 2008-04-14 07:52 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksuser.dll 2013-07-29 04:39 - 2008-04-14 00:49 - 00146048 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\portcls.sys 2013-07-29 04:39 - 2008-04-14 00:49 - 00146048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys 2013-07-29 04:39 - 2008-04-14 00:47 - 00083072 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wdmaud.sys 2013-07-29 04:39 - 2008-04-14 00:47 - 00083072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wdmaud.sys 2013-07-29 04:39 - 2008-04-14 00:45 - 00060800 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sysaudio.sys 2013-07-29 04:39 - 2008-04-14 00:45 - 00060800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sysaudio.sys 2013-07-29 04:39 - 2008-04-14 00:15 - 00172416 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kmixer.sys 2013-07-29 04:39 - 2008-04-14 00:15 - 00172416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kmixer.sys 2013-07-29 04:39 - 2008-04-14 00:15 - 00060160 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\drmk.sys 2013-07-29 04:39 - 2008-04-14 00:15 - 00060160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmk.sys 2013-07-29 04:39 - 2008-04-14 00:15 - 00056576 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\swmidi.sys 2013-07-29 04:39 - 2008-04-14 00:15 - 00056576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\swmidi.sys 2013-07-29 04:39 - 2008-04-14 00:15 - 00052864 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dmusic.sys 2013-07-29 04:39 - 2008-04-14 00:15 - 00052864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\DMusic.sys 2013-07-29 04:39 - 2008-04-14 00:15 - 00006272 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\splitter.sys 2013-07-29 04:39 - 2008-04-14 00:15 - 00006272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\splitter.sys 2013-07-29 04:39 - 2008-04-14 00:15 - 00002944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\drmkaud.sys 2013-07-29 04:39 - 2008-04-14 00:15 - 00002944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmkaud.sys 2013-07-29 04:39 - 2008-04-14 00:09 - 00007552 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mskssrv.sys 2013-07-29 04:39 - 2008-04-14 00:09 - 00007552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MSKSSRV.sys 2013-07-29 04:39 - 2008-04-14 00:09 - 00005376 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mspclock.sys 2013-07-29 04:39 - 2008-04-14 00:09 - 00005376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MSPCLOCK.sys 2013-07-29 04:39 - 2008-04-14 00:09 - 00004992 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mspqm.sys 2013-07-29 04:39 - 2008-04-14 00:09 - 00004992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MSPQM.sys 2013-07-29 04:39 - 2008-04-13 22:09 - 00142592 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\aec.sys 2013-07-29 04:39 - 2008-04-13 22:09 - 00142592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\aec.sys 2013-07-29 04:31 - 2013-07-29 04:31 - 00000000 ____D C:\Programme\Realtek 2013-07-29 04:31 - 2013-03-29 21:42 - 05444680 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RtkHDAud.sys 2013-07-29 04:31 - 2013-03-27 16:57 - 00079432 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoInstIIXP.dll 2013-07-29 04:31 - 2013-03-12 14:58 - 20143688 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE 2013-07-29 04:31 - 2013-03-05 15:37 - 00891976 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSndMgr.CPL 2013-07-29 04:31 - 2013-01-16 16:02 - 02079816 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\RtlExUpd.dll 2013-07-29 04:31 - 2012-11-29 15:27 - 01522320 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\RtlUpd.exe 2013-07-29 04:31 - 2012-06-22 15:48 - 00025816 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT 2013-07-29 04:31 - 2011-11-22 16:28 - 00011368 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoLDRXP.dll 2013-07-29 04:31 - 2010-11-03 18:15 - 09721960 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\RTLCPL.EXE 2013-07-29 04:31 - 2010-11-03 18:15 - 01833576 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SkyTel.exe 2013-07-29 04:31 - 2010-11-03 18:15 - 00359016 _____ (Realtek Semiconductor Crop.) C:\WINDOWS\vncutil.exe 2013-07-29 04:31 - 2010-11-03 18:15 - 00084584 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SOUNDMAN.EXE 2013-07-29 04:31 - 2010-11-03 18:14 - 02180712 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\MicCal.exe 2013-07-29 04:31 - 2010-11-03 18:14 - 00129640 _____ (Realtek Semiconductor) C:\WINDOWS\RtkAudioService.exe 2013-07-29 04:31 - 2010-11-03 18:13 - 02815592 _____ (RealTek Semicoductor Corp.) C:\WINDOWS\ALCWZRD.EXE 2013-07-29 04:31 - 2010-11-03 18:13 - 00285288 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\ALSNDMGR.CPL 2013-07-29 04:31 - 2010-11-03 18:13 - 00064104 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\ALCMTR.EXE 2013-07-29 04:31 - 2009-11-18 07:17 - 01395800 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\Drivers\Monfilt.sys 2013-07-29 04:31 - 2009-11-18 07:16 - 01691480 _____ (Creative) C:\WINDOWS\system32\Drivers\Ambfilt.sys 2013-07-29 03:25 - 2013-07-29 03:25 - 00000000 ____D C:\WINDOWS\Sun 2013-07-29 03:22 - 2013-07-29 03:22 - 00000000 ____D C:\Dokumente und Einstellungen\Fabian\Anwendungsdaten\Sun 2013-07-29 03:10 - 2006-02-22 03:05 - 00147444 _____ C:\WINDOWS\system32\atmdeuxx.hlp 2013-07-29 03:10 - 2006-02-22 03:05 - 00044814 _____ C:\WINDOWS\system32\attdeuxx.hlp 2013-07-29 03:10 - 2006-02-22 03:05 - 00024557 _____ C:\WINDOWS\system32\atfdeuxx.hlp 2013-07-28 20:09 - 2008-04-14 07:52 - 00250880 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\newdev.dll 2013-07-28 20:09 - 2008-04-14 07:52 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\newdev.dll 2013-07-28 19:28 - 2007-09-28 21:05 - 00593920 ____N () C:\WINDOWS\system32\ati2sgag.exe 2013-07-28 19:26 - 2013-07-29 04:31 - 00000000 ___HD C:\Programme\InstallShield Installation Information 2013-07-28 19:26 - 2013-07-29 04:31 - 00000000 ____D C:\Programme\Gemeinsame Dateien\InstallShield 2013-07-28 19:24 - 2013-07-28 19:24 - 00472576 _____ () C:\WINDOWS\Radeon Omega Drivers v4.8.442 Uninstall.exe 2013-07-28 19:24 - 2007-12-05 05:05 - 00368640 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIDEMGX.dll 2013-07-28 19:24 - 2007-12-05 04:56 - 00147456 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atipdlxx.dll 2013-07-28 19:24 - 2007-12-05 04:55 - 00122880 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\Oemdspif.dll 2013-07-28 19:24 - 2007-12-05 04:55 - 00122880 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\ati2evxx.dll 2013-07-28 19:24 - 2007-12-05 04:55 - 00043520 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\ati2edxx.dll 2013-07-28 19:24 - 2007-12-05 04:55 - 00026112 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\Ati2mdxx.exe 2013-07-28 19:24 - 2007-12-05 04:53 - 00495616 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\ati2evxx.exe 2013-07-28 19:24 - 2007-12-05 04:53 - 00053248 _____ ( ATI Technologies Inc.) C:\WINDOWS\system32\ATIDDC.DLL 2013-07-28 19:24 - 2007-12-05 04:48 - 09535488 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\atioglx2.dll 2013-07-28 19:24 - 2007-12-05 04:33 - 03107788 _____ C:\WINDOWS\system32\ativvaxx.dat 2013-07-28 19:24 - 2007-12-05 04:33 - 03107788 _____ C:\WINDOWS\system32\ativva5x.dat 2013-07-28 19:24 - 2007-12-05 04:33 - 00887724 _____ C:\WINDOWS\system32\ativva6x.dat 2013-07-28 19:24 - 2007-12-05 04:19 - 05435392 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\atioglxx.dll 2013-07-28 19:24 - 2007-12-05 04:19 - 00385024 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\atikvmag.dll 2013-07-28 19:24 - 2007-12-05 04:17 - 00017408 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\atitvo32.dll 2013-07-28 19:24 - 2007-12-05 04:16 - 00049152 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll 2013-07-28 19:24 - 2007-12-05 04:14 - 00180224 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\atiok3x2.dll 2013-07-28 19:24 - 2007-11-28 23:50 - 00011717 _____ C:\WINDOWS\atiogl.xml 2013-07-28 19:24 - 2007-11-06 16:19 - 00158080 _____ C:\WINDOWS\system32\atiicdxx.dat 2013-07-28 19:24 - 2007-09-29 04:49 - 00307200 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\atiiiexx.dll 2013-07-28 19:24 - 2007-09-09 05:37 - 00047360 _____ C:\WINDOWS\system32\Drivers\ativvpxx.vp 2013-07-28 19:24 - 2007-08-31 16:20 - 00007167 _____ C:\WINDOWS\system32\atifglpf.xml 2013-07-28 19:24 - 2007-05-30 19:43 - 00002096 _____ C:\WINDOWS\system32\Drivers\ativckxx.vp 2013-07-28 19:24 - 2007-04-18 15:19 - 01311202 _____ C:\WINDOWS\system32\Drivers\ativcaxx.cpa 2013-07-28 19:24 - 2007-04-18 15:19 - 00000929 _____ C:\WINDOWS\system32\Drivers\ativcaxx.vp 2013-07-28 19:24 - 2007-04-18 14:19 - 00002096 _____ C:\WINDOWS\system32\Drivers\ativdkxx.vp 2013-07-28 19:24 - 2006-02-22 10:14 - 00380928 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\atiicdxx.dll 2013-07-28 19:24 - 2006-02-22 10:13 - 00348160 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\aticds10.dll 2013-07-28 19:24 - 2006-02-22 10:13 - 00073728 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\atricdxx.enu 2013-07-28 19:24 - 2006-02-22 10:13 - 00073728 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\atricdxx.dft 2013-07-28 19:24 - 2006-02-22 10:13 - 00006144 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\atiicdxx.sys 2013-07-28 19:24 - 2006-02-22 03:05 - 02060288 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atipuixx.dll 2013-07-28 19:24 - 2006-02-22 03:05 - 01830912 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atiadaxx.exe 2013-07-28 19:24 - 2006-02-22 03:05 - 00473475 _____ C:\WINDOWS\system32\atmkorxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00399936 _____ C:\WINDOWS\system32\atmjpnxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00370049 _____ C:\WINDOWS\system32\atmthaxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00356937 _____ C:\WINDOWS\system32\atmtrkxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00353829 _____ C:\WINDOWS\system32\atmrusxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00344064 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atiptaxx.exe 2013-07-28 19:24 - 2006-02-22 03:05 - 00274432 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atipdsxx.dll 2013-07-28 19:24 - 2006-02-22 03:05 - 00189356 _____ C:\WINDOWS\system32\atmchsxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00163840 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atrpuixx.ell 2013-07-28 19:24 - 2006-02-22 03:05 - 00159744 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atrpuixx.ita 2013-07-28 19:24 - 2006-02-22 03:05 - 00159744 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atrpuixx.fra 2013-07-28 19:24 - 2006-02-22 03:05 - 00159744 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atrpuixx.esp 2013-07-28 19:24 - 2006-02-22 03:05 - 00159744 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atrpuixx.deu 2013-07-28 19:24 - 2006-02-22 03:05 - 00155648 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atrpuixx.rus 2013-07-28 19:24 - 2006-02-22 03:05 - 00155648 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atrpuixx.ptb 2013-07-28 19:24 - 2006-02-22 03:05 - 00155648 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atrpuixx.plk 2013-07-28 19:24 - 2006-02-22 03:05 - 00155648 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atrpuixx.nld 2013-07-28 19:24 - 2006-02-22 03:05 - 00155648 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atrpuixx.hun 2013-07-28 19:24 - 2006-02-22 03:05 - 00155364 _____ C:\WINDOWS\system32\atmaraxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00151552 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atrpuixx.trk 2013-07-28 19:24 - 2006-02-22 03:05 - 00151552 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atrpuixx.tha 2013-07-28 19:24 - 2006-02-22 03:05 - 00151552 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atrpuixx.sve 2013-07-28 19:24 - 2006-02-22 03:05 - 00151552 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atrpuixx.nor 2013-07-28 19:24 - 2006-02-22 03:05 - 00151552 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atrpuixx.fin 2013-07-28 19:24 - 2006-02-22 03:05 - 00151552 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atrpuixx.dan 2013-07-28 19:24 - 2006-02-22 03:05 - 00151552 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atrpuixx.csy 2013-07-28 19:24 - 2006-02-22 03:05 - 00148616 _____ C:\WINDOWS\system32\atmhunxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00148498 _____ C:\WINDOWS\system32\atmplkxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00148083 _____ C:\WINDOWS\system32\atmellxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00147456 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atrpuixx.enu 2013-07-28 19:24 - 2006-02-22 03:05 - 00147456 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atrpuixx.ara 2013-07-28 19:24 - 2006-02-22 03:05 - 00147444 _____ C:\WINDOWS\system32\atmdeuxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00145641 _____ C:\WINDOWS\system32\atmcsyxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00145421 _____ C:\WINDOWS\system32\atmchtxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00145090 _____ C:\WINDOWS\system32\atmfraxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00144323 _____ C:\WINDOWS\system32\atmhebxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00144213 _____ C:\WINDOWS\system32\atmfinxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00143360 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atrpuixx.heb 2013-07-28 19:24 - 2006-02-22 03:05 - 00142359 _____ C:\WINDOWS\system32\atmdanxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00141754 _____ C:\WINDOWS\system32\attkorxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00141746 _____ C:\WINDOWS\system32\atmsvexx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00140646 _____ C:\WINDOWS\system32\atmitaxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00140307 _____ C:\WINDOWS\system32\atmptbxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00140040 _____ C:\WINDOWS\system32\atmespxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00139835 _____ C:\WINDOWS\system32\atmnldxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00139810 _____ C:\WINDOWS\system32\atmnorxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00139264 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atiprbxx.exe 2013-07-28 19:24 - 2006-02-22 03:05 - 00136272 _____ C:\WINDOWS\system32\atmenuxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00124376 _____ C:\WINDOWS\system32\attjpnxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00120302 _____ C:\WINDOWS\system32\atttrkxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00118784 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atrpuixx.jpn 2013-07-28 19:24 - 2006-02-22 03:05 - 00114688 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atrpuixx.kor 2013-07-28 19:24 - 2006-02-22 03:05 - 00114688 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atippaxx.dll 2013-07-28 19:24 - 2006-02-22 03:05 - 00106496 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atrpuixx.cht 2013-07-28 19:24 - 2006-02-22 03:05 - 00106496 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atrpuixx.chs 2013-07-28 19:24 - 2006-02-22 03:05 - 00066161 _____ C:\WINDOWS\system32\atfkorxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00061440 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\atiphexx.exe 2013-07-28 19:24 - 2006-02-22 03:05 - 00049807 _____ C:\WINDOWS\system32\atfjpnxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00048174 _____ C:\WINDOWS\system32\atftrkxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00045991 _____ C:\WINDOWS\system32\attchsxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00045762 _____ C:\WINDOWS\system32\attellxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00045716 _____ C:\WINDOWS\system32\atthunxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00045632 _____ C:\WINDOWS\system32\atthebxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00045580 _____ C:\WINDOWS\system32\attrusxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00045411 _____ C:\WINDOWS\system32\attfraxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00045352 _____ C:\WINDOWS\system32\attptbxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00044980 _____ C:\WINDOWS\system32\attespxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00044814 _____ C:\WINDOWS\system32\attdeuxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00044687 _____ C:\WINDOWS\system32\attdanxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00044635 _____ C:\WINDOWS\system32\attchtxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00044514 _____ C:\WINDOWS\system32\attcsyxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00044430 _____ C:\WINDOWS\system32\attplkxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00044109 _____ C:\WINDOWS\system32\attitaxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00043526 _____ C:\WINDOWS\system32\attnldxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00043310 _____ C:\WINDOWS\system32\attfinxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00043288 _____ C:\WINDOWS\system32\attnorxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00043070 _____ C:\WINDOWS\system32\attaraxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00041943 _____ C:\WINDOWS\system32\attthaxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00041265 _____ C:\WINDOWS\system32\attsvexx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00040651 _____ C:\WINDOWS\system32\attenuxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00036864 _____ C:\WINDOWS\system32\atiiprxx.exe 2013-07-28 19:24 - 2006-02-22 03:05 - 00027697 _____ C:\WINDOWS\system32\atfhebxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00026864 _____ C:\WINDOWS\system32\atfchsxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00026138 _____ C:\WINDOWS\system32\atfplkxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00025327 _____ C:\WINDOWS\system32\atfrusxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00025224 _____ C:\WINDOWS\system32\atfellxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00024892 _____ C:\WINDOWS\system32\atfhunxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00024873 _____ C:\WINDOWS\system32\atfthaxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00024712 _____ C:\WINDOWS\system32\atfptbxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00024652 _____ C:\WINDOWS\system32\atfaraxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00024640 _____ C:\WINDOWS\system32\atffraxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00024589 _____ C:\WINDOWS\system32\atfchtxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00024569 _____ C:\WINDOWS\system32\atfcsyxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00024557 _____ C:\WINDOWS\system32\atfdeuxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00024506 _____ C:\WINDOWS\system32\atfitaxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00024382 _____ C:\WINDOWS\system32\atfespxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00024260 _____ C:\WINDOWS\system32\atffinxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00024229 _____ C:\WINDOWS\system32\atfnorxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00024186 _____ C:\WINDOWS\system32\atfnldxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00024065 _____ C:\WINDOWS\system32\atfdanxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00023980 _____ C:\WINDOWS\system32\atfsvexx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00023224 _____ C:\WINDOWS\system32\atfenuxx.hlx 2013-07-28 19:24 - 2006-02-22 03:05 - 00002917 _____ C:\WINDOWS\system32\atmfraxx.cnt 2013-07-28 19:24 - 2006-02-22 03:05 - 00002887 _____ C:\WINDOWS\system32\atmespxx.cnt 2013-07-28 19:24 - 2006-02-22 03:05 - 00002884 _____ C:\WINDOWS\system32\atmitaxx.cnt 2013-07-28 19:24 - 2006-02-22 03:05 - 00002849 _____ C:\WINDOWS\system32\atmdeuxx.cnt 2013-07-28 19:24 - 2006-02-22 03:05 - 00002822 _____ C:\WINDOWS\system32\atmfinxx.cnt 2013-07-28 19:24 - 2006-02-22 03:05 - 00002776 _____ C:\WINDOWS\system32\atmptbxx.cnt 2013-07-28 19:24 - 2006-02-22 03:05 - 00002767 _____ C:\WINDOWS\system32\atmnldxx.cnt 2013-07-28 19:24 - 2006-02-22 03:05 - 00002763 _____ C:\WINDOWS\system32\atmplkxx.cnt 2013-07-28 19:24 - 2006-02-22 03:05 - 00002759 _____ C:\WINDOWS\system32\atmellxx.cnt 2013-07-28 19:24 - 2006-02-22 03:05 - 00002729 _____ C:\WINDOWS\system32\atmhunxx.cnt 2013-07-28 19:24 - 2006-02-22 03:05 - 00002704 _____ C:\WINDOWS\system32\atmdanxx.cnt 2013-07-28 19:24 - 2006-02-22 03:05 - 00002653 _____ C:\WINDOWS\system32\atmtrkxx.cnt 2013-07-28 19:24 - 2006-02-22 03:05 - 00002633 _____ C:\WINDOWS\system32\atmkorxx.cnt 2013-07-28 19:24 - 2006-02-22 03:05 - 00002615 _____ C:\WINDOWS\system32\atmcsyxx.cnt 2013-07-28 19:24 - 2006-02-22 03:05 - 00002610 _____ C:\WINDOWS\system32\atmenuxx.cnt 2013-07-28 19:24 - 2006-02-22 03:05 - 00002577 _____ C:\WINDOWS\system32\atmsvexx.cnt 2013-07-28 19:24 - 2006-02-22 03:05 - 00002560 _____ C:\WINDOWS\system32\atmrusxx.cnt 2013-07-28 19:24 - 2006-02-22 03:05 - 00002545 _____ C:\WINDOWS\system32\atmnorxx.cnt 2013-07-28 19:24 - 2006-02-22 03:05 - 00002453 _____ C:\WINDOWS\system32\atmjpnxx.cnt 2013-07-28 19:24 - 2006-02-22 03:05 - 00002430 _____ C:\WINDOWS\system32\atmthaxx.cnt 2013-07-28 19:24 - 2006-02-22 03:05 - 00002411 _____ C:\WINDOWS\system32\atmhebxx.cnt 2013-07-28 19:24 - 2006-02-22 03:05 - 00002220 _____ C:\WINDOWS\system32\atmaraxx.cnt 2013-07-28 19:24 - 2006-02-22 03:05 - 00002070 _____ C:\WINDOWS\system32\atmchtxx.cnt 2013-07-28 19:24 - 2006-02-22 03:05 - 00002047 _____ C:\WINDOWS\system32\atmchsxx.cnt 2013-07-28 19:24 - 2006-02-14 03:29 - 00043008 _____ C:\WINDOWS\system32\atiicdxx.msi 2013-07-28 19:24 - 2004-09-30 17:17 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\DIRECTX.CPL 2013-07-28 19:24 - 2004-09-15 04:42 - 00034920 _____ C:\WINDOWS\system32\omega_drivers.bmp 2013-07-28 19:24 - 2003-04-15 08:07 - 00007849 _____ C:\WINDOWS\system32\atiicdxx.vxd 2013-07-28 19:24 - 2001-11-09 18:01 - 00024064 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\ativcoxx.dll 2013-07-28 19:24 - 2000-02-06 01:02 - 00000011 _____ C:\WINDOWS\system32\atiicdxx.ini 2013-07-28 19:21 - 2013-07-28 19:29 - 00015308 _____ C:\WINDOWS\Omega Drivers v4.8.442.log 2013-07-28 16:18 - 2013-07-30 18:24 - 00000000 ____D C:\WINDOWS\system32\appmgmt 2013-07-28 14:52 - 2013-07-28 14:53 - 00008589 _____ C:\WINDOWS\Nvidia Omega Drivers v2.169.21.log 2013-07-28 14:52 - 2013-07-28 14:52 - 00472576 _____ () C:\WINDOWS\Nvidia Omega Drivers v2.169.21 Uninstall.exe 2013-07-28 14:29 - 2013-07-28 14:29 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2845187$ 2013-07-28 14:29 - 2013-07-28 14:29 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834904_WM11$ 2013-07-28 14:28 - 2013-07-28 14:28 - 00043160 _____ C:\WINDOWS\KB2846071-IE8.log 2013-07-28 14:28 - 2013-07-28 14:28 - 00001289 _____ C:\WINDOWS\KB2846071-IE7.log 2013-07-28 14:28 - 2013-07-28 14:28 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2835364$ 2013-07-28 14:28 - 2013-06-07 23:48 - 11112960 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieframe.dll 2013-07-28 14:28 - 2013-06-07 23:48 - 02005504 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iertutil.dll 2013-07-28 14:28 - 2013-06-07 23:48 - 00743424 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedvtool.dll 2013-07-28 14:28 - 2013-06-07 23:48 - 00630272 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeeds.dll 2013-07-28 14:28 - 2013-06-07 23:48 - 00522240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsdbgui.dll 2013-07-28 14:28 - 2013-06-07 23:48 - 00247808 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieproxy.dll 2013-07-28 14:28 - 2013-06-07 23:48 - 00055296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeedsbs.dll 2013-07-28 14:28 - 2013-06-07 23:48 - 00012800 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xpshims.dll 2013-07-28 14:28 - 2013-06-04 09:22 - 00563712 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\qedit.dll 2013-07-28 14:27 - 2013-07-28 14:27 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2850851$ 2013-07-28 14:27 - 2013-07-28 14:27 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834886$ 2013-07-28 14:26 - 2013-07-28 14:26 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2839229$ 2013-07-28 14:25 - 2013-07-28 14:25 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2820197$ 2013-07-28 14:24 - 2013-07-28 14:24 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2820917$ 2013-07-28 14:24 - 2013-07-28 14:24 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2813345$ 2013-07-28 14:23 - 2013-07-28 14:23 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2807986$ 2013-07-28 14:23 - 2013-07-28 14:23 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2802968$ 2013-07-28 14:23 - 2013-02-12 02:32 - 00012928 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usb8023x.sys 2013-07-28 14:23 - 2013-02-12 02:32 - 00012928 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usb8023.sys 2013-07-28 14:22 - 2013-07-28 14:22 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2780091$ 2013-07-28 14:22 - 2013-01-26 05:55 - 00552448 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\oleaut32.dll 2013-07-28 14:22 - 2013-01-02 08:49 - 00148992 ____C C:\WINDOWS\system32\dllcache\mpg2splt.ax 2013-07-28 14:21 - 2013-07-28 14:22 - 00038091 _____ C:\WINDOWS\KB2797052-IE8.log 2013-07-28 14:21 - 2013-07-28 14:21 - 00037759 _____ C:\WINDOWS\KB2753842-v2.log 2013-07-28 14:21 - 2013-07-28 14:21 - 00001289 _____ C:\WINDOWS\KB2797052-IE7.log 2013-07-28 14:21 - 2013-07-28 14:21 - 00001006 _____ C:\WINDOWS\KB2797052.log 2013-07-28 14:21 - 2013-07-28 14:21 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2753842-v2$ 2013-07-28 14:21 - 2012-12-16 14:23 - 00290560 ____C (Adobe Systems Incorporated) C:\WINDOWS\system32\dllcache\atmfd.dll 2013-07-28 14:20 - 2013-07-28 14:20 - 00287196 _____ C:\WINDOWS\msxml4-KB2758694-deu.LOG 2013-07-28 14:20 - 2013-07-28 14:20 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2770660$ 2013-07-28 14:20 - 2013-07-28 14:20 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2757638$ 