GVU-Trojaner
abgesicherter Modus funktioniert nicht!
sooo hier ist der Code von FRST64:
Code:
Alles auswählen Aufklappen ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-08-2013
Ran by SYSTEM on 26-08-2013 17:26:45
Running from H:\
Windows 7 Professional Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 10
Boot Mode: Recovery
The current controlset is ControlSet001
ATTENTION!:=====> If the system is bootable FRST could be run from normal or Safe mode to create a complete log.
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12452456 2012-02-21] (Realtek Semiconductor)
HKLM\...\RunOnce: [*Restore] - C:\Windows\system32\rstrui.exe /RUNONCE [296960 2010-11-20] (Microsoft Corporation)
Winlogon\Notify\avldr: avldr64.dll (On-Access Anti-Malware Scanner Sync)
HKLM-x32\...\Run: [Krait] - C:\Program Files (x86)\Razer\Krait\razerhid.exe [126976 2007-02-16] ()
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Nikon Message Center 2] - C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe [571392 2011-10-30] (Nikon Corporation)
HKLM-x32\...\Run: [APVXDWIN] - C:\Program Files (x86)\Panda Security\Panda Internet Security 2013\APVXDWIN.EXE [1037600 2012-11-07] (Panda Security, S.L.)
HKLM-x32\...\Run: [SCANINICIO] - C:\Program Files (x86)\Panda Security\Panda Internet Security 2013\Inicio.exe [70432 2012-06-08] (Panda Security, S.L.)
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [641704 2012-11-16] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [AMD AVT] - C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe [20992 2012-03-19] ()
HKLM-x32\...\Run: [Aeria Ignite] - C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe [1925656 2013-06-06] (Aeria Games & Entertainment)
HKU\Noizii\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [4910912 2011-08-01] (DT Soft Ltd)
HKU\Noizii\...\Run: [Akamai NetSession Interface] - C:\Users\Noizii\AppData\Local\Akamai\netsession_win.exe [4489472 2013-06-04] (Akamai Technologies, Inc.)
HKU\Noizii\...\Run: [Pando Media Booster] - C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [3093624 2012-12-13] ()
Startup: C:\Users\Noizii\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\IMVU.lnk
ShortcutTarget: IMVU.lnk -> (No File)
==================== Services (Whitelisted) =================
S2 Akamai; c:\program files (x86)\common files\akamai/netsession_win_8fa3539.dll [4569856 2013-07-01] (Akamai Technologies, Inc.)
S2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2012-11-16] (Advanced Micro Devices, Inc.)
S3 McComponentHostService; C:\Program Files (x86)\McAfee Security Scan\3.0.318\McCHSvc.exe [235216 2013-02-05] (McAfee, Inc.)
S2 Panda Software Controller; C:\Program Files (x86)\Panda Security\Panda Internet Security 2013\PsCtrls.exe [177440 2012-06-19] (Panda Security, S.L.)
S2 PAVFNSVR; C:\Program Files (x86)\Panda Security\Panda Internet Security 2013\PavFnSvr.exe [202016 2012-06-15] (Panda Security, S.L.)
S2 PavPrSrv; C:\Program Files (x86)\Common Files\Panda Security\PavShld\pavprsrv.exe [62768 2008-02-04] (Panda Security, S.L.)
S2 PAVSRV; C:\Program Files (x86)\Panda Security\Panda Internet Security 2013\pavsrvx86.exe [313664 2011-04-13] (Panda Security, S.L.)
S2 PSHost; c:\program files (x86)\panda security\panda internet security 2013\firewall\PSHOST.EXE [226560 2009-11-26] (Panda Security International)
S2 PSIMSVC; C:\Program Files (x86)\Panda Security\Panda Internet Security 2013\PsImSvc.exe [108288 2008-06-19] (Panda Security S.L.)
S2 PskSvcRetail; C:\Program Files (x86)\Panda Security\Panda Internet Security 2013\PskSvc.exe [28992 2010-08-16] (Panda Security, S.L.)
S2 TPSrv; C:\Program Files (x86)\Panda Security\Panda Internet Security 2013\TPSrvWow.exe [173344 2012-11-16] (Panda Security, S.L.)
S2 SbieSvc; "D:\Programme\Sandboxie\SbieSvc.exe" [x]
==================== Drivers (Whitelisted) ====================
S2 AmFSM; C:\Windows\System32\DRIVERS\amm6460.sys [71432 2012-03-26] (Panda Security, S.L.)
S2 APPFLT; C:\Windows\system32\Drivers\APPFLT64.SYS [129096 2011-01-31] (Panda Security, S.L.)
S2 ComFiltr; C:\Windows\system32\DRIVERS\COMFiltr.sys [15928 2013-01-04] ()
S2 ComFiltr; C:\Windows\system32\DRIVERS\COMFiltr.sys [15928 2013-01-04] ()
S2 DSAFLT; C:\Windows\system32\Drivers\DSAFLT64.SYS [82952 2009-09-25] (Panda Security, S.L.)
S1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [270912 2012-05-04] (DT Soft Ltd)
S2 FNETMON; C:\Windows\system32\Drivers\fnetm64.SYS [31752 2009-09-25] (Panda Security, S.L.)
S2 IDSFLT; C:\Windows\system32\Drivers\IDSFLT64.SYS [78920 2010-09-09] (Panda Security, S.L.)
S3 krait03; C:\Windows\System32\Drivers\krait.sys [10368 2006-01-24] (Razer (Asia-Pacific) Pte Ltd)
S2 NETFLTDI; C:\Windows\system32\Drivers\NETTDI64.SYS [170504 2009-09-25] (Panda Security, S.L.)
S3 NETIMFLT01060044; C:\Windows\System32\DRIVERS\n64i1644.sys [216648 2010-09-01] (Panda Security, S.L.)
S0 pavboot; C:\Windows\System32\Drivers\pavboot64.sys [30792 2010-06-22] (Panda Security, S.L.)
S1 ShldFlt; C:\Windows\System32\DRIVERS\ShldFlt.sys [48136 2009-10-27] (Panda Security, S.L.)
S2 WNMFLT; C:\Windows\system32\Drivers\WNMFLT64.SYS [74760 2009-09-25] (Panda Security, S.L.)
S3 PavTPK.sys; \??\C:\Windows\system32\PavTPK.sys [x]
S3 Prot6Flt; system32\DRIVERS\Prot6Flt.sys [x]
S3 SbieDrv; \??\D:\Programme\Sandboxie\SbieDrv.sys [x]
S3 X6va011; \??\C:\Windows\SysWOW64\Drivers\X6va011 [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-08-26 08:45 - 2013-08-26 08:47 - 00000000 ____D C:\Kaspersky Rescue Disk 10.0
2013-08-26 05:42 - 2013-08-26 05:42 - 00000000 ____D C:\ProgramData\Panda Software
2013-08-26 05:37 - 2013-08-26 05:37 - 00163125 _____ C:\Users\Noizii\AppData\Roaming\2433f433
2013-08-26 05:37 - 2013-08-26 05:37 - 00163113 _____ C:\ProgramData\2433f433
2013-08-26 05:37 - 2013-08-26 05:37 - 00163097 _____ C:\Users\Noizii\AppData\Local\2433f433
2013-08-26 05:25 - 2013-08-26 05:25 - 00006435 _____ C:\Users\Noizii\AppData\Local\recently-used.xbel
2013-08-14 16:29 - 2013-08-14 16:31 - 00000000 ____D C:\Windows\System32\MRT
2013-08-12 15:08 - 2013-08-12 22:40 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2013-08-09 17:08 - 2013-08-09 17:08 - 00000000 ____D C:\Users\Noizii\AppData\Local\Aeria Games
2013-08-09 17:07 - 2013-08-09 17:07 - 00000905 _____ C:\Users\Noizii\Desktop\GrandFantasia-DE.lnk
2013-08-09 17:07 - 2013-08-09 17:07 - 00000000 ____D C:\ProgramData\Aeria Games
2013-08-09 17:06 - 2013-08-09 17:06 - 00002028 _____ C:\Users\Public\Desktop\Aeria Ignite.lnk
2013-08-09 17:06 - 2013-08-09 17:06 - 00000000 __SHD C:\Windows\SysWOW64\AI_RecycleBin
2013-08-09 17:06 - 2013-08-09 17:06 - 00000000 ____D C:\Program Files (x86)\Aeria Games
2013-08-09 17:05 - 2013-08-09 17:05 - 00000000 ____D C:\Users\Noizii\AppData\Roaming\Aeria Games & Entertainment
2013-08-09 16:29 - 2013-08-09 16:29 - 00507416 _____ (Aeria Games & Entertainment) C:\Users\Noizii\Downloads\grandfantasia_de_downloader.exe
2013-08-09 16:29 - 2013-08-09 16:29 - 00000000 ____D C:\AeriaGames
==================== One Month Modified Files and Folders =======
2013-08-26 17:21 - 2013-08-26 17:21 - 00000000 ____D C:\FRST
2013-08-26 17:09 - 2013-04-19 21:14 - 00000000 ____D C:\ProgramData\McAfee Security Scan
2013-08-26 17:09 - 2012-05-11 06:30 - 00000000 ____D C:\Users\Noizii\AppData\Local\Akamai
2013-08-26 17:09 - 2012-05-09 11:29 - 00000000 ____D C:\Users\Noizii\AppData\Roaming\uTorrent
2013-08-26 17:09 - 2012-05-04 15:25 - 00000000 ____D C:\Users\Noizii\AppData\Roaming\IrfanView
2013-08-26 17:09 - 2012-05-04 12:41 - 00000000 ____D C:\Users\Noizii\AppData\Roaming\Winamp
2013-08-26 17:09 - 2012-05-04 10:38 - 00000000 ____D C:\ProgramData\NVIDIA
2013-08-26 17:09 - 2012-05-04 10:10 - 00000000 ____D C:\users\Noizii
2013-08-26 17:09 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\rescache
2013-08-26 17:09 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\registration
2013-08-26 17:09 - 2009-07-13 19:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2013-08-26 17:04 - 2009-07-13 23:45 - 00000000 ___RD C:\Users\Public\Recorded TV
2013-08-26 08:47 - 2013-08-26 08:45 - 00000000 ____D C:\Kaspersky Rescue Disk 10.0
2013-08-26 05:42 - 2013-08-26 05:42 - 00000000 ____D C:\ProgramData\Panda Software
2013-08-26 05:37 - 2013-08-26 05:37 - 00163125 _____ C:\Users\Noizii\AppData\Roaming\2433f433
2013-08-26 05:37 - 2013-08-26 05:37 - 00163113 _____ C:\ProgramData\2433f433
2013-08-26 05:37 - 2013-08-26 05:37 - 00163097 _____ C:\Users\Noizii\AppData\Local\2433f433
2013-08-26 05:26 - 2012-05-05 15:36 - 00000000 ____D C:\Users\Noizii\.gimp-2.6
2013-08-26 05:25 - 2013-08-26 05:25 - 00006435 _____ C:\Users\Noizii\AppData\Local\recently-used.xbel