2013-07-28 14:20 - 2013-07-28 14:20 - 00000000 ____D C:\Programme\MSXML 4.0 2013-07-28 14:19 - 2013-07-28 14:19 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2758857$ 2013-07-28 14:19 - 2013-07-28 14:19 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2727528$ 2013-07-28 14:19 - 2012-11-02 04:02 - 00375296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dpnet.dll 2013-07-28 14:18 - 2013-07-28 14:18 - 00038201 _____ C:\WINDOWS\KB2705219-v2.log 2013-07-28 14:18 - 2013-07-28 14:18 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2736233$ 2013-07-28 14:18 - 2013-07-28 14:18 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2705219-v2$ 2013-07-28 14:18 - 2012-10-02 20:04 - 00058368 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\synceng.dll 2013-07-28 14:18 - 2012-07-06 15:59 - 00337920 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\netapi32.dll 2013-07-28 14:18 - 2012-07-06 15:59 - 00078336 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\browser.dll 2013-07-28 14:17 - 2013-07-28 14:17 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2723135$ 2013-07-28 14:17 - 2013-07-28 14:17 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2712808$ 2013-07-28 14:17 - 2013-07-28 14:17 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2655992$ 2013-07-28 14:17 - 2012-07-04 16:05 - 00139784 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rdpwd.sys 2013-07-28 14:17 - 2012-05-14 11:22 - 00348160 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\localspl.dll 2013-07-28 14:16 - 2013-07-28 14:16 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2698365$ 2013-07-28 14:16 - 2013-07-28 14:16 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2691442$ 2013-07-28 14:15 - 2013-07-28 14:15 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2719985$ 2013-07-28 14:15 - 2013-07-28 14:15 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2695962$ 2013-07-28 14:15 - 2012-06-05 17:49 - 01172480 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msxml3.dll 2013-07-28 14:14 - 2013-07-28 14:14 - 00036223 _____ C:\WINDOWS\KB2686509.log 2013-07-28 14:14 - 2013-07-28 14:14 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2686509$ 2013-07-28 14:13 - 2013-07-28 14:13 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2676562$ 2013-07-28 14:13 - 2013-07-28 14:13 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2660649$ 2013-07-28 14:13 - 2013-07-28 14:13 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2659262$ 2013-07-28 14:13 - 2013-06-05 11:08 - 01876864 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\win32k.sys 2013-07-28 14:12 - 2013-07-28 14:12 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2653956$ 2013-07-28 14:12 - 2013-07-28 14:12 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2647518$ 2013-07-28 14:12 - 2013-04-12 14:21 - 01023488 ____C () C:\WINDOWS\system32\dllcache\nbdoc.dll 2013-07-28 14:12 - 2013-04-12 14:21 - 00804864 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jntfiltr.dll 2013-07-28 14:12 - 2013-04-12 14:21 - 00773632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jnwdrv.dll 2013-07-28 14:11 - 2013-07-28 14:11 - 00034695 _____ C:\WINDOWS\KB2661637.log 2013-07-28 14:11 - 2013-07-28 14:11 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2661637$ 2013-07-28 14:11 - 2013-07-28 14:11 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2585542$ 2013-07-28 14:11 - 2012-02-29 16:09 - 00177664 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wintrust.dll 2013-07-28 14:11 - 2012-02-29 16:09 - 00148480 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imagehlp.dll 2013-07-28 14:11 - 2012-01-11 21:06 - 00003072 ____N C:\WINDOWS\system32\iacenc.dll 2013-07-28 14:11 - 2012-01-11 21:06 - 00003072 ____C C:\WINDOWS\system32\dllcache\iacenc.dll 2013-07-28 14:10 - 2013-07-28 14:10 - 00033968 _____ C:\WINDOWS\KB2584146.log 2013-07-28 14:10 - 2013-07-28 14:10 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2631813$ 2013-07-28 14:10 - 2013-07-28 14:10 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2603381$ 2013-07-28 14:10 - 2013-07-28 14:10 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2584146$ 2013-07-28 14:10 - 2011-11-20 08:12 - 00061952 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\packager.exe 2013-07-28 14:09 - 2013-07-28 14:09 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2620712$ 2013-07-28 14:09 - 2013-07-28 14:09 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2598479$ 2013-07-28 14:09 - 2011-11-03 17:28 - 00387072 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\qdvd.dll 2013-07-28 14:09 - 2011-10-14 16:47 - 00178176 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\winmm.dll 2013-07-28 14:09 - 2011-10-14 16:47 - 00023040 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mciseq.dll 2013-07-28 14:08 - 2013-07-28 14:08 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2624667$ 2013-07-28 14:08 - 2013-07-28 14:08 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2619339$ 2013-07-28 14:08 - 2013-07-28 14:08 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2618451$ 2013-07-28 14:07 - 2013-07-28 14:07 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2592799$ 2013-07-28 14:07 - 2013-07-28 14:07 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2564958$ 2013-07-28 14:07 - 2013-07-28 14:07 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2562937$ 2013-07-28 14:06 - 2013-07-28 14:06 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2570947$ 2013-07-28 14:06 - 2013-07-28 14:06 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2566454$ 2013-07-28 14:06 - 2013-07-28 14:06 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2507938$ 2013-07-28 14:06 - 2011-09-26 11:41 - 00614912 ____N (Microsoft Corporation) C:\WINDOWS\system32\uiautomationcore.dll 2013-07-28 14:06 - 2011-07-08 16:02 - 00010496 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ndistapi.sys 2013-07-28 14:05 - 2013-07-28 14:05 - 00030815 _____ C:\WINDOWS\KB2536276-v2.log 2013-07-28 14:05 - 2013-07-28 14:05 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2536276-v2$ 2013-07-28 14:05 - 2013-07-28 14:05 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2535512$ 2013-07-28 14:05 - 2013-03-08 10:36 - 00293888 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\winsrv.dll 2013-07-28 14:05 - 2011-10-28 07:31 - 00033280 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\csrsrv.dll 2013-07-28 14:05 - 2011-04-21 15:37 - 00105472 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mup.sys 2013-07-28 14:04 - 2013-07-28 14:04 - 00030088 _____ C:\WINDOWS\KB2544893-v2.log 2013-07-28 14:04 - 2013-07-28 14:04 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2544893-v2$ 2013-07-28 14:04 - 2013-07-28 14:04 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2485663$ 2013-07-28 14:03 - 2013-07-28 14:04 - 00030922 _____ C:\WINDOWS\KB2510531-IE8.log 2013-07-28 14:03 - 2013-07-28 14:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2509553$ 2013-07-28 14:03 - 2013-07-28 14:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2506212$ 2013-07-28 14:03 - 2009-04-20 19:17 - 00045568 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dnsrslvr.dll 2013-07-28 14:02 - 2013-07-28 14:02 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2511455$ 2013-07-28 14:02 - 2013-07-28 14:02 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2508429$ 2013-07-28 14:02 - 2013-07-28 14:02 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2491683$ 2013-07-28 14:02 - 2011-07-15 15:29 - 00456320 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mrxsmb.sys 2013-07-28 14:02 - 2011-02-11 16:44 - 00236032 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxscover.exe 2013-07-28 14:01 - 2013-07-28 14:01 - 00029643 _____ C:\WINDOWS\KB2479943.log 2013-07-28 14:01 - 2013-07-28 14:01 - 00001294 _____ C:\WINDOWS\KB2483618.log 2013-07-28 14:01 - 2013-07-28 14:01 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2481109$ 2013-07-28 14:01 - 2013-07-28 14:01 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2479943$ 2013-07-28 14:01 - 2013-07-28 14:01 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2478960$ 2013-07-28 14:01 - 2013-02-27 09:56 - 02067456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\lhmstscx.dll 2013-07-28 14:01 - 2011-10-18 13:13 - 00186880 ____C C:\WINDOWS\system32\dllcache\encdec.dll 2013-07-28 14:01 - 2011-02-09 15:53 - 00270848 ____C C:\WINDOWS\system32\dllcache\sbe.dll 2013-07-28 14:01 - 2011-01-27 13:57 - 00677888 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\lhmstsc.exe 2013-07-28 14:00 - 2013-07-28 14:01 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2478971$ 2013-07-28 14:00 - 2013-07-28 14:00 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2483185$ 2013-07-28 14:00 - 2013-07-28 14:00 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2393802$ 2013-07-28 14:00 - 2012-06-08 16:25 - 08503808 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\shell32.dll 2013-07-28 14:00 - 2011-01-21 16:44 - 00440832 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\shimgvw.dll 2013-07-28 14:00 - 2010-12-22 14:34 - 00301568 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kerberos.dll 2013-07-28 13:59 - 2013-07-28 14:00 - 00029825 _____ C:\WINDOWS\KB2419632.log 2013-07-28 13:59 - 2013-07-28 13:59 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2443105$ 2013-07-28 13:59 - 2013-07-28 13:59 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2440591$ 2013-07-28 13:59 - 2013-07-28 13:59 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2423089$ 2013-07-28 13:59 - 2013-07-28 13:59 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2419632$ 2013-07-28 13:59 - 2012-05-28 20:16 - 00536576 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msado15.dll 2013-07-28 13:59 - 2010-11-18 20:12 - 00086016 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\isign32.dll 2013-07-28 13:59 - 2010-11-09 16:51 - 00249856 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\odbc32.dll 2013-07-28 13:59 - 2010-11-09 16:51 - 00200704 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msadox.dll 2013-07-28 13:59 - 2010-11-09 16:51 - 00180224 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msadomd.dll 2013-07-28 13:59 - 2010-11-09 16:51 - 00143360 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msadco.dll 2013-07-28 13:59 - 2010-11-09 16:51 - 00102400 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msjro.dll 2013-07-28 13:59 - 2010-11-08 14:41 - 00081920 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msado27.tlb 2013-07-28 13:59 - 2010-11-08 14:41 - 00081920 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msado26.tlb 2013-07-28 13:59 - 2010-11-08 14:41 - 00081920 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msado25.tlb 2013-07-28 13:59 - 2010-11-08 14:41 - 00061440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msado21.tlb 2013-07-28 13:59 - 2010-11-08 14:41 - 00061440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msado20.tlb 2013-07-28 13:59 - 2010-11-02 17:17 - 00040960 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ndproxy.sys 2013-07-28 13:58 - 2013-07-28 13:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB979687$ 2013-07-28 13:58 - 2013-07-28 13:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2378111_WM9$ 2013-07-28 13:58 - 2013-07-28 13:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2360937$ 2013-07-28 13:58 - 2013-07-28 13:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2296011$ 2013-07-28 13:58 - 2011-11-01 18:07 - 01288704 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ole32.dll 2013-07-28 13:58 - 2010-10-11 16:59 - 00045568 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wab.exe 2013-07-28 13:58 - 2010-08-16 10:44 - 00590848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rpcrt4.dll 2013-07-28 13:57 - 2013-07-28 13:57 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB982132$ 2013-07-28 13:57 - 2013-07-28 13:57 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2387149$ 2013-07-28 13:57 - 2013-07-28 13:57 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2290570$ 2013-07-28 13:57 - 2011-02-08 19:03 - 00974848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mfc42u.dll 2013-07-28 13:57 - 2011-02-08 15:33 - 00978944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mfc42.dll 2013-07-28 13:57 - 2010-09-18 08:52 - 00953856 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mfc40u.dll 2013-07-28 13:57 - 2010-08-23 18:11 - 00617472 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\comctl32.dll 2013-07-28 13:57 - 2010-07-27 08:34 - 00257024 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\infocomm.dll 2013-07-28 13:56 - 2013-07-28 13:56 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB981322$ 2013-07-28 13:56 - 2013-07-28 13:56 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB975558_WM8$ 2013-07-28 13:56 - 2013-07-28 13:56 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2347290$ 2013-07-28 13:56 - 2013-07-28 13:56 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2124261$ 2013-07-28 13:56 - 2010-08-17 15:17 - 00058880 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\spoolsv.exe 2013-07-28 13:56 - 2010-06-30 22:38 - 00375296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\asp51.dll 2013-07-28 13:56 - 2010-04-16 17:36 - 00406016 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usp10.dll 2013-07-28 13:56 - 2010-03-30 12:24 - 00317440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mp4sdecd.dll 2013-07-28 13:55 - 2013-07-28 13:56 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB982665$ 2013-07-28 13:55 - 2013-07-28 13:55 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB981997$ 2013-07-28 13:55 - 2013-07-28 13:55 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2229593$ 2013-07-28 13:55 - 2013-07-28 13:55 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2115168$ 2013-07-28 13:55 - 2010-06-18 15:36 - 03558912 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\moviemk.exe 2013-07-28 13:55 - 2010-06-14 16:31 - 00744448 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\helpsvc.exe 2013-07-28 13:54 - 2013-07-28 13:54 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB979482$ 2013-07-28 13:54 - 2013-07-28 13:54 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB978695_WM9$ 2013-07-28 13:54 - 2013-07-28 13:54 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB978542$ 2013-07-28 13:54 - 2013-07-28 13:54 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB978338$ 2013-07-28 13:54 - 2013-07-28 13:54 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB977816$ 2013-07-28 13:54 - 2010-03-05 16:37 - 00065536 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\asycfilt.dll 2013-07-28 13:54 - 2010-02-12 06:33 - 00100864 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\6to4svc.dll 2013-07-28 13:53 - 2013-07-28 13:53 - 00019550 _____ C:\WINDOWS\KB981332-IE8.log 2013-07-28 13:53 - 2013-07-28 13:53 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB979309$ 2013-07-28 13:53 - 2013-07-28 13:53 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB976323$ 2013-07-28 13:53 - 2013-07-28 13:53 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB975560$ 2013-07-28 13:53 - 2010-03-05 20:45 - 00465920 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smtpsvc.dll 2013-07-28 13:53 - 2010-01-13 16:00 - 00086528 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cabview.dll 2013-07-28 13:52 - 2013-07-28 13:52 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB978706$ 2013-07-28 13:52 - 2013-07-28 13:52 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB977914$ 2013-07-28 13:52 - 2013-07-28 13:52 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB975713$ 2013-07-28 13:52 - 2013-07-28 13:52 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB971468$ 2013-07-28 13:52 - 2013-01-02 08:49 - 01297920 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\quartz.dll 2013-07-28 13:52 - 2011-02-17 15:18 - 00357888 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\srv.sys 2013-07-28 13:52 - 2009-12-17 09:40 - 00346624 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mspaint.exe 2013-07-28 13:52 - 2009-11-27 19:11 - 00017920 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msyuv.dll 2013-07-28 13:52 - 2009-11-27 18:08 - 00085504 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\avifil32.dll 2013-07-28 13:52 - 2009-11-27 18:08 - 00048128 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iyuv_32.dll 2013-07-28 13:52 - 2009-11-27 18:08 - 00011264 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msrle32.dll 2013-07-28 13:52 - 2009-11-27 18:08 - 00008704 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tsbyuv.dll 2013-07-28 13:51 - 2013-07-28 13:51 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB975467$ 2013-07-28 13:51 - 2013-07-28 13:51 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB974392$ 2013-07-28 13:51 - 2013-07-28 13:51 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB974318$ 2013-07-28 13:51 - 2013-07-28 13:51 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB973904$ 2013-07-28 13:51 - 2013-07-28 13:51 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB972270$ 2013-07-28 13:51 - 2010-08-27 10:01 - 00119808 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\t2embed.dll 2013-07-28 13:51 - 2009-10-15 18:28 - 00081920 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fontsub.dll 2013-07-28 13:51 - 2009-10-13 12:32 - 00271360 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\oakley.dll 2013-07-28 13:51 - 2009-10-12 15:38 - 00150528 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rastls.dll 2013-07-28 13:51 - 2009-10-12 15:38 - 00079872 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\raschap.dll 2013-07-28 13:50 - 2013-07-28 13:50 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB975254$ 2013-07-28 13:50 - 2013-07-28 13:50 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB975025$ 2013-07-28 13:50 - 2013-07-28 13:50 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB974571$ 2013-07-28 13:50 - 2013-07-28 13:50 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB974112$ 2013-07-28 13:50 - 2013-07-28 13:50 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB969059$ 2013-07-28 13:50 - 2009-09-11 16:17 - 00136192 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msv1_0.dll 2013-07-28 13:50 - 2009-09-06 09:09 - 00126976 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ftpsvc2.dll 2013-07-28 13:50 - 2009-09-04 23:03 - 00058880 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msasn1.dll 2013-07-28 13:50 - 2009-07-17 18:15 - 01441792 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\query.dll 2013-07-28 13:49 - 2013-07-28 14:04 - 00000000 ____D C:\WINDOWS\ie8updates 2013-07-28 13:49 - 2013-07-28 13:49 - 00016402 _____ C:\WINDOWS\KB971961-IE8.log 2013-07-28 13:49 - 2013-07-28 13:49 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB973815$ 2013-07-28 13:49 - 2013-07-28 13:49 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB971657$ 2013-07-28 13:49 - 2013-07-28 13:49 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB960859$ 2013-07-28 13:49 - 2013-07-28 13:49 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB956844$ 2013-07-28 13:49 - 2013-07-28 13:49 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB954155_WM9$ 2013-07-28 13:49 - 2009-08-05 10:59 - 00206336 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mswebdvd.dll 2013-07-28 13:49 - 2009-06-21 23:45 - 00153088 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\triedit.dll 2013-07-28 13:49 - 2009-06-15 13:08 - 00082944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tlntsess.exe 2013-07-28 13:49 - 2009-06-15 12:43 - 00078848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\telnet.exe 2013-07-28 13:49 - 2009-06-10 08:14 - 00132096 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wkssvc.dll 2013-07-28 13:48 - 2013-07-28 13:48 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB973869$ 2013-07-28 13:48 - 2013-07-28 13:48 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB973540_WM9$ 2013-07-28 13:48 - 2013-07-28 13:48 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB973507$ 2013-07-28 13:48 - 2013-07-28 13:48 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB970483$ 2013-07-28 13:48 - 2013-07-28 13:48 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB960803$ 2013-07-28 13:48 - 2013-07-28 13:48 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB959426$ 2013-07-28 13:48 - 2012-10-03 06:58 - 01063936 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kernel32.dll 2013-07-28 13:48 - 2009-07-28 00:24 - 00128512 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dhtmled.ocx 2013-07-28 13:48 - 2009-07-17 21:01 - 00058880 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\atl.dll 2013-07-28 13:48 - 2009-05-21 20:47 - 00268288 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\httpext.dll 2013-07-28 13:48 - 2009-02-03 21:57 - 00056832 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\secur32.dll 2013-07-28 13:47 - 2013-07-28 13:47 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB960225$ 2013-07-28 13:47 - 2013-07-28 13:47 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB956802$ 2013-07-28 13:47 - 2013-07-28 13:47 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB956572$ 2013-07-28 13:47 - 2013-07-28 13:47 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB952069_WM9$ 2013-07-28 13:47 - 2013-07-28 13:47 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB952004$ 2013-07-28 13:47 - 2013-07-28 13:47 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB923561$ 2013-07-28 13:47 - 2013-05-03 07:39 - 02195840 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ntoskrnl.exe 2013-07-28 13:47 - 2013-05-03 07:39 - 02152448 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ntkrnlmp.exe 2013-07-28 13:47 - 2013-05-03 07:39 - 02072448 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ntkrnlpa.exe 2013-07-28 13:47 - 2013-05-03 07:39 - 02031104 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ntkrpamp.exe 2013-07-28 13:47 - 2012-06-04 06:32 - 00152576 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\schannel.dll 2013-07-28 13:47 - 2011-11-16 16:21 - 00354816 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\winhttp.dll 2013-07-28 13:47 - 2011-02-17 18:24 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsp4res.dll 2013-07-28 13:47 - 2010-12-20 19:25 - 00737792 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\lsasrv.dll 2013-07-28 13:47 - 2010-12-09 17:15 - 00743936 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ntdll.dll 2013-07-28 13:47 - 2010-07-16 14:01 - 00220160 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wordpad.exe 2013-07-28 13:47 - 2009-03-27 08:49 - 01203922 ____C C:\WINDOWS\system32\dllcache\sysmain.sdb 2013-07-28 13:47 - 2009-03-06 16:19 - 00286720 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pdh.dll 2013-07-28 13:47 - 2009-02-09 13:21 - 00111104 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\services.exe 2013-07-28 13:47 - 2009-02-09 12:51 - 00678400 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\advapi32.dll 2013-07-28 13:47 - 2009-02-09 12:51 - 00473600 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fastprox.dll 2013-07-28 13:47 - 2009-02-09 12:51 - 00453120 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmiprvsd.dll 2013-07-28 13:47 - 2009-02-09 12:51 - 00401408 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rpcss.dll 2013-07-28 13:47 - 2009-02-06 12:10 - 00227840 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmiprvse.exe 2013-07-28 13:47 - 2008-10-23 14:36 - 00286720 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\gdi32.dll 2013-07-28 13:47 - 2008-06-12 19:50 - 00428032 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdtcprx.dll 2013-07-28 13:47 - 2008-06-12 16:20 - 00956928 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdtctm.dll 2013-07-28 13:47 - 2008-06-12 16:20 - 00161792 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdtcuiu.dll 2013-07-28 13:47 - 2008-06-12 16:20 - 00091648 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mtxoci.dll 2013-07-28 13:47 - 2008-06-12 16:20 - 00066560 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mtxclu.dll 2013-07-28 13:47 - 2008-06-12 16:20 - 00058880 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdtclog.dll 2013-07-28 13:46 - 2013-07-28 13:47 - 00008047 _____ C:\WINDOWS\KB951376-v2.log 2013-07-28 13:46 - 2013-07-28 13:46 - 00001191 _____ C:\WINDOWS\KB938127-v2-IE7.log 2013-07-28 13:46 - 2013-07-28 13:46 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB956803$ 2013-07-28 13:46 - 2013-07-28 13:46 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB954154_WM11$ 2013-07-28 13:46 - 2013-07-28 13:46 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB953155$ 2013-07-28 13:46 - 2013-07-28 13:46 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB952954$ 2013-07-28 13:46 - 2013-07-28 13:46 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB951376-v2$ 2013-07-28 13:46 - 2013-07-28 13:46 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB951066$ 2013-07-28 13:46 - 2013-07-28 13:46 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB950974$ 2013-07-28 13:46 - 2011-10-10 16:22 - 00692736 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetcomm.dll 2013-07-28 13:46 - 2008-08-28 09:46 - 00104960 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\win32spl.dll 2013-07-28 13:46 - 2008-08-28 09:46 - 00074752 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msw3prt.dll 2013-07-28 13:46 - 2008-07-07 22:26 - 00253952 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\es.dll 2013-07-28 13:46 - 2008-06-24 18:42 - 00074240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mscms.dll 2013-07-28 13:46 - 2008-06-14 19:32 - 00273024 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\bthport.sys 2013-07-28 13:45 - 2013-07-28 18:14 - 00000000 ____D C:\Programme\Windows Media Connect 2 2013-07-28 13:45 - 2013-07-28 13:45 - 00014202 _____ C:\WINDOWS\wmp11.log 2013-07-28 13:45 - 2013-07-28 13:45 - 00000718 _____ C:\WINDOWS\KB926239.log 2013-07-28 13:45 - 2013-07-28 13:45 - 00000000 __HDC C:\WINDOWS\$NtUninstallwmp11$ 2013-07-28 13:45 - 2013-07-28 13:45 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB951748$ 2013-07-28 13:45 - 2013-07-28 13:45 