2013-08-25 21:35 - 2012-12-13 17:46 - 00000000 ____D C:\Users\Noizii\AppData\Local\PMB Files
2013-08-25 21:04 - 2013-06-05 08:55 - 00000000 ____D C:\Users\Noizii\AppData\Roaming\IMVU
2013-08-23 03:24 - 2013-03-25 04:42 - 00000000 ____D C:\Users\Noizii\Desktop\Bewerbungen 2013
2013-08-14 16:31 - 2013-08-14 16:29 - 00000000 ____D C:\Windows\System32\MRT
2013-08-14 16:28 - 2012-05-04 08:58 - 01675710 _____ C:\Windows\WindowsUpdate.log
2013-08-14 15:31 - 2012-05-08 14:11 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-08-14 02:25 - 2012-05-04 12:25 - 00008627 _____ C:\Windows\SysWOW64\PAV_FOG.OPC
2013-08-14 01:17 - 2013-01-04 17:58 - 00413452 _____ C:\Windows\System32\Drivers\APPFCONT.DAT.bck
2013-08-14 01:17 - 2013-01-04 17:58 - 00413452 _____ C:\Windows\System32\Drivers\APPFCONT.DAT
2013-08-13 22:28 - 2009-07-13 20:45 - 00018960 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-08-13 22:28 - 2009-07-13 20:45 - 00018960 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-08-13 22:23 - 2013-01-05 18:44 - 00000056 _____ C:\Windows\System32\Drivers\etc\WnmFlt.cfg.bck
2013-08-13 22:23 - 2013-01-05 18:44 - 00000056 _____ C:\Windows\System32\Drivers\etc\WnmFlt.cfg
2013-08-13 22:23 - 2013-01-04 18:02 - 00000068 _____ C:\Windows\System32\Drivers\etc\NetLoc.wlt.bck
2013-08-13 22:23 - 2013-01-04 18:02 - 00000068 _____ C:\Windows\System32\Drivers\etc\NetLoc.wlt
2013-08-13 22:23 - 2013-01-04 18:02 - 00000056 _____ C:\Windows\System32\Drivers\etc\DsaFlt.cfg.bck
2013-08-13 22:23 - 2013-01-04 18:02 - 00000056 _____ C:\Windows\System32\Drivers\etc\DsaFlt.cfg
2013-08-13 22:23 - 2013-01-04 18:01 - 00000252 _____ C:\Windows\System32\Drivers\etc\IdsFlt.cfg.bck
2013-08-13 22:23 - 2013-01-04 18:01 - 00000252 _____ C:\Windows\System32\Drivers\etc\IdsFlt.cfg
2013-08-13 22:23 - 2013-01-04 18:01 - 00000068 _____ C:\Windows\System32\Drivers\etc\NetFlt.cfg.bck
2013-08-13 22:23 - 2013-01-04 18:01 - 00000068 _____ C:\Windows\System32\Drivers\etc\NetFlt.cfg
2013-08-13 22:23 - 2013-01-04 17:58 - 00303044 _____ C:\Windows\System32\Drivers\etc\DsaFlt.rls.bck
2013-08-13 22:23 - 2013-01-04 17:58 - 00303044 _____ C:\Windows\System32\Drivers\etc\DsaFlt.rls
2013-08-13 22:23 - 2013-01-04 17:58 - 00001132 _____ C:\Windows\System32\Drivers\APPFLTR.CFG.bck
2013-08-13 22:23 - 2013-01-04 17:58 - 00001132 _____ C:\Windows\System32\Drivers\APPFLTR.CFG
2013-08-13 22:21 - 2013-01-04 18:01 - 00000120 _____ C:\Windows\System32\Drivers\etc\NetAdapt.cfg.bck
2013-08-13 22:21 - 2013-01-04 18:01 - 00000120 _____ C:\Windows\System32\Drivers\etc\NetAdapt.cfg
2013-08-13 22:21 - 2013-01-04 18:01 - 00000064 _____ C:\Windows\System32\Drivers\etc\NetAR.wlt.bck
2013-08-13 22:21 - 2013-01-04 18:01 - 00000064 _____ C:\Windows\System32\Drivers\etc\NetAR.wlt
2013-08-13 22:20 - 2009-07-13 21:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-08-13 22:20 - 2009-07-13 20:51 - 00100113 _____ C:\Windows\setupact.log
2013-08-13 02:00 - 2012-05-04 12:32 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-08-12 22:40 - 2013-08-12 15:08 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2013-08-11 16:50 - 2012-05-06 11:11 - 00000000 ____D C:\Users\Noizii\AppData\Roaming\TS3Client
2013-08-09 17:08 - 2013-08-09 17:08 - 00000000 ____D C:\Users\Noizii\AppData\Local\Aeria Games
2013-08-09 17:07 - 2013-08-09 17:07 - 00000905 _____ C:\Users\Noizii\Desktop\GrandFantasia-DE.lnk
2013-08-09 17:07 - 2013-08-09 17:07 - 00000000 ____D C:\ProgramData\Aeria Games
2013-08-09 17:06 - 2013-08-09 17:06 - 00002028 _____ C:\Users\Public\Desktop\Aeria Ignite.lnk
2013-08-09 17:06 - 2013-08-09 17:06 - 00000000 __SHD C:\Windows\SysWOW64\AI_RecycleBin
2013-08-09 17:06 - 2013-08-09 17:06 - 00000000 ____D C:\Program Files (x86)\Aeria Games
2013-08-09 17:05 - 2013-08-09 17:05 - 00000000 ____D C:\Users\Noizii\AppData\Roaming\Aeria Games & Entertainment
2013-08-09 16:54 - 2012-07-16 15:07 - 00000000 ____D C:\Program Files (x86)\Steam
2013-08-09 16:53 - 2012-09-08 04:37 - 00000000 ____D C:\Program Files (x86)\Google
2013-08-09 16:52 - 2012-05-09 11:31 - 00000000 ____D C:\Users\Noizii\AppData\Local\Google
2013-08-09 16:29 - 2013-08-09 16:29 - 00507416 _____ (Aeria Games & Entertainment) C:\Users\Noizii\Downloads\grandfantasia_de_downloader.exe
2013-08-09 16:29 - 2013-08-09 16:29 - 00000000 ____D C:\AeriaGames
2013-08-07 02:10 - 2012-05-04 12:50 - 00000000 ____D C:\Program Files\TeamSpeak 3 Client
2013-08-05 03:58 - 2012-05-04 18:53 - 00654150 _____ C:\Windows\System32\perfh007.dat
2013-08-05 03:58 - 2012-05-04 18:53 - 00130022 _____ C:\Windows\System32\perfc007.dat
2013-08-05 03:58 - 2009-07-13 21:13 - 01498742 _____ C:\Windows\System32\PerfStringBackup.INI