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB950762$ 2013-07-28 13:45 - 2013-07-28 13:45 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB941569$ 2013-07-28 13:45 - 2011-08-17 15:49 - 00138496 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\afd.sys 2013-07-28 13:45 - 2011-03-03 08:54 - 00149504 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dnsapi.dll 2013-07-28 13:45 - 2010-02-11 14:02 - 00226880 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tcpip6.sys 2013-07-28 13:45 - 2008-06-24 18:12 - 00295936 ____N (Microsoft Corporation) C:\WINDOWS\system32\wmpeffects.dll 2013-07-28 13:45 - 2008-06-20 18:02 - 00247296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mswsock.dll 2013-07-28 13:45 - 2008-06-20 13:51 - 00361600 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tcpip.sys 2013-07-28 13:45 - 2008-05-08 16:02 - 00203136 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rmcast.sys 2013-07-28 13:45 - 2006-10-18 22:47 - 01661440 ____N (Microsoft Corporation) C:\WINDOWS\system32\wmpencen.dll 2013-07-28 13:45 - 2006-10-18 22:47 - 00613376 ____N (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2013-07-28 13:45 - 2006-10-18 22:47 - 00204288 ____N (Microsoft Corporation) C:\WINDOWS\system32\wmpsrcwp.dll 2013-07-28 13:45 - 2006-10-18 22:47 - 00130048 ____N (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll 2013-07-28 13:45 - 2006-10-18 21:05 - 00232448 ____N (Fraunhofer Institut Integrierte Schaltungen IIS) C:\WINDOWS\system32\l3codecp.acm 2013-07-28 13:44 - 2013-07-28 13:44 - 00025898 _____ C:\WINDOWS\WMFDist11.log 2013-07-28 13:44 - 2013-07-28 13:44 - 00000000 __SHD C:\Dokumente und Einstellungen\Fabian\IETldCache 2013-07-28 13:44 - 2013-07-28 13:44 - 00000000 __HDC C:\WINDOWS\$NtUninstallWMFDist11$ 2013-07-28 13:44 - 2013-05-08 11:58 - 01543680 ____N (Microsoft Corporation) C:\WINDOWS\system32\wmvdecod.dll 2013-07-28 13:44 - 2010-03-30 12:24 - 00317440 ____N (Microsoft Corporation) C:\WINDOWS\system32\mp4sdecd.dll 2013-07-28 13:44 - 2006-11-02 12:51 - 00043008 ____N (Microsoft Corporation) C:\WINDOWS\system32\wpdshextres.dll 2013-07-28 13:44 - 2006-10-18 22:58 - 00008704 ____N (Microsoft Corporation) C:\WINDOWS\system32\wdfmgr.exe 2013-07-28 13:44 - 2006-10-18 22:58 - 00008704 ____N (Microsoft Corporation) C:\WINDOWS\system32\uwdf.exe 2013-07-28 13:44 - 2006-10-18 22:47 - 02603008 ____N (Microsoft Corporation) C:\WINDOWS\system32\WpdShext.dll 2013-07-28 13:44 - 2006-10-18 22:47 - 01574912 ____N (Microsoft Corporation) C:\WINDOWS\system32\WMVENCOD.dll 2013-07-28 13:44 - 2006-10-18 22:47 - 01382912 ____N (Microsoft Corporation) C:\WINDOWS\system32\WMVSDECD.dll 2013-07-28 13:44 - 2006-10-18 22:47 - 00767488 ____N (Microsoft Corporation) C:\WINDOWS\system32\WMVSENCD.dll 2013-07-28 13:44 - 2006-10-18 22:47 - 00656896 ____N (Microsoft Corporation) C:\WINDOWS\system32\WMVXENCD.dll 2013-07-28 13:44 - 2006-10-18 22:47 - 00629760 ____N (Microsoft Corporation) C:\WINDOWS\system32\wpd_ci.dll 2013-07-28 13:44 - 2006-10-18 22:47 - 00535040 ____N (Microsoft Corporation) C:\WINDOWS\system32\wmdrmsdk.dll 2013-07-28 13:44 - 2006-10-18 22:47 - 00429056 ____N (Microsoft Corporation) C:\WINDOWS\system32\wmdrmdev.dll 2013-07-28 13:44 - 2006-10-18 22:47 - 00356352 ____N (Microsoft Corporation) C:\WINDOWS\system32\wpdsp.dll 2013-07-28 13:44 - 2006-10-18 22:47 - 00348672 ____N (Microsoft Corporation) C:\WINDOWS\system32\wmdrmnet.dll 2013-07-28 13:44 - 2006-10-18 22:47 - 00284160 ____N (Microsoft Corporation) C:\WINDOWS\system32\PortableDeviceApi.dll 2013-07-28 13:44 - 2006-10-18 22:47 - 00276992 ____N (Microsoft Corporation) C:\WINDOWS\system32\audiodev.dll 2013-07-28 13:44 - 2006-10-18 22:47 - 00259072 ____N (Microsoft Corporation) C:\WINDOWS\system32\MPG4DECD.dll 2013-07-28 13:44 - 2006-10-18 22:47 - 00259072 ____N (Microsoft Corporation) C:\WINDOWS\system32\MP43DECD.dll 2013-07-28 13:44 - 2006-10-18 22:47 - 00212992 ____N (Microsoft Corporation) C:\WINDOWS\system32\MFPLAT.dll 2013-07-28 13:44 - 2006-10-18 22:47 - 00199168 ____N (Microsoft Corporation) C:\WINDOWS\system32\PortableDeviceWMDRM.dll 2013-07-28 13:44 - 2006-10-18 22:47 - 00166912 ____N (Microsoft Corporation) C:\WINDOWS\system32\PortableDeviceTypes.dll 2013-07-28 13:44 - 2006-10-18 22:47 - 00154624 ____N (Microsoft Corporation) C:\WINDOWS\system32\wpdmtp.dll 2013-07-28 13:44 - 2006-10-18 22:47 - 00133632 ____N (Microsoft Corporation) C:\WINDOWS\system32\WPDShServiceObj.dll 2013-07-28 13:44 - 2006-10-18 22:47 - 00132096 ____N (Microsoft Corporation) C:\WINDOWS\system32\PortableDeviceWiaCompat.dll 2013-07-28 13:44 - 2006-10-18 22:47 - 00101888 ____N (Microsoft Corporation) C:\WINDOWS\system32\PortableDeviceClassExtension.dll 2013-07-28 13:44 - 2006-10-18 22:47 - 00063488 ____N (Microsoft Corporation) C:\WINDOWS\system32\wpdmtpus.dll 2013-07-28 13:44 - 2006-10-18 22:47 - 00035840 ____N (Microsoft Corporation) C:\WINDOWS\system32\wpdconns.dll 2013-07-28 13:44 - 2006-10-18 22:47 - 00004096 ____N (Microsoft Corporation) C:\WINDOWS\system32\WMVADVE.DLL 2013-07-28 13:44 - 2006-10-18 22:47 - 00004096 ____N (Microsoft Corporation) C:\WINDOWS\system32\WMVADVD.dll 2013-07-28 13:44 - 2006-10-18 22:47 - 00004096 ____N (Microsoft Corporation) C:\WINDOWS\system32\wdfapi.dll 2013-07-28 13:44 - 2006-10-18 21:00 - 00249856 ____N (Microsoft Corporation) C:\WINDOWS\system32\drmupgds.exe 2013-07-28 13:44 - 2006-10-18 21:00 - 00038528 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wpdusb.sys 2013-07-28 13:44 - 2006-10-18 21:00 - 00017408 ____N (Microsoft Corporation) C:\WINDOWS\system32\wpdshextautoplay.exe 2013-07-28 13:43 - 2013-07-28 13:43 - 00065536 _____ C:\WINDOWS\system32\config\Internet.evt 2013-07-28 13:41 - 2013-07-28 13:43 - 00040522 _____ C:\WINDOWS\ie8.log 2013-07-28 13:41 - 2013-07-28 13:43 - 00031153 _____ C:\WINDOWS\ie8_main.log 2013-07-28 13:41 - 2013-07-28 13:43 - 00000000 __HDC C:\WINDOWS\ie8 2013-07-28 13:33 - 2013-08-01 02:40 - 00000246 __RSH C:\boot.ini 2013-07-28 13:33 - 2013-07-28 13:33 - 00663552 _____ C:\WINDOWS\system32\config\software.sav 2013-07-28 13:33 - 2013-07-28 13:33 - 00450560 _____ C:\WINDOWS\system32\config\system.sav 2013-07-28 13:33 - 2013-07-28 13:33 - 00262144 _____ C:\WINDOWS\system32\config\userdiff 2013-07-28 13:33 - 2013-07-28 13:33 - 00094208 _____ C:\WINDOWS\system32\config\default.sav 2013-07-28 13:33 - 2013-07-28 13:33 - 00001024 ____H C:\WINDOWS\system32\config\userdiff.LOG 2013-07-28 13:33 - 2013-07-28 13:33 - 00001024 ____H C:\WINDOWS\system32\config\TempKey.LOG 2013-07-28 13:31 - 2013-07-28 13:31 - 00000187 _____ C:\WINDOWS\spupdsvc.log.1.log 2013-07-28 13:27 - 2013-07-28 13:44 - 00000000 ____D C:\WINDOWS\system32\de-de 2013-07-28 13:27 - 2013-07-28 13:27 - 00000000 ____D C:\WINDOWS\system32\de 2013-07-28 13:27 - 2013-07-28 13:27 - 00000000 ____D C:\WINDOWS\system32\bits 2013-07-28 13:27 - 2013-07-28 13:27 - 00000000 ____D C:\WINDOWS\l2schemas 2013-07-28 13:27 - 2012-11-06 04:01 - 01371648 ____N (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2013-07-28 13:27 - 2012-11-06 04:01 - 01371648 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msxml6.dll 2013-07-28 13:27 - 2009-01-07 18:21 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\xmllite.dll 2013-07-28 13:27 - 2008-04-14 07:53 - 00060416 ____N (Microsoft Corporation) C:\WINDOWS\system32\tzchange.exe 2013-07-28 13:27 - 2008-04-14 07:53 - 00032768 ____N (Microsoft Corporation) C:\WINDOWS\system32\setupn.exe 2013-07-28 13:27 - 2008-04-14 07:53 - 00028672 ____N (Microsoft Corporation) C:\WINDOWS\system32\verclsid.exe 2013-07-28 13:27 - 2008-04-14 07:52 - 00712704 ____N (Microsoft Corporation) C:\WINDOWS\system32\windowscodecs.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00651264 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3ui.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00412160 ____N (Microsoft Corporation) C:\WINDOWS\system32\photometadatahandler.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00397312 ____N (Microsoft Corporation) C:\WINDOWS\system32\mmcex.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00346112 ____N (Microsoft Corporation) C:\WINDOWS\system32\windowscodecsext.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00294400 ____N (Microsoft Corporation) C:\WINDOWS\system32\qagentrt.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00290304 ____N (Microsoft Corporation) C:\WINDOWS\system32\rhttpaa.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00276992 ____N (Microsoft Corporation) C:\WINDOWS\system32\wmphoto.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00233472 ____N (Microsoft Corporation) C:\WINDOWS\system32\azroles.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00198656 ____N (Microsoft Corporation) C:\WINDOWS\system32\napmontr.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00184832 ____N (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00184320 ____N (Microsoft Corporation) C:\WINDOWS\system32\microsoft.managementconsole.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00182272 ____N (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00177664 ____N (Microsoft Corporation) C:\WINDOWS\system32\napstat.exe 2013-07-28 13:27 - 2008-04-14 07:52 - 00155136 ____N (Microsoft Corporation) C:\WINDOWS\system32\mssha.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00151040 ____N (Microsoft Corporation) C:\WINDOWS\system32\qagent.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00145408 ____N (Microsoft Corporation) C:\WINDOWS\system32\onex.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00136192 ____N (Microsoft Corporation) C:\WINDOWS\system32\aaclient.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00133120 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00126976 ____N (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00106496 ____N (Microsoft Corporation) C:\WINDOWS\system32\mmcfxcommon.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00095232 ____N (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00076800 ____N (Microsoft Corporation) C:\WINDOWS\system32\qutil.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00069120 ____N (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00062976 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3cfg.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00062464 ____N (Microsoft Corporation) C:\WINDOWS\system32\qcliprov.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00061952 ____N (Microsoft Corporation) C:\WINDOWS\system32\rasqec.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00061440 ____N (Microsoft Corporation) C:\WINDOWS\system32\kmsvc.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00059392 ____N (Microsoft Corporation) C:\WINDOWS\system32\eapqec.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00056832 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00053248 ____N (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00050688 ____N (Microsoft Corporation) C:\WINDOWS\system32\tspkg.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00048640 ____N (Microsoft Corporation) C:\WINDOWS\system32\dhcpqec.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00040960 ____N (Microsoft Corporation) C:\WINDOWS\system32\eappprxy.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00039936 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3gpclnt.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00039936 ____N (Microsoft Corporation) C:\WINDOWS\system32\dimsroam.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00037376 ____N (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00033792 ____N (Microsoft Corporation) C:\WINDOWS\system32\mmcperf.exe 2013-07-28 13:27 - 2008-04-14 07:52 - 00033792 ____N (Microsoft Corporation) C:\WINDOWS\system32\eapsvc.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00030720 ____N (Microsoft Corporation) C:\WINDOWS\system32\eapolqec.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00030208 ____N (Microsoft Corporation) C:\WINDOWS\system32\napipsec.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00026112 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00019456 ____N (Microsoft Corporation) C:\WINDOWS\system32\dimsntfy.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00012800 ____N (Microsoft Corporation) C:\WINDOWS\system32\credssp.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00009216 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3dlg.dll 2013-07-28 13:27 - 2008-04-14 07:52 - 00007168 ____N (Microsoft Corporation) C:\WINDOWS\system32\bitsprx4.dll 2013-07-28 13:27 - 2008-04-14 07:51 - 00086016 ____C (Sipro Lab Telecom Inc.) C:\WINDOWS\system32\dllcache\sl_anet.acm 2013-07-28 13:27 - 2008-04-14 07:50 - 00294912 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msaud32.acm 2013-07-28 13:27 - 2008-04-14 07:50 - 00290816 ____C (Fraunhofer Institut Integrierte Schaltungen IIS) C:\WINDOWS\system32\dllcache\l3codeca.acm 2013-07-28 13:27 - 2008-04-14 07:50 - 00006144 ____N (Microsoft Corporation) C:\WINDOWS\system32\kbdpash.dll 2013-07-28 13:27 - 2008-04-14 07:50 - 00006144 ____N (Microsoft Corporation) C:\WINDOWS\system32\kbdnepr.dll 2013-07-28 13:27 - 2008-04-14 07:50 - 00006144 ____N (Microsoft Corporation) C:\WINDOWS\system32\kbdiultn.dll 2013-07-28 13:27 - 2008-04-14 07:50 - 00006144 ____N (Microsoft Corporation) C:\WINDOWS\system32\kbdbhc.dll 2013-07-28 13:27 - 2008-04-14 07:27 - 00093184 ____N (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll 2013-07-28 13:27 - 2008-04-14 07:27 - 00093184 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msxml6r.dll 2013-07-28 13:27 - 2008-04-14 07:26 - 00081408 ____N (Microsoft Corporation) C:\WINDOWS\system32\msshavmsg.dll 2013-07-28 13:27 - 2008-04-14 00:09 - 00779776 ____N (Microsoft Corporation) C:\WINDOWS\system32\xpsp3res.dll 2013-07-28 13:27 - 2007-06-26 11:30 - 00572557 ____C C:\WINDOWS\system32\dllcache\rtuner.wmv 2013-07-28 13:27 - 2007-06-26 11:30 - 00457607 ____C C:\WINDOWS\system32\dllcache\mdlib.wmv 2013-07-28 13:27 - 2007-06-26 11:30 - 00381425 ____C C:\WINDOWS\system32\dllcache\copycd.wmv 2013-07-28 13:27 - 2007-06-26 11:30 - 00375519 ____C C:\WINDOWS\system32\dllcache\nuskin.wmv 2013-07-28 13:27 - 2007-06-26 11:30 - 00354468 ____C C:\WINDOWS\system32\dllcache\wmpaud1.wav 2013-07-28 13:27 - 2007-06-26 11:30 - 00343204 ____C C:\WINDOWS\system32\dllcache\wmpaud7.wav 2013-07-28 13:27 - 2007-06-26 11:30 - 00343204 ____C C:\WINDOWS\system32\dllcache\wmpaud6.wav 2013-07-28 13:27 - 2007-06-26 11:30 - 00300969 ____C C:\WINDOWS\system32\dllcache\viz.wmv 2013-07-28 13:27 - 2007-06-26 11:30 - 00172196 ____C C:\WINDOWS\system32\dllcache\wmpaud9.wav 2013-07-28 13:27 - 2007-06-26 11:30 - 00172196 ____C C:\WINDOWS\system32\dllcache\wmpaud8.wav 2013-07-28 13:27 - 2007-06-26 11:30 - 00172196 ____C C:\WINDOWS\system32\dllcache\wmpaud3.wav 2013-07-28 13:27 - 2007-06-26 11:30 - 00086196 ____C C:\WINDOWS\system32\dllcache\wmpaud5.wav 2013-07-28 13:27 - 2007-06-26 11:30 - 00086180 ____C C:\WINDOWS\system32\dllcache\wmpaud4.wav 2013-07-28 13:27 - 2007-06-26 11:30 - 00086180 ____C C:\WINDOWS\system32\dllcache\wmpaud2.wav 2013-07-28 13:27 - 2007-06-26 11:30 - 00022060 ____C C:\WINDOWS\system32\dllcache\npds.zip 2013-07-28 13:27 - 2007-06-26 11:30 - 00010457 ____C C:\WINDOWS\system32\dllcache\wmptour.hta 2013-07-28 13:27 - 2007-06-26 11:30 - 00009585 ____C C:\WINDOWS\system32\dllcache\controls.css 2013-07-28 13:27 - 2007-06-26 11:30 - 00008298 ____C C:\WINDOWS\system32\dllcache\contents.htm 2013-07-28 13:27 - 2007-06-26 11:30 - 00006878 ____C C:\WINDOWS\system32\dllcache\controls.js 2013-07-28 13:27 - 2007-06-26 11:30 - 00005971 ____C C:\WINDOWS\system32\dllcache\events.js 2013-07-28 13:27 - 2007-06-26 11:30 - 00003187 ____C C:\WINDOWS\system32\dllcache\tour.js 2013-07-28 13:27 - 2007-06-26 11:30 - 00001771 ____C C:\WINDOWS\system32\dllcache\wmptour.css 2013-07-28 13:27 - 2007-06-26 11:30 - 00001148 ____C C:\WINDOWS\system32\dllcache\snd.htm 2013-07-28 13:27 - 2007-06-26 11:30 - 00000420 ____C C:\WINDOWS\system32\dllcache\wmploc.js 2013-07-28 13:27 - 2007-06-26 11:29 - 00097117 ____C C:\WINDOWS\system32\dllcache\mplayer2.hlp 2013-07-28 13:27 - 2007-06-26 11:29 - 00001885 ____C C:\WINDOWS\system32\dllcache\mplayer2.cnt 2013-07-28 13:27 - 2007-06-26 11:26 - 00000403 ____C C:\WINDOWS\system32\dllcache\npdrmv2.zip 2013-07-28 13:27 - 2007-02-21 10:36 - 00026141 ____C C:\WINDOWS\system32\dllcache\wmplay.chm 2013-07-28 13:27 - 2007-02-21 10:25 - 00660224 ____C C:\WINDOWS\system32\dllcache\wmplayer.chm 2013-07-28 13:27 - 2007-02-21 10:25 - 00184109 ____C C:\WINDOWS\system32\dllcache\compact.wmz 2013-07-28 13:27 - 2007-02-21 10:25 - 00084531 ____C C:\WINDOWS\system32\dllcache\plyr_err.chm 2013-07-28 13:27 - 2007-02-21 10:25 - 00066132 ____C C:\WINDOWS\system32\dllcache\revert.wmz 2013-07-28 13:27 - 2007-02-21 10:25 - 00001476 ____C C:\WINDOWS\system32\dllcache\plylst5.wpl 2013-07-28 13:27 - 2007-02-21 10:25 - 00001471 ____C C:\WINDOWS\system32\dllcache\plylst6.wpl 2013-07-28 13:27 - 2007-02-21 10:25 - 00001471 ____C C:\WINDOWS\system32\dllcache\plylst12.wpl 2013-07-28 13:27 - 2007-02-21 10:25 - 00001469 ____C C:\WINDOWS\system32\dllcache\plylst3.wpl 2013-07-28 13:27 - 2007-02-21 10:25 - 00001467 ____C C:\WINDOWS\system32\dllcache\plylst4.wpl 2013-07-28 13:27 - 2007-02-21 10:25 - 00001261 ____C C:\WINDOWS\system32\dllcache\plylst1.wpl 2013-07-28 13:27 - 2007-02-21 10:25 - 00001055 ____C C:\WINDOWS\system32\dllcache\plylst2.wpl 2013-07-28 13:27 - 2007-02-21 10:25 - 00001047 ____C C:\WINDOWS\system32\dllcache\plylst7.wpl 2013-07-28 13:27 - 2007-02-21 10:25 - 00001038 ____C C:\WINDOWS\system32\dllcache\plylst8.wpl 2013-07-28 13:27 - 2007-02-21 10:25 - 00000807 ____C C:\WINDOWS\system32\dllcache\plylst11.wpl 2013-07-28 13:27 - 2007-02-21 10:25 - 00000800 ____C C:\WINDOWS\system32\dllcache\plylst10.wpl 2013-07-28 13:27 - 2007-02-21 10:25 - 00000782 ____C C:\WINDOWS\system32\dllcache\plylst9.wpl 2013-07-28 13:27 - 2007-02-21 10:25 - 00000779 ____C C:\WINDOWS\system32\dllcache\plylst13.wpl 2013-07-28 13:27 - 2007-02-21 10:25 - 00000778 ____C C:\WINDOWS\system32\dllcache\plylst14.wpl 2013-07-28 13:27 - 2007-02-21 10:25 - 00000725 ____C C:\WINDOWS\system32\dllcache\plylst15.wpl 2013-07-28 13:27 - 2006-11-03 10:56 - 00079196 ____C C:\WINDOWS\system32\dllcache\wmplayer.adm 2013-07-28 13:24 - 2008-04-14 07:52 - 00294912 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dlimport.exe 2013-07-28 13:22 - 2013-07-28 14:28 - 00124194 _____ C:\WINDOWS\updspapi.log 2013-07-28 13:22 - 2008-04-14 00:10 - 00010240 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sffp_mmc.sys 2013-07-28 13:22 - 2008-04-13 22:06 - 00144384 ____N (Windows (R) Server 2003 DDK provider) C:\WINDOWS\system32\Drivers\hdaudbus.sys 2013-07-28 13:21 - 2006-12-29 00:31 - 00019569 _____ C:\WINDOWS\002946_.tmp 2013-07-28 13:20 - 2013-07-31 00:22 - 00000000 ____D C:\WINDOWS\security 2013-07-28 13:20 - 2013-07-28 13:45 - 00000000 ____D C:\WINDOWS\Help 2013-07-28 13:20 - 2013-07-28 13:42 - 00000000 ____D C:\WINDOWS\Media 2013-07-28 13:20 - 2013-07-28 13:32 - 00000000 ____D C:\WINDOWS\system32\1031 2013-07-28 13:20 - 2013-07-28 13:27 - 00000000 ____D C:\WINDOWS\system32\usmt 2013-07-28 13:20 - 2013-07-28 13:27 - 00000000 ____D C:\WINDOWS\system32\inetsrv 2013-07-28 13:20 - 2013-07-28 13:27 - 00000000 ____D C:\WINDOWS\PeerNet 2013-07-28 13:20 - 2013-07-28 13:27 - 00000000 ____D C:\WINDOWS\ime 2013-07-28 13:20 - 2013-07-28 13:24 - 00000000 ____D C:\WINDOWS\twain_32 2013-07-28 13:20 - 2013-07-28 13:24 - 00000000 ____D C:\WINDOWS\system32\ras 2013-07-28 13:20 - 2013-07-28 13:24 - 00000000 ____D C:\WINDOWS\system32\npp 2013-07-28 13:20 - 2013-07-28 13:24 - 00000000 ____D C:\WINDOWS\system 2013-07-28 13:20 - 2013-07-28 13:24 - 00000000 ____D C:\WINDOWS\msagent 2013-07-28 13:20 - 2013-07-28 13:23 - 00000000 ____D C:\WINDOWS\system32\icsxml 2013-07-28 13:20 - 2013-07-28 13:22 - 00000000 ____D C:\WINDOWS\system32\1033 2013-07-28 13:20 - 2013-07-28 13:21 - 00000000 ____D C:\WINDOWS\system32\ReinstallBackups 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\wins 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\ShellExt 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\mui 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\IME 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\export 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\Drivers\disdn 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\dhcp 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\3com_dmi 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\3076 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\2052 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\1054 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\1042 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\1041 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\1037 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\1028 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\1025 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\Resources 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\Provisioning 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\OEM 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\mui 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\java 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\Driver Cache 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\Connection Wizard 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\addins 2013-07-28 13:20 - 2013-07-28 12:22 - 00000000 ____D C:\WINDOWS\repair 2013-07-28 13:20 - 2013-07-28 12:17 - 00000000 ___RD C:\WINDOWS\Web 2013-07-28 13:20 - 2013-07-28 12:17 - 00000000 ____D C:\WINDOWS\system32\ias 2013-07-28 13:20 - 2013-07-28 12:11 - 00000000 ____D C:\WINDOWS\pchealth 2013-07-28 13:20 - 2013-07-28 11:52 - 00000000 ____D C:\WINDOWS\Cursors 2013-07-28 13:20 - 2013-07-28 11:50 - 00000000 ____D C:\WINDOWS\system32\spool 2013-07-28 13:18 - 2013-07-28 13:18 - 00000000 ____D C:\WINDOWS\$NtServicePackUninstl$ 2013-07-28 13:13 - 2013-07-28 13:13 - 00000000 __SHD C:\WINDOWS\CSC 2013-07-28 13:12 - 2013-07-28 14:49 - 00107625 _____ C:\WINDOWS\spupdsvc.log 2013-07-28 13:12 - 2013-07-28 13:31 - 00000090 _____ C:\WINDOWS\system32\spupdwxp.log 2013-07-28 13:10 - 2013-02-12 02:32 - 00012928 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usb8023x.sys 2013-07-28 13:10 - 2008-06-14 19:32 - 00273024 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2013-07-28 13:10 - 2008-04-14 07:53 - 00073796 ____N (Smart Link) C:\WINDOWS\system32\slserv.exe 2013-07-28 13:10 - 2008-04-14 07:53 - 00032866 ____N (Smart Link) C:\WINDOWS\system32\slrundll.exe 2013-07-28 13:10 - 2008-04-14 07:53 - 00032866 ____N (Smart Link) C:\WINDOWS\slrundll.exe 2013-07-28 13:10 - 2008-04-14 07:53 - 00028672 ____N (Microsoft Corporation) C:\WINDOWS\system32\vidcap.ax 2013-07-28 13:10 - 2008-04-14 07:53 - 00023040 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\ativmvxx.ax 2013-07-28 13:10 - 2008-04-14 07:53 - 00009728 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\ativdaxx.ax 2013-07-28 13:10 - 2008-04-14 07:52 - 04274816 ____N (NVIDIA Corporation) C:\WINDOWS\system32\nv4_disp.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 01737856 ____N (Matrox Graphics Inc.) C:\WINDOWS\system32\mtxparhd.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 00870784 ____N (ATI Technologies Inc. ) C:\WINDOWS\system32\ati3d1ag.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 00397056 ____N (S3 Graphics, Inc.) C:\WINDOWS\system32\s3gnb.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 00377984 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\ati2dvaa.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 00286792 ____N (Smart Link) C:\WINDOWS\system32\slextspk.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 00188508 ____N (Smart Link) C:\WINDOWS\system32\slgen.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 00086016 ____N (Conexant) C:\WINDOWS\system32\mdmxsdk.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 00073832 ____N (Smart Link) C:\WINDOWS\system32\slcoinst.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 00032768 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\ativtmxx.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 00032285 ____N (Conexant Systems, Inc.) C:\WINDOWS\system32\hsfcisp2.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 00025471 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\atv04nt5.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 00021183 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\atv01nt5.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 00017279 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\atv10nt5.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 00015423 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\ch7xxnt5.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 00014143 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\atv06nt5.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 00011359 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\atv02nt5.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 00011325 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\vchnt5.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 00010752 ____N (Microsoft Corporation) C:\WINDOWS\system32\smtpapi.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 00009728 ____N (Microsoft Corporation) C:\WINDOWS\system32\rwnh.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 00004255 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv01nt5.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 00003967 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv02nt5.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 00003901 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\siint5.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 00003775 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv11nt5.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 00003711 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv09nt5.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 00003647 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv07nt5.