2013-08-05 01:21 - 2013-06-05 08:54 - 00001881 _____ C:\Users\Noizii\Desktop\IMVU.lnk
2013-08-05 01:21 - 2012-06-17 17:23 - 00000000 ____D C:\Users\Noizii\AppData\Roaming\IMVUClient
2013-07-27 07:47 - 2012-12-22 12:52 - 00000000 ____D C:\Users\Noizii\AppData\Roaming\Nikon
2013-07-27 07:47 - 2012-12-22 12:44 - 00000020 ____H C:\ProgramData\PKP_DLev.DAT
Files to move or delete:
====================
C:\Users\Noizii\AppData\Local\Temp\avguidx.dll
C:\Users\Noizii\AppData\Local\Temp\binkw32.dll
C:\Users\Noizii\AppData\Local\Temp\CommonInstaller.exe
C:\Users\Noizii\AppData\Local\Temp\conduitinstaller.exe
C:\Users\Noizii\AppData\Local\Temp\d2l_Install.exe
C:\Users\Noizii\AppData\Local\Temp\iGearedHelper.dll
C:\Users\Noizii\AppData\Local\Temp\installChecker.exe
C:\Users\Noizii\AppData\Local\Temp\install_flashplayer11x32_chra_au_aih.exe
C:\Users\Noizii\AppData\Local\Temp\jre-6u33-windows-i586-iftw.exe
C:\Users\Noizii\AppData\Local\Temp\jre-7u9-windows-i586-iftw.exe
C:\Users\Noizii\AppData\Local\Temp\kpinstaller.exe
C:\Users\Noizii\AppData\Local\Temp\MachineIdCreator.exe
C:\Users\Noizii\AppData\Local\Temp\mconduitinstaller.exe
C:\Users\Noizii\AppData\Local\Temp\mism.exe
C:\Users\Noizii\AppData\Local\Temp\oi_{BF42DCB9-5E3A-45F3-9DBD-163D413AF422}.exe
C:\Users\Noizii\AppData\Local\Temp\pwybfqm3.dll
C:\Users\Noizii\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Noizii\AppData\Local\Temp\swt-win32-3349.dll
C:\Users\Noizii\AppData\Local\Temp\ToolbarInstaller.exe
C:\Users\Noizii\AppData\Local\Temp\UNINSTALL.EXE
C:\Users\Noizii\AppData\Local\Temp\Uninstaller-1820.exe
C:\Users\Noizii\AppData\Local\Temp\{E7824BE1-35BA-44AA-A73E-32C30C4BD6CA}\ISBEW64.exe
C:\Users\Noizii\AppData\Local\Temp\{CDB402B8-6332-46FD-82F9-4C201A009F9B}\{781B39EC-2E18-41FC-9B00-B84E4FFCA85F}\MoveIt.dll
C:\Users\Noizii\AppData\Local\Temp\{BE58B1AE-E17C-44D8-86D0-19FF5D3102DC}\ISBEW64.exe
C:\Users\Noizii\AppData\Local\Temp\{BA4E274E-2981-489E-A56A-E5020B97D2A1}\ISBEW64.exe
C:\Users\Noizii\AppData\Local\Temp\{B014EE44-9197-4513-9613-71E6EB1B514E}\MCARecLib2.dll
C:\Users\Noizii\AppData\Local\Temp\{A8EF49D7-3E3B-4235-A96D-E8DAEA794C87}\ISBEW64.exe
C:\Users\Noizii\AppData\Local\Temp\{8D2FFCA8-FBCA-47ED-AA00-6E801842CDA1}\ISBEW64.exe
C:\Users\Noizii\AppData\Local\Temp\{86E57B08-1C0C-462F-B221-69070DF703FC}\ISBEW64.exe
C:\Users\Noizii\AppData\Local\Temp\{863EF08C-DB2A-4C92-8B23-4C95996356EC}\ISBEW64.exe
C:\Users\Noizii\AppData\Local\Temp\{6C2F12C6-67A2-4612-BD6F-A0C0AD65209E}\{3272057B-D3C3-4EAF-B023-15E4CA91046D}\MCARecLib2.dll
C:\Users\Noizii\AppData\Local\Temp\{6602A8C1-7291-1548-C2A8-026691724815}\berkelium.dll
C:\Users\Noizii\AppData\Local\Temp\{6602A8C1-7291-1548-C2A8-026691724815}\berkelium.exe
C:\Users\Noizii\AppData\Local\Temp\{6602A8C1-7291-1548-C2A8-026691724815}\icudt42.dll
C:\Users\Noizii\AppData\Local\Temp\{6602A8C1-7291-1548-C2A8-026691724815}\wow_helper.exe
C:\Users\Noizii\AppData\Local\Temp\{635BE602-BB9C-4C59-8CC5-93F9366E8A21}\MCARecLib2.dll
C:\Users\Noizii\AppData\Local\Temp\{5CAD3393-EEC0-44CE-9F93-BCAA365B77FB}\MCARecLib2.dll
C:\Users\Noizii\AppData\Local\Temp\{4CBC58EB-A079-46D4-8513-70D5CCBD437E}\ISBEW64.exe
C:\Users\Noizii\AppData\Local\Temp\{4B8994FF-9A00-1582-FC94-894B009A8215}\awesomium.dll
C:\Users\Noizii\AppData\Local\Temp\{4B8994FF-9A00-1582-FC94-894B009A8215}\awesomium_process.exe
C:\Users\Noizii\AppData\Local\Temp\{4B8994FF-9A00-1582-FC94-894B009A8215}\berkelium.dll
C:\Users\Noizii\AppData\Local\Temp\{4B8994FF-9A00-1582-FC94-894B009A8215}\berkelium.exe
C:\Users\Noizii\AppData\Local\Temp\{4B8994FF-9A00-1582-FC94-894B009A8215}\icudt.dll
C:\Users\Noizii\AppData\Local\Temp\{4B8994FF-9A00-1582-FC94-894B009A8215}\icudt42.dll
C:\Users\Noizii\AppData\Local\Temp\{4511C649-28DE-4A73-9BB0-34882001F96E}\ICQ7.exe
C:\Users\Noizii\AppData\Local\Temp\{41FEF873-1778-15E4-70F8-FE417817E415}\awesomium.dll
C:\Users\Noizii\AppData\Local\Temp\{41FEF873-1778-15E4-70F8-FE417817E415}\awesomium_process.exe
C:\Users\Noizii\AppData\Local\Temp\{41FEF873-1778-15E4-70F8-FE417817E415}\icudt.dll
C:\Users\Noizii\AppData\Local\Temp\{3FE8A36F-D394-4EF9-B1C0-B9A6507A67B9}\InstallshieldWebClient.dll
C:\Users\Noizii\AppData\Local\Temp\{3CEB338A-FB2D-4190-8BDB-54C7BA3FF6F2}\InstallshieldWebClient.dll
C:\Users\Noizii\AppData\Local\Temp\{28BAF3C5-8AFC-44D7-B251-215871CB5372}\{781B39EC-2E18-41FC-9B00-B84E4FFCA85F}\MoveIt.dll
C:\Users\Noizii\AppData\Local\Temp\{0F0135DF-6E16-4501-99C0-56E09F1DDF8E}\ISBEW64.exe
C:\Users\Noizii\AppData\Local\Temp\VSD19E2.tmp\setup_4.0.1.112.exe