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 00003615 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv05nt5.dll 2013-07-28 13:10 - 2008-04-14 07:52 - 00003135 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv08nt5.dll 2013-07-28 13:10 - 2008-04-14 07:24 - 00025856 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys 2013-07-28 13:10 - 2008-04-14 00:26 - 00030592 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rndismpx.sys 2013-07-28 13:10 - 2008-04-14 00:21 - 00101120 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthpan.sys 2013-07-28 13:10 - 2008-04-14 00:16 - 00121984 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbvideo.sys 2013-07-28 13:10 - 2008-04-14 00:16 - 00059136 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys 2013-07-28 13:10 - 2008-04-14 00:16 - 00037888 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthmodem.sys 2013-07-28 13:10 - 2008-04-14 00:16 - 00036480 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthprint.sys 2013-07-28 13:10 - 2008-04-14 00:16 - 00018944 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthusb.sys 2013-07-28 13:10 - 2008-04-14 00:16 - 00017024 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys 2013-07-28 13:10 - 2008-04-14 00:15 - 00046592 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\irbus.sys 2013-07-28 13:10 - 2008-04-14 00:15 - 00019200 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidir.sys 2013-07-28 13:10 - 2008-04-14 00:13 - 00014208 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wacompen.sys 2013-07-28 13:10 - 2008-04-14 00:13 - 00012672 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mutohpen.sys 2013-07-28 13:10 - 2008-04-14 00:13 - 00009728 ____N (Microsoft Corporation) C:\WINDOWS\system32\comsdupd.exe 2013-07-28 13:10 - 2008-04-14 00:06 - 00046464 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\gagp30kx.sys 2013-07-28 13:10 - 2008-04-14 00:06 - 00044928 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agpcpq.sys 2013-07-28 13:10 - 2008-04-14 00:06 - 00044672 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\uagp35.sys 2013-07-28 13:10 - 2008-04-14 00:06 - 00043008 ____N (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\amdagp.sys 2013-07-28 13:10 - 2008-04-14 00:06 - 00042752 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\alim1541.sys 2013-07-28 13:10 - 2008-04-14 00:06 - 00042368 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agp440.sys 2013-07-28 13:10 - 2008-04-14 00:06 - 00042240 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\viaagp.sys 2013-07-28 13:10 - 2008-04-14 00:06 - 00040960 ____N (Silicon Integrated Systems Corporation) C:\WINDOWS\system32\Drivers\sisagp.sys 2013-07-28 13:10 - 2008-04-14 00:06 - 00005888 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\smbali.sys 2013-07-28 13:10 - 2007-12-05 07:26 - 02782208 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati2mtag.sys 2013-07-28 13:10 - 2007-12-05 05:04 - 00269312 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\ati2dvag.dll 2013-07-28 13:10 - 2007-12-05 04:44 - 03175584 _____ (ATI Technologies Inc. ) C:\WINDOWS\system32\ati3duag.dll 2013-07-28 13:10 - 2007-12-05 04:33 - 01640192 _____ (ATI Technologies Inc. ) C:\WINDOWS\system32\ativvaxx.dll 2013-07-28 13:10 - 2007-12-05 04:11 - 00499712 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\ati2cqag.dll 2013-07-28 13:10 - 2004-08-04 00:38 - 00327168 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati2mtaa.sys 2013-07-28 13:10 - 2004-08-03 22:41 - 01309184 ____N (Smart Link) C:\WINDOWS\system32\Drivers\mtlstrm.sys 2013-07-28 13:10 - 2004-08-03 22:41 - 01041536 ____N (Conexant Systems, Inc.) C:\WINDOWS\system32\Drivers\hsfdpsp2.sys 2013-07-28 13:10 - 2004-08-03 22:41 - 00685056 ____N (Conexant Systems, Inc.) C:\WINDOWS\system32\Drivers\hsfcxts2.sys 2013-07-28 13:10 - 2004-08-03 22:41 - 00404990 ____N (Smart Link) C:\WINDOWS\system32\Drivers\slntamr.sys 2013-07-28 13:10 - 2004-08-03 22:41 - 00220032 ____N (Conexant Systems, Inc.) C:\WINDOWS\system32\Drivers\hsfbs2s2.sys 2013-07-28 13:10 - 2004-08-03 22:41 - 00180360 ____N (Smart Link) C:\WINDOWS\system32\Drivers\ntmtlfax.sys 2013-07-28 13:10 - 2004-08-03 22:41 - 00129535 ____N (Smart Link) C:\WINDOWS\system32\Drivers\slnt7554.sys 2013-07-28 13:10 - 2004-08-03 22:41 - 00126686 ____N (Smart Link) C:\WINDOWS\system32\Drivers\mtlmnt5.sys 2013-07-28 13:10 - 2004-08-03 22:41 - 00095424 ____N (Smart Link) C:\WINDOWS\system32\Drivers\slnthal.sys 2013-07-28 13:10 - 2004-08-03 22:41 - 00013776 ____N (Smart Link) C:\WINDOWS\system32\Drivers\recagent.sys 2013-07-28 13:10 - 2004-08-03 22:41 - 00013240 ____N (Smart Link) C:\WINDOWS\system32\Drivers\slwdmsup.sys 2013-07-28 13:10 - 2004-08-03 22:41 - 00011868 ____N (Conexant) C:\WINDOWS\system32\Drivers\mdmxsdk.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 01897408 ____N (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nv4_mini.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00452736 ____N (Matrox Graphics Inc.) C:\WINDOWS\system32\Drivers\mtxparhm.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00166912 ____N (S3 Graphics, Inc.) C:\WINDOWS\system32\Drivers\s3gnbm.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00104960 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinrvxx.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00073216 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atintuxx.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00063663 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1rvxx.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00063488 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinxsxx.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00057856 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinbtxx.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00056623 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1btxx.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00052224 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinraxx.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00036463 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1tuxx.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00034735 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1xsxx.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00031744 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinxbxx.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00030671 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1raxx.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00029455 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1xbxx.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00028672 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinsnxx.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00026367 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1snxx.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00025471 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\watv10nt.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00022271 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\watv06nt.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00021343 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1ttxx.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00014336 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinpdxx.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00013824 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinttxx.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00013824 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinmdxx.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00012047 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1pdxx.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00011935 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\wadv11nt.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00011871 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\wadv09nt.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00011807 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\wadv07nt.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00011615 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1mdxx.sys 2013-07-28 13:10 - 2004-08-03 22:29 - 00011295 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\wadv08nt.sys 2013-07-28 13:10 - 2004-07-17 22:55 - 00129045 ____N C:\WINDOWS\system32\Drivers\cxthsfs2.cty 2013-07-28 13:10 - 2004-07-17 11:36 - 00064352 ____N C:\WINDOWS\system32\Drivers\ativmc20.cod 2013-07-28 13:10 - 2004-07-17 11:35 - 00067866 ____N C:\WINDOWS\system32\Drivers\netwlan5.img 2013-07-28 13:08 - 2013-07-28 13:08 - 00000000 ____D C:\WINDOWS\ServicePackFiles 2013-07-28 13:08 - 2009-01-07 18:20 - 00026144 _____ (Microsoft Corporation) C:\WINDOWS\system32\spupdsvc.exe 2013-07-28 13:08 - 2004-07-17 11:40 - 00019528 _____ C:\WINDOWS\000001_.tmp 2013-07-28 13:06 - 2013-07-28 13:29 - 00653754 _____ C:\WINDOWS\svcpack.log 2013-07-28 12:58 - 2013-07-30 20:16 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy 2013-07-28 12:58 - 2013-07-28 12:58 - 00000000 ___RD C:\Dokumente und Einstellungen\Fabian\Startmenü\Programme\Verwaltung 2013-07-28 12:39 - 2013-07-30 00:45 - 00000275 _____ C:\WINDOWS\wiadebug.log 2013-07-28 12:39 - 2013-07-30 00:45 - 00000050 _____ C:\WINDOWS\wiaservc.log 2013-07-28 12:39 - 2013-07-28 14:56 - 00001319 _____ C:\Dokumente und Einstellungen\Fabian\Desktop\explorer.lnk 2013-07-28 12:39 - 2013-07-28 12:39 - 00000000 _____ C:\WINDOWS\Sti_Trace.log 2013-07-28 12:39 - 2008-04-14 07:52 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\hidserv.dll 2013-07-28 12:39 - 2008-04-14 00:17 - 00025856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbprint.sys 2013-07-28 12:39 - 2001-08-17 14:59 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\audstub.sys 2013-07-28 12:38 - 2008-04-14 07:22 - 00057728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\redbook.sys 2013-07-28 12:37 - 2008-04-14 07:52 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbui.dll 2013-07-28 12:36 - 2013-08-01 02:40 - 00000000 ___RD C:\Programme 2013-07-28 12:36 - 2013-08-01 01:12 - 01002614 _____ C:\WINDOWS\iis6.log 2013-07-28 12:36 - 2013-07-29 07:16 - 00000000 ____D C:\Programme\Gemeinsame Dateien\Microsoft Shared 2013-07-28 12:36 - 2013-07-29 07:01 - 00897954 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2013-07-28 12:36 - 2013-07-28 17:48 - 00890110 _____ C:\WINDOWS\FaxSetup.log 2013-07-28 12:36 - 2013-07-28 17:48 - 00437253 _____ C:\WINDOWS\ocgen.log 2013-07-28 12:36 - 2013-07-28 17:48 - 00411955 _____ C:\WINDOWS\tsoc.log 2013-07-28 12:36 - 2013-07-28 17:48 - 00306673 _____ C:\WINDOWS\comsetup.log 2013-07-28 12:36 - 2013-07-28 17:48 - 00278768 _____ C:\WINDOWS\msmqinst.log 2013-07-28 12:36 - 2013-07-28 17:48 - 00184072 _____ C:\WINDOWS\ntdtcsetup.log 2013-07-28 12:36 - 2013-07-28 17:48 - 00156759 _____ C:\WINDOWS\netfxocm.log 2013-07-28 12:36 - 2013-07-28 17:48 - 00065746 _____ C:\WINDOWS\MedCtrOC.log 2013-07-28 12:36 - 2013-07-28 17:48 - 00049395 _____ C:\WINDOWS\ocmsn.log 2013-07-28 12:36 - 2013-07-28 17:48 - 00046079 _____ C:\WINDOWS\tabletoc.log 2013-07-28 12:36 - 2013-07-28 17:48 - 00044763 _____ C:\WINDOWS\msgsocm.log 2013-07-28 12:36 - 2013-07-28 17:48 - 00001917 _____ C:\WINDOWS\imsins.log 2013-07-28 12:36 - 2013-07-28 14:29 - 00001374 _____ C:\WINDOWS\imsins.BAK 2013-07-28 12:36 - 2013-07-28 12:36 - 00000000 ____D C:\Programme\Gemeinsame Dateien\SpeechEngines 2013-07-28 12:36 - 2013-07-28 12:36 - 00000000 ____D C:\Programme\Gemeinsame Dateien\ODBC 2013-07-28 12:36 - 2013-07-28 12:17 - 00004161 _____ C:\WINDOWS\ODBCINST.INI 2013-07-28 12:36 - 2004-08-04 14:00 - 01685606 ____C C:\WINDOWS\system32\dllcache\sam.spd 2013-07-28 12:36 - 2004-08-04 14:00 - 00774144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\spttseng.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00643717 ____C C:\WINDOWS\system32\dllcache\ltts1033.lxa 2013-07-28 12:36 - 2004-08-04 14:00 - 00605050 ____C C:\WINDOWS\system32\dllcache\r1033tts.lxa 2013-07-28 12:36 - 2004-08-04 14:00 - 00077824 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\spcommon.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00066594 ____C C:\WINDOWS\system32\dllcache\c_857.nls 2013-07-28 12:36 - 2004-08-04 14:00 - 00066594 _____ C:\WINDOWS\system32\c_857.nls 2013-07-28 12:36 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_28603.nls 2013-07-28 12:36 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_28599.nls 2013-07-28 12:36 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_28595.nls 2013-07-28 12:36 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_10081.nls 2013-07-28 12:36 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_10017.nls 2013-07-28 12:36 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_10007.nls 2013-07-28 12:36 - 2004-08-04 14:00 - 00066082 _____ C:\WINDOWS\system32\c_28603.nls 2013-07-28 12:36 - 2004-08-04 14:00 - 00066082 _____ C:\WINDOWS\system32\c_28599.nls 2013-07-28 12:36 - 2004-08-04 14:00 - 00066082 _____ C:\WINDOWS\system32\C_28595.NLS 2013-07-28 12:36 - 2004-08-04 14:00 - 00066082 _____ C:\WINDOWS\system32\c_10081.nls 2013-07-28 12:36 - 2004-08-04 14:00 - 00066082 _____ C:\WINDOWS\system32\c_10017.nls 2013-07-28 12:36 - 2004-08-04 14:00 - 00066082 _____ C:\WINDOWS\system32\c_10007.nls 2013-07-28 12:36 - 2004-08-04 14:00 - 00065536 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\spcplui.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00036864 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sapisvr.exe 2013-07-28 12:36 - 2004-08-04 14:00 - 00006144 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdtuq.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00006144 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdtuf.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdtuq.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdtuf.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdycc.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbduzb.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdur.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdtat.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdru1.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdru.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdmon.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdkyr.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdkaz.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdbu.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdblr.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdazel.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdaze.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdycc.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbduzb.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdur.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdtat.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdru1.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdru.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdmon.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdkyr.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdkaz.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdbu.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdblr.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdazel.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdaze.dll 2013-07-28 12:36 - 2004-08-04 14:00 - 00000888 ____C C:\WINDOWS\system32\dllcache\sam.sdf 2013-07-28 12:35 - 2013-08-01 01:10 - 00537788 _____ C:\WINDOWS\setupapi.log 2013-07-28 12:35 - 2013-07-28 13:27 - 00000000 ___RD C:\Dokumente und Einstellungen\All Users\Startmenü 2013-07-28 12:35 - 2013-07-28 12:48 - 00003064 _____ C:\WINDOWS\regopt.log 2013-07-28 12:35 - 2013-07-28 12:35 - 00000000 ___RD C:\Dokumente und Einstellungen\Default User\Startmenü 2013-07-28 12:35 - 2013-07-28 12:35 - 00000000 ___HD C:\Dokumente und Einstellungen\Default User\Netzwerkumgebung 2013-07-28 12:35 - 2013-07-28 12:35 - 00000000 ___HD C:\Dokumente und Einstellungen\Default User\Druckumgebung 2013-07-28 12:35 - 2013-07-28 12:10 - 00000000 ___RD C:\Dokumente und Einstellungen\All Users\Dokumente 2013-07-28 12:35 - 2008-04-14 07:52 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\storprop.dll 2013-07-28 12:35 - 2008-04-14 07:52 - 00070144 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe 2013-07-28 12:35 - 2008-04-14 07:52 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\batt.dll 2013-07-28 12:35 - 2008-04-14 00:24 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\irenum.sys 2013-07-28 12:35 - 2004-10-29 02:43 - 00011421 ____R C:\WINDOWS\SET2A.tmp 2013-07-28 12:35 - 2004-10-28 03:53 - 00015304 ____R C:\WINDOWS\SET2B.tmp 2013-07-28 12:35 - 2004-10-21 19:10 - 00010425 ____R C:\WINDOWS\SET29.tmp 2013-07-28 12:35 - 2004-09-29 21:14 - 00013249 ____R C:\WINDOWS\SET2D.tmp 2013-07-28 12:35 - 2004-08-12 20:12 - 00010425 ____R C:\WINDOWS\SET2C.tmp 2013-07-28 12:35 - 2004-08-04 14:00 - 01086058 ____R C:\WINDOWS\SET4.tmp 2013-07-28 12:35 - 2004-08-04 14:00 - 01014663 ____R C:\WINDOWS\SET3.tmp 2013-07-28 12:35 - 2004-08-04 14:00 - 01014663 ____C C:\WINDOWS\system32\dllcache\SP2.CAT 2013-07-28 12:35 - 2004-08-04 14:00 - 00817199 ____C C:\WINDOWS\system32\dllcache\NT5IIS.CAT 2013-07-28 12:35 - 2004-08-04 14:00 - 00399645 ____C C:\WINDOWS\system32\dllcache\MAPIMIG.CAT 2013-07-28 12:35 - 2004-08-04 14:00 - 00176157 ____C (Digi International, Inc.) C:\WINDOWS\system32\dllcache\dgrpsetu.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00176157 _____ (Digi International, Inc.) C:\WINDOWS\system32\dgrpsetu.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00103936 ____C (Equinox Systems Inc.) C:\WINDOWS\system32\dllcache\eqnclass.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00103936 _____ (Equinox Systems Inc.) C:\WINDOWS\system32\EqnClass.Dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00086556 ____C (Digi International) C:\WINDOWS\system32\dllcache\dgsetup.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00086556 _____ (Digi International) C:\WINDOWS\system32\dgsetup.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00066594 ____C C:\WINDOWS\system32\dllcache\c_869.nls 2013-07-28 12:35 - 2004-08-04 14:00 - 00066594 ____C C:\WINDOWS\system32\dllcache\c_866.nls 2013-07-28 12:35 - 2004-08-04 14:00 - 00066594 ____C C:\WINDOWS\system32\dllcache\c_855.nls 2013-07-28 12:35 - 2004-08-04 14:00 - 00066594 ____C C:\WINDOWS\system32\dllcache\c_852.nls 2013-07-28 12:35 - 2004-08-04 14:00 - 00066594 ____C C:\WINDOWS\system32\dllcache\c_737.nls 2013-07-28 12:35 - 2004-08-04 14:00 - 00066594 _____ C:\WINDOWS\system32\c_869.nls 2013-07-28 12:35 - 2004-08-04 14:00 - 00066594 _____ C:\WINDOWS\system32\c_866.nls 2013-07-28 12:35 - 2004-08-04 14:00 - 00066594 _____ C:\WINDOWS\system32\c_855.nls 2013-07-28 12:35 - 2004-08-04 14:00 - 00066594 _____ C:\WINDOWS\system32\c_852.nls 2013-07-28 12:35 - 2004-08-04 14:00 - 00066594 _____ C:\WINDOWS\system32\c_737.nls 2013-07-28 12:35 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_875.nls 2013-07-28 12:35 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_28597.nls 2013-07-28 12:35 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_28594.nls 2013-07-28 12:35 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20127.nls 2013-07-28 12:35 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_10082.nls 2013-07-28 12:35 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_10029.nls 2013-07-28 12:35 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_10010.nls 2013-07-28 12:35 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_10006.nls 2013-07-28 12:35 - 2004-08-04 14:00 - 00066082 _____ C:\WINDOWS\system32\c_875.nls 2013-07-28 12:35 - 2004-08-04 14:00 - 00066082 _____ C:\WINDOWS\system32\C_28597.NLS 2013-07-28 12:35 - 2004-08-04 14:00 - 00066082 _____ C:\WINDOWS\system32\C_28594.NLS 2013-07-28 12:35 - 2004-08-04 14:00 - 00066082 _____ C:\WINDOWS\system32\c_20127.nls 2013-07-28 12:35 - 2004-08-04 14:00 - 00066082 _____ C:\WINDOWS\system32\c_10082.nls 2013-07-28 12:35 - 2004-08-04 14:00 - 00066082 _____ C:\WINDOWS\system32\c_10029.nls 2013-07-28 12:35 - 2004-08-04 14:00 - 00066082 _____ C:\WINDOWS\system32\c_10010.nls 2013-07-28 12:35 - 2004-08-04 14:00 - 00066082 _____ C:\WINDOWS\system32\c_10006.nls 2013-07-28 12:35 - 2004-08-04 14:00 - 00041270 ____C C:\WINDOWS\system32\dllcache\MW770.CAT 2013-07-28 12:35 - 2004-08-04 14:00 - 00024661 ____C (Perle Systems Ltd.) C:\WINDOWS\system32\dllcache\spxcoins.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00024661 _____ (Perle Systems Ltd.) C:\WINDOWS\system32\spxcoins.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00015872 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\taskman.exe 2013-07-28 12:35 - 2004-08-04 14:00 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\TASKMAN.EXE 2013-07-28 12:35 - 2004-08-04 14:00 - 00014043 ____R C:\WINDOWS\SET8.tmp 2013-07-28 12:35 - 2004-08-04 14:00 - 00013824 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\irclass.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\irclass.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00013472 ____C C:\WINDOWS\system32\dllcache\HPCRDP.CAT 2013-07-28 12:35 - 2004-08-04 14:00 - 00008574 ____C C:\WINDOWS\system32\dllcache\IASNT4.CAT 2013-07-28 12:35 - 2004-08-04 14:00 - 00008192 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdhept.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00008192 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdhept.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00007334 ____C C:\WINDOWS\system32\dllcache\wmerrenu.cat 2013-07-28 12:35 - 2004-08-04 14:00 - 00007168 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdcz.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00007168 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdcz.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006656 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdycl.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006656 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdsl1.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006656 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdsl.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006656 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdpl.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006656 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdhu.dll |
07.08.2013, 10:56 | #7 |
| Windows XP bzw. Betriebssystem unabhängig, Rootkit plagt selbst nach Formatierung Log Teil 2 Code:
ATTFilter 2013-07-28 12:35 - 2004-08-04 14:00 - 00006656 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdhela3.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006656 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdcz2.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006656 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdcz1.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006656 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdcr.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006656 ____R (Microsoft Corporation) C:\WINDOWS\system32\KBDAL.DLL 2013-07-28 12:35 - 2004-08-04 14:00 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdycl.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdsl1.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdsl.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdpl.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdhu.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdhela3.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdcz2.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdcz1.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdcr.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdal.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006144 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdlv1.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006144 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdlv.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006144 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdhela2.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006144 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdgkl.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006144 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdest.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdlv1.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdlv.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdhela2.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdgkl.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdest.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdro.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdpl1.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdlt1.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdlt.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdhu1.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdhe319.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdhe220.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00005632 ____R (Microsoft Corporation) C:\WINDOWS\system32\kbdhe.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdro.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdpl1.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdlt1.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdlt.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdhu1.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdhe319.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdhe220.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdhe.dll 2013-07-28 12:35 - 2004-08-04 14:00 - 00002951 ____N C:\WINDOWS\system32\CONFIG.TMP 2013-07-28 12:35 - 2004-08-04 14:00 - 00001806 _____ C:\WINDOWS\system32\AUTOEXEC.NT 2013-07-28 12:35 - 2003-07-30 11:48 - 00007506 ____C C:\WINDOWS\system32\dllcache\OEMBIOS.CAT 2013-07-28 12:34 - 2013-07-29 07:27 - 00118952 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2013-07-28 12:34 - 2013-07-28 12:24 - 00173900 _____ C:\WINDOWS\setupact.log 2013-07-28 12:34 - 2013-07-28 12:24 - 00001278 _____ C:\WINDOWS\setuperr.log 2013-07-28 12:28 - 2013-08-05 11:27 - 00000190 ___SH C:\Dokumente und Einstellungen\Fabian\ntuser.ini 2013-07-28 12:28 - 2013-08-05 11:27 - 00000000 ____D C:\Dokumente und Einstellungen\Fabian 2013-07-28 12:28 - 2013-07-29 04:59 - 00000000 ___RD C:\Dokumente und Einstellungen\Fabian\Startmenü\Programme 2013-07-28 12:28 - 2013-07-28 13:45 - 00000768 _____ C:\Dokumente und Einstellungen\Fabian\Startmenü\Programme\Windows Media Player.lnk 2013-07-28 12:28 - 2013-07-28 13:44 - 00000783 _____ C:\Dokumente und Einstellungen\Fabian\Startmenü\Programme\Internet Explorer.lnk 2013-07-28 12:28 - 2013-07-28 13:44 - 00000000 ___RD C:\Dokumente und Einstellungen\Fabian\Startmenü\Programme\Zubehör 2013-07-28 12:28 - 2013-07-28 13:44 - 00000000 ___RD C:\Dokumente und Einstellungen\Fabian\Eigene Dateien\Eigene Musik 2013-07-28 12:28 - 2013-07-28 13:44 - 00000000 ___RD C:\Dokumente und Einstellungen\Fabian\Eigene Dateien\Eigene Bilder 2013-07-28 12:28 - 2013-07-28 13:33 - 00000000 __SHD C:\DOKUME~1\Fabian\LOKALE~1\Verlauf 2013-07-28 12:28 - 2013-07-28 13:32 - 00000718 _____ C:\Dokumente und Einstellungen\Fabian\Startmenü\Programme\Outlook Express.lnk 2013-07-28 12:28 - 2013-07-28 12:35 - 00000000 ___RD C:\Dokumente und Einstellungen\Fabian\Startmenü\Programme\Autostart 2013-07-28 12:28 - 2013-07-28 12:35 - 00000000 ___RD C:\Dokumente und Einstellungen\Fabian\Startmenü 2013-07-28 12:28 - 2013-07-28 12:35 - 00000000 ___HD C:\Dokumente und Einstellungen\Fabian\Netzwerkumgebung 2013-07-28 12:28 - 2013-07-28 12:35 - 00000000 ___HD C:\Dokumente und Einstellungen\Fabian\Druckumgebung 2013-07-28 12:28 - 2013-07-28 12:20 - 00002184 _____ C:\Dokumente und Einstellungen\Fabian\dotNetFx.log 2013-07-28 12:28 - 2013-07-28 12:20 - 00001082 _____ C:\Dokumente und Einstellungen\Fabian\langpackSetup.log 2013-07-28 12:28 - 2013-07-28 12:18 - 00001599 _____ C:\Dokumente und Einstellungen\Fabian\Startmenü\Programme\Remoteunterstützung.lnk 2013-07-28 12:28 - 2008-04-14 07:52 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpns.dll 2013-07-28 12:26 - 2013-08-05 11:28 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2013-07-28 12:26 - 2013-08-05 11:27 - 00014778 _____ C:\WINDOWS\SchedLgU.Txt 2013-07-28 12:26 - 2013-07-30 22:48 - 00000190 ___SH C:\Dokumente und Einstellungen\LocalService\ntuser.ini 2013-07-28 12:26 - 2013-07-28 12:26 - 00008192 _____ C:\WINDOWS\REGLOCS.OLD 2013-07-28 12:26 - 2013-07-28 12:26 - 00000020 ___SH C:\Dokumente und Einstellungen\NetworkService\ntuser.ini 2013-07-28 12:26 - 2013-07-28 12:26 - 00000000 __SHD C:\Dokumente und Einstellungen\NetworkService 2013-07-28 12:26 - 2013-07-28 12:26 - 00000000 __SHD C:\Dokumente und Einstellungen\LocalService 2013-07-28 12:24 - 2008-04-14 07:52 - 00065024 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\unicdime.ime 2013-07-28 12:24 - 2008-04-14 07:51 - 00571392 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tintlgnt.ime 2013-07-28 12:24 - 2008-04-14 07:51 - 00426041 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\voicepad.dll 2013-07-28 12:24 - 2008-04-14 07:51 - 00156672 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\winzm.ime 2013-07-28 12:24 - 2008-04-14 07:51 - 00156672 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\winsp.ime 2013-07-28 12:24 - 2008-04-14 07:51 - 00156672 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\winpy.ime 2013-07-28 12:24 - 2008-04-14 07:51 - 00086073 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\voicesub.dll 2013-07-28 12:24 - 2008-04-14 07:51 - 00079360 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\winar30.ime 2013-07-28 12:24 - 2008-04-14 07:51 - 00076288 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\uniime.dll 2013-07-28 12:24 - 2008-04-14 07:51 - 00072704 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wingb.ime 2013-07-28 12:24 - 2008-04-14 07:51 - 00065536 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\winime.ime 2013-07-28 12:24 - 2008-04-14 07:51 - 00010240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tmigrate.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00455168 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tintsetp.exe 2013-07-28 12:24 - 2004-08-04 14:00 - 00185344 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\thawbrkr.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00143422 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\softkey.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00101376 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\srusbusd.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00081408 ____C (Ricoh Co., Ltd.) C:\WINDOWS\system32\dllcache\rwia330.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00081408 ____C (Ricoh Co., Ltd.) C:\WINDOWS\system32\dllcache\rwia001.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00074240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\w3ext.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00048256 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\w32.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00044032 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tintlphr.exe 2013-07-28 12:24 - 2004-08-04 14:00 - 00041600 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\weitekp9.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00038912 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm9aw.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00031744 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smb6w.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00031744 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sma3w.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00031360 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\weitekp9.sys 2013-07-28 12:24 - 2004-08-04 14:00 - 00030208 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm87w.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00030208 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm81w.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00029184 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm8cw.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00028288 ____C C:\WINDOWS\system32\dllcache\xjis.nls 2013-07-28 12:24 - 2004-08-04 14:00 - 00026624 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm93w.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00026624 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm92w.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00026112 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm90w.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00026112 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm8dw.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00026112 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm8aw.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00026112 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm89w.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00025088 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm59w.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00021896 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tdipx.sys 2013-07-28 12:24 - 2004-08-04 14:00 - 00019464 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tdspx.sys 2013-07-28 12:24 - 2004-08-04 14:00 - 00019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\simptcp.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00016896 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\status.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00015872 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smierrsm.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00014336 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tsprof.exe 2013-07-28 12:24 - 2004-08-04 14:00 - 00013192 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tdasync.sys 2013-07-28 12:24 - 2004-08-04 14:00 - 00010240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\snmpstup.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00009216 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wamps51.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\w3svapi.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smimsgif.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smierrsy.dll 2013-07-28 12:24 - 2004-08-04 14:00 - 00004608 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\w3ctrs51.dll 2013-07-28 12:24 - 2001-08-18 04:54 - 00057856 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_scripto.dll 2013-07-28 12:24 - 2001-08-18 04:54 - 00026112 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_seos.dll 2013-07-28 12:24 - 2001-08-18 04:54 - 00012288 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_smtpctrs.dll 2013-07-28 12:24 - 2001-08-18 04:54 - 00007168 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_snprfdll.dll 2013-07-28 12:23 - 2008-04-14 07:51 - 00482304 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pintlgnt.ime 2013-07-28 12:23 - 2008-04-14 07:51 - 00175104 ____C C:\WINDOWS\system32\dllcache\pintlcsa.dll 2013-07-28 12:23 - 2008-04-14 07:51 - 00079360 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\phon.ime 2013-07-28 12:23 - 2008-04-14 07:51 - 00077824 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\quick.ime 2013-07-28 12:23 - 2008-04-14 07:51 - 00067584 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pmigrate.dll 2013-07-28 12:23 - 2008-04-14 07:51 - 00053760 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pintlcsd.dll 2013-07-28 12:23 - 2008-04-14 07:51 - 00026112 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\romanime.ime 2013-07-28 12:23 - 2008-04-14 07:51 - 00015872 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\padrs404.dll 2013-07-28 12:23 - 2008-04-14 07:51 - 00015360 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\padrs804.dll 2013-07-28 12:23 - 2008-04-14 07:50 - 00811064 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjp81k.dll 2013-07-28 12:23 - 2008-04-14 07:50 - 00716856 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjpcus.dll 2013-07-28 12:23 - 2008-04-14 07:50 - 00368696 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjpcic.dll 2013-07-28 12:23 - 2008-04-14 07:50 - 00340023 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjp81.ime 2013-07-28 12:23 - 2008-04-14 07:50 - 00315455 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imskf.dll 2013-07-28 12:23 - 2008-04-14 07:50 - 00274489 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjputyc.dll 2013-07-28 12:23 - 2008-04-14 07:50 - 00106496 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imekrcic.dll 2013-07-28 12:23 - 2008-04-14 07:50 - 00102456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imlang.dll 2013-07-28 12:23 - 2008-04-14 07:50 - 00094720 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imekr61.ime 2013-07-28 12:23 - 2008-04-14 07:50 - 00086016 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imekrmbx.dll 2013-07-28 12:23 - 2008-04-14 07:50 - 00081976 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjpdct.dll 2013-07-28 12:23 - 2008-04-13 22:13 - 00070144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pintlphr.exe 2013-07-28 12:23 - 2004-08-04 14:00 - 10129408 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hwxkor.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 01875968 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msir3jp.lex 2013-07-28 12:23 - 2004-08-04 14:00 - 01158818 ____C C:\WINDOWS\system32\dllcache\korwbrkr.lex 2013-07-28 12:23 - 2004-08-04 14:00 - 00471102 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imskdic.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00311359 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imepadsv.exe 2013-07-28 12:23 - 2004-08-04 14:00 - 00307257 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjpdct.exe 2013-07-28 12:23 - 2004-08-04 14:00 - 00262200 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjputy.exe 2013-07-28 12:23 - 2004-08-04 14:00 - 00233527 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjprw.exe 2013-07-28 12:23 - 2004-08-04 14:00 - 00229439 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\multibox.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00208952 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjpmig.exe 2013-07-28 12:23 - 2004-08-04 14:00 - 00196665 ____C C:\WINDOWS\system32\dllcache\imjpinst.exe 2013-07-28 12:23 - 2004-08-04 14:00 - 00155705 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjpdsvr.exe 2013-07-28 12:23 - 2004-08-04 14:00 - 00134339 ____C C:\WINDOWS\system32\dllcache\imekr.lex 2013-07-28 12:23 - 2004-08-04 14:00 - 00131584 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pmxviceo.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00102463 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imepadsm.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00098304 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msir3jp.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00092416 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mga.sys 2013-07-28 12:23 - 2004-08-04 14:00 - 00092032 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mga.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00083748 ____C C:\WINDOWS\system32\dllcache\prcp.nls 2013-07-28 12:23 - 2004-08-04 14:00 - 00083748 ____C C:\WINDOWS\system32\dllcache\prc.nls 2013-07-28 12:23 - 2004-08-04 14:00 - 00070656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\korwbrkr.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00061440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iisclex4.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00059904 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imkrinst.exe 2013-07-28 12:23 - 2004-08-04 14:00 - 00059392 ____C C:\WINDOWS\system32\dllcache\imscinst.exe 2013-07-28 12:23 - 2004-08-04 14:00 - 00057398 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjpdadm.exe 2013-07-28 12:23 - 2004-08-04 14:00 - 00053248 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\nextlink.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00047066 ____C C:\WINDOWS\system32\dllcache\ksc.nls 2013-07-28 12:23 - 2004-08-04 14:00 - 00045109 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjpuex.exe 2013-07-28 12:23 - 2004-08-04 14:00 - 00044032 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imekrmig.exe 2013-07-28 12:23 - 2004-08-04 14:00 - 00036927 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\padrs411.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00031744 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pagecnt.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00026624 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mdsync.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00022016 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\logscrpt.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00020992 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\permchk.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iiscrmap.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00018432 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jupiw.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00016896 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\quser.exe 2013-07-28 12:23 - 2004-08-04 14:00 - 00014848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\register.exe 2013-07-28 12:23 - 2004-08-04 14:00 - 00014336 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\padrs412.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00011264 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pmxmcro.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00010240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\query.exe 2013-07-28 12:23 - 2004-08-04 14:00 - 00009216 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdnecat.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00009216 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iwrps.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00008704 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\infoctrs.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00007680 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdnecnt.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00007168 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdnec95.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00007168 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\isapips.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iissync.exe 2013-07-28 12:23 - 2004-08-04 14:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pmxgl.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdth3.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdth2.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdinpun.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbd101a.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdvntc.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdusa.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdurdu.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdth1.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdth0.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdsyr2.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdsyr1.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdintel.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdintam.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdinmar.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdinkan.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdinhin.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdinguj.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdindev.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdheb.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdfa.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbddiv2.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbddiv1.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbda3.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbda2.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbda1.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00005120 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdgeo.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00005120 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdarmw.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00005120 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdarme.dll 2013-07-28 12:23 - 2004-08-04 14:00 - 00003584 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iismui.dll 2013-07-28 12:23 - 2001-08-18 04:55 - 00023040 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_regtrace.exe 2013-07-28 12:23 - 2001-08-18 04:54 - 00038912 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_ntfsdrv.dll 2013-07-28 12:23 - 2001-08-18 04:53 - 00065536 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_mailmsg.dll 2013-07-28 12:22 - 2013-07-28 12:22 - 00000000 ____D C:\WINDOWS\system32\xircom 2013-07-28 12:22 - 2013-07-28 12:22 - 00000000 ____D C:\Programme\xerox 2013-07-28 12:22 - 2013-07-28 12:22 - 00000000 ____D C:\Programme\microsoft frontpage 2013-07-28 12:22 - 2008-04-14 07:51 - 00078848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dayi.ime 2013-07-28 12:22 - 2008-04-14 07:51 - 00078336 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chajei.ime 2013-07-28 12:22 - 2008-04-14 07:51 - 00021504 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cintlgnt.ime 2013-07-28 12:22 - 2008-04-14 07:50 - 13463552 ____C C:\WINDOWS\system32\dllcache\hwxjpn.dll 2013-07-28 12:22 - 2008-04-14 07:50 - 00198656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cintime.dll 2013-07-28 12:22 - 2008-04-14 07:50 - 00173568 ____C C:\WINDOWS\system32\dllcache\chtskf.dll 2013-07-28 12:22 - 2008-04-14 07:50 - 00097792 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chtmbx.dll 2013-07-28 12:22 - 2008-04-14 07:50 - 00056320 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chtskdic.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 10096640 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hwxcht.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 01677824 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chsbrkr.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 00838144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chtbrkr.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 00514587 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\edb500.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 00480256 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cintsetp.exe 2013-07-28 12:22 - 2004-08-04 14:00 - 00195618 ____C C:\WINDOWS\system32\dllcache\c_10002.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00189986 ____C C:\WINDOWS\system32\dllcache\c_1361.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00187938 ____C C:\WINDOWS\system32\dllcache\c_20005.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00186402 ____C C:\WINDOWS\system32\dllcache\c_20001.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00185378 ____C C:\WINDOWS\system32\dllcache\c_20003.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00180770 ____C C:\WINDOWS\system32\dllcache\c_20932.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00180258 ____C C:\WINDOWS\system32\dllcache\c_20004.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00180258 ____C C:\WINDOWS\system32\dllcache\c_20000.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00177698 ____C C:\WINDOWS\system32\dllcache\c_20949.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00177698 ____C C:\WINDOWS\system32\dllcache\c_10003.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00173602 ____C C:\WINDOWS\system32\dllcache\c_20936.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00173602 ____C C:\WINDOWS\system32\dllcache\c_20002.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00173602 ____C C:\WINDOWS\system32\dllcache\c_10008.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00172032 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iisui.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 00162850 ____C C:\WINDOWS\system32\dllcache\c_10001.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00139264 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsclntr.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 00112640 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxscfgwz.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 00108827 ____C C:\WINDOWS\system32\dllcache\hanja.lex 2013-07-28 12:22 - 2004-08-04 14:00 - 00096768 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\certmap.ocx 2013-07-28 12:22 - 2004-08-04 14:00 - 00082172 ____C C:\WINDOWS\system32\dllcache\bopomofo.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066728 ____C C:\WINDOWS\system32\dllcache\big5.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066594 ____C C:\WINDOWS\system32\dllcache\c_864.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066594 ____C C:\WINDOWS\system32\dllcache\c_862.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066594 ____C C:\WINDOWS\system32\dllcache\c_858.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066594 ____C C:\WINDOWS\system32\dllcache\c_720.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_870.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_708.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_28596.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_21027.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_21025.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20924.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20880.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20871.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20838.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20833.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20424.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20423.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20420.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20297.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20290.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20285.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20284.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20280.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20278.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20277.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20273.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20269.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20108.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20107.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20106.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_20105.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_1149.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_1148.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_1147.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_1146.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_1145.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_1144.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_1143.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_1142.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_1141.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_1140.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_1047.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_10021.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_10005.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00066082 ____C C:\WINDOWS\system32\dllcache\c_10004.nls 2013-07-28 12:22 - 2004-08-04 14:00 - 00057856 ____C (SEIKO EPSON CORP.) C:\WINDOWS\system32\dllcache\esuimgd.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 00057399 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cplexe.exe 2013-07-28 12:22 - 2004-08-04 14:00 - 00056832 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\convlog.exe 2013-07-28 12:22 - 2004-08-04 14:00 - 00054528 ____C (Philips Semiconductors GmbH) C:\WINDOWS\system32\dllcache\cap7146.sys 2013-07-28 12:22 - 2004-08-04 14:00 - 00050176 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\adrot.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 00045568 ____C (SEIKO EPSON CORP.) C:\WINDOWS\system32\dllcache\esunid.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 00045568 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\browscap.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 00036864 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hanjadic.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 00033792 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\controt.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 00031744 ____C (SEIKO EPSON CORP.) C:\WINDOWS\system32\dllcache\esucmd.