C:\Users\Noizii\AppData\Local\Temp\VSD19E2.tmp\DotNetFx35Client\DotNetFx35ClientSetup.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\ChCfg.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\RtlExUpd.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\WDM\Alcmtr.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\WDM\AlcWzrd.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\WDM\CPLUtl64.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\WDM\MicCal.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\WDM\RCoInstII64XP.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\WDM\RTCOMDLL.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\WDM\RTHDCPL.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\WDM\RtkAudioService.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\WDM\RtkAudioService64.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\WDM\RtkCoInstIIXP.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\WDM\RtkCoLDR64XP.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\WDM\RtkCoLDRXP.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\WDM\RtlCPAPI.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\WDM\RTLCPL.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\WDM\RtlUpd.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\WDM\RtlUpd64.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\WDM\SkyTel.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\WDM\SoundMan.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\WDM\vncutil.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\WDM\vncutil64.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\AERTAC64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\AERTAR64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\AERTSr64.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\BlackBlueSkinImages64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\BlackSkinImages64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\DarkSkinImages64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\DTSAudioService64.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\DTSBassEnhancementDLL64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\DTSBoostDLL64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\DTSGainCompensatorDLL64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\DTSGFXAPO64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\DTSGFXAPONS64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\DTSLFXAPO64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\DTSLimiterDLL64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\DTSNeoPCDLL64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\DTSS2HeadphoneDLL64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\DTSS2SpeakerDLL64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\DTSSymmetryDLL64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\DTSU2PAuSrv64.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\DTSU2PGFX64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\DTSU2PLFX64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\DTSU2PREC64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\DTSVoiceClarityDLL64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\FMAPO64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\FMAPP.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\GrayJadeSkinImages64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\KAAPORT64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\MaxxAudioAPO20.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\MaxxAudioAPO30.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\MaxxAudioAPO4064.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\MaxxAudioAPOShell64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\MaxxAudioControl64.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\MaxxAudioEQ.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\MaxxAudioMeters64.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\MaxxAudioRealtek.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\MaxxAudioRealtek264.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\MaxxVolumeSDAPO.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\MBAPO32.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\MBAPO64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\MBPPCn64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\MBppld64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\MBTHX32.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\MBTHX64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\MBWrp64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\PremiumBlackSkinImages64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\R4EEA64A.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\R4EED64A.