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 00031744 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxsroute.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 00029184 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\asptxn.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 00025856 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\et4000.sys 2013-07-28 12:22 - 2004-08-04 14:00 - 00020480 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\counters.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 00019968 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetsloc.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 00019968 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cprofile.exe 2013-07-28 12:22 - 2004-08-04 14:00 - 00016384 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chgport.exe 2013-07-28 12:22 - 2004-08-04 14:00 - 00015360 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iisreset.exe 2013-07-28 12:22 - 2004-08-04 14:00 - 00014848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\flattemp.exe 2013-07-28 12:22 - 2004-08-04 14:00 - 00014848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chgusr.exe 2013-07-28 12:22 - 2004-08-04 14:00 - 00013824 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chglogon.exe 2013-07-28 12:22 - 2004-08-04 14:00 - 00011264 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fxssend.exe 2013-07-28 12:22 - 2004-08-04 14:00 - 00010752 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\c_iscii.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 00010240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\change.exe 2013-07-28 12:22 - 2004-08-04 14:00 - 00010240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\aspperf.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 00009216 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\authfilt.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 00007680 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetmgr.exe 2013-07-28 12:22 - 2004-08-04 14:00 - 00007680 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ftpctrs2.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 00007168 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wamregps.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 00006656 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\c_is2022.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ftpsapi2.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ftlx041e.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\admxprox.dll 2013-07-28 12:22 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iisrstap.dll 2013-07-28 12:22 - 2001-08-18 04:53 - 00046592 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_aqadmin.dll 2013-07-28 12:22 - 2001-08-18 04:53 - 00043520 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_fcachdll.dll 2013-07-28 12:22 - 2001-08-18 04:52 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\EXCH_adsiisex.dll 2013-07-28 12:21 - 2013-07-28 12:21 - 00127075 _____ (Sun Microsystems, Inc.) C:\WINDOWS\system32\javaws.exe 2013-07-28 12:21 - 2013-07-28 12:21 - 00049262 _____ (Sun Microsystems, Inc.) C:\WINDOWS\system32\jpicpl32.cpl 2013-07-28 12:21 - 2013-07-28 12:21 - 00049247 _____ (Sun Microsystems, Inc.) C:\WINDOWS\system32\javaw.exe 2013-07-28 12:21 - 2013-07-28 12:21 - 00049245 _____ (Sun Microsystems, Inc.) C:\WINDOWS\system32\java.exe 2013-07-28 12:21 - 2013-07-28 12:21 - 00001392 _____ C:\Dokumente und Einstellungen\Default User\Desktop\Recovery-Info.lnk 2013-07-28 12:21 - 2013-07-28 12:21 - 00000000 ____D C:\Programme\Java 2013-07-28 12:21 - 2013-07-28 12:21 - 00000000 ____D C:\Programme\Gemeinsame Dateien\Java 2013-07-28 12:21 - 2002-02-19 17:14 - 00017638 _____ C:\WINDOWS\system32\OEMLOGO.BMP 2013-07-28 12:21 - 2001-11-14 08:23 - 00001082 _____ C:\WINDOWS\system32\OEMINFO.INI 2013-07-28 12:20 - 2013-07-28 12:20 - 00002184 _____ C:\Dokumente und Einstellungen\Default User\dotNetFx.log 2013-07-28 12:20 - 2013-07-28 12:20 - 00001082 _____ C:\Dokumente und Einstellungen\Default User\langpackSetup.log 2013-07-28 12:20 - 2013-07-28 12:20 - 00000000 ____D C:\WINDOWS\Microsoft.NET 2013-07-28 12:19 - 2013-07-28 12:21 - 00000000 ____D C:\WINDOWS\fsc 2013-07-28 12:19 - 2013-07-28 12:21 - 00000000 ____D C:\Programme\AddOn 2013-07-28 12:19 - 2013-07-28 12:19 - 00004803 _____ C:\WINDOWS\KB834707.log 2013-07-28 12:19 - 2013-07-28 12:19 - 00004508 _____ C:\WINDOWS\KB873339.log 2013-07-28 12:18 - 2013-07-28 14:25 - 00000000 ___HD C:\WINDOWS\$hf_mig$ 2013-07-28 12:18 - 2013-07-28 13:45 - 00023392 _____ C:\WINDOWS\system32\nscompat.tlb 2013-07-28 12:18 - 2013-07-28 13:45 - 00016832 _____ C:\WINDOWS\system32\amcompat.tlb 2013-07-28 12:18 - 2013-07-28 13:32 - 00316640 _____ C:\WINDOWS\WMSysPr9.prx 2013-07-28 12:18 - 2013-07-28 12:18 - 00004744 _____ C:\WINDOWS\KB885835.log 2013-07-28 12:18 - 2013-07-28 12:18 - 00004359 _____ C:\WINDOWS\KB886185.log 2013-07-28 12:18 - 2013-07-28 12:18 - 00004312 _____ C:\WINDOWS\KB885836.log 2013-07-28 12:18 - 2013-07-28 12:18 - 00002951 _____ C:\WINDOWS\system32\CONFIG.NT 2013-07-28 12:18 - 2013-07-28 12:18 - 00002476 _____ C:\WINDOWS\KB883667.log 2013-07-28 12:18 - 2013-07-28 12:18 - 00000000 __RSH C:\MSDOS.SYS 2013-07-28 12:18 - 2013-07-28 12:18 - 00000000 __RSH C:\IO.SYS 2013-07-28 12:18 - 2013-07-28 12:18 - 00000000 _____ C:\WINDOWS\control.ini 2013-07-28 12:18 - 2013-07-28 12:18 - 00000000 _____ C:\CONFIG.SYS 2013-07-28 12:18 - 2013-07-28 12:18 - 00000000 _____ C:\AUTOEXEC.BAT 2013-07-28 12:18 - 2009-01-07 18:20 - 00018464 ____N (Microsoft Corporation) C:\WINDOWS\system32\spmsg.dll 2013-07-28 12:17 - 2013-07-28 12:18 - 00000000 __SHD C:\Dokumente und Einstellungen\All Users\DRM 2013-07-28 12:17 - 2013-07-28 12:17 - 00000749 ___RH C:\WINDOWS\WindowsShell.Manifest 2013-07-28 12:17 - 2013-07-28 12:17 - 00000749 ___RH C:\WINDOWS\system32\wuaucpl.cpl.manifest 2013-07-28 12:17 - 2013-07-28 12:17 - 00000749 ___RH C:\WINDOWS\system32\sapi.cpl.manifest 2013-07-28 12:17 - 2013-07-28 12:17 - 00000749 ___RH C:\WINDOWS\system32\nwc.cpl.manifest 2013-07-28 12:17 - 2013-07-28 12:17 - 00000749 ___RH C:\WINDOWS\system32\ncpa.cpl.manifest 2013-07-28 12:17 - 2013-07-28 12:17 - 00000749 ___RH C:\WINDOWS\system32\cdplayer.exe.manifest 2013-07-28 12:17 - 2013-07-28 12:17 - 00000488 ___RH C:\WINDOWS\system32\WindowsLogon.manifest 2013-07-28 12:17 - 2013-07-28 12:17 - 00000488 ___RH C:\WINDOWS\system32\logonui.exe.manifest 2013-07-28 12:17 - 2013-07-28 12:17 - 00000000 ___RD C:\WINDOWS\Offline Web Pages 2013-07-28 12:17 - 2004-08-04 14:00 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapi32.dll 2013-07-28 12:16 - 2013-08-05 11:28 - 00170435 _____ C:\WINDOWS\WindowsUpdate.log 2013-07-28 12:16 - 2013-07-28 12:16 - 00000000 ___HD C:\Programme\WindowsUpdate 2013-07-28 12:16 - 2013-07-28 12:16 - 00000000 ____D C:\WINDOWS\system32\DirectX 2013-07-28 12:16 - 2013-07-28 12:16 - 00000000 ____D C:\Programme\Online-Dienste 2013-07-28 12:16 - 2004-08-04 14:00 - 04399505 ____C C:\WINDOWS\system32\dllcache\nls302en.lex 2013-07-28 12:13 - 2013-07-28 13:24 - 00000000 ____D C:\WINDOWS\srchasst 2013-07-28 12:13 - 2013-07-28 12:13 - 00000000 ____D C:\WINDOWS\system32\Macromed 2013-07-28 12:13 - 2013-07-28 12:13 - 00000000 ____D C:\Programme\Gemeinsame Dateien\MSSoap 2013-07-28 12:13 - 2013-07-28 12:13 - 00000000 ____D C:\Programme\Gemeinsame Dateien\Dienste 2013-07-28 12:13 - 2008-04-14 07:53 - 00226816 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\npdrmv2.dll 2013-07-28 12:13 - 2008-04-14 07:53 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt1.exe 2013-07-28 12:13 - 2008-04-14 07:53 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaucpl.cpl 2013-07-28 12:13 - 2008-04-14 07:53 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2013-07-28 12:13 - 2008-04-14 07:52 - 01135616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2013-07-28 12:13 - 2008-04-14 07:52 - 00786432 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\migrate.exe 2013-07-28 12:13 - 2008-04-14 07:52 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2013-07-28 12:13 - 2008-04-14 07:52 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll 2013-07-28 12:13 - 2008-04-14 07:52 - 00364544 ____C (Microsoft Corporation (written by Digital Renaissance Inc.)) C:\WINDOWS\system32\dllcache\npdsplay.dll 2013-07-28 12:13 - 2008-04-14 07:52 - 00221184 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmpns.dll 2013-07-28 12:13 - 2008-04-14 07:52 - 00183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng1.dll 2013-07-28 12:13 - 2008-04-14 07:52 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuweb.dll 2013-07-28 12:13 - 2008-04-14 07:52 - 00113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltui.dll 2013-07-28 12:13 - 2008-04-14 07:52 - 00033792 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\custsat.dll 2013-07-28 12:13 - 2008-04-14 07:52 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2013-07-28 12:13 - 2008-04-14 07:52 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgrprxy.dll 2013-07-28 12:13 - 2008-04-14 07:52 - 00010240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\npwmsdrm.dll 2013-07-28 12:13 - 2008-04-14 07:52 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\bitsprx2.dll 2013-07-28 12:13 - 2008-04-14 07:52 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\bitsprx3.dll 2013-07-28 12:13 - 2008-04-14 07:52 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauserv.dll 2013-07-28 12:13 - 2008-04-14 07:52 - 00004639 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mplayer2.exe 2013-07-28 12:13 - 2006-11-03 11:02 - 01678848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\setup_wm.exe 2013-07-28 12:13 - 2006-11-03 10:56 - 00096256 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmpband.dll 2013-07-28 12:13 - 2006-11-03 10:56 - 00064000 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmplayer.exe 2013-07-28 12:13 - 2006-11-03 10:54 - 00243712 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mpvis.dll 2013-07-28 12:13 - 2004-08-04 14:00 - 00235520 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mssoap1.dll 2013-07-28 12:13 - 2004-08-04 14:00 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\msg723.acm 2013-07-28 12:13 - 2004-08-04 14:00 - 00099840 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\helphost.exe 2013-07-28 12:13 - 2004-08-04 14:00 - 00094208 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieinfo5.ocx 2013-07-28 12:13 - 2004-08-04 14:00 - 00073728 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icwtutor.exe 2013-07-28 12:13 - 2004-08-04 14:00 - 00070144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\acctres.dll 2013-07-28 12:13 - 2004-08-04 14:00 - 00070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\acctres.dll 2013-07-28 12:13 - 2004-08-04 14:00 - 00065536 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icwres.dll 2013-07-28 12:13 - 2004-08-04 14:00 - 00048680 ___SH C:\WINDOWS\winnt256.bmp 2013-07-28 12:13 - 2004-08-04 14:00 - 00048680 ___SH C:\WINDOWS\winnt.bmp 2013-07-28 12:13 - 2004-08-04 14:00 - 00047104 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\srdiag.exe 2013-07-28 12:13 - 2004-08-04 14:00 - 00040960 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\trialoc.dll 2013-07-28 12:13 - 2004-08-04 14:00 - 00040448 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msinfo32.exe 2013-07-28 12:13 - 2004-08-04 14:00 - 00035328 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\notiflag.exe 2013-07-28 12:13 - 2004-08-04 14:00 - 00025088 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wisc10.dll 2013-07-28 12:13 - 2004-08-04 14:00 - 00023552 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mssoapr.dll 2013-07-28 12:13 - 2004-08-04 14:00 - 00021504 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\brpinfo.dll 2013-07-28 12:13 - 2004-08-04 14:00 - 00016384 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\isignup.exe 2013-07-28 12:13 - 2004-08-04 14:00 - 00016384 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icfgnt5.dll 2013-07-28 12:13 - 2004-08-04 14:00 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfgnt5.dll 2013-07-28 12:13 - 2004-08-04 14:00 - 00012288 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wb32.exe 2013-07-28 12:13 - 2004-08-04 14:00 - 00012288 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\nmevtmsg.dll 2013-07-28 12:13 - 2004-08-04 14:00 - 00012288 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cb32.exe 2013-07-28 12:13 - 2004-08-04 14:00 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\nmevtmsg.dll 2013-07-28 12:13 - 2004-08-04 14:00 - 00011264 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\atrace.dll 2013-07-28 12:13 - 2004-08-04 14:00 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\atrace.dll 2013-07-28 12:13 - 2004-08-04 14:00 - 00007680 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hcappres.dll 2013-07-28 12:13 - 2004-08-04 14:00 - 00000984 ____C C:\WINDOWS\system32\dllcache\srframe.mmf 2013-07-28 12:11 - 2013-07-28 13:59 - 00000000 ____D C:\Programme\Outlook Express 2013-07-28 12:11 - 2013-07-28 13:55 - 00000000 ____D C:\Programme\Movie Maker 2013-07-28 12:11 - 2013-07-28 13:24 - 00000000 ____D C:\WINDOWS\system32\Restore 2013-07-28 12:11 - 2013-07-28 13:24 - 00000000 ____D C:\Programme\NetMeeting 2013-07-28 12:11 - 2011-10-10 16:22 - 00692736 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2013-07-28 12:11 - 2010-11-18 20:12 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\isign32.dll 2013-07-28 12:11 - 2008-04-14 07:53 - 00192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\msh261.drv 2013-07-28 12:11 - 2008-04-14 07:52 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcfg.dll 2013-07-28 12:11 - 2008-04-14 07:52 - 00280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstask.dll 2013-07-28 12:11 - 2008-04-14 07:52 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\msoeacct.dll 2013-07-28 12:11 - 2008-04-14 07:52 - 00242176 _____ (Microsoft Corporation) C:\WINDOWS\system32\srrstr.dll 2013-07-28 12:11 - 2008-04-14 07:52 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll 2013-07-28 12:11 - 2008-04-14 07:52 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\srsvc.dll 2013-07-28 12:11 - 2008-04-14 07:52 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\msoert2.dll 2013-07-28 12:11 - 2008-04-14 07:52 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\ils.dll 2013-07-28 12:11 - 2008-04-14 07:52 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\icwdial.dll 2013-07-28 12:11 - 2008-04-14 07:52 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\msconf.dll 2013-07-28 12:11 - 2008-04-14 07:52 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll 2013-07-28 12:11 - 2008-04-14 07:52 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\icwphbk.dll 2013-07-28 12:11 - 2008-04-14 07:52 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\safrslv.dll 2013-07-28 12:11 - 2008-04-14 07:52 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\safrcdlg.dll 2013-07-28 12:11 - 2008-04-14 07:52 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\racpldlg.dll 2013-07-28 12:11 - 2008-04-14 07:52 - 00034560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mnmdd.dll 2013-07-28 12:11 - 2008-04-14 07:52 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mnmsrvc.exe 2013-07-28 12:11 - 2008-04-14 07:52 - 00032768 _____ (Intel Corporation) C:\WINDOWS\system32\isrdbg32.dll 2013-07-28 12:11 - 2008-04-14 07:52 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\safrdm.dll 2013-07-28 12:11 - 2008-04-14 07:52 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\nmmkcert.dll 2013-07-28 12:11 - 2008-04-14 07:52 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\fltmc.exe 2013-07-28 12:11 - 2008-04-14 07:52 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\fltlib.dll 2013-07-28 12:11 - 2008-04-14 07:52 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstinit.exe 2013-07-28 12:11 - 2008-04-14 07:32 - 00073472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sr.sys 2013-07-28 12:11 - 2008-04-14 07:26 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetres.dll 2013-07-28 12:11 - 2008-04-14 00:03 - 00129792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltmgr.sys 2013-07-28 12:10 - 2013-07-28 13:27 - 00001645 _____ C:\WINDOWS\sessmgr.setup.log 2013-07-28 12:10 - 2013-07-28 13:24 - 00000000 ____D C:\Programme\Gemeinsame Dateien\System 2013-07-28 12:10 - 2013-07-28 12:20 - 00000000 ____D C:\WINDOWS\Registration 2013-07-28 12:10 - 2013-07-28 12:10 - 00021740 _____ C:\WINDOWS\system32\emptyregdb.dat 2013-07-28 12:10 - 2013-07-28 12:10 - 00000037 _____ C:\WINDOWS\vbaddin.ini 2013-07-28 12:10 - 2013-07-28 12:10 - 00000036 _____ C:\WINDOWS\vb.ini 2013-07-28 12:10 - 2013-07-28 12:10 - 00000000 ____D C:\Programme\ComPlus Applications 2013-07-28 12:09 - 2013-07-31 00:33 - 00008898 _____ C:\WINDOWS\wmsetup.log 2013-07-28 12:09 - 2013-07-28 13:32 - 00000591 _____ C:\WINDOWS\DtcInstall.log 2013-07-28 12:09 - 2013-07-28 12:09 - 00000000 ____D C:\Programme\Online Services 2013-07-28 11:52 - 2013-07-28 13:46 - 00000000 ____D C:\Programme\Messenger 2013-07-28 11:52 - 2013-07-28 11:52 - 00000000 ____D C:\Programme\MSN Gaming Zone 2013-07-28 11:52 - 2008-04-14 07:52 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsnap.dll 2013-07-28 11:52 - 2008-04-14 07:52 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\comrepl.dll 2013-07-28 11:52 - 2008-04-14 07:52 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\stclient.dll 2013-07-28 11:52 - 2008-04-14 07:52 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxlegih.dll 2013-07-28 11:52 - 2008-04-14 07:52 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxdm.dll 2013-07-28 11:52 - 2008-04-14 07:52 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\comaddin.dll 2013-07-28 11:52 - 2008-04-14 07:52 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomcnfg.exe 2013-07-28 11:52 - 2008-04-14 07:52 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxex.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 02178131 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\shvlres.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 01817687 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\bckgres.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 01175635 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hrtzres.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 01042515 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cmnresm.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00781397 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chkrres.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00753236 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rvseres.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00683520 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\getuname.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00683520 _____ (Microsoft Corporation) C:\WINDOWS\system32\getuname.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00273920 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msiprov.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00232960 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\avtapi.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\avtapi.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00217160 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cmnclim.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00139776 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sndvol32.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\sndvol32.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00128000 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshearts.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshearts.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00120320 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\winmine.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00120320 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dsprov.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmine.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00116224 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\updprov.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00114688 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\calc.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00113222 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\zoneclim.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00093702 _____ C:\WINDOWS\system32\subrange.uce 2013-07-28 11:52 - 2004-08-04 14:00 - 00082501 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\bckg.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00080896 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\charmap.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\charmap.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00076800 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmipicmp.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00073216 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\avwav.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\avwav.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00066113 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\shvl.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00065978 _____ C:\WINDOWS\Seifenblase.bmp 2013-07-28 11:52 - 2004-08-04 14:00 - 00065954 _____ C:\WINDOWS\Präriewind.bmp 2013-07-28 11:52 - 2004-08-04 14:00 - 00065832 _____ C:\WINDOWS\Santa Fe-Stuck.bmp 2013-07-28 11:52 - 2004-08-04 14:00 - 00063488 _____ C:\WINDOWS\system32\wmimgmt.msc 2013-07-28 11:52 - 2004-08-04 14:00 - 00061952 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tmplprov.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00061440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmimsg.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00060458 _____ C:\WINDOWS\system32\ideograf.uce 2013-07-28 11:52 - 2004-08-04 14:00 - 00059904 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wbemdisp.tlb 2013-07-28 11:52 - 2004-08-04 14:00 - 00059904 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\trnsprov.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00057409 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hrtz.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00057344 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sol.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\sol.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00055808 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\freecell.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\freecell.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00053248 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fwdprov.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00052224 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmitimep.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00048706 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rvse.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00045568 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmi2xml.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00044544 _____ (Hilgraeve, Inc.) C:\WINDOWS\system32\hticons.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00042577 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\bckgzm.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00042575 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chkrzm.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00042574 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rvsezm.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00042573 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\shvlzm.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00042573 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hrtzzm.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00041029 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\zcorem.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00040960 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smtpcons.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00040515 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chkr.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00036937 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\zclientm.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00035840 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\winchat.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\winchat.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00033792 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\regini.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\regini.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00032339 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\uniansi.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00031232 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wbemads.tlb 2013-07-28 11:52 - 2004-08-04 14:00 - 00029760 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\znetm.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00027055 _____ C:\WINDOWS\system32\tslabels.ini 2013-07-28 11:52 - 2004-08-04 14:00 - 00026680 _____ C:\WINDOWS\Fächer.bmp 2013-07-28 11:52 - 2004-08-04 14:00 - 00026582 _____ C:\WINDOWS\Granit.bmp 2013-07-28 11:52 - 2004-08-04 14:00 - 00024006 _____ C:\WINDOWS\system32\gb2312.uce 2013-07-28 11:52 - 2004-08-04 14:00 - 00022984 _____ C:\WINDOWS\system32\bopomofo.uce 2013-07-28 11:52 - 2004-08-04 14:00 - 00022528 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\qwinsta.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00022528 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msg.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\qwinsta.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\msg.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mtsadmin.tlb 2013-07-28 11:52 - 2004-08-04 14:00 - 00017920 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\winmgmtr.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00017920 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tsshutdn.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsshutdn.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00017408 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\qappsrv.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\qappsrv.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00017362 _____ C:\WINDOWS\Rhododendron.bmp 2013-07-28 11:52 - 2004-08-04 14:00 - 00017336 _____ C:\WINDOWS\Angler.bmp 2013-07-28 11:52 - 2004-08-04 14:00 - 00017062 _____ C:\WINDOWS\Kaffeetasse.bmp 2013-07-28 11:52 - 2004-08-04 14:00 - 00016896 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\unsecapp.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00016740 _____ C:\WINDOWS\system32\shiftjis.uce 2013-07-28 11:52 - 2004-08-04 14:00 - 00016730 _____ C:\WINDOWS\Feder.bmp 2013-07-28 11:52 - 2004-08-04 14:00 - 00016384 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tskill.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00016384 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rwinsta.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00016384 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\avmeter.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\tskill.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\rwinsta.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\avmeter.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00015872 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\logoff.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00015872 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cdmodem.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\logoff.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdmodem.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00015360 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tsdiscon.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00015360 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tscon.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00015360 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\shadow.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsdiscon.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscon.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\shadow.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00013894 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\zonelibm.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00013824 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\winmgmt.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00013312 ____C (Hilgraeve, Inc.) C:\WINDOWS\system32\dllcache\htrn_jis.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00012876 _____ C:\WINDOWS\system32\korean.uce 2013-07-28 11:52 - 2004-08-04 14:00 - 00012288 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wbemads.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00010240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\reset.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\reset.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00009522 _____ C:\WINDOWS\Zapotek.bmp 2013-07-28 11:52 - 2004-08-04 14:00 - 00008484 _____ C:\WINDOWS\system32\kanji_2.uce 2013-07-28 11:52 - 2004-08-04 14:00 - 00006948 _____ C:\WINDOWS\system32\kanji_1.uce 2013-07-28 11:52 - 2004-08-04 14:00 - 00005632 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\write.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\write.exe 2013-07-28 11:52 - 2004-08-04 14:00 - 00004677 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\zeeverm.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00004608 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rdpcfgex.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00004608 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcfgex.dll 2013-07-28 11:52 - 2004-08-04 14:00 - 00003999 _____ C:\WINDOWS\system32\msdtcprf.ini 2013-07-28 11:52 - 2004-08-04 14:00 - 00003286 _____ C:\WINDOWS\system32\tslabels.h 2013-07-28 11:52 - 2004-08-04 14:00 - 00001272 _____ C:\WINDOWS\Blaue Spitzen 16.bmp 2013-07-28 11:52 - 2004-08-04 14:00 - 00001237 _____ C:\WINDOWS\system32\usrlogon.cmd 2013-07-28 11:52 - 2004-08-04 14:00 - 00000768 _____ C:\WINDOWS\system32\msdtcprf.h 2013-07-28 11:51 - 2013-07-28 13:24 - 00000000 ____D C:\WINDOWS\system32\Com 2013-07-28 11:51 - 2013-07-28 13:24 - 00000000 ____D C:\Programme\Windows NT 2013-07-28 11:51 - 2013-07-28 12:09 - 00000000 ____D C:\WINDOWS\system32\MsDtc 2013-07-28 11:51 - 2013-07-28 11:51 - 00000000 ____D C:\Programme\MSN 2013-07-28 11:51 - 2013-02-27 09:56 - 02067456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2013-07-28 11:51 - 2012-07-04 16:05 - 00139784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpwd.sys 2013-07-28 11:51 - 2011-01-27 13:57 - 00677888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe 2013-07-28 11:51 - 2009-12-17 09:40 - 00346624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe 2013-07-28 11:51 - 2008-06-12 19:50 - 00428032 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcprx.dll 2013-07-28 11:51 - 2008-06-12 16:20 - 00956928 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll 2013-07-28 11:51 - 2008-06-12 16:20 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcuiu.dll 2013-07-28 11:51 - 2008-06-12 16:20 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll 2013-07-28 11:51 - 2008-06-12 16:20 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtclog.dll 2013-07-28 11:51 - 2008-04-14 07:53 - 00539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\spider.exe 2013-07-28 11:51 - 2008-04-14 07:53 - 00143360 _____ (Microsoft Corporation) C:\WINDOWS\system32\sessmgr.exe 2013-07-28 11:51 - 2008-04-14 07:53 - 00133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\sndrec32.exe 2013-07-28 11:51 - 2008-04-14 07:53 - 00087176 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpwsx.dll 2013-07-28 11:51 - 2008-04-14 07:53 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\access.cpl 2013-07-28 11:51 - 2008-04-14 07:53 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdshost.exe 2013-07-28 11:51 - 2008-04-14 07:53 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe 2013-07-28 11:51 - 2008-04-14 07:53 - 00040840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\termdd.sys 2013-07-28 11:51 - 2008-04-14 07:53 - 00021896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdtcp.sys 2013-07-28 11:51 - 2008-04-14 07:53 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdsaddin.exe 2013-07-28 11:51 - 2008-04-14 07:53 - 00012040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdpipe.sys 2013-07-28 11:51 - 2008-04-14 07:52 - 01267200 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll 2013-07-28 11:51 - 2008-04-14 07:52 - 00625664 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvut.dll 2013-07-28 11:51 - 2008-04-14 07:52 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\system32\clbcatq.dll 2013-07-28 11:51 - 2008-04-14 07:52 - 00356352 _____ (Hilgraeve, Inc.) C:\WINDOWS\system32\hypertrm.dll 2013-07-28 11:51 - 2008-04-14 07:52 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll 2013-07-28 11:51 - 2008-04-14 07:52 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrv.dll 2013-07-28 11:51 - 2008-04-14 07:52 - 00189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmprops.dll 2013-07-28 11:51 - 2008-04-14 07:52 - 00188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\accwiz.exe 2013-07-28 11:51 - 2008-04-14 07:52 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdchost.dll 2013-07-28 11:51 - 2008-04-14 07:52 - 00124928 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mplay32.exe 2013-07-28 11:51 - 2008-04-14 07:52 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mplay32.exe 2013-07-28 11:51 - 2008-04-14 07:52 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\clbcatex.dll 2013-07-28 11:51 - 2008-04-14 07:52 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\clipbrd.exe 2013-07-28 11:51 - 2008-04-14 07:52 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscfgwmi.dll 2013-07-28 11:51 - 2008-04-14 07:52 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvps.dll 2013-07-28 11:51 - 2008-04-14 07:52 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\remotepg.dll 2013-07-28 11:51 - 2008-04-14 07:52 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\colbact.dll 2013-07-28 11:51 - 2008-04-14 07:52 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\licwmi.dll 2013-07-28 11:51 - 2008-04-14 07:52 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\servdeps.dll 2013-07-28 11:51 - 2008-04-14 07:52 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgbkend.dll 2013-07-28 11:51 - 2008-04-14 07:52 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\qprocess.exe 2013-07-28 11:51 - 2008-04-14 07:52 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpsnd.dll 2013-07-28 11:51 - 2008-04-14 07:52 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmfutil.dll 2013-07-28 11:51 - 2008-04-14 07:52 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\xolehlp.dll 2013-07-28 11:51 - 2008-04-14 07:52 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\icaapi.dll 2013-07-28 11:51 - 2008-04-14 07:52 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtc.exe 2013-07-28 11:51 - 2008-04-14 07:50 - 00539648 _____ (Microsoft Corporation) C:\WINDOWS\system32\comuid.dll 2013-07-28 11:51 - 2008-04-14 00:02 - 00196224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpdr.sys 2013-07-28 11:51 - 2004-08-04 14:00 - 00655360 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mstscax.dll 2013-07-28 11:51 - 2004-08-04 14:00 - 00412672 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mstsc.exe 2013-07-28 11:51 - 2004-08-04 14:00 - 00044544 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tscupgrd.exe 2013-07-28 11:51 - 2004-08-04 14:00 - 00044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscupgrd.exe 2013-07-28 11:50 - 2013-07-28 13:27 - 00000546 _____ C:\WINDOWS\cmsetacl.log 1941 ==================== One Month Modified Files and Folders ======= 2013-08-05 12:59 - 2013-08-05 11:11 - 00377856 _____ C:\Dokumente und Einstellungen\Büro-Fab\Desktop\6mgt9fm9.exe 2013-08-05 12:51 - 2013-08-05 11:26 - 00050477 _____ C:\Dokumente und Einstellungen\Fabian\Desktop\Defogger.exe 2013-08-05 12:51 - 2013-08-05 11:11 - 00050477 _____ C:\Dokumente und Einstellungen\Büro-Fab\Desktop\Defogger.exe 2013-08-05 12:40 - 2013-08-05 11:26 - 01228856 _____ (Farbar) C:\Dokumente und Einstellungen\Fabian\Desktop\FRST.exe 2013-08-05 12:40 - 2013-08-05 11:11 - 01228856 _____ (Farbar) C:\Dokumente und Einstellungen\Büro-Fab\Desktop\FRST.exe 2013-08-05 11:29 - 2013-08-05 11:29 - 00000000 ____D C:\FRST 2013-08-05 11:28 - 2013-08-01 02:40 - 00000608 _____ C:\WINDOWS\Tasks\Check for updates (Spybot - Search & Destroy).job 2013-08-05 11:28 - 2013-07-28 12:26 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2013-08-05 11:28 - 2013-07-28 12:16 - 00170435 _____ C:\WINDOWS\WindowsUpdate.log 2013-08-05 11:27 - 2013-08-05 11:27 - 00000474 _____ C:\Dokumente und Einstellungen\Fabian\Desktop\defogger_disable.log 2013-08-05 11:27 - 2013-08-05 11:27 - 00000000 _____ C:\Dokumente und Einstellungen\Fabian\defogger_reenable 2013-08-05 11:27 - 2013-08-01 02:40 - 00065536 _____ C:\WINDOWS\system32\config\SpybotSD.evt 2013-08-05 11:27 - 2013-07-28 12:28 - 00000190 ___SH C:\Dokumente und Einstellungen\Fabian\ntuser.ini 2013-08-05 11:27 - 2013-07-28 12:28 - 00000000 ____D C:\Dokumente und Einstellungen\Fabian 2013-08-05 11:27 - 2013-07-28 12:26 - 00014778 _____ C:\WINDOWS\SchedLgU.Txt 2013-08-05 11:19 - 2013-08-01 02:20 - 00000190 ___SH C:\Dokumente und Einstellungen\Büro-Fab\ntuser.ini 2013-08-05 11:12 - 2013-08-05 11:12 - 00000548 _____ C:\Dokumente und Einstellungen\Büro-Fab\Desktop\defogger_disable.log 2013-08-05 11:12 - 2013-08-05 11:12 - 00000000 _____ C:\Dokumente und Einstellungen\Büro-Fab\defogger_reenable 2013-08-05 11:12 - 2013-08-01 02:20 - 00000000 ____D C:\Dokumente und Einstellungen\Büro-Fab 2013-08-05 11:10 - 2004-08-04 14:00 - 00002278 _____ C:\WINDOWS\system32\wpa.dbl 2013-08-02 23:51 - 2013-08-02 23:51 - 00000000 __SHD C:\Dokumente und Einstellungen\NetworkService\IETldCache 2013-08-02 13:42 - 2013-08-02 13:42 - 00447812 ____R C:\WINDOWS\system32\Drivers\etc\hosts.20130802-134246.backup 2013-08-01 02:41 - 2013-08-01 02:41 - 00000000 ____D C:\Dokumente und Einstellungen\Fabian\Eigene Dateien\ProcAlyzer Dumps 2013-08-01 02:40 - 2013-08-01 02:40 - 00001680 _____ C:\Dokumente und Einstellungen\All Users\Desktop\Spybot-S&D Start Center.lnk 2013-08-01 02:40 - 2013-08-01 02:40 - 00000580 _____ C:\WINDOWS\Tasks\Refresh immunization (Spybot - Search & Destroy).job 2013-08-01 02:40 - 2013-08-01 02:40 - 00000410 _____ C:\WINDOWS\Tasks\Scan the system (Spybot - Search & Destroy).job 2013-08-01 02:40 - 2013-08-01 02:40 - 00000000 ____D C:\Programme\Spybot - SD 2 2013-08-01 02:40 - 2013-07-28 13:33 - 00000246 __RSH C:\boot.ini 2013-08-01 02:40 - 2013-07-28 12:36 - 00000000 ___RD C:\Programme 2013-08-01 02:29 - 2013-08-01 02:29 - 00000000 __SHD C:\Dokumente und Einstellungen\Büro-Fab\PrivacIE 2013-08-01 02:21 - 2013-08-01 02:21 - 00001319 _____ C:\Dokumente und Einstellungen\Büro-Fab\Desktop\Explorer.lnk 2013-08-01 02:20 - 2013-08-01 02:20 - 00000000 __SHD C:\Dokumente und Einstellungen\Büro-Fab\IETldCache 2013-08-01 02:19 - 2013-07-31 00:33 - 00000190 ___SH C:\Dokumente und Einstellungen\Admin-DD\ntuser.ini 2013-08-01 01:12 - 2013-07-28 12:36 - 01002614 _____ C:\WINDOWS\iis6.log 2013-08-01 01:10 - 2013-07-28 12:35 - 00537788 _____ C:\WINDOWS\setupapi.log 2013-08-01 00:26 - 2013-08-01 00:26 - 00001319 _____ C:\Dokumente und Einstellungen\Admin-DD\Desktop\Explorer.lnk 2013-07-31 20:02 - 2013-07-31 20:02 - 00000000 __SHD C:\Dokumente und Einstellungen\Admin-DD\PrivacIE 2013-07-31 20:02 - 2013-07-31 00:33 - 00000000 ____D C:\Dokumente und Einstellungen\Admin-DD 2013-07-31 00:33 - 2013-07-31 00:33 - 00000000 __SHD C:\Dokumente und Einstellungen\Admin-DD\IETldCache 2013-07-31 00:33 - 2013-07-28 12:09 - 00008898 _____ C:\WINDOWS\wmsetup.log 2013-07-31 00:22 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\security 2013-07-30 22:48 - 2013-07-28 12:26 - 00000190 ___SH C:\Dokumente und Einstellungen\LocalService\ntuser.ini 2013-07-30 20:16 - 2013-07-28 12:58 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy 2013-07-30 18:24 - 2013-07-28 16:18 - 00000000 ____D C:\WINDOWS\system32\appmgmt 2013-07-30 18:15 - 2013-07-30 18:12 - 00000000 ____D C:\Dokumente und Einstellungen\Fabian\ntsvcfg 2013-07-30 00:45 - 2013-07-28 12:39 - 00000275 _____ C:\WINDOWS\wiadebug.log 2013-07-30 00:45 - 2013-07-28 12:39 - 00000050 _____ C:\WINDOWS\wiaservc.log 2013-07-29 07:58 - 2013-07-29 07:58 - 00000000 ___RD C:\Dokumente und Einstellungen\Fabian\Anwendungsdaten\Brother 2013-07-29 07:54 - 2013-07-29 07:54 - 00024280 _____ C:\WINDOWS\DPINST.LOG 2013-07-29 07:54 - 2013-07-29 07:54 - 00000425 _____ C:\WINDOWS\BRWMARK.INI 2013-07-29 07:30 - 2013-07-29 07:30 - 00000000 __SHD C:\Dokumente und Einstellungen\Fabian\PrivacIE 2013-07-29 07:30 - 2013-07-29 07:30 - 00000000 __SHD C:\Dokumente und Einstellungen\Fabian\IECompatCache 2013-07-29 07:27 - 2013-07-28 12:34 - 00118952 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2013-07-29 07:19 - 2013-07-29 07:19 - 00000000 ____D C:\Dokumente und Einstellungen\Fabian\Anwendungsdaten\OpenOffice 2013-07-29 07:18 - 2013-07-29 07:18 - 00000853 _____ C:\Dokumente und Einstellungen\All Users\Desktop\OpenOffice 4.lnk 2013-07-29 07:18 - 2013-07-29 07:18 - 00000000 ____D C:\Programme\OpenOffice 4 2013-07-29 07:16 - 2013-07-28 12:36 - 00000000 ____D C:\Programme\Gemeinsame Dateien\Microsoft Shared 2013-07-29 07:01 - 2013-07-28 12:36 - 00897954 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2013-07-29 07:00 - 2013-07-29 07:00 - 00000000 ____D C:\Programme\NVIDIA 2013-07-29 04:59 - 2013-07-28 12:28 - 00000000 ___RD C:\Dokumente und Einstellungen\Fabian\Startmenü\Programme 2013-07-29 04:53 - 2013-07-29 04:53 - 00000000 ____D C:\WINDOWS\system32\Lang 2013-07-29 04:39 - 2013-07-29 04:39 - 00000000 ____D C:\WINDOWS\system32\RTCOM 2013-07-29 04:31 - 2013-07-29 04:31 - 00000000 ____D C:\Programme\Realtek 2013-07-29 04:31 - 2013-07-28 19:26 - 00000000 ___HD C:\Programme\InstallShield Installation Information 2013-07-29 04:31 - 2013-07-28 19:26 - 00000000 ____D C:\Programme\Gemeinsame Dateien\InstallShield 2013-07-29 03:25 - 2013-07-29 03:25 - 00000000 ____D C:\WINDOWS\Sun 2013-07-29 03:22 - 2013-07-29 03:22 - 00000000 ____D C:\Dokumente und Einstellungen\Fabian\Anwendungsdaten\Sun 2013-07-29 03:17 - 2004-08-04 14:00 - 00000902 _____ C:\WINDOWS\win.ini 2013-07-28 19:29 - 2013-07-28 19:21 - 00015308 _____ C:\WINDOWS\Omega Drivers v4.8.442.log 2013-07-28 19:24 - 2013-07-28 19:24 - 00472576 _____ () C:\WINDOWS\Radeon Omega Drivers v4.8.442 Uninstall.exe 2013-07-28 18:14 - 2013-07-28 13:45 - 00000000 ____D C:\Programme\Windows Media Connect 2 2013-07-28 17:48 - 2013-07-28 12:36 - 00890110 _____ C:\WINDOWS\FaxSetup.log 2013-07-28 17:48 - 2013-07-28 12:36 - 00437253 _____ C:\WINDOWS\ocgen.log 2013-07-28 17:48 - 2013-07-28 12:36 - 00411955 _____ C:\WINDOWS\tsoc.log 2013-07-28 17:48 - 2013-07-28 12:36 - 00306673 _____ C:\WINDOWS\comsetup.log 2013-07-28 17:48 - 2013-07-28 12:36 - 00278768 _____ C:\WINDOWS\msmqinst.log 2013-07-28 17:48 - 2013-07-28 12:36 - 00184072 _____ C:\WINDOWS\ntdtcsetup.log 2013-07-28 17:48 - 2013-07-28 12:36 - 00156759 _____ C:\WINDOWS\netfxocm.log 2013-07-28 17:48 - 2013-07-28 12:36 - 00065746 _____ C:\WINDOWS\MedCtrOC.log 2013-07-28 17:48 - 2013-07-28 12:36 - 00049395 _____ C:\WINDOWS\ocmsn.log 2013-07-28 17:48 - 2013-07-28 12:36 - 00046079 _____ C:\WINDOWS\tabletoc.log 2013-07-28 17:48 - 2013-07-28 12:36 - 00044763 _____ C:\WINDOWS\msgsocm.log 2013-07-28 17:48 - 2013-07-28 12:36 - 00001917 _____ C:\WINDOWS\imsins.log 2013-07-28 14:56 - 2013-07-28 12:39 - 00001319 _____ C:\Dokumente und Einstellungen\Fabian\Desktop\explorer.lnk 2013-07-28 14:53 - 2013-07-28 14:52 - 00008589 _____ C:\WINDOWS\Nvidia Omega Drivers v2.169.21.log 2013-07-28 14:52 - 2013-07-28 14:52 - 00472576 _____ () C:\WINDOWS\Nvidia Omega Drivers v2.169.21 Uninstall.exe 2013-07-28 14:49 - 2013-07-28 13:12 - 00107625 _____ C:\WINDOWS\spupdsvc.log 2013-07-28 14:29 - 2013-07-28 14:29 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2845187$ 2013-07-28 14:29 - 2013-07-28 14:29 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834904_WM11$ 2013-07-28 14:29 - 2013-07-28 12:36 - 00001374 _____ C:\WINDOWS\imsins.BAK 2013-07-28 14:28 - 2013-07-28 14:28 - 00043160 _____ C:\WINDOWS\KB2846071-IE8.log 2013-07-28 14:28 - 2013-07-28 14:28 - 00001289 _____ C:\WINDOWS\KB2846071-IE7.log 2013-07-28 14:28 - 2013-07-28 14:28 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2835364$ 2013-07-28 14:28 - 2013-07-28 13:22 - 00124194 _____ C:\WINDOWS\updspapi.log 2013-07-28 14:27 - 2013-07-28 14:27 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2850851$ 2013-07-28 14:27 - 2013-07-28 14:27 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834886$ 2013-07-28 14:26 - 2013-07-28 14:26 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2839229$ 2013-07-28 14:25 - 2013-07-28 14:25 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2820197$ 2013-07-28 14:25 - 2013-07-28 12:18 - 00000000 ___HD C:\WINDOWS\$hf_mig$ 2013-07-28 14:24 - 2013-07-28 14:24 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2820917$ 2013-07-28 14:24 - 2013-07-28 14:24 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2813345$ 2013-07-28 14:23 - 2013-07-28 14:23 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2807986$ 2013-07-28 14:23 - 2013-07-28 14:23 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2802968$ 2013-07-28 14:22 - 2013-07-28 14:22 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2780091$ 2013-07-28 14:22 - 2013-07-28 14:21 - 00038091 _____ C:\WINDOWS\KB2797052-IE8.log 2013-07-28 14:21 - 2013-07-28 14:21 - 00037759 _____ C:\WINDOWS\KB2753842-v2.log 2013-07-28 14:21 - 2013-07-28 14:21 - 00001289 _____ C:\WINDOWS\KB2797052-IE7.log 2013-07-28 14:21 - 2013-07-28 14:21 - 00001006 _____ C:\WINDOWS\KB2797052.log 2013-07-28 14:21 - 2013-07-28 14:21 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2753842-v2$ 2013-07-28 14:20 - 2013-07-28 14:20 - 00287196 _____ C:\WINDOWS\msxml4-KB2758694-deu.LOG 2013-07-28 14:20 - 2013-07-28 14:20 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2770660$ 2013-07-28 14:20 - 2013-07-28 14:20 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2757638$ 2013-07-28 14:20 - 2013-07-28 14:20 - 00000000 ____D C:\Programme\MSXML 4.0 2013-07-28 14:19 - 2013-07-28 14:19 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2758857$ 2013-07-28 14:19 - 2013-07-28 14:19 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2727528$ 2013-07-28 14:18 - 2013-07-28 14:18 - 00038201 _____ C:\WINDOWS\KB2705219-v2.log 2013-07-28 14:18 - 2013-07-28 14:18 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2736233$ 2013-07-28 14:18 - 2013-07-28 14:18 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2705219-v2$ 2013-07-28 14:17 - 2013-07-28 14:17 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2723135$ 2013-07-28 14:17 - 2013-07-28 14:17 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2712808$ 2013-07-28 14:17 - 2013-07-28 14:17 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2655992$ 2013-07-28 14:16 - 2013-07-28 14:16 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2698365$ 2013-07-28 14:16 - 2013-07-28 14:16 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2691442$ 2013-07-28 14:15 - 2013-07-28 14:15 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2719985$ 2013-07-28 14:15 - 2013-07-28 14:15 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2695962$ 2013-07-28 14:14 - 2013-07-28 14:14 - 00036223 _____ C:\WINDOWS\KB2686509.log 2013-07-28 14:14 - 2013-07-28 14:14 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2686509$ 2013-07-28 14:13 - 2013-07-28 14:13 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2676562$ 2013-07-28 14:13 - 2013-07-28 14:13 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2660649$ 2013-07-28 14:13 - 2013-07-28 14:13 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2659262$ 2013-07-28 14:12 - 2013-07-28 14:12 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2653956$ 2013-07-28 14:12 - 2013-07-28 14:12 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2647518$ 2013-07-28 14:11 - 2013-07-28 14:11 - 00034695 _____ C:\WINDOWS\KB2661637.log 2013-07-28 14:11 - 2013-07-28 14:11 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2661637$ 2013-07-28 14:11 - 2013-07-28 14:11 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2585542$ 2013-07-28 14:10 - 2013-07-28 14:10 - 00033968 _____ C:\WINDOWS\KB2584146.log 2013-07-28 14:10 - 2013-07-28 14:10 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2631813$ 2013-07-28 14:10 - 2013-07-28 14:10 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2603381$ 2013-07-28 14:10 - 2013-07-28 14:10 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2584146$ 2013-07-28 14:09 - 2013-07-28 14:09 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2620712$ 2013-07-28 14:09 - 2013-07-28 14:09 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2598479$ 2013-07-28 14:08 - 2013-07-28 14:08 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2624667$ 2013-07-28 14:08 - 2013-07-28 14:08 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2619339$ 2013-07-28 14:08 - 2013-07-28 14:08 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2618451$ 2013-07-28 14:07 - 2013-07-28 14:07 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2592799$ 2013-07-28 14:07 - 2013-07-28 14:07 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2564958$ 2013-07-28 14:07 - 2013-07-28 14:07 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2562937$ 2013-07-28 14:06 - 2013-07-28 14:06 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2570947$ 2013-07-28 14:06 - 2013-07-28 14:06 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2566454$ 2013-07-28 14:06 - 2013-07-28 14:06 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2507938$ 2013-07-28 14:05 - 2013-07-28 14:05 - 00030815 _____ C:\WINDOWS\KB2536276-v2.log 2013-07-28 14:05 - 2013-07-28 14:05 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2536276-v2$ 2013-07-28 14:05 - 2013-07-28 14:05 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2535512$ 2013-07-28 14:04 - 2013-07-28 14:04 - 00030088 _____ C:\WINDOWS\KB2544893-v2.log 2013-07-28 14:04 - 2013-07-28 14:04 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2544893-v2$ 2013-07-28 14:04 - 2013-07-28 14:04 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2485663$ 2013-07-28 14:04 - 2013-07-28 14:03 - 00030922 _____ C:\WINDOWS\KB2510531-IE8.log 2013-07-28 14:04 - 2013-07-28 13:49 - 00000000 ____D C:\WINDOWS\ie8updates 2013-07-28 14:03 - 2013-07-28 14:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2509553$ 2013-07-28 14:03 - 2013-07-28 14:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2506212$ 2013-07-28 14:02 - 2013-07-28 14:02 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2511455$ 2013-07-28 14:02 - 2013-07-28 14:02 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2508429$ 2013-07-28 14:02 - 2013-07-28 14:02 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2491683$ 2013-07-28 14:01 - 2013-07-28 14:01 - 00029643 _____ C:\WINDOWS\KB2479943.log 2013-07-28 14:01 - 2013-07-28 14:01 - 00001294 _____ C:\WINDOWS\KB2483618.log 2013-07-28 14:01 - 2013-07-28 14:01 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2481109$ 2013-07-28 14:01 - 2013-07-28 14:01 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2479943$ 2013-07-28 14:01 - 2013-07-28 14:01 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2478960$ 2013-07-28 14:01 - 2013-07-28 14:00 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2478971$ 2013-07-28 14:00 - 2013-07-28 14:00 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2483185$ 2013-07-28 14:00 - 2013-07-28 14:00 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2393802$ 2013-07-28 14:00 - 2013-07-28 13:59 - 00029825 _____ C:\WINDOWS\KB2419632.log 2013-07-28 13:59 - 2013-07-28 13:59 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2443105$ 2013-07-28 13:59 - 2013-07-28 13:59 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2440591$ 2013-07-28 13:59 - 2013-07-28 13:59 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2423089$ 2013-07-28 13:59 - 2013-07-28 13:59 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2419632$ 2013-07-28 13:59 - 2013-07-28 12:11 - 00000000 ____D C:\Programme\Outlook Express 2013-07-28 13:58 - 2013-07-28 13:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB979687$ 