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\R4EEG64A.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\R4EEL64A.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\R4EEP64A.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\RAVBg64.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\RAVCpl64.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\RCoInstII64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\RP3DAA64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\RP3DHT64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\RtCOM64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\RTCOMDLL.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\RTEED64A.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\RTEEG64A.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\RTEEL64A.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\RTEEP64A.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\RtkApi64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\RtkAPO64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\RtkAudioService64.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\RtkCfg.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\RtkCfg64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\RtkCoLDR64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\RtkGuiCompLib.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\RtkNGUI64.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\RtlCPAPI.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\RtlCPAPI64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\RtlUpd64.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\RtPgEx64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\SFAPO64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\SFCOM.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\SFCOM64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\SFComm64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\SFDAPO64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\SFHAPO64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\SFNHK64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\SFProc64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\SFSAPO64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\SFSS_APO.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\SkyTel.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\slcc3d64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\slcshp64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\slcsii64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\slgeq64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\slh36064.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\slhlim64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\slInit64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\slmaxv64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\sltshd64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\sluapo64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\slvipp64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\slviq64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\SRSHP64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\SRSTSH64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\SRSTSX64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\SRSWOW64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\tadefxapo.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\tadefxapo264.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\tepeqapo64.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\tosade.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\vncutil64.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista64\WavesGUILib.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\AERTACap.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\AERTARen.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\AERTSrv.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\BlackBlueSkinImages.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\BlackSkinImages.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\DarkSkinImages.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\DTSAudioService.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\DTSBassEnhancementDLL.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\DTSBoostDLL.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\DTSGainCompensatorDLL.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\DTSGFXAPO.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\DTSGFXAPONS.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\DTSLFXAPO.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\DTSLimiterDLL.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\DTSNeoPCDLL.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\DTSS2HeadphoneDLL.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\DTSS2SpeakerDLL.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\DTSSymmetryDLL.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\DTSU2PAuSrv32.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\DTSU2PGFX32.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\DTSU2PLFX32.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\DTSU2PREC32.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\DTSVoiceClarityDLL.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\FMAPO.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\FMAPP.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\GrayJadeSkinImages.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\KAAPORT.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\MaxxAudioAPO.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\MaxxAudioAPO20.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\MaxxAudioAPO30.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\MaxxAudioAPO40.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\MaxxAudioAPOShell.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\MaxxAudioControl.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\MaxxAudioEQ.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\MaxxAudioMeters.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\MaxxAudioRealtek.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\MaxxAudioRealtek2.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\MaxxVolumeSDAPO.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\MBAPO32.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\MBPPCn32.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\MBppld32.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\MBTHX32.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\MBWrp32.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\PremiumBlackSkinImages.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\R4EEA32A.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\R4EED32A.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\R4EEG32A.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\R4EEL32A.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\R4EEP32A.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\RP3DAA32.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\RP3DHT32.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\RTCOMDLL.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\RTEED32A.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\RTEEG32A.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\RTEEL32A.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\RTEEP32A.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\RtHDVBg.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\RtHDVCpl.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\RtkAPO.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\RtkApoApi.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\RtkAudioService.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\RtkCfg.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\RtkCoInstII.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\RtkCoLDR.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\RtkGuiCompLib.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\RtkNGUI.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\RtkPgExt.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\RtlCPAPI.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\RtlUpd.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\SFAPO.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\SFCOM.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\SFFXComm.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\SFFXDAPO.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\SFFXHAPO.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\SFFXProc.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\SFFXSAPO.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\SFNHK.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\SFSS_APO.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\SkyTel.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\slcc3d32.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\slcshp32.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\slcsii32.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\slgeq32.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\slh36032.