2013-07-28 13:58 - 2013-07-28 13:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2378111_WM9$ 2013-07-28 13:58 - 2013-07-28 13:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2360937$ 2013-07-28 13:58 - 2013-07-28 13:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2296011$ 2013-07-28 13:57 - 2013-07-28 13:57 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB982132$ 2013-07-28 13:57 - 2013-07-28 13:57 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2387149$ 2013-07-28 13:57 - 2013-07-28 13:57 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2290570$ 2013-07-28 13:56 - 2013-07-28 13:56 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB981322$ 2013-07-28 13:56 - 2013-07-28 13:56 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB975558_WM8$ 2013-07-28 13:56 - 2013-07-28 13:56 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2347290$ 2013-07-28 13:56 - 2013-07-28 13:56 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2124261$ 2013-07-28 13:56 - 2013-07-28 13:55 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB982665$ 2013-07-28 13:55 - 2013-07-28 13:55 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB981997$ 2013-07-28 13:55 - 2013-07-28 13:55 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2229593$ 2013-07-28 13:55 - 2013-07-28 13:55 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2115168$ 2013-07-28 13:55 - 2013-07-28 12:11 - 00000000 ____D C:\Programme\Movie Maker 2013-07-28 13:54 - 2013-07-28 13:54 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB979482$ 2013-07-28 13:54 - 2013-07-28 13:54 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB978695_WM9$ 2013-07-28 13:54 - 2013-07-28 13:54 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB978542$ 2013-07-28 13:54 - 2013-07-28 13:54 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB978338$ 2013-07-28 13:54 - 2013-07-28 13:54 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB977816$ 2013-07-28 13:53 - 2013-07-28 13:53 - 00019550 _____ C:\WINDOWS\KB981332-IE8.log 2013-07-28 13:53 - 2013-07-28 13:53 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB979309$ 2013-07-28 13:53 - 2013-07-28 13:53 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB976323$ 2013-07-28 13:53 - 2013-07-28 13:53 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB975560$ 2013-07-28 13:52 - 2013-07-28 13:52 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB978706$ 2013-07-28 13:52 - 2013-07-28 13:52 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB977914$ 2013-07-28 13:52 - 2013-07-28 13:52 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB975713$ 2013-07-28 13:52 - 2013-07-28 13:52 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB971468$ 2013-07-28 13:51 - 2013-07-28 13:51 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB975467$ 2013-07-28 13:51 - 2013-07-28 13:51 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB974392$ 2013-07-28 13:51 - 2013-07-28 13:51 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB974318$ 2013-07-28 13:51 - 2013-07-28 13:51 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB973904$ 2013-07-28 13:51 - 2013-07-28 13:51 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB972270$ 2013-07-28 13:50 - 2013-07-28 13:50 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB975254$ 2013-07-28 13:50 - 2013-07-28 13:50 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB975025$ 2013-07-28 13:50 - 2013-07-28 13:50 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB974571$ 2013-07-28 13:50 - 2013-07-28 13:50 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB974112$ 2013-07-28 13:50 - 2013-07-28 13:50 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB969059$ 2013-07-28 13:49 - 2013-07-28 13:49 - 00016402 _____ C:\WINDOWS\KB971961-IE8.log 2013-07-28 13:49 - 2013-07-28 13:49 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB973815$ 2013-07-28 13:49 - 2013-07-28 13:49 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB971657$ 2013-07-28 13:49 - 2013-07-28 13:49 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB960859$ 2013-07-28 13:49 - 2013-07-28 13:49 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB956844$ 2013-07-28 13:49 - 2013-07-28 13:49 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB954155_WM9$ 2013-07-28 13:48 - 2013-07-28 13:48 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB973869$ 2013-07-28 13:48 - 2013-07-28 13:48 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB973540_WM9$ 2013-07-28 13:48 - 2013-07-28 13:48 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB973507$ 2013-07-28 13:48 - 2013-07-28 13:48 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB970483$ 2013-07-28 13:48 - 2013-07-28 13:48 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB960803$ 2013-07-28 13:48 - 2013-07-28 13:48 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB959426$ 2013-07-28 13:47 - 2013-07-28 13:47 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB960225$ 2013-07-28 13:47 - 2013-07-28 13:47 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB956802$ 2013-07-28 13:47 - 2013-07-28 13:47 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB956572$ 2013-07-28 13:47 - 2013-07-28 13:47 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB952069_WM9$ 2013-07-28 13:47 - 2013-07-28 13:47 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB952004$ 2013-07-28 13:47 - 2013-07-28 13:47 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB923561$ 2013-07-28 13:47 - 2013-07-28 13:46 - 00008047 _____ C:\WINDOWS\KB951376-v2.log 2013-07-28 13:46 - 2013-07-28 13:46 - 00001191 _____ C:\WINDOWS\KB938127-v2-IE7.log 2013-07-28 13:46 - 2013-07-28 13:46 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB956803$ 2013-07-28 13:46 - 2013-07-28 13:46 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB954154_WM11$ 2013-07-28 13:46 - 2013-07-28 13:46 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB953155$ 2013-07-28 13:46 - 2013-07-28 13:46 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB952954$ 2013-07-28 13:46 - 2013-07-28 13:46 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB951376-v2$ 2013-07-28 13:46 - 2013-07-28 13:46 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB951066$ 2013-07-28 13:46 - 2013-07-28 13:46 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB950974$ 2013-07-28 13:46 - 2013-07-28 11:52 - 00000000 ____D C:\Programme\Messenger 2013-07-28 13:45 - 2013-07-28 13:45 - 00014202 _____ C:\WINDOWS\wmp11.log 2013-07-28 13:45 - 2013-07-28 13:45 - 00000718 _____ C:\WINDOWS\KB926239.log 2013-07-28 13:45 - 2013-07-28 13:45 - 00000000 __HDC C:\WINDOWS\$NtUninstallwmp11$ 2013-07-28 13:45 - 2013-07-28 13:45 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB951748$ 2013-07-28 13:45 - 2013-07-28 13:45 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB950762$ 2013-07-28 13:45 - 2013-07-28 13:45 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB941569$ 2013-07-28 13:45 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\Help 2013-07-28 13:45 - 2013-07-28 12:28 - 00000768 _____ C:\Dokumente und Einstellungen\Fabian\Startmenü\Programme\Windows Media Player.lnk 2013-07-28 13:45 - 2013-07-28 12:18 - 00023392 _____ C:\WINDOWS\system32\nscompat.tlb 2013-07-28 13:45 - 2013-07-28 12:18 - 00016832 _____ C:\WINDOWS\system32\amcompat.tlb 2013-07-28 13:44 - 2013-07-28 13:44 - 00025898 _____ C:\WINDOWS\WMFDist11.log 2013-07-28 13:44 - 2013-07-28 13:44 - 00000000 __SHD C:\Dokumente und Einstellungen\Fabian\IETldCache 2013-07-28 13:44 - 2013-07-28 13:44 - 00000000 __HDC C:\WINDOWS\$NtUninstallWMFDist11$ 2013-07-28 13:44 - 2013-07-28 13:27 - 00000000 ____D C:\WINDOWS\system32\de-de 2013-07-28 13:44 - 2013-07-28 12:28 - 00000783 _____ C:\Dokumente und Einstellungen\Fabian\Startmenü\Programme\Internet Explorer.lnk 2013-07-28 13:44 - 2013-07-28 12:28 - 00000000 ___RD C:\Dokumente und Einstellungen\Fabian\Startmenü\Programme\Zubehör 2013-07-28 13:44 - 2013-07-28 12:28 - 00000000 ___RD C:\Dokumente und Einstellungen\Fabian\Eigene Dateien\Eigene Musik 2013-07-28 13:44 - 2013-07-28 12:28 - 00000000 ___RD C:\Dokumente und Einstellungen\Fabian\Eigene Dateien\Eigene Bilder 2013-07-28 13:43 - 2013-07-28 13:43 - 00065536 _____ C:\WINDOWS\system32\config\Internet.evt 2013-07-28 13:43 - 2013-07-28 13:41 - 00040522 _____ C:\WINDOWS\ie8.log 2013-07-28 13:43 - 2013-07-28 13:41 - 00031153 _____ C:\WINDOWS\ie8_main.log 2013-07-28 13:43 - 2013-07-28 13:41 - 00000000 __HDC C:\WINDOWS\ie8 2013-07-28 13:42 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\Media 2013-07-28 13:33 - 2013-07-28 13:33 - 00663552 _____ C:\WINDOWS\system32\config\software.sav 2013-07-28 13:33 - 2013-07-28 13:33 - 00450560 _____ C:\WINDOWS\system32\config\system.sav 2013-07-28 13:33 - 2013-07-28 13:33 - 00262144 _____ C:\WINDOWS\system32\config\userdiff 2013-07-28 13:33 - 2013-07-28 13:33 - 00094208 _____ C:\WINDOWS\system32\config\default.sav 2013-07-28 13:33 - 2013-07-28 13:33 - 00001024 ____H C:\WINDOWS\system32\config\userdiff.LOG 2013-07-28 13:33 - 2013-07-28 13:33 - 00001024 ____H C:\WINDOWS\system32\config\TempKey.LOG 2013-07-28 13:33 - 2013-07-28 12:28 - 00000000 __SHD C:\DOKUME~1\Fabian\LOKALE~1\Verlauf 2013-07-28 13:32 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\1031 2013-07-28 13:32 - 2013-07-28 12:28 - 00000718 _____ C:\Dokumente und Einstellungen\Fabian\Startmenü\Programme\Outlook Express.lnk 2013-07-28 13:32 - 2013-07-28 12:18 - 00316640 _____ C:\WINDOWS\WMSysPr9.prx 2013-07-28 13:32 - 2013-07-28 12:09 - 00000591 _____ C:\WINDOWS\DtcInstall.log 2013-07-28 13:31 - 2013-07-28 13:31 - 00000187 _____ C:\WINDOWS\spupdsvc.log.1.log 2013-07-28 13:31 - 2013-07-28 13:12 - 00000090 _____ C:\WINDOWS\system32\spupdwxp.log 2013-07-28 13:29 - 2013-07-28 13:06 - 00653754 _____ C:\WINDOWS\svcpack.log 2013-07-28 13:27 - 2013-07-28 13:27 - 00000000 ____D C:\WINDOWS\system32\de 2013-07-28 13:27 - 2013-07-28 13:27 - 00000000 ____D C:\WINDOWS\system32\bits 2013-07-28 13:27 - 2013-07-28 13:27 - 00000000 ____D C:\WINDOWS\l2schemas 2013-07-28 13:27 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\usmt 2013-07-28 13:27 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\inetsrv 2013-07-28 13:27 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\PeerNet 2013-07-28 13:27 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\ime 2013-07-28 13:27 - 2013-07-28 12:35 - 00000000 ___RD C:\Dokumente und Einstellungen\All Users\Startmenü 2013-07-28 13:27 - 2013-07-28 12:10 - 00001645 _____ C:\WINDOWS\sessmgr.setup.log 2013-07-28 13:27 - 2013-07-28 11:50 - 00000546 _____ C:\WINDOWS\cmsetacl.log 2013-07-28 13:24 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\twain_32 2013-07-28 13:24 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\ras 2013-07-28 13:24 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\npp 2013-07-28 13:24 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system 2013-07-28 13:24 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\msagent 2013-07-28 13:24 - 2013-07-28 12:13 - 00000000 ____D C:\WINDOWS\srchasst 2013-07-28 13:24 - 2013-07-28 12:11 - 00000000 ____D C:\WINDOWS\system32\Restore 2013-07-28 13:24 - 2013-07-28 12:11 - 00000000 ____D C:\Programme\NetMeeting 2013-07-28 13:24 - 2013-07-28 12:10 - 00000000 ____D C:\Programme\Gemeinsame Dateien\System 2013-07-28 13:24 - 2013-07-28 11:51 - 00000000 ____D C:\WINDOWS\system32\Com 2013-07-28 13:24 - 2013-07-28 11:51 - 00000000 ____D C:\Programme\Windows NT 2013-07-28 13:23 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\icsxml 2013-07-28 13:22 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\1033 2013-07-28 13:22 - 2004-08-04 14:00 - 00251712 __RSH C:\ntldr 2013-07-28 13:21 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\ReinstallBackups 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\wins 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\ShellExt 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\mui 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\IME 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\export 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\Drivers\disdn 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\dhcp 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\3com_dmi 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\3076 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\2052 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\1054 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\1042 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\1041 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\1037 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\1028 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\1025 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\Resources 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\Provisioning 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\OEM 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\mui 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\java 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\Driver Cache 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\Connection Wizard 2013-07-28 13:20 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\addins 2013-07-28 13:18 - 2013-07-28 13:18 - 00000000 ____D C:\WINDOWS\$NtServicePackUninstl$ 2013-07-28 13:13 - 2013-07-28 13:13 - 00000000 __SHD C:\WINDOWS\CSC 2013-07-28 13:08 - 2013-07-28 13:08 - 00000000 ____D C:\WINDOWS\ServicePackFiles 2013-07-28 12:58 - 2013-07-28 12:58 - 00000000 ___RD C:\Dokumente und Einstellungen\Fabian\Startmenü\Programme\Verwaltung 2013-07-28 12:48 - 2013-07-28 12:35 - 00003064 _____ C:\WINDOWS\regopt.log 2013-07-28 12:39 - 2013-07-28 12:39 - 00000000 _____ C:\WINDOWS\Sti_Trace.log 2013-07-28 12:36 - 2013-07-28 12:36 - 00000000 ____D C:\Programme\Gemeinsame Dateien\SpeechEngines 2013-07-28 12:36 - 2013-07-28 12:36 - 00000000 ____D C:\Programme\Gemeinsame Dateien\ODBC 2013-07-28 12:36 - 2004-08-04 14:00 - 00000231 _____ C:\WINDOWS\system.ini 2013-07-28 12:35 - 2013-08-01 02:20 - 00000000 ___RD C:\Dokumente und Einstellungen\Büro-Fab\Startmenü 2013-07-28 12:35 - 2013-08-01 02:20 - 00000000 ___HD C:\Dokumente und Einstellungen\Büro-Fab\Netzwerkumgebung 2013-07-28 12:35 - 2013-08-01 02:20 - 00000000 ___HD C:\Dokumente und Einstellungen\Büro-Fab\Druckumgebung 2013-07-28 12:35 - 2013-07-31 00:33 - 00000000 ___RD C:\Dokumente und Einstellungen\Admin-DD\Startmenü 2013-07-28 12:35 - 2013-07-31 00:33 - 00000000 ___HD C:\Dokumente und Einstellungen\Admin-DD\Netzwerkumgebung 2013-07-28 12:35 - 2013-07-31 00:33 - 00000000 ___HD C:\Dokumente und Einstellungen\Admin-DD\Druckumgebung 2013-07-28 12:35 - 2013-07-28 12:35 - 00000000 ___RD C:\Dokumente und Einstellungen\Default User\Startmenü 2013-07-28 12:35 - 2013-07-28 12:35 - 00000000 ___HD C:\Dokumente und Einstellungen\Default User\Netzwerkumgebung 2013-07-28 12:35 - 2013-07-28 12:35 - 00000000 ___HD C:\Dokumente und Einstellungen\Default User\Druckumgebung 2013-07-28 12:35 - 2013-07-28 12:28 - 00000000 ___RD C:\Dokumente und Einstellungen\Fabian\Startmenü\Programme\Autostart 2013-07-28 12:35 - 2013-07-28 12:28 - 00000000 ___RD C:\Dokumente und Einstellungen\Fabian\Startmenü 2013-07-28 12:35 - 2013-07-28 12:28 - 00000000 ___HD C:\Dokumente und Einstellungen\Fabian\Netzwerkumgebung 2013-07-28 12:35 - 2013-07-28 12:28 - 00000000 ___HD C:\Dokumente und Einstellungen\Fabian\Druckumgebung 2013-07-28 12:26 - 2013-07-28 12:26 - 00008192 _____ C:\WINDOWS\REGLOCS.OLD 2013-07-28 12:26 - 2013-07-28 12:26 - 00000020 ___SH C:\Dokumente und Einstellungen\NetworkService\ntuser.ini 2013-07-28 12:26 - 2013-07-28 12:26 - 00000000 __SHD C:\Dokumente und Einstellungen\NetworkService 2013-07-28 12:26 - 2013-07-28 12:26 - 00000000 __SHD C:\Dokumente und Einstellungen\LocalService 2013-07-28 12:24 - 2013-07-28 12:34 - 00173900 _____ C:\WINDOWS\setupact.log 2013-07-28 12:24 - 2013-07-28 12:34 - 00001278 _____ C:\WINDOWS\setuperr.log 2013-07-28 12:22 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\repair 2013-07-28 12:22 - 2013-07-28 12:22 - 00000000 ____D C:\WINDOWS\system32\xircom 2013-07-28 12:22 - 2013-07-28 12:22 - 00000000 ____D C:\Programme\xerox 2013-07-28 12:22 - 2013-07-28 12:22 - 00000000 ____D C:\Programme\microsoft frontpage 2013-07-28 12:21 - 2013-07-28 12:21 - 00127075 _____ (Sun Microsystems, Inc.) C:\WINDOWS\system32\javaws.exe 2013-07-28 12:21 - 2013-07-28 12:21 - 00049262 _____ (Sun Microsystems, Inc.) C:\WINDOWS\system32\jpicpl32.cpl 2013-07-28 12:21 - 2013-07-28 12:21 - 00049247 _____ (Sun Microsystems, Inc.) C:\WINDOWS\system32\javaw.exe 2013-07-28 12:21 - 2013-07-28 12:21 - 00049245 _____ (Sun Microsystems, Inc.) C:\WINDOWS\system32\java.exe 2013-07-28 12:21 - 2013-07-28 12:21 - 00001392 _____ C:\Dokumente und Einstellungen\Default User\Desktop\Recovery-Info.lnk 2013-07-28 12:21 - 2013-07-28 12:21 - 00000000 ____D C:\Programme\Java 2013-07-28 12:21 - 2013-07-28 12:21 - 00000000 ____D C:\Programme\Gemeinsame Dateien\Java 2013-07-28 12:21 - 2013-07-28 12:19 - 00000000 ____D C:\WINDOWS\fsc 2013-07-28 12:21 - 2013-07-28 12:19 - 00000000 ____D C:\Programme\AddOn 2013-07-28 12:20 - 2013-08-01 02:20 - 00002184 _____ C:\Dokumente und Einstellungen\Büro-Fab\dotNetFx.log 2013-07-28 12:20 - 2013-08-01 02:20 - 00001082 _____ C:\Dokumente und Einstellungen\Büro-Fab\langpackSetup.log 2013-07-28 12:20 - 2013-07-31 00:33 - 00002184 _____ C:\Dokumente und Einstellungen\Admin-DD\dotNetFx.log 2013-07-28 12:20 - 2013-07-31 00:33 - 00001082 _____ C:\Dokumente und Einstellungen\Admin-DD\langpackSetup.log 2013-07-28 12:20 - 2013-07-28 12:28 - 00002184 _____ C:\Dokumente und Einstellungen\Fabian\dotNetFx.log 2013-07-28 12:20 - 2013-07-28 12:28 - 00001082 _____ C:\Dokumente und Einstellungen\Fabian\langpackSetup.log 2013-07-28 12:20 - 2013-07-28 12:20 - 00002184 _____ C:\Dokumente und Einstellungen\Default User\dotNetFx.log 2013-07-28 12:20 - 2013-07-28 12:20 - 00001082 _____ C:\Dokumente und Einstellungen\Default User\langpackSetup.log 2013-07-28 12:20 - 2013-07-28 12:20 - 00000000 ____D C:\WINDOWS\Microsoft.NET 2013-07-28 12:20 - 2013-07-28 12:10 - 00000000 ____D C:\WINDOWS\Registration 2013-07-28 12:19 - 2013-07-28 12:19 - 00004803 _____ C:\WINDOWS\KB834707.log 2013-07-28 12:19 - 2013-07-28 12:19 - 00004508 _____ C:\WINDOWS\KB873339.log 2013-07-28 12:18 - 2013-07-28 12:28 - 00001599 _____ C:\Dokumente und Einstellungen\Fabian\Startmenü\Programme\Remoteunterstützung.lnk 2013-07-28 12:18 - 2013-07-28 12:18 - 00004744 _____ C:\WINDOWS\KB885835.log 2013-07-28 12:18 - 2013-07-28 12:18 - 00004359 _____ C:\WINDOWS\KB886185.log 2013-07-28 12:18 - 2013-07-28 12:18 - 00004312 _____ C:\WINDOWS\KB885836.log 2013-07-28 12:18 - 2013-07-28 12:18 - 00002951 _____ C:\WINDOWS\system32\CONFIG.NT 2013-07-28 12:18 - 2013-07-28 12:18 - 00002476 _____ C:\WINDOWS\KB883667.log 2013-07-28 12:18 - 2013-07-28 12:18 - 00000000 __RSH C:\MSDOS.SYS 2013-07-28 12:18 - 2013-07-28 12:18 - 00000000 __RSH C:\IO.SYS 2013-07-28 12:18 - 2013-07-28 12:18 - 00000000 _____ C:\WINDOWS\control.ini 2013-07-28 12:18 - 2013-07-28 12:18 - 00000000 _____ C:\CONFIG.SYS 2013-07-28 12:18 - 2013-07-28 12:18 - 00000000 _____ C:\AUTOEXEC.BAT 2013-07-28 12:18 - 2013-07-28 12:17 - 00000000 __SHD C:\Dokumente und Einstellungen\All Users\DRM 2013-07-28 12:17 - 2013-07-28 13:20 - 00000000 ___RD C:\WINDOWS\Web 2013-07-28 12:17 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\ias 2013-07-28 12:17 - 2013-07-28 12:36 - 00004161 _____ C:\WINDOWS\ODBCINST.INI 2013-07-28 12:17 - 2013-07-28 12:17 - 00000749 ___RH C:\WINDOWS\WindowsShell.Manifest 2013-07-28 12:17 - 2013-07-28 12:17 - 00000749 ___RH C:\WINDOWS\system32\wuaucpl.cpl.manifest 2013-07-28 12:17 - 2013-07-28 12:17 - 00000749 ___RH C:\WINDOWS\system32\sapi.cpl.manifest 2013-07-28 12:17 - 2013-07-28 12:17 - 00000749 ___RH C:\WINDOWS\system32\nwc.cpl.manifest 2013-07-28 12:17 - 2013-07-28 12:17 - 00000749 ___RH C:\WINDOWS\system32\ncpa.cpl.manifest 2013-07-28 12:17 - 2013-07-28 12:17 - 00000749 ___RH C:\WINDOWS\system32\cdplayer.exe.manifest 2013-07-28 12:17 - 2013-07-28 12:17 - 00000488 ___RH C:\WINDOWS\system32\WindowsLogon.manifest 2013-07-28 12:17 - 2013-07-28 12:17 - 00000488 ___RH C:\WINDOWS\system32\logonui.exe.manifest 2013-07-28 12:17 - 2013-07-28 12:17 - 00000000 ___RD C:\WINDOWS\Offline Web Pages 2013-07-28 12:16 - 2013-07-28 12:16 - 00000000 ___HD C:\Programme\WindowsUpdate 2013-07-28 12:16 - 2013-07-28 12:16 - 00000000 ____D C:\WINDOWS\system32\DirectX 2013-07-28 12:16 - 2013-07-28 12:16 - 00000000 ____D C:\Programme\Online-Dienste 2013-07-28 12:13 - 2013-07-28 12:13 - 00000000 ____D C:\WINDOWS\system32\Macromed 2013-07-28 12:13 - 2013-07-28 12:13 - 00000000 ____D C:\Programme\Gemeinsame Dateien\MSSoap 2013-07-28 12:13 - 2013-07-28 12:13 - 00000000 ____D C:\Programme\Gemeinsame Dateien\Dienste 2013-07-28 12:11 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\pchealth 2013-07-28 12:10 - 2013-07-28 12:35 - 00000000 ___RD C:\Dokumente und Einstellungen\All Users\Dokumente 2013-07-28 12:10 - 2013-07-28 12:10 - 00021740 _____ C:\WINDOWS\system32\emptyregdb.dat 2013-07-28 12:10 - 2013-07-28 12:10 - 00000037 _____ C:\WINDOWS\vbaddin.ini 2013-07-28 12:10 - 2013-07-28 12:10 - 00000036 _____ C:\WINDOWS\vb.ini 2013-07-28 12:10 - 2013-07-28 12:10 - 00000000 ____D C:\Programme\ComPlus Applications 2013-07-28 12:09 - 2013-07-28 12:09 - 00000000 ____D C:\Programme\Online Services 2013-07-28 12:09 - 2013-07-28 11:51 - 00000000 ____D C:\WINDOWS\system32\MsDtc 2013-07-28 11:52 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\Cursors 2013-07-28 11:52 - 2013-07-28 11:52 - 00000000 ____D C:\Programme\MSN Gaming Zone 2013-07-28 11:51 - 2013-07-28 11:51 - 00000000 ____D C:\Programme\MSN 2013-07-28 11:50 - 2013-07-28 13:20 - 00000000 ____D C:\WINDOWS\system32\spool ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe [2004-08-04 14:00] - [2008-04-14 07:52] - 1036800 ____A (Microsoft Corporation) 418045a93cd87a352098ab7dabe1b53e C:\Windows\System32\winlogon.exe [2004-08-04 14:00] - [2008-04-14 07:53] - 0513024 ____A (Microsoft Corporation) f09a527b422e25c478e38caa0e44417a C:\Windows\System32\svchost.exe [2004-08-04 14:00] - [2008-04-14 07:53] - 0014336 ____A (Microsoft Corporation) 4fbc75b74479c7a6f829e0ca19df3366 C:\Windows\System32\services.exe [2004-08-04 14:00] - [2009-02-09 13:21] - 0111104 ____A (Microsoft Corporation) a3edbe9053889fb24ab22492472b39dc C:\Windows\System32\User32.dll [2004-08-04 14:00] - [2008-04-14 07:52] - 0580096 ____A (Microsoft Corporation) b0050cc5340e3a0760dd8b417ff7aebd C:\Windows\System32\userinit.exe [2004-08-04 14:00] - [2008-04-14 07:53] - 0026624 ____A (Microsoft Corporation) 788f95312e26389d596c0fa55834e106 C:\Windows\System32\Drivers\volsnap.sys [2004-08-04 14:00] - [2008-04-14 07:22] - 0053760 ____A (Microsoft Corporation) a5a712f4e880874a477af790b5186e1d ==================== End Of Log ============================ |
07.08.2013, 10:59 | #8 |
/// TB-Ausbilder | Windows XP bzw. Betriebssystem unabhängig, Rootkit plagt selbst nach Formatierung Solche Treiber werden aber vom System benutzt. Deswegen sind sie in unseren Scannern auch whitelisted.
__________________ Digitale Freibeuter gegen Malware! Keine Hilfe per PM! |
07.08.2013, 11:17 | #9 |
| Windows XP bzw. Betriebssystem unabhängig, Rootkit plagt selbst nach Formatierung Ja ich weiß, daher wollte ich auch auf Nummer Sicher gehen und hab "alles" (dachte ich) Formatiert. Ich hab noch vergessen zu erwähnen, auf mehrere Dienste wurde von einem Konto namens "NT Authorität" vom Internet zugegriffen. Und einige Dienste hatten statt Ihrem Original Namen, die Endung srv. Lieg ich richtig, daß diese nicht direkt vom System aufgerufen, sondern umgeschrieben und dann als Service gestartet wurden? |
07.08.2013, 11:24 | #10 |
/// TB-Ausbilder | Windows XP bzw. Betriebssystem unabhängig, Rootkit plagt selbst nach Formatierung Ich habe keine Idee worauf deine Fragen abzielen. Viele Dienste werden von NT Authorität gestartet. Malware ist jedenfalls nicht zu sehen.
__________________ Digitale Freibeuter gegen Malware! Keine Hilfe per PM! |
07.08.2013, 12:04 | #11 |
| Windows XP bzw. Betriebssystem unabhängig, Rootkit plagt selbst nach Formatierung Für eine genaue Bezeichnung müßt ich grad alles was ich mir notiert habe durch suchen. Kurze Erklärung...Dienste, die erst z.B. Schutz.exe hießen, zeigen sich nicht mehr unter diesem Namen, sondern unter Schutzsrv.exe ? Das sind ein paar gewesen. Einige .dll´s im Sys32 Ordner sind doch aber auffällig oder täusch ich mich da? Versuche mich auch gerade noch in die Windows Server Version ein zuarbeiten, aber mit diesem Problem wird das schwer. Brauchst du noch etwas an Input? Hoffe ich habe nix ausgelassen |
07.08.2013, 13:18 | #12 |
/// TB-Ausbilder | Windows XP bzw. Betriebssystem unabhängig, Rootkit plagt selbst nach Formatierung Ich denke du wärst da im Windows-Bereich unseres Forums besser aufgehoben. Ich kann dir dazu nichts / wenig sagen.
__________________ Digitale Freibeuter gegen Malware! Keine Hilfe per PM! |
07.08.2013, 18:43 | #13 |
| Windows XP bzw. Betriebssystem unabhängig, Rootkit plagt selbst nach Formatierung Okay.. soll ich denn TSSKiller nochmal laufen lassen und gefundene Einträge fixen lassen? Kannst du dann diesen Post dann in den Neuen mit Verlinken? Danke schonmal für deine Hilfe |
07.08.2013, 19:06 | #14 |
/// TB-Ausbilder | Windows XP bzw. Betriebssystem unabhängig, Rootkit plagt selbst nach Formatierung Nein, da war nichts zum fixen, weil da keine Malware ist. Verlinken kannst du selbst mit dem Hyperlink-Symbol hier im Editor. Lesestoff: Wenn du keine weiteren Fragen hast, wäre für mich das Thema an der Stelle beendet. So geht es weiter: Wir haben jetzt deinen Rechner bereinigt. Da dein Problem aber so nicht gelöst worden ist möchte ich dich gerne an unsere Kollegen weiterreichen.
__________________ Digitale Freibeuter gegen Malware! Keine Hilfe per PM! |
07.08.2013, 19:21 | #15 |
| Windows XP bzw. Betriebssystem unabhängig, Rootkit plagt selbst nach Formatierung Danke für deine Hilfe, wäre dann an dieser Stelle erledigt... wünsche noch einen angenehmen Abend |
Themen zu Windows XP bzw. Betriebssystem unabhängig, Rootkit plagt selbst nach Formatierung |
befall, betriebssystem, boot, code, driver, farbar, formatierung, funktioniert, funktioniert nicht, gen, gmer, harddisk, klicke, live, netzwerk, port, registry, rootkit, scan, scanner, schädlinge, service pack 3, suche, temp, windows, windows xp |