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\slhlim32.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\slInit32.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\slmaxv32.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\sltshd32.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\sluapo32.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\slvipp32.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\slviq32.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\SRSHP360.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\SRSTSHD.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\SRSTSXT.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\SRSWOW.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\tadefxapo.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\tadefxapo2.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\TepeqAPO.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\tosade.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\vncutil.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\WavesGUILib.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\Vista\WavesLib.dll
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\MSHDQFE\Win2K_XP\us\kb888111w2ksp4.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\MSHDQFE\Win2K_XP\us\kb888111xp64.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\MSHDQFE\Win2K_XP\us\kb888111xpsp1.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\MSHDQFE\Win2K_XP\us\kb888111xpsp2.exe
C:\Users\Noizii\AppData\Local\Temp\Temp1_realtek_hd_all_mb.zip\realtek_hd6586_all_mb\MSHDQFE\Win2K3\us\kb888111srvrtm.exe
C:\Users\Noizii\AppData\Local\Temp\RarSFX0\PSINanoRun.exe
C:\Users\Noizii\AppData\Local\Temp\RarSFX0\StubInstaller.exe
C:\Users\Noizii\AppData\Local\Temp\nsf7343.tmp\KillProcDLL.dll
C:\Users\Noizii\AppData\Local\Temp\MozUpdater-8\updater.exe
C:\Users\Noizii\AppData\Local\Temp\MozUpdater-7\updater.exe
C:\Users\Noizii\AppData\Local\Temp\MozUpdater-6\updater.exe
C:\Users\Noizii\AppData\Local\Temp\MozUpdater-5\updater.exe
C:\Users\Noizii\AppData\Local\Temp\MozUpdater-4\updater.exe
C:\Users\Noizii\AppData\Local\Temp\MozUpdater-3\updater.exe
C:\Users\Noizii\AppData\Local\Temp\MozUpdater-2\updater.exe
C:\Users\Noizii\AppData\Local\Temp\MozUpdater-1\updater.exe
C:\Users\Noizii\AppData\Local\Temp\MozUpdater\updater.exe
C:\Users\Noizii\AppData\Local\Temp\ispAA5D.tmp\_Setup.dll
C:\Users\Noizii\AppData\Local\Temp\is-TB8D6.tmp\_isetup\_shfoldr.dll
C:\Users\Noizii\AppData\Local\Temp\gw2cache-{F128E2B8-A13B-1600-BBE2-28F13BA10016}\icudt.dll
C:\Users\Noizii\AppData\Local\Temp\DSOClient\dlcache\d3dx9_43.dll
C:\Users\Noizii\AppData\Local\Temp\DSOClient\dlcache\DrakensangOnlineSetup.exe
C:\Users\Noizii\AppData\Local\Temp\DSOClient\dlcache\fmodex.dll
C:\Users\Noizii\AppData\Local\Temp\DSOClient\dlcache\fmod_event.dll
C:\Users\Noizii\AppData\Local\Temp\DSOClient\dlcache\fmod_event_net.dll
C:\Users\Noizii\AppData\Local\Temp\CCIS\ccsqlh.exe
C:\Users\Noizii\AppData\Local\Temp\CCIS\sqlite3.dll
C:\Users\Noizii\AppData\Local\Temp\akamaiclient\csd.dll
==================== Known DLLs (Whitelisted) ================
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
==================== EXE ASSOCIATION =====================
HKLM\...\.exe: exefile => OK
HKLM\...\exefile\DefaultIcon: %1 => OK
HKLM\...\exefile\open\command: "%1" %* => OK
==================== Restore Points =========================
Restore point made on: 2013-08-14 16:28:31
Restore point made on: 2013-08-20 02:23:36
==================== Memory info ===========================
Percentage of memory in use: 23%
Total physical RAM: 4095.3 MB
Available physical RAM: 3150.26 MB
Total Pagefile: 4093.5 MB
Available Pagefile: 3266.54 MB
Total Virtual: 8192 MB
Available Virtual: 8191.86 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:78.03 GB) (Free:31.1 GB) NTFS
Drive e: (Volume) (Fixed) (Total:154.76 GB) (Free:44.1 GB) NTFS
Drive g: (W7SP1_HOMEPREMIUM) (CDROM) (Total:5.23 GB) (Free:0 GB) UDF
Drive h: (INTENSO) (Removable) (Total:1.88 GB) (Free:0.45 GB) FAT
Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS
Drive y: (System-reserviert) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[System with boot components (obtained from reading drive)]
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 233 GB) (Disk ID: 26B726B6)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=78 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=155 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (Size: 2 GB) (Disk ID: 6B736964)
No partition Table on disk 1.
LastRegBack: 2013-08-23 07:30
==================== End